← Back to home
ICSA-24-235-04  ·  Published 2024-08-22  ·  View on CISA ICS-CERT ↗

Avtec Outpost 0810

CVSS 7.5 HIGH

Risk Summary

Successful exploitation of these vulnerabilities could allow an attacker to gain administrative privileges on the affected devices.

Remediations

  • Avtec recommends users update to Outpost v5.0 to resolve.
  • When upgrading to Outpost Version 5.0.0 or later, you must reset your list of users to the default. More information and instructions can be found on Avtec's Outpost Uploader Utility User Guide for more information.
  • Restrict access to port 80 or disable web interface if possible.
  • Additionally, Avtec recommends checking devices for Scout firmware versions prior to 5.8.1, which was commonly coupled with Outpost firmware. If so, the devices may also need to be updated to the latest firmware. For more information, please visit Scout Release Notes

Affected Vendors

Avtec

Affected Products (2)

Avtec · Outpost 0810 <v5.0.0
Avtec · Outpost Uploader Utility <v5.0.0

Affected Sectors

Communications Sector

Get alerted to advisories like this

OTWarden monitors CISA, BSI, Siemens, Rockwell and more — and emails you within 2 hours when your vendors are affected.

Start free trial Learn more