ICSA-25-035-01
·
Published 2025-02-04
·
View on CISA ICS-CERT ↗
Western Telematic Inc NPS Series, DSM Series, CPM Series
CVSS 6.5
MEDIUM
Risk Summary
Successful exploitation of this vulnerability could allow an authenticated attacker to gain privileged access to files on the device's filesystem.
CVEs (1)
Remediations
- Western Telematic Inc reports this issue was discovered and patched in 2020. Western Telematic Inc recommends users follow best practices and update to the latest version.
- For DSM/CPM units: Update to 8.06
- For NPS units: Update 4.02
- Ensure the default passwords are changed prior to deployment
Affected Vendors
Western Telematic Inc
Affected Products (3)
Western Telematic Inc
·
Network Power Switch (NPS Series)
<=Firmware_6.62
Western Telematic Inc
·
Console Server (DSM Series)
<=Firmware_6.62
Western Telematic Inc
·
Console Server + PDU Combo Unit (CPM Series)
<=Firmware_6.62
Affected Sectors
Communications
Get alerted to advisories like this
OTWarden monitors CISA, BSI, Siemens, Rockwell and more — and emails you within 2 hours when your vendors are affected.
Start free trial Learn more