Close Menu
World Forbes – Business, Tech, AI & Global Insights
  • Home
  • AI
  • Billionaires
  • Business
  • Cybersecurity
  • Education
    • Innovation
  • Money
  • Small Business
  • Sports
  • Trump
What's Hot

Eviction and school: Takeaways from AP’s investigation

November 14, 2025

How an AP reporter captured a powerful story about school and eviction

November 14, 2025

Eviction sets single mom on a quest to keep her kids in their schools

November 14, 2025
Facebook X (Twitter) Instagram
Trending
  • Eviction and school: Takeaways from AP’s investigation
  • How an AP reporter captured a powerful story about school and eviction
  • Eviction sets single mom on a quest to keep her kids in their schools
  • Texas A&M University professors now need approval for some race and gender topics
  • Head Start centers face challenges despite end of government shutdown
  • Michelle Obama discusses her fashion evolution in a new book
  • Music lovers’ holiday gift guide: 9 pitch-perfect gifts
  • For movie lovers, some creative holiday gifts
World Forbes – Business, Tech, AI & Global InsightsWorld Forbes – Business, Tech, AI & Global Insights
Friday, November 14
  • Home
  • AI
  • Billionaires
  • Business
  • Cybersecurity
  • Education
    • Innovation
  • Money
  • Small Business
  • Sports
  • Trump
World Forbes – Business, Tech, AI & Global Insights
Home » Details Disclosed for SCADA Flaws That Could Facilitate Industrial Attacks
Cybersecurity

Details Disclosed for SCADA Flaws That Could Facilitate Industrial Attacks

By adminMarch 10, 2025No Comments2 Mins Read
Facebook Twitter Pinterest LinkedIn Tumblr WhatsApp Telegram Email
Share
Facebook Twitter LinkedIn Pinterest Email
Post Views: 131


Palo Alto Networks has disclosed the details of five high-severity vulnerabilities affecting Iconics and Mitsubishi Electric supervisory control and data acquisition (SCADA) products.

Impacted products include Genesis64 and MC Works64. The same vulnerabilities affect both Iconics and Mitsubishi Electric products because the former is part of the latter. 

The SCADA vulnerabilities include DLL hijacking (CVE-2024-1182), incorrect default permission (CVE-2024-7587), uncontrolled search path element (CVE-2024-8299 and CVE-2024-9852), and dead code (CVE-2024-8300) issues.

Exploitation of all these security holes requires authentication, but they can allow attackers who have already gained access to the targeted organization’s systems to execute arbitrary code, elevate privileges, and manipulate critical files.

In a real world attack aimed at industrial systems, an attacker could leverage the SCADA vulnerabilities to cause disruption and in some cases to take full control of a system. 

“In combination, these vulnerabilities pose a risk to the confidentiality, integrity and availability of a system,” the cybersecurity firm warned.

Palo Alto noted that the vulnerabilities could be valuable to attackers considering that the Iconics and Mitsubishi Electric products have hundreds of thousands of installations around the world, including in sectors such as government, military, water, manufacturing, and energy.

The vulnerabilities were discovered by the security firm in early 2024 in Iconics Suite and Mitsubishi Electric MC Works versions 10.97.2 and 10.97.3 for Windows. Patches and mitigations were released last year.

Advertisement. Scroll to continue reading.

The existence of the security holes came to light in 2024, when the cybersecurity agency CISA and the impacted vendors published advisories and announced patches and mitigations. 

Related: Organizations Still Not Patching OT Due to Disruption Concerns

Related: ICS/OT Security Budgets Increasing, but Critical Areas Underfunded

Related: Free Diagram Tool Aids Management of Complex ICS/OT Cybersecurity Decisions



Source link

Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
admin
  • Website

Related Posts

O2 Service Vulnerability Exposed User Location

May 20, 2025

Madhu Gottumukkala Officially Announced as CISA Deputy Director

May 20, 2025

BreachRx Lands $15 Million as Investors Bet on Breach-Workflow Software

May 19, 2025

Printer Company Procolored Served Infected Software for Months

May 19, 2025

UK Legal Aid Agency Finds Data Breach Following Cyberattack

May 19, 2025

480,000 Catholic Health Patients Impacted by Serviceaide Data Leak

May 19, 2025
Add A Comment
Leave A Reply

Don't Miss
Billionaires

These Billionaire Brothers Have Been Pardon-Hunting. One Donated To Trump’s White House Ballroom.

November 9, 2025

In October, Trump demolished the East Wing of the White House to make room for…

Trump Nominated Billionaire Jared Isaacman To Run NASA (Again)

November 8, 2025

Musk’s Net Worth Drops $10 Billion—And Tesla Shares Fall—Here’s Why

November 7, 2025

Trump’s Bungled Bet On Bitcoin Is Costing Him Bigtime

November 7, 2025
Our Picks

Eviction and school: Takeaways from AP’s investigation

November 14, 2025

How an AP reporter captured a powerful story about school and eviction

November 14, 2025

Eviction sets single mom on a quest to keep her kids in their schools

November 14, 2025

Texas A&M University professors now need approval for some race and gender topics

November 13, 2025

Subscribe to Updates

Subscribe to our newsletter and never miss our latest news

Subscribe my Newsletter for New Posts & tips Let's stay updated!

About Us
About Us

Welcome to World-Forbes.com
At World-Forbes.com, we bring you the latest insights, trends, and analysis across various industries, empowering our readers with valuable knowledge. Our platform is dedicated to covering a wide range of topics, including sports, small business, business, technology, AI, cybersecurity, and lifestyle.

Our Picks

After Klarna, Zoom’s CEO also uses an AI avatar on quarterly call

May 23, 2025

Anthropic CEO claims AI models hallucinate less than humans

May 22, 2025

Anthropic’s latest flagship AI sure seems to love using the ‘cyclone’ emoji

May 22, 2025

Subscribe to Updates

Subscribe to our newsletter and never miss our latest news

Subscribe my Newsletter for New Posts & tips Let's stay updated!

Facebook X (Twitter) Instagram Pinterest
  • Home
  • About Us
  • Advertise With Us
  • Contact Us
  • DMCA Policy
  • Privacy Policy
  • Terms & Conditions
© 2025 world-forbes. Designed by world-forbes.

Type above and press Enter to search. Press Esc to cancel.