54% (1) 1.7k views 9 pages

EcoStruxure Control Expert, Process Expert, and Modicon PLC Security Notification

AI-enhanced description

This document notifies users of multiple high-severity vulnerabilities (CVE-2023-27975, CVE-2023-6408, CVE-2023-6409) affecting EcoStruxure Control Expert, EcoStruxure Process Expert, and Modicon M340, M580, and M580 Safety PLCs, which could lead to denial of service, unauthorized access, and loss of confidentiality or integrity. It provides affected product versions, remediation steps including firmware updates (e.g., SV3.60, SV4.20, SV4.21) and software patches (e.g., Control Expert v16.0, Process Expert v2023), and details on man-in-the-middle attacks, hard-coded credentials, and insufficiently protected credentials.

Uploaded by paul-mark
Download
/ 9
Loading document…