- Katılım
- 12 Şub 2024
- Mesajlar
- 37
Genel Bilgi
Bazı Loytec ürününlerinde güvenlik zafiyetleri tespit edilmiştir.
Etki
Mevcut güvenlik açıklıkları nedeniyle etkilenen sistemlerde tahribata yol açılması ihtimal dahilindedir. İlgili zafiyetlerin CVE kodları şöyledir:
CVE-2026-55732, CVE-2026-12496, CVE-2026-12502, CVE-2026-12503, CVE-2026-12504, CVE-2026-55728, CVE-2026-55729, CVE-2026-55730 ve CVE-2026-55731
Çözüm
Siber Güvenlik Başkanlığı, kullanıcı ve sistem yöneticilerine yayınlanan güvenlik önerisini inceleyerek gerekli güncellemeleri yapmalarını tavsiye etmektedir.
Kaynaklar
https://www.loytec.com/support/prod...et-crash-due-to-invalid-timesync-message-high
https://www.loytec.com/support/prod...ored-xxs-in-opc-xml-da-server-statistics-high
https://www.loytec.com/support/prod...estricted-service-account-password-reset-high
https://www.loytec.com/support/prod...002-symlink-following-in-chown-chmod-critical
https://www.loytec.com/support/prod...03-pam-passwordless-uid-0-authentication-high
https://www.loytec.com/support/prod...ck-buffer-overflow-in-cmd_ipaddr_conflict-low
https://www.loytec.com/support/prod...dentials-stored-in-browser-local-storage-high
https://www.loytec.com/support/prod...-0002-reflected-cross-site-scripting-xss-high
https://www.loytec.com/support/prod...op-condition-cwe-606-in-the-snmp-agent-medium
