QID 590819

Date Published: 2022-06-23

QID 590819: Schneider Electric Treck TCP/IP Multiple Vulnerabilities (SEVD-2020-175-01)

Affected Products
ATV6000 Medium Voltage Altivar Process Drives All Versions (V1.1IE02 and earlier)

QID Detection Logic (Authenticated):
QID checks for the Vulnerable version of using passive scanning

Customers should immediately ensure they have implemented cybersecurity best practices across their operations to protect themselves from possible exploitation of these vulnerabilities. Where appropriate, this includes locating their industrial systems and remotely accessible devices behind firewalls; installing physical controls to prevent unauthorized access; preventing mission-critical systems and devices from being accessed from outside networks; and following the remediation and general security recommendations

  • CVSS V3 rated as Critical - 10 severity.
  • CVSS V2 rated as Critical - 10 severity.
  • Solution

    Customers are advised to refer to CERT MITIGATIONS section SEVD-2020-175-01 for affected packages and patching details.

    Vendor References
    Software Advisories
    Advisory ID Software Component Link
    SEVD-2020-175-01 URL Logo www.se.com/ww/en/download/document/SEVD-2020-175-01/