QID 590683
Date Published: 2022-02-21
QID 590683: Schneider Electric IGSS Data Server Multiple Vulnerabilities (ICSA-22-046-01)
AFFECTED PRODUCTS
Schneider Electric reports these vulnerabilities affect the following IGSS Data Server module: IGSS Data Server (IGSSdataServer.exe): v15.0.0.22020 and prior
QID Detection Logic (Authenticated)
QID checks for the Vulnerable version using windows registry keys
Successful exploitation of these vulnerabilities could result in a variety of issues, including disclosure of data and loss of control of the SCADA system with IGSS running in production mode.
Solution
Customers are advised to refer to CERT MITIGATIONS section ICSA-22-046-01 for affected packages and patching details.
Vendor References
- ICSA-22-046-01 -
www.cisa.gov/uscert/ics/advisories/icsa-22-046-01
CVEs related to QID 590683
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| ICSA-22-046-01 |
|