Plc Vulnerabilities
The latest Plc Vulnerabilities coverage — news, analysis, and updates from the WindowsNews.AI desk.
Urgent CISA Alert: Unpatched Modbus TCP Flaws Expose Delta DVP12SE PLCs to Remote Attacks
Federal cybersecurity authorities issued an urgent warning on June 30, 2026, regarding two critical vulnerabilities in Delta Electronics DVP12SE programmable logic controllers (PLCs) that allow...
CISA Warns of Critical Horner PLC Vulnerability CVE-2026-6284 with CVSS 9.1 Score
The Cybersecurity and Infrastructure Security Agency has issued an advisory about a critical vulnerability in Horner Automation's PLCs that exposes industrial control systems to password brute-force...
Siemens SIMATIC ICS Advisory ICSA-26-071-04: Critical Vulnerabilities Demand Immediate Industrial Response
Siemens has issued an urgent industrial cybersecurity advisory (ICSA-26-071-04) for its SIMATIC product line, detailing multiple critical vulnerabilities that could allow attackers to execute...
CVE-2025-10259: Critical DoS Vulnerability in Mitsubishi MELSEC iQ-F PLCs
A newly discovered critical vulnerability in Mitsubishi Electric's MELSEC iQ-F Series programmable logic controllers (PLCs) poses significant risks to industrial control systems worldwide. Tracked as...
AutomationDirect Productivity Vulnerabilities Expose PLCs to RCE Attacks
A coordinated set of high-severity vulnerabilities in AutomationDirect's Productivity Suite programming software and several Productivity-series PLCs has been disclosed, creating significant risks...
OpenPLC v3 ENIP DoS Vulnerability: Critical Patch Required for Industrial Systems
A critical denial-of-service vulnerability in OpenPLC v3's EtherNet/IP implementation threatens industrial automation systems worldwide, potentially causing unexpected PLC runtime crashes and...
Patch AutomationDirect CLICK PLUS PLCs Now to Block Remote Code Execution Attacks
The AutomationDirect CLICK PLUS family of programmable logic controllers (PLCs) has been thrust into the spotlight following a U.S. government advisory released on September 23, which details...
Mitsubishi Says No Fix Coming for MELSEC iQ-F Cleartext Credential Flaw (CVE-2025-7731)
A serious vulnerability in Mitsubishi Electric's MELSEC iQ-F series programmable logic controllers leaves credentials exposed in plaintext network traffic, and the vendor has declared it will not...
No Firmware Fix for MELSEC iQ-F Modbus Flaw CVE-2025-7405 – Windows & OT Teams Must Isolate Now
Mitsubishi Electric has notified customers that it will not release firmware updates to address a critical authentication bypass vulnerability in its MELSEC iQ-F series programmable logic controllers...
Mitsubishi MELSEC iQ-F PLC Vulnerability: How to Secure Industrial Automation Systems
Industrial automation systems worldwide face heightened risks as researchers uncover critical vulnerabilities in Mitsubishi Electric's MELSEC iQ-F series programmable logic controllers (PLCs). These...
CVE-2020-15782 in Festo Didactic CP/MPS systems enables remote code execution with a CVSS 9.8 rating.
Festo Didactic’s CP, MPS 200, and MPS 400 systems are widely recognized as advanced industrial automation training platforms, serving universities, technical schools, and industrial partners around...
CISA Sounds Alarm with Eight New ICS Vulnerability Advisories
CISA Sounds Alarm with Eight New ICS Vulnerability Advisories Washington D.C. - The Cybersecurity and Infrastructure Security Agency (CISA) issued a series of eight Industrial Control Systems (ICS)...