Industrial Remote Access Tool Ewon Cosy+ Vulnerable to Root Access Attacks
The industrial remote access system Ewon Cosy+ has security flaws that have been made public. These flaws could be leveraged to escalate an attacker's privileges to root the device and launch subsequent assaults.
Elevated access may then be used as a weapon to obtain properly signed X.509 VPN certificates for foreign devices, allowing them to take control of their VPN sessions, as well as to decrypt encrypted firmware files and encrypted data, including passwords in configuration files.
This makes it possible for hackers to take over VPN sessions, which poses serious security threats to Cosy+ users as well as those using the nearby industrial infrastructure, according to a recent analysis by security expert Moritz Abrell of SySS GmbH.
Over the weekend, the results were disclosed ...

