ICSA-25-028-01
·
Published 2025-01-15
·
View on CISA ICS-CERT ↗
B&R Automation Runtime
CVSS 7.5
HIGH
CVEs (1)
Remediations
- The problem is corrected in the following product versions: B&R Automation Runtime version 6.1 and B&R mapp View 6.1. B&R recommends that customers apply the update at their earliest convenience if B&R Automation Runtime or B&R mapp View is used to generate self-signed certificates on production machines.
- To minimize the security risks of vulnerabilities in industrial automation and controls systems (IACS), B&R recommends the implementation of their defense in depth for B&R products strategy.
- For details on this issue, please refer to the corresponding B&R security advisory.
Affected Vendors
B&R
Affected Products (4)
B&R
·
B&R Automation Runtime
<6.1
B&R
·
B&R Automation Runtime
6.1
B&R
·
B&R mapp View
<6.1
B&R
·
B&R mapp View
6.1
Affected Sectors
Critical manufacturing
Get alerted to advisories like this
OTWarden monitors CISA, BSI, Siemens, Rockwell and more — and emails you within 2 hours when your vendors are affected.
Start free trial Learn more