The Cybersecurity and Infrastructure Security Agency (CISA) has published the following ICS vulnerability advisories, along with other cybersecurity alerts, updates, and bulletins:
ICS Vulnerability Advisories:
CISA Releases Fourteen Industrial Control Systems Advisories
Most products are used across multiple sectors, please check these latest advisories for specific equipment used across your ICS environments and address accordingly.
- SUBNET PowerSYSTEM Center
- Advantech WebAccessSCADA – Equipment used in the Water and Wastewater and Energy sectors
- Siemens SICAM Q200 Devices
- Siemens SIMOTION
- Siemens SIMATIC WinCC
- Siemens TIA Portal
- Siemens SIMATIC WinCC V7
- Siemens SIMATIC STEP 7 and Derived Products
- Siemens Solid Edge
- Siemens SIMATIC S7-1500 TM MFP BIOS
- Siemens SIMATIC S7-1500 TM MFP Linux Kernel
- Siemens SINAMICS Medium Voltage Products – Equipment used in the Water and Wastewater Systems, Chemical, Energy, Food and Agriculture sectors
- Siemens SICAM A8000 Devices
- Siemens Teamcenter Visualization and JT2Go
Alerts, Updates, and Bulletins:
- Barracuda Networks Releases Update to Address ESG Vulnerability
- CISA, FBI, and MS-ISAC Update Joint CSA on Progress Telerik Vulnerabilities
- CISA and NSA Release Joint Guidance on Hardening Baseboard Management Controllers (BMCs)
- CISA and Partners Release Joint Advisory on Understanding Ransomware Threat Actors: LockBit
- Fortinet Releases June 2023 Vulnerability Advisories
- Adobe Releases Security Updates for Multiple Products
- Microsoft Releases June 2023 Security Updates