← Back to home
ICSA-13-095-01  ·  Published 2025-06-06  ·  View on CISA ICS-CERT ↗

Cogent Real-Time Systems Vulnerabilities

CVSS 7.5 HIGH

Remediations

  • Cogent recommends the following mitigation strategies: Turn off Ports 4502/TCP and 4503/TCP if they are not being used. This can be done in the Tunnel/Mirror properties of the DataHub. If access to the application from the Internet is not required, block Ports 4502/TCP and 4503/TCP at your firewall, and only allow connections on these ports from within your local area network. If the DataHub Web server is not being used, turn it off in the Web server properties. If access to DataHub from the Internet is not required, block Port 80/TCP at your firewall, and only allow connections on this port from within your local area network. This vulnerability is fixed in the following software versions. Upgrade to one of these applications. DataHub QuickTrend Version 7.3.0. Cogent DataHub Version 7.3.0. OPC DataHub Version 6.4.22. Cascade DataHub for Windows Version 6.4.22.

Affected Vendors

Cogent Real-Time Systems

Affected Products (6)

Cogent Real-Time Systems · Cogent DataHub <=7.2.2
Cogent Real-Time Systems · OPC DataHub <=6.4.21
Cogent Real-Time Systems · Cascade DataHub for Windows <=6.4.21
Cogent Real-Time Systems · DataSim and DataPid demonstration clients for Cogent DataHub V7.2.2
Cogent Real-Time Systems · DataSim and DataPid demonstration clients for OPC DataHub and Cascade DataHub V6.4.21
Cogent Real-Time Systems · DataHub QuickTrend <=7.2.2

Get alerted to advisories like this

OTWarden monitors CISA, BSI, Siemens, Rockwell and more — and emails you within 2 hours when your vendors are affected.

Start free trial Learn more