ABB has reported vulnerabilities in its Telit PL62-W wireless module affecting the Arctic ARP600, ARC600, ARR600 products and the ARC600, ARG600, ARR600 wireless gateways. Some of these vulnerabilities include buffer overflow, improper privilege management, exposure of sensitive information, incorrect path limitation, and race conditions. These vulnerabilities could allow a remote attacker to execute arbitrary code, elevate privileges, or access sensitive information on the wireless modules.
Users are recommended to mitigate these vulnerabilities by disabling binary SMS messages, establishing remote connections via OpenVPN, and limiting physical access to the product. ABB also suggests cybersecurity practices such as isolating special networks, installing physical controls, and keeping all nodes updated. CISA also offers recommendations for defending industrial control system assets and protecting against social engineering attacks.
To date, no specific public exploits of these vulnerabilities have been reported.





