<?xml version="1.0" encoding="UTF-8" ?><!-- generator=Zoho Sites --><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/"><channel><atom:link href="https://www.fortress-cybersecurity.fr/blogs/feed" rel="self" type="application/rss+xml"/><title>Site Institutionnel - Blog</title><description>Site Institutionnel - Blog</description><link>https://www.fortress-cybersecurity.fr/blogs</link><lastBuildDate>Mon, 08 Jun 2026 03:36:37 +0200</lastBuildDate><generator>http://zoho.com/sites/</generator><item><title><![CDATA[Bulletin cybersec indus hebdo 26.S23]]></title><link>https://www.fortress-cybersecurity.fr/blogs/post/bulletin-cybersec-indus-hebdo-26.s23</link><description><![CDATA[<img align="left" hspace="5" src="https://www.fortress-cybersecurity.fr/files/manufacturing.jpg"/> ENISA NIS360 2026 Le rapport ENISA NIS360 2026 évalue la maturité et la criticité cyber des secteurs essentiels couverts par NIS2. La maturité prog ]]></description><content:encoded><![CDATA[<div class="zpcontent-container blogpost-container "><div data-element-id="elm_OIHw3lK1R0uMD1sBLIHwRg" data-element-type="section" class="zpsection "><style type="text/css"></style><div class="zpcontainer-fluid zpcontainer"><div data-element-id="elm_1ydeJqOcTyiM7nuV2rOklQ" data-element-type="row" class="zprow zprow-container zpalign-items- zpjustify-content- " data-equal-column=""><style type="text/css"></style><div data-element-id="elm_mz-pWBAHSAqarVeQFmIgeA" data-element-type="column" class="zpelem-col zpcol-12 zpcol-md-12 zpcol-sm-12 zpalign-self- "><style type="text/css"> [data-element-id="elm_mz-pWBAHSAqarVeQFmIgeA"].zpelem-col{ border-radius:1px; } @media (max-width: 767px) { [data-element-id="elm_mz-pWBAHSAqarVeQFmIgeA"].zpelem-col{ border-radius:1px; } } @media all and (min-width: 768px) and (max-width:991px){ [data-element-id="elm_mz-pWBAHSAqarVeQFmIgeA"].zpelem-col{ border-radius:1px; } } </style><div data-element-id="elm_M7cAp-bDTcCbA9gTt6JiPA" data-element-type="heading" class="zpelement zpelem-heading "><style> [data-element-id="elm_M7cAp-bDTcCbA9gTt6JiPA"].zpelem-heading { border-radius:1px; } </style><h2 class="zpheading zpheading-align-center zpheading-align-mobile-center zpheading-align-tablet-center " data-editor="true">Les news relatives à la cybersécurité des installations industrielles</h2></div>
<div data-element-id="elm_sH2l7vQ8h3FUwPV13-l42A" data-element-type="text" class="zpelement zpelem-text "><style></style><div class="zptext zptext-align-left zptext-align-mobile-left zptext-align-tablet-left " data-editor="true"><p style="font-weight:bold;"></p><div><p style="font-weight:bold;"></p><div><p style="font-weight:bold;"></p><div><p style="font-weight:bold;"></p><b></b></div>
</div></div><span><span><p style="font-weight:bold;"></p><div><p style="font-weight:bold;"></p><div><p style="font-weight:bold;"></p><div><p style="font-weight:bold;"></p><b></b></div>
</div></div><p><span><span></span></span></p><p></p><div><p style="font-weight:bold;"></p><div><p style="font-weight:bold;"></p><div><p style="font-weight:bold;"></p><div><p style="font-weight:bold;"></p><b></b></div>
</div></div><p style="font-weight:bold;"></p><div><p style="font-weight:bold;"></p><div><p style="font-weight:bold;"></p><div><p style="font-weight:bold;"></p><b></b></div>
</div></div><p></p><p></p><div><p style="font-weight:bold;"><strong>ENISA NIS360 2026</strong></p><p>Le rapport ENISA NIS360 2026 évalue la maturité et la criticité cyber des secteurs essentiels couverts par NIS2. La maturité progresse globalement dans l’UE, portée par la réglementation, les investissements et une meilleure coopération, avec la banque, l’électricité et les télécommunications toujours parmi les secteurs les plus matures. Mais les écarts restent importants pour certain secteurs : le transport, la gestion des eaux potables et des eaux usées entrent désormais dans la “zone de risque”, car leur criticité dépasse leur niveau de préparation.</p><p><a href="https://www.enisa.europa.eu/sites/default/files/2026-05/ENISA%20NIS360%202026.pdf">https://www.enisa.europa.eu/sites/default/files/2026-05/ENISA%20NIS360%202026.pdf</a><br></p><p><br></p><p><strong>La gouvernance, point faible central du risque cyber industriel</strong><br></p><p>Cet article du World Economic Forum explique que la cybersécurité industrielle n’est plus seulement un sujet technique, mais un problème de gouvernance. Avec la convergence IT/OT, les incidents peuvent dépasser une usine ou une entreprise et provoquer des effets en chaîne sur les fournisseurs, les infrastructures et l’économie. Le texte souligne un manque de pilotage : seuls 16 % des organisations industrielles remontent les sujets cyber OT au conseil d’administration, 20 % disposent d’équipes cyber OT dédiées et 36 % placent clairement cette responsabilité sous le CISO. L'article propose trois priorités&nbsp;: clarifier les responsabilités, raisonner par scénarios de risque et recourir à des validations indépendantes.<br></p><p><a href="https://www.weforum.org/stories/2026/06/industrial-cyber-risk-governance-challenge/">https://www.weforum.org/stories/2026/06/industrial-cyber-risk-governance-challenge/</a><br></p><p><br></p><p><strong>CISA et ses partenaires appellent à un renforcement des <span>système de jaugeage automatique des réservoirs (ATG)</span></strong><br></p><p><span>CISA, la NSA et plusieurs agences américaines alertent sur des attaques visant les systèmes Automatic Tank Gauge, utilisés pour surveiller à distance les niveaux de carburant, de liquides, la température et les fuites de ces réservoirs. Les acteurs de la menace cyber observés compromettent des systèmes ATG exposés à internet puis les modifient via une exécution de commandes. Ainsi, des dommages physiques peuvent être causés au tank, désactiver les alertes du système ou modifier le fonctionnement du système. Les recommandations sont de déconnecter ces équipements d’internet, utiliser des mots de passe forts, appliquer les correctifs, activer le MFA et surveiller les accès suspects.</span></p><p><a href="https://www.cisa.gov/sites/default/files/2026-06/fact-sheet-cisa-and-partners-urge-hardening-automatic-tank-gauge-systems_508c.pdf">https://www.cisa.gov/sites/default/files/2026-06/fact-sheet-cisa-and-partners-urge-hardening-automatic-tank-gauge-systems_508c.pdf</a><br></p><p></p><div><p><span style="font-weight:bold;"><span>Vulnerability Corner :</span></span><span>&nbsp;</span></p></div>
<div><p><span>Liste des Known Exploited Vulnerabilities (KEV) publiés par l'agence de cybersécurité américaine CISA la semaine dernière :&nbsp;&nbsp;</span></p></div>
<p></p><table border="1"><tbody><tr><td style="vertical-align:top;width:196px;"><div><p><strong>CVE&nbsp;</strong></p></div></td><td style="vertical-align:top;width:167.578px;"><div><p><strong>Vendor&nbsp;</strong></p></div></td><td style="vertical-align:top;width:160.531px;"><div><p><strong>Product&nbsp;</strong></p></div></td><td style="vertical-align:top;width:756.469px;" class="zp-selected-cell"><div><p><strong>Liens&nbsp;</strong></p></div></td></tr><tr><td style="vertical-align:top;width:196px;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-0492" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2022-0492</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:167.578px;"><div><p>Linux&nbsp;</p></div></td><td style="vertical-align:top;width:160.531px;"><div><p>Kernel&nbsp;</p></div></td><td style="vertical-align:top;width:756.469px;"><div><p><a href="https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=24f6008564183aa120d07c03d9289519c2fe02af%2C%20https%3A%2F%2Fnvd.nist.gov%2Fvuln%2Fdetail%2FCVE-2022-0492%2C%20https%3A%2F%2Fwww.kernel.org%2F" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=24f6008564183aa120d07c03d9289519c2fe02af, https://nvd.nist.gov/vuln/detail/CVE-2022-0492, https://www.kernel.org/</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:196px;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-21182" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2024-21182</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:167.578px;"><div><p>Oracle&nbsp;</p></div></td><td style="vertical-align:top;width:160.531px;"><div><p>WebLogic Server&nbsp;</p></div></td><td style="vertical-align:top;width:756.469px;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-21182%2C%20https%3A//www.oracle.com/security-alerts/cpujul2024.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">https://nvd.nist.gov/vuln/detail/CVE-2024-21182, https://www.oracle.com/security-alerts/cpujul2024.html</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:196px;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-48595" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2025-48595</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:167.578px;"><div><p>Android&nbsp;</p></div></td><td style="vertical-align:top;width:160.531px;"><div><p>Framework&nbsp;</p></div></td><td style="vertical-align:top;width:756.469px;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-48595%2C%20https%3A//source.android.com/docs/security/bulletin/2026/2026-06-01" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">https://nvd.nist.gov/vuln/detail/CVE-2025-48595, https://source.android.com/docs/security/bulletin/2026/2026-06-01</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:196px;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-45247" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2026-45247</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:167.578px;"><div><p>Mirasvit&nbsp;</p></div></td><td style="vertical-align:top;width:160.531px;"><div><p>Mirasvit Full Page Cache Warmer&nbsp;</p></div></td><td style="vertical-align:top;width:756.469px;"><div><p><a href="https://mirasvit.com/package/changelog/?package=mirasvit%2Fmodule-cache-warmer%2C%20https%3A%2F%2Fnvd.nist.gov%2Fvuln%2Fdetail%2FCVE-2026-45247" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">https://mirasvit.com/package/changelog/?package=mirasvit/module-cache-warmer, https://nvd.nist.gov/vuln/detail/CVE-2026-45247</span></a>&nbsp;</p></div></td></tr></tbody></table><div></div>
<p></p><div><p><span>&nbsp;</span></p></div><div><p><span style="font-weight:bold;"><span>Vulnérabilités de composants de systèmes industriels :&nbsp;</span></span><span>&nbsp;</span></p></div>
<div><p><span>Source : ICS Advisory Project dashboard https://lookerstudio.google.com/u/0/reporting/f0d99ae7-c75b-4fdd-9951-8ecada5aee5e/page/G1klC&nbsp;&nbsp;</span></p></div>
<p></p><table border="1"><tbody><tr><td style="vertical-align:top;width:82px;"><div><p><strong>Vendor&nbsp;</strong></p></div></td><td style="vertical-align:top;width:82px;"><div><p><strong>Product&nbsp;</strong></p></div></td><td style="vertical-align:top;width:82px;"><div><p><strong>Critical&nbsp;</strong></p></div></td><td style="vertical-align:top;width:82px;"><div><p><strong>High&nbsp;</strong></p></div></td><td style="vertical-align:top;width:82px;"><div><p><strong>Medium&nbsp;</strong></p></div></td><td style="vertical-align:top;width:82px;"><div><p><strong>Low&nbsp;</strong></p></div></td><td style="vertical-align:top;width:82px;" class="zp-selected-cell"><div><p><strong>Total&nbsp;</strong></p></div></td></tr><tr><td style="vertical-align:top;width:82px;"><div><p>NAVTOR&nbsp;</p></div></td><td style="vertical-align:top;width:82px;"><div><p>NavBox&nbsp;</p></div></td><td style="vertical-align:top;width:82px;"><div><p>0&nbsp;</p></div></td><td style="vertical-align:top;width:82px;"><div><p>0&nbsp;</p></div></td><td style="vertical-align:top;width:82px;"><div><p>1&nbsp;</p></div></td><td style="vertical-align:top;width:82px;"><div><p>0&nbsp;</p></div></td><td style="vertical-align:top;width:82px;"><div><p>1&nbsp;</p></div></td></tr></tbody></table><div></div>
<p></p><div><p><span>&nbsp;</span></p></div><div><p><span>&nbsp;</span></p></div>
<div><p><span>Liste complète triée par CVSSv3 Score :&nbsp;</span></p></div><p></p><table border="1"><tbody><tr><td style="vertical-align:top;width:72px;"><div><p><strong>Vendor&nbsp;</strong></p></div></td><td style="vertical-align:top;width:72px;"><div><p><strong>Product&nbsp;</strong></p></div></td><td style="vertical-align:top;width:72px;"><div><p><strong>CVE&nbsp;</strong></p></div></td><td style="vertical-align:top;width:72px;"><div><p><strong>CVSSv3 Score&nbsp;</strong></p></div></td><td style="vertical-align:top;width:72px;"><div><p><strong>CVSSv3 Severity&nbsp;</strong></p></div></td><td style="vertical-align:top;width:72px;"><div><p><strong>EPSS&nbsp;</strong></p></div></td><td style="vertical-align:top;width:72px;"><div><p><strong>Percentile&nbsp;</strong></p></div></td><td style="vertical-align:top;width:72px;" class="zp-selected-cell"><div><p><strong>CWE&nbsp;</strong></p></div></td></tr><tr><td style="vertical-align:top;width:72px;"><div><p>NAVTOR&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>NavBox&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-21404" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2026-21404</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>6.3&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>MEDIUM&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>0.017%&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>4.472%&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p><a href="https://cwe.mitre.org/data/definitions/798.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-798</span></a>&nbsp;</p></div></td></tr></tbody></table><div><div></div>
<div><p><span>&nbsp;</span></p></div></div><p><br></p></div></div></span></span><p></p><div><div><div><p><span style="font-weight:bold;">Actualité Fortress Cybersecurity&nbsp;</span><span><span>&nbsp;</span>&nbsp;</span></p></div>
<div><p><a href="https://www.fortress-cybersecurity.fr/blogs/post/bilan-des-known-exploited-vulnerabilities-du-mois-d-avril-2026" target="_blank" rel="noreferrer noopener"><span>- Bilan des Known Exploited Vulnerabilities du mois d'avril 2026</span></a><span>&nbsp;</span></p></div>
<div><p><a href="https://www.fortress-cybersecurity.fr/blogs/post/nouveau-guide-de-classification-des-actifs-industriels-publi%C3%A9-par-l-anssi" target="_blank" rel="noreferrer noopener"><span>- Nouveau guide de classification des actifs industriels publié par l'ANSSI</span></a><span>&nbsp;</span></p></div>
<div><p><a href="https://www.fortress-cybersecurity.fr/blogs/post/calendrier-2026-de-nos-webinaires-d%C3%A9di%C3%A9s-%C3%A0-la-cybers%C3%A9curit%C3%A9-des-installations-industrielles" target="_blank" rel="noreferrer noopener"><span>Nos prochains webinaires dédiés à la cybersécurité des installations industrielles :</span></a><span>&nbsp;</span></p></div>
<div><p>- 2 juillet 2026 : Gérer les vulnérabilités en environnement industriel​​, inscription <a href="https://events.teams.microsoft.com/event/e2cac6c8-9560-48d5-8736-25da3b084041%40a43cc6b0-e19e-4635-966f-1f00bc18b9ac" target="_blank" rel="noreferrer noopener">lien</a>&nbsp;</p></div>
<div><p><span>- 3 septembre 2026 : Mettre en place le plan de contrôle cyber de ses installations industriels​​, inscription </span><a href="https://events.teams.microsoft.com/event/1960fe77-9d3a-4f18-a7a9-70528a5e7151%40a43cc6b0-e19e-4635-966f-1f00bc18b9ac" target="_blank" rel="noreferrer noopener"><span>lien</span></a><span>&nbsp;</span></p></div>
<div><p><span>- 1 octobre 2026 : Sécuriser les accès à distance et de télémaintenance des actifs industriels, inscription </span><a href="https://events.teams.microsoft.com/event/c9ba377e-5c27-4e4d-bffb-8ddc3a7856be%40a43cc6b0-e19e-4635-966f-1f00bc18b9ac" target="_blank" rel="noreferrer noopener"><span>lien</span></a><span>&nbsp;</span></p></div>
<div><p><span>- 5 novembre 2026 : Protéger les endpoints dans les zones industrielles, inscription </span><a href="https://events.teams.microsoft.com/event/f079bb46-c1ad-4274-b0d3-e32db7d3b4fc%40a43cc6b0-e19e-4635-966f-1f00bc18b9ac" target="_blank" rel="noreferrer noopener"><span>lien</span></a><span>&nbsp;</span></p></div>
<div><p><span>- 3 décembre 2026 : Protéger les réseaux mobiles privés 5G, inscription </span><a href="https://events.teams.microsoft.com/event/56995822-3f07-404d-b2dc-f6fb7727ad50%40a43cc6b0-e19e-4635-966f-1f00bc18b9ac" target="_blank" rel="noreferrer noopener"><span>lien</span></a><span>&nbsp;</span></p></div>
</div><br><p></p></div><p style="font-weight:bold;"></p><p></p><div><p></p></div>
<p></p><p><br></p><p></p><div><p></p></div></div></div></div></div></div></div></div>]]></content:encoded><pubDate>Sun, 07 Jun 2026 21:18:51 +0200</pubDate></item><item><title><![CDATA[Bulletin cybersec indus hebdo 26.S22]]></title><link>https://www.fortress-cybersecurity.fr/blogs/post/bulletin-cybersec-indus-hebdo-26.s22</link><description><![CDATA[<img align="left" hspace="5" src="https://www.fortress-cybersecurity.fr/files/manufacturing.jpg"/> Reconstruire l'attaque du ransomware Akira avec uniquement les logs périmétriques et des systèmes Ce billet du SANS ISC reconstitue une chaîne d’at ]]></description><content:encoded><![CDATA[<div class="zpcontent-container blogpost-container "><div data-element-id="elm_OIHw3lK1R0uMD1sBLIHwRg" data-element-type="section" class="zpsection "><style type="text/css"></style><div class="zpcontainer-fluid zpcontainer"><div data-element-id="elm_1ydeJqOcTyiM7nuV2rOklQ" data-element-type="row" class="zprow zprow-container zpalign-items- zpjustify-content- " data-equal-column=""><style type="text/css"></style><div data-element-id="elm_mz-pWBAHSAqarVeQFmIgeA" data-element-type="column" class="zpelem-col zpcol-12 zpcol-md-12 zpcol-sm-12 zpalign-self- "><style type="text/css"> [data-element-id="elm_mz-pWBAHSAqarVeQFmIgeA"].zpelem-col{ border-radius:1px; } @media (max-width: 767px) { [data-element-id="elm_mz-pWBAHSAqarVeQFmIgeA"].zpelem-col{ border-radius:1px; } } @media all and (min-width: 768px) and (max-width:991px){ [data-element-id="elm_mz-pWBAHSAqarVeQFmIgeA"].zpelem-col{ border-radius:1px; } } </style><div data-element-id="elm_M7cAp-bDTcCbA9gTt6JiPA" data-element-type="heading" class="zpelement zpelem-heading "><style> [data-element-id="elm_M7cAp-bDTcCbA9gTt6JiPA"].zpelem-heading { border-radius:1px; } </style><h2 class="zpheading zpheading-align-center zpheading-align-mobile-center zpheading-align-tablet-center " data-editor="true">Les news relatives à la cybersécurité des installations industrielles</h2></div>
<div data-element-id="elm_sH2l7vQ8h3FUwPV13-l42A" data-element-type="text" class="zpelement zpelem-text "><style></style><div class="zptext zptext-align-left zptext-align-mobile-left zptext-align-tablet-left " data-editor="true"><p style="font-weight:bold;"></p><div><p style="font-weight:bold;"></p><div><p style="font-weight:bold;"></p><div><p style="font-weight:bold;"></p><b></b></div>
</div></div><span><span><p style="font-weight:bold;"></p><div><p style="font-weight:bold;"></p><div><p style="font-weight:bold;"></p><div><p style="font-weight:bold;"></p><b></b></div>
</div></div><p><span><span></span></span></p><p></p><div><p style="font-weight:bold;"></p><div><p style="font-weight:bold;"></p><div><p style="font-weight:bold;"></p><div><p style="font-weight:bold;"></p><b></b></div>
</div></div><p style="font-weight:bold;"></p><div><p style="font-weight:bold;"></p><div><p style="font-weight:bold;"></p><div><p style="font-weight:bold;"></p><b></b></div>
</div></div><p></p><p></p><div><p style="font-weight:bold;"><strong>Reconstruire l'attaque du ransomware Akira avec uniquement les logs périmétriques et des systèmes</strong></p><p>Ce billet du SANS ISC reconstitue une chaîne d’attaque Akira à partir de deux sources souvent sous-exploitées : les logs SSLVPN du pare-feu et les journaux Windows EVTX. L’attaque Akira aurait pu être identifiée avant le chiffrement. La chaîne d’attaque reste assez classique : brute force sur l’accès VPN, compte local sans MFA, Kerberoasting, mouvements latéraux via RDP, effacement des journaux et suppression des shadow copies.&nbsp;<span>Le problème n’est pas toujours l’absence de données, mais leur conservation, leur corrélation et leur lecture au bon moment.</span></p><p><span><a href="https://isc.sans.edu/diary/rss/33024">https://isc.sans.edu/diary/rss/33024</a><br></span></p><p><br></p><p><span style="font-weight:bold;font-size:16px;"><strong><span>11e rapport annuel sur l'état de la fabrication intelligente</span></strong></span></p><p><span>L’étude de Rockwell Automation est basée sur 1 560 répondants dans 17 pays,</span>&nbsp;59 % utilisent déjà des technologies de smart manufacturing et 90 % jugent la transformation digitale indispensable pour rester compétitif. La cybersécurité devient donc un enjeu central <span>car 46 % des fabricants ont subi au moins un incident cyber l’an dernier. Cela est dû au fait que l</span>es usines sont de plus en plus connectée et la présence de l'IA dans les opérations de qualité, d'optimisation&nbsp;&nbsp;<br></p><p><span><a href="https://www.rockwellautomation.com/en-us/capabilities/digital-transformation/state-of-smart-manufacturing.html">https://www.rockwellautomation.com/en-us/capabilities/digital-transformation/state-of-smart-manufacturing.html</a><br></span></p><div><h1></h1></div>
<p><span><br></span></p><p><span></span></p><p style="font-weight:bold;">Une approche Zero Trust pour sécuriser les environnements OT fédéraux<br></p><p>Claroty et Corsha annoncent une intégration visant à mieux protéger les systèmes des agences fédérales américaines. L’idée est de combiner la visibilité OT de Claroty CTD avec l’authentification dynamique des identités de Corsha, afin de contrôler chaque connexion machine-à-machine. Le but étant de passer d’une simple surveillance OT à segmenter dynamiquement le trafic, de bloquer les communications suspectes, de limiter les mouvements latéraux et de prévenir en temps réel la propagation de ransomwares ou l’usage abusif d’identifiants.<br></p><p><a href="https://claroty.com/press-releases/claroty-and-corsha-partner-to-bring-holistic-cyber-physical-systems-protection-to-federal-operational-environments">https://claroty.com/press-releases/claroty-and-corsha-partner-to-bring-holistic-cyber-physical-systems-protection-to-federal-operational-environments</a></p><p></p><div><div><p><span style="font-weight:bold;"><span>Vulnerability Corner :</span></span><span>&nbsp;</span></p></div>
<div><p><span>Liste des Known Exploited Vulnerabilities (KEV) publiés par l'agence de cybersécurité américaine CISA la semaine dernière :</span></p><table border="1"><tbody><tr><td style="vertical-align:top;width:179px;"><div><p><strong>CVE&nbsp;</strong></p></div></td><td style="vertical-align:top;width:136.906px;"><div><p><strong>Vendor&nbsp;</strong></p></div></td><td style="vertical-align:top;width:221.094px;"><div><p><strong>Product&nbsp;</strong></p></div></td><td style="vertical-align:top;width:700.578px;"><div><p><strong>Liens&nbsp;</strong></p></div></td></tr><tr><td style="vertical-align:top;width:179px;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-45321" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2026-45321</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:136.906px;"><div><p>TanStack&nbsp;</p></div></td><td style="vertical-align:top;width:221.094px;"><div><p>TanStack&nbsp;</p></div></td><td style="vertical-align:top;width:700.578px;"><div><p><a href="https://github.com/TanStack/router/security/advisories/GHSA-g7cv-rxg3-hmpx%2C%20https%3A//nvd.nist.gov/vuln/detail/CVE-2026-45321" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">https://github.com/TanStack/router/security/advisories/GHSA-g7cv-rxg3-hmpx, https://nvd.nist.gov/vuln/detail/CVE-2026-45321</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:179px;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-48027" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2026-48027</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:136.906px;" class="zp-selected-cell"><div><p>Nx&nbsp;</p></div></td><td style="vertical-align:top;width:221.094px;"><div><p>Nx Console&nbsp;</p></div></td><td style="vertical-align:top;width:700.578px;"><div><p><a href="https://github.com/nrwl/nx-console/security/advisories/GHSA-c9j4-9m59-847w%2C%20https%3A//nvd.nist.gov/vuln/detail/CVE-2026-48027" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">https://github.com/nrwl/nx-console/security/advisories/GHSA-c9j4-9m59-847w, https://nvd.nist.gov/vuln/detail/CVE-2026-48027</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:179px;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-48172" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2026-48172</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:136.906px;"><div><p>LiteSpeed&nbsp;</p></div></td><td style="vertical-align:top;width:221.094px;"><div><p>cPanel Plugin&nbsp;</p></div></td><td style="vertical-align:top;width:700.578px;"><div><p><a href="https://blog.litespeedtech.com/2026/05/21/security-update-for-litespeed-cpanel-plugin/%2C%20https%3A//nvd.nist.gov/vuln/detail/CVE-2026-48172" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">https://blog.litespeedtech.com/2026/05/21/security-update-for-litespeed-cpanel-plugin/, https://nvd.nist.gov/vuln/detail/CVE-2026-48172</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:179px;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-8398" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2026-8398</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:136.906px;"><div><p>Daemon&nbsp;</p></div></td><td style="vertical-align:top;width:221.094px;"><div><p>Daemon Tools Lite&nbsp;</p></div></td><td style="vertical-align:top;width:700.578px;"><div><p><a href="https://blog.daemon-tools.cc/post/security-incident%2C%20https%3A//nvd.nist.gov/vuln/detail/CVE-2026-8398" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">https://blog.daemon-tools.cc/post/security-incident, https://nvd.nist.gov/vuln/detail/CVE-2026-8398</span></a>&nbsp;</p></div></td></tr></tbody></table><div></div>
<p>&nbsp;</p></div></div></div></div></span><div><div></div><div><p><span style="font-weight:bold;"><span>Vulnérabilités de composants de systèmes industriels :&nbsp;</span></span><span>&nbsp;</span></p></div>
<div><table border="1"><tbody><tr><td style="vertical-align:top;width:201px;"><div><p><strong>Vendor&nbsp;</strong></p></div></td><td style="vertical-align:top;width:580px;"><div><p><strong>Product&nbsp;</strong></p></div></td><td style="vertical-align:top;width:114.766px;"><div><p><strong>Critical&nbsp;</strong></p></div></td><td style="vertical-align:top;width:115.688px;"><div><p><strong>High&nbsp;</strong></p></div></td><td style="vertical-align:top;width:124.703px;"><div><p><strong>Medium&nbsp;</strong></p></div></td><td style="vertical-align:top;width:96.2969px;"><div><p><strong>Low&nbsp;</strong></p></div></td><td style="vertical-align:top;width:76.4062px;" class="zp-selected-cell"><div><p><strong>Total&nbsp;</strong></p></div></td></tr><tr><td style="vertical-align:top;width:201px;"><div><p>Danelec&nbsp;</p></div></td><td style="vertical-align:top;width:580px;"><div><p>MacGregor Voyage Data Recorder (VDR) G4e&nbsp;</p></div></td><td style="vertical-align:top;width:114.766px;"><div><p>0&nbsp;</p></div></td><td style="vertical-align:top;width:115.688px;"><div><p>2&nbsp;</p></div></td><td style="vertical-align:top;width:124.703px;"><div><p><br></p><p>3&nbsp;</p></div></td><td style="vertical-align:top;width:96.2969px;"><div><p>0&nbsp;</p></div></td><td style="vertical-align:top;width:76.4062px;"><div><p>5&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:201px;"><div><p>XCharge&nbsp;</p></div></td><td style="vertical-align:top;width:580px;"><div><p>C6&nbsp;</p></div></td><td style="vertical-align:top;width:114.766px;"><div><p>1&nbsp;</p></div></td><td style="vertical-align:top;width:115.688px;"><div><p>2&nbsp;</p></div></td><td style="vertical-align:top;width:124.703px;"><div><p>0&nbsp;</p></div></td><td style="vertical-align:top;width:96.2969px;"><div><p>0&nbsp;</p></div></td><td style="vertical-align:top;width:76.4062px;"><div><p>3&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:201px;"><div><p>CP Plus&nbsp;</p></div></td><td style="vertical-align:top;width:580px;"><div><p>CP-UNR-108F1 Hardware&nbsp;</p></div></td><td style="vertical-align:top;width:114.766px;"><div><p>0&nbsp;</p></div></td><td style="vertical-align:top;width:115.688px;"><div><p>1&nbsp;</p></div></td><td style="vertical-align:top;width:124.703px;"><div><p>0&nbsp;</p></div></td><td style="vertical-align:top;width:96.2969px;"><div><p>0&nbsp;</p></div></td><td style="vertical-align:top;width:76.4062px;"><div><p>1&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:201px;"><div><p>Jinan USR IOT Technology Limited (PUSR)&nbsp;</p></div></td><td style="vertical-align:top;width:580px;"><div><p>USR-W610 RS232/485 to Wi-Fi/Ethernet Converter&nbsp;</p></div></td><td style="vertical-align:top;width:114.766px;"><div><p>1&nbsp;</p></div></td><td style="vertical-align:top;width:115.688px;"><div><p>0&nbsp;</p></div></td><td style="vertical-align:top;width:124.703px;"><div><p>0&nbsp;</p></div></td><td style="vertical-align:top;width:96.2969px;"><div><p>0&nbsp;</p></div></td><td style="vertical-align:top;width:76.4062px;"><div><p>1&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:201px;"><div><p>KMW&nbsp;</p></div></td><td style="vertical-align:top;width:580px;"><div><p>KM-IP521&nbsp;</p></div></td><td style="vertical-align:top;width:114.766px;"><div><p>1&nbsp;</p></div></td><td style="vertical-align:top;width:115.688px;"><div><p>0&nbsp;</p></div></td><td style="vertical-align:top;width:124.703px;"><div><p>0&nbsp;</p></div></td><td style="vertical-align:top;width:96.2969px;"><div><p>0&nbsp;</p></div></td><td style="vertical-align:top;width:76.4062px;"><div><p>1&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:201px;"><div><p>Fourth Frontier&nbsp;</p></div></td><td style="vertical-align:top;width:580px;"><div><p>Frontier X Android application&nbsp;</p></div></td><td style="vertical-align:top;width:114.766px;"><div><p>0&nbsp;</p></div></td><td style="vertical-align:top;width:115.688px;"><div><p>1&nbsp;</p></div></td><td style="vertical-align:top;width:124.703px;"><div><p>0&nbsp;</p></div></td><td style="vertical-align:top;width:96.2969px;"><div><p>0&nbsp;</p></div></td><td style="vertical-align:top;width:76.4062px;"><div><p>1&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:201px;"><div><p>Eppendorf&nbsp;</p></div></td><td style="vertical-align:top;width:580px;"><div><p>BioFlo 320 Bioreactor&nbsp;</p></div></td><td style="vertical-align:top;width:114.766px;"><div><p>1&nbsp;</p></div></td><td style="vertical-align:top;width:115.688px;"><div><p>0&nbsp;</p></div></td><td style="vertical-align:top;width:124.703px;"><div><p>0&nbsp;</p></div></td><td style="vertical-align:top;width:96.2969px;"><div><p>0&nbsp;</p></div></td><td style="vertical-align:top;width:76.4062px;"><div><p>1&nbsp;</p></div></td></tr></tbody></table></div>
<div><p><span>&nbsp;</span></p></div><div><p><span>&nbsp;</span></p></div><div><p><span>Liste complète triée par CVSSv3 Score :&nbsp;</span></p></div>
<div><table border="1"><tbody><tr><td style="vertical-align:top;width:72px;"><div><p><strong>Vendor&nbsp;</strong></p></div></td><td style="vertical-align:top;width:72px;"><div><p><strong>Product&nbsp;</strong></p></div></td><td style="vertical-align:top;width:72px;"><div><p><strong>CVE&nbsp;</strong></p></div></td><td style="vertical-align:top;width:72px;"><div><p><strong>CVSSv3 Score&nbsp;</strong></p></div></td><td style="vertical-align:top;width:72px;"><div><p><strong>CVSSv3 Severity&nbsp;</strong></p></div></td><td style="vertical-align:top;width:72px;"><div><p><strong>EPSS&nbsp;</strong></p></div></td><td style="vertical-align:top;width:72px;"><div><p><strong>Percentile&nbsp;</strong></p></div></td><td style="vertical-align:top;width:72px;" class="zp-selected-cell"><div><p><strong>CWE&nbsp;</strong></p></div></td></tr><tr><td style="vertical-align:top;width:72px;"><div><p>Eppendorf&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>BioFlo 320 Bioreactor&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-7251" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2026-7251</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>9.8&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>CRITICAL&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>0.101%&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>27.571%&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p><a href="https://cwe.mitre.org/data/definitions/259.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-259</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:72px;"><div><p>Jinan USR IOT Technology Limited (PUSR)&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>USR-W610 RS232/485 to Wi-Fi/Ethernet Converter&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-7786" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2026-7786</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>9.8&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>CRITICAL&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>N/A&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>N/A&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p><a href="https://cwe.mitre.org/data/definitions/798.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-798</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:72px;"><div><p>XCharge&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>C6&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-9037" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2026-9037</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>9.8&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>CRITICAL&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>N/A&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>N/A&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p><a href="https://cwe.mitre.org/data/definitions/494.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-494</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:72px;"><div><p>KMW&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>KM-IP521&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-5386" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2026-5386</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>9.1&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>CRITICAL&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>N/A&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>N/A&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p><a href="https://cwe.mitre.org/data/definitions/620.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-620</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:72px;"><div><p>Fourth Frontier&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>Frontier X Android application&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-5768" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2026-5768</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>8.8&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>HIGH&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>N/A&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>N/A&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p><a href="https://cwe.mitre.org/data/definitions/306.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-306</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:72px;"><div><p>CP Plus&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>CP-UNR-108F1 Hardware&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-6824" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2026-6824</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>8.4&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>HIGH&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>N/A&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>N/A&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p><a href="https://cwe.mitre.org/data/definitions/79.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-79</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:72px;"><div><p>Danelec&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>MacGregor Voyage Data Recorder (VDR) G4e&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-42929" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2026-42929</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>8.3&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>HIGH&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>N/A&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>N/A&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p><a href="https://cwe.mitre.org/data/definitions/798.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-798</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:72px;"><div><p>Danelec&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>MacGregor Voyage Data Recorder (VDR) G4e&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-42941" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2026-42941</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>8.3&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>HIGH&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>N/A&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>N/A&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p><a href="https://cwe.mitre.org/data/definitions/1392.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-1392</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:72px;"><div><p>XCharge&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>C6&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-9038" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2026-9038</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>7.6&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>HIGH&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>N/A&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>N/A&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p><a href="https://cwe.mitre.org/data/definitions/121.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-121</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:72px;"><div><p>XCharge&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>C6&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-9039" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2026-9039</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>7.6&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>HIGH&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>N/A&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>N/A&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p><a href="https://cwe.mitre.org/data/definitions/1188.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-1188</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:72px;"><div><p>Danelec&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>MacGregor Voyage Data Recorder (VDR) G4e&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-40425" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2026-40425</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>5.7&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>MEDIUM&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>N/A&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>N/A&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p><a href="https://cwe.mitre.org/data/definitions/552.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-552</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:72px;"><div><p>Danelec&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>MacGregor Voyage Data Recorder (VDR) G4e&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-42951" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2026-42951</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>5.4&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>MEDIUM&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>N/A&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>N/A&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p><a href="https://cwe.mitre.org/data/definitions/522.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-522</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:72px;"><div><p>Danelec&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>MacGregor Voyage Data Recorder (VDR) G4e&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-44611" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2026-44611</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>5.4&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>MEDIUM&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>N/A&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>N/A&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p><a href="https://cwe.mitre.org/data/definitions/916.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-916</span></a>&nbsp;</p></div></td></tr></tbody></table></div>
</div><p><br></p><p><span></span></p><p><br></p></span><p></p><div><div><div><div><p><span style="font-weight:bold;">Actualité Fortress Cybersecurity&nbsp;</span><span><span>&nbsp;</span>&nbsp;</span></p></div>
<div><p><a href="https://www.fortress-cybersecurity.fr/blogs/post/bilan-des-known-exploited-vulnerabilities-du-mois-d-avril-2026" target="_blank" rel="noreferrer noopener"><span>- Bilan des Known Exploited Vulnerabilities du mois d'avril 2026</span></a><span>&nbsp;</span></p></div>
<div><p><a href="https://www.fortress-cybersecurity.fr/blogs/post/nouveau-guide-de-classification-des-actifs-industriels-publi%C3%A9-par-l-anssi" target="_blank" rel="noreferrer noopener"><span>- Nouveau guide de classification des actifs industriels publié par l'ANSSI</span></a><span>&nbsp;</span></p></div>
<div><p><a href="https://www.fortress-cybersecurity.fr/blogs/post/calendrier-2026-de-nos-webinaires-d%C3%A9di%C3%A9s-%C3%A0-la-cybers%C3%A9curit%C3%A9-des-installations-industrielles" target="_blank" rel="noreferrer noopener"><span>Nos prochains webinaires dédiés à la cybersécurité des installations industrielles :</span></a><span>&nbsp;</span></p></div>
<div><p><span>- 4 juin 2026 : Gérer les incidents cyber en environnement industriel​, inscription </span><a href="https://events.teams.microsoft.com/event/c5644e79-7926-4075-bc80-8de9ad9833cf%40a43cc6b0-e19e-4635-966f-1f00bc18b9ac" target="_blank" rel="noreferrer noopener"><span>lien</span></a><span>&nbsp;</span></p></div>
<div><p><span>- 2 juillet 2026 : Gérer les vulnérabilités en environnement industriel​​, inscription </span><a href="https://events.teams.microsoft.com/event/e2cac6c8-9560-48d5-8736-25da3b084041%40a43cc6b0-e19e-4635-966f-1f00bc18b9ac" target="_blank" rel="noreferrer noopener"><span>lien</span></a><span>&nbsp;</span></p></div>
<div><p><span>- 3 septembre 2026 : Mettre en place le plan de contrôle cyber de ses installations industriels​​, inscription </span><a href="https://events.teams.microsoft.com/event/1960fe77-9d3a-4f18-a7a9-70528a5e7151%40a43cc6b0-e19e-4635-966f-1f00bc18b9ac" target="_blank" rel="noreferrer noopener"><span>lien</span></a><span>&nbsp;</span></p></div>
<div><p><span>- 1 octobre 2026 : Sécuriser les accès à distance et de télémaintenance des actifs industriels, inscription </span><a href="https://events.teams.microsoft.com/event/c9ba377e-5c27-4e4d-bffb-8ddc3a7856be%40a43cc6b0-e19e-4635-966f-1f00bc18b9ac" target="_blank" rel="noreferrer noopener"><span>lien</span></a><span>&nbsp;</span></p></div>
<div><p><span>- 5 novembre 2026 : Protéger les endpoints dans les zones industrielles, inscription </span><a href="https://events.teams.microsoft.com/event/f079bb46-c1ad-4274-b0d3-e32db7d3b4fc%40a43cc6b0-e19e-4635-966f-1f00bc18b9ac" target="_blank" rel="noreferrer noopener"><span>lien</span></a><span>&nbsp;</span></p></div>
<div><p><span>- 3 décembre 2026 : Protéger les réseaux mobiles privés 5G, inscription </span><a href="https://events.teams.microsoft.com/event/56995822-3f07-404d-b2dc-f6fb7727ad50%40a43cc6b0-e19e-4635-966f-1f00bc18b9ac" target="_blank" rel="noreferrer noopener"><span>lien</span></a><span>&nbsp;</span></p></div>
</div><br><p></p></div></div><p style="font-weight:bold;"></p><p></p><div><p></p></div>
<p></p><p><br></p><p></p><div><p></p></div></div></div></div></div></div></div></div>]]></content:encoded><pubDate>Mon, 01 Jun 2026 00:22:33 +0200</pubDate></item><item><title><![CDATA[Bulletin cybersec indus hebdo 26.S21]]></title><link>https://www.fortress-cybersecurity.fr/blogs/post/bulletin-cybersec-indus-hebdo-26.s21</link><description><![CDATA[<img align="left" hspace="5" src="https://www.fortress-cybersecurity.fr/files/manufacturing.jpg"/> CVE-2024-9643 : des routeurs industriels Four-Faith exploités à grande échelle CrowdSec alerte sur l’exploitation massive de la faille CVE-2024-964 ]]></description><content:encoded><![CDATA[<div class="zpcontent-container blogpost-container "><div data-element-id="elm_OIHw3lK1R0uMD1sBLIHwRg" data-element-type="section" class="zpsection "><style type="text/css"></style><div class="zpcontainer-fluid zpcontainer"><div data-element-id="elm_1ydeJqOcTyiM7nuV2rOklQ" data-element-type="row" class="zprow zprow-container zpalign-items- zpjustify-content- " data-equal-column=""><style type="text/css"></style><div data-element-id="elm_mz-pWBAHSAqarVeQFmIgeA" data-element-type="column" class="zpelem-col zpcol-12 zpcol-md-12 zpcol-sm-12 zpalign-self- "><style type="text/css"> [data-element-id="elm_mz-pWBAHSAqarVeQFmIgeA"].zpelem-col{ border-radius:1px; } @media (max-width: 767px) { [data-element-id="elm_mz-pWBAHSAqarVeQFmIgeA"].zpelem-col{ border-radius:1px; } } @media all and (min-width: 768px) and (max-width:991px){ [data-element-id="elm_mz-pWBAHSAqarVeQFmIgeA"].zpelem-col{ border-radius:1px; } } </style><div data-element-id="elm_M7cAp-bDTcCbA9gTt6JiPA" data-element-type="heading" class="zpelement zpelem-heading "><style> [data-element-id="elm_M7cAp-bDTcCbA9gTt6JiPA"].zpelem-heading { border-radius:1px; } </style><h2 class="zpheading zpheading-align-center zpheading-align-mobile-center zpheading-align-tablet-center " data-editor="true">Les news relatives à la cybersécurité des installations industrielles</h2></div>
<div data-element-id="elm_sH2l7vQ8h3FUwPV13-l42A" data-element-type="text" class="zpelement zpelem-text "><style></style><div class="zptext zptext-align-left zptext-align-mobile-left zptext-align-tablet-left " data-editor="true"><p style="font-weight:bold;"></p><div><p style="font-weight:bold;"></p><div><p style="font-weight:bold;"></p><div><p style="font-weight:bold;"></p><b></b></div>
</div></div><span><span><p style="font-weight:bold;"></p><div><p style="font-weight:bold;"></p><div><p style="font-weight:bold;"></p><div><p style="font-weight:bold;"></p><b></b></div>
</div></div><p><span><span></span></span></p><p></p><div><p style="font-weight:bold;"></p><div><p style="font-weight:bold;"></p><div><p style="font-weight:bold;"></p><div><p style="font-weight:bold;"></p><b></b></div>
</div></div><p style="font-weight:bold;"></p><div><p style="font-weight:bold;"></p><div><p style="font-weight:bold;"></p><div><p style="font-weight:bold;"></p><b></b></div>
</div></div><p></p><p></p><div><p style="font-weight:bold;"><strong>CVE-2024-9643 : des routeurs industriels Four-Faith exploités à grande échelle</strong></p><p>CrowdSec alerte sur l’exploitation massive de la faille CVE-2024-9643, qui touche les routeurs industriels Four-Faith F3x36. La vulnérabilité permet de contourner l’authentification via des identifiants administrateur codés en dur, donnant un accès complet à l’interface de gestion. Depuis avril 2026, l’activité a fortement augmenté, avec 139 IP malveillantes observées et un passage en phase de mass exploitation le 12 mai. L’objectif principal semble être la prise de contrôle d’infrastructures pour intégrer ces routeurs à des botnets ou les utiliser comme relais d’attaque.</p><a href="https://www.crowdsec.net/vulntracking-report/cve-2024-9643-four-faith-router-authentication-bypass" title="https://www.crowdsec.net/vulntracking-report/cve-2024-9643-four-faith-router-authentication-bypass" rel="">https://www.crowdsec.net/vulntracking-report/cve-2024-9643-four-faith-router-authentication-bypass</a><br></div>
<p style="font-weight:bold;"><br></p><p></p><div><div><div><div style="font-weight:bold;"><section><p><strong>Fast16 : un sabotage discret des simulations nucléaires... pré-stuxnet</strong></p></section></div>
<div><p>Fast16 est un outil de sabotage conçu avant Stuxnet, ciblant des logiciels de simulation comme LS-DYNA et AUTODYN. Son but n’était pas de voler des données, mais de fausser les résultats de simulations liées à des détonations nucléaires. Le malware ne s’active que dans des cas très précis, notamment lorsque la densité simulée dépasse 30 g/cm³, un seuil associé à la compression de l’uranium dans un dispositif à implosi<span style="font-weight:bold;">on. Le fait que plusieurs versions des logiciels soient ciblées montre que l’opération a probablement été suivie dans le temps, en s’adaptant aux mises à jour des organisations visées.</span></p></div>
</div><p style="font-weight:bold;"><a href="https://www.security.com/threat-intelligence/fast16-nuclear-sabotage" rel="">https://www.security.com/threat-intelligence/fast16-nuclear-sabotage</a></p></div>
</div><p></p><div><div><p><br></p></div></div><p><strong><span>Sandworm : ce que montrent les données en environnement industriel</span></strong></p><p>Nozomi analyse l’activité de Sandworm, un groupe cyber lié à la Russie, connu pour des attaques destructrices contre des infrastructures critiques. L’étude se base sur la télémétrie anonymisée de 10 clients industriels dans 7 pays, entre juillet 2025 et janvier 2026. Le point important, c’est que Sandworm ne s’appuie pas forcément sur des nouvelles techniques : il exploite souvent des environnements déjà compromis, avec des failles ou outils connus comme EternalBlue, Log4Shell, Cobalt Strike ou des RAT. Chaque système infecté avait généré des alertes sérieuses pendant plusieurs semaines avant l’activité Sandworm, avec une moyenne de 43 jours. Une fois présent, le groupe cherche surtout à se déplacer latéralement dans le réseau et à se rapprocher des systèmes industriels.</p><p><a href="https://www.nozominetworks.com/press-release/nozomi-networks-platform-now-available-on-google-cloud-marketplace" target="_blank">https://www.nozominetworks.com/press-release/nozomi-networks-platform-now-available-on-google-cloud-marketplace</a>&nbsp;<br></p><p><br></p><p></p><div><div><p><strong>Verizon Data Breach Investigations Report (DBIR) 2026</strong><br></p><p>Le rapport DBIR 2026 de Verizon analyse plus de 31 000 incidents de sécurité, dont plus de 22 000 violations de données. Le principal changement est la montée de l’exploitation de vulnérabilités, devenue le premier vecteur d’accès initial avec 31 % des cas, devant l’abus d’identifiants. Le ransomware continue aussi de progresser et concerne 48 % des violations, même si la majorité des victimes ne paient plus la rançon. Le rapport insiste aussi sur le rôle des tiers : 48 % des violations impliquent un fournisseur ou un partenaire. L’IA générative est de plus en plus utilisée par les attaquants, notamment pour le ciblage, l’accès initial et le développement d’outils.<br></p></div><a href="https://www.verizon.com/business/resources/T1f0/reports/2026-dbir-data-breach-investigations-report.pdf" rel="">https://www.verizon.com/business/resources/T1f0/reports/2026-dbir-data-breach-investigations-report.pdf</a></div>
<p></p><p><br></p><p></p><div><div><p><span style="font-weight:bold;">Vulnerability Corner :</span>&nbsp;</p></div>
<div><p></p><div><div><p><span>Liste des Known Exploited Vulnerabilities (KEV) publiés par l'agence de cybersécurité américaine CISA la semaine dernière :&nbsp;&nbsp;</span></p></div>
<div><div><table border="1"><tbody><tr><td style="vertical-align:top;width:144px;"><div><div><p><span>CVE&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:146.25px;"><div><div><p><span>Vendor&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:233.188px;"><div><div><p><span>Product&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:682.812px;"><div><div><p><span>Liens&nbsp;</span></p></div>
</div></td></tr><tr><td style="vertical-align:top;width:144px;"><div><div><p><span></span><a href="https://nvd.nist.gov/vuln/detail/CVE-2008-4250" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>CVE-2008-4250</span></span></a><span>&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:146.25px;"><div><div><p><span>Microsoft&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:233.188px;"><div><div><p><span>Windows&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:682.812px;"><div><div><p><span></span><a href="https://learn.microsoft.com/en-us/security-updates/securitybulletins/2008/ms08-067%2C%20https%3A//nvd.nist.gov/vuln/detail/CVE-2008-4250" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>https://learn.microsoft.com/en-us/security-updates/securitybulletins/2008/ms08-067, https://nvd.nist.gov/vuln/detail/CVE-2008-4250</span></span></a><span>&nbsp;</span></p></div>
</div></td></tr><tr><td style="vertical-align:top;width:144px;"><div><div><p><span></span><a href="https://nvd.nist.gov/vuln/detail/CVE-2009-1537" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>CVE-2009-1537</span></span></a><span>&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:146.25px;"><div><div><p><span>Microsoft&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:233.188px;"><div><div><p><span>DirectX&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:682.812px;"><div><div><p><span></span><a href="https://learn.microsoft.com/en-us/security-updates/securitybulletins/2009/ms09-028%2C%20https%3A//nvd.nist.gov/vuln/detail/CVE-2009-1537" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>https://learn.microsoft.com/en-us/security-updates/securitybulletins/2009/ms09-028, https://nvd.nist.gov/vuln/detail/CVE-2009-1537</span></span></a><span>&nbsp;</span></p></div>
</div></td></tr><tr><td style="vertical-align:top;width:144px;"><div><div><p><span></span><a href="https://nvd.nist.gov/vuln/detail/CVE-2009-3459" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>CVE-2009-3459</span></span></a><span>&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:146.25px;"><div><div><p><span>Adobe&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:233.188px;"><div><div><p><span>Acrobat and Reader&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:682.812px;"><div><div><p><span></span><a href="https://nvd.nist.gov/vuln/detail/CVE-2009-3459%2C%20https%3A//web.archive.org/web/20120324170253/http%3A//www.adobe.com/support/security/bulletins/apsb09-15.html#:%7E:text=CVE%2D2009%2D3459).-%2CNOTE%3A%2C-There%20are%20reports%2C%20https://www.cisa.gov/news-events/alerts/2009/10/13/adobe-reader-and-acrobat-vulnerabilities" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>https://nvd.nist.gov/vuln/detail/CVE-2009-3459, https://web.archive.org/web/20120324170253/http://www.adobe.com/support/security/bulletins/apsb09-15.html#:~:text=CVE%2D2009%2D3459).-,NOTE%3A,-There%20are%20reports, https://www.cisa.gov/news-events/alerts/2009/10/13/adobe-reader-and-acrobat-vulnerabilities</span></span></a><span>&nbsp;</span></p></div>
</div></td></tr><tr><td style="vertical-align:top;width:144px;"><div><div><p><span></span><a href="https://nvd.nist.gov/vuln/detail/CVE-2010-0249" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>CVE-2010-0249</span></span></a><span>&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:146.25px;"><div><div><p><span>Microsoft&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:233.188px;"><div><div><p><span>Internet Explorer&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:682.812px;"><div><div><p><span></span><a href="https://learn.microsoft.com/en-us/security-updates/SecurityAdvisories/2010/979352%2C%20https%3A//nvd.nist.gov/vuln/detail/CVE-2010-0249" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>https://learn.microsoft.com/en-us/security-updates/SecurityAdvisories/2010/979352, https://nvd.nist.gov/vuln/detail/CVE-2010-0249</span></span></a><span>&nbsp;</span></p></div>
</div></td></tr><tr><td style="vertical-align:top;width:144px;"><div><div><p><span></span><a href="https://nvd.nist.gov/vuln/detail/CVE-2010-0806" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>CVE-2010-0806</span></span></a><span>&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:146.25px;"><div><div><p><span>Microsoft&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:233.188px;"><div><div><p><span>Internet Explorer&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:682.812px;"><div><div><p><span></span><a href="https://learn.microsoft.com/en-us/security-updates/securityadvisories/2010/981374%2C%20https%3A//nvd.nist.gov/vuln/detail/CVE-2010-0806" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>https://learn.microsoft.com/en-us/security-updates/securityadvisories/2010/981374, https://nvd.nist.gov/vuln/detail/CVE-2010-0806</span></span></a><span>&nbsp;</span></p></div>
</div></td></tr><tr><td style="vertical-align:top;width:144px;"><div><div><p><span></span><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-34291" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>CVE-2025-34291</span></span></a><span>&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:146.25px;"><div><div><p><span>Langflow&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:233.188px;"><div><div><p><span>Langflow&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:682.812px;"><div><div><p><span></span><a href="https://github.com/langflow-ai/langflow%2C%20https%3A//github.com/langflow-ai/langflow/issues/11465#event-25774545848%2C%20https://github.com/langflow-ai/langflow/releases/tag/v1.9.3%2C%20https://nvd.nist.gov/vuln/detail/CVE-2025-34291" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>https://github.com/langflow-ai/langflow, https://github.com/langflow-ai/langflow/issues/11465#event-25774545848, https://github.com/langflow-ai/langflow/releases/tag/v1.9.3, https://nvd.nist.gov/vuln/detail/CVE-2025-34291</span></span></a><span>&nbsp;</span></p></div>
</div></td></tr><tr><td style="vertical-align:top;width:144px;"><div><div><p><span></span><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-34926" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>CVE-2026-34926</span></span></a><span>&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:146.25px;"><div><div><p><span>Trend Micro&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:233.188px;"><div><div><p><span>Apex One&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:682.812px;"><div><div><p><span></span><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-34926%2C%20https%3A//success.trendmicro.com/en-US/solution/KA-0023430" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>https://nvd.nist.gov/vuln/detail/CVE-2026-34926, https://success.trendmicro.com/en-US/solution/KA-0023430</span></span></a><span>&nbsp;</span></p></div>
</div></td></tr><tr><td style="vertical-align:top;width:144px;"><div><div><p><span></span><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-41091" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>CVE-2026-41091</span></span></a><span>&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:146.25px;"><div><div><p><span>Microsoft&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:233.188px;"><div><div><p><span>Defender&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:682.812px;"><div><div><p><span></span><a href="https://msrc.microsoft.com/update-guide/en-US/vulnerability/CVE-2026-41091%2C%20https%3A//nvd.nist.gov/vuln/detail/CVE-2026-41091" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>https://msrc.microsoft.com/update-guide/en-US/vulnerability/CVE-2026-41091, https://nvd.nist.gov/vuln/detail/CVE-2026-41091</span></span></a><span>&nbsp;</span></p></div>
</div></td></tr><tr><td style="vertical-align:top;width:144px;"><div><div><p><span></span><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-45498" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>CVE-2026-45498</span></span></a><span>&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:146.25px;"><div><div><p><span>Microsoft&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:233.188px;"><div><div><p><span>Defender&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:682.812px;"><div><div><p><span></span><a href="https://msrc.microsoft.com/update-guide/en-US/vulnerability/CVE-2026-45498%2C%20https%3A//nvd.nist.gov/vuln/detail/CVE-2026-45498" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>https://msrc.microsoft.com/update-guide/en-US/vulnerability/CVE-2026-45498, https://nvd.nist.gov/vuln/detail/CVE-2026-45498</span></span></a><span>&nbsp;</span></p></div>
</div></td></tr></tbody></table></div></div><div><p><span>&nbsp;</span></p></div>
<div><p><span style="font-weight:bold;"><span>Vulnérabilités de composants de systèmes industriels :&nbsp;</span></span><span>&nbsp;</span></p></div>
<div><p><br></p></div><div><div><table border="1"><tbody><tr><td style="vertical-align:top;width:82px;"><div><div><p><span>Vendor&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>Product&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>Critical&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>High&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>Medium&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>Low&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>Total&nbsp;</span></p></div>
</div></td></tr><tr><td style="vertical-align:top;width:82px;"><div><div><p><span>ScadaBR&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>ScadaBR&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>1&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>2&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>1&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>0&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>4&nbsp;</span></p></div>
</div></td></tr><tr><td style="vertical-align:top;width:82px;"><div><div><p><span>Kieback &amp; Peter&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>DDC4002&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>0&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>0&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>1&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>0&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>1&nbsp;</span></p></div>
</div></td></tr><tr><td style="vertical-align:top;width:82px;"><div><div><p><span>ZKTeco&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>SSC335-GC2063-Face-0b77 Solution&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>1&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>0&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>0&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>0&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>1&nbsp;</span></p></div>
</div></td></tr></tbody></table></div></div><div><p><span>&nbsp;</span></p></div>
<div><p><span>&nbsp;</span></p></div><div><p><span>Liste complète triée par CVSSv3 Score :&nbsp;</span></p></div>
<div><div><table border="1"><tbody><tr><td style="vertical-align:top;width:72px;"><div><div><p><span>Vendor&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>Product&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>CVE&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>CVSSv3 Score&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>CVSSv3 Severity&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>EPSS&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>Percentile&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>CWE&nbsp;</span></p></div>
</div></td></tr><tr><td style="vertical-align:top;width:72px;"><div><div><p><span>ScadaBR&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>ScadaBR&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span></span><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-8602" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>CVE-2026-8602</span></span></a><span>&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>9.1&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>CRITICAL&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>0.081%&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>23.657%&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span></span><a href="https://cwe.mitre.org/data/definitions/306.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>CWE-306</span></span></a><span>&nbsp;</span></p></div>
</div></td></tr><tr><td style="vertical-align:top;width:72px;"><div><div><p><span>ZKTeco&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>SSC335-GC2063-Face-0b77 Solution&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span></span><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-8598" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>CVE-2026-8598</span></span></a><span>&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>9.1&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>CRITICAL&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>0.050%&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>15.630%&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span></span><a href="https://cwe.mitre.org/data/definitions/288.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>CWE-288</span></span></a><span>&nbsp;</span></p></div>
</div></td></tr><tr><td style="vertical-align:top;width:72px;"><div><div><p><span>ScadaBR&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>ScadaBR&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span></span><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-8603" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>CVE-2026-8603</span></span></a><span>&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>8.8&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>HIGH&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>0.590%&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>69.420%&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span></span><a href="https://cwe.mitre.org/data/definitions/78.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>CWE-78</span></span></a><span>&nbsp;</span></p></div>
</div></td></tr><tr><td style="vertical-align:top;width:72px;"><div><div><p><span>ScadaBR&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>ScadaBR&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span></span><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-8604" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>CVE-2026-8604</span></span></a><span>&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>8.8&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>HIGH&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>0.019%&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>5.249%&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span></span><a href="https://cwe.mitre.org/data/definitions/352.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>CWE-352</span></span></a><span>&nbsp;</span></p></div>
</div></td></tr><tr><td style="vertical-align:top;width:72px;"><div><div><p><span>ScadaBR&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>ScadaBR&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span></span><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-8605" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>CVE-2026-8605</span></span></a><span>&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>6.1&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>MEDIUM&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>0.041%&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>12.391%&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span></span><a href="https://cwe.mitre.org/data/definitions/798.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>CWE-798</span></span></a><span>&nbsp;</span></p></div>
</div></td></tr><tr><td style="vertical-align:top;width:72px;"><div><div><p><span>Kieback &amp; Peter&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>DDC4002&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span></span><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-4293" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>CVE-2026-4293</span></span></a><span>&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>5.3&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>MEDIUM&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>0.030%&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>8.810%&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span></span><a href="https://cwe.mitre.org/data/definitions/79.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>CWE-79</span></span></a><span>&nbsp;</span></p></div>
</div></td></tr></tbody></table></div></div><div><p><span>&nbsp;</span></p></div>
<div><p><span>-----&nbsp;<br></span><span style="font-weight:bold;">Actualité Fortress Cybersecurity&nbsp;</span><span><span>&nbsp;</span><br> &nbsp;</span></p></div>
<div><p><a href="https://www.fortress-cybersecurity.fr/blogs/post/bilan-des-known-exploited-vulnerabilities-du-mois-d-avril-2026" target="_blank" rel="noreferrer noopener"><span>- Bilan des Known Exploited Vulnerabilities du mois d'avril 2026</span></a><span>&nbsp;</span></p></div>
<div><p><a href="https://www.fortress-cybersecurity.fr/blogs/post/nouveau-guide-de-classification-des-actifs-industriels-publi%C3%A9-par-l-anssi" target="_blank" rel="noreferrer noopener"><span>- Nouveau guide de classification des actifs industriels publié par l'ANSSI</span></a><span>&nbsp;</span></p></div>
<div><p><a href="https://www.fortress-cybersecurity.fr/blogs/post/calendrier-2026-de-nos-webinaires-d%C3%A9di%C3%A9s-%C3%A0-la-cybers%C3%A9curit%C3%A9-des-installations-industrielles" target="_blank" rel="noreferrer noopener"><span>Nos prochains webinaires dédiés à la cybersécurité des installations industrielles :</span></a><span>&nbsp;</span></p></div>
<div><p><span>- 4 juin 2026 : Gérer les incidents cyber en environnement industriel​, inscription </span><a href="https://events.teams.microsoft.com/event/c5644e79-7926-4075-bc80-8de9ad9833cf%40a43cc6b0-e19e-4635-966f-1f00bc18b9ac" target="_blank" rel="noreferrer noopener"><span>lien</span></a><span>&nbsp;</span></p></div>
<div><p><span>- 2 juillet 2026 : Gérer les vulnérabilités en environnement industriel​​, inscription </span><a href="https://events.teams.microsoft.com/event/e2cac6c8-9560-48d5-8736-25da3b084041%40a43cc6b0-e19e-4635-966f-1f00bc18b9ac" target="_blank" rel="noreferrer noopener"><span>lien</span></a><span>&nbsp;</span></p></div>
<div><p><span>- 3 septembre 2026 : Mettre en place le plan de contrôle cyber de ses installations industriels​​, inscription </span><a href="https://events.teams.microsoft.com/event/1960fe77-9d3a-4f18-a7a9-70528a5e7151%40a43cc6b0-e19e-4635-966f-1f00bc18b9ac" target="_blank" rel="noreferrer noopener"><span>lien</span></a><span>&nbsp;</span></p></div>
<div><p><span>- 1 octobre 2026 : Sécuriser les accès à distance et de télémaintenance des actifs industriels, inscription </span><a href="https://events.teams.microsoft.com/event/c9ba377e-5c27-4e4d-bffb-8ddc3a7856be%40a43cc6b0-e19e-4635-966f-1f00bc18b9ac" target="_blank" rel="noreferrer noopener"><span>lien</span></a><span>&nbsp;</span></p></div>
<div><p><span>- 5 novembre 2026 : Protéger les endpoints dans les zones industrielles, inscription </span><a href="https://events.teams.microsoft.com/event/f079bb46-c1ad-4274-b0d3-e32db7d3b4fc%40a43cc6b0-e19e-4635-966f-1f00bc18b9ac" target="_blank" rel="noreferrer noopener"><span>lien</span></a><span>&nbsp;</span></p></div>
<div><p><span>- 3 décembre 2026 : Protéger les réseaux mobiles privés 5G, inscription </span><a href="https://events.teams.microsoft.com/event/56995822-3f07-404d-b2dc-f6fb7727ad50%40a43cc6b0-e19e-4635-966f-1f00bc18b9ac" target="_blank" rel="noreferrer noopener"><span>lien</span></a><span>&nbsp;</span></p></div>
</div><br><p></p></div></div><p style="font-weight:bold;"></p><p></p><div><p></p></div>
<p></p><p><br></p></div></span></span><p></p><div><p></p></div></div></div></div>
</div></div></div></div>]]></content:encoded><pubDate>Sun, 24 May 2026 15:56:30 +0200</pubDate></item><item><title><![CDATA[Bulletin cybersec indus hebdo 26.S20]]></title><link>https://www.fortress-cybersecurity.fr/blogs/post/bulletin-cybersec-indus-hebdo-26.s20</link><description><![CDATA[<img align="left" hspace="5" src="https://www.fortress-cybersecurity.fr/files/manufacturing.jpg"/> l’IA comme accélérateur d’une intrusion IT vers l’OT dans le secteur de l’eau au Mexique Dragos analyse une compromission visant l’environnement IT d ]]></description><content:encoded><![CDATA[<div class="zpcontent-container blogpost-container "><div data-element-id="elm_OIHw3lK1R0uMD1sBLIHwRg" data-element-type="section" class="zpsection "><style type="text/css"></style><div class="zpcontainer-fluid zpcontainer"><div data-element-id="elm_1ydeJqOcTyiM7nuV2rOklQ" data-element-type="row" class="zprow zprow-container zpalign-items- zpjustify-content- " data-equal-column=""><style type="text/css"></style><div data-element-id="elm_mz-pWBAHSAqarVeQFmIgeA" data-element-type="column" class="zpelem-col zpcol-12 zpcol-md-12 zpcol-sm-12 zpalign-self- "><style type="text/css"> [data-element-id="elm_mz-pWBAHSAqarVeQFmIgeA"].zpelem-col{ border-radius:1px; } @media (max-width: 767px) { [data-element-id="elm_mz-pWBAHSAqarVeQFmIgeA"].zpelem-col{ border-radius:1px; } } @media all and (min-width: 768px) and (max-width:991px){ [data-element-id="elm_mz-pWBAHSAqarVeQFmIgeA"].zpelem-col{ border-radius:1px; } } </style><div data-element-id="elm_M7cAp-bDTcCbA9gTt6JiPA" data-element-type="heading" class="zpelement zpelem-heading "><style> [data-element-id="elm_M7cAp-bDTcCbA9gTt6JiPA"].zpelem-heading { border-radius:1px; } </style><h2 class="zpheading zpheading-align-center zpheading-align-mobile-center zpheading-align-tablet-center " data-editor="true">Les news relatives à la cybersécurité des installations industrielles</h2></div>
<div data-element-id="elm_sH2l7vQ8h3FUwPV13-l42A" data-element-type="text" class="zpelement zpelem-text "><style></style><div class="zptext zptext-align-left zptext-align-mobile-left zptext-align-tablet-left " data-editor="true"><p style="font-weight:bold;"></p><div><p style="font-weight:bold;"></p><div><p style="font-weight:bold;"></p><div><p style="font-weight:bold;"></p><b></b></div>
</div></div><span><span><p style="font-weight:bold;"></p><div><p style="font-weight:bold;"></p><div><p style="font-weight:bold;"></p><div><p style="font-weight:bold;"></p><b></b></div>
</div></div><p><span><span></span></span></p><p></p><div><p style="font-weight:bold;"><strong>l’IA comme accélérateur d’une intrusion IT vers l’OT dans le secteur de l’eau au Mexique</strong></p><p>Dragos analyse une compromission visant l’environnement IT d’un service municipal d’eau et d’assainissement à Monterrey, avec une tentative de progression vers des systèmes OT. L’attaquant aurait utilisé des outils d’IA commerciaux pour accélérer la reconnaissance, cartographier l’environnement, développer des scripts malveillants et identifier une interface SCADA vNode comme cible sensible. L’IA n’a pas permis une compromission OT mais&nbsp;les implications sont doubles. Premièrement, les organisations qui ne mettent pas en œuvre les contrôles de sécurité de base restent exposées à un risque accru, car l’IA peut rapidement mettre en œuvre des techniques connues. Deuxièmement, à mesure que les modèles d’IA continuent de s’améliorer, les stratégies de sécurité OT axées uniquement sur la prévention deviendront moins efficaces, les organisations ont également besoin de capacités de visibilité, de détection et de réponse sur le réseau OT pour identifier les activités malveillantes lorsque les contrôles préventifs échouent.</p><p><a href="https://5943619.hs-sites.com/hubfs/116-Whitepapers/dragos-2026-ai-mexico-water-attack-intel-brief%20%281%29.pdf">https://5943619.hs-sites.com/hubfs/116-Whitepapers/dragos-2026-ai-mexico-water-attack-intel-brief%20(1).pdf</a></p></div><br><p></p><p></p><div><div><p><strong>Un écosystème ransomware qui se reconcentre</strong><br></p><p>Check Point Research montre qu’après une phase de fragmentation, l’écosystème ransomware se reconcentre autour de quelques groupes dominants : au T1 2026, le top 10 représente 71 % des victimes publiées sur les sites de fuite de Qilin etAkira, The Gentlemen et LockBit concentrent à eux seuls 41 % des victimes. Cette consolidation ne marque pas un simple retour à l’ancien modèle : les groupes qui émergent sont plus techniques, plus diversifiés géographiquement et plus résistants aux opérations de démantèlement. Dans le même temps, le modèle économique du ransomware montre des signes d’essoufflement, avec des taux de paiement historiquement bas et des campagnes de vol massif de données de moins en moins rentables. L’écart entre le nombre élevé de victimes revendiquées, 2 122 au T1 2026, et la baisse de la monétisation par victime pourrait accélérer cette concentration en écartant les opérateurs incapables d’atteindre une taille ou un niveau de sophistication suffisants.<br></p></div>
<p><a href="https://research.checkpoint.com/2026/the-state-of-ransomware-q1-2026/">https://research.checkpoint.com/2026/the-state-of-ransomware-q1-2026/</a></p></div><br><p></p><p></p><div><div><section><div><p><strong>Un partenariat secteur public-privé pour renforcer la résilience nationale sur le secteur <strong>OT/IoT au&nbsp;<span>Émirats arabes unis</span></strong></strong></p></div>
</section></div><div><p>Le Cybersecurity Council des Émirats arabes unis et Nozomi Networks annoncent une collaboration stratégique pour mieux protéger les infrastructures critiques, les environnements OT et IoT du pays. L’accord prévoit notamment la création d’un centre d’innovation et d’excellence à Abu Dhabi, dédié à la cybersécurité industrielle, à la R&amp;D et au soutien des opérateurs critiques. Les secteurs visés sont l’énergie, les utilities, le transport, l’industrie manufacturière et les smart infrastructures. Cette article montre que la cybersécurité OT et IoT est un enjeu de sécurité nationale.</p></div>
<div><p><a href="https://www.nozominetworks.com/press-release/uae-cybersecurity-council-and-nozomi-networks-forge-alliance-to-advance-national-cyber-capabilities-and-national-resilience">https://www.nozominetworks.com/press-release/uae-cybersecurity-council-and-nozomi-networks-forge-alliance-to-advance-national-cyber-capabilities-and-national-resilience</a></p></div>
</div><p></p><p><strong><span><strong><br></strong></span></strong></p><p><strong><span><strong>Sur le volet offreurs de solutions (nouvelle section)</strong></span><br></strong></p><p><strong>Nozomi Networks arrive sur Google Cloud Marketplace</strong></p><p>Nozomi Networks, éditeur de sondes NDR spécialisées dans les environnements industriels, annonce la disponibilité de sa plateforme sur Google Cloud Marketplace. Les clients peuvent désormais déployer Guardian et la Central Management Console directement dans leur propre tenant Google Cloud. Cette mise à disposition permet d’utiliser Nozomi dans une architecture cloud Google, sans changer les capacités attendues : visibilité réseau, détection de menaces, supervision des environnements industriels, etc.</p><p><span><a href="https://www.nozominetworks.com/press-release/nozomi-networks-platform-now-available-on-google-cloud-marketplace" target="_blank">https://www.nozominetworks.com/press-release/nozomi-networks-platform-now-available-on-google-cloud-marketplace</a><span>&nbsp;</span></span><br></p><p><br></p><p></p><div><div><p><span style="font-weight:bold;"><span>Vulnerability Corner :</span></span><span>&nbsp;</span></p></div>
<div><p><span>Liste des Known Exploited Vulnerabilities (KEV) publiés par l'agence de cybersécurité américaine CISA la semaine dernière :&nbsp;&nbsp;</span></p></div>
</div><p></p><table border="1"><tbody><tr><td style="vertical-align:top;width:170px;"><div><p><strong>CVE&nbsp;</strong></p></div></td><td style="vertical-align:top;width:97.3906px;"><div><p><strong>Vendor&nbsp;</strong></p></div></td><td style="vertical-align:top;width:164.906px;"><div><p><strong>Product&nbsp;</strong></p></div></td><td style="vertical-align:top;width:863.094px;"><div><p><strong>Liens&nbsp;</strong></p></div></td></tr><tr><td style="vertical-align:top;width:170px;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-20182" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2026-20182</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:97.3906px;"><div><p>Cisco&nbsp;</p></div></td><td style="vertical-align:top;width:164.906px;"><div><p>Catalyst SD-WAN&nbsp;</p></div></td><td style="vertical-align:top;width:863.094px;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-20182%2C%20https%3A//sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-sdwan-rpa2-v69WY2SW%2C%20https%3A//www.cisa.gov/news-events/directives/ed-26-03-mitigate-vulnerabilities-cisco-sd-wan-systems%2C%20https%3A//www.cisa.gov/news-events/directives/supplemental-direction-ed-26-03-hunt-and-hardening-guidance-cisco-sd-wan-systems" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">https://nvd.nist.gov/vuln/detail/CVE-2026-20182, https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-sdwan-rpa2-v69WY2SW, https://www.cisa.gov/news-events/directives/ed-26-03-mitigate-vulnerabilities-cisco-sd-wan-systems, https://www.cisa.gov/news-events/directives/supplemental-direction-ed-26-03-hunt-and-hardening-guidance-cisco-sd-wan-systems</span></a>&nbsp;</p></div></td></tr></tbody></table><div><div></div>
<div><p><span>&nbsp;</span></p></div><div><p><span style="font-weight:bold;"><span>Vulnérabilités de composants de systèmes industriels :&nbsp;</span></span><span>&nbsp;</span></p></div>
<div><p><br></p></div><div><div><table border="1"><tbody><tr><td style="vertical-align:top;width:82px;"><div><div><p><span>Vendor&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:593.5px;"><div><div><p><span>Product&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:120.5px;"><div><div><p><span>Critical&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:143.281px;"><div><div><p><span>High&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:119.312px;"><div><div><p><span>Medium&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:119.062px;"><div><div><p><span>Low&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:111.406px;"><div><div><p><span>Total&nbsp;</span></p></div>
</div></td></tr><tr><td style="vertical-align:top;width:82px;"><div><div><p><span>Siemens&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:593.5px;" class="zp-selected-cell"><div><div><p><span>gWAP,IE/PB LINK HA (6GK1411-5BB00),Opcenter RDnL,ROS#,RUGGEDCOM ROX MX5000,SENTRON 7KT PAC1261 Data Manager,SIMATIC CN 4100,SIMATIC Drive Controller CPU 1504D TF (6ES7615-4DF10-0AB0),SIMATIC HMI MTP1000 Unified Comfort Panel (6AV2128-3KB06-0AX1),Simcenter Femap,SIPROTEC 5 6MD84 (CP300),Solid Edge,Teamcenter V2312&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:120.5px;"><div><div><p><span>23&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:143.281px;"><div><div><p><span>77&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:119.312px;"><div><div><p><span>122&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:119.062px;"><div><div><p><span>3&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:111.406px;"><div><div><p><span>225&nbsp;</span></p></div>
</div></td></tr><tr><td style="vertical-align:top;width:82px;"><div><div><p><span>Subnet Solutions Inc.&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:593.5px;"><div><div><p><span>PowerSYSTEM Center 2020&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:120.5px;"><div><div><p><span>0&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:143.281px;"><div><div><p><span>1&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:119.312px;"><div><div><p><span>3&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:119.062px;"><div><div><p><span>0&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:111.406px;"><div><div><p><span>4&nbsp;</span></p></div>
</div></td></tr><tr><td style="vertical-align:top;width:82px;"><div><div><p><span>Fuji Electric&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:593.5px;"><div><div><p><span>Tellus&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:120.5px;"><div><div><p><span>0&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:143.281px;"><div><div><p><span>1&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:119.312px;"><div><div><p><span>0&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:119.062px;"><div><div><p><span>0&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:111.406px;"><div><div><p><span>1&nbsp;</span></p></div>
</div></td></tr><tr><td style="vertical-align:top;width:82px;"><div><div><p><span>Universal Robots&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:593.5px;"><div><div><p><span>Polyscope 5&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:120.5px;"><div><div><p><span>1&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:143.281px;"><div><div><p><span>0&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:119.312px;"><div><div><p><span>0&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:119.062px;"><div><div><p><span>0&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:111.406px;"><div><div><p><span>1&nbsp;</span></p></div>
</div></td></tr></tbody></table></div></div><div><p><span>&nbsp;</span></p></div>
<div><p><span>&nbsp;</span>Liste complète triée par CVSSv3.1 Score :</p><p><strong>Au regard du nombre, seules les vulnérabilités Critical et High sont listées.</strong></p></div>
<div><table border="1"><tbody><tr><td style="vertical-align:top;width:15%;"><div><p><strong>Vendor&nbsp;</strong></p></div></td><td style="vertical-align:top;width:15%;"><div><p><strong>Product&nbsp;</strong></p></div></td><td style="vertical-align:top;width:15%;"><div><p><strong>CVE&nbsp;</strong></p></div></td><td style="vertical-align:top;width:15%;"><div><p><strong>CVSSv3 Score&nbsp;</strong></p></div></td><td style="vertical-align:top;width:15%;"><div><p><strong>CVSSv3 Severity&nbsp;</strong></p></div></td><td style="vertical-align:top;width:15%;"><div><p><strong>EPSS&nbsp;</strong></p></div></td><td style="vertical-align:top;width:15%;"><div><p><strong>CWE&nbsp;</strong></p></div></td></tr><tr><td style="vertical-align:top;width:15%;"><div><p>Siemens&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>RUGGEDCOM ROX MX5000&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2019-14192" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2019-14192</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>9.8&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>CRITICAL&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>0.379%&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://cwe.mitre.org/data/definitions/191.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-191</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:15%;"><div><p>Siemens&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>RUGGEDCOM ROX MX5000&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2019-14193" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2019-14193</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>9.8&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>CRITICAL&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>0.500%&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://cwe.mitre.org/data/definitions/787.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-787</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:15%;"><div><p>Siemens&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>RUGGEDCOM ROX MX5000&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2019-14194" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2019-14194</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>9.8&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>CRITICAL&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>0.500%&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://cwe.mitre.org/data/definitions/787.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-787</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:15%;"><div><p>Siemens&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>RUGGEDCOM ROX MX5000&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2019-14195" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2019-14195</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>9.8&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>CRITICAL&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>0.267%&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://cwe.mitre.org/data/definitions/787.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-787</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:15%;"><div><p>Siemens&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>RUGGEDCOM ROX MX5000&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2019-14196" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2019-14196</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>9.8&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>CRITICAL&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>0.419%&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://cwe.mitre.org/data/definitions/787.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-787</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:15%;"><div><p>Siemens&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>RUGGEDCOM ROX MX5000&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2019-14198" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2019-14198</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>9.8&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>CRITICAL&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>0.500%&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://cwe.mitre.org/data/definitions/787.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-787</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:15%;"><div><p>Siemens&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>RUGGEDCOM ROX MX5000&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2019-14199" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2019-14199</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>9.8&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>CRITICAL&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>0.646%&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://cwe.mitre.org/data/definitions/191.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-191</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:15%;"><div><p>Siemens&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>RUGGEDCOM ROX MX5000&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2019-14200" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2019-14200</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>9.8&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>CRITICAL&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>0.570%&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://cwe.mitre.org/data/definitions/787.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-787</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:15%;"><div><p>Siemens&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>RUGGEDCOM ROX MX5000&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2019-14201" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2019-14201</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>9.8&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>CRITICAL&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>0.570%&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://cwe.mitre.org/data/definitions/787.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-787</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:15%;"><div><p>Siemens&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>RUGGEDCOM ROX MX5000&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2019-14202" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2019-14202</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>9.8&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>CRITICAL&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>0.570%&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://cwe.mitre.org/data/definitions/787.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-787</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:15%;"><div><p>Siemens&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>RUGGEDCOM ROX MX5000&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2019-14203" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2019-14203</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>9.8&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>CRITICAL&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>0.570%&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://cwe.mitre.org/data/definitions/787.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-787</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:15%;"><div><p>Siemens&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>RUGGEDCOM ROX MX5000&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2019-14204" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2019-14204</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>9.8&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>CRITICAL&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>0.570%&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://cwe.mitre.org/data/definitions/787.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-787</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:15%;"><div><p>Siemens&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>RUGGEDCOM ROX MX5000&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-34835" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2022-34835</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>9.8&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>CRITICAL&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>0.419%&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://cwe.mitre.org/data/definitions/787.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-787</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:15%;"><div><p>Universal Robots&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>Polyscope 5&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-8153" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2026-8153</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>9.8&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>CRITICAL&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>1.532%&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://cwe.mitre.org/data/definitions/78.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-78</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:15%;"><div><p>Siemens&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>SIMATIC CN 4100&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-55754" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2025-55754</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>9.6&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>CRITICAL&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>0.120%&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://cwe.mitre.org/data/definitions/150.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-150</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:15%;"><div><p>Siemens&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>RUGGEDCOM ROX MX5000&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2019-14197" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2019-14197</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>9.1&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>CRITICAL&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>0.587%&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://cwe.mitre.org/data/definitions/125.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-125</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:15%;"><div><p>Siemens&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>SENTRON 7KT PAC1261 Data Manager&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-22871" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2025-22871</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>9.1&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>CRITICAL&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>0.294%&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://cwe.mitre.org/data/definitions/444.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-444</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:15%;"><div><p>Siemens&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>RUGGEDCOM ROX MX5000&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-40949" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2025-40949</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>9.1&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>CRITICAL&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>0.173%&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://cwe.mitre.org/data/definitions/78.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-78</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:15%;"><div><p>Siemens&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>RUGGEDCOM ROX MX5000&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-49794" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2025-49794</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>9.1&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>CRITICAL&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>0.445%&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://cwe.mitre.org/data/definitions/825.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-825</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:15%;"><div><p>Siemens&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>RUGGEDCOM ROX MX5000&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-49796" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2025-49796</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>9.1&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>CRITICAL&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>1.777%&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://cwe.mitre.org/data/definitions/125.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-125</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:15%;"><div><p>Siemens&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>SIMATIC CN 4100&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-22924" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2026-22924</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>9.1&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>CRITICAL&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>0.039%&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://cwe.mitre.org/data/definitions/306.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-306</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:15%;"><div><p>Siemens&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>SIMATIC Drive Controller CPU 1504D TF (6ES7615-4DF10-0AB0)&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-25786" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2026-25786</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>9.1&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>CRITICAL&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>0.044%&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://cwe.mitre.org/data/definitions/79.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-79</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:15%;"><div><p>Siemens&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>SIMATIC Drive Controller CPU 1504D TF (6ES7615-4DF10-0AB0)&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-25787" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2026-25787</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>9.1&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>CRITICAL&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>0.044%&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://cwe.mitre.org/data/definitions/79.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-79</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:15%;"><div><p>Siemens&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>ROS#&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-41551" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2026-41551</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>9.1&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>CRITICAL&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>0.048%&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://cwe.mitre.org/data/definitions/23.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-23</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:15%;"><div><p>Subnet Solutions Inc.&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>PowerSYSTEM Center 2020&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-26289" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2026-26289</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>8.2&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>HIGH&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>0.021%&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://cwe.mitre.org/data/definitions/863.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-863</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:15%;"><div><p>Siemens&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>SIMATIC CN 4100&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-47219" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2025-47219</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>8.1&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>HIGH&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>0.145%&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://cwe.mitre.org/data/definitions/125.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-125</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:15%;"><div><p>Siemens&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>gWAP&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-40175" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2026-40175</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>8.0&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>HIGH&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>0.030%&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://cwe.mitre.org/data/definitions/113.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-113</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:15%;"><div><p>Fuji Electric&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>Tellus&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-8108" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2026-8108</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>7.8&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>HIGH&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>0.005%&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://cwe.mitre.org/data/definitions/749.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-749</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:15%;"><div><p>Siemens&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>RUGGEDCOM ROX MX5000&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2019-13104" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2019-13104</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>7.8&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>HIGH&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>0.254%&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://cwe.mitre.org/data/definitions/191.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-191</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:15%;"><div><p>Siemens&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>RUGGEDCOM ROX MX5000&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2019-13106" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2019-13106</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>7.8&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>HIGH&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>0.922%&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://cwe.mitre.org/data/definitions/787.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-787</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:15%;"><div><p>Siemens&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>RUGGEDCOM ROX MX5000&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-10648" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2020-10648</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>7.8&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>HIGH&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>0.123%&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://cwe.mitre.org/data/definitions/20.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-20</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:15%;"><div><p>Siemens&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>RUGGEDCOM ROX MX5000&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-30790" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2022-30790</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>7.8&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>HIGH&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>0.249%&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://cwe.mitre.org/data/definitions/787.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-787</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:15%;"><div><p>Siemens&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>Simcenter Femap&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-12659" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2025-12659</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>7.8&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>HIGH&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>0.016%&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://cwe.mitre.org/data/definitions/122.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-122</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:15%;"><div><p>Siemens&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>SIMATIC CN 4100&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-38685" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2025-38685</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>7.8&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>HIGH&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>0.017%&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://cwe.mitre.org/data/definitions/787.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-787</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:15%;"><div><p>Siemens&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>SIMATIC CN 4100&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-38702" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2025-38702</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>7.8&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>HIGH&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>0.014%&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://cwe.mitre.org/data/definitions/787.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-787</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:15%;"><div><p>Siemens&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>SIMATIC CN 4100&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-38708" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2025-38708</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>7.8&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>HIGH&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>0.021%&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://cwe.mitre.org/data/definitions/416.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-416</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:15%;"><div><p>Siemens&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>SIMATIC CN 4100&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-38724" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2025-38724</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>7.8&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>HIGH&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>0.021%&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://cwe.mitre.org/data/definitions/416.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-416</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:15%;"><div><p>Siemens&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>SIMATIC CN 4100&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-39689" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2025-39689</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>7.8&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>HIGH&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>0.018%&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://cwe.mitre.org/data/definitions/416.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-416</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:15%;"><div><p>Siemens&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>SIMATIC CN 4100&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-39783" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2025-39783</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>7.8&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>HIGH&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>0.018%&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://cwe.mitre.org/data/definitions/787.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-787</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:15%;"><div><p>Siemens&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>SIMATIC CN 4100&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-39841" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2025-39841</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>7.8&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>HIGH&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>0.018%&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://cwe.mitre.org/data/definitions/20.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-20</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:15%;"><div><p>Siemens&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>SIMATIC CN 4100&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-39864" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2025-39864</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>7.8&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>HIGH&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>0.018%&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://cwe.mitre.org/data/definitions/20.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-20</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:15%;"><div><p>Siemens&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>SIMATIC CN 4100&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-39866" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2025-39866</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>7.8&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>HIGH&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>0.027%&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://cwe.mitre.org/data/definitions/416.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-416</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:15%;"><div><p>Siemens&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>RUGGEDCOM ROX MX5000&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-6020" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2025-6020</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>7.8&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>HIGH&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>0.072%&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://cwe.mitre.org/data/definitions/22.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-22</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:15%;"><div><p>Siemens&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>SIMATIC CN 4100&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-7425" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2025-7425</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>7.8&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>HIGH&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>0.192%&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://cwe.mitre.org/data/definitions/416.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-416</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:15%;"><div><p>Siemens&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>RUGGEDCOM ROX MX5000&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-7425" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2025-7425</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>7.8&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>HIGH&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>0.192%&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://cwe.mitre.org/data/definitions/416.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-416</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:15%;"><div><p>Siemens&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>Solid Edge&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-44411" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2026-44411</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>7.8&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>HIGH&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>0.015%&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://cwe.mitre.org/data/definitions/824.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-824</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:15%;"><div><p>Siemens&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>Solid Edge&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-44412" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2026-44412</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>7.8&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>HIGH&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>0.015%&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://cwe.mitre.org/data/definitions/121.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-121</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:15%;"><div><p>Siemens&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>RUGGEDCOM ROX MX5000&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-2347" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2022-2347</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>7.7&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>HIGH&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>0.038%&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://cwe.mitre.org/data/definitions/122.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-122</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:15%;"><div><p>Siemens&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>SIMATIC HMI MTP1000 Unified Comfort Panel (6AV2128-3KB06-0AX1)&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-27662" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2026-27662</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>7.7&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>HIGH&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>0.025%&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://cwe.mitre.org/data/definitions/1188.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-1188</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:15%;"><div><p>Siemens&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>SIMATIC CN 4100&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-39718" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2025-39718</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>7.6&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>HIGH&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>0.019%&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://cwe.mitre.org/data/definitions/787.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-787</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:15%;"><div><p>Siemens&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>IE/PB LINK HA (6GK1411-5BB00)&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-40833" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2025-40833</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>7.5&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>HIGH&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>0.040%&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://cwe.mitre.org/data/definitions/476.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-476</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:15%;"><div><p>Siemens&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>RUGGEDCOM ROX MX5000&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-40947" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2025-40947</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>7.5&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>HIGH&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>0.229%&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://cwe.mitre.org/data/definitions/78.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-78</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:15%;"><div><p>Siemens&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>SIMATIC CN 4100&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-48989" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2025-48989</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>7.5&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>HIGH&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>0.983%&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://cwe.mitre.org/data/definitions/404.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-404</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:15%;"><div><p>Siemens&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>SIMATIC CN 4100&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-53066" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2025-53066</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>7.5&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>HIGH&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>0.066%&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://cwe.mitre.org/data/definitions/200.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-200</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:15%;"><div><p>Siemens&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>SIMATIC CN 4100&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-55752" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2025-55752</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>7.5&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>HIGH&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>0.143%&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://cwe.mitre.org/data/definitions/23.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-23</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:15%;"><div><p>Siemens&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>SIMATIC CN 4100&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-6021" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2025-6021</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>7.5&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>HIGH&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>2.116%&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://cwe.mitre.org/data/definitions/787.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-787</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:15%;"><div><p>Siemens&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>SIMATIC CN 4100&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-9230" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2025-9230</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>7.5&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>HIGH&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>0.037%&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://cwe.mitre.org/data/definitions/125.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-125</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:15%;"><div><p>Siemens&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>SIMATIC CN 4100&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-21945" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2026-21945</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>7.5&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>HIGH&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>0.069%&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://cwe.mitre.org/data/definitions/400.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-400</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:15%;"><div><p>Siemens&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>SIMATIC CN 4100&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-22925" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2026-22925</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>7.5&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>HIGH&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>0.040%&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://cwe.mitre.org/data/definitions/770.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-770</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:15%;"><div><p>Siemens&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>SIMATIC CN 4100&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-2673" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2026-2673</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>7.5&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>HIGH&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>0.022%&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://cwe.mitre.org/data/definitions/757.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-757</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:15%;"><div><p>Siemens&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>SIMATIC CN 4100&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-28388" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2026-28388</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>7.5&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>HIGH&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>0.034%&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://cwe.mitre.org/data/definitions/476.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-476</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:15%;"><div><p>Siemens&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>SIMATIC CN 4100&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-28389" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2026-28389</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>7.5&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>HIGH&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>0.085%&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://cwe.mitre.org/data/definitions/476.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-476</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:15%;"><div><p>Siemens&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>SIMATIC CN 4100&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-28390" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2026-28390</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>7.5&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>HIGH&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>0.085%&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://cwe.mitre.org/data/definitions/476.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-476</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:15%;"><div><p>Siemens&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>SIMATIC CN 4100&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-31790" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2026-31790</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>7.5&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>HIGH&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>0.035%&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://cwe.mitre.org/data/definitions/754.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-754</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:15%;"><div><p>Siemens&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>Teamcenter V2312&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-33893" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2026-33893</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>7.5&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>HIGH&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>0.038%&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://cwe.mitre.org/data/definitions/798.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-798</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:15%;"><div><p>Siemens&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>SIMATIC CN 4100&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-21932" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2026-21932</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>7.4&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>HIGH&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>0.042%&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://cwe.mitre.org/data/definitions/20.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-20</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:15%;"><div><p>Siemens&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>SIMATIC CN 4100&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-58240" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2024-58240</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>7.3&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>HIGH&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>0.023%&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://cwe.mitre.org/data/definitions/416.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-416</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:15%;"><div><p>Siemens&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>Teamcenter V2312&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-33862" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2026-33862</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>7.3&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>HIGH&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>0.032%&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://cwe.mitre.org/data/definitions/79.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-79</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:15%;"><div><p>Siemens&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>RUGGEDCOM ROX MX5000&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2019-13103" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2019-13103</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>7.1&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>HIGH&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>0.052%&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://cwe.mitre.org/data/definitions/674.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-674</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:15%;"><div><p>Siemens&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>RUGGEDCOM ROX MX5000&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-57256" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2024-57256</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>7.1&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>HIGH&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>0.061%&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://cwe.mitre.org/data/definitions/190.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-190</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:15%;"><div><p>Siemens&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>RUGGEDCOM ROX MX5000&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-57258" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2024-57258</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>7.1&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>HIGH&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>0.041%&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://cwe.mitre.org/data/definitions/190.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-190</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:15%;"><div><p>Siemens&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>SIMATIC CN 4100&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-38729" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2025-38729</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>7.1&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>HIGH&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>0.018%&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://cwe.mitre.org/data/definitions/125.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-125</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:15%;"><div><p>Siemens&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>SIMATIC CN 4100&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-39683" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2025-39683</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>7.1&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>HIGH&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>0.018%&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://cwe.mitre.org/data/definitions/125.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-125</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:15%;"><div><p>Siemens&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>SIMATIC CN 4100&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-39702" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2025-39702</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>7.1&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>HIGH&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>0.025%&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://cwe.mitre.org/data/definitions/208.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-208</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:15%;"><div><p>Siemens&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>SIMATIC CN 4100&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-39757" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2025-39757</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>7.1&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>HIGH&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>0.018%&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://cwe.mitre.org/data/definitions/20.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-20</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:15%;"><div><p>Siemens&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>SIMATIC CN 4100&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-39794" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2025-39794</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>7.1&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>HIGH&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>0.018%&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://cwe.mitre.org/data/definitions/20.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-20</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:15%;"><div><p>Siemens&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>SIMATIC CN 4100&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-39860" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2025-39860</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>7.1&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>HIGH&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>0.018%&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://cwe.mitre.org/data/definitions/20.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-20</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:15%;"><div><p>Siemens&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>SIMATIC Drive Controller CPU 1504D TF (6ES7615-4DF10-0AB0)&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-25789" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2026-25789</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>7.1&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>HIGH&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>0.138%&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://cwe.mitre.org/data/definitions/79.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-79</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:15%;"><div><p>Siemens&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>Opcenter RDnL&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-27446" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2026-27446</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>7.1&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>HIGH&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>0.156%&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://cwe.mitre.org/data/definitions/306.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-306</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:15%;"><div><p>Siemens&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>SIMATIC CN 4100&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-38693" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2025-38693</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>7.0&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>HIGH&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>0.017%&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://cwe.mitre.org/data/definitions/20.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-20</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:15%;"><div><p>Siemens&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>SIMATIC CN 4100&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-38695" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2025-38695</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>7.0&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>HIGH&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>0.017%&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://cwe.mitre.org/data/definitions/476.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-476</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:15%;"><div><p>Siemens&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>SIMATIC CN 4100&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-38697" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2025-38697</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>7.0&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>HIGH&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>0.014%&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://cwe.mitre.org/data/definitions/20.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-20</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:15%;"><div><p>Siemens&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>SIMATIC CN 4100&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-38698" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2025-38698</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>7.0&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>HIGH&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>0.014%&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://cwe.mitre.org/data/definitions/20.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-20</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:15%;"><div><p>Siemens&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>SIMATIC CN 4100&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-38700" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2025-38700</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>7.0&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>HIGH&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>0.017%&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://cwe.mitre.org/data/definitions/20.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-20</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:15%;"><div><p>Siemens&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>SIMATIC CN 4100&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-38713" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2025-38713</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>7.0&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>HIGH&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>0.014%&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://cwe.mitre.org/data/definitions/20.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-20</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:15%;"><div><p>Siemens&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>SIMATIC CN 4100&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-38714" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2025-38714</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>7.0&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>HIGH&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>0.014%&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://cwe.mitre.org/data/definitions/20.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-20</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:15%;"><div><p>Siemens&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>SIMATIC CN 4100&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-38725" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2025-38725</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>7.0&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>HIGH&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>0.018%&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://cwe.mitre.org/data/definitions/20.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-20</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:15%;"><div><p>Siemens&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>SIMATIC CN 4100&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-39682" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2025-39682</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>7.0&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>HIGH&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>0.009%&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://cwe.mitre.org/data/definitions/20.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-20</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:15%;"><div><p>Siemens&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>SIMATIC CN 4100&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-39694" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2025-39694</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>7.0&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>HIGH&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>0.019%&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://cwe.mitre.org/data/definitions/1285.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-1285</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:15%;"><div><p>Siemens&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>SIMATIC CN 4100&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-39743" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2025-39743</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>7.0&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>HIGH&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>0.014%&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://cwe.mitre.org/data/definitions/20.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-20</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:15%;"><div><p>Siemens&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>SIMATIC CN 4100&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-39766" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2025-39766</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>7.0&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>HIGH&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>0.018%&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://cwe.mitre.org/data/definitions/20.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-20</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:15%;"><div><p>Siemens&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>SIMATIC CN 4100&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-39806" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2025-39806</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>7.0&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>HIGH&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>0.019%&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://cwe.mitre.org/data/definitions/20.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-20</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:15%;"><div><p>Siemens&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>SIMATIC CN 4100&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-39817" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2025-39817</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>7.0&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>HIGH&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>0.018%&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://cwe.mitre.org/data/definitions/20.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-20</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:15%;"><div><p>Siemens&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>SIMATIC CN 4100&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-39823" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2025-39823</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>7.0&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>HIGH&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>0.019%&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://cwe.mitre.org/data/definitions/20.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-20</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:15%;"><div><p>Siemens&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>SIMATIC CN 4100&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-39824" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2025-39824</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>7.0&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>HIGH&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>0.018%&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://cwe.mitre.org/data/definitions/20.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-20</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:15%;"><div><p>Siemens&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>SIMATIC CN 4100&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-39825" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2025-39825</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>7.0&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>HIGH&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>0.015%&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://cwe.mitre.org/data/definitions/20.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-20</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:15%;"><div><p>Siemens&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>SIMATIC CN 4100&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-39828" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2025-39828</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>7.0&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>HIGH&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>0.014%&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://cwe.mitre.org/data/definitions/20.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-20</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:15%;"><div><p>Siemens&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>SIMATIC CN 4100&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-39838" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2025-39838</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>7.0&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>HIGH&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>0.019%&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://cwe.mitre.org/data/definitions/20.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-20</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:15%;"><div><p>Siemens&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>SIMATIC CN 4100&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-39843" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2025-39843</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>7.0&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>HIGH&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>0.015%&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://cwe.mitre.org/data/definitions/20.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-20</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:15%;"><div><p>Siemens&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>SIMATIC CN 4100&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-39857" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2025-39857</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>7.0&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>HIGH&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>0.019%&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://cwe.mitre.org/data/definitions/20.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-20</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:15%;"><div><p>Siemens&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>SIMATIC CN 4100&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-39865" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2025-39865</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>7.0&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>HIGH&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>0.018%&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://cwe.mitre.org/data/definitions/20.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-20</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:15%;"><div><p>Siemens&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>SIMATIC CN 4100&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-28387" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2026-28387</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>7.0&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>HIGH&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>0.043%&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://cwe.mitre.org/data/definitions/416.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-416</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:15%;" class="zp-selected-cell"><div><p>Siemens&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>SIMATIC CN 4100&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-31789" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2026-31789</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>7.0&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>HIGH&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p>0.006%&nbsp;</p></div></td><td style="vertical-align:top;width:15%;"><div><p><a href="https://cwe.mitre.org/data/definitions/787.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-787</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:15%;"><p><br></p></td><td style="vertical-align:top;width:15%;"></td><td style="vertical-align:top;width:15%;"></td><td style="vertical-align:top;width:15%;"></td><td style="vertical-align:top;width:15%;"></td><td style="vertical-align:top;width:15%;"></td><td style="vertical-align:top;width:15%;"><br></td></tr></tbody></table></div>
<div><p><span>&nbsp;</span></p></div><div><p><span>-----&nbsp;<br></span><span style="font-weight:bold;">Actualité Fortress Cybersecurity&nbsp;</span><span><span>&nbsp;</span><br> &nbsp;</span></p></div>
<div><p><a href="https://www.fortress-cybersecurity.fr/blogs/post/bilan-des-known-exploited-vulnerabilities-du-mois-d-avril-2026" target="_blank" rel="noreferrer noopener"><span>- Bilan des Known Exploited Vulnerabilities du mois d'avril 2026</span></a><span>&nbsp;</span></p></div>
<div><p><a href="https://www.fortress-cybersecurity.fr/blogs/post/nouveau-guide-de-classification-des-actifs-industriels-publi%C3%A9-par-l-anssi" target="_blank" rel="noreferrer noopener"><span>- Nouveau guide de classification des actifs industriels publié par l'ANSSI</span></a><span>&nbsp;</span></p></div>
<div><p><a href="https://www.fortress-cybersecurity.fr/blogs/post/calendrier-2026-de-nos-webinaires-d%C3%A9di%C3%A9s-%C3%A0-la-cybers%C3%A9curit%C3%A9-des-installations-industrielles" target="_blank" rel="noreferrer noopener"><span>Nos prochains webinaires dédiés à la cybersécurité des installations industrielles :</span></a><span>&nbsp;</span></p></div>
<div><p><span>- 4 juin 2026 : Gérer les incidents cyber en environnement industriel​, inscription </span><a href="https://events.teams.microsoft.com/event/c5644e79-7926-4075-bc80-8de9ad9833cf%40a43cc6b0-e19e-4635-966f-1f00bc18b9ac" target="_blank" rel="noreferrer noopener"><span>lien</span></a><span>&nbsp;</span></p></div>
<div><p><span>- 2 juillet 2026 : Gérer les vulnérabilités en environnement industriel​​, inscription </span><a href="https://events.teams.microsoft.com/event/e2cac6c8-9560-48d5-8736-25da3b084041%40a43cc6b0-e19e-4635-966f-1f00bc18b9ac" target="_blank" rel="noreferrer noopener"><span>lien</span></a><span>&nbsp;</span></p></div>
<div><p><span>- 3 septembre 2026 : Mettre en place le plan de contrôle cyber de ses installations industriels​​, inscription </span><a href="https://events.teams.microsoft.com/event/1960fe77-9d3a-4f18-a7a9-70528a5e7151%40a43cc6b0-e19e-4635-966f-1f00bc18b9ac" target="_blank" rel="noreferrer noopener"><span>lien</span></a><span>&nbsp;</span></p></div>
<div><p><span>- 1 octobre 2026 : Sécuriser les accès à distance et de télémaintenance des actifs industriels, inscription </span><a href="https://events.teams.microsoft.com/event/c9ba377e-5c27-4e4d-bffb-8ddc3a7856be%40a43cc6b0-e19e-4635-966f-1f00bc18b9ac" target="_blank" rel="noreferrer noopener"><span>lien</span></a><span>&nbsp;</span></p></div>
<div><p><span>- 5 novembre 2026 : Protéger les endpoints dans les zones industrielles, inscription </span><a href="https://events.teams.microsoft.com/event/f079bb46-c1ad-4274-b0d3-e32db7d3b4fc%40a43cc6b0-e19e-4635-966f-1f00bc18b9ac" target="_blank" rel="noreferrer noopener"><span>lien</span></a><span>&nbsp;</span></p></div>
<div><p><span>- 3 décembre 2026 : Protéger les réseaux mobiles privés 5G, inscription </span><a href="https://events.teams.microsoft.com/event/56995822-3f07-404d-b2dc-f6fb7727ad50%40a43cc6b0-e19e-4635-966f-1f00bc18b9ac" target="_blank" rel="noreferrer noopener"><span>lien</span></a><span>&nbsp;</span></p></div>
</div><p><br></p><p><br></p></span></span><p></p><div><p></p></div></div></div></div>
</div></div></div></div>]]></content:encoded><pubDate>Sun, 17 May 2026 21:05:46 +0200</pubDate></item><item><title><![CDATA[Bulletin cybersec indus hebdo 26.S19]]></title><link>https://www.fortress-cybersecurity.fr/blogs/post/bulletin-cybersec-indus-hebdo-26.s19</link><description><![CDATA[<img align="left" hspace="5" src="https://www.fortress-cybersecurity.fr/files/manufacturing.jpg"/> Lotus Wiper : une nouvelle menace visant le secteur de l'énergie au Venezuela Kaspersky analyse Lotus Wiper, un malware destructeur ciblant le secteu ]]></description><content:encoded><![CDATA[<div class="zpcontent-container blogpost-container "><div data-element-id="elm_OIHw3lK1R0uMD1sBLIHwRg" data-element-type="section" class="zpsection "><style type="text/css"></style><div class="zpcontainer-fluid zpcontainer"><div data-element-id="elm_1ydeJqOcTyiM7nuV2rOklQ" data-element-type="row" class="zprow zprow-container zpalign-items- zpjustify-content- " data-equal-column=""><style type="text/css"></style><div data-element-id="elm_mz-pWBAHSAqarVeQFmIgeA" data-element-type="column" class="zpelem-col zpcol-12 zpcol-md-12 zpcol-sm-12 zpalign-self- "><style type="text/css"> [data-element-id="elm_mz-pWBAHSAqarVeQFmIgeA"].zpelem-col{ border-radius:1px; } @media (max-width: 767px) { [data-element-id="elm_mz-pWBAHSAqarVeQFmIgeA"].zpelem-col{ border-radius:1px; } } @media all and (min-width: 768px) and (max-width:991px){ [data-element-id="elm_mz-pWBAHSAqarVeQFmIgeA"].zpelem-col{ border-radius:1px; } } </style><div data-element-id="elm_M7cAp-bDTcCbA9gTt6JiPA" data-element-type="heading" class="zpelement zpelem-heading "><style> [data-element-id="elm_M7cAp-bDTcCbA9gTt6JiPA"].zpelem-heading { border-radius:1px; } </style><h2 class="zpheading zpheading-align-center zpheading-align-mobile-center zpheading-align-tablet-center " data-editor="true">Les news relatives à la cybersécurité des installations industrielles</h2></div>
<div data-element-id="elm_sH2l7vQ8h3FUwPV13-l42A" data-element-type="text" class="zpelement zpelem-text "><style></style><div class="zptext zptext-align-left zptext-align-mobile-left zptext-align-tablet-left " data-editor="true"><p style="font-weight:bold;"></p><div><p style="font-weight:bold;"></p><div><p style="font-weight:bold;"></p><div><p style="font-weight:bold;"></p><b></b></div>
</div></div><span><span><p style="font-weight:bold;"></p><div><p style="font-weight:bold;"></p><div><p style="font-weight:bold;"></p><div><p style="font-weight:bold;"></p><b></b></div>
</div></div><p><strong><span>Lotus Wiper : une nouvelle menace visant le secteur de l'énergie au Venezuela</span></strong><br></p><p><span><span><span>Kaspersky analyse Lotus Wiper, un malware destructeur ciblant le secteur énergie/utilities au Venezuela fin 2025, dans un contexte de tensions géopolitiques dans la région des Caraïbes. À la différence d’un ransomware, l’attaque ne vise pas l’extorsion mais l’effacement pur des systèmes : modification aléatoire des mots de passe utilisateurs, désactivation des comptes locaux et des interfaces réseau, suppression des points de restauration, écrasement des disques, effacement des journaux et suppression massive de fichiers. À l’image de NotPetya ou d’HermeticWiper, Lotus Wiper rappelle que toutes les attaques destructrices ne poursuivent pas un objectif financier : certaines s’inscrivent dans des logiques géopolitiques où la finalité est la destruction des systèmes et la perturbation durable de l’activité.</span></span><br></span></p><p><a href="https://securelist.com/tr/lotus-wiper/119472/" title="https://securelist.com/tr/lotus-wiper/119472/" rel="">https://securelist.com/tr/lotus-wiper/119472/</a><br></p><p><span><br></span></p><p><strong><span>NIST/NCCoE : mieux voir l’OT pour mieux le protéger</span></strong><br></p><p><span><span><span></span></span></span></p><div><p></p></div></span></span><p></p><div><p>Dans cet article de GovConWire, la nouvelle initiative du NIST/NCCoE, un organisme américain de référence en cybersécurité et son centre chargé de produire des guides pratiques, met l'accent sur la visibilité dans les environnements industriels. L’idée est simple : dans beaucoup de ces environnements, on ne sait pas toujours précisément quels équipements sont présents, comment ils communiquent, ni si une activité anormale est en cours. L’article montre que ce manque de visibilité n’est pas seulement un problème technique. Il peut avoir des impacts directs sur la production, la sécurité des sites, la conformité et la résilience des infrastructures critiques.</p></div>
<p><a href="https://www.govconwire.com/articles/chuck-brooks-govcon-expert-nist-cybersecurity-visibility-project" title="https://www.govconwire.com/articles/chuck-brooks-govcon-expert-nist-cybersecurity-visibility-project" rel="">https://www.govconwire.com/articles/chuck-brooks-govcon-expert-nist-cybersecurity-visibility-project</a><br></p><p></p><p><br></p><p><strong><span>Mythos / Project Glasswing : les environnements industriels encore trop peu intégrés</span></strong></p><p>Dans cet article de Nextgov/FCW, on parle de Mythos, le modèle cyber d’Anthropic, utilisé dans Project Glasswing pour aider à identifier et corriger des vulnérabilités logicielles.<span><span></span></span></p><div><p>L’article explique que plusieurs acteurs du monde industriel estiment avoir été écartés au départ, alors que leurs infrastructures sont directement exposées à ce type de risque. Il rappelle aussi que corriger une faille sur un site industriel est souvent plus complexe que dans un environnement informatique classique : certains équipements sont anciens, difficiles à arrêter, et les mises à jour doivent être priorisées avec attention.</p></div>
<p></p><p><a href="https://www.nextgov.com/cybersecurity/2026/05/operational-technology-providers-are-feeling-annoyance-exclusion-anthropics-mythos-rollout-sources-say/413309/" title="https://www.nextgov.com/cybersecurity/2026/05/operational-technology-providers-are-feeling-annoyance-exclusion-anthropics-mythos-rollout-sources-say/413309/" rel="">https://www.nextgov.com/cybersecurity/2026/05/operational-technology-providers-are-feeling-annoyance-exclusion-anthropics-mythos-rollout-sources-say/413309/</a><br></p><p><br></p><div><p></p><div><div><p><span style="font-weight:bold;"><span>Vulnerability Corner :</span></span><span>&nbsp;</span></p></div>
<div><p><span>Liste des Known Exploited Vulnerabilities (KEV) publiés par l'agence de cybersécurité américaine CISA la semaine dernière :&nbsp;&nbsp;</span></p></div>
<div><div><table border="1"><tbody><tr><td style="vertical-align:top;width:192px;" class="zp-selected-cell"><div><div><p><span style="font-weight:bold;">CVE&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:199.25px;"><div><div><p><span style="font-weight:bold;">Vendor&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:277.047px;"><div><div><p><span style="font-weight:bold;">Product&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:608.953px;"><div><div><p><span style="font-weight:bold;">Liens&nbsp;</span></p></div>
</div></td></tr><tr><td style="vertical-align:top;width:192px;"><div><div><p><span></span><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-0300" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>CVE-2026-0300</span></span></a><span>&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:199.25px;"><div><div><p><span>Palo Alto Networks&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:277.047px;"><div><div><p><span>PAN-OS&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:608.953px;"><div><div><p><span></span><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-0300%2C%20https%3A//security.paloaltonetworks.com/CVE-2026-0300" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>https://nvd.nist.gov/vuln/detail/CVE-2026-0300, https://security.paloaltonetworks.com/CVE-2026-0300</span></span></a><span>&nbsp;</span></p></div>
</div></td></tr><tr><td style="vertical-align:top;width:192px;"><div><div><p><span></span><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-42208" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>CVE-2026-42208</span></span></a><span>&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:199.25px;"><div><div><p><span>BerriAI&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:277.047px;"><div><div><p><span>LiteLLM&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:608.953px;"><div><div><p><span></span><a href="https://github.com/BerriAI/litellm/security/advisories/GHSA-r75f-5x8p-qvmc%2C%20https%3A//nvd.nist.gov/vuln/detail/CVE-2026-42208" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>https://github.com/BerriAI/litellm/security/advisories/GHSA-r75f-5x8p-qvmc, https://nvd.nist.gov/vuln/detail/CVE-2026-42208</span></span></a><span>&nbsp;</span></p></div>
</div></td></tr><tr><td style="vertical-align:top;width:192px;"><div><div><p><span></span><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-6973" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>CVE-2026-6973</span></span></a><span>&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:199.25px;"><div><div><p><span>Ivanti&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:277.047px;"><div><div><p><span>Endpoint Manager Mobile (EPMM)&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:608.953px;"><div><div><p><span></span><a href="https://hub.ivanti.com/s/article/May-2026-Security-Advisory-Ivanti-Endpoint-Manager-Mobile-EPMM-Multiple-CVEs?language=en_US%2C%20https%3A%2F%2Fnvd.nist.gov%2Fvuln%2Fdetail%2FCVE-2026-6973" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>https://hub.ivanti.com/s/article/May-2026-Security-Advisory-Ivanti-Endpoint-Manager-Mobile-EPMM-Multiple-CVEs?language=en_US, https://nvd.nist.gov/vuln/detail/CVE-2026-6973</span></span></a><span>&nbsp;</span></p></div>
</div></td></tr></tbody></table></div></div><div><p><span>&nbsp;</span></p></div>
<div><p><span style="font-weight:bold;"><span>Vulnérabilités de composants de systèmes industriels :&nbsp;</span></span><span>&nbsp;</span></p></div>
<div><p><span>Source : ICS Advisory Project dashboard https://lookerstudio.google.com/u/0/reporting/f0d99ae7-c75b-4fdd-9951-8ecada5aee5e/page/G1klC&nbsp;&nbsp;</span></p></div>
<div><div><table border="1"><tbody><tr><td style="vertical-align:top;width:82px;"><div><div><p><span style="font-weight:bold;">Vendor&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span style="font-weight:bold;">Product&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span style="font-weight:bold;">Critical&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span style="font-weight:bold;">High&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span style="font-weight:bold;">Medium&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span style="font-weight:bold;">Low&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span style="font-weight:bold;">Total&nbsp;</span></p></div>
</div></td></tr><tr><td style="vertical-align:top;width:82px;"><div><div><p><span>Johnson Controls Inc.&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>CEM AC2000&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>0&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>1&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>0&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>0&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>1&nbsp;</span></p></div>
</div></td></tr><tr><td style="vertical-align:top;width:82px;" class="zp-selected-cell"><div><div><p><span>MAXHUB&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>MAXHUB Pivot client application&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>0&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>1&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>0&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>0&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>1&nbsp;</span></p></div>
</div></td></tr></tbody></table></div></div><div><p><span>&nbsp;</span></p></div>
<div><p><span>&nbsp;</span></p></div><div><p><span>Liste complète triée par CVSSv3 Score :&nbsp;</span></p></div>
<div><div><table border="1"><tbody><tr><td style="vertical-align:top;width:72px;" class="zp-selected-cell"><div><div><p><span style="font-weight:bold;">Vendor&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span style="font-weight:bold;">Product&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span style="font-weight:bold;">CVE&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span style="font-weight:bold;">CVSSv3 Score&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span style="font-weight:bold;">CVSSv3 Severity&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span style="font-weight:bold;">EPSS&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span style="font-weight:bold;">Percentile&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span style="font-weight:bold;">CWE&nbsp;</span></p></div>
</div></td></tr><tr><td style="vertical-align:top;width:72px;"><div><div><p><span>Johnson Controls Inc.&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>CEM AC2000&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span></span><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-21661" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>CVE-2026-21661</span></span></a><span>&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>8.7&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>HIGH&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>0.014%&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>2.463%&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span></span><a href="https://cwe.mitre.org/data/definitions/427.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>CWE-427</span></span></a><span>&nbsp;</span></p></div>
</div></td></tr><tr><td style="vertical-align:top;width:72px;"><div><div><p><span>MAXHUB&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>MAXHUB Pivot client application&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span></span><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-6411" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>CVE-2026-6411</span></span></a><span>&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>7.3&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>HIGH&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>N/A&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>N/A&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span></span><a href="https://cwe.mitre.org/data/definitions/327.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>CWE-327</span></span></a><span>&nbsp;</span></p></div>
</div></td></tr></tbody></table></div></div><div><p><span>&nbsp;</span></p></div>
<div><p><span>-----&nbsp;<br></span><span style="font-weight:bold;">Actualité Fortress Cybersecurity&nbsp;</span><span><span>&nbsp;</span><br> &nbsp;</span></p></div>
<div><p><a href="https://www.fortress-cybersecurity.fr/blogs/post/bilan-des-known-exploited-vulnerabilities-du-mois-d-avril-2026" target="_blank" rel="noreferrer noopener"><span>- Bilan des Known Exploited Vulnerabilities du mois d'avril 2026</span></a><span>&nbsp;</span></p></div>
<div><p><a href="https://www.fortress-cybersecurity.fr/blogs/post/nouveau-guide-de-classification-des-actifs-industriels-publi%C3%A9-par-l-anssi" target="_blank" rel="noreferrer noopener"><span>- Nouveau guide de classification des actifs industriels publié par l'ANSSI</span></a><span>&nbsp;</span></p></div>
<div><p><a href="https://www.fortress-cybersecurity.fr/blogs/post/calendrier-2026-de-nos-webinaires-d%C3%A9di%C3%A9s-%C3%A0-la-cybers%C3%A9curit%C3%A9-des-installations-industrielles" target="_blank" rel="noreferrer noopener"><span>Nos prochains webinaires dédiés à la cybersécurité des installations industrielles :</span></a><span>&nbsp;</span></p></div>
<div><p><span>- 4 juin 2026 : Gérer les incidents cyber en environnement industriel​, inscription </span><a href="https://events.teams.microsoft.com/event/c5644e79-7926-4075-bc80-8de9ad9833cf%40a43cc6b0-e19e-4635-966f-1f00bc18b9ac" target="_blank" rel="noreferrer noopener"><span>lien</span></a><span>&nbsp;</span></p></div>
<div><p><span>- 2 juillet 2026 : Gérer les vulnérabilités en environnement industriel​​, inscription </span><a href="https://events.teams.microsoft.com/event/e2cac6c8-9560-48d5-8736-25da3b084041%40a43cc6b0-e19e-4635-966f-1f00bc18b9ac" target="_blank" rel="noreferrer noopener"><span>lien</span></a><span>&nbsp;</span></p></div>
<div><p><span>- 3 septembre 2026 : Mettre en place le plan de contrôle cyber de ses installations industriels​​, inscription </span><a href="https://events.teams.microsoft.com/event/1960fe77-9d3a-4f18-a7a9-70528a5e7151%40a43cc6b0-e19e-4635-966f-1f00bc18b9ac" target="_blank" rel="noreferrer noopener"><span>lien</span></a><span>&nbsp;</span></p></div>
<div><p><span>- 1 octobre 2026 : Sécuriser les accès à distance et de télémaintenance des actifs industriels, inscription </span><a href="https://events.teams.microsoft.com/event/c9ba377e-5c27-4e4d-bffb-8ddc3a7856be%40a43cc6b0-e19e-4635-966f-1f00bc18b9ac" target="_blank" rel="noreferrer noopener"><span>lien</span></a><span>&nbsp;</span></p></div>
<div><p><span>- 5 novembre 2026 : Protéger les endpoints dans les zones industrielles, inscription </span><a href="https://events.teams.microsoft.com/event/f079bb46-c1ad-4274-b0d3-e32db7d3b4fc%40a43cc6b0-e19e-4635-966f-1f00bc18b9ac" target="_blank" rel="noreferrer noopener"><span>lien</span></a><span>&nbsp;</span></p></div>
<div><p><span>- 3 décembre 2026 : Protéger les réseaux mobiles privés 5G, inscription </span><a href="https://events.teams.microsoft.com/event/56995822-3f07-404d-b2dc-f6fb7727ad50%40a43cc6b0-e19e-4635-966f-1f00bc18b9ac" target="_blank" rel="noreferrer noopener"><span>lien</span></a><span>&nbsp;</span></p></div>
</div><br><p></p></div></div></div></div></div></div></div></div>]]></content:encoded><pubDate>Sun, 10 May 2026 22:23:56 +0200</pubDate></item><item><title><![CDATA[Bilan des Known Exploited Vulnerabilities du mois d'avril 2026]]></title><link>https://www.fortress-cybersecurity.fr/blogs/post/bilan-des-known-exploited-vulnerabilities-du-mois-d-avril-2026</link><description><![CDATA[ ⚠️&nbsp; En Avril 2026, l’agence de cybersécurité américaine (CISA) a ajouté 31 vulnérabilités, identifiées comme activement exploitées dans le cadre ]]></description><content:encoded><![CDATA[<div class="zpcontent-container blogpost-container "><div data-element-id="elm_oDkejEquSTCm9QqUenH7tg" data-element-type="section" class="zpsection "><style type="text/css"></style><div class="zpcontainer-fluid zpcontainer"><div data-element-id="elm_SIKykFb_TsWa-AUxhhWfNw" data-element-type="row" class="zprow zprow-container zpalign-items- zpjustify-content- " data-equal-column=""><style type="text/css"></style><div data-element-id="elm_QFmKC9SjRNSAyKRyxg67gg" data-element-type="column" class="zpelem-col zpcol-12 zpcol-md-12 zpcol-sm-12 zpalign-self- "><style type="text/css"></style><div data-element-id="elm_7SNFdUZukMdrsRG_8B6vOg" data-element-type="text" class="zpelement zpelem-text "><style></style><div class="zptext zptext-align-left zptext-align-mobile-left zptext-align-tablet-left " data-editor="true"><p></p><p></p><p><span><span></span></span></p><p><span><span></span></span></p><p></p><div><p></p><div><p></p><div><div></div>
</div><div><div> ⚠️&nbsp; En Avril 2026, l’agence de cybersécurité américaine (CISA) a ajouté 31 vulnérabilités, identifiées comme activement exploitées dans le cadre de cyberattaques, dans sa liste des Known Exploited Vulnerabilities (KEV), le nombre de KEV est en hausse +5 par rapport au mois précédent. </div>
<div><br></div><div> Après plusieurs mois de stabilisation, voire de basse, la tendance générale est en hausse. </div><span><img src="https://www.fortress-cybersecurity.fr/Tue%20May%2005%202026.png" alt=""></span><br><div><br></div>
<div><p>☣️&nbsp;3 x KEV exploitées par un ransomware sur les produits des éditeurs suivants ; JetBrains, Microsoft, PaperCut</p><p><br></p><p>🔥 Editeurs concernés par les KEV : Adobe, Apache, Cisco, ConnectWise, D-Link, Fortinet, Ivanti, Kentico, Marimo, Microsoft, Quest, Samsung, SimpleHelp , Synacor, TrueConf, WebPros.</p></div>
<div></div><br><div> À date, 1587 KEV sont référencées. </div><div><br></div><div> 🎆 L'objectif de cette liste est de permettre aux organisations de prioriser leurs actions de patching. Afin de se rendre compte de l'importance des nouvelles entrées dans cette liste : toutes les agences de l’administration américaine doivent corriger ces vulnérabilités dans les 21 jours qui suivent l'ajout dans la liste ! </div>
<div><br></div><div> ☣️&nbsp; KEV exploitées par un ransomware : </div><div> 1 x JetBrains : </div>
<div> &nbsp; TeamCity (CVE-2024-27199) </div><div> 1 x Microsoft : </div><div> &nbsp; Exchange Server (CVE-2023-21529) </div>
<div> 1 x PaperCut : </div><div> &nbsp; NG/MF (CVE-2023-27351) </div><div><br></div>
<div> 🔥 Liste des autres KEV : </div><div> 3 × Cisco : </div><div> &nbsp; Catalyst SD-WAN Manger (CVE-2026-20122) </div>
<div> &nbsp; Catalyst SD-WAN Manager (CVE-2026-20133) </div><div> &nbsp; Catalyst SD-WAN Manager (CVE-2026-20128) </div>
<div> 2 × Adobe : </div><div> &nbsp; Acrobat (CVE-2020-9715) </div><div> &nbsp; Acrobat and Reader (CVE-2026-34621) </div>
<div> 2 × Fortinet : </div><div> &nbsp; FortiClient EMS (CVE-2026-21643) </div><div> &nbsp; FortiClient EMS (CVE-2026-35616) </div>
<div> 2 × SimpleHelp&nbsp; : </div><div> &nbsp; SimpleHelp (CVE-2024-57728) </div>
<div> &nbsp; SimpleHelp (CVE-2024-57726) </div><div> 1 × WebPros : </div><div> &nbsp; cPanel &amp; WHM and WP2 (WordPress Squared) (CVE-2026-41940) </div>
<div> 1 × ConnectWise : </div><div> &nbsp; ScreenConnect (CVE-2024-1708) </div><div> 1 × Marimo : </div>
<div> &nbsp; Marimo (CVE-2026-39987) </div><div> 1 × Samsung : </div><div> &nbsp; MagicINFO 9 Server (CVE-2024-7399) </div>
<div> 1 × D-Link : </div><div> &nbsp; DIR-823X (CVE-2025-29635) </div><div> 1 × Kentico : </div>
<div> &nbsp; Kentico Xperience (CVE-2025-2749) </div><div> 1 × Synacor : </div><div> &nbsp; Zimbra Collaboration Suite (ZCS) (CVE-2025-48700) </div>
<div> 1 × Quest : </div><div> &nbsp; KACE Systems Management Appliance (SMA) (CVE-2025-32975) </div>
<div> 1 × Apache : </div><div> &nbsp; ActiveMQ (CVE-2026-34197) </div><div> 1 × Ivanti : </div>
<div> &nbsp; Endpoint Manager Mobile (EPMM) (CVE-2026-1340) </div><div> 1 × TrueConf : </div>
<div> &nbsp; Client (CVE-2026-3502) </div><div><br></div></div><div><div></div></div>
<p></p></div><p></p></div><p></p><p></p><p></p></div></div></div></div></div></div>
</div>]]></content:encoded><pubDate>Tue, 05 May 2026 00:33:21 +0200</pubDate></item><item><title><![CDATA[Bulletin cybersec indus hebdo 26.S18]]></title><link>https://www.fortress-cybersecurity.fr/blogs/post/bulletin-cybersec-indus-hebdo-26.s18</link><description><![CDATA[<img align="left" hspace="5" src="https://www.fortress-cybersecurity.fr/files/manufacturing.jpg"/> ]]></description><content:encoded><![CDATA[<div class="zpcontent-container blogpost-container "><div data-element-id="elm_OIHw3lK1R0uMD1sBLIHwRg" data-element-type="section" class="zpsection "><style type="text/css"></style><div class="zpcontainer-fluid zpcontainer"><div data-element-id="elm_1ydeJqOcTyiM7nuV2rOklQ" data-element-type="row" class="zprow zprow-container zpalign-items- zpjustify-content- " data-equal-column=""><style type="text/css"></style><div data-element-id="elm_mz-pWBAHSAqarVeQFmIgeA" data-element-type="column" class="zpelem-col zpcol-12 zpcol-md-12 zpcol-sm-12 zpalign-self- "><style type="text/css"> [data-element-id="elm_mz-pWBAHSAqarVeQFmIgeA"].zpelem-col{ border-radius:1px; } @media (max-width: 767px) { [data-element-id="elm_mz-pWBAHSAqarVeQFmIgeA"].zpelem-col{ border-radius:1px; } } @media all and (min-width: 768px) and (max-width:991px){ [data-element-id="elm_mz-pWBAHSAqarVeQFmIgeA"].zpelem-col{ border-radius:1px; } } </style><div data-element-id="elm_M7cAp-bDTcCbA9gTt6JiPA" data-element-type="heading" class="zpelement zpelem-heading "><style> [data-element-id="elm_M7cAp-bDTcCbA9gTt6JiPA"].zpelem-heading { border-radius:1px; } </style><h2 class="zpheading zpheading-align-center zpheading-align-mobile-center zpheading-align-tablet-center " data-editor="true">Les news relatives à la cybersécurité des installations industrielles</h2></div>
<div data-element-id="elm_sH2l7vQ8h3FUwPV13-l42A" data-element-type="text" class="zpelement zpelem-text "><style></style><div class="zptext zptext-align-left zptext-align-mobile-left zptext-align-tablet-left " data-editor="true"><p style="font-weight:bold;"></p><div><p style="font-weight:bold;"></p><div><p style="font-weight:bold;"></p><div><p style="font-weight:bold;"></p><b></b></div>
</div></div><span><span><p style="font-weight:bold;"></p><div><p style="font-weight:bold;"></p><div><p style="font-weight:bold;"></p><div><p style="font-weight:bold;"></p><b></b></div>
</div></div><p><strong>Le secteur manufacturier, cible prioritaire d'une menace ransomware qui se concentre</strong><br></p><p><span><span>Publié par Resilience (assureur cyber), ce rapport croise des données de sinistralité internes (mars 2021 – février 2026) corélées avec des sources sectorielles externes pour dresser un état des lieux de la cybersécurité dans l'industrie manufacturière. Le secteur est la cible la plus attaquée au monde pour la cinquième année consécutive : les incidents ransomware y ont bondi de 61 % en 2025. Sur le portefeuille analysé, le ransomware représente 90 % des pertes totales, alors qu'il ne constitue que 12 % du volume de sinistres. Le principal facteur de perte n'est pas l'absence de protection, mais sa mauvaise configuration : les défauts de paramétrage du MFA (authentification multifacteur) sont responsables de 26 % des pertes, soit davantage que l'absence totale de MFA (8 %). La convergence IT/OT, l'ancienneté des systèmes industriels et la sous-dotation chronique des budgets sécurité constituent les vulnérabilités structurelles sous-jacentes.</span><br></span></p><p><span><span><a href="https://4526209.fs1.hubspotusercontent-na1.net/hubfs/4526209/Manufacturing%20Report.pdf">https://4526209.fs1.hubspotusercontent-na1.net/hubfs/4526209/Manufacturing%20Report.pdf</a><br></span></span></p><p><span><br></span></p><p><strong>RDP/VNC exposés sur internet : l'accès distant, angle mort de la sécurité des systèmes cyber-physiques</strong><br></p><p><span><span><span>Les chercheurs du Vedere Labs de Forescout recensent plus de 1,8 million de serveurs RDP et 1,6 million de serveurs VNC exposés sur internet, dont 18 % des serveurs RDP tournent sur des versions Windows en fin de vie, et plus de 19 000 restent vulnérables à la faille BlueKeep (CVE-2019-0708). Près de 60 000 serveurs VNC n'ont aucune authentification activée, dont 670 donnent un accès direct à des panneaux de contrôle OT/ICS. Sur le plan des acteurs de la menace cyber, des groupes tels que&nbsp; <span>Cyber Army of Russia Reborn (CARR), NoName057(16), Z-Pentest (composé de plusieurs groupes d'hacktivistes et Sector16)&nbsp;</span>utilisent des outils de scan ciblant spécifiquement RDP, VNC et les protocoles OT, tandis que le botnet Redheberg a infecté près de 40 000 serveurs VNC exposés depuis février.</span><br></span></span></p><p><span><a href="https://www.forescout.com/blog/rdp-security-cps-threats-spark-need-for-secure-remote-access/">https://www.forescout.com/blog/rdp-security-cps-threats-spark-need-for-secure-remote-access/</a></span></p><p><br></p><p><strong>Adapter le Zero Trust aux environnements OT : contraintes spécifiques et recommandations pratiques</strong></p><p><span><span>Ce guide interagences (CISA, DOE, FBI) pose un constat fondamental : le Zero Trust (ZT) ne peut être transposé tel quel des environnements IT vers l'OT, en raison des exigences de disponibilité continue, des systèmes legacy non patchables et des capacités de journalisation souvent inexistantes. Structuré selon le cadre NIST CSF 2.0 (Gouverner, Identifier, Protéger, Détecter, Répondre, Récupérer), il détaille des mesures concrètes : segmentation réseau et microsegmentation, gestion des identités et accès adaptée aux protocoles propriétaires OT, sécurisation des accès distants via jump hosts avec MFA, et surveillance passive pour ne pas perturber les systèmes. Un point saillant : l'IT et l'OT ne doivent pas partager de domaines ou annuaires Active Directory, leur convergence étant précisément le vecteur exploité par des acteurs comme Volt Typhoon pour pivoter vers les réseaux industriels.</span><br></span></p><p><a href="https://www.cisa.gov/sites/default/files/2026-04/joint-guide-adapting-zero-trust-principles-to-operational-technology_508c.pdf">https://www.cisa.gov/sites/default/files/2026-04/joint-guide-adapting-zero-trust-principles-to-operational-technology_508c.pdf</a><br></p><p><br></p><p><span><span style="font-weight:bold;">Cyber-Process Hazard Analysis (PHA) par KPMG comme méthode structurée pour bâtir la résilience des systèmes industriels&nbsp;</span></span><br></p><p><span><span><span>Face à une menace ransomware qui a quintuplé sur les réseaux industriels entre 2018 et 2020, le secteur industriel reste largement sous-préparé, malgré une prise de conscience croissante des dirigeants. Le document distingue la cyber-résilience de la cybersécurité classique : là où la seconde vise à bloquer les attaques, la première garantit la continuité des fonctions critiques même après compromission. La méthode porposé par la cabinet KPMG désignée par cyber-PHA (Process Hazard Analysis), est une transposition au domaine cyber d'une démarche d'analyse de risques industriels en six phases, de la définition du périmètre jusqu'au plan de remédiation priorisé. Cette approche est particulièrement adaptée aux environnements IT/OT convergents, où les vulnérabilités de PLCs, HMIs et systèmes SCADA peuvent entraîner des conséquences physiques réelles. L'étude de cas illustre son déploiement concret dans une organisation multi-sites sans référentiel de sécurité unifié, aboutissant à une architecture réseau segmentée et un programme cyber standardisé sur le périmètre industriel.</span><br></span></span></p><p><span><span><span>Une méthode qui rapelle la démarche de classification des actifs industriels publiées par l'ANSSI.</span></span></span></p><p><a href="https://assets.kpmg.com/content/dam/kpmgsites/my/pdf/2022/08/pathway_to_industrial_cyber_resilience.pdf.coredownload.inline.pdf">https://assets.kpmg.com/content/dam/kpmgsites/my/pdf/2022/08/pathway_to_industrial_cyber_resilience.pdf.coredownload.inline.pdf</a><br></p><p><br></p><p><span style="font-size:20px;"><strong>Sur le volet offreurs de solutions (nouvelle section)</strong></span><br></p><p><strong>Sennin, la plateforme de TXOne pour transformer l'évaluation des risques OT en protection opérationnelle concrète</strong><br></p><p><span><span><span>TXOne Networks a lancé la famille de produits Sennin, une suite d'outils d'évaluation et d'orchestration conçue pour combler le fossé récurant entre l'identification des risques OT et leur traitement effectif. SenninRecon est un capteur réseau passif qui surveille plus de 180 protocoles industriels et produit une vue des risques priorisée selon la méthodologie VSAR de TXOne, intégrant exploitabilité réelle et contexte opérationnel ; SenninOne est la plateforme de gouvernance d'entreprise qui traduit ces résultats en politiques de sécurité actionnables, liées aux produits de protection réseau, endpoint et inspection de TXOne. L'enjeu central est structurel : la plupart des organisations savent déjà identifier leurs risques industriels, mais peinent à les corriger sans interrompre la production, Sennin est précisément conçu pour rendre cette transition opérationnellement acceptable</span><br></span></span></p><p><span><span><span><a href="https://www.txone.com/news/sennin-ot-strategic-governance/">https://www.txone.com/news/sennin-ot-strategic-governance/</a><br></span></span></span></p><p><span><span><span><br></span></span></span></p><p><strong>Tenable intègre nativement la découverte OT à sa plateforme d'exposition pour unifier la visibilité IT/OT sans déploiement matériel</strong><br></p><p><span><span><span><span>Tenable a lancé un moteur de découverte d'actifs OT intégré directement à sa plateforme Tenable One, sans matériel spécialisé ni agent supplémentaire requis, permettant aux équipes de sécurité d'obtenir immédiatement une visibilité sur les systèmes cyber-physiques, OT, IoT et shadow IT. Les premiers clients en accès anticipé, dans des secteurs aussi variés que l'hôtellerie, la finance ou l'éducation, ont découvert entre 100 et 1 000 actifs OT/IoT inconnus dès le premier déploiement, certains présentant des vulnérabilités critiques. L'enjeu est direct : 45 % des compromissions OT modernes trouvent leur origine dans des environnements IT, et cette nouvelle capacité permet de consolider en une vue unifiée l'exposition cyber-physique aux côtés des domaines cloud, identité et IA.</span><br></span></span></span></p><p><span><span><span><a href="https://www.tenable.com/press-releases/tenable-expands-exposure-management-with-instant-ot-discovery-to-secure-cyber-physical-systems">https://www.tenable.com/press-releases/tenable-expands-exposure-management-with-instant-ot-discovery-to-secure-cyber-physical-systems</a></span></span></span></p><p></p><div><p><span style="font-weight:bold;"><span><br></span></span></p><p><span style="font-weight:bold;font-size:20px;">Vulnerability&nbsp;Corner :</span>&nbsp;</p></div>
<div><p><span>Liste&nbsp;des Known Exploited Vulnerabilities (KEV)&nbsp;publiés&nbsp;par&nbsp;l'agence&nbsp;de&nbsp;cybersécurité&nbsp;américaine CISA la&nbsp;semaine&nbsp;dernière&nbsp;:&nbsp;&nbsp;</span></p></div>
<p></p><table border="1"><tbody><tr><td style="vertical-align:top;width:169px;"><div><p><strong>CVE&nbsp;</strong></p></div></td><td style="vertical-align:top;width:161.078px;"><div><p><strong>Vendor&nbsp;</strong></p></div></td><td style="vertical-align:top;width:386.938px;"><div><p><strong>Product&nbsp;</strong></p></div></td><td style="vertical-align:top;width:599.062px;"><div><p><strong>Liens&nbsp;</strong></p></div></td></tr><tr><td style="vertical-align:top;width:169px;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-1708" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2024-1708</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:161.078px;"><div><p>ConnectWise&nbsp;</p></div></td><td style="vertical-align:top;width:386.938px;"><div><p>ScreenConnect&nbsp;</p></div></td><td style="vertical-align:top;width:599.062px;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-1708%2C%20https%3A//www.connectwise.com/company/trust/security-bulletins/connectwise-screenconnect-23.9.8" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">https://nvd.nist.gov/vuln/detail/CVE-2024-1708, https://www.connectwise.com/company/trust/security-bulletins/connectwise-screenconnect-23.9.8</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:169px;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-32202" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2026-32202</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:161.078px;"><div><p>Microsoft&nbsp;</p></div></td><td style="vertical-align:top;width:386.938px;"><div><p>Windows&nbsp;</p></div></td><td style="vertical-align:top;width:599.062px;"><div><p><a href="https://msrc.microsoft.com/update-guide/en-US/vulnerability/CVE-2026-32202%2C%20https%3A//nvd.nist.gov/vuln/detail/CVE-2026-32202" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">https://msrc.microsoft.com/update-guide/en-US/vulnerability/CVE-2026-32202, https://nvd.nist.gov/vuln/detail/CVE-2026-32202</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:169px;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-41940" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2026-41940</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:161.078px;"><div><p>WebPros&nbsp;</p></div></td><td style="vertical-align:top;width:386.938px;"><div><p>cPanel &amp; WHM and WP2 (WordPress Squared)&nbsp;</p></div></td><td style="vertical-align:top;width:599.062px;"><div><p><a href="https://docs.cpanel.net/release-notes/release-notes/%2C%20https%3A//docs.wpsquared.com/changelogs/versions/changelog/#13617%2C%20https://nvd.nist.gov/vuln/detail/CVE-2026-41940" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">https://docs.cpanel.net/release-notes/release-notes/, https://docs.wpsquared.com/changelogs/versions/changelog/#13617, https://nvd.nist.gov/vuln/detail/CVE-2026-41940", https://support.cpanel.net/hc/en-us/articles/40073787579671-cPanel-WHM-Security-Update-04-28-2026</span></a>&nbsp;</p></div></td></tr></tbody></table><div></div>
<p></p><div><p><span>&nbsp;</span></p></div><div><p><span style="font-weight:bold;"><span>Vulnérabilités&nbsp;de&nbsp;composants&nbsp;de&nbsp;systèmes&nbsp;industriels&nbsp;:&nbsp;</span></span><span>&nbsp;</span></p></div>
<div><p><span>Source :&nbsp;ICS Advisory Project dashboard https://lookerstudio.google.com/u/0/reporting/f0d99ae7-c75b-4fdd-9951-8ecada5aee5e/page/G1klC&nbsp;&nbsp;</span></p></div>
<p></p></span></span><table border="1"><tbody><tr><td style="vertical-align:top;width:82px;"><div><p><strong>Ven</strong><strong>dor&nbsp;</strong></p></div></td><td style="vertical-align:top;width:82px;"><div><p><strong>Critical&nbsp;</strong></p></div></td><td style="vertical-align:top;width:82px;"><div><p><strong>High&nbsp;</strong></p></div></td><td style="vertical-align:top;width:82px;"><div><p><strong>Medium&nbsp;</strong></p></div></td><td style="vertical-align:top;width:82px;"><div><p><strong>Low&nbsp;</strong></p></div></td><td style="vertical-align:top;width:82px;"><div><p><strong>Total&nbsp;</strong></p></div></td></tr><tr><td style="vertical-align:top;width:82px;"><div><p>ABB&nbsp;</p></div></td><td style="vertical-align:top;width:82px;"><div><p>1&nbsp;</p></div></td><td style="vertical-align:top;width:82px;"><div><p>7&nbsp;</p></div></td><td style="vertical-align:top;width:82px;"><div><p>3&nbsp;</p></div></td><td style="vertical-align:top;width:82px;"><div><p>0&nbsp;</p></div></td><td style="vertical-align:top;width:82px;"><div><p>11&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:82px;"><div><p>NSA&nbsp;</p></div></td><td style="vertical-align:top;width:82px;"><div><p>0&nbsp;</p></div></td><td style="vertical-align:top;width:82px;"><div><p>0&nbsp;</p></div></td><td style="vertical-align:top;width:82px;"><div><p>1&nbsp;</p></div></td><td style="vertical-align:top;width:82px;"><div><p>0&nbsp;</p></div></td><td style="vertical-align:top;width:82px;"><div><p>1&nbsp;</p></div></td></tr></tbody></table><span><span><div></div>
<p></p><div><p><span>&nbsp;</span></p></div><div><p><span>&nbsp;</span>Liste&nbsp;complète&nbsp;triée&nbsp;par CVSSv3&nbsp;Score :&nbsp;</p></div>
<p></p><table border="1"><tbody><tr><td style="vertical-align:top;width:72px;"><div><p>V<strong>endor&nbsp;</strong></p></div></td><td style="vertical-align:top;width:72px;"><div><p><strong>Product&nbsp;</strong></p></div></td><td style="vertical-align:top;width:72px;"><div><p><strong>CVE&nbsp;</strong></p></div></td><td style="vertical-align:top;width:72px;"><div><p><strong>CVSSv3 Score&nbsp;</strong></p></div></td><td style="vertical-align:top;width:72px;"><div><p><strong>CVSSv3 Severity&nbsp;</strong></p></div></td><td style="vertical-align:top;width:72px;"><div><p><strong>EPSS&nbsp;</strong></p></div></td><td style="vertical-align:top;width:72px;"><div><p><strong>CWE&nbsp;</strong></p></div></td></tr><tr><td style="vertical-align:top;width:72px;"><div><p>ABB&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>ABB&nbsp;Edgenius&nbsp;Management Portal&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p><span style="text-decoration:underline;">CVE-2025-10571</span>&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>9.6&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>CRITICAL&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>0%&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p><a href="https://cwe.mitre.org/data/definitions/288.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-288</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:72px;"><div><p>ABB&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>ABB Ability Symphony Plus Engineering&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p><span style="text-decoration:underline;">CVE-2023-5869</span>&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><div><p>8.8&nbsp;</p></div>
<div><p>&nbsp;</p></div></div></td><td style="vertical-align:top;width:72px;"><div><div><p>HIGH&nbsp;</p></div>
<div><p>&nbsp;</p></div></div></td><td style="vertical-align:top;width:72px;"><div><p>0.1%&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p><a href="https://cwe.mitre.org/data/definitions/190.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-190</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:72px;"><div><p>ABB&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>ABB Ability Symphony Plus Engineering&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p><span style="text-decoration:underline;">CVE-2024-7348</span>&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>8.8&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><div><p>HIGH&nbsp;</p></div>
<div><p>&nbsp;</p></div></div></td><td style="vertical-align:top;width:72px;"><div><p>73%&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p><a href="https://cwe.mitre.org/data/definitions/367.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-367</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:72px;"><div><p>ABB&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>ABB AWIN Gateways&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p><a href="https://www.cve.org/CVERecord?id=CVE-2025-13779" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2025-13779</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>8.3&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>HIGH&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>8%&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p><a href="https://cwe.mitre.org/data/definitions/306.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-306</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:72px;"><div><p>ABB&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>ABB Ability OPTIMAX&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p><a href="https://www.cve.org/CVERecord?id=CVE-2025-14510" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2025-14510</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>8.1&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>HIGH&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>9%&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p><a href="https://cwe.mitre.org/data/definitions/303.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-303</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:72px;"><div><div><p>ABB&nbsp;</p></div>
<div><p>&nbsp;</p></div></div></td><td style="vertical-align:top;width:72px;"><div><p>ABB AWIN Gateways&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p><a href="https://www.cve.org/CVERecord?id=CVE-2025-13777" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2025-13777</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>8&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><div><p>HIGH&nbsp;</p></div>
<div><p>&nbsp;</p></div></div></td><td style="vertical-align:top;width:72px;"><div><p>8%&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p><a href="https://cwe.mitre.org/data/definitions/294.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-294</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:72px;"><div><p>ABB&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>ABB Ability Symphony Plus Engineering&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p><span style="text-decoration:underline;">CVE-2024-0985</span>&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><div><p>8&nbsp;</p></div>
<div><p><span style="text-decoration:underline;"></span>&nbsp;</p></div></div></td><td style="vertical-align:top;width:72px;"><div><div><p>HIGH&nbsp;</p></div>
<div><p>&nbsp;</p></div></div></td><td style="vertical-align:top;width:72px;"><div><div><p>73%&nbsp;</p></div>
<div><p>&nbsp;</p></div></div></td><td style="vertical-align:top;width:72px;"><div><p><a href="https://cwe.mitre.org/data/definitions/271.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-271</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:72px;"><div><p>ABB&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>ABB Ability Symphony Plus Engineering&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p><a href="https://www.cve.org/CVERecord?id=CVE-2023-39417" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2023-39417</span></a><span style="text-decoration:underline;"></span>&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>7.5&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>HIGH&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>0.6%&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p><a href="https://cwe.mitre.org/data/definitions/89.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-89</span></a><span style="text-decoration:underline;"></span>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:72px;"><div><div><p>ABB&nbsp;</p></div>
<div><p>&nbsp;</p></div></div></td><td style="vertical-align:top;width:72px;"><div><p>ABB System 800xA, Symphony Plus IEC 61850&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p><span style="text-decoration:underline;">CVE-</span><a href="https://www.cve.org/CVERecord?id=CVE-2025-3756" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">2025</span></a><span style="text-decoration:underline;">-3756</span>&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>6.5&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>MEDIUM&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>0%&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p><a href="https://cwe.mitre.org/data/definitions/1284.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-1284</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:72px;"><div><p>ABB&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>ABB AWIN Gateways&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p><span style="text-decoration:underline;">CVE-2025-13778</span>&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>6.5&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>MEDIUM&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>9%&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p><a href="https://cwe.mitre.org/data/definitions/306.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-306</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:72px;"><div><p>NSA&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>GRASSMARLIN&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-6807" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2026-6807</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>5.5&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>MEDIUM&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>0.5%&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p><a href="https://cwe.mitre.org/data/definitions/611.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-611</span></a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:72px;"><div><p>ABB&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>PCM600&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p><a href="https://www.cve.org/CVERecord?id=CVE-2018-1002208" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CVE-2018-1002208</span></a>&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>4.4&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>MEDIUM&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>0.6%&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p><a href="https://cwe.mitre.org/data/definitions/22.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;">CWE-22</span></a>&nbsp;</p></div></td></tr></tbody></table><div><div></div>
<div><p><span>&nbsp;</span></p></div><div><p>-----&nbsp;<br><span style="font-weight:bold;font-size:20px;">Actualité Fortress Cybersecurity&nbsp;</span><br></p></div>
<div><p><span><span><a href="https://www.fortress-cybersecurity.fr/blogs/post/bilan-des-known-exploited-vulnerabilities-du-mois-de-mars-2027" target="_blank" rel="">- Bilan des Known Exploited Vulnerabilities du mois de mars 202</a><a href="https://www.fortress-cybersecurity.fr/blogs/post/bilan-des-known-exploited-vulnerabilities-du-mois-de-mars-2027" target="_blank" rel="">6</a>&nbsp;</span><br></span></p></div>
<div><p><a href="https://www.fortress-cybersecurity.fr/blogs/post/nouveau-guide-de-classification-des-actifs-industriels-publi%C3%A9-par-l-anssi" target="_blank" rel="noreferrer noopener"><span>- Nouveau guide de classification des actifs industriels publié par l'ANSSI</span></a><span>&nbsp;</span></p></div>
<div><p><a href="https://www.fortress-cybersecurity.fr/blogs/post/calendrier-2026-de-nos-webinaires-d%C3%A9di%C3%A9s-%C3%A0-la-cybers%C3%A9curit%C3%A9-des-installations-industrielles" target="_blank" rel="noreferrer noopener"><span>Nos prochains webinaires dédiés à la cybersécurité des installations industrielles :</span></a><span>&nbsp;</span></p></div>
<div><p><span>- 7&nbsp;mai&nbsp;2026 :&nbsp;Segmenter&nbsp;les réseaux&nbsp;industriels​, inscription&nbsp;</span><a href="https://events.teams.microsoft.com/event/da5eeb7d-f4e2-457b-8b8e-53107b4b553b%40a43cc6b0-e19e-4635-966f-1f00bc18b9ac" target="_blank" rel="noreferrer noopener"><span>lien</span></a><span>&nbsp;</span></p></div>
<div><p><span>- 4&nbsp;juin&nbsp;2026 :&nbsp;Gérer&nbsp;les incidents cyber&nbsp;en&nbsp;environnement&nbsp;industriel​, inscription&nbsp;</span><a href="https://events.teams.microsoft.com/event/c5644e79-7926-4075-bc80-8de9ad9833cf%40a43cc6b0-e19e-4635-966f-1f00bc18b9ac" target="_blank" rel="noreferrer noopener"><span>lien</span></a><span>&nbsp;</span></p></div>
<div><p><span>- 2&nbsp;juillet&nbsp;2026 :&nbsp;Gérer&nbsp;les&nbsp;vulnérabilités&nbsp;en&nbsp;environnement&nbsp;industriel​​, inscription&nbsp;</span><a href="https://events.teams.microsoft.com/event/e2cac6c8-9560-48d5-8736-25da3b084041%40a43cc6b0-e19e-4635-966f-1f00bc18b9ac" target="_blank" rel="noreferrer noopener"><span>lien</span></a><span>&nbsp;</span></p></div>
<div><p><span>- 3&nbsp;septembre&nbsp;2026 :&nbsp;Mettre&nbsp;en&nbsp;place le plan de&nbsp;contrôle&nbsp;cyber de&nbsp;ses&nbsp;installations&nbsp;industriels​​, inscription&nbsp;</span><a href="https://events.teams.microsoft.com/event/1960fe77-9d3a-4f18-a7a9-70528a5e7151%40a43cc6b0-e19e-4635-966f-1f00bc18b9ac" target="_blank" rel="noreferrer noopener"><span>lien</span></a><span>&nbsp;</span></p></div>
<div><p><span>- 1&nbsp;octobre&nbsp;2026 :&nbsp;Sécuriser&nbsp;les&nbsp;accès&nbsp;à distance et de&nbsp;télémaintenance&nbsp;des&nbsp;actifs&nbsp;industriels, inscription&nbsp;</span><a href="https://events.teams.microsoft.com/event/c9ba377e-5c27-4e4d-bffb-8ddc3a7856be%40a43cc6b0-e19e-4635-966f-1f00bc18b9ac" target="_blank" rel="noreferrer noopener"><span>lien</span></a><span>&nbsp;</span></p></div>
<div><p><span>- 5&nbsp;novembre&nbsp;2026 :&nbsp;Protéger&nbsp;les endpoints dans les zones&nbsp;industrielles, inscription&nbsp;</span><a href="https://events.teams.microsoft.com/event/f079bb46-c1ad-4274-b0d3-e32db7d3b4fc%40a43cc6b0-e19e-4635-966f-1f00bc18b9ac" target="_blank" rel="noreferrer noopener"><span>lien</span></a><span>&nbsp;</span></p></div>
<div><p><span>- 3&nbsp;décembre&nbsp;2026 :&nbsp;Protéger&nbsp;les réseaux mobiles&nbsp;privés&nbsp;5G, inscription&nbsp;</span><a href="https://events.teams.microsoft.com/event/56995822-3f07-404d-b2dc-f6fb7727ad50%40a43cc6b0-e19e-4635-966f-1f00bc18b9ac" target="_blank" rel="noreferrer noopener"><span>lien</span></a><span>&nbsp;</span></p></div>
</div><p><br></p><p><span><span><br></span></span></p></span></span></div></div></div>
</div></div></div></div>]]></content:encoded><pubDate>Sun, 03 May 2026 19:34:54 +0200</pubDate></item><item><title><![CDATA[Bulletin cybersec indus hebdo 26.S17]]></title><link>https://www.fortress-cybersecurity.fr/blogs/post/bulletin-cybersec-indus-hebdo-26.s17</link><description><![CDATA[<img align="left" hspace="5" src="https://www.fortress-cybersecurity.fr/files/manufacturing.jpg"/>Cyber-risques 2026 par un assureur : Ce qu’il faut retenir&nbsp; Le rapport met en avant une activité cyber en hausse, avec des demandes d’indemnisatio ]]></description><content:encoded><![CDATA[<div class="zpcontent-container blogpost-container "><div data-element-id="elm_OIHw3lK1R0uMD1sBLIHwRg" data-element-type="section" class="zpsection "><style type="text/css"></style><div class="zpcontainer-fluid zpcontainer"><div data-element-id="elm_1ydeJqOcTyiM7nuV2rOklQ" data-element-type="row" class="zprow zprow-container zpalign-items- zpjustify-content- " data-equal-column=""><style type="text/css"></style><div data-element-id="elm_mz-pWBAHSAqarVeQFmIgeA" data-element-type="column" class="zpelem-col zpcol-12 zpcol-md-12 zpcol-sm-12 zpalign-self- "><style type="text/css"> [data-element-id="elm_mz-pWBAHSAqarVeQFmIgeA"].zpelem-col{ border-radius:1px; } @media (max-width: 767px) { [data-element-id="elm_mz-pWBAHSAqarVeQFmIgeA"].zpelem-col{ border-radius:1px; } } @media all and (min-width: 768px) and (max-width:991px){ [data-element-id="elm_mz-pWBAHSAqarVeQFmIgeA"].zpelem-col{ border-radius:1px; } } </style><div data-element-id="elm_M7cAp-bDTcCbA9gTt6JiPA" data-element-type="heading" class="zpelement zpelem-heading "><style> [data-element-id="elm_M7cAp-bDTcCbA9gTt6JiPA"].zpelem-heading { border-radius:1px; } </style><h2 class="zpheading zpheading-align-center zpheading-align-mobile-center zpheading-align-tablet-center " data-editor="true">Les news relatives à la cybersécurité des installations industrielles</h2></div>
<div data-element-id="elm_sH2l7vQ8h3FUwPV13-l42A" data-element-type="text" class="zpelement zpelem-text "><style></style><div class="zptext zptext-align-left zptext-align-mobile-left zptext-align-tablet-left " data-editor="true"><p style="font-weight:bold;"></p><div><p style="font-weight:bold;"></p><div><p style="font-weight:bold;"></p><div><p style="font-weight:bold;"></p><b></b></div>
</div></div><span><span><p style="font-weight:bold;"></p><div><p style="font-weight:bold;"></p><div><p style="font-weight:bold;"></p><div><p style="font-weight:bold;"></p><b></b></div>
</div></div><p><strong><span>Cyber-risques 2026 par un assureur : Ce qu’il faut retenir&nbsp;</span></strong></p><p><span><span>Le rapport met en avant une activité cyber en hausse, avec des demandes d’indemnisation en hausse de 40%. Les incidents déclarés concernent surtout les fuites de données et les attaques par extorsion. Les ransomwares restent très présent, puisqu’ils représentent 19% des incidents déclarés entre 2022 et 2025. Même si les attaques par ransomware continuent, les paiements de rançon baissent d’environ 44%. Cette baisse s’explique par de meilleures sauvegardes, une réponse plus rapide et des négociations mieux encadrées. Le rapport montre aussi que le facteur humain reste un point faible majeur. Le phishing, les fraudes par email, l’usurpation d’identité, les SMS frauduleux et les appels piégés restent des moyens simples et efficaces pour contourner les protections. Certains groupes ransomware ressortent particulièrement, comme Akira, lié à 38,8% des cas identifiés, et Qilin, lié à 14,2%. Cela montre qu’une partie importante des attaques est concentrée autour de quelques acteurs. Un autre point important concerne les incidents en chaîne : une faille chez un fournisseur ou un prestataire peut rapidement toucher plusieurs entreprises en même temps.</span></span></p><p><a href="https://cowbell.insure/wp-content/uploads/pdfs/CB-US-Media-CyberRoundup-2026ClaimsReport.pdf" title="https://cowbell.insure/wp-content/uploads/pdfs/CB-US-Media-CyberRoundup-2026ClaimsReport.pdf" rel="">https://cowbell.insure/wp-content/uploads/pdfs/CB-US-Media-CyberRoundup-2026ClaimsReport.pdf</a><br></p><p><br></p><p><strong>Analyse du malware ZionSiphon</strong><br></p><p></p><p>L’article analyse ZionSiphon, un malware visant les environnements OT liés au traitement de l’eau et au dessalement en Israël.<span><span></span></span></p><p>Il se distingue en recherchant des protocoles industriels comme Modbus, DNP3 et S7comm et en ciblant uniquement des plages d’IP israéliennes. Néanmoins, le malware reste inoffensif :&nbsp;</p><ul><li>L’un des contrôles renvoie toujours faux et le malware finit par s’autodétruire.</li><li>Les paquets DNP3 et S7comm ne sont pas correctement formés</li></ul><p>Malgré ces limites, il illustre une tendance préoccupante, les acteurs malveillants commencent à expérimenter des attaques cyber-physiques contre des infrastructures critiques civiles.</p></span></span><p></p><p><a href="https://www.darktrace.com/blog/inside-zionsiphon-darktraces-analysis-of-ot-malware-targeting-israeli-water-systems" title="https://www.darktrace.com/blog/inside-zionsiphon-darktraces-analysis-of-ot-malware-targeting-israeli-water-systems" rel="">https://www.darktrace.com/blog/inside-zionsiphon-darktraces-analysis-of-ot-malware-targeting-israeli-water-systems</a><br></p><p><br></p><p><span><span></span></span></p><p></p><p></p><p><strong>Moins de données du NIST sur les vulnérabilités</strong></p><p>Cet article explique pourquoi le NIST réduit les informations fournies sur les vulnérabilités informatiques (CVE). Cette décision est due à un manque de budget, une baisse des effectifs et un nombre de signalements trop élevé. Désormais, le NIST analyse uniquement les failles de sécurité les plus critiques. Ce changement oblige donc les équipes de cybersécurité à s'adapter rapidement. Elles doivent désormais travailler avec moins de données fournies par le NIST pour protéger leurs systèmes.<br></p><p><a href="https://www.darkreading.com/threat-intelligence/nist-cutbacks-nvd-handling-impacts-cyber-teams" title="https://www.darkreading.com/threat-intelligence/nist-cutbacks-nvd-handling-impacts-cyber-teams" rel="">https://www.darkreading.com/threat-intelligence/nist-cutbacks-nvd-handling-impacts-cyber-teams</a><br></p><p><br></p><p><span><span></span></span></p><p></p><p></p><p><strong>Exploitation des convertisseurs série-Ethernet dans les infrastructures critiques</strong></p><p>Dans cet article, Forescout (société de cybersecurité) détaille les failles de sécurité des convertisseurs Série-vers-Ethernet, massivement utilisés dans les infrastructures critiques (énergie, santé, industrie). Des chercheurs ont découvert 22 nouvelles vulnérabilités chez les constructeurs Lantronix et Silex, permettant des prises de contrôle à distance ou le sabotage de données. Ces appareils servent souvent de passerelles pour&nbsp; manipuler des équipements industriels ou paralyser des réseaux électriques En 2015, une cyberattaque contre l'Ukraine a délibérément corrompu le micrologiciel de plusieurs convertisseurs série-IP, rendant ainsi les sous-stations électriques inopérantes à distance. En 2025, ces appareils ont de nouveau été pris pour cible au sein du réseau électrique polonais.<br></p><p><a href="https://www.forescout.com/blog/exploiting-serial-to-ethernet-converters-in-critical-infrastructure/" title="https://www.forescout.com/blog/exploiting-serial-to-ethernet-converters-in-critical-infrastructure/" rel="">https://www.forescout.com/blog/exploiting-serial-to-ethernet-converters-in-critical-infrastructure/</a><br></p><p><span style="font-weight:bold;">&nbsp;</span><br></p><p></p><p></p><p></p><p></p><div><p style="margin-bottom:13.3333px;"></p><div><div><p><span style="font-weight:bold;"><span>Vulnerability&nbsp;Corner :</span></span><span>&nbsp;</span></p></div>
<div><p><span>Liste&nbsp;des Known Exploited Vulnerabilities (KEV)&nbsp;publiés&nbsp;par&nbsp;l'agence&nbsp;de&nbsp;cybersécurité&nbsp;américaine CISA la&nbsp;semaine&nbsp;dernière&nbsp;:&nbsp;&nbsp;</span></p></div>
<div><div><table border="1"><tbody><tr><td style="vertical-align:top;width:164px;"><div><div><p><span>CVE&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:118.875px;"><div><div><p><span>Vendor&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:264.609px;"><div><div><p><span>Product&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:774.391px;"><div><div><p><span>Liens&nbsp;</span></p></div>
</div></td></tr><tr><td style="vertical-align:top;width:164px;"><div><div><p><span></span><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-27351" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>CVE-2023-27351</span></span></a><span>&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:118.875px;"><div><div><p><span>PaperCut&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:264.609px;"><div><div><p><span>NG/MF&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:774.391px;"><div><div><p><span></span><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-27351%2C%20https%3A//www.papercut.com/kb/Main/PO-1216-and-PO-1219" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>https://nvd.nist.gov/vuln/detail/CVE-2023-27351, https://www.papercut.com/kb/Main/PO-1216-and-PO-1219</span></span></a><span>&nbsp;</span></p></div>
</div></td></tr><tr><td style="vertical-align:top;width:164px;"><div><div><p><span></span><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-27199" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>CVE-2024-27199</span></span></a><span>&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:118.875px;"><div><div><p><span>JetBrains&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:264.609px;"><div><div><p><span>TeamCity&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:774.391px;"><div><div><p><span></span><a href="https://blog.jetbrains.com/teamcity/2024/03/additional-critical-security-issues-affecting-teamcity-on-premises-cve-2024-27198-and-cve-2024-27199-update-to-2023-11-4-now/%2C%20https%3A//nvd.nist.gov/vuln/detail/CVE-2024-27199%2C%20https%3A//www.jetbrains.com/privacy-security/issues-fixed/" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>https://blog.jetbrains.com/teamcity/2024/03/additional-critical-security-issues-affecting-teamcity-on-premises-cve-2024-27198-and-cve-2024-27199-update-to-2023-11-4-now/, https://nvd.nist.gov/vuln/detail/CVE-2024-27199, https://www.jetbrains.com/privacy-security/issues-fixed/</span></span></a><span>&nbsp;</span></p></div>
</div></td></tr><tr><td style="vertical-align:top;width:164px;"><div><div><p><span></span><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-2749" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>CVE-2025-2749</span></span></a><span>&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:118.875px;"><div><div><p><span>Kentico&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:264.609px;"><div><div><p><span>Kentico Xperience&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:774.391px;"><div><div><p><span></span><a href="https://devnet.kentico.com/download/hotfixes%2C%20https%3A//nvd.nist.gov/vuln/detail/CVE-2025-2749" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>https://devnet.kentico.com/download/hotfixes, https://nvd.nist.gov/vuln/detail/CVE-2025-2749</span></span></a><span>&nbsp;</span></p></div>
</div></td></tr><tr><td style="vertical-align:top;width:164px;"><div><div><p><span></span><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-32975" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>CVE-2025-32975</span></span></a><span>&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:118.875px;"><div><div><p><span>Quest&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:264.609px;"><div><div><p><span>KACE Systems Management Appliance (SMA)&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:774.391px;"><div><div><p><span></span><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-32975%2C%20https%3A//support.quest.com/kb/4379499/quest-response-to-kace-sma-vulnerabilities-cve-2025-32975-cve-2025-32976-cve-2025-32977-cve-2025-32978" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>https://nvd.nist.gov/vuln/detail/CVE-2025-32975, https://support.quest.com/kb/4379499/quest-response-to-kace-sma-vulnerabilities-cve-2025-32975-cve-2025-32976-cve-2025-32977-cve-2025-32978</span></span></a><span>&nbsp;</span></p></div>
</div></td></tr><tr><td style="vertical-align:top;width:164px;"><div><div><p><span></span><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-48700" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>CVE-2025-48700</span></span></a><span>&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:118.875px;"><div><div><p><span>Synacor&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:264.609px;"><div><div><p><span>Zimbra Collaboration Suite (ZCS)&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:774.391px;"><div><div><p><span></span><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-48700%2C%20https%3A//wiki.zimbra.com/wiki/Zimbra_Security_Advisories" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>https://nvd.nist.gov/vuln/detail/CVE-2025-48700, https://wiki.zimbra.com/wiki/Zimbra_Security_Advisories</span></span></a><span>&nbsp;</span></p></div>
</div></td></tr><tr><td style="vertical-align:top;width:164px;"><div><div><p><span></span><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-20122" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>CVE-2026-20122</span></span></a><span>&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:118.875px;"><div><div><p><span>Cisco&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:264.609px;"><div><div><p><span>Catalyst SD-WAN Manger&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:774.391px;"><div><div><p><span></span><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-20122%2C%20https%3A//sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-sdwan-authbp-qwCX8D4v%2C%20https%3A//www.cisa.gov/news-events/directives/ed-26-03-mitigate-vulnerabilities-cisco-sd-wan-systems%2C%20https%3A//www.cisa.gov/news-events/directives/supplemental-direction-ed-26-03-hunt-and-hardening-guidance-cisco-sd-wan-systems" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>https://nvd.nist.gov/vuln/detail/CVE-2026-20122, https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-sdwan-authbp-qwCX8D4v, https://www.cisa.gov/news-events/directives/ed-26-03-mitigate-vulnerabilities-cisco-sd-wan-systems, https://www.cisa.gov/news-events/directives/supplemental-direction-ed-26-03-hunt-and-hardening-guidance-cisco-sd-wan-systems</span></span></a><span>&nbsp;</span></p></div>
</div></td></tr><tr><td style="vertical-align:top;width:164px;"><div><div><p><span></span><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-20128" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>CVE-2026-20128</span></span></a><span>&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:118.875px;"><div><div><p><span>Cisco&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:264.609px;"><div><div><p><span>Catalyst SD-WAN Manager&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:774.391px;"><div><div><p><span></span><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-20128%2C%20https%3A//sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-sdwan-authbp-qwCX8D4v%2C%20https%3A//www.cisa.gov/news-events/directives/ed-26-03-mitigate-vulnerabilities-cisco-sd-wan-systems%2C%20https%3A//www.cisa.gov/news-events/directives/supplemental-direction-ed-26-03-hunt-and-hardening-guidance-cisco-sd-wan-systems" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>https://nvd.nist.gov/vuln/detail/CVE-2026-20128, https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-sdwan-authbp-qwCX8D4v, https://www.cisa.gov/news-events/directives/ed-26-03-mitigate-vulnerabilities-cisco-sd-wan-systems, https://www.cisa.gov/news-events/directives/supplemental-direction-ed-26-03-hunt-and-hardening-guidance-cisco-sd-wan-systems</span></span></a><span>&nbsp;</span></p></div>
</div></td></tr><tr><td style="vertical-align:top;width:164px;"><div><div><p><span></span><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-20133" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>CVE-2026-20133</span></span></a><span>&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:118.875px;"><div><div><p><span>Cisco&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:264.609px;"><div><div><p><span>Catalyst SD-WAN Manager&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:774.391px;"><div><div><p><span></span><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-20133%2C%20https%3A//sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-sdwan-authbp-qwCX8D4v%2C%20https%3A//www.cisa.gov/news-events/directives/ed-26-03-mitigate-vulnerabilities-cisco-sd-wan-systems%2C%20https%3A//www.cisa.gov/news-events/directives/supplemental-direction-ed-26-03-hunt-and-hardening-guidance-cisco-sd-wan-systems" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>https://nvd.nist.gov/vuln/detail/CVE-2026-20133, https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-sdwan-authbp-qwCX8D4v, https://www.cisa.gov/news-events/directives/ed-26-03-mitigate-vulnerabilities-cisco-sd-wan-systems, https://www.cisa.gov/news-events/directives/supplemental-direction-ed-26-03-hunt-and-hardening-guidance-cisco-sd-wan-systems</span></span></a><span>&nbsp;</span></p></div>
</div></td></tr><tr><td style="vertical-align:top;width:164px;"><div><div><p><span></span><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-33825" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>CVE-2026-33825</span></span></a><span>&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:118.875px;"><div><div><p><span>Microsoft&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:264.609px;"><div><div><p><span>Defender&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:774.391px;"><div><div><p><span></span><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-33825%2C%20https%3A//nvd.nist.gov/vuln/detail/CVE-2026-33825" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-33825, https://nvd.nist.gov/vuln/detail/CVE-2026-33825</span></span></a><span>&nbsp;</span></p></div>
</div></td></tr><tr><td style="vertical-align:top;width:164px;"><div><div><p><span></span><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-39987" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>CVE-2026-39987</span></span></a><span>&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:118.875px;"><div><div><p><span>Marimo&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:264.609px;"><div><div><p><span>Marimo&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:774.391px;"><div><div><p><span></span><a href="https://github.com/marimo-team/marimo/security/advisories/GHSA-2679-6mx9-h9xc%2C%20https%3A//nvd.nist.gov/vuln/detail/CVE-2026-39987" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>https://github.com/marimo-team/marimo/security/advisories/GHSA-2679-6mx9-h9xc, https://nvd.nist.gov/vuln/detail/CVE-2026-39987</span></span></a><span>&nbsp;</span></p></div>
</div></td></tr></tbody></table></div></div><div><p><span>&nbsp;</span></p></div>
<div><p><span style="font-weight:bold;"><span>Vulnérabilités&nbsp;de&nbsp;composants&nbsp;de&nbsp;systèmes&nbsp;industriels&nbsp;:&nbsp;</span></span><span>&nbsp;</span></p></div>
<div><p><span>Source :&nbsp;ICS Advisory Project dashboard https://lookerstudio.google.com/u/0/reporting/f0d99ae7-c75b-4fdd-9951-8ecada5aee5e/page/G1klC&nbsp;&nbsp;</span></p></div>
<div><div><table border="1"><tbody><tr><td style="vertical-align:top;width:82px;"><div><div><p><span>Vendor&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>Product&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>Critical&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>High&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>Medium&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>Low&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>Total&nbsp;</span></p></div>
</div></td></tr><tr><td style="vertical-align:top;width:82px;"><div><div><p><span>Silex Technology&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>SD-330AC&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>1&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>3&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>9&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>0&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>13&nbsp;</span></p></div>
</div></td></tr><tr><td style="vertical-align:top;width:82px;"><div><div><p><span>SenseLive&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>X3050&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>5&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>4&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>2&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>0&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>11&nbsp;</span></p></div>
</div></td></tr><tr><td style="vertical-align:top;width:82px;"><div><div><p><span>Milesight&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>MS-Cxx63-PD&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>1&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>3&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>1&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>0&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>5&nbsp;</span></p></div>
</div></td></tr><tr><td style="vertical-align:top;width:82px;"><div><div><p><span>SpiceJet&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>Online Booking System&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>0&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>2&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>0&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>0&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>2&nbsp;</span></p></div>
</div></td></tr><tr><td style="vertical-align:top;width:82px;"><div><div><p><span>Hardy Barth&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>Salia Board Firmware&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>0&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>1&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>1&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>0&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>2&nbsp;</span></p></div>
</div></td></tr><tr><td style="vertical-align:top;width:82px;"><div><div><p><span>Zero Motorcycles&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>Zero Motorcycles firmware&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>0&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>0&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>1&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>0&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>1&nbsp;</span></p></div>
</div></td></tr><tr><td style="vertical-align:top;width:82px;"><div><div><p><span>Hangzhou&nbsp;Xiongmai&nbsp;Technology Co., Ltd&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>IP Camera XM530V200_X6-WEQ_8M firmware&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>1&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>0&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>0&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>0&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>1&nbsp;</span></p></div>
</div></td></tr><tr><td style="vertical-align:top;width:82px;"><div><div><p><span>Intrado&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>Emergency Gateway&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>1&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>0&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>0&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>0&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>1&nbsp;</span></p></div>
</div></td></tr><tr><td style="vertical-align:top;width:82px;"><div><div><p><span>Yadea&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>T5 Electric Bicycle&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>0&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>1&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>0&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>0&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>1&nbsp;</span></p></div>
</div></td></tr><tr><td style="vertical-align:top;width:82px;"><div><div><p><span>Carlson Software&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>VASCO-B GNSS Receiver&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>1&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>0&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>0&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>0&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>1&nbsp;</span></p></div>
</div></td></tr></tbody></table></div></div><div><p><span>&nbsp;</span></p></div>
<div><p><span>&nbsp;</span></p></div><div><p><span>Liste&nbsp;complète&nbsp;triée&nbsp;par CVSSv3&nbsp;Score :&nbsp;</span></p></div>
<div><div><table border="1"><tbody><tr><td style="vertical-align:top;width:72px;"><div><div><p><span>Vendor&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>Product&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>CVE&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>CVSSv3 Score&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>CVSSv3 Severity&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>EPSS&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>Percentile&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>CWE&nbsp;</span></p></div>
</div></td></tr><tr><td style="vertical-align:top;width:72px;"><div><div><p><span>Hangzhou&nbsp;Xiongmai&nbsp;Technology Co., Ltd&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>IP Camera XM530V200_X6-WEQ_8M firmware&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span></span><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-65856" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>CVE-2025-65856</span></span></a><span>&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>9.8&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>CRITICAL&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>0.633%&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>70.441%&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span></span><a href="https://cwe.mitre.org/data/definitions/306.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>CWE-306</span></span></a><span>&nbsp;</span></p></div>
</div></td></tr><tr><td style="vertical-align:top;width:72px;"><div><div><p><span>Intrado&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>Emergency Gateway&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span></span><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-6074" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>CVE-2026-6074</span></span></a><span>&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>9.8&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>CRITICAL&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>N/A&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>N/A&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span></span><a href="https://cwe.mitre.org/data/definitions/35.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>CWE-35</span></span></a><span>&nbsp;</span></p></div>
</div></td></tr><tr><td style="vertical-align:top;width:72px;"><div><div><p><span>Milesight&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>MS-Cxx63-PD&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span></span><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-32644" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>CVE-2026-32644</span></span></a><span>&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>9.8&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>CRITICAL&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>N/A&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>N/A&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span></span><a href="https://cwe.mitre.org/data/definitions/321.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>CWE-321</span></span></a><span>&nbsp;</span></p></div>
</div></td></tr><tr><td style="vertical-align:top;width:72px;"><div><div><p><span>SenseLive&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>X3050&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span></span><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-25775" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>CVE-2026-25775</span></span></a><span>&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>9.8&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>CRITICAL&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>N/A&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>N/A&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span></span><a href="https://cwe.mitre.org/data/definitions/306.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>CWE-306</span></span></a><span>&nbsp;</span></p></div>
</div></td></tr><tr><td style="vertical-align:top;width:72px;"><div><div><p><span>SenseLive&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>X3050&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span></span><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-35503" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>CVE-2026-35503</span></span></a><span>&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>9.8&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>CRITICAL&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>N/A&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>N/A&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span></span><a href="https://cwe.mitre.org/data/definitions/798.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>CWE-798</span></span></a><span>&nbsp;</span></p></div>
</div></td></tr><tr><td style="vertical-align:top;width:72px;"><div><div><p><span>SenseLive&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>X3050&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span></span><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-40620" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>CVE-2026-40620</span></span></a><span>&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>9.8&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>CRITICAL&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>N/A&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>N/A&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span></span><a href="https://cwe.mitre.org/data/definitions/306.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>CWE-306</span></span></a><span>&nbsp;</span></p></div>
</div></td></tr><tr><td style="vertical-align:top;width:72px;"><div><div><p><span>SenseLive&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>X3050&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span></span><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-40630" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>CVE-2026-40630</span></span></a><span>&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>9.8&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>CRITICAL&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>N/A&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>N/A&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span></span><a href="https://cwe.mitre.org/data/definitions/288.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>CWE-288</span></span></a><span>&nbsp;</span></p></div>
</div></td></tr><tr><td style="vertical-align:top;width:72px;"><div><div><p><span>Silex Technology&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>SD-330AC&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span></span><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-32956" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>CVE-2026-32956</span></span></a><span>&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>9.8&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>CRITICAL&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>0.043%&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>13.338%&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span></span><a href="https://cwe.mitre.org/data/definitions/122.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>CWE-122</span></span></a><span>&nbsp;</span></p></div>
</div></td></tr><tr><td style="vertical-align:top;width:72px;"><div><div><p><span>Carlson Software&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>VASCO-B GNSS Receiver&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span></span><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-3893" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>CVE-2026-3893</span></span></a><span>&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>9.4&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>CRITICAL&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>N/A&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>N/A&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span></span><a href="https://cwe.mitre.org/data/definitions/306.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>CWE-306</span></span></a><span>&nbsp;</span></p></div>
</div></td></tr><tr><td style="vertical-align:top;width:72px;"><div><div><p><span>SenseLive&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>X3050&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span></span><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-27843" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>CVE-2026-27843</span></span></a><span>&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>9.1&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>CRITICAL&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>N/A&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>N/A&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span></span><a href="https://cwe.mitre.org/data/definitions/306.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>CWE-306</span></span></a><span>&nbsp;</span></p></div>
</div></td></tr><tr><td style="vertical-align:top;width:72px;"><div><div><p><span>Milesight&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>MS-Cxx63-PD&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span></span><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-20766" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>CVE-2026-20766</span></span></a><span>&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>8.8&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>HIGH&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>N/A&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>N/A&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span></span><a href="https://cwe.mitre.org/data/definitions/122.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>CWE-122</span></span></a><span>&nbsp;</span></p></div>
</div></td></tr><tr><td style="vertical-align:top;width:72px;"><div><div><p><span>Milesight&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>MS-Cxx63-PD&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span></span><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-27785" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>CVE-2026-27785</span></span></a><span>&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>8.8&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>HIGH&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>N/A&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>N/A&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span></span><a href="https://cwe.mitre.org/data/definitions/798.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>CWE-798</span></span></a><span>&nbsp;</span></p></div>
</div></td></tr><tr><td style="vertical-align:top;width:72px;"><div><div><p><span>Silex Technology&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>SD-330AC&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span></span><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-32955" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>CVE-2026-32955</span></span></a><span>&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>8.8&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>HIGH&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>0.043%&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>13.229%&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span></span><a href="https://cwe.mitre.org/data/definitions/121.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>CWE-121</span></span></a><span>&nbsp;</span></p></div>
</div></td></tr><tr><td style="vertical-align:top;width:72px;"><div><div><p><span>SenseLive&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>X3050&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span></span><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-27841" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>CVE-2026-27841</span></span></a><span>&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>8.1&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>HIGH&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>N/A&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>N/A&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span></span><a href="https://cwe.mitre.org/data/definitions/352.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>CWE-352</span></span></a><span>&nbsp;</span></p></div>
</div></td></tr><tr><td style="vertical-align:top;width:72px;"><div><div><p><span>SenseLive&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>X3050&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span></span><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-39462" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>CVE-2026-39462</span></span></a><span>&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>8.1&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>HIGH&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>N/A&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>N/A&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span></span><a href="https://cwe.mitre.org/data/definitions/522.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>CWE-522</span></span></a><span>&nbsp;</span></p></div>
</div></td></tr><tr><td style="vertical-align:top;width:72px;"><div><div><p><span>SenseLive&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>X3050&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span></span><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-40623" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>CVE-2026-40623</span></span></a><span>&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>8.1&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>HIGH&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>N/A&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>N/A&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span></span><a href="https://cwe.mitre.org/data/definitions/862.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>CWE-862</span></span></a><span>&nbsp;</span></p></div>
</div></td></tr><tr><td style="vertical-align:top;width:72px;"><div><div><p><span>SenseLive&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>X3050&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span></span><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-35064" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>CVE-2026-35064</span></span></a><span>&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>7.5&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>HIGH&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>N/A&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>N/A&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span></span><a href="https://cwe.mitre.org/data/definitions/306.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>CWE-306</span></span></a><span>&nbsp;</span></p></div>
</div></td></tr><tr><td style="vertical-align:top;width:72px;"><div><div><p><span>Silex Technology&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>SD-330AC&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span></span><a href="https://nvd.nist.gov/vuln/detail/CVE-2015-5621" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>CVE-2015-5621</span></span></a><span>&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>7.5&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>HIGH&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>13.928%&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>94.350%&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span></span><a href="https://cwe.mitre.org/data/definitions/1395.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>CWE-1395</span></span></a><span>&nbsp;</span></p></div>
</div></td></tr><tr><td style="vertical-align:top;width:72px;"><div><div><p><span>Silex Technology&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>SD-330AC&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span></span><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-32965" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>CVE-2026-32965</span></span></a><span>&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>7.5&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>HIGH&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>0.029%&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>8.283%&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span></span><a href="https://cwe.mitre.org/data/definitions/1188.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>CWE-1188</span></span></a><span>&nbsp;</span></p></div>
</div></td></tr><tr><td style="vertical-align:top;width:72px;"><div><div><p><span>SpiceJet&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>Online Booking System&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span></span><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-6375" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>CVE-2026-6375</span></span></a><span>&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>7.5&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>HIGH&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>N/A&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>N/A&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span></span><a href="https://cwe.mitre.org/data/definitions/639.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>CWE-639</span></span></a><span>&nbsp;</span></p></div>
</div></td></tr><tr><td style="vertical-align:top;width:72px;"><div><div><p><span>SpiceJet&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>Online Booking System&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span></span><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-6376" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>CVE-2026-6376</span></span></a><span>&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>7.5&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>HIGH&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>N/A&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>N/A&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span></span><a href="https://cwe.mitre.org/data/definitions/306.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>CWE-306</span></span></a><span>&nbsp;</span></p></div>
</div></td></tr><tr><td style="vertical-align:top;width:72px;"><div><div><p><span>Hardy Barth&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>Salia Board Firmware&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span></span><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-10371" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>CVE-2025-10371</span></span></a><span>&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>7.3&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>HIGH&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>0.061%&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>19.190%&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span></span><a href="https://cwe.mitre.org/data/definitions/434.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>CWE-434</span></span></a><span>&nbsp;</span></p></div>
</div></td></tr><tr><td style="vertical-align:top;width:72px;"><div><div><p><span>Yadea&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>T5 Electric Bicycle&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span></span><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-70994" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>CVE-2025-70994</span></span></a><span>&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>7.3&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>HIGH&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>N/A&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>N/A&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span></span><a href="https://cwe.mitre.org/data/definitions/1390.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>CWE-1390</span></span></a><span>&nbsp;</span></p></div>
</div></td></tr><tr><td style="vertical-align:top;width:72px;"><div><div><p><span>Milesight&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>MS-Cxx63-PD&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span></span><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-28747" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>CVE-2026-28747</span></span></a><span>&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>7.1&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>HIGH&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>N/A&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>N/A&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span></span><a href="https://cwe.mitre.org/data/definitions/639.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>CWE-639</span></span></a><span>&nbsp;</span></p></div>
</div></td></tr><tr><td style="vertical-align:top;width:72px;"><div><div><p><span>Milesight&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>MS-Cxx63-PD&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span></span><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-32649" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>CVE-2026-32649</span></span></a><span>&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>6.8&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>MEDIUM&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>N/A&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>N/A&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span></span><a href="https://cwe.mitre.org/data/definitions/78.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>CWE-78</span></span></a><span>&nbsp;</span></p></div>
</div></td></tr><tr><td style="vertical-align:top;width:72px;"><div><div><p><span>Silex Technology&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>SD-330AC&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span></span><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-24487" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>CVE-2024-24487</span></span></a><span>&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>6.8&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>MEDIUM&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>0.635%&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>70.483%&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span></span><a href="https://cwe.mitre.org/data/definitions/266.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>CWE-266</span></span></a><span>&nbsp;</span></p></div>
</div></td></tr><tr><td style="vertical-align:top;width:72px;"><div><div><p><span>Silex Technology&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>SD-330AC&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span></span><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-32958" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>CVE-2026-32958</span></span></a><span>&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>6.5&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>MEDIUM&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>0.028%&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>8.015%&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span></span><a href="https://cwe.mitre.org/data/definitions/321.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>CWE-321</span></span></a><span>&nbsp;</span></p></div>
</div></td></tr><tr><td style="vertical-align:top;width:72px;"><div><div><p><span>Silex Technology&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>SD-330AC&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span></span><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-32960" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>CVE-2026-32960</span></span></a><span>&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>6.5&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>MEDIUM&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>0.016%&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>3.700%&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span></span><a href="https://cwe.mitre.org/data/definitions/226.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>CWE-226</span></span></a><span>&nbsp;</span></p></div>
</div></td></tr><tr><td style="vertical-align:top;width:72px;"><div><div><p><span>Silex Technology&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>SD-330AC&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span></span><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-32964" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>CVE-2026-32964</span></span></a><span>&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>6.5&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>MEDIUM&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>0.043%&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>13.021%&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span></span><a href="https://cwe.mitre.org/data/definitions/93.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>CWE-93</span></span></a><span>&nbsp;</span></p></div>
</div></td></tr><tr><td style="vertical-align:top;width:72px;"><div><div><p><span>Zero Motorcycles&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>Zero Motorcycles firmware&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span></span><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-1354" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>CVE-2026-1354</span></span></a><span>&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>6.4&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>MEDIUM&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>0.020%&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>5.648%&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span></span><a href="https://cwe.mitre.org/data/definitions/322.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>CWE-322</span></span></a><span>&nbsp;</span></p></div>
</div></td></tr><tr><td style="vertical-align:top;width:72px;"><div><div><p><span>Hardy Barth&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>Salia Board Firmware&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span></span><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-5873" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>CVE-2025-5873</span></span></a><span>&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>6.3&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>MEDIUM&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>0.173%&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>38.728%&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span></span><a href="https://cwe.mitre.org/data/definitions/434.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>CWE-434</span></span></a><span>&nbsp;</span></p></div>
</div></td></tr><tr><td style="vertical-align:top;width:72px;"><div><div><p><span>Silex Technology&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>SD-330AC&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span></span><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-32963" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>CVE-2026-32963</span></span></a><span>&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>6.1&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>MEDIUM&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>0.030%&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>8.540%&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span></span><a href="https://cwe.mitre.org/data/definitions/79.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>CWE-79</span></span></a><span>&nbsp;</span></p></div>
</div></td></tr><tr><td style="vertical-align:top;width:72px;"><div><div><p><span>Silex Technology&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>SD-330AC&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span></span><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-32959" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>CVE-2026-32959</span></span></a><span>&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>5.9&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>MEDIUM&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>0.018%&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>4.584%&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span></span><a href="https://cwe.mitre.org/data/definitions/327.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>CWE-327</span></span></a><span>&nbsp;</span></p></div>
</div></td></tr><tr><td style="vertical-align:top;width:72px;"><div><div><p><span>SenseLive&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>X3050&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span></span><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-25720" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>CVE-2026-25720</span></span></a><span>&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>5.4&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>MEDIUM&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>N/A&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>N/A&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span></span><a href="https://cwe.mitre.org/data/definitions/613.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>CWE-613</span></span></a><span>&nbsp;</span></p></div>
</div></td></tr><tr><td style="vertical-align:top;width:72px;"><div><div><p><span>SenseLive&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>X3050&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span></span><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-40431" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>CVE-2026-40431</span></span></a><span>&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>5.3&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>MEDIUM&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>N/A&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>N/A&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span></span><a href="https://cwe.mitre.org/data/definitions/319.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>CWE-319</span></span></a><span>&nbsp;</span></p></div>
</div></td></tr><tr><td style="vertical-align:top;width:72px;"><div><div><p><span>Silex Technology&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>SD-330AC&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span></span><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-32957" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>CVE-2026-32957</span></span></a><span>&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>5.3&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>MEDIUM&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>0.052%&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>16.419%&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span></span><a href="https://cwe.mitre.org/data/definitions/306.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>CWE-306</span></span></a><span>&nbsp;</span></p></div>
</div></td></tr><tr><td style="vertical-align:top;width:72px;"><div><div><p><span>Silex Technology&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>SD-330AC&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span></span><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-32961" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>CVE-2026-32961</span></span></a><span>&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>5.3&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>MEDIUM&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>0.021%&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>5.688%&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span></span><a href="https://cwe.mitre.org/data/definitions/122.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>CWE-122</span></span></a><span>&nbsp;</span></p></div>
</div></td></tr><tr><td style="vertical-align:top;width:72px;"><div><div><p><span>Silex Technology&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>SD-330AC&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span></span><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-32962" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>CVE-2026-32962</span></span></a><span>&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>5.3&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>MEDIUM&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>0.052%&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;" class="zp-selected-cell"><div><div><p><span>16.419%&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span></span><a href="https://cwe.mitre.org/data/definitions/306.html" target="_blank" rel="noreferrer noopener"><span style="text-decoration:underline;"><span>CWE-306</span></span></a><span>&nbsp;</span></p></div>
</div></td></tr></tbody></table></div></div><div><p><span>&nbsp;</span></p></div>
<div><p><span>-----&nbsp;<br></span><span style="font-weight:bold;">Actualité Fortress Cybersecurity&nbsp;</span><span><span>&nbsp;</span><br></span></p></div>
<div><p><span><a href="https://www.fortress-cybersecurity.fr/blogs/post/bilan-des-known-exploited-vulnerabilities-du-mois-de-mars-2027" target="_blank" rel="">- Bilan des Known Exploited Vulnerabilities du mois de mars 202</a><a href="https://www.fortress-cybersecurity.fr/blogs/post/bilan-des-known-exploited-vulnerabilities-du-mois-de-mars-2027" target="_blank" rel="">6</a>&nbsp;</span><br></p></div>
<div><p><a href="https://www.fortress-cybersecurity.fr/blogs/post/nouveau-guide-de-classification-des-actifs-industriels-publi%C3%A9-par-l-anssi" target="_blank" rel="noreferrer noopener"><span>- Nouveau guide de classification des actifs industriels publié par l'ANSSI</span></a><span>&nbsp;</span></p></div>
<div><p><a href="https://www.fortress-cybersecurity.fr/blogs/post/calendrier-2026-de-nos-webinaires-d%C3%A9di%C3%A9s-%C3%A0-la-cybers%C3%A9curit%C3%A9-des-installations-industrielles" target="_blank" rel="noreferrer noopener"><span>Nos prochains webinaires dédiés à la cybersécurité des installations industrielles :</span></a><span>&nbsp;</span></p></div>
<div><p><span>- 7&nbsp;mai&nbsp;2026 :&nbsp;Segmenter&nbsp;les réseaux&nbsp;industriels​, inscription&nbsp;</span><a href="https://events.teams.microsoft.com/event/da5eeb7d-f4e2-457b-8b8e-53107b4b553b%40a43cc6b0-e19e-4635-966f-1f00bc18b9ac" target="_blank" rel="noreferrer noopener"><span>lien</span></a><span>&nbsp;</span></p></div>
<div><p><span>- 4&nbsp;juin&nbsp;2026 :&nbsp;Gérer&nbsp;les incidents cyber&nbsp;en&nbsp;environnement&nbsp;industriel​, inscription&nbsp;</span><a href="https://events.teams.microsoft.com/event/c5644e79-7926-4075-bc80-8de9ad9833cf%40a43cc6b0-e19e-4635-966f-1f00bc18b9ac" target="_blank" rel="noreferrer noopener"><span>lien</span></a><span>&nbsp;</span></p></div>
<div><p><span>- 2&nbsp;juillet&nbsp;2026 :&nbsp;Gérer&nbsp;les&nbsp;vulnérabilités&nbsp;en&nbsp;environnement&nbsp;industriel​​, inscription&nbsp;</span><a href="https://events.teams.microsoft.com/event/e2cac6c8-9560-48d5-8736-25da3b084041%40a43cc6b0-e19e-4635-966f-1f00bc18b9ac" target="_blank" rel="noreferrer noopener"><span>lien</span></a><span>&nbsp;</span></p></div>
<div><p><span>- 3&nbsp;septembre&nbsp;2026 :&nbsp;Mettre&nbsp;en&nbsp;place le plan de&nbsp;contrôle&nbsp;cyber de&nbsp;ses&nbsp;installations&nbsp;industriels​​, inscription&nbsp;</span><a href="https://events.teams.microsoft.com/event/1960fe77-9d3a-4f18-a7a9-70528a5e7151%40a43cc6b0-e19e-4635-966f-1f00bc18b9ac" target="_blank" rel="noreferrer noopener"><span>lien</span></a><span>&nbsp;</span></p></div>
<div><p><span>- 1&nbsp;octobre&nbsp;2026 :&nbsp;Sécuriser&nbsp;les&nbsp;accès&nbsp;à distance et de&nbsp;télémaintenance&nbsp;des&nbsp;actifs&nbsp;industriels, inscription&nbsp;</span><a href="https://events.teams.microsoft.com/event/c9ba377e-5c27-4e4d-bffb-8ddc3a7856be%40a43cc6b0-e19e-4635-966f-1f00bc18b9ac" target="_blank" rel="noreferrer noopener"><span>lien</span></a><span>&nbsp;</span></p></div>
<div><p><span>- 5&nbsp;novembre&nbsp;2026 :&nbsp;Protéger&nbsp;les endpoints dans les zones&nbsp;industrielles, inscription&nbsp;</span><a href="https://events.teams.microsoft.com/event/f079bb46-c1ad-4274-b0d3-e32db7d3b4fc%40a43cc6b0-e19e-4635-966f-1f00bc18b9ac" target="_blank" rel="noreferrer noopener"><span>lien</span></a><span>&nbsp;</span></p></div>
<div><p><span>- 3&nbsp;décembre&nbsp;2026 :&nbsp;Protéger&nbsp;les réseaux mobiles&nbsp;privés&nbsp;5G, inscription&nbsp;</span><a href="https://events.teams.microsoft.com/event/56995822-3f07-404d-b2dc-f6fb7727ad50%40a43cc6b0-e19e-4635-966f-1f00bc18b9ac" target="_blank" rel="noreferrer noopener"><span>lien</span></a><span>&nbsp;</span></p></div>
</div><br><p></p></div><p></p><div><div></div><br></div></div></div></div></div></div>
</div></div>]]></content:encoded><pubDate>Sun, 26 Apr 2026 19:42:17 +0200</pubDate></item><item><title><![CDATA[Bulletin cybersec indus hebdo 26.S16]]></title><link>https://www.fortress-cybersecurity.fr/blogs/post/bulletin-cybersec-indus-hebdo-26.s16</link><description><![CDATA[<img align="left" hspace="5" src="https://www.fortress-cybersecurity.fr/files/manufacturing.jpg"/>Panorama des menaces sur l'industrie manufacturière en 2026 : En 2025, le secteur manufacturier a été confronté à une forte augmentation des cybermenac ]]></description><content:encoded><![CDATA[<div class="zpcontent-container blogpost-container "><div data-element-id="elm_OIHw3lK1R0uMD1sBLIHwRg" data-element-type="section" class="zpsection "><style type="text/css"></style><div class="zpcontainer-fluid zpcontainer"><div data-element-id="elm_1ydeJqOcTyiM7nuV2rOklQ" data-element-type="row" class="zprow zprow-container zpalign-items- zpjustify-content- " data-equal-column=""><style type="text/css"></style><div data-element-id="elm_mz-pWBAHSAqarVeQFmIgeA" data-element-type="column" class="zpelem-col zpcol-12 zpcol-md-12 zpcol-sm-12 zpalign-self- "><style type="text/css"> [data-element-id="elm_mz-pWBAHSAqarVeQFmIgeA"].zpelem-col{ border-radius:1px; } @media (max-width: 767px) { [data-element-id="elm_mz-pWBAHSAqarVeQFmIgeA"].zpelem-col{ border-radius:1px; } } @media all and (min-width: 768px) and (max-width:991px){ [data-element-id="elm_mz-pWBAHSAqarVeQFmIgeA"].zpelem-col{ border-radius:1px; } } </style><div data-element-id="elm_M7cAp-bDTcCbA9gTt6JiPA" data-element-type="heading" class="zpelement zpelem-heading "><style> [data-element-id="elm_M7cAp-bDTcCbA9gTt6JiPA"].zpelem-heading { border-radius:1px; } </style><h2 class="zpheading zpheading-align-center zpheading-align-mobile-center zpheading-align-tablet-center " data-editor="true">Les news relatives à la cybersécurité des installations industrielles</h2></div>
<div data-element-id="elm_sH2l7vQ8h3FUwPV13-l42A" data-element-type="text" class="zpelement zpelem-text "><style></style><div class="zptext zptext-align-left zptext-align-mobile-left zptext-align-tablet-left " data-editor="true"><p style="font-weight:bold;"></p><div><p style="font-weight:bold;"></p><div><p style="font-weight:bold;"></p><div><p style="font-weight:bold;"></p><b></b></div>
</div></div><span><span><p style="font-weight:bold;"></p><div><p style="font-weight:bold;"></p><div><p style="font-weight:bold;"></p><div><p style="font-weight:bold;"></p><b></b></div>
</div></div><p><strong>Panorama des menaces sur l'industrie manufacturière en 2026 :</strong></p><p>En 2025, le secteur manufacturier a été confronté à une forte augmentation des cybermenaces, les incidents liés aux ransomwares visant ce secteur ont augmentés de 56 % par rapport à l'année précédente. Au troisième trimestre, l'Europe a enregistré 162 incidents, se positionnant derrière les Etats Unis en nombre d'attaques subies par ransomware. En revanche, d’autres régions comme le Brésil, l’Inde et la Chine sont moins touchées par ce type d’attaque (25 cas), mais davantage par des actions de défacement de sites publics, qui ont atteint environ 190 incidents. Ces tendances montrent que la menace cyber évolue différemment selon les régions</p><p><a href="https://checkpoint.cyberint.com/manufacturing-threat-landscape" title="https://checkpoint.cyberint.com/manufacturing-threat-landscape" rel="">https://checkpoint.cyberint.com/manufacturing-threat-landscape</a><br></p><p><br></p><p><strong>L'enjeu de la centralisation des achats pour la cybersécurité :</strong><br></p><p></p><p>Dans cet article, l'éditeur Meritalk explique la difficulté de protéger à la fois les réseaux informatiques et les systèmes opérationnels. Ce problème vient de l'organisation des budgets, et non d'un manque de solution technologique. Aujourd'hui, les budgets sont répartis entre différents départements qui achètent leurs outils de sécurité de leur côté. Le regroupement des financements via des contrats globaux est la condition nécessaire pour standardiser efficacement la sécurité de tous les équipements.</p><p>&nbsp;<a href="https://www.meritalk.com/eliminating-silos-in-it-ot-cybersecurity-is-a-funding-challenge-not-a-technical-one/" title="https://www.meritalk.com/eliminating-silos-in-it-ot-cybersecurity-is-a-funding-challenge-not-a-technical-one/" rel="">https://www.meritalk.com/eliminating-silos-in-it-ot-cybersecurity-is-a-funding-challenge-not-a-technical-one/</a><br></p><p><br></p><p></p><p></p><div><div><p style="margin-bottom:13.3333px;"><span style="font-weight:bold;">Vulnerability&nbsp;Corner :</span>&nbsp;</p></div>
<div><p style="margin-bottom:13.3333px;">Liste&nbsp;des Known Exploited Vulnerabilities (KEV)&nbsp;publiés&nbsp;par&nbsp;l'agence&nbsp;de&nbsp;cybersécurité&nbsp;américaine CISA la&nbsp;semaine&nbsp;dernière&nbsp;:&nbsp;&nbsp;</p></div>
<div style="margin-bottom:2px;"><table border="1"><tbody><tr><td style="vertical-align:top;width:176px;" class="zp-selected-cell"><div><p>CVE&nbsp;</p></div></td><td style="vertical-align:top;width:143.891px;"><div><p>Vendor&nbsp;</p></div></td><td style="vertical-align:top;width:294.281px;"><div><p>Product&nbsp;</p></div></td><td style="vertical-align:top;width:674.719px;"><div><p>Liens&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:176px;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2009-0238" target="_blank" rel="noreferrer noopener">CVE-2009-0238</a>&nbsp;</p></div></td><td style="vertical-align:top;width:143.891px;"><div><p>Microsoft&nbsp;</p></div></td><td style="vertical-align:top;width:294.281px;"><div><p>Office&nbsp;</p></div></td><td style="vertical-align:top;width:674.719px;"><div><p><a href="https://learn.microsoft.com/en-us/security-updates/securitybulletins/2009/ms09-009%2C%20https%3A//nvd.nist.gov/vuln/detail/CVE-2009-0238" target="_blank" rel="noreferrer noopener">https://learn.microsoft.com/en-us/security-updates/securitybulletins/2009/ms09-009, https://nvd.nist.gov/vuln/detail/CVE-2009-0238</a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:176px;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2012-1854" target="_blank" rel="noreferrer noopener">CVE-2012-1854</a>&nbsp;</p></div></td><td style="vertical-align:top;width:143.891px;"><div><p>Microsoft&nbsp;</p></div></td><td style="vertical-align:top;width:294.281px;"><div><p>Visual Basic for Applications (VBA)&nbsp;</p></div></td><td style="vertical-align:top;width:674.719px;"><div><p><a href="https://learn.microsoft.com/en-us/security-updates/securitybulletins/2012/ms12-046%2C%20https%3A//nvd.nist.gov/vuln/detail/CVE-2012-1854" target="_blank" rel="noreferrer noopener">https://learn.microsoft.com/en-us/security-updates/securitybulletins/2012/ms12-046, https://nvd.nist.gov/vuln/detail/CVE-2012-1854</a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:176px;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-9715" target="_blank" rel="noreferrer noopener">CVE-2020-9715</a>&nbsp;</p></div></td><td style="vertical-align:top;width:143.891px;"><div><p>Adobe&nbsp;</p></div></td><td style="vertical-align:top;width:294.281px;"><div><p>Acrobat&nbsp;</p></div></td><td style="vertical-align:top;width:674.719px;"><div><p><a href="https://helpx.adobe.com/security/products/acrobat/apsb20-48.html%2C%20https%3A//nvd.nist.gov/vuln/detail/CVE-2020-9715" target="_blank" rel="noreferrer noopener">https://helpx.adobe.com/security/products/acrobat/apsb20-48.html, https://nvd.nist.gov/vuln/detail/CVE-2020-9715</a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:176px;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-21529" target="_blank" rel="noreferrer noopener">CVE-2023-21529</a>&nbsp;</p></div></td><td style="vertical-align:top;width:143.891px;"><div><p>Microsoft&nbsp;</p></div></td><td style="vertical-align:top;width:294.281px;"><div><p>Exchange Server&nbsp;</p></div></td><td style="vertical-align:top;width:674.719px;"><div><p><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-21529%2C%20https%3A//nvd.nist.gov/vuln/detail/CVE-2023-21529" target="_blank" rel="noreferrer noopener">https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-21529, https://nvd.nist.gov/vuln/detail/CVE-2023-21529</a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:176px;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-36424" target="_blank" rel="noreferrer noopener">CVE-2023-36424</a>&nbsp;</p></div></td><td style="vertical-align:top;width:143.891px;"><div><p>Microsoft&nbsp;</p></div></td><td style="vertical-align:top;width:294.281px;"><div><p>Windows&nbsp;</p></div></td><td style="vertical-align:top;width:674.719px;"><div><p><a href="https://msrc.microsoft.com/update-guide/en-US/advisory/CVE-2023-36424%2C%20https%3A//nvd.nist.gov/vuln/detail/CVE-2023-36424" target="_blank" rel="noreferrer noopener">https://msrc.microsoft.com/update-guide/en-US/advisory/CVE-2023-36424, https://nvd.nist.gov/vuln/detail/CVE-2023-36424</a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:176px;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-60710" target="_blank" rel="noreferrer noopener">CVE-2025-60710</a>&nbsp;</p></div></td><td style="vertical-align:top;width:143.891px;"><div><p>Microsoft&nbsp;</p></div></td><td style="vertical-align:top;width:294.281px;"><div><p>Windows&nbsp;</p></div></td><td style="vertical-align:top;width:674.719px;"><div><p><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-60710%2C%20https%3A//nvd.nist.gov/vuln/detail/CVE-2025-60710" target="_blank" rel="noreferrer noopener">https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-60710, https://nvd.nist.gov/vuln/detail/CVE-2025-60710</a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:176px;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-21643" target="_blank" rel="noreferrer noopener">CVE-2026-21643</a>&nbsp;</p></div></td><td style="vertical-align:top;width:143.891px;"><div><p>Fortinet&nbsp;</p></div></td><td style="vertical-align:top;width:294.281px;"><div><p>FortiClient EMS&nbsp;</p></div></td><td style="vertical-align:top;width:674.719px;"><div><p><a href="https://fortiguard.fortinet.com/psirt/FG-IR-25-1142%2C%20https%3A//nvd.nist.gov/vuln/detail/CVE-2026-21643" target="_blank" rel="noreferrer noopener">https://fortiguard.fortinet.com/psirt/FG-IR-25-1142, https://nvd.nist.gov/vuln/detail/CVE-2026-21643</a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:176px;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-32201" target="_blank" rel="noreferrer noopener">CVE-2026-32201</a>&nbsp;</p></div></td><td style="vertical-align:top;width:143.891px;"><div><p>Microsoft&nbsp;</p></div></td><td style="vertical-align:top;width:294.281px;"><div><p>SharePoint Server&nbsp;</p></div></td><td style="vertical-align:top;width:674.719px;"><div><p><a href="https://msrc.microsoft.com/update-guide/en-US/vulnerability/CVE-2026-32201%2C%20https%3A//nvd.nist.gov/vuln/detail/CVE-2026-32201" target="_blank" rel="noreferrer noopener">https://msrc.microsoft.com/update-guide/en-US/vulnerability/CVE-2026-32201, https://nvd.nist.gov/vuln/detail/CVE-2026-32201</a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:176px;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-34197" target="_blank" rel="noreferrer noopener">CVE-2026-34197</a>&nbsp;</p></div></td><td style="vertical-align:top;width:143.891px;"><div><p>Apache&nbsp;</p></div></td><td style="vertical-align:top;width:294.281px;"><div><p>ActiveMQ&nbsp;</p></div></td><td style="vertical-align:top;width:674.719px;"><div><p><a href="https://activemq.apache.org/security-advisories.data/CVE-2026-34197-announcement.txt%2C%20https%3A//nvd.nist.gov/vuln/detail/CVE-2026-34197" target="_blank" rel="noreferrer noopener">https://activemq.apache.org/security-advisories.data/CVE-2026-34197-announcement.txt, https://nvd.nist.gov/vuln/detail/CVE-2026-34197</a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:176px;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-34621" target="_blank" rel="noreferrer noopener">CVE-2026-34621</a>&nbsp;</p></div></td><td style="vertical-align:top;width:143.891px;"><div><p>Adobe&nbsp;</p></div></td><td style="vertical-align:top;width:294.281px;"><div><p>Acrobat and Reader&nbsp;</p></div></td><td style="vertical-align:top;width:674.719px;"><div><p><a href="https://helpx.adobe.com/security/products/acrobat/apsb26-43.html%2C%20https%3A//nvd.nist.gov/vuln/detail/CVE-2026-34621" target="_blank" rel="noreferrer noopener">https://helpx.adobe.com/security/products/acrobat/apsb26-43.html, https://nvd.nist.gov/vuln/detail/CVE-2026-34621</a>&nbsp;</p></div></td></tr></tbody></table></div>
<div><p style="margin-bottom:13.3333px;">&nbsp;</p></div><div><p style="margin-bottom:13.3333px;"><span style="font-weight:bold;">Vulnérabilités&nbsp;de&nbsp;composants&nbsp;de&nbsp;systèmes&nbsp;industriels&nbsp;:&nbsp;</span>&nbsp;</p></div>
<div><p style="margin-bottom:13.3333px;">Source :&nbsp;ICS Advisory Project dashboard https://lookerstudio.google.com/u/0/reporting/f0d99ae7-c75b-4fdd-9951-8ecada5aee5e/page/G1klC&nbsp;&nbsp;</p></div>
<div style="margin-bottom:2px;"><table border="1"><tbody><tr><td style="vertical-align:top;width:82px;"><div><p>Vendor&nbsp;</p></div></td><td style="vertical-align:top;width:82px;"><div><p>Product&nbsp;</p></div></td><td style="vertical-align:top;width:82px;"><div><p>Critical&nbsp;</p></div></td><td style="vertical-align:top;width:82px;"><div><p>High&nbsp;</p></div></td><td style="vertical-align:top;width:82px;"><div><p>Medium&nbsp;</p></div></td><td style="vertical-align:top;width:82px;"><div><p>Low&nbsp;</p></div></td><td style="vertical-align:top;width:82px;"><div><p>Total&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:82px;"><div><p>Anviz&nbsp;</p></div></td><td style="vertical-align:top;width:82px;"><div><p>CX2 Lite Firmware&nbsp;</p></div></td><td style="vertical-align:top;width:82px;"><div><p>1&nbsp;</p></div></td><td style="vertical-align:top;width:82px;"><div><p>6&nbsp;</p></div></td><td style="vertical-align:top;width:82px;"><div><p>5&nbsp;</p></div></td><td style="vertical-align:top;width:82px;"><div><p>0&nbsp;</p></div></td><td style="vertical-align:top;width:82px;"><div><p>12&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:82px;"><div><p>AVEVA&nbsp;</p></div></td><td style="vertical-align:top;width:82px;"><div><p>Pipeline Simulation&nbsp;</p></div></td><td style="vertical-align:top;width:82px;"><div><p>1&nbsp;</p></div></td><td style="vertical-align:top;width:82px;"><div><p>0&nbsp;</p></div></td><td style="vertical-align:top;width:82px;"><div><p>0&nbsp;</p></div></td><td style="vertical-align:top;width:82px;"><div><p>0&nbsp;</p></div></td><td style="vertical-align:top;width:82px;"><div><p>1&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:82px;"><div><p>Delta Electronics&nbsp;</p></div></td><td style="vertical-align:top;width:82px;"><div><p>ASDA-Soft&nbsp;</p></div></td><td style="vertical-align:top;width:82px;"><div><p>0&nbsp;</p></div></td><td style="vertical-align:top;width:82px;"><div><p>1&nbsp;</p></div></td><td style="vertical-align:top;width:82px;"><div><p>0&nbsp;</p></div></td><td style="vertical-align:top;width:82px;"><div><p>0&nbsp;</p></div></td><td style="vertical-align:top;width:82px;"><div><p>1&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:82px;"><div><p>Horner Automation&nbsp;</p></div></td><td style="vertical-align:top;width:82px;"><div><p>Cscape&nbsp;</p></div></td><td style="vertical-align:top;width:82px;"><div><p>1&nbsp;</p></div></td><td style="vertical-align:top;width:82px;"><div><p>0&nbsp;</p></div></td><td style="vertical-align:top;width:82px;"><div><p>0&nbsp;</p></div></td><td style="vertical-align:top;width:82px;"><div><p>0&nbsp;</p></div></td><td style="vertical-align:top;width:82px;"><div><p>1&nbsp;</p></div></td></tr></tbody></table></div>
<div><p style="margin-bottom:13.3333px;">&nbsp;</p></div><div><p style="margin-bottom:13.3333px;">&nbsp;</p></div>
<div><p style="margin-bottom:13.3333px;">Liste&nbsp;complète&nbsp;triée&nbsp;par CVSSv3&nbsp;Score :&nbsp;</p></div>
<div style="margin-bottom:2px;"><table border="1"><tbody><tr><td style="vertical-align:top;width:72px;"><div><p>Vendor&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>Product&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>CVE&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>CVSSv3 Score&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>CVSSv3 Severity&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>EPSS&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>Percentile&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>CWE&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:72px;"><div><p>Anviz&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>CX2 Lite Firmware&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-35546" target="_blank" rel="noreferrer noopener">CVE-2026-35546</a>&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>9.8&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>CRITICAL&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>N/A&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>N/A&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p><a href="https://cwe.mitre.org/data/definitions/306.html" target="_blank" rel="noreferrer noopener">CWE-306</a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:72px;"><div><p>AVEVA&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>Pipeline Simulation&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-5387" target="_blank" rel="noreferrer noopener">CVE-2026-5387</a>&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>9.1&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>CRITICAL&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>0.041%&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>12.369%&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p><a href="https://cwe.mitre.org/data/definitions/862.html" target="_blank" rel="noreferrer noopener">CWE-862</a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:72px;"><div><p>Horner Automation&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>Cscape&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-6284" target="_blank" rel="noreferrer noopener">CVE-2026-6284</a>&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>9.1&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>CRITICAL&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>N/A&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>N/A&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p><a href="https://cwe.mitre.org/data/definitions/521.html" target="_blank" rel="noreferrer noopener">CWE-521</a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:72px;"><div><p>Anviz&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>CX2 Lite Firmware&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-35682" target="_blank" rel="noreferrer noopener">CVE-2026-35682</a>&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>8.8&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>HIGH&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>N/A&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>N/A&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p><a href="https://cwe.mitre.org/data/definitions/77.html" target="_blank" rel="noreferrer noopener">CWE-77</a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:72px;"><div><p>Anviz&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>CX2 Lite Firmware&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-40066" target="_blank" rel="noreferrer noopener">CVE-2026-40066</a>&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>8.8&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>HIGH&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>N/A&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>N/A&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p><a href="https://cwe.mitre.org/data/definitions/494.html" target="_blank" rel="noreferrer noopener">CWE-494</a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:72px;"><div><p>Anviz&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>CX2 Lite Firmware&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-40434" target="_blank" rel="noreferrer noopener">CVE-2026-40434</a>&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>8.1&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>HIGH&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>N/A&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>N/A&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p><a href="https://cwe.mitre.org/data/definitions/940.html" target="_blank" rel="noreferrer noopener">CWE-940</a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:72px;"><div><p>Delta Electronics&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>ASDA-Soft&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-5726" target="_blank" rel="noreferrer noopener">CVE-2026-5726</a>&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>7.8&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>HIGH&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>0.005%&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>0.255%&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p><a href="https://cwe.mitre.org/data/definitions/121.html" target="_blank" rel="noreferrer noopener">CWE-121</a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:72px;"><div><p>Anviz&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>CX2 Lite Firmware&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-32324" target="_blank" rel="noreferrer noopener">CVE-2026-32324</a>&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>7.7&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>HIGH&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>N/A&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>N/A&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p><a href="https://cwe.mitre.org/data/definitions/321.html" target="_blank" rel="noreferrer noopener">CWE-321</a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:72px;"><div><p>Anviz&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>CX2 Lite Firmware&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-32650" target="_blank" rel="noreferrer noopener">CVE-2026-32650</a>&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>7.5&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>HIGH&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>N/A&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>N/A&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p><a href="https://cwe.mitre.org/data/definitions/757.html" target="_blank" rel="noreferrer noopener">CWE-757</a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:72px;"><div><p>Anviz&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>CX2 Lite Firmware&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-40461" target="_blank" rel="noreferrer noopener">CVE-2026-40461</a>&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>7.5&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>HIGH&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>N/A&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>N/A&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p><a href="https://cwe.mitre.org/data/definitions/306.html" target="_blank" rel="noreferrer noopener">CWE-306</a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:72px;"><div><p>Anviz&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>CX2 Lite Firmware&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-33569" target="_blank" rel="noreferrer noopener">CVE-2026-33569</a>&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>6.5&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>MEDIUM&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>N/A&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>N/A&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p><a href="https://cwe.mitre.org/data/definitions/319.html" target="_blank" rel="noreferrer noopener">CWE-319</a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:72px;"><div><p>Anviz&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>CX2 Lite Firmware&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-32648" target="_blank" rel="noreferrer noopener">CVE-2026-32648</a>&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>5.3&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>MEDIUM&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>N/A&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>N/A&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p><a href="https://cwe.mitre.org/data/definitions/862.html" target="_blank" rel="noreferrer noopener">CWE-862</a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:72px;"><div><p>Anviz&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>CX2 Lite Firmware&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-33093" target="_blank" rel="noreferrer noopener">CVE-2026-33093</a>&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>5.3&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>MEDIUM&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>N/A&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>N/A&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p><a href="https://cwe.mitre.org/data/definitions/862.html" target="_blank" rel="noreferrer noopener">CWE-862</a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:72px;"><div><p>Anviz&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>CX2 Lite Firmware&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-35061" target="_blank" rel="noreferrer noopener">CVE-2026-35061</a>&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>5.3&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>MEDIUM&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>N/A&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>N/A&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p><a href="https://cwe.mitre.org/data/definitions/862.html" target="_blank" rel="noreferrer noopener">CWE-862</a>&nbsp;</p></div></td></tr><tr><td style="vertical-align:top;width:72px;"><div><p>Anviz&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>CX2 Lite Firmware&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-31927" target="_blank" rel="noreferrer noopener">CVE-2026-31927</a>&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>4.9&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>MEDIUM&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>N/A&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p>N/A&nbsp;</p></div></td><td style="vertical-align:top;width:72px;"><div><p><a href="https://cwe.mitre.org/data/definitions/23.html" target="_blank" rel="noreferrer noopener">CWE-23</a>&nbsp;</p></div></td></tr></tbody></table></div>
<div><p style="margin-bottom:13.3333px;">&nbsp;</p></div><div><p style="margin-bottom:13.3333px;">-----&nbsp;<br><span style="font-weight:bold;">Actualité Fortress Cybersecurity</span>&nbsp;</p></div>
<div><p style="margin-bottom:13.3333px;"><a href="https://www.fortress-cybersecurity.fr/blogs/post/bilan-des-known-exploited-vulnerabilities-du-mois-de-mars-2027" target="_blank" rel="">- Bilan des Known Exploited Vulnerabilities du mois de mars 202</a><a href="https://www.fortress-cybersecurity.fr/blogs/post/bilan-des-known-exploited-vulnerabilities-du-mois-de-mars-2027" target="_blank" rel="">6</a>&nbsp;</p></div>
<div><p style="margin-bottom:13.3333px;"><a href="https://www.fortress-cybersecurity.fr/blogs/post/nouveau-guide-de-classification-des-actifs-industriels-publi%C3%A9-par-l-anssi" target="_blank" rel="noreferrer noopener">- Nouveau guide de classification des actifs industriels publié par l'ANSSI</a>&nbsp;</p></div>
<div><p style="margin-bottom:13.3333px;"><a href="https://www.fortress-cybersecurity.fr/blogs/post/calendrier-2026-de-nos-webinaires-d%C3%A9di%C3%A9s-%C3%A0-la-cybers%C3%A9curit%C3%A9-des-installations-industrielles" target="_blank" rel="noreferrer noopener">Nos prochains webinaires dédiés à la cybersécurité des installations industrielles :</a>&nbsp;</p></div>
<div><p style="margin-bottom:13.3333px;">- 7&nbsp;mai&nbsp;2026 :&nbsp;Segmenter&nbsp;les réseaux&nbsp;industriels​, inscription&nbsp;<a href="https://events.teams.microsoft.com/event/da5eeb7d-f4e2-457b-8b8e-53107b4b553b%40a43cc6b0-e19e-4635-966f-1f00bc18b9ac" target="_blank" rel="noreferrer noopener">lien</a>&nbsp;</p></div>
<div><p style="margin-bottom:13.3333px;">- 4&nbsp;juin&nbsp;2026 :&nbsp;Gérer&nbsp;les incidents cyber&nbsp;en&nbsp;environnement&nbsp;industriel​, inscription&nbsp;<a href="https://events.teams.microsoft.com/event/c5644e79-7926-4075-bc80-8de9ad9833cf%40a43cc6b0-e19e-4635-966f-1f00bc18b9ac" target="_blank" rel="noreferrer noopener">lien</a>&nbsp;</p></div>
<div><p style="margin-bottom:13.3333px;">- 2&nbsp;juillet&nbsp;2026 :&nbsp;Gérer&nbsp;les&nbsp;vulnérabilités&nbsp;en&nbsp;environnement&nbsp;industriel​​, inscription&nbsp;<a href="https://events.teams.microsoft.com/event/e2cac6c8-9560-48d5-8736-25da3b084041%40a43cc6b0-e19e-4635-966f-1f00bc18b9ac" target="_blank" rel="noreferrer noopener">lien</a>&nbsp;</p></div>
<div><p style="margin-bottom:13.3333px;">- 3&nbsp;septembre&nbsp;2026 :&nbsp;Mettre&nbsp;en&nbsp;place le plan de&nbsp;contrôle&nbsp;cyber de&nbsp;ses&nbsp;installations&nbsp;industriels​​, inscription&nbsp;<a href="https://events.teams.microsoft.com/event/1960fe77-9d3a-4f18-a7a9-70528a5e7151%40a43cc6b0-e19e-4635-966f-1f00bc18b9ac" target="_blank" rel="noreferrer noopener">lien</a>&nbsp;</p></div>
<div><p style="margin-bottom:13.3333px;">- 1&nbsp;octobre&nbsp;2026 :&nbsp;Sécuriser&nbsp;les&nbsp;accès&nbsp;à distance et de&nbsp;télémaintenance&nbsp;des&nbsp;actifs&nbsp;industriels, inscription&nbsp;<a href="https://events.teams.microsoft.com/event/c9ba377e-5c27-4e4d-bffb-8ddc3a7856be%40a43cc6b0-e19e-4635-966f-1f00bc18b9ac" target="_blank" rel="noreferrer noopener">lien</a>&nbsp;</p></div>
<div><p style="margin-bottom:13.3333px;">- 5&nbsp;novembre&nbsp;2026 :&nbsp;Protéger&nbsp;les endpoints dans les zones&nbsp;industrielles, inscription&nbsp;<a href="https://events.teams.microsoft.com/event/f079bb46-c1ad-4274-b0d3-e32db7d3b4fc%40a43cc6b0-e19e-4635-966f-1f00bc18b9ac" target="_blank" rel="noreferrer noopener">lien</a>&nbsp;</p></div>
<div><p style="margin-bottom:13.3333px;">- 3&nbsp;décembre&nbsp;2026 :&nbsp;Protéger&nbsp;les réseaux mobiles&nbsp;privés&nbsp;5G, inscription&nbsp;<a href="https://events.teams.microsoft.com/event/56995822-3f07-404d-b2dc-f6fb7727ad50%40a43cc6b0-e19e-4635-966f-1f00bc18b9ac" target="_blank" rel="noreferrer noopener">lien</a>&nbsp;</p></div>
</div><p><br></p><p></p><p><br></p><p></p><div><div></div><br></div></span></span></div>
</div></div></div></div></div></div>]]></content:encoded><pubDate>Sun, 19 Apr 2026 22:18:59 +0200</pubDate></item><item><title><![CDATA[Bulletin cybersec indus hebdo 26.S15]]></title><link>https://www.fortress-cybersecurity.fr/blogs/post/bulletin-cybersec-indus-hebdo-26.s15</link><description><![CDATA[<img align="left" hspace="5" src="https://www.fortress-cybersecurity.fr/files/manufacturing.jpg"/>Alerte CISA : Cyberattaques iraniennes contre les automates industriels Dans cet article, la CISA (Cybersecurity and Infrastructure Security Agency) al ]]></description><content:encoded><![CDATA[<div class="zpcontent-container blogpost-container "><div data-element-id="elm_OIHw3lK1R0uMD1sBLIHwRg" data-element-type="section" class="zpsection "><style type="text/css"></style><div class="zpcontainer-fluid zpcontainer"><div data-element-id="elm_1ydeJqOcTyiM7nuV2rOklQ" data-element-type="row" class="zprow zprow-container zpalign-items- zpjustify-content- " data-equal-column=""><style type="text/css"></style><div data-element-id="elm_mz-pWBAHSAqarVeQFmIgeA" data-element-type="column" class="zpelem-col zpcol-12 zpcol-md-12 zpcol-sm-12 zpalign-self- "><style type="text/css"> [data-element-id="elm_mz-pWBAHSAqarVeQFmIgeA"].zpelem-col{ border-radius:1px; } @media (max-width: 767px) { [data-element-id="elm_mz-pWBAHSAqarVeQFmIgeA"].zpelem-col{ border-radius:1px; } } @media all and (min-width: 768px) and (max-width:991px){ [data-element-id="elm_mz-pWBAHSAqarVeQFmIgeA"].zpelem-col{ border-radius:1px; } } </style><div data-element-id="elm_M7cAp-bDTcCbA9gTt6JiPA" data-element-type="heading" class="zpelement zpelem-heading "><style> [data-element-id="elm_M7cAp-bDTcCbA9gTt6JiPA"].zpelem-heading { border-radius:1px; } </style><h2 class="zpheading zpheading-align-center zpheading-align-mobile-center zpheading-align-tablet-center " data-editor="true">Les news relatives à la cybersécurité des installations industrielles</h2></div>
<div data-element-id="elm_sH2l7vQ8h3FUwPV13-l42A" data-element-type="text" class="zpelement zpelem-text "><style></style><div class="zptext zptext-align-left zptext-align-mobile-left zptext-align-tablet-left " data-editor="true"><div><div><div><div><p style="font-weight:bold;"></p><div><p style="font-weight:bold;"></p><div><p style="font-weight:bold;"></p><div><p style="font-weight:bold;"></p><span style="font-weight:bold;">Alerte CISA : Cyberattaques iraniennes contre les automates industriels</span><p>Dans cet article, la CISA (Cybersecurity and Infrastructure Security Agency) alerte sur une campagne de cyberattaques menée par des pirates affiliés à l'Iran. Ces acteurs ciblent spécifiquement les automates industriels connectés à Internet afin de manipuler les systèmes de contrôle opérationnel. Ces intrusions ont déjà causé de sérieuses perturbations et d'importantes pertes financières dans plusieurs secteurs vitaux. L'objectif est de fournir des indicateurs techniques précis pour aider les entreprises à détecter d'éventuelles failles sur leurs réseaux.</p><a href="https://www.cisa.gov/news-events/cybersecurity-advisories/aa26-097a" title="https://www.cisa.gov/news-events/cybersecurity-advisories/aa26-097a" rel="">https://www.cisa.gov/news-events/cybersecurity-advisories/aa26-097a</a></div>
</div></div></div><div><p style="margin-bottom:13.3333px;"></p><div><p style="margin-bottom:13.3333px;"><br></p></div>
</div></div><div><div style="line-height:2;"><div style="line-height:2;"><div style="line-height:2;"><div style="line-height:2;"><div style="line-height:2;"><div style="line-height:2;"><div style="line-height:2;"><div style="line-height:2;"></div>
</div></div></div></div></div></div></div></div></div><div><div><div></div></div>
</div></div><div><div><div></div></div></div><div><div><p style="margin-bottom:13.3333px;"><span style="font-weight:bold;"><span>Vulnerability&nbsp;Corner :</span></span><span>&nbsp;</span></p></div>
<div><p style="margin-bottom:13.3333px;"><span>Liste&nbsp;des Known Exploited Vulnerabilities (KEV)&nbsp;publiés&nbsp;par&nbsp;l'agence&nbsp;de&nbsp;cybersécurité&nbsp;américaine CISA la&nbsp;semaine&nbsp;dernière&nbsp;:&nbsp;&nbsp;</span></p></div>
<div><div style="margin-bottom:2px;"><table border="1"><tbody><tr><td style="vertical-align:top;width:140.2px;"><div><div><p><span>CVE&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:79.7375px;"><div><div><p><span>Vendor&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:267.65px;" class="zp-selected-cell"><div><div><p><span>Product&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:816.35px;"><div><div><p><span>Liens&nbsp;</span></p></div>
</div></td></tr><tr><td style="vertical-align:top;width:140.2px;"><div><div><p><span></span><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-1340" target="_blank" rel="noreferrer noopener"><span>CVE-2026-1340</span></a><span>&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:79.7375px;"><div><div><p><span>Ivanti&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:267.65px;"><div><div><p><span>Endpoint Manager Mobile (EPMM)&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:816.35px;"><div><div><p><span></span><a href="https://hub.ivanti.com/s/article/Security-Advisory-Ivanti-Endpoint-Manager-Mobile-EPMM-CVE-2026-1281-CVE-2026-1340?language=en_US%2C%20https%3A%2F%2Fnvd.nist.gov%2Fvuln%2Fdetail%2FCVE-2026-1340%2C%20https%3A%2F%2Fsupport.mobileiron.com%2Fmi%2Fvsp%2FAB1786671%2Fivanti-security-update-1761642-1.1.0L-5.noarch.rpm%2C%20https%3A%2F%2Fsupport.mobileiron.com%2Fmi%2Fvsp%2FAB1786671%2Fivanti-security-update-1761642-1.1.0S-5.noarch.rpm" target="_blank" rel="noreferrer noopener"><span>https://hub.ivanti.com/s/article/Security-Advisory-Ivanti-Endpoint-Manager-Mobile-EPMM-CVE-2026-1281-CVE-2026-1340?language=en_US, https://nvd.nist.gov/vuln/detail/CVE-2026-1340, https://support.mobileiron.com/mi/vsp/AB1786671/ivanti-security-update-1761642-1.1.0L-5.noarch.rpm, https://support.mobileiron.com/mi/vsp/AB1786671/ivanti-security-update-1761642-1.1.0S-5.noarch.rpm</span></a><span>&nbsp;</span></p></div>
</div></td></tr><tr><td style="vertical-align:top;width:140.2px;"><div><div><p><span></span><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-35616" target="_blank" rel="noreferrer noopener"><span>CVE-2026-35616</span></a><span>&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:79.7375px;"><div><div><p><span>Fortinet&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:267.65px;"><div><div><p><span>FortiClient EMS&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:816.35px;"><div><div><p><span></span><a href="https://fortiguard.fortinet.com/psirt/FG-IR-26-099%2C%20https%3A//nvd.nist.gov/vuln/detail/CVE-2026-35616" target="_blank" rel="noreferrer noopener"><span>https://fortiguard.fortinet.com/psirt/FG-IR-26-099, https://nvd.nist.gov/vuln/detail/CVE-2026-35616</span></a><span>&nbsp;</span></p></div>
</div></td></tr></tbody></table></div></div><div><p style="margin-bottom:13.3333px;"><span>&nbsp;</span></p></div>
<div><p style="margin-bottom:13.3333px;"><span style="font-weight:bold;"><span>Vulnérabilités&nbsp;de&nbsp;composants&nbsp;de&nbsp;systèmes&nbsp;industriels&nbsp;:&nbsp;</span></span><span>&nbsp;</span></p></div>
<div><p style="margin-bottom:13.3333px;"><span>Source :&nbsp;ICS Advisory Project dashboard https://lookerstudio.google.com/u/0/reporting/f0d99ae7-c75b-4fdd-9951-8ecada5aee5e/page/G1klC&nbsp;&nbsp;</span></p></div>
<div><div style="margin-bottom:2px;"><table border="1"><tbody><tr><td style="vertical-align:top;width:82px;"><div><div><p><span>Vendor&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>Product&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>Critical&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>High&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>Medium&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>Low&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>Total&nbsp;</span></p></div>
</div></td></tr><tr><td style="vertical-align:top;width:82px;"><div><div><p><span>Mitsubishi Electric&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>GENESIS64&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>0&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>2&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>0&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>0&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>2&nbsp;</span></p></div>
</div></td></tr><tr><td style="vertical-align:top;width:82px;"><div><div><p><span>Contemporary Controls Sedona Alliance&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>BASControl20&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>1&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>0&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>0&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>0&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>1&nbsp;</span></p></div>
</div></td></tr><tr><td style="vertical-align:top;width:82px;"><div><div><p><span>GPL&nbsp;Odorizers&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>GPL750 (XL4)&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>0&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>1&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>0&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>0&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:82px;"><div><div><p><span>1&nbsp;</span></p></div>
</div></td></tr></tbody></table></div></div><div><p style="margin-bottom:13.3333px;"><span>&nbsp;</span></p></div>
<div><p style="margin-bottom:13.3333px;"><span>&nbsp;</span></p></div><div><p style="margin-bottom:13.3333px;"><span>Liste&nbsp;complète&nbsp;triée&nbsp;par CVSSv3&nbsp;Score :&nbsp;</span></p></div>
<div><div style="margin-bottom:2px;"><table border="1"><tbody><tr><td style="vertical-align:top;width:72px;"><div><div><p><span>Vendor&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>Product&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>CVE&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>CVSSv3 Score&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>CVSSv3 Severity&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>EPSS&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>Percentile&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>CWE&nbsp;</span></p></div>
</div></td></tr><tr><td style="vertical-align:top;width:72px;"><div><div><p><span>Contemporary Controls Sedona Alliance&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>BASControl20&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span></span><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-13926" target="_blank" rel="noreferrer noopener"><span>CVE-2025-13926</span></a><span>&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>9.8&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>CRITICAL&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>N/A&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>N/A&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span></span><a href="https://cwe.mitre.org/data/definitions/807.html" target="_blank" rel="noreferrer noopener"><span>CWE-807</span></a><span>&nbsp;</span></p></div>
</div></td></tr><tr><td style="vertical-align:top;width:72px;"><div><div><p><span>Mitsubishi Electric&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>GENESIS64&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span></span><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-14815" target="_blank" rel="noreferrer noopener"><span>CVE-2025-14815</span></a><span>&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>8.8&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>HIGH&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>0.017%&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>3.998%&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span></span><a href="https://cwe.mitre.org/data/definitions/312.html" target="_blank" rel="noreferrer noopener"><span>CWE-312</span></a><span>&nbsp;</span></p></div>
</div></td></tr><tr><td style="vertical-align:top;width:72px;"><div><div><p><span>Mitsubishi Electric&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>GENESIS64&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span></span><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-14816" target="_blank" rel="noreferrer noopener"><span>CVE-2025-14816</span></a><span>&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>8.8&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>HIGH&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>0.017%&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>3.998%&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span></span><a href="https://cwe.mitre.org/data/definitions/317.html" target="_blank" rel="noreferrer noopener"><span>CWE-317</span></a><span>&nbsp;</span></p></div>
</div></td></tr><tr><td style="vertical-align:top;width:72px;"><div><div><p><span>GPL&nbsp;Odorizers&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>GPL750 (XL4)&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span></span><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-4436" target="_blank" rel="noreferrer noopener"><span>CVE-2026-4436</span></a><span>&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>8.6&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>HIGH&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>N/A&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span>N/A&nbsp;</span></p></div>
</div></td><td style="vertical-align:top;width:72px;"><div><div><p><span></span><a href="https://cwe.mitre.org/data/definitions/306.html" target="_blank" rel="noreferrer noopener"><span>CWE-306</span></a><span>&nbsp;</span></p></div>
</div></td></tr></tbody></table></div></div><div><p style="margin-bottom:13.3333px;"><span>&nbsp;</span></p></div>
<div><p style="margin-bottom:13.3333px;"><span>-----&nbsp;<br></span><span style="font-weight:bold;">Actualité Fortress Cybersecurity&nbsp;</span><span><span>&nbsp;</span><br> &nbsp;</span></p></div>
<div><p style="margin-bottom:13.3333px;"><a href="https://www.fortress-cybersecurity.fr/blogs/post/bilan-des-known-exploited-vulnerabilities-du-mois-de-mars-2027" title="- Bilan des Known Exploited Vulnerabilities du mois de mars 2026&nbsp;" target="_blank" rel="">- Bilan des Known Exploited Vulnerabilities du mois de mars 202</a><a href="https://www.fortress-cybersecurity.fr/blogs/post/bilan-des-known-exploited-vulnerabilities-du-mois-de-mars-2027" title="- Bilan des Known Exploited Vulnerabilities du mois de mars 2026&nbsp;" target="_blank" rel="">6</a>&nbsp;</p></div>
<div><p style="margin-bottom:13.3333px;"><a href="https://www.fortress-cybersecurity.fr/blogs/post/nouveau-guide-de-classification-des-actifs-industriels-publi%C3%A9-par-l-anssi" target="_blank" rel="noreferrer noopener"><span>- Nouveau guide de classification des actifs industriels publié par l'ANSSI</span></a><span>&nbsp;</span></p></div>
<div><p style="margin-bottom:13.3333px;"><a href="https://www.fortress-cybersecurity.fr/blogs/post/calendrier-2026-de-nos-webinaires-d%C3%A9di%C3%A9s-%C3%A0-la-cybers%C3%A9curit%C3%A9-des-installations-industrielles" target="_blank" rel="noreferrer noopener"><span>Nos prochains webinaires dédiés à la cybersécurité des installations industrielles :</span></a><span>&nbsp;</span></p></div>
<div><p style="margin-bottom:13.3333px;">- 7&nbsp;mai&nbsp;2026 :&nbsp;Segmenter&nbsp;les réseaux&nbsp;industriels​, inscription&nbsp;<a href="https://events.teams.microsoft.com/event/da5eeb7d-f4e2-457b-8b8e-53107b4b553b%40a43cc6b0-e19e-4635-966f-1f00bc18b9ac" target="_blank" rel="noreferrer noopener">lien</a>&nbsp;</p></div>
<div><p style="margin-bottom:13.3333px;"><span>- 4&nbsp;juin&nbsp;2026 :&nbsp;Gérer&nbsp;les incidents cyber&nbsp;en&nbsp;environnement&nbsp;industriel​, inscription&nbsp;</span><a href="https://events.teams.microsoft.com/event/c5644e79-7926-4075-bc80-8de9ad9833cf%40a43cc6b0-e19e-4635-966f-1f00bc18b9ac" target="_blank" rel="noreferrer noopener"><span>lien</span></a><span>&nbsp;</span></p></div>
<div><p style="margin-bottom:13.3333px;"><span>- 2&nbsp;juillet&nbsp;2026 :&nbsp;Gérer&nbsp;les&nbsp;vulnérabilités&nbsp;en&nbsp;environnement&nbsp;industriel​​, inscription&nbsp;</span><a href="https://events.teams.microsoft.com/event/e2cac6c8-9560-48d5-8736-25da3b084041%40a43cc6b0-e19e-4635-966f-1f00bc18b9ac" target="_blank" rel="noreferrer noopener"><span>lien</span></a><span>&nbsp;</span></p></div>
<div><p style="margin-bottom:13.3333px;"><span>- 3&nbsp;septembre&nbsp;2026 :&nbsp;Mettre&nbsp;en&nbsp;place le plan de&nbsp;contrôle&nbsp;cyber de&nbsp;ses&nbsp;installations&nbsp;industriels​​, inscription&nbsp;</span><a href="https://events.teams.microsoft.com/event/1960fe77-9d3a-4f18-a7a9-70528a5e7151%40a43cc6b0-e19e-4635-966f-1f00bc18b9ac" target="_blank" rel="noreferrer noopener"><span>lien</span></a><span>&nbsp;</span></p></div>
<div><p style="margin-bottom:13.3333px;"><span>- 1&nbsp;octobre&nbsp;2026 :&nbsp;Sécuriser&nbsp;les&nbsp;accès&nbsp;à distance et de&nbsp;télémaintenance&nbsp;des&nbsp;actifs&nbsp;industriels, inscription&nbsp;</span><a href="https://events.teams.microsoft.com/event/c9ba377e-5c27-4e4d-bffb-8ddc3a7856be%40a43cc6b0-e19e-4635-966f-1f00bc18b9ac" target="_blank" rel="noreferrer noopener"><span>lien</span></a><span>&nbsp;</span></p></div>
<div><p style="margin-bottom:13.3333px;"><span>- 5&nbsp;novembre&nbsp;2026 :&nbsp;Protéger&nbsp;les endpoints dans les zones&nbsp;industrielles, inscription&nbsp;</span><a href="https://events.teams.microsoft.com/event/f079bb46-c1ad-4274-b0d3-e32db7d3b4fc%40a43cc6b0-e19e-4635-966f-1f00bc18b9ac" target="_blank" rel="noreferrer noopener"><span>lien</span></a><span>&nbsp;</span></p></div>
<div><p style="margin-bottom:13.3333px;"><span>- 3&nbsp;décembre&nbsp;2026 :&nbsp;Protéger&nbsp;les réseaux mobiles&nbsp;privés&nbsp;5G, inscription&nbsp;</span><a href="https://events.teams.microsoft.com/event/56995822-3f07-404d-b2dc-f6fb7727ad50%40a43cc6b0-e19e-4635-966f-1f00bc18b9ac" target="_blank" rel="noreferrer noopener"><span>lien</span></a><span>&nbsp;</span></p></div>
</div></div></div></div></div></div></div></div>]]></content:encoded><pubDate>Mon, 13 Apr 2026 07:57:27 +0200</pubDate></item></channel></rss>