Bulletins

CISA (ALL)
09/03/2026

View CSAF

Summary

Schneider Electric is aware of a vulnerability in the following products: The Easergy C5 is a scalable and interoperable bay controller, protection and merging unit for large and critical infrastructure electrical distribution systems. The Easergy MiCOM P30 is a family of multifunction protection and control …

CISA (ALL)
09/03/2026

View CSAF

Summary

Successful exploitation of these vulnerabilities could allow for an attacker to perform a man-in-the-middle (MitM) attack, cause a factory reset, wipe credentials, or retrieve sensitive information.

The following versions of Tycon Systems TPDIN-Monitor-WEB3 are affected:

  • TPDIN-Monitor-WEB3 <=2.2.9 (CVE-2026-77847, CVE-2026-82712, CVE-2026-82684)
CISA (ALL)
09/03/2026

View CSAF

Summary

Successful exploitation of this vulnerability could allow an attacker to take control of a high-privilege terminal during installation and run arbitrary commands.

The following versions of OPCFoundation OPC UA LocalDiscoveryServer (LDS) are affected:

  • UA-LDS-Installers <1.04.420 (CVE-2026-77477)
CISA (ALL)
09/03/2026

CISA and the Group of Seven (G7) Cyber Security Working Group released Preparing for the Post-Quantum Era: A Call to Action highlighting the urgent need for organizations and governments to begin transitioning to post-quantum cryptography (PQC) to protect sensitive data, authentication systems, and critical assets from emerging quantum computing …

CISA (ALL)
09/03/2026

View CSAF

Summary

Successful exploitation of this vulnerability could allow any authenticated user to create projects.

The following versions of Inductive Automation Ignition are affected:

  • Ignition <=8.1.53 (CVE-2026-77393)
CVSS Vendor Equipment Vulnerabilities
CISA (ALL)
09/03/2026

View CSAF

Summary

Successful exploitation of these vulnerabilities could result in an attacker accessing sensitive credentials, disrupting connected infrastructure, or manipulating physical equipment, which could present a physical safety risk.

The following versions of Tycon Systems TPDIN-Monitor-WEB2 (Update A) are affected:

  • TPDIN-Monitor-WEB2 <2.4.5 (CVE-2026-61884, CVE-2026-55985)
CISA (ALL)
09/03/2026

View CSAF

Summary

Successful exploitation of this vulnerability could crash the module. The device requires a restart to recover.

The following versions of Rockwell Automation 1756-ENBT Module are affected:

  • 1756-ENBT module vers:all/* (CVE-2025-10478)
CVSS Vendor Equipment
CISA (ALL)
09/03/2026

View CSAF

Summary

Successful exploitation of this vulnerability could give an attacker the ability to run any commands or code of the attacker's choice on a target machine at the logged-in user's permission level.

The following versions of Rockwell Automation ControlFLASH are affected:

  • ControlFLASH <=V15.07 …