← Back to home
ICSA-20-254-02  ·  Published 2020-09-10  ·  View on CISA ICS-CERT ↗

FATEK Automation PLC WinProladder

CVSS 7.8 HIGH

Risk Summary

Successful exploitation of this vulnerability could crash the device being accessed; a buffer overflow condition may cause a denial-of-service event and remote code execution.

CVEs (1)

Remediations

  • FATEK has not responded to requests to work with CISA to mitigate this vulnerability. Users of these affected products who would like to see more responsible security are invited to contact Fatek customer support.

Affected Vendors

FATEK Automation

Affected Products (1)

FATEK Automation · PLC WinProladder <= 3.28

Affected Sectors

Critical Manufacturing, Commercial Facilities

Get alerted to advisories like this

OTWarden monitors CISA, BSI, Siemens, Rockwell and more — and emails you within 2 hours when your vendors are affected.

Start free trial Learn more