CyberHappenings logo

Track cybersecurity events as they unfold. Sourced timelines. Filter, sort, and browse. Fast, privacy‑respecting. No invasive ads, no tracking.

Critical Vulnerabilities in Red Lion Sixnet and VersaTRAK RTUs

First reported
Last updated
1 unique sources, 1 articles

Summary

Hide ▲

Two critical vulnerabilities (CVE-2023-40151 and CVE-2023-42770) in Red Lion Sixnet and VersaTRAK remote terminal units (RTUs) could allow unauthenticated attackers to execute commands with root privileges. These RTUs are widely used in industrial automation and control systems across various sectors, including energy, water, and manufacturing. The vulnerabilities stem from authentication bypass and remote code execution flaws in the Sixnet Universal Driver. The affected products include several models with specific firmware versions, and users are advised to apply patches and enable user authentication to mitigate the risks.

Timeline

  1. 15.10.2025 09:50 1 articles · 23h ago

    Critical Vulnerabilities in Red Lion Sixnet and VersaTRAK RTUs Disclosed

    Two critical vulnerabilities (CVE-2023-40151 and CVE-2023-42770) in Red Lion Sixnet and VersaTRAK RTUs were disclosed. These vulnerabilities allow unauthenticated attackers to execute commands with root privileges. The affected products include several models with specific firmware versions, and users are advised to apply patches and enable user authentication to mitigate the risks. The vulnerabilities stem from authentication bypass and remote code execution flaws in the Sixnet Universal Driver.

    Show sources

Information Snippets