ICSA-22-090-01
·
Published 2022-03-31
·
View on CISA ICS-CERT ↗
Schneider Electric SCADAPack Workbench
CVSS 5.5
MEDIUM
Risk Summary
Successful exploitation of this vulnerability could result from exfiltration of data from local files to a remote system controlled by an attacker.
CVEs (1)
Remediations
- Schneider Electric is establishing a remediation plan for all future versions of SCADAPack Workbench that will include a fix for this vulnerability.
- Run SCADAPack Workbench as a User, not as an Administrator, to minimize the impact of malicious code on the infected system.
- Do not open untrusted files with SCADAPack Workbench.
- Provide training and awareness programs to educate users on the warning signs of a phishing or social engineering attack.
- Employ data loss prevention tools to help mitigate risk.
- Restrict communication from workstations running SCADAPack Workbench to external systems.
- Ensure the least-privilege user principle is followed, and user/service account access to shared resources (such as a database) is only granted with a minimum number of rights as needed.
- For more information see Schneider Electric's security notification SEVD-2022-087-01
- For more information refer to the Schneider Electric Recommended Cybersecurity Best Practices document.
Affected Vendors
Schneider Electric Software, LLC
Affected Products (1)
Schneider Electric Software, LLC
·
SCADAPack Workbench
<= 6.6.8a
Affected Sectors
Multiple Sectors
Get alerted to advisories like this
OTWarden monitors CISA, BSI, Siemens, Rockwell and more — and emails you within 2 hours when your vendors are affected.
Start free trial Learn more