CISA issued advisory ICSA-26-204-04 on July 23, 2026, regarding five vulnerabilities in Panduit IntraVUE, an industrial network monitoring platform. The most critical vulnerability, CVE-2026-42933, has a CVSS score of 10, allowing bypass of OT segmentation. Key points include:
- Total vulnerabilities: 5 (2 Critical, 2 High, 1 Medium).
- None have been actively exploited in the wild.
- Affected versions: All up to 3.2.1a14.
- Users should update to version 3.2.1a16 or later and follow security best practices such as firewall usage and credential rotation.
- Vulnerabilities can lead to serious security risks as they may allow attackers to access industrial control devices without needing physical access. Further details can be found in the CISA advisory.