Close Menu
World Forbes – Business, Tech, AI & Global Insights
  • Home
  • AI
  • Billionaires
  • Business
  • Cybersecurity
  • Education
    • Innovation
  • Money
  • Small Business
  • Sports
  • Trump
What's Hot

South African comic book fans gather at Comic-Con Africa in Johannesburg

August 30, 2025

Thousands of redheads celebrate their strands at Dutch festival

August 30, 2025

Saturday’s Powerball drawing worth $1 billion

August 29, 2025
Facebook X (Twitter) Instagram
Trending
  • South African comic book fans gather at Comic-Con Africa in Johannesburg
  • Thousands of redheads celebrate their strands at Dutch festival
  • Saturday’s Powerball drawing worth $1 billion
  • Pollution, development and climate change threaten Florida’s freshwater springs
  • With dawn of AI, talk of tech and religion merge for some
  • What is Labor Day. All you need to know
  • White House Reportedly Selects Jim O’Neill As CDC Director As Staffers Protest
  • Trump Administration Could Target Chicago With New Immigration Operation
World Forbes – Business, Tech, AI & Global InsightsWorld Forbes – Business, Tech, AI & Global Insights
Sunday, August 31
  • Home
  • AI
  • Billionaires
  • Business
  • Cybersecurity
  • Education
    • Innovation
  • Money
  • Small Business
  • Sports
  • Trump
World Forbes – Business, Tech, AI & Global Insights
Home » Details Disclosed for SCADA Flaws That Could Facilitate Industrial Attacks
Cybersecurity

Details Disclosed for SCADA Flaws That Could Facilitate Industrial Attacks

adminBy adminMarch 10, 2025No Comments2 Mins Read
Facebook Twitter Pinterest LinkedIn Tumblr WhatsApp Telegram Email
Share
Facebook Twitter LinkedIn Pinterest Email
Post Views: 78


Palo Alto Networks has disclosed the details of five high-severity vulnerabilities affecting Iconics and Mitsubishi Electric supervisory control and data acquisition (SCADA) products.

Impacted products include Genesis64 and MC Works64. The same vulnerabilities affect both Iconics and Mitsubishi Electric products because the former is part of the latter. 

The SCADA vulnerabilities include DLL hijacking (CVE-2024-1182), incorrect default permission (CVE-2024-7587), uncontrolled search path element (CVE-2024-8299 and CVE-2024-9852), and dead code (CVE-2024-8300) issues.

Exploitation of all these security holes requires authentication, but they can allow attackers who have already gained access to the targeted organization’s systems to execute arbitrary code, elevate privileges, and manipulate critical files.

In a real world attack aimed at industrial systems, an attacker could leverage the SCADA vulnerabilities to cause disruption and in some cases to take full control of a system. 

“In combination, these vulnerabilities pose a risk to the confidentiality, integrity and availability of a system,” the cybersecurity firm warned.

Palo Alto noted that the vulnerabilities could be valuable to attackers considering that the Iconics and Mitsubishi Electric products have hundreds of thousands of installations around the world, including in sectors such as government, military, water, manufacturing, and energy.

The vulnerabilities were discovered by the security firm in early 2024 in Iconics Suite and Mitsubishi Electric MC Works versions 10.97.2 and 10.97.3 for Windows. Patches and mitigations were released last year.

Advertisement. Scroll to continue reading.

The existence of the security holes came to light in 2024, when the cybersecurity agency CISA and the impacted vendors published advisories and announced patches and mitigations. 

Related: Organizations Still Not Patching OT Due to Disruption Concerns

Related: ICS/OT Security Budgets Increasing, but Critical Areas Underfunded

Related: Free Diagram Tool Aids Management of Complex ICS/OT Cybersecurity Decisions



Source link

Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
admin
  • Website

Related Posts

O2 Service Vulnerability Exposed User Location

May 20, 2025

Madhu Gottumukkala Officially Announced as CISA Deputy Director

May 20, 2025

BreachRx Lands $15 Million as Investors Bet on Breach-Workflow Software

May 19, 2025

Printer Company Procolored Served Infected Software for Months

May 19, 2025

UK Legal Aid Agency Finds Data Breach Following Cyberattack

May 19, 2025

480,000 Catholic Health Patients Impacted by Serviceaide Data Leak

May 19, 2025
Add A Comment
Leave A Reply Cancel Reply

Don't Miss
Billionaires

OnlyFans Billionaire’s Fortune Doubles Amid Sale Talks And $700 Million Dividend

August 22, 2025

OnlyFans, a NSFW social network for creators has become a cash cow for its owner…

Tennis Legend Roger Federer Is Now A Billionaire

August 22, 2025

Sam Altman Is Going After Elon Musk’s Empire, One Company At A Time

August 18, 2025

How A Berkeley Professor Built Billion-Dollar Companies In His Lab

August 10, 2025
Our Picks

South African comic book fans gather at Comic-Con Africa in Johannesburg

August 30, 2025

Thousands of redheads celebrate their strands at Dutch festival

August 30, 2025

Saturday’s Powerball drawing worth $1 billion

August 29, 2025

Pollution, development and climate change threaten Florida’s freshwater springs

August 29, 2025

Subscribe to Updates

Subscribe to our newsletter and never miss our latest news

Subscribe my Newsletter for New Posts & tips Let's stay updated!

About Us
About Us

Welcome to World-Forbes.com
At World-Forbes.com, we bring you the latest insights, trends, and analysis across various industries, empowering our readers with valuable knowledge. Our platform is dedicated to covering a wide range of topics, including sports, small business, business, technology, AI, cybersecurity, and lifestyle.

Our Picks

After Klarna, Zoom’s CEO also uses an AI avatar on quarterly call

May 23, 2025

Anthropic CEO claims AI models hallucinate less than humans

May 22, 2025

Anthropic’s latest flagship AI sure seems to love using the ‘cyclone’ emoji

May 22, 2025

Subscribe to Updates

Subscribe to our newsletter and never miss our latest news

Subscribe my Newsletter for New Posts & tips Let's stay updated!

Facebook X (Twitter) Instagram Pinterest
  • Home
  • About Us
  • Advertise With Us
  • Contact Us
  • DMCA Policy
  • Privacy Policy
  • Terms & Conditions
© 2025 world-forbes. Designed by world-forbes.

Type above and press Enter to search. Press Esc to cancel.