ICSA-25-010-03
·
Published 2025-01-16
·
View on CISA ICS-CERT ↗
Delta Electronics DRASimuCAD (Update A)
CVSS 7.8
HIGH
Risk Summary
Successful exploitation of these vulnerabilities could crash the device or potentially allow remote code execution.
CVEs (3)
Remediations
- Delta has released a patch to fix these vulnerabilities on Delta Download Center. This patch is based on the formal DRASimuCAD v1.02.00.00. Users should have the original v1.02.00.00 installed, then install this new patch.
- Delta also recommends the following general security practices:
- Don't click on untrusted Internet links or open unsolicited attachments in emails.
- Avoid exposing control systems and equipment to the Internet.
- Place systems and devices behind a firewall and isolate them from the business network.
- When remote access is required, use a secure access method, such as a virtual private network (VPN).
- For more information, please see the Delta product cybersecurity advisory for these issues.
Affected Vendors
Delta Electronics
Affected Products (1)
Delta Electronics
·
DRASimuCAD
<=1.02.00.00
Affected Sectors
Critical Manufacturing
Get alerted to advisories like this
OTWarden monitors CISA, BSI, Siemens, Rockwell and more — and emails you within 2 hours when your vendors are affected.
Start free trial Learn more