CISA: RCE-Fehler in Netzwerk-Switches beeinträchtigt kritische Infrastrukturen

Teilen:

U.S. cybersecurity agency CISA is warning about two critical vulnerabilities that allow authentication bypass and remote code execution in Optigo Networks ONS-S8 Aggregation Switch products used in critical infrastructure.

The flaws concern weak authentication problems, allowing bypassing of password requirements, and user input validation issues potentially leading to remote code execution, arbitrary file uploads, and directory traversal.

The device is used in critical infrastructure and manufacturing units worldwide, and considering that the flaws are remotely exploitable with low attack complexity, the risk is deemed very high.

Currently, no fixes are available, so users are recommended to apply suggested mitigations proposed by the Canadian vendor.

The first flaw is tracked as CVE-2024-41925 and is classified as a PHP Remote File Inclusion (RFI) problem stemming from incorrect validation or sanitation of user-supplied file paths.

An attacker could use this vulnerability to perform directory traversal, bypass authentication, and execute arbitrary remote code.

The second issue, tracked as CVE-2024-45367, is a weak authentication problem arising from improper password verification enforcement on the authentication mechanism.

Exploiting this enables an attacker to gain unauthorized access to the switches’ management interface, alter configurations, access sensitive data, or pivot to other network points.

Both problems were discovered by Claroty Team82 and are rated as critical, with a CVSS v4 score of 9.3. The vulnerabilities impact all ONS-S8 Spectra Aggregation Switch versions up to and including 1.3.7.

Securing the switches

While CISA has not seen signs of these flaws being actively exploited, system administrators are recommended to perform the following actions to mitigate the flaws:

  1. Isolate ONS-S8 management traffic by placing it on a dedicated VLAN to separate it from normal network traffic and reduce exposure.
  2. Connect to OneView only through a dedicated NIC on the BMS computer to ensure secure and exclusive access for OT network management.
  3. Configure a router firewall to whitelist specific devices, limiting OneView access only to authorized systems and preventing unauthorized access.
  4. Use a secure VPN for all connections to OneView to ensure encrypted communication and protect against potential interception.
  5. Follow CISA’s cybersecurity guidance by performing risk assessments, implementing layered security (defense-in-depth), and adhering to best practices for ICS security.

CISA recommends that organizations observing suspicious activity on these devices follow their breach protocols and report the incident to the cybersecurity agency so that it can be tracked and correlated with other incidents.

Bill Toulas

Kommentar verfassen

Deine E-Mail-Adresse wird nicht veröffentlicht. Erforderliche Felder sind mit * markiert

lade-bild
London, GB
12:37 pm, Juni 25, 2025
Wetter-Symbol 24°C
L: 23° | H: 26°
wenige Wolken
Luftfeuchtigkeit: 60 %
Druck: 1012 mb
Wind: 6 mph SW
Windböe: 0 mph
UV-Index: 0
Niederschlag: 0 mm
Wolken: 20%
Regen Chance: 0%
Sichtbarkeit: 10 km
Sonnenaufgang: 4:44 am
Sonnenuntergang: 9:21 pm
TäglichStündlich
Tägliche VorhersageStündliche Vorhersage
Today 10:00 pm
Wetter-Symbol
23° | 26°°C 0 mm 0% 8 mph 60 % 1012 mb 0 mm/h
Tomorrow 10:00 pm
Wetter-Symbol
18° | 25°°C 1 mm 100% 16 mph 82 % 1018 mb 0 mm/h
Fr. Juni 27 10:00 pm
Wetter-Symbol
14° | 27°°C 0.3 mm 30% 13 mph 79 % 1022 mb 0 mm/h
Sa. Juni 28 10:00 pm
Wetter-Symbol
17° | 29°°C 0 mm 0% 10 mph 79 % 1024 mb 0 mm/h
So. Juni 29 10:00 pm
Wetter-Symbol
21° | 34°°C 0 mm 0% 9 mph 76 % 1025 mb 0 mm/h
Today 1:00 pm
Wetter-Symbol
24° | 25°°C 0 mm 0% 6 mph 60 % 1012 mb 0 mm/h
Today 4:00 pm
Wetter-Symbol
25° | 28°°C 0 mm 0% 8 mph 54 % 1011 mb 0 mm/h
Today 7:00 pm
Wetter-Symbol
25° | 25°°C 0 mm 0% 8 mph 46 % 1009 mb 0 mm/h
Today 10:00 pm
Wetter-Symbol
22° | 22°°C 0 mm 0% 6 mph 53 % 1009 mb 0 mm/h
Tomorrow 1:00 am
Wetter-Symbol
20° | 20°°C 0.2 mm 20% 6 mph 74 % 1010 mb 0 mm/h
Tomorrow 4:00 am
Wetter-Symbol
18° | 18°°C 0 mm 0% 7 mph 82 % 1009 mb 0 mm/h
Tomorrow 7:00 am
Wetter-Symbol
19° | 19°°C 0 mm 0% 8 mph 78 % 1010 mb 0 mm/h
Tomorrow 10:00 am
Wetter-Symbol
23° | 23°°C 0 mm 0% 13 mph 55 % 1011 mb 0 mm/h
Name Preis24H (%)
Bitcoin(BTC)
€92,112.70
1.66%
Ethereum(ETH)
€2,082.98
0.30%
Fesseln(USDT)
€0.86
0.00%
XRP(XRP)
€1.89
0.46%
Solana(SOL)
€125.48
1.66%
USDC(USDC)
€0.86
0.01%
Dogecoin(DOGE)
€0.141717
0.78%
Shiba Inu(SHIB)
€0.000010
-0.38%
Pepe(PEPE)
€0.000009
0.63%
Nach oben scrollen