Get a Pentest and security assessment of your IT network.

News

Schneider Electric Development Tools InduSoft Web Studio and InTouch Machine Edition are affected by a critical buffer flaw

Researchers at Tenable have discovered a critical remote code execution vulnerability affecting Schneider Electric InduSoft Web Studio and InTouch Machine Edition products. The vulnerability can be remotely exploited without authentication and targets the IWS Runtime Data Server service, by default on TCP port 1234. Security patches were made available on April 6 for both products, the vulnerability is triggered through command 50, and is caused by the incorrect usage of a string conversion function. The flaw affects the products, which are widely adopted in almost any industry, from energy to building automation.”]

Source: https://securityaffairs.co/wordpress/72051/hacking/schneider-electric-buffer-overflow.html

Related posts
News

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

News

Art of Twitter account hacking

News

Take note, next week update Adobe Reader and Acrobat to fix critical flaws

News

Linux bug leaves 1.4 billion Android users vulnerable to hijacking attacks