  • Softing’s edgeConnector and edgeAggregator have been caught with their digital pants down, exposing clear-as-day sensitive data and a path traversal flaw. Uh-oh, spaghettio!
  • Bring out the virtual measuring tape, because we’ve got a CVSS v3 score of 7.2 for the path traversal and a whopping 8.0 for the info strip show!
  • If you’re using the affected products, it’s time for a software wardrobe change to version 3.70 or greater. Dress for the job you want, not the one with security holes.
  • The vulnerabilities were sniffed out by the cyber bloodhounds at STAR Labs SG Pte. Ltd. and Claroty Team82, in collaboration with Trend Micro Zero Day Initiative. Good boys!
  • CISA swings in with mitigation advice, basically saying, “Keep your control systems off the grid, folks, and when you VPN, VPN hard!”
Title: Softing edgeAggregator Restore Configuration Directory Traversal Remote Code Execution Vulnerability
Cve id: CVE-2023-38126
Cve state: PUBLISHED
Cve assigner short name: zdi
Cve date updated: 12/19/2023
Cve description: Softing edgeAggregator Restore Configuration Directory Traversal Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Softing edgeAggregator. Authentication is required to exploit this vulnerability. The specific flaw exists within the processing of backup zip files. The issue results from the lack of proper validation of a user-supplied path prior to using it in file operations. An attacker can leverage this to execute code in the context of root. Was ZDI-CAN-20543.

Title: Cleartext Transmission of Sensitive Information in Softing edgeConnector and edgeAggregator
Cve id: CVE-2024-0860
Cve state: PUBLISHED
Cve assigner short name: icscert
Cve date updated: 03/14/2024
Cve description: The affected product is vulnerable to a cleartext transmission of sensitive information vulnerability, which may allow an attacker to capture packets to craft their own requests.

