← Back to home
ICSA-22-172-02  ·  Published 2022-06-21  ·  View on CISA ICS-CERT ↗

JTEKT TOYOPUC

CVSS 7.7 HIGH

Risk Summary

Successful exploitation of this vulnerability could cause a denial-of-service condition, change control logic, or disable communication links.

Remediations

  • When remote access is required, use secure methods, such as virtual private networks (VPNs), recognizing VPNs may have vulnerabilities and should be updated to the most current version available. Also recognize VPN is only as secure as its connected devices.
  • Locate control system networks and remote devices behind firewalls and isolate them from the business network.
  • Minimize network exposure for all control system devices and/or systems, use IP filter functions to allow only specific personal computer/device to connect, and ensure they are not accessible from the Internet.
  • To prevent unauthorized devices from being connected to the free ports of the HUB, use a LAN port lock to close the free ports.

Affected Vendors

JTEKT Corporation

Affected Products (17)

JTEKT Corporation · Nano 10GX Type=TUC-1157 vers:all/*
JTEKT Corporation · Nano CPU Type=TUC-6941 vers:all/*
JTEKT Corporation · PC10B Type=TCC-1021 vers:all/*
JTEKT Corporation · PC10B-P Type=TCC-6373 vers:all/*
JTEKT Corporation · PC10E Type=TCC-4737 vers:all/*
JTEKT Corporation · PC10EL Type=TCC-4747 vers:all/*
JTEKT Corporation · PC10G-CPU Type=TCC-6353 vers:all/*
JTEKT Corporation · PC10GE Type=TCC-6464 vers:all/*
JTEKT Corporation · PC10P Type=TCC-6372 vers:all/*
JTEKT Corporation · PC10P-DP Type=TCC-6726 vers:all/*
JTEKT Corporation · PC10P-DP-IO Type=TCC-6752 vers:all/*
JTEKT Corporation · PC10PE Type=TCC-1101 vers:all/*
JTEKT Corporation · PC10PE-1616P Type=TCC-1102 vers:all/*
JTEKT Corporation · PC3JX Type=TCC-6901 vers:all/*
JTEKT Corporation · PC3JX-D Type=TCC-6902 vers:all/*
JTEKT Corporation · PCDL Type=TKC-6688 vers:all/*
JTEKT Corporation · Plus CPU Type=TCC-6740 vers:all/*

Affected Sectors

Critical Manufacturing

Get alerted to advisories like this

OTWarden monitors CISA, BSI, Siemens, Rockwell and more — and emails you within 2 hours when your vendors are affected.

Start free trial Learn more