Schneider Electric Modicon Network Managed Switches

Summary

Schneider Electric has identified a vulnerability in its Modicon Network Managed Switches related to the RADIUS protocol. This flaw could allow forgery attacks, potentially leading to denial of service and loss of confidentiality and integrity for connected devices.

IFF Assessment

FOE

The identified vulnerability poses a risk to the integrity and confidentiality of connected devices, making it bad news for defenders.

Severity

9.0 Critical

Defender Context

This vulnerability affects critical infrastructure sectors and underscores the importance of securing industrial control systems (ICS) and the network devices that support them. Defenders should prioritize applying the provided mitigations and monitoring for any signs of suspicious RADIUS activity.

Read Full Story →