ZeroHour

Search: “Hitachi”

2 stories in the last 30d

Hitachi security advisory (AV26-893)

Canada's Cyber Centre flagged a Hitachi Cosminexus Component Container vulnerability and urged users to apply available updates.

The Canadian Centre for Cyber Security issued advisory AV26-893 stating that as of September 8, 2026, Hitachi is affected by a vulnerability in Cosminexus Component Container across multiple versions and models. The advisory points to Hitachi's vulnerability information page and recommends that users and administrators review the provided links and apply necessary updates when available.

Canadian Centre for Cyber Security · 8d agoAdvisory

ICS Patch Tuesday: Schneider Electric, Siemens Fix Critical Flaws

September ICS Patch Tuesday brings critical fixes from Schneider Electric, Siemens, and Aveva, including CVSS 9.2 authentication flaw CVE-2026-3869 in Modicon M580 controllers.

Schneider Electric's September advisories include a critical authentication vulnerability, CVE-2026-3869 with a CVSS score of 9.2, in Modicon M580 and Modicon M580 Safety controllers, plus high-severity bugs in PowerLogic T300 and EcoStruxure IT Data Center Expert. Siemens published nine new advisories, four rated critical across Reyrolle 7SR5, Open Interface Services, Industrial Edge Management, and SIMOVE Fleetmanager and SIPLANT, and began rolling out fixes for CVE-2026-31431, a 7.8-rated Linux kernel flaw enabling root shell access. Aveva disclosed four flaws in Pipeline Integrity Monitor's PIMBoards, including a hardcoded encryption key and MD5-hashed passwords, plus an unsafe deserialization issue in Enterprise SCADA. Rockwell Automation separately issued nine advisories covering RSLinx Classic and multiple controller products.