Schneider, APC support forum to share knowledge about installation and configuration for Data Center and Business Power UPSs, Accessories, Software, Services.
Send a co-worker an invite to the portal.Just enter their email address and we'll connect them to register. After joining, they will belong to the same company.
You have entered an invalid email address. Please re-enter the email address.
This co-worker has already been invited to the Exchange portal. Please invite another co-worker.
Please enter email address
Send InviteCancel
Invitation Sent
Your invitation was sent.Thanks for sharing Exchange with your co-worker.
Link copied. Please paste this link to share this article on your social media post.
Posted: 2023-05-2608:19 AM
APC AP9630 Vulnerabilities
hi there,
we have a NM Card 2 (AP9630) installed in an APC SMT2200RM2U. during a vulnerability test, they found that the card with version AOS 5.1.6 has the following vulnerabilities: CVE-2011-3389, CVE-2017-6168, CVE-2017-17382, CVE-2017-17427, CVE-2017-17428, CVE-2017-12373, CVE-2017-13098, CVE-2017-1000385, CVE-2017-13099, CVE-2016-6883, CVE-2012-5081 I upgraded it to version AOS 7.1.2 but I haven't found a document and/or link to find out if this version help me in the remediation of these vulnerabilities. I will appreciate any feedback. Thanks in advance
Link copied. Please paste this link to share this article on your social media post.
Posted: 2023-05-2610:36 AM
Hi,
My primary recommendation would be to re-run the scan after upgrading to current firmware, so your to-do list reflects the current state.
That said, all the CVE marked 2017 are variations on a Bleichenbacher padding attack, aka "TLS ROBOT". To mitigate this, you can disable the affected algorithms at the CLI, with: