HomeSecurityVulnerabilities in Emerson Rosemount gas analysis equipment

Vulnerabilities in Emerson Rosemount gas analysis equipment

Multiple vulnerabilities have been revealed in Emerson Rosemount gas chromatography , which can be exploited by malicious actors to obtain sensitive information, launch a denial-of-service (DoS) attack, and execute arbitrary commands.

Emerson Rosemount

These flaws affect the GC370XA, GC700XA, and GC1500XA models and are found in versions 4.1.5 and earlier.

According to operational technology (OT) security firm Claroty, the vulnerabilities include two command injection flaws and two separate authentication and authorization vulnerabilities. These can be exploited by unauthorized users to perform a wide range of malicious actions, including authentication bypass and command injection.

See also: Is Meta's VR headset vulnerable to ransomware attacks? - Research

“Successful exploitation of these vulnerabilities could allow an unauthenticated hacker with network access to execute arbitrary commands, access sensitive information, cause DoS , and bypass authentication to gain administrator capabilities,” the U.S. Cybersecurity and Infrastructure Security Agency (CISA) said in an advisory published in January.

Chromatographs, which are used to perform critical gas measurements, can be configured through a software called MON. This software is also used to store critical data and generate reports such as chromatograms, alarm history, event logs and maintenance logs.

analysis of the firmware and proprietary protocol used for communications between the device and the Windows client called MON2020 revealed the following shortcomings:

CVE-2023-46687 (CVSS score: 9.8) – An unauthorized user with network access can execute arbitrary commands in a root environment from a remote computer.

CVE-2023-49716 (CVSS score: 6.9) - An authorized user with network access could execute arbitrary commands from a remote computer.

CVE-2023-51761 (CVSS score: 8.3) – An unauthorized user with network access could bypass authentication and gain administrator privileges by resetting the associated password

CVE-2023-43609 (CVSS score: 6.9) – An unauthorized user with network access could gain access to sensitive information or cause a DoS

Emerson Rosemount vulnerabilities

Read also: Vulnerabilities in Mailcow Server are exploited by hackers!

Emerson has released a firmware update [PDF] that fixes the vulnerabilities. The company also recommends that users follow cybersecurity best practices and ensure that affected products are not exposed directly to the internet.

The revelation came after Nozomi Networks revealed several vulnerabilities in the AiLux RTU62351B. These vulnerabilities could allow access to sensitive resources on the device, modification of its settings, and even execution of arbitrary commands with root privileges. These vulnerabilities were named I11USION.

Selecting the team

🔒 Protect your privacy with Proton VPN

Swiss VPN from the creators of Proton Mail — strict no-logs policy, strong encryption, and built-in NetShield that blocks ads, trackers, & malware.

  • ✔ No-logs, based in Switzerland (except 14-Eyes)
  • ✔ NetShield: blocks ads, trackers & malicious domains
  • ✔ Covers all devices — free version available
Try Proton VPN for free — 30-day money-back guarantee →

The link is an affiliate link — SecNews may receive a commission at no additional cost to you. It does not affect the independence of our article writing.

Security flaws have also been identified in Proges Plus temperature monitoring devices and their associated software, specifically Sensor Net Connect and Thermoscan IP. These flaws could allow administrator privileges on critical medical systems, allowing a malicious actor to manipulate system settings, install malware , and access data .

See more: MOVEit Transfer: Critical vulnerability exploited by hackers

These unpatched Emerson Rosemount vulnerabilities could also cause a DoS condition in medical monitoring infrastructure, leading to deterioration of temperature-sensitive drugs and vaccines.

Source: thehackernews

📧
Subscribe to the SecNews Newsletter

The most important Security & Technology news in your Inbox.

SecNews
SecNewshttps://www.secnews.gr
In a world without fences and walls, who needs Gates and Windows

SEARCH

FOLLOW US

📧
Newsletter SecNews
The most important Security & Technology news in your inbox.

LIVE NEWS