security1 distinct publisher
CISA logs three flaws that can wipe credentials on Tycon's TPDIN monitors
The advisory on TPDIN-Monitor-WEB3 2.2.9 and earlier lists hard-coded credentials, cross-site request forgery and missing authorization on units running in energy and critical manufacturing. Firmware v2.4.2 is the whole fix.
Publishers:cisa.gov
Reality
- Evidence72
- Adoption
- Insufficient
- Hype gap−5
- Incentives22
- Confidence