You are here

Schneider Electric StruxureOn Gateway (ICSA-18-046-04) – Product Used in the Energy Sector

Schneider Electric StruxureOn Gateway (ICSA-18-046-04) – Product Used in the Energy Sector

Created: Thursday, February 15, 2018 - 15:32
Categories:
Cybersecurity

ICS-CERT has released an advisory on a Schneider Electric StruxureOn Gateway vulnerability. All versions prior to 1.2 are affected. Successful exploitation of this vulnerability could allow a remote attacker to upload a malicious file to any directory on the device, which could lead to remote code execution. Schneider Electric has released a new version of the software. ICS-CERT also recommends a series of defensive measures to minimize the risk of exploitation of this vulnerability. ICS-CERT.