ICSA-17-089-01
·
Published 2017-03-30
·
View on CISA ICS-CERT ↗
Schneider Electric Wonderware InTouch Access Anywhere
CVSS 8.8
HIGH
Risk Summary
ATTENTION: Remotely Exploitable/low skill level to exploit
CVEs (3)
Remediations
- Schneider Electric has released a new software version to address the identified vulnerabilities and recommends that users of affected versions upgrade to Wonderware InTouch Access Anywhere 2017 (17.0.0).
- Users of Wonderware InTouch Access Anywhere can login at the following support site to download the upgrade:
- Schneider Electric has issued Security Bulletin LFSEC00000114, which contains additional information:
Affected Vendors
Schneider Electric Software, LLC
Affected Products (1)
Schneider Electric Software, LLC
·
Wonderware InTouch Access Anywhere
<= 11.5.2
Affected Sectors
Critical Manufacturing, Energy, Healthcare and Public Health, and Water and Wastewater Systems
Get alerted to advisories like this
OTWarden monitors CISA, BSI, Siemens, Rockwell and more — and emails you within 2 hours when your vendors are affected.
Start free trial Learn more