HEIDENHAIN is working on mitigations to handle an improper authentication vulnerability in its HEIDENHAIN TNC 640 controlling a HARTFORD 5A-65E CNC machine, according to a report with CISA.

Successful exploitation of this remotely exploitable vulnerability, discovered by Marco Balduzzi of Trend Micro, could cause a loss of sensitive data, manipulation of information, and denial-of-service.

The following version HEIDENDAIN Controller TNC, a computer numerical control (CNC) controller, suffers from the issue: Version 340590 07 SP5 Running HEROS 5.08.3 controlling HARTFORD 5A-65E CNC machine.

In the vulnerability, the HEIDENHAIN Controller TNC 640, version 340590 07 SP5, running HEROS 5.08.3 controlling the HARTFORD 5A-65E CNC machine is vulnerable to improper authentication, which may allow an attacker to deny service to the production line, steal sensitive data from the production line, and alter any products created by the production line.

CVE-2022-41648 is the case number assigned to this vulnerability, which has a CVSS v3 base score of 8.1.

Schneider Bold

The product sees use in multiple industrial sectors, and on a global basis.

No known public exploits specifically target this vulnerability.

Germany-based HEIDENHAIN is working with HARTFORD Machinery of She Hong Industrial Co. Ltd. to develop mitigations. HEIDENHAIN recommends users do the following to reduce the risk of exploitation:

  • Block LSV2 and DNC communication by means of the integrated firewall in the controller’s HEROS operating system
  • Use zone-firewalls to isolate and segment the network of the affected devices
  • Ask your machinery vendor (running HEIDENHAIN controllers) for updates to a recent Software-Version, where SSH-tunneling is standard
ISSSource

Pin It on Pinterest

Share This