{"id":8454,"date":"2022-02-28T10:12:58","date_gmt":"2022-02-28T12:12:58","guid":{"rendered":"https:\/\/teknomers.com\/fr\/la-cisa-met-en-garde-contre-les-failles-de-grande-gravite-dans-le-logiciel-scada-de-schneider-et-ge-digital\/"},"modified":"2022-02-28T10:13:10","modified_gmt":"2022-02-28T12:13:10","slug":"la-cisa-met-en-garde-contre-les-failles-de-grande-gravite-dans-le-logiciel-scada-de-schneider-et-ge-digital","status":"publish","type":"post","link":"https:\/\/teknomers.com\/fr\/la-cisa-met-en-garde-contre-les-failles-de-grande-gravite-dans-le-logiciel-scada-de-schneider-et-ge-digital\/","title":{"rendered":"La CISA met en garde contre les failles de grande gravit\u00e9 dans le logiciel SCADA de Schneider et GE Digital"},"content":{"rendered":"<p> <br \/>\n<\/p>\n<div id=\"articlebody\">\n<div class=\"separator\" style=\"clear: both\"><\/div>\n<p>La Cybersecurity and Infrastructure Security Agency (CISA) des \u00c9tats-Unis a publi\u00e9 la semaine derni\u00e8re un syst\u00e8me de contr\u00f4le industriel (<a rel=\"nofollow noopener\" href=\"https:\/\/en.wikipedia.org\/wiki\/Industrial_control_system\" target=\"_blank\">SCI<\/a>) avis li\u00e9 \u00e0 de multiples vuln\u00e9rabilit\u00e9s impactant le <a rel=\"nofollow noopener\" href=\"https:\/\/www.se.com\/ww\/en\/product-subcategory\/86796-easergy-protection\/?filter=business-6-medium-voltage-distribution-and-grid-automation\" target=\"_blank\">Easergie<\/a> relais de protection moyenne tension.<\/p>\n<p>&#8220;L&#8217;exploitation r\u00e9ussie de ces vuln\u00e9rabilit\u00e9s peut divulguer les informations d&#8217;identification de l&#8217;appareil, provoquer une condition de d\u00e9ni de service, le red\u00e9marrage de l&#8217;appareil ou permettre \u00e0 un attaquant de prendre le contr\u00f4le total du relais&#8221;, a d\u00e9clar\u00e9 l&#8217;agence. <a rel=\"nofollow noopener\" href=\"https:\/\/www.cisa.gov\/uscert\/ics\/advisories\/icsa-22-055-03\" target=\"_blank\">mentionn\u00e9<\/a> dans un bulletin du 24 f\u00e9vrier 2022. &#8220;Cela pourrait entra\u00eener une perte de protection de votre r\u00e9seau \u00e9lectrique.&#8221;<\/p>\n<div class=\"ad_two clear\"><a rel=\"nofollow noopener\" href=\"https:\/\/go.thn.li\/dset1\" target=\"_blank\" title=\"Automatic GitHub Backups\"><img loading=\"lazy\" decoding=\"async\" alt=\"Sauvegardes GitHub automatiques\" class=\"lazyload\" src=\"https:\/\/teknomers.com\/fr\/wp-content\/uploads\/2022\/02\/Nouveau-Wiper-Malware-ciblant-lUkraine-dans-le-cadre-de-loperation.png\" width=\"300\" height=\"250\" \/><\/a><\/div>\n<p>Les deux failles de gravit\u00e9 \u00e9lev\u00e9e impactent les versions d&#8217;Easergy P3 ant\u00e9rieures \u00e0 la v30.205 et les versions d&#8217;Easergy P5 ant\u00e9rieures \u00e0 la v01.401.101.  Les d\u00e9tails des d\u00e9fauts sont les suivants &#8211;<\/p>\n<ul>\n<li><a rel=\"nofollow noopener\" href=\"https:\/\/download.schneider-electric.com\/files?p_Doc_Ref=SEVD-2022-011-03\" target=\"_blank\"><strong>CVE-2022-22722<\/strong><\/a>  (Score CVSS\u00a0: 7,5) &#8211; Utilisation d&#8217;informations d&#8217;identification cod\u00e9es en dur qui pourraient \u00eatre utilis\u00e9es de mani\u00e8re abusive pour observer et manipuler le trafic associ\u00e9 \u00e0 l&#8217;appareil.<\/li>\n<li><a rel=\"nofollow noopener\" href=\"https:\/\/download.schneider-electric.com\/files?p_Doc_Ref=SEVD-2022-011-03\" target=\"_blank\"><strong>CVE-2022-22723<\/strong><\/a><strong>  et <\/strong><a rel=\"nofollow noopener\" href=\"https:\/\/download.schneider-electric.com\/files?p_Doc_Ref=SEVD-2022-011-04\" target=\"_blank\"><strong>CVE-2022-22725<\/strong><\/a>  (Score CVSS\u00a0: 8,8) \u2013 Une vuln\u00e9rabilit\u00e9 de d\u00e9passement de m\u00e9moire tampon qui pourrait entra\u00eener des pannes de programme et l&#8217;ex\u00e9cution de code arbitraire en envoyant des paquets sp\u00e9cialement con\u00e7us au relais sur le r\u00e9seau.<\/li>\n<\/ul>\n<p>Les failles, qui ont \u00e9t\u00e9 d\u00e9couvertes et signal\u00e9es par les chercheurs Timoth\u00e9e Chauvin, Paul Noalhyt, Yuanshe Wu de Red Balloon Security, ont \u00e9t\u00e9 corrig\u00e9es par Schneider Electric dans le cadre de mises \u00e0 jour pouss\u00e9es le 11 janvier 2022.<\/p>\n<p>L&#8217;avis intervient moins de 10 jours apr\u00e8s que la CISA a \u00e9mis un autre avertissement d&#8217;alerte de <a rel=\"nofollow noopener\" href=\"https:\/\/www.cisa.gov\/uscert\/ics\/advisories\/icsa-22-046-01\" target=\"_blank\">multiples vuln\u00e9rabilit\u00e9s critiques<\/a> dans le graphique interactif de Schneider Electric <a rel=\"nofollow noopener\" href=\"https:\/\/en.wikipedia.org\/wiki\/SCADA\" target=\"_blank\">SCADA<\/a> Syst\u00e8me (<a rel=\"nofollow noopener\" href=\"https:\/\/igss.schneider-electric.com\/\" target=\"_blank\">IGSS<\/a>) qui, si elles sont exploit\u00e9es avec succ\u00e8s, pourraient entra\u00eener &#8220;la divulgation de donn\u00e9es et la perte de contr\u00f4le du syst\u00e8me SCADA avec IGSS fonctionnant en mode de production&#8221;.<\/p>\n<div class=\"ad_two clear\"><a rel=\"nofollow noopener\" href=\"https:\/\/go.thn.li\/cs-jan-webinar-inside\" target=\"_blank\" title=\"Prevent Data Breaches\"><img loading=\"lazy\" decoding=\"async\" alt=\"Emp\u00eacher les violations de donn\u00e9es\" class=\"lazyload\" src=\"https:\/\/teknomers.com\/fr\/wp-content\/uploads\/2022\/02\/1645701002_140_Dridex-Malware-Deploiement-Entropy-Ransomware-sur-des-ordinateurs-pirates.png\" width=\"728\" height=\"90\" \/><\/a><\/div>\n<p>Par ailleurs, l&#8217;agence f\u00e9d\u00e9rale am\u00e9ricaine a \u00e9galement <a rel=\"nofollow noopener\" href=\"https:\/\/www.otorio.com\/blog\/2-new-vulnerabilities-discovered-in-ge-s-cimplicity-servers\/\" target=\"_blank\">sonn\u00e9 l&#8217;alarme<\/a> li\u00e9s \u00e0 General Electric <a rel=\"nofollow noopener\" href=\"https:\/\/www.ge.com\/digital\/applications\/hmi-scada\/cimplicity\" target=\"_blank\">CIMPLICIT\u00c9<\/a> Logiciel SCADA, avertissement de <a rel=\"nofollow noopener\" href=\"https:\/\/www.cisa.gov\/uscert\/ics\/advisories\/icsa-22-053-01\" target=\"_blank\">deux<\/a> <a rel=\"nofollow noopener\" href=\"https:\/\/www.cisa.gov\/uscert\/ics\/advisories\/icsa-22-053-02\" target=\"_blank\">S\u00e9curit\u00e9<\/a> des vuln\u00e9rabilit\u00e9s qui pourraient \u00eatre exploit\u00e9es pour r\u00e9v\u00e9ler des informations sensibles, r\u00e9aliser l&#8217;ex\u00e9cution de code et une \u00e9l\u00e9vation locale des privil\u00e8ges.<\/p>\n<p>Les avis font suite \u00e0 une <a rel=\"nofollow noopener\" href=\"https:\/\/www.dragos.com\/year-in-review\/\" target=\"_blank\">Ann\u00e9e pass\u00e9e en revue<\/a> rapport de la soci\u00e9t\u00e9 de cybers\u00e9curit\u00e9 industrielle Dragos, qui a r\u00e9v\u00e9l\u00e9 que 24 % des 1 703 vuln\u00e9rabilit\u00e9s ICS\/OT signal\u00e9es en 2021 n&#8217;avaient aucun correctif disponible, dont 19 % n&#8217;avaient aucune att\u00e9nuation, emp\u00eachant les op\u00e9rateurs de prendre des mesures pour prot\u00e9ger leurs syst\u00e8mes contre les menaces potentielles .<\/p>\n<p>En outre, Dragos a identifi\u00e9 l&#8217;activit\u00e9 malveillante de trois nouveaux groupes qui ciblaient les syst\u00e8mes ICS l&#8217;ann\u00e9e derni\u00e8re, y compris ceux d&#8217;acteurs qu&#8217;il suit comme Kostovite, Erythrite et Petrovite, chacun ciblant les environnements OT des \u00e9nergies renouvelables, des services publics d&#8217;\u00e9lectricit\u00e9 et des mines. et des entreprises \u00e9nerg\u00e9tiques situ\u00e9es au Canada, au Kazakhstan et aux \u00c9tats-Unis<\/p>\n<p><\/p>\n<\/div>\n<p><br \/>\n<br \/><a href=\"https:\/\/thehackernews.com\/2022\/02\/cisa-warns-of-high-severity-flaws-in.html\" rel=\"nofollow noopener\" target=\"_blank\">ttn-fr-57<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>La Cybersecurity and Infrastructure Security Agency (CISA) des \u00c9tats-Unis a publi\u00e9 la semaine derni\u00e8re un syst\u00e8me de contr\u00f4le industriel (SCI) avis li\u00e9 \u00e0 de multiples vuln\u00e9rabilit\u00e9s impactant le Easergie relais de protection moyenne tension. &#8220;L&#8217;exploitation r\u00e9ussie de ces vuln\u00e9rabilit\u00e9s peut divulguer les informations d&#8217;identification de l&#8217;appareil, provoquer une condition de d\u00e9ni de service, le red\u00e9marrage [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":8455,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[6],"tags":[4805,4168,841,4158,4165,4161,429,11130,4806,525,1740,11128,4157,4159,4171,4170,65,6816,4167,4955,4160,4163,4162,11129,1101,4172,4169,4166,4164],"class_list":["post-8454","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-technologie","tag-cisa","tag-comment-pirater","tag-contre","tag-cyber-actualites","tag-cyber-attaques","tag-cyber-mises-a-jour","tag-dans","tag-digital","tag-failles","tag-garde","tag-grande","tag-gravite","tag-lactualite-de-la-cybersecurite","tag-lactualite-de-la-cybersecurite-aujourdhui","tag-lactualite-des-hackers","tag-la-securite-des-informations","tag-les","tag-logiciel","tag-logiciel-malveillant-de-ransomware","tag-met","tag-mises-a-jour-de-la-cybersecurite","tag-nouvelles-de-piratage","tag-nouvelles-de-pirates","tag-scada","tag-schneider","tag-securite-informatique","tag-securite-internet","tag-violation-de-donnees","tag-vulnerabilite-logicielle"],"_links":{"self":[{"href":"https:\/\/teknomers.com\/fr\/wp-json\/wp\/v2\/posts\/8454","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/teknomers.com\/fr\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/teknomers.com\/fr\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/teknomers.com\/fr\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/teknomers.com\/fr\/wp-json\/wp\/v2\/comments?post=8454"}],"version-history":[{"count":0,"href":"https:\/\/teknomers.com\/fr\/wp-json\/wp\/v2\/posts\/8454\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/teknomers.com\/fr\/wp-json\/wp\/v2\/media\/8455"}],"wp:attachment":[{"href":"https:\/\/teknomers.com\/fr\/wp-json\/wp\/v2\/media?parent=8454"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/teknomers.com\/fr\/wp-json\/wp\/v2\/categories?post=8454"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/teknomers.com\/fr\/wp-json\/wp\/v2\/tags?post=8454"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}