The problem is not one faulty box. The same nine flaws span multiple ABB B&R PC families, so separate patch tracks by model will miss part of the exposed fleet.
CISA maps CVE-2023-45229 through CVE-2023-45237 across APC4100, APC910, C80, MPC3100, PPC1200, PPC900, and APC2200. The exposed versions differ by model, and the vendor update closes risks that include remote code execution, DoS, DNS cache poisoning, and sensitive data extraction.
That makes this an operations issue as much as a security one. Industrial PC estates often age on different schedules, so the shared vulnerability set creates a coordinated remediation problem across production environments.