← Back to home
ICSA-12-081-01  ·  Published 2025-06-05  ·  View on CISA ICS-CERT ↗

Wonderware System Platform Buffer Overflows

CVSS 6.8 MEDIUM

Remediations

  • Invensys encourages users affected by these vulnerabilities to follow the instructions in their security bulletin. Installation of the Security Update does not require a reboot. If multiple products are installed on the same node, the customer need only install the Security Update once.
  • To install the update, Invensys recommends users to follow the instructions found in the ReadMe file for the product and component being installed. In general, Invensys recommends that users: Back up the Galaxy Database. Back up the Wonderware Information Server Database. Run the Security Update Utility.

Affected Vendors

Invensys

Affected Products (6)

Invensys · Wonderware Application Server <=2012
Invensys · Foxboro Control Software <=3.1
Invensys · InFusion CE/FE/SCADA <=2.5
Invensys · Wonderware Information Server <=4.5
Invensys · ArchestrA Application Object Toolkit <=3.2
Invensys · InTouch >=10.0|<10.5

Get alerted to advisories like this

OTWarden monitors CISA, BSI, Siemens, Rockwell and more — and emails you within 2 hours when your vendors are affected.

Start free trial Learn more