Unpatched Rapid SCADA Vulnerabilities Open Industrial Organizations to Attacks


The Rapid SCADA open source industrial automation platform has several vulnerabilities that could allow hackers to gain access to sensitive industrial systems, but the flaws have yet to be patched.

Last week, the US cybersecurity agency CISA released an advisory alerting industrial organizations to seven flaws in Rapid SCADA that Claroty researchers had found. SCADA is promoted as the best solution for creating control and monitoring systems, especially IIoT and industrial automation systems, energy accounting systems, and process control systems.

According to the CISA advisory, the product is vulnerable to seven different types of vulnerabilities that could be used to read confidential files, remotely run arbitrary code, and obtain confidential information about the internal workings of the application.

