Security Advisory
The latest Security Advisory coverage — news, analysis, and updates from the WindowsNews.AI desk.
CISA Warns of Critical ICS Flaws in Siemens, Rockwell, Schneider Gear
The Cybersecurity and Infrastructure Security Agency (CISA) has released new advisories addressing critical vulnerabilities in Industrial Control Systems (ICS), underscoring the growing threats to...
Critical PCU400 Flaws Expose Power Grids to Remote Attacks, Patch Now
Hitachi Energy has recently disclosed multiple critical vulnerabilities affecting its PCU400 Protection and Control Units, raising alarms across industrial control systems (ICS) and energy sector...
CVE-2024-2461: High-Severity Path Traversal Hits Hitachi XMC20 Firmware Prior to v3.8.0
A critical vulnerability (CVE-2024-2461) has been identified in Hitachi Energy's XMC20 firmware, exposing industrial control systems to relative path traversal attacks. This security flaw, rated with...
Critical Rockwell PowerFlex 755 Vulnerability (CVE-2025-0631): Risks & Mitigation
Industrial control systems form the backbone of critical infrastructure worldwide, making the recent discovery of a critical vulnerability in Rockwell Automation's PowerFlex 755 AC drives...
CISA Advisory: Critical Path Traversal Vulnerability in Siemens SiPass Integrated Systems (CVE-2024-48510)
The Cybersecurity and Infrastructure Security Agency (CISA) has issued a critical advisory regarding a path traversal vulnerability (CVE-2024-48510) in Siemens SiPass integrated access control...
Siemens SiPass Zero-Day Lets Hackers Bypass Physical Security Systems
The Cybersecurity and Infrastructure Security Agency (CISA) has issued an urgent advisory regarding a critical vulnerability in Siemens SiPass Integrated access control systems. This flaw, if...
CISA Warns of Critical MITM Flaw in RadiAnt DICOM Viewer Update to 2024.1
The Cybersecurity and Infrastructure Security Agency (CISA) has issued a critical advisory regarding a severe vulnerability in the widely used RadiAnt DICOM Viewer, posing significant risks to...
Critical Siemens Vulnerability Puts Industrial Control Systems at Risk - What You Need to Know
A newly discovered critical vulnerability in Siemens industrial control systems has raised alarms across critical infrastructure sectors. The flaw, tracked as CVE-2023-XXXX, affects multiple Siemens...
CISA Advisory: Critical Vulnerabilities in mySCADA's myPRO Manager - Windows Users at Risk
The Cybersecurity and Infrastructure Security Agency (CISA) has issued an urgent advisory regarding multiple high-severity vulnerabilities in mySCADA's myPRO Manager, a widely used industrial control...
Siemens SIPROTEC 5 CVE-2023-30799: Patch now to block critical ICS remote code exploits.
A newly discovered vulnerability in Siemens SIPROTEC 5 devices poses significant risks to Windows-based industrial control systems (ICS). CVE-2023-30799, rated 8.1 on the CVSS scale, exposes critical...
VS Code JS Debug flaw CVE-2025-24042 lets attackers escalate privileges, patch now.
A critical security vulnerability (CVE-2025-24042) has been discovered in Microsoft's Visual Studio Code JS Debug extension, potentially allowing attackers to execute privilege escalation attacks....
Critical Office RCE flaw CVE-2025-21392: Patch now for full system risk
Critical Microsoft Office Security Advisory: RCE Vulnerability CVE-2025-21392 Revealed Microsoft has issued a critical security advisory regarding a newly discovered Remote Code Execution (RCE)...