EcoStruxure IT Gateway Security Notification (CVE-2024-10575)
This document details a critical missing authorization vulnerability (CVE-2024-10575) in EcoStruxure™ IT Gateway versions 1.21.0.6, 1.22.0.3, 1.22.1.5, and 1.23.0.4, which could allow unauthorized network access and control of the Gateway or retrieval of sensitive information. The recommended remediation is to update to version 1.23.1.10, with additional mitigations including network isolation and firewall implementation for those who cannot apply the fix immediately.
Failed to load PDF
Download insteadYou might also like
SpaceLogic Advanced Display v3 HMI Manual
6 pages
DO-FA-12 and DO-FA-12-H Digital Output I/O Modules Specifications
5 pages
Back-UPS SX3 650 Specifications
2 pages
Trihal Cast Resin Transformer T Thermal Protection Module Manual
2 pages
EcoStruxure Reference Design 107 Colocation Data Centre
10 pages
Satchwell LO, LR, LZS Limiting Detectors Data Sheet
2 pages
SecurityExpert Multi-Technology Card Reader Datasheet
8 pages
STD500 Series Duct Temperature Sensor Specification Sheet
2 pages
695X Horizontal Double Socket Outlet Data Sheet
1 pages
MicroNet MNL-100/150/200 Controller Specifications
4 pages