You are here

Eaton 9000X Drive (ICSA-18-193-01) – Product Used in the Energy Sector

Eaton 9000X Drive (ICSA-18-193-01) – Product Used in the Energy Sector

Created: Thursday, July 12, 2018 - 14:24
Categories:
Cybersecurity

The NCCIC has released an advisory on a stack-based buffer overflow vulnerability in Eaton 9000X Drive. Versions 2.0.29 and prior are affected. Successful exploitation of this vulnerability may allow remote code execution. Eaton has released an update for 9000X Drive to address this vulnerability. The NCCIC also recommends a series of defensive measures to minimize the risk of exploitation of this vulnerability. NCCIC/ICS-CERT.