AVEVA Pipeline Integrity Monitor
2026-09-10T19:23:22Z•148a062577457d97a55ac118d4edf2b4eb4174cdc069ee189e6919109d9865dd
CVE-2025-10478CVE-2026-38056CVE-2026-38057CVE-2026-38058CVE-2026-38059CVE-2026-77393CVE-2026-77847CVE-2026-81821CVE-2026-81822CVE-2026-81823CVE-2026-81824CVE-2026-82684CVE-2026-82712CVE-2026-85083CISACSRFICSOTbuffer-overflowcritical-infrastructurehard-coded-credentialsindustrial-control-systemsmissing-authenticationmissing-authorizationvulnerabilities
What happened
CISA ICS advisories covering multiple industrial and connected-device vulnerabilities disclosed in September 2026. Affected products include AVEVA Pipeline Integrity Monitor, ST Engineering iDirect iQ-Series terminals, CareCam Pro IP Cameras, Tycon TPDIN-Monitor-WEB3, Pyramid Solutions NetStaX EtherNet/IP Stack, Inductive Automation Ignition, and Rockwell Automation 1756-ENBT modules. Impacts range from information disclosure, credential/hash compromise, unauthorized access, CSRF, device takeover, project creation, memory corruption and remote attack potential to denial of service. The highest
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- cisa_ics_advisories
- Record identifier
- 148a062577457d97a55ac118d4edf2b4eb4174cdc069ee189e6919109d9865dd
- Enrichment time
- 2026-09-10T19:23:22Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.