Facebook Google Plus Twitter LinkedIn YouTube RSS Menu Search Resource - BlogResource - WebinarResource - ReportResource - Eventicons_066 icons_067icons_068icons_069icons_070

Clorius Controls SCADA Information Disclosure

Medium

Synopsis

The remote SCADA device is affected by an information disclosure vulnerability

Description

PVS has detected a remote host obtaining the contents of 'html/info.htm' on the remote Clorius Controls ISC SCADA device. This page contains sensitive information such as the firmware version of the device, internal IP address and MAC address.

Solution

We are currently unaware of a solution for this problem. It is recommended that the device be isolated and protected from remote access by untrusted systems.