The affected device uses off-the-shelf software components that contain unpatched vulnerabilities. A malicious attacker with physical access to the affected device could exploit these vulnerabilities.
Workaround:
The product contains a component that cannot be updated or patched in order to remove vulnerabilities or significant bugs.
Link | Tags |
---|---|
https://us-cert.cisa.gov/ics/advisories/icsma-21-273-01 | third party advisory us government resource |