ICS Vulnerabilities: Cyble Urges Siemens & Rockwell Fixes
ID: c9bcbac4-53f9-56bf-bb07-a24a21b6317d
STIX ID: report--c9bcbac4-53f9-56bf-bb07-a24a21b6317d
Feed Name: Cyble Blog
Cyble CRIL reviewed 11 ICS vulnerabilities (Sept. 17–23), prioritizing CVE-2024-43647 (unauthenticated TCP-handling DoS in Siemens SIMATIC S7-200 SMART CPUs) and CVE-2024-7847 (high-severity remote code execution via VBA-embedded scripts in Rockwell RSLogix 5/500); nine additional flaws affect vendors including Yokogawa, Kastle, IDEC, MegaSys, and Millbeck. The report urges immediate patching of the two prioritized vulnerabilities, lists affected products and CVEs, and recommends 11 best practices such as risk-based patch management, network segmentation, SBOM use, continuous monitoring, and incident response planning.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
