← Back to home
ICSA-22-090-01  ·  Published 2022-03-31  ·  View on CISA ICS-CERT ↗

Schneider Electric SCADAPack Workbench

CVSS 5.5 MEDIUM

Risk Summary

Successful exploitation of this vulnerability could result from exfiltration of data from local files to a remote system controlled by an attacker.

CVEs (1)

Remediations

  • Schneider Electric is establishing a remediation plan for all future versions of SCADAPack Workbench that will include a fix for this vulnerability.
  • Run SCADAPack Workbench as a User, not as an Administrator, to minimize the impact of malicious code on the infected system.
  • Do not open untrusted files with SCADAPack Workbench.
  • Provide training and awareness programs to educate users on the warning signs of a phishing or social engineering attack.
  • Employ data loss prevention tools to help mitigate risk.
  • Restrict communication from workstations running SCADAPack Workbench to external systems.
  • Ensure the least-privilege user principle is followed, and user/service account access to shared resources (such as a database) is only granted with a minimum number of rights as needed.
  • For more information see Schneider Electric's security notification SEVD-2022-087-01
  • For more information refer to the Schneider Electric Recommended Cybersecurity Best Practices document.

Affected Vendors

Schneider Electric Software, LLC

Affected Products (1)

Schneider Electric Software, LLC · SCADAPack Workbench <= 6.6.8a

Affected Sectors

Multiple Sectors

Get alerted to advisories like this

OTWarden monitors CISA, BSI, Siemens, Rockwell and more — and emails you within 2 hours when your vendors are affected.

Start free trial Learn more