ICSA-25-100-08
·
Published 2025-05-06
·
View on CISA ICS-CERT ↗
Subnet Solutions PowerSYSTEM Center
CVSS 6.2
MEDIUM
Risk Summary
Successful exploitation of these vulnerabilities could allow an attacker to cause a denial-of-service condition.
CVEs (2)
Remediations
- Subnet Solutions Inc. recommends users update PowerSYSTEM Center (PSC) to the latest versions:
- PSC 2020 Update 25
- PSC 2024
- If updating PSC is not possible, Subnet Solutions Inc recommends users apply the following mitigations to help reduce risk:
- Disable Notification Service, Email Dispatch Service, or the outgoing email server in Notifications/Settings.
- Configure PowerSYSTEM Center DCS network firewall to only allow connections to an approved and authorized email server.
- Manage administrator access to PowerSYSTEM Center DCS operating system.
- Monitor user activity records to ensure users are following acceptable usage policies of the application.
- For assistance with updating PSC, reach out directly to Subnet Solutions.
Affected Vendors
Subnet Solutions Inc.
Affected Products (1)
Subnet Solutions Inc.
·
PowerSYSTEM Center 2020
<=5.24.x
Affected Sectors
Critical Manufacturing, Energy
Get alerted to advisories like this
OTWarden monitors CISA, BSI, Siemens, Rockwell and more — and emails you within 2 hours when your vendors are affected.
Start free trial Learn more