SpaceLogic AS-P and AS-B Automation Servers Security Notification
This document details multiple vulnerabilities in Schneider Electric's SpaceLogic AS-P and AS-B automation servers, including a TOCTOU race condition (CVE-2024-5558) that could lead to privilege escalation and an information exposure flaw (CVE-2024-5557) that risks leaking SNMP credentials. It provides remediation steps, including upgrading to version 6.0.1 or applying hotfix patches, along with general cybersecurity best practices for building management systems.
Failed to load PDF
Download insteadYou might also like
SpaceLogic EP Series Differential Pressure Sensor Specification Sheet
4 pages
SpaceLogic V212 Two-Way Pressure Balanced Globe Valve Specification Sheet
4 pages
MICRONET 2000 VAV Interface for BAS Integration Manual
4 pages
Satchwell MBF Three-Port Rotary Shoe Valve Data Sheet
2 pages
SpaceLogic MP-C Pro BACnet/IP Controller Manual
18 pages
PX3 Series Bluetooth Differential Pressure and Air Velocity Transducer Datasheet
2 pages
PowerChute Network Shutdown for Single-, Dual-, and Triple-Corded Servers Application Note
6 pages
APC Easy PDU Metered-by-Outlet with Switching Technical Specifications
2 pages
Galaxy LI-ION Battery Module Product Safety Data Sheet
12 pages
Galaxy VS, VL, VXL SSH Vulnerability Security Notification
4 pages