CISA issues nine advisories for industrial control systems
Nine industrial control system products are the subject of newly released advisories that report security vulnerabilities and related exploits affecting industrial control systems.
The notices are identified as ICSA-25-338-01 Mitsubishi Electric GX Works2, ICSA-25-338-02 MAXHUB Pivot, ICSA-25-338-03 Johnson Controls OpenBlue Mobile Web Application for OpenBlue Workplace, ICSA-25-338-04 Johnson Controls iSTAR, ICSA-25-338-05 Sunbird Data Center Infrastructure Management (DCIM) dcTrack and Power IQ, ICSA-25-338-06 SolisCloud Monitoring Platform, ICSA-25-338-07 Advantech iView, ICSA-25-148-03 Consilium Safety CS5000 Fire Panel (Update A), and ICSA-25-219-02 Johnson Controls FX Server, FX80 and FX90 (Update A).
Each advisory provides technical information addressing current security issues, vulnerabilities, and exploits related to the products listed above.
The notices include technical details and mitigation information within each advisory.
CISA encourages users and administrators to review the newly released ICS advisories for technical details and mitigations.