ICSA-24-228-10: Aveva historian server vulnerability
Affected Software
3 affected components
: AVEVA Historian Server: Version 2023 R2
: AVEVA Historian Server: Versions 2023 to 2023 P03
: AVEVA Historian Server: Versions 2020 to 2020 R2 SP1 P01
Event History
Jan 20, 2025
Advisory Published
11:48 AM
Frequently Asked Questions
1
What is the severity of ICSA-24-228-10?
The severity of ICSA-24-228-10 is high, indicating significant risk to the affected systems.
2
How do I fix ICSA-24-228-10?
To fix ICSA-24-228-10, update to the latest version of AVEVA Historian Server as specified in the advisory.
3
What vulnerabilities does ICSA-24-228-10 address?
ICSA-24-228-10 addresses vulnerabilities that may allow remote code execution and unauthorized access.
4
Which AVEVA Historian Server versions are affected by ICSA-24-228-10?
Affected versions include AVEVA Historian Server: Version 2023 R2 and earlier versions down to 2020 R2 SP1 P01.
5
Is there a workaround for ICSA-24-228-10 if I cannot update?
If updating is not feasible, consider implementing network segmentation to reduce exposure to the threat described in ICSA-24-228-10.