ICSA-20-224-03: Tridium niagara vulnerability
Affected Software
2 affected components
Tridium Niagara: Versions 4.6.96.28, 4.7.109.20, 4.7.110.32, 4.8.0.110
Tridium Niagara Enterprise Security: Versions 2.4.31, 2.4.45, 4.8.0.35
Event History
Feb 24, 2025
Advisory Published
09:41 AM
Frequently Asked Questions
1
What is the severity of ICSA-20-224-03?
The severity of ICSA-20-224-03 is considered high due to potential unauthorized access to the affected systems.
2
How do I fix ICSA-20-224-03?
To fix ICSA-20-224-03, update the affected Tridium Niagara software to the latest patched versions provided by the vendor.
3
What systems are affected by ICSA-20-224-03?
ICSA-20-224-03 affects Tridium Niagara versions 4.6.96.28, 4.7.109.20, 4.7.110.32, 4.8.0.110 and Tridium Niagara Enterprise Security versions 2.4.31, 2.4.45, 4.8.0.35.
4
What kind of vulnerabilities does ICSA-20-224-03 address?
ICSA-20-224-03 addresses vulnerabilities related to improper input validation that could allow unauthorized access and provide elevated privileges.
5
Is there a timeline for the patching of ICSA-20-224-03?
The timeline for patching ICSA-20-224-03 varies by organization but immediate action is recommended to mitigate risks associated with the vulnerability.