Iskra iHUB and iHUB Lite
ID: 712b640b-4273-5dde-86e2-1e86bb824e7b
STIX ID: report--712b640b-4273-5dde-86e2-1e86bb824e7b
Feed Name: All CISA Advisories
CISA published an advisory for Iskra iHUB and iHUB Lite (CVE-2025-13510) describing a Missing Authentication for Critical Function that exposes the devices' web management interface without requiring credentials; the issue has a CVSS v4 base score of 9.3 and could allow unauthenticated remote attackers to reconfigure devices, update firmware, and manipulate connected systems. The advisory identifies the products as used in the energy sector worldwide, provides mitigation recommendations (network isolation, firewalls, secure remote access), and reports no known public exploitation at the time of publication.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
