Martem TELEM GW6/GWM versions prior to 2.0.87-4018403-k4 may allow unprivileged users to modify/upload a new system configuration or take the full control over the RTU using default credentials to connect to the RTU.
During installation, installed file permissions are set to allow anyone to modify those files.
The product initializes or sets a resource with a default that is intended to be changed by the administrator, but the default is not secure.
Link | Tags |
---|---|
https://ics-cert.us-cert.gov/advisories/ICSA-18-142-01 | mitigation third party advisory us government resource |
https://martem.eu/csa/Martem_CSA_Telem_1805183.pdf | mitigation vendor advisory |