CISA Releases 18 Industrial Control Systems Advisories
CISA has released 18 advisories concerning security issues, vulnerabilities, and exploits in various Industrial Control Systems (ICS).
Signals are individual enterprise-technology developments, captured as they happen: product launches, funding, partnerships, executive moves, vulnerabilities, and announcements across cloud infrastructure, networking, security, and AI. Looking for the synthesis? See Briefs
Decision Insights Threat Desk • November 20, 2025
CISA has released 18 advisories concerning security issues, vulnerabilities, and exploits in various Industrial Control Systems (ICS).
Decision Insights Threat Desk • November 20, 2025
As of January 10, 2023, CISA will cease updates for Siemens product vulnerabilities. Multiple vulnerabilities affecting Siemens LOGO! 8 BM Devices have been reported, allowing for potential remote code execution and device manipulation. Mitigations have been suggested while Siemens prepares fixes.
Decision Insights Threat Desk • November 20, 2025
Rockwell Automation's Verve Asset Manager has a vulnerability, CVE-2025-11862, identified as incorrect authorization, affecting multiple versions. Users are advised to update to versions 1.41.4 and 1.42. CISA recommends defensive measures to reduce exploitation risks.
Decision Insights Threat Desk • November 20, 2025
CISA will cease updates on Siemens ICS security advisories for product vulnerabilities, initially reporting on issues affecting the SICAM P850 and P855 families, specifically vulnerabilities related to CSRF and incorrect permission assignments. Users are encouraged to update and implement security measures to mitigate risks.
Decision Insights Threat Desk • November 20, 2025
Rockwell Automation identified a vulnerability in FactoryTalk Policy Manager that may allow remote exploitation leading to Denial of Service. Versions 6.51.00 and prior are affected, with a fix available in 6.60.00 and later. Users are advised to implement security best practices.
Decision Insights Threat Desk • November 20, 2025
Rockwell Automation's Studio 5000 Simulation Interface has vulnerabilities allowing unauthorized access and potential exploitation. Users are advised to upgrade to version 3.0.0 or later to mitigate risks associated with path traversal and SSRF vulnerabilities. CISA offers defensive measures and best practices for cyber defense.
Decision Insights Threat Desk • November 20, 2025
AVEVA has reported a vulnerability in its Application Server Immutable Deployment Environment that could allow attackers to exploit improper HTML script neutralization. Users are advised to update to secure versions and implement defensive measures to minimize risk.
Decision Insights Threat Desk • November 20, 2025
CISA will no longer update advisories for Siemens vulnerabilities. Two critical vulnerabilities in COMOS were identified, allowing for potential code execution and data infiltration. Siemens recommends updating to version 10.4.5 or later and provides mitigations to reduce risks of exploitation.
Decision Insights Threat Desk • November 20, 2025
Siemens has identified a vulnerability in Solid Edge SE2025 that allows man-in-the-middle attacks due to improper certificate validation. Users are advised to update to V225.0 Update 11 or later versions and implement protective measures to minimize exploitation risks.
Decision Insights Threat Desk • November 20, 2025
Mitsubishi Electric reported a vulnerability in MELSEC iQ-F Series that may allow Denial of Service attacks via improperly validated TCP packets.
Decision Insights Threat Desk • November 20, 2025
AVEVA Edge versions 2023 R2 and prior are affected by a vulnerability allowing local attackers to brute-force passwords.
Decision Insights Threat Desk • November 20, 2025
General Industrial Controls' Lynx+ Gateway faces multiple vulnerabilities, including weak password requirements and missing authentication. These issues could lead to unauthorized access and denial of service. Users are advised to enhance security measures and follow CISA's recommendations to mitigate risks.
Decision Insights Signals • November 20, 2025
Aptean has launched AppCentral 2.0, an AI platform designed for industrial sectors, combining Vertical AI with industry-specific applications. This platform aims to enhance decision-making and operational efficiency through features like instant answers, intelligent workflows, and predictive insights.
Decision Insights Signals • November 20, 2025
Uptycs has introduced Juno AI, a verifiable AI Security Analyst, aimed at assisting cybersecurity teams. Juno AI enhances threat detection by providing clear insights and reducing investigation times, while maintaining data privacy and control for organizations.
Decision Insights Threat Desk • November 20, 2025
CISA issued six advisories on Industrial Control Systems, detailing vulnerabilities in products like WebCTRL Premium Server and ICAM365 Cameras.
Decision Insights Signals • November 20, 2025
Itential and Carahsoft partnered to enhance network and automation solutions for government procurement, focusing on efficiencies.
Decision Insights Threat Desk • November 20, 2025
Festo identified a critical vulnerability in its MSE6 product line affecting remote access. The vulnerability, CVE-2023-3634, poses risks to confidentiality, integrity, and availability. Mitigation measures include updated documentation and network security recommendations.
Decision Insights Threat Desk • November 20, 2025
Automated Logic's WebCTRL Premium Server has vulnerabilities including Open Redirect and Cross-Site Scripting (XSS). Users are advised to upgrade to version 9.0 as previous versions are affected. CISA recommends security practices to mitigate potential exploitation.
Decision Insights Threat Desk • November 20, 2025
Festo has reported a vulnerability in its Didactic products related to Siemens TIA-Portal, affecting versions prior to updates V17 Update 6 and V18 Update 1. The vulnerability could allow arbitrary file creation or overwriting. Users are advised to update their systems accordingly.
Decision Insights Threat Desk • November 20, 2025
CISA issued six advisories addressing vulnerabilities in various Industrial Control Systems (ICS), including products from Automated Logic, ICAM365, Opto 22, Festo, and Emerson. The advisories provide information on security issues and encourage users to review the mitigations.
A synthesis of what changed across the vendors, projects and technologies tracked here. Published every two weeks. Subscribing creates a free Decision Insights account.