You are here

ICONICS GENESIS64, GENESIS32 (ICSA-20-170-03)

ICONICS GENESIS64, GENESIS32 (ICSA-20-170-03)

Created: Thursday, June 18, 2020 - 13:45
Categories:
Cybersecurity

CISA has published an advisory on out-of-bounds write, deserialization of untrusted data, and code injection vulnerabilities in ICONICS GENESIS64, GENESIS32 The following products using GenBroker64, Platform Services, Workbench, FrameWorX Server; v10.96 and prior are affected: GENESIS64, Hyper Historian, AnalytiX, and MobileHMI. The following products using GenBroker32 v9.5 and prior are affected: GENESIS32 and BizViz. Successful exploitation of these vulnerabilities may allow remote code execution or denial of service. ICONICS is releasing a patch for the affected products. CISA also recommends a series of measures to mitigate the vulnerabilities. Read the advisory at CISA.