

Rewterz Threat Advisory Siemens SIMATIC RF6XXR Multiple Vulnerabilities
July 12, 2019
Rewterz Threat Alert – Malspam campaign dropping XpertRAT Malware via ISO images
July 12, 2019
Rewterz Threat Advisory Siemens SIMATIC RF6XXR Multiple Vulnerabilities
July 12, 2019
Rewterz Threat Alert – Malspam campaign dropping XpertRAT Malware via ISO images
July 12, 2019Severity
Medium
Analysis Summary
An out-of-bounds vulnerability exists and could be exploited by the application processing a specially crafted project file. Exploitation could cause a software crash when data in the mdb database is manipulated or allow code execution.
Impact
Arbitrary code execution
Affected Vendors
Schneider Electric
Affected Products
Interactive Graphical SCADA System (IGSS)
Remediation
Schneider Electric recommends upgrading to Version 13.0.0.19140 or 14.0.0.19120.
http://igss.schneider-electric.com/products/igss/download/licensed-versions.aspx