ICS Advisory: EFACEC UC 500E

  • Post author:
  • Post category:

View CSAF 1. EXECUTIVE SUMMARY CVSS v3 6.3 ATTENTION: Exploitable remotely/low attack complexity Vendor: EFACEC Equipment: UC 500 Vulnerabilities: Cleartext Transmission of Sensitive Information, Open Redirect, Exposure of Sensitive Information to an Unauthorized Actor, Improper Access Control 2. RISK EVALUATION Successful exploitation of these vulnerabilities could allow an attacker to retrieve sensitive information, gain unauthorized

Continue ReadingICS Advisory: EFACEC UC 500E

ICS Advisory: EFACEC BCU 500

  • Post author:
  • Post category:

View CSAF 1. EXECUTIVE SUMMARY CVSS v3 9.6 ATTENTION: Exploitable remotely/low attack complexity Vendor: EFACEC Equipment: BCU 500 Vulnerabilities: Uncontrolled Resource Consumption, Cross-site Request Forgery 2. RISK EVALUATION Successful exploitation of these vulnerabilities could allow an attacker to cause a denial-of-service condition on the affected product or compromise the web application through a cross-site request

Continue ReadingICS Advisory: EFACEC BCU 500

ICS Advisory: Subnet Solutions Inc. PowerSYSTEM Center

  • Post author:
  • Post category:

View CSAF 1. EXECUTIVE SUMMARY CVSS v3 7.8 ATTENTION: Low attack complexity Vendor: Subnet Solutions Inc. Equipment: PowerSYSTEM Center Vulnerability: Unquoted Search Path or Element 2. RISK EVALUATION Successful exploitation of this vulnerability could result in an attacker achieving arbitrary code execution and privilege escalation through the unquoted service path. 3. TECHNICAL DETAILS 3.1 AFFECTED PRODUCTS The following versions of

Continue ReadingICS Advisory: Subnet Solutions Inc. PowerSYSTEM Center

EDPB reply to the Commission’s Initiative for a voluntary business pledge to simplify the management by consumers of cookies and personalised advertising choices – DRAFT PRINCIPLES (Ref. Ares(2023)6863760)

  • Post author:
  • Post category:

Search Search on the EDPB web site:

Continue ReadingEDPB reply to the Commission’s Initiative for a voluntary business pledge to simplify the management by consumers of cookies and personalised advertising choices – DRAFT PRINCIPLES (Ref. Ares(2023)6863760)

ESMA updates the parameters and methodology for MMF stress testing

  • Post author:
  • Post category:

The European Securities and Markets Authority (ESMA), the EU’s financial markets regulator and supervisor, has published the Final Report on the Guidelines on stress test scenarios under the Money Market Funds Regulation (MMFR). The Final Report combines an update of the methodology to implement the scenario related to the hypothetical changes in the level of

Continue ReadingESMA updates the parameters and methodology for MMF stress testing