Skip to main content
← All Articles

Tag

#Critical Manufacturing

18 articles

Advertisement

VU
HIGH
Vulnerabilities

Rockwell RSLinx <4.50.00 RCE via CVE-2020-13573 — Patch Now

Urgent advisory for Rockwell RSLinx Classic users. CVE-2020-13573, a stack-based buffer overflow, enables remote code execution and DoS. Patch <=4.50.00.

Runtime Rebel Intel
4 min read · Jun 18, 2026
VU
HIGH
Vulnerabilities

CVE-2026-11317: Rockwell Logix DoS via CIP — Patch Critical ICS

Critical Manufacturing faces high-severity DoS risk in Rockwell Automation Logix 5370 & 5570 controllers from CVE-2026-11317. Patch now.

Runtime Rebel Intel
4 min read · Jun 18, 2026
VU
HIGH
Vulnerabilities

CVE-2021-22291: ABB EIBPORT V3 <3.9.2 Session Hijacking Vulnerability

ABB EIBPORT V3 devices are vulnerable to CVE-2021-22291 (XSS/session hijacking), allowing unauthenticated access and configuration changes. Patch immediately.

Runtime Rebel Intel
4 min read · May 28, 2026
VU
MEDIUM
Vulnerabilities

CVE-2022-4304: Hitachi Energy GMS600 Timing Side Channel Vulnerability

Hitachi Energy GMS600 versions 1.3.0-1.3.1 affected by CVE-2022-4304, an OpenSSL timing side channel leading to TLS decryption. Patch to 1.3.2 now.

Runtime Rebel Intel
4 min read · May 21, 2026
VU
HIGH
Vulnerabilities

CVE-2026-0300: Siemens RUGGEDCOM APE1808 RCE via PAN-OS Vulnerability

Critical RCE (CVE-2026-0300) in Siemens RUGGEDCOM APE1808 devices via PAN-OS User-ID Captive Portal buffer overflow. Unauthenticated root code execution possible.

Runtime Rebel Intel
4 min read · May 19, 2026
VU
HIGH
Vulnerabilities

CVE-2026-40175: Siemens gWAP RCE via Axios Prototype Pollution

Siemens gWAP is vulnerable to RCE via CVE-2026-40175, a prototype pollution flaw in the Axios HTTP client library. Update to v3.1.1 or later.

Runtime Rebel Intel
4 min read · May 14, 2026
VU
HIGH
Vulnerabilities

CVE-2026-41551: Siemens ROS# Path Traversal Remediation Guide

Critical path traversal vulnerability (CVE-2026-41551) in Siemens ROS# file_server allows arbitrary file access. Immediate update to v2.2.2+ is crucial.

Runtime Rebel Intel
5 min read · May 14, 2026
VU
CRITICAL
Vulnerabilities

CVE-2025-15467: ABB AC500 V3 Stack Buffer Overflow to RCE

Critical vulnerability [CVE-2025-15467](https://nvd.nist.gov/vuln/detail/CVE-2025-15467) in ABB AC500 V3 PM5xxx firmware could lead to unauthenticated remote code…

Runtime Rebel Intel
4 min read · May 12, 2026
VU
MEDIUM
Vulnerabilities

ABB B&R Automation Runtime DoS via CVE-2025-11044 — Patch Now

An unauthenticated network DoS vulnerability (CVE-2025-11044) affects ABB B&R Automation Runtime, allowing permanent system halts. Immediate patching is critical.

Runtime Rebel Intel
4 min read · May 6, 2026
VU
HIGH
Vulnerabilities

CVE-2025-11043: ABB Automation Studio <6.5 Improper Certificate Validation

Critical manufacturing systems running ABB B&R Automation Studio <6.5 are vulnerable to CVE-2025-11043, allowing data interception and spoofing via improper certificate…

Runtime Rebel Intel
5 min read · May 6, 2026
VU
HIGH
Vulnerabilities

CVE-2026-3893: Unauthenticated Access in Carlson VASCO-B GNSS Receiver

Critical CVE-2026-3893 in Carlson VASCO-B GNSS Receivers <1.4.0 allows unauthenticated remote alteration of critical system functions. Update to v1.4.0+.

Runtime Rebel Intel
4 min read · Apr 23, 2026
VU
HIGH
Vulnerabilities

CVE-2026-5387: AVEVA Pipeline Simulation Privilege Escalation

Unauthenticated attackers can exploit CVE-2026-5387 in AVEVA Pipeline Simulation <=2025_SP1_build_7.1.9497.6351 to modify critical ICS simulation parameters and training…

Runtime Rebel Intel
4 min read · Apr 17, 2026
VU
HIGH
Vulnerabilities

Mitsubishi Electric ICS Vulnerabilities Expose SQL Credentials

High-severity vulnerabilities (CVE-2025-14815, CVE-2025-14816) in Mitsubishi Electric ICS/SCADA products risk SQL credential exposure and data compromise.

Runtime Rebel Intel
4 min read · Apr 7, 2026
VU
CRITICAL
Vulnerabilities

CVE-2026-4681: Critical RCE in PTC Windchill & FlexPLM

Critical RCE vulnerability CVE-2026-4681 affects PTC Windchill and FlexPLM via deserialization. Patch now to prevent code injection in critical manufacturing.

Runtime Rebel Intel
5 min read · Mar 26, 2026
VU
HIGH
Vulnerabilities

CVE-2026-3094: Delta CNCSoft-G2 Out-of-bounds Write RCE

Delta Electronics CNCSoft-G2 is vulnerable to an out-of-bounds write (CVE-2026-3094) allowing remote code execution. Update to V2.1.0.39.

Runtime Rebel Intel
4 min read · Mar 5, 2026
VU
MEDIUM
Vulnerabilities

Multiple DoS/RCE Vulnerabilities in Yokogawa CENTUM VP R6, R7

CISA alerts to multiple medium-severity vulnerabilities in Yokogawa CENTUM VP R6 and R7, allowing DoS and RCE via crafted packets in critical infrastructure…

Runtime Rebel Intel
5 min read · Feb 26, 2026
VU
HIGH
Vulnerabilities

Critical RCE Flaws in InSAT MasterSCADA BUK-TS Affect ICS

Two critical vulnerabilities (SQLi, OS Command Injection) in InSAT MasterSCADA BUK-TS lead to remote code execution, impacting critical infrastructure sectors globally.

Runtime Rebel Intel
4 min read · Feb 25, 2026
VU
HIGH
Vulnerabilities

Valmet DNA Engineering Web Tools Vulnerable to Path Traversal

Unauthenticated attackers can exploit CVE-2025-15577 in Valmet DNA Engineering Web Tools to gain arbitrary file read access across critical infrastructure.

Runtime Rebel Intel
3 min read · Feb 24, 2026