← Back to home
ICSA-24-268-01  ·  Published 2024-09-24  ·  View on CISA ICS-CERT ↗

OPW Fuel Management Systems SiteSentinel

CVSS 9.8 CRITICAL

Risk Summary

Successful exploitation of this vulnerability could allow an attacker to bypass authentication and obtain full administrative privileges to the server.

CVEs (1)

Remediations

  • OPW Fuel Management Systems' parent company, Dover Fueling Systems (DFS), recommends that users install all versions of the product behind a firewall as primary protection.
  • DFS recommends user running versions prior to V17Q.2.1 upgrade to V17Q.2.1. Users with products that were distributed with versions newer than V17Q.2.1 should contact DFS using the link below to confirm that their build has the required fixes.
  • The software is available to authorized service providers for DFS products. Users should contact DFS service providers to have the software on their system upgraded or changed.

Affected Vendors

OPW Fuel Managements Systems

Affected Products (1)

OPW Fuel Managements Systems · SiteSentinel <17Q2.1

Affected Sectors

Energy, Transportation Systems

Get alerted to advisories like this

OTWarden monitors CISA, BSI, Siemens, Rockwell and more — and emails you within 2 hours when your vendors are affected.

Start free trial Learn more