This CWE pertains to vulnerabilities in IT/OT convergence/expansion, highlighting risks in ICS networks due to DER devices and smart loads. The category includes 'Nearest IT Neighbor' guidance and CWE team recommendations.
Vulnerabilities in this particular domain are linked to the "IT/OT Convergence/Expansion" classification found in the SEI ETF report titled "Categories of Security Vulnerabilities in ICS" released in March 2022. The growing presence of DER devices and smart loads enhances the resemblance between emerging ICS networks and IT networks, consequently exposing them to comparable vulnerabilities. It is important to acknowledge that the category includes the "Nearest IT Neighbor" guidance outlined in the report, along with recommendations from the CWE team. It should be noted that these associations may evolve in subsequent CWE versions.