Un nuevo aviso de SCI
Cybersecurity Classified by Officially
Abhinav Agarwal ha informado sobre una de las 3 vulnerabilidades de severidad alta publicadas por ABB que, en caso de ser explotadas, podrían permitir ejecutar código arbitrario, provocar una denegación de servicio (DoS) o elevar privilegios hasta tomar el control del sistema afectado.
ABB recomienda aplicar las siguientes actualizaciones:
Actualmente no existe una actualización que corrija la vulnerabilidad de PCM600. Como medida de mitigación, ABB recomienda configurar el servicio ABBPCMSchedulerService para que se ejecute con la misma cuenta de Windows utilizada para ejecutar PCM600:
Cuando esté habilitada la autenticación del IED, la herramienta Scheduler de PCM600 también deberá utilizar esa misma cuenta de Windows.
This is an extract. The publication continues at the source.
Read the original at the source: https://www.incibe.es/node/667853
Officially imported this from INCIBE’s own source and shows an extract. If you work there, claiming the profile and verifying the domain lets you choose to show the full text here.
Provenance
- Organization
- INCIBE — imported from official source
- Official source
- https://www.incibe.es/rss.xml RSS
- Imported
- September 29, 2026 11:30
- Versions
- 1 recorded
- Identity
667853 at https://www.incibe.es