← Back to home
ICSA-20-042-13  ·  Published 2020-02-11  ·  View on CISA ICS-CERT ↗

Digi ConnectPort LTS 32 MEI

CVSS 8.5 HIGH

Risk Summary

Successful exploitation of these vulnerabilities could limit system availability.

Remediations

  • Digi recommends users upgrade to the mandatory release of ConnectPort LTS Version 1.4.5, released on November 8, 2019. Digi International recommends the following best practices:
  • Test the new release in a controlled environment with your application before you update production devices.
  • Unless otherwise noted, apply updates in the following order: Device firmware, Modem firmware, Configuration, Application
  • If you prefer manually updating one device at a time, follow these steps from the manual: Firmware update process Contact the Digi Technical Support team at https://www.digi.com/support to find out more on this release.

Affected Vendors

Digi International

Affected Products (1)

Digi International · ConnectPort LTS 32 MEI 1.4.3

Affected Sectors

Commercial Facilities, Critical Manufacturing, Food and Agriculture, Healthcare and Public Health, Transportation Systems

Get alerted to advisories like this

OTWarden monitors CISA, BSI, Siemens, Rockwell and more — and emails you within 2 hours when your vendors are affected.

Start free trial Learn more