AVEVA Pipeline Integrity Monitor
2026-09-11T07:23:18Z•e8bf3fae8d7dddc1c08e2c29034a2cafc915334088cd5aa4738673edbdda7d80
CVE-2025-10478CVE-2026-38056CVE-2026-38057CVE-2026-38058CVE-2026-38059CVE-2026-77393CVE-2026-77847CVE-2026-81821CVE-2026-81822CVE-2026-81823CVE-2026-81824CVE-2026-82684CVE-2026-82712CVE-2026-85083CISACSRFEtherNet/IPICSOTSCADAbuffer-overflowcritical-infrastructurecross-site-scriptingcryptographydenial-of-servicehard-coded-credentialsindustrial-control-systemsmissing-authorizationvulnerability-advisories
What happened
CISA ICS advisories published September 2026 describe vulnerabilities affecting AVEVA Pipeline Integrity Monitor, ST Engineering iDirect iQ-Series terminals, CareCam Pro IP cameras, Tycon TPDIN-Monitor-WEB3, Pyramid Solutions NetStaX EtherNet/IP Stack, Inductive Automation Ignition, and Rockwell Automation 1756-ENBT modules. Impact ranges from information disclosure and credential exposure to unauthorized access, project creation, device takeover, denial of service, memory corruption, and potential remote code execution. The highest-rated issue is a CVSS 9.8 stack-based buffer overflow in the–
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- cisa_ics_advisories
- Record identifier
- e8bf3fae8d7dddc1c08e2c29034a2cafc915334088cd5aa4738673edbdda7d80
- Enrichment time
- 2026-09-11T07:23:18Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.