CISA + leveranciers
ICS Advisories
Advisories specifiek gericht op industriële besturingssystemen — van CISA ICS-CERT en rechtstreeks van leveranciers (Siemens ProductCERT, ABB PSIRT) — inclusief revisiegeschiedenis (initiële publicatie, Update A, Update B) en gekoppelde CVE's.
58
Gevonden
Advisorydata: live koppeling— laatst opgehaald: 24 september 2026 om 05:14.
Filters
1 actief58 advisories gevonden
Gepubliceerd
14 juli 2026
Laatste update
22 september 2026
Gekoppelde CVE's
Getroffen sectoren
Risk evaluation
This advisory is revoked. Re-investigation confirmed the reported behavior is expected platform configuration and does not expose the protected attribute.
Mitigatiesamenvatting
Zie de officiële CISA-advisory voor mitigerende maatregelen.
Revisiegeschiedenis (2)
Initiële publicatie — 14 juli 2026
Publication Date
Update A — 22 september 2026
Revoked advisory as the CVE is rejected
SSA-823812
SSA-823812: Denial of Service Vulnerability in WTV676 and WTV776 devices
Gepubliceerd
16 september 2026
Laatste update
16 september 2026
Gekoppelde CVE's
Getroffen sectoren
Risk evaluation
The products listed below contain a denial of service vulnerability that could allow an attacker to force the devices into protection mode under certain conditions. This disables remote connectivity functions (Web Access) to the devices. Siemens has released new versions for the affected products and recommends to update to the latest versions.
Mitigatiesamenvatting
Update to V3.94 or later version
Revisiegeschiedenis (1)
Initiële publicatie — 16 september 2026
Publication Date
SSA-019113
SSA-019113: Vulnerabilities in the additional GNU/Linux subsystem of the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP V3.1.6
Siemens — SIMATIC S7-1500 CPU 1518-4 PN/DP MFP (6ES7518-4AX00-1AB0)
Gepubliceerd
14 juli 2026
Laatste update
8 september 2026
Gekoppelde CVE's
Getroffen sectoren
Risk evaluation
Multiple vulnerabilities have been identified in the additional GNU/Linux subsystem of the firmware version V3.1.6 for the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP (incl. SIPLUS variant). Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.
Mitigatiesamenvatting
Limit access to the interactive shell of the additional GNU/Linux subssytem to trusted personnel only.
Revisiegeschiedenis (2)
Initiële publicatie — 14 juli 2026
Publication Date
Update A — 8 september 2026
Added 79 CVEs; Added fix for CVE-2026-43284, CVE-2026-46300 and CVE-2026-31431
Gepubliceerd
8 september 2026
Laatste update
8 september 2026
Gekoppelde CVE's
Getroffen sectoren
Risk evaluation
Siemens Reyrolle 7SR5 Before V2.70 is affected by multiple vulnerabilities. Siemens has released a new version for Reyrolle 7SR5 and recommends to update to the latest version.
Mitigatiesamenvatting
Update to V2.70 or later version
Revisiegeschiedenis (1)
Initiële publicatie — 8 september 2026
Publication Date
SSA-157465
SSA-157465: Reflected Cross-site scripting Vulnerability in Teamcenter
Gepubliceerd
8 september 2026
Laatste update
8 september 2026
Gekoppelde CVE's
Getroffen sectoren
Risk evaluation
A reflected cross site scripting vulnerability in the authentication redirect flow (/auth/) of Teamcenter allows an unauthenticated remote attacker to inject JavaScript into an authenticated user's session by crafting a malicious URL. Successful exploitation may enable the attacker to read data or perform actions within the victim's Teamcenter session. Siemens has released new versions for the affected products and recommends to update to the latest versions.
Mitigatiesamenvatting
Update to V2412.0013 or later version
Revisiegeschiedenis (1)
Initiële publicatie — 8 september 2026
Publication Date
SSA-216014
SSA-216014: Vulnerabilities in EFI variable of SIMATIC IPCs, SIMATIC Tablet PCs, and SIMATIC Field PGs
Gepubliceerd
11 maart 2025
Laatste update
8 september 2026
Gekoppelde CVE's
Getroffen sectoren
Risk evaluation
Multiple vulnerabilities has been identified in Siemens SIMATIC IPCs, SIMATIC Tablet PCs, and SIMATIC Field PGs that can allow an authenticated attacker to alter the secure boot and password configurations. Siemens has released new versions of BIOS for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.
Mitigatiesamenvatting
Restrict access to root/administrator permission for the operating system
Revisiegeschiedenis (4)
Initiële publicatie — 11 maart 2025
Publication Date
Update A — 10 juni 2025
Added SIMATIC IPC RC-543A and RW-543B; Updated SIMATIC IPC3000 Smart V3, IPC 347G, IPC 527G
Update B — 11 november 2025
Added fix for SIMATIC IPC227G / IPC277G / IPC277G PRO / IPC327G / IPC377G
Update C — 10 februari 2026
Added fix versions for IPC RW-543B and IPC RC-543B
SSA-229470
SSA-229470: Multiple Vulnerabilities in SICAM 8 Products Before V26.20
Gepubliceerd
9 juli 2026
Laatste update
8 september 2026
Gekoppelde CVE's
Getroffen sectoren
Risk evaluation
Multiple SICAM 8 products are affected by multiple vulnerabilities that could lead to denial of service, namely: - SICAM A8000 Device firmware - CPCI85 for CP-8031/CP-8050 - SICORE for CP-8010/CP-8012 - SICAM EGS Device firmware - CPCI85 - SICAM S8000 - SICORE Siemens has released new versions for the affected products and recommends to update to the latest versions.
Mitigatiesamenvatting
Update to V26.20 or later version The firmware CPCI85 V26.20 is present within “CP-8031/CP-8050 Package” V26.20 https://support.industry.siemens.com/cs/ww/en/view/109804985/ and also within “SICAM EGS Package” V26.20 https://support.industry.siemens.com/cs/document/109972536/
Revisiegeschiedenis (2)
Initiële publicatie — 9 juli 2026
Publication Date
Update A — 8 september 2026
Added Acknowledgement
Gepubliceerd
8 september 2026
Laatste update
8 september 2026
Gekoppelde CVE's
Getroffen sectoren
Risk evaluation
A vulnerability has been identified in the Open Interface Services (OIS) web module affecting Siveillance Control and Siveillance Control Pro (versions OIS 3.x.y and OIS 4.x.y) . This vulnerability allows an attacker to upload arbitrary files, which can lead to unauthorized root-level access on the OIS server. Siemens has released patches and updates for Siveillance OIS to apply to the products that incorporate the OIS service, and recommends to update to the latest versions.
Mitigatiesamenvatting
Update to V3.0.12.2173 or later version
Revisiegeschiedenis (1)
Initiële publicatie — 8 september 2026
Publication Date
SSA-282044
SSA-282044: DLL Hijacking Vulnerability in Siemens Web Installer used by the Online Software Delivery
Gepubliceerd
12 augustus 2025
Laatste update
8 september 2026
Gekoppelde CVE's
Getroffen sectoren
Risk evaluation
The installers used to install several Siemens products are affected by a DLL hijacking vulnerability. This could allow an attacker to execute arbitrary code when a legitimate user installs an application that uses the affected installer component. This vulnerability poses a risk only during setup and installation phase of the affected applications downloaded e.g. via OSD (Online Software Delivery). Siemens has released new versions for several affected products and recommends using the latest versions during setup and installation. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.
Mitigatiesamenvatting
Harden the application host to prevent local access by untrusted personnel
Revisiegeschiedenis (4)
Initiële publicatie — 12 augustus 2025
Publication Date
Update A — 9 september 2025
Added Sahil Shah to acknowledgment; Added fix for SIMATIC Energy Suite V19, SIMATIC Energy Suite V20, SIMATIC MTP CREATOR V4.x, SIMATIC Control Function Library (CFL) V3.x, TIA Portal Test Suite V19, TIA Portal Test Suite V20, SIMATIC WinCC Visualization Architect V19, SIMATIC WinCC Visualization Architect V20, SIMATIC S7-PCT; Updated No fix planned for SIMATIC ProSave V17,SIMATIC WinCC flexible ES, SIMATIC Control Function Library (CFL) V1.x, SIMATIC Control Function Library (CFL) V2.x
Update B — 14 oktober 2025
Added fix for MTP Creator V2.x, CFL V4.x, Simatic WinCC Unified Line Coordination and Simatic WinCC Unified Sequence
Update C — 11 november 2025
Added Fixes for PCS 7 Logic Matrix V9.1, PCS7 Advanced Process Faceplates V9.1, SIMATIC PCS 7 Basis Faceplates V9.1 PCS 7 Basis Library V9.1, SIMATIC Management Agent V9.1, SIMATIC Management Console V9.1, PCS 7 V9.1, PCS 7 V10.0
SSA-327438
SSA-327438: Multiple Vulnerabilities in SCALANCE LPE9403
Gepubliceerd
13 mei 2025
Laatste update
8 september 2026
Gekoppelde CVE's
Getroffen sectoren
Risk evaluation
SCALANCE LPE9403 is affected by multiple vulnerabilities which lead to a compromise in availability, integrity and confidentiality. Siemens has released a new version for SCALANCE LPE9403 and recommends to update to the latest version. Siemens recommends specific countermeasures for products where fixes are not, or not yet available.
Mitigatiesamenvatting
Restrict access to authorized and trusted personal only
Revisiegeschiedenis (3)
Initiële publicatie — 13 mei 2025
Publication Date
Update A — 8 juli 2025
Added fix for CVE-2025-40572, CVE-2025-40573, CVE-2025-40574, CVE-2025-40575, CVE-2025-40576, CVE-2025-40577, CVE-2025-40579, CVE-2025-40580
Update B — 8 september 2026
Added fix for devices with SINEMA Remote Connect Edge Client installed
SSA-328642
SSA-328642: "Copy Fail" Vulnerability in Multiple Industrial Products
Gepubliceerd
8 september 2026
Laatste update
8 september 2026
Gekoppelde CVE's
Getroffen sectoren
Risk evaluation
Multiple Siemens products are vulnerable to the "Copy Fail" vulnerability. Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.
Mitigatiesamenvatting
Limit access to the interactive shell of the additional GNU/Linux subsystem to trusted personnel only.
Revisiegeschiedenis (1)
Initiële publicatie — 8 september 2026
Publication Date
SSA-330084
SSA-330084: Client Code Execution Vulnerability in Desigo CC Product Family
Gepubliceerd
8 september 2026
Laatste update
8 september 2026
Gekoppelde CVE's
Getroffen sectoren
Risk evaluation
A Client Code Execution (CCE) vulnerability has been identified in Desigo CC, potentially allowing malicious actors to execute arbitrary code on client devices through specially crafted graphics documents. This vulnerability leverages user-defined graphics containing embedded scripts that are executed on client application instances. Successful exploitation could lead to compromise of the client operating system and potential lateral movement within the organization.
Mitigatiesamenvatting
Evaluate authorization policy for Graphics application following Least Privilege principle, so only required users have access to the configuration.
Revisiegeschiedenis (1)
Initiële publicatie — 8 september 2026
Publication Date
SSA-331739
SSA-331739: Privilege Escalation Vulnerability in WIBU CodeMeter Runtime Affecting Siemens Products
Gepubliceerd
12 augustus 2025
Laatste update
8 september 2026
Gekoppelde CVE's
Getroffen sectoren
Risk evaluation
WIBU Systems published information about a privilege escalation vulnerability under a certain circumstances and associated fix releases of CodeMeter Runtime, a product provided by WIBU Systems and used in several Siemens industrial products. Siemens has released new versions for the affected products and recommends to update to the latest versions.
Mitigatiesamenvatting
Update to V3.18 P032 or later version
Revisiegeschiedenis (3)
Initiële publicatie — 12 augustus 2025
Publication Date
Update A — 9 september 2025
Removed Simatic Information Server and Simatic Process Historian as they are not affected.
Update B — 8 september 2026
Added fix for SIMATIC PDM Maintenance Station V5.0
SSA-434797
SSA-434797: Buffer Overflow Vulnerability in OpenSSL affecting Siemens Products
Gepubliceerd
9 juni 2026
Laatste update
8 september 2026
Gekoppelde CVE's
Getroffen sectoren
Risk evaluation
OpenSSL has published a stack based buffer overflow vulnerability that allows a remote attacker to cause a denial of service (DoS) or potentially allow for remote code execution. Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.
Mitigatiesamenvatting
As a defense-in-depth measure, organizations may review whether affected systems are exposed to untrusted CMS/PKCS#7 content from external sources.
Revisiegeschiedenis (4)
Initiële publicatie — 9 juni 2026
Publication Date
Update A — 14 juli 2026
Added SCALANCE X-200 family, X-200IRT family, X-200RNA family, X-300/408 family, SC-600 family to Known Not Affected and fix for SINUMERIK Access MyMachine /OPC UA , SIMOVE Fleetmanager. Updated remediation to No fix planned for SIMATIC Comfort/Mobile RT
Update B — 11 augustus 2026
Added RUGGEDCOM ROX II family and SIMATIC HMI Operator Device to Known Not Affected and removed SIMATIC Comfort/Mobile RT and updated SIMATIC Advanced HMI Panels and SIMATIC HMI Basic Panels to no fix available; Added fix for SIMATIC PDM V9.3 and added PCS neo V6.0 and Simatic Logon to affected products.
Update C — 8 september 2026
Updated remediation for AI Lightweight Inference Server to no fix planned.
SSA-503852
SSA-503852: Authentication Bypass Vulnerability in Industrial Edge Management
Gepubliceerd
8 september 2026
Laatste update
8 september 2026
Gekoppelde CVE's
Getroffen sectoren
Risk evaluation
Industrial Edge Management contains an authentication bypass vulnerability that could allow an unauthenticated remote attacker to perform full account takeover by resetting user credentials without completing email verification. Siemens has released new versions for the affected products and recommends to update to the latest versions.
Mitigatiesamenvatting
Block direct internet access to IEM Pro / IEM Virtual The most effective immediate measure is to block direct internet access to your IEM Pro or IEM V instance. This ensures that no external attacks can occur via this vulnerability.
Revisiegeschiedenis (1)
Initiële publicatie — 8 september 2026
Publication Date
SSA-517424
SSA-517424: Path Traversal Vulnerability in SIMOVE Fleetmanager and SIPLANT
Gepubliceerd
8 september 2026
Laatste update
8 september 2026
Gekoppelde CVE's
Getroffen sectoren
Risk evaluation
SIMOVE Fleetmanager and SIPLANT contain a path traversal vulnerability that could allow an attacker to access files outside of intended scope. Siemens has released new versions for the affected products and recommends to update to the latest versions.
Mitigatiesamenvatting
Configure appropriate user management by restricting services' access rights to project files
Revisiegeschiedenis (1)
Initiële publicatie — 8 september 2026
Publication Date
SSA-887643
SSA-887643: Account Hijacking Vulnerability in Mendix SAML module
Gepubliceerd
3 september 2026
Laatste update
3 september 2026
Gekoppelde CVE's
Getroffen sectoren
Risk evaluation
Mendix SAML module contains a vulnerability that could allow unauthenticated remote attackers to hijack an account in specific SSO configurations. Mendix has provided fix releases for the Mendix SAML module and recommends to update to the latest version.
Mitigatiesamenvatting
Update to V3.6.27 or later version
Revisiegeschiedenis (1)
Initiële publicatie — 3 september 2026
Publication Date
SSA-682041
SSA-682041: Cross Site Scripting Vulnerability in Element Maps
Gepubliceerd
27 augustus 2026
Laatste update
27 augustus 2026
Gekoppelde CVE's
Getroffen sectoren
Risk evaluation
The si-map component does not properly neutralize user-controllable input of the points property that is used to render the tooltip label of map pins. This could allow an attacker to craft a malicious URL that, when loaded by a victim and the map pin is hovered over, executes arbitrary script code within the victim's browser session. This vulnerability affects only the @siemens/maps-ng package. Siemens has released new versions for the affected products and recommends to update to the latest versions.
Mitigatiesamenvatting
Deploy a strict Content Security Policy (CSP)
Revisiegeschiedenis (1)
Initiële publicatie — 27 augustus 2026
Publication Date
Gepubliceerd
11 augustus 2026
Laatste update
18 augustus 2026
Gekoppelde CVE's
Getroffen sectoren
Risk evaluation
Simcenter Nastran is affected by a stack overflow vulnerability that could be triggered when an application binary reads arbitrary string as a file argument. If a user is tricked to run one of the impacted application binary with a malicious string, an attacker could leverage the vulnerability to perform remote code execution in the context of the current process. Siemens has released new versions for the affected products and recommends to update to the latest versions.
Mitigatiesamenvatting
Update to V2606 or later version
Revisiegeschiedenis (3)
Initiële publicatie — 11 augustus 2026
Publication Date
Update A — 13 augustus 2026
Added Simcenter Femap with fix
Update B — 18 augustus 2026
Initial CISA Republication of Siemens ProductCERT SSA-069220 advisory
Gepubliceerd
11 augustus 2026
Laatste update
13 augustus 2026
Gekoppelde CVE's
Getroffen sectoren
Risk evaluation
Siemens LOGO! Soft Comfort contains multiple vulnerabilities in its project-file encryption and password handling mechanisms. A local attacker could exploit these vulnerabilities to extract the master key, allowing them to decrypt project data or remove project passwords. The lack of password salting enables offline dictionary or brute-force attacks against the password hashes. Successful exploitation could result in unauthorized access to, or modification of, sensitive project logic and configurations. Siemens has released a new version for LOGO! Soft Comfort and recommends to update to the latest version.
Mitigatiesamenvatting
Update to V9 or later version Note: A hardware upgrade to LOGO! V9 BM or later is also required to avoid compatibility mode, in which the vulnerabilities addressed by this advisory remain present.
Revisiegeschiedenis (2)
Initiële publicatie — 11 augustus 2026
Publication Date
Update A — 13 augustus 2026
Initial CISA Republication of Siemens ProductCERT SSA-751328 advisory
Gepubliceerd
11 augustus 2026
Laatste update
13 augustus 2026
Gekoppelde CVE's
Getroffen sectoren
Risk evaluation
Solid Edge is affected by multiple file parsing vulnerabilities that could be triggered when the application reads specially crafted files in PAR, PSM or DFT format. This could allow an attacker to crash the application or execute arbitrary code. Siemens has released new versions for the affected products and recommends to update to the latest versions.
Mitigatiesamenvatting
Update to V225.0 Update 15 or later version
Revisiegeschiedenis (2)
Initiële publicatie — 11 augustus 2026
Publication Date
Update A — 13 augustus 2026
Initial CISA Republication of Siemens ProductCERT SSA-621657 advisory
Gepubliceerd
11 augustus 2026
Laatste update
13 augustus 2026
Gekoppelde CVE's
Getroffen sectoren
Risk evaluation
Simcenter Femap contains two file parsing vulnerabilities that could be triggered when the application reads files in BMP file format. If a user is tricked to open a malicious file with the affected application, this could lead the application to crash or potentially lead to arbitrary code execution. Siemens has released a new version for Simcenter Femap and recommends to update to the latest version.
Mitigatiesamenvatting
Update to V2606.0001 or later version
Revisiegeschiedenis (2)
Initiële publicatie — 11 augustus 2026
Publication Date
Update A — 13 augustus 2026
Initial CISA Republication of Siemens ProductCERT SSA-584312 advisory
Gepubliceerd
11 augustus 2026
Laatste update
13 augustus 2026
Gekoppelde CVE's
Getroffen sectoren
Risk evaluation
Parasolid is affected by an out of bounds read vulnerability that could be triggered when the application reads files in X_T format. This could allow an attacker to crash the application or execute arbitrary code. Siemens has released new versions for the affected products and recommends to update to the latest versions.
Mitigatiesamenvatting
Update to V38.0.235 or later version
Revisiegeschiedenis (2)
Initiële publicatie — 11 augustus 2026
Publication Date
Update A — 13 augustus 2026
Initial CISA Republication of Siemens ProductCERT SSA-138516 advisory
Gepubliceerd
11 augustus 2026
Laatste update
13 augustus 2026
Gekoppelde CVE's
Getroffen sectoren
Risk evaluation
Siveillance Video Management Servers contains a vulnerability that could allow a Remote Code Execution attack. Siemens has released new versions for the affected products and recommends to update to the latest versions.
Mitigatiesamenvatting
Update to V23.3 HotfixRev27 or later version
Revisiegeschiedenis (2)
Initiële publicatie — 11 augustus 2026
Publication Date
Update A — 13 augustus 2026
Initial CISA Republication of Siemens SSA-825228 advisory
Gepubliceerd
11 augustus 2026
Laatste update
13 augustus 2026
Gekoppelde CVE's
Getroffen sectoren
Risk evaluation
A vulnerability in Desigo DXR and PXC controllers has been identified that could allow an attacker to cause denial of service conditions by sending malformed BACnet packets. Recovery requires a device reset or reboot to restore normal functionality. Siemens has released new versions for the affected products and recommends to update to the latest versions.
Mitigatiesamenvatting
Update to V01.21.233.16-7862 or later version Please contact your local Siemens office for additional support in obtaining the update.
Revisiegeschiedenis (2)
Initiële publicatie — 11 augustus 2026
Publication Date
Update A — 13 augustus 2026
Initial CISA Republication of Siemens SSA-781903 advisory
SSA-069220
SSA-069220: Stack Overflow Vulnerability in Simcenter Nastran Before V2606
Gepubliceerd
11 augustus 2026
Laatste update
13 augustus 2026
Gekoppelde CVE's
Getroffen sectoren
Risk evaluation
Simcenter Nastran is affected by a stack overflow vulnerability that could be triggered when an application binary reads arbitrary string as a file argument. If a user is tricked to run one of the impacted application binary with a malicious string, an attacker could leverage the vulnerability to perform remote code execution in the context of the current process. Siemens has released new versions for the affected products and recommends to update to the latest versions.
Mitigatiesamenvatting
Update to V2606 or later version
Revisiegeschiedenis (2)
Initiële publicatie — 11 augustus 2026
Publication Date
Update A — 13 augustus 2026
Added Simcenter Femap with fix
Gepubliceerd
11 augustus 2026
Laatste update
12 augustus 2026
Gekoppelde CVE's
Getroffen sectoren
Risk evaluation
Siemens License Server is affected by multiple vulnerabilities which could allow an attacker to elevate its privileges and read arbitrary files on the system. Siemens has released a new version for Siemens License Server (SLS) and recommends to update to the latest version.
Mitigatiesamenvatting
Update to V5.1 or later version
Revisiegeschiedenis (2)
Initiële publicatie — 11 augustus 2026
Publication Date
Update A — 12 augustus 2026
Initial CISA Republication of Siemens ProductCERT SSA-077553 advisory
Gepubliceerd
11 augustus 2026
Laatste update
12 augustus 2026
Gekoppelde CVE's
Getroffen sectoren
Risk evaluation
Fortinet has published information on vulnerabilities in FortiOS. This advisory lists the related Siemens Industrial products. Siemens recommends to contact customer support for additional information, and follow Fortinet advisory for workarounds and mitigation measures.
Mitigatiesamenvatting
Contact customer support to receive detailed information
Revisiegeschiedenis (2)
Initiële publicatie — 11 augustus 2026
Publication Date
Update A — 12 augustus 2026
Initial CISA Republication of Siemens ProductCERT SSA-127084 advisory
SSA-077553
SSA-077553: Multiple Vulnerabilities in Siemens License Server (SLS)
Gepubliceerd
11 augustus 2026
Laatste update
11 augustus 2026
Gekoppelde CVE's
Getroffen sectoren
Risk evaluation
Siemens License Server is affected by multiple vulnerabilities which could allow an attacker to elevate its privileges and read arbitrary files on the system. Siemens has released a new version for Siemens License Server (SLS) and recommends to update to the latest version.
Mitigatiesamenvatting
Update to V5.1 or later version
Revisiegeschiedenis (1)
Initiële publicatie — 11 augustus 2026
Publication Date
SSA-104023
SSA-104023: Multiple Vulnerabilities in Palo Alto Networks PAN-OS on RUGGEDCOM APE1808 Devices
Gepubliceerd
14 juli 2026
Laatste update
11 augustus 2026
Gekoppelde CVE's
Getroffen sectoren
Risk evaluation
Palo Alto Networks has published [1] information on vulnerabilities in PAN-OS. This advisory lists the related Siemens Industrial products affected by these vulnerabilities. Customers are advised to consult and implement the workarounds provided in Palo Alto Networks' upstream security notifications. [1] https://security.paloaltonetworks.com/
Mitigatiesamenvatting
Contact customer support to receive patch and update information
Revisiegeschiedenis (2)
Initiële publicatie — 14 juli 2026
Publication Date
Update A — 11 augustus 2026
Added CVE-2026-0279, CVE-2026-0280, CVE-2026-0281, CVE-2026-0282, CVE-2026-0283, CVE-2026-0284, CVE-2026-0285, CVE-2026-0286, CVE-2026-0287 and CVE-2026-0288
SSA-127084
SSA-127084: Multiple Vulnerabilities in Fortigate NGFW on RUGGEDCOM APE1808 Devices
Gepubliceerd
11 augustus 2026
Laatste update
11 augustus 2026
Gekoppelde CVE's
Getroffen sectoren
Risk evaluation
Fortinet has published information on vulnerabilities in FortiOS. This advisory lists the related Siemens Industrial products. Siemens recommends to contact customer support for additional information, and follow Fortinet advisory for workarounds and mitigation measures.
Mitigatiesamenvatting
Contact customer support to receive detailed information
Revisiegeschiedenis (1)
Initiële publicatie — 11 augustus 2026
Publication Date
SSA-138516
SSA-138516: Out of Bounds Read Vulnerability in Parasolid X_T File Parsing
Gepubliceerd
11 augustus 2026
Laatste update
11 augustus 2026
Gekoppelde CVE's
Getroffen sectoren
Risk evaluation
Parasolid is affected by an out of bounds read vulnerability that could be triggered when the application reads files in X_T format. This could allow an attacker to crash the application or execute arbitrary code. Siemens has released new versions for the affected products and recommends to update to the latest versions.
Mitigatiesamenvatting
Update to V38.0.235 or later version
Revisiegeschiedenis (1)
Initiële publicatie — 11 augustus 2026
Publication Date
SSA-306654
SSA-306654: Insyde BIOS Vulnerabilities in Siemens Industrial Products
Gepubliceerd
22 februari 2022
Laatste update
11 augustus 2026
Gekoppelde CVE's
Getroffen sectoren
Risk evaluation
Insyde has published information on vulnerabilities in Insyde BIOS in February 2022. This advisory lists the Siemens Industrial products affected by these vulnerabilities. Siemens has released new versions for the affected products and recommends to update to the latest versions.
Mitigatiesamenvatting
As a prerequisite for an attack, an attacker must be able to run untrusted code on affected systems. Siemens recommends limiting the possibilities to run untrusted code
Revisiegeschiedenis (4)
Initiële publicatie — 22 februari 2022
Publication Date
Update A — 8 maart 2022
Corrected AV:L for all CVEs, added RUGGEDCOM APE1808 and SIMATIC IPC477E PRO
Update B — 12 juli 2022
Added CVE-2021-43613, CVE-2021-43614 and CVE-2021-38489, add fix for SIMATIC Field PG M6, SIMATIC ITP1000 for all CVEs except CVE-2021-43613
Update C — 9 augustus 2022
Added fix for SIMATIC IPC227G, SIMATIC IPC277G, SIMATIC IPC327G, SIMATIC IPC377G, clarified affected versions for RUGGEDCOM APE1808
SSA-392349
SSA-392349: Denial of Service Vulnerability in Industrial Devices
Gepubliceerd
12 mei 2026
Laatste update
11 augustus 2026
Gekoppelde CVE's
Getroffen sectoren
Risk evaluation
Multiple industrial devices contain a vulnerability that could allow an attacker to cause a denial of service condition. Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.
Mitigatiesamenvatting
As a mitigation, disable the ethernet ports on the CPU and use a communication module (like CP) for communication instead
Revisiegeschiedenis (3)
Initiële publicatie — 12 mei 2026
Publication Date
Update A — 14 juli 2026
Added fix for SCALANCE SC-600 family
Update B — 11 augustus 2026
Added fix for IE/PB LINK HA
SSA-584312
SSA-584312: File Parsing Vulnerabilities in Simcenter Femap Before V2606 MP1
Gepubliceerd
11 augustus 2026
Laatste update
11 augustus 2026
Gekoppelde CVE's
Getroffen sectoren
Risk evaluation
Simcenter Femap contains two file parsing vulnerabilities that could be triggered when the application reads files in BMP file format. If a user is tricked to open a malicious file with the affected application, this could lead the application to crash or potentially lead to arbitrary code execution. Siemens has released a new version for Simcenter Femap and recommends to update to the latest version.
Mitigatiesamenvatting
Update to V2606.0001 or later version
Revisiegeschiedenis (1)
Initiële publicatie — 11 augustus 2026
Publication Date
SSA-621657
SSA-621657: File Parsing Vulnerabilities in Solid Edge Before Version SE2026 Update 7
Gepubliceerd
11 augustus 2026
Laatste update
11 augustus 2026
Gekoppelde CVE's
Getroffen sectoren
Risk evaluation
Solid Edge is affected by multiple file parsing vulnerabilities that could be triggered when the application reads specially crafted files in PAR, PSM or DFT format. This could allow an attacker to crash the application or execute arbitrary code. Siemens has released new versions for the affected products and recommends to update to the latest versions.
Mitigatiesamenvatting
Update to V225.0 Update 15 or later version
Revisiegeschiedenis (1)
Initiële publicatie — 11 augustus 2026
Publication Date
Gepubliceerd
14 april 2026
Laatste update
11 augustus 2026
Gekoppelde CVE's
Getroffen sectoren
Risk evaluation
The products listed below contain a vulnerability that could allow an attacker to perform an out-of-bound read, potentially leading to information disclosure or denial of service of the TPM. Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends countermeasures for products where fixes are not, or not yet available.
Mitigatiesamenvatting
Currently no fix is planned
Revisiegeschiedenis (2)
Initiële publicatie — 14 april 2026
Publication Date
Update A — 11 augustus 2026
Added no fix planned for SIMATIC ITP1000 and for SIMATIC Field PG M5. Added fix for SIMATIC Field PG M6
SSA-686975
SSA-686975: IPU 2022.3 Vulnerabilities in Siemens Industrial Products using Intel CPUs
Gepubliceerd
14 februari 2023
Laatste update
11 augustus 2026
Gekoppelde CVE's
Getroffen sectoren
Risk evaluation
Intel has published information on vulnerabilities in Intel products in November 2022. This advisory lists the related Siemens Industrial products affected by these vulnerabilities that can be patched by applying the corresponding BIOS update ("2022.3 IPU – BIOS Advisory" Intel-SA-00688). Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.
Mitigatiesamenvatting
As a prerequisite for an attack, an attacker must be able to run untrusted code on affected systems. Siemens recommends limiting the possibilities to run untrusted code if possible.
Revisiegeschiedenis (4)
Initiële publicatie — 14 februari 2023
Publication Date
Update A — 9 mei 2023
Added affected products SIMATIC IPC PX-39A and SIMATIC IPC PX-39A pro
Update B — 11 juli 2023
Added fix for SIMATIC Field PG M5
Update C — 8 augustus 2023
Added fix for SIMATIC IPC BX-39A, SIMATIC IPC PX-39A, and SIMATIC IPC PX-39A pro
SSA-751328
SSA-751328: Recoverable Hardcoded AES Master Key in Siemens LOGO! Soft Comfort
Gepubliceerd
11 augustus 2026
Laatste update
11 augustus 2026
Gekoppelde CVE's
Getroffen sectoren
Risk evaluation
Siemens LOGO! Soft Comfort contains multiple vulnerabilities in its project-file encryption and password handling mechanisms. A local attacker could exploit these vulnerabilities to extract the master key, allowing them to decrypt project data or remove project passwords. The lack of password salting enables offline dictionary or brute-force attacks against the password hashes. Successful exploitation could result in unauthorized access to, or modification of, sensitive project logic and configurations. Siemens has released a new version for LOGO! Soft Comfort and recommends to update to the latest version.
Mitigatiesamenvatting
Update to V9 or later version Note: A hardware upgrade to LOGO! V9 BM or later is also required to avoid compatibility mode, in which the vulnerabilities addressed by this advisory remain present.
Revisiegeschiedenis (1)
Initiële publicatie — 11 augustus 2026
Publication Date
SSA-781903
SSA-781903: Denial of Service Vulnerability in Desigo DXR and PXC Controllers
Gepubliceerd
11 augustus 2026
Laatste update
11 augustus 2026
Gekoppelde CVE's
Getroffen sectoren
Risk evaluation
A vulnerability in Desigo DXR and PXC controllers has been identified that could allow an attacker to cause denial of service conditions by sending malformed BACnet packets. Recovery requires a device reset or reboot to restore normal functionality. Siemens has released new versions for the affected products and recommends to update to the latest versions.
Mitigatiesamenvatting
Update to V01.21.233.16-7862 or later version Please contact your local Siemens office for additional support in obtaining the update.
Revisiegeschiedenis (1)
Initiële publicatie — 11 augustus 2026
Publication Date
SSA-825228
SSA-825228: Potential Remote Code Execution in Siveillance Video Management Servers
Gepubliceerd
11 augustus 2026
Laatste update
11 augustus 2026
Gekoppelde CVE's
Getroffen sectoren
Risk evaluation
Siveillance Video Management Servers contains a vulnerability that could allow a Remote Code Execution attack. Siemens has released new versions for the affected products and recommends to update to the latest versions.
Mitigatiesamenvatting
Update to V23.3 HotfixRev27 or later version
Revisiegeschiedenis (1)
Initiële publicatie — 11 augustus 2026
Publication Date
SSA-827968
SSA-827968: Vulnerability in Nozomi Guardian/CMC Before V26.2.0 on RUGGEDCOM APE1808 Devices
Gepubliceerd
13 januari 2026
Laatste update
11 augustus 2026
Gekoppelde CVE's
Getroffen sectoren
Risk evaluation
Nozomi Networks has published information on vulnerabilities in Nozomi Guardian/CMC. This advisory lists the related Siemens Industrial products affected by these vulnerabilities. Siemens has released a new version for RUGGEDCOM APE1808 and recommends to update to the latest version.
Mitigatiesamenvatting
Upgrade Nozomi Guardian to v26.2.0. Contact customer support to receive patch and update information
Revisiegeschiedenis (4)
Initiële publicatie — 13 januari 2026
Publication Date
Update A — 14 april 2026
Added CVE-2025-40894
Update B — 12 mei 2026
Added CVE-2025-40897 and CVE-2025-40899
Update C — 9 juni 2026
Added CVE-2025-40900, CVE-2025-40901, CVE-2025-40902, CVE--2025-40903 and CVE-2025-40904
SSA-834709
SSA-834709: Missing Authentication Vulnerability in Node-RED on SIMATIC IoT2050 Advanced with Industrial OS
Gepubliceerd
11 augustus 2026
Laatste update
11 augustus 2026
Gekoppelde CVE's
Getroffen sectoren
Risk evaluation
SIMATIC IoT2050 Advanced devices running Industrial OS with Node-RED installed contain a missing authentication vulnerability in the Node-RED HTTP interface that could allow an unauthenticated remote attacker to create malicious flows and execute arbitrary code on the underlying server with maximum privileges. Siemens has released a new version for SIMATIC IoT2050 Advanced and strongly recommends to update to the latest version.
Mitigatiesamenvatting
Harden the Node-RED installation (see Node-RED User Guide)
Revisiegeschiedenis (1)
Initiële publicatie — 11 augustus 2026
Publication Date
SSA-864900
SSA-864900: Multiple Vulnerabilities in Fortigate NGFW on RUGGEDCOM APE1808 Devices
Gepubliceerd
13 mei 2025
Laatste update
11 augustus 2026
Gekoppelde CVE's
Getroffen sectoren
Risk evaluation
Fortinet has published information on vulnerabilities in FortiOS. This advisory lists the related Siemens Industrial products. Siemens has released a new version for RUGGEDCOM APE1808 and recommends to update to the latest version.
Mitigatiesamenvatting
Update Fortigate NGFW to V7.4.9 or later following the secure update recommendation procedure. Contact customer support to receive detailed information
Revisiegeschiedenis (4)
Initiële publicatie — 13 mei 2025
Publication Date
Update A — 8 juli 2025
Added CVE-2025-24471, CVE-2025-22862, CVE-2024-50562 and CVE-2025-25250
Update B — 12 augustus 2025
Added CVE-2024-55599
Update C — 9 september 2025
Added CVE-2025-25248 and CVE-2025-53744
ICSA-26-209-04
Siemens SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP
Siemens — SIMATIC S7-1500 CPU 1518-4 PN/DP MFP (6ES7518-4AX00-1AB0)
Gepubliceerd
14 juli 2026
Laatste update
28 juli 2026
Gekoppelde CVE's
Getroffen sectoren
Risk evaluation
Multiple vulnerabilities have been identified in the additional GNU/Linux subsystem of the firmware version V3.1.6 for the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP (incl. SIPLUS variant). Siemens is preparing fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.
Mitigatiesamenvatting
Limit access to the interactive shell of the additional GNU/Linux subssytem to trusted personnel only.
Revisiegeschiedenis (2)
Initiële publicatie — 14 juli 2026
Publication Date
Update A — 28 juli 2026
Initial CISA Republication of Siemens ProductCERT SSA-019113 advisory
Risk evaluation
SIMATIC S7-PLCSIM Advanced contains a vulnerability that could allow an attacker to cause a denial of service condition. Siemens is preparing fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.
Mitigatiesamenvatting
Disable the S7-PLCSIM Virtual Switch binding on the network adapter used by the affected instance. This prevents the adapter from entering an external communication mode and removes the attack vector entirely. (see SIMATIC S7-PLCSIM Advanced Function Manual V8.0, 11/2025 Section 5.3 and Section 6.1.2.3; and SIMATIC S7-PLCSIM Advanced Function Manual API V8.0, 11/2025 Section 7.2)
Revisiegeschiedenis (2)
Initiële publicatie — 14 juli 2026
Publication Date
Update A — 28 juli 2026
Initial CISA Republication of Siemens ProductCERT SSA-828211 advisory
Risk evaluation
Mendix documentation for access rules does not adequately describe the special behavior of the System.User entity, leaving developers without sufficient guidance to configure access rules securely. This documentation gap may lead application developers to unknowingly apply overly permissive access rules to System.User, resulting in unintended exposure of sensitive user data or privilege escalation within deployed Mendix applications. A common misconfiguration identified is with the anonymous user role with a System.User entity to gain access to all stored records, even though no access rights are explicitly configured on that role. Siemens recommends Mendix developers to review their access rules based on updated documentation.
Mitigatiesamenvatting
Any security model relying solely on XPath constraints on a System.User specialization to restrict access should be revised to enforce restrictions at the App Security role-management configuration level instead.
Revisiegeschiedenis (2)
Initiële publicatie — 14 juli 2026
Publication Date
Update A — 28 juli 2026
Initial CISA Republication of Siemens ProductCERT SSA-814963 advisory
Risk evaluation
OpenSSL has published a stack based buffer overflow vulnerability that allows a remote attacker to cause a denial of service (DoS) or potentially allow for remote code execution. Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends countermeasures for products where fixes are not, or not yet available.
Mitigatiesamenvatting
Currently no fix is available
Revisiegeschiedenis (2)
Initiële publicatie — 14 juli 2026
Publication Date
Update A — 28 juli 2026
Initial CISA Republication of Siemens ProductCERT SSA-734552 advisory
Gepubliceerd
14 juli 2026
Laatste update
21 juli 2026
Gekoppelde CVE's
Getroffen sectoren
Risk evaluation
CADRA is affected by multiple zlib and Foxit vulnerabilities. Siemens has released a new version for CADRA and recommends to update to the latest version. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.
Mitigatiesamenvatting
Update to V2511 or later version
Revisiegeschiedenis (2)
Initiële publicatie — 14 juli 2026
Publication Date
Update A — 21 juli 2026
Initial CISA Republication of Siemens ProductCERT SSA-470355 advisory
Risk evaluation
Multiple Siemens products are affected by unquoted search path vulnerability in IAM Client. This could allow an authenticated local attacker to perform privilege escalation. Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends countermeasures for products where fixes are not, or not yet available.
Mitigatiesamenvatting
Update to V10.6.1 or later version
Revisiegeschiedenis (2)
Initiële publicatie — 14 juli 2026
Publication Date
Update A — 21 juli 2026
Initial CISA Republication of Siemens ProductCERT SSA-288252 advisory
Gepubliceerd
14 juli 2026
Laatste update
21 juli 2026
Gekoppelde CVE's
Getroffen sectoren
Risk evaluation
SIDIS Secured SmartPlug before V7.26.0310 is affected by multiple vulnerabilities in the components OpenSSL, OpenSSH, and several other packages as described below. Siemens has released a new version of SIDIS Secured SmartPlug and recommends to update to the latest version.
Mitigatiesamenvatting
Update to V7.26.0310 or later version
Revisiegeschiedenis (2)
Initiële publicatie — 14 juli 2026
Publication Date
Update A — 21 juli 2026
Initial CISA Republication of Siemens ProductCERT SSA-585531 advisory
Risk evaluation
Opcenter X before V2604 contain an authentication bypass vulnerability that could allow an attacker to gain full unauthorized access to the application. Siemens has released a new version for Opcenter X and recommends to update to the latest version.
Mitigatiesamenvatting
Update to V2604 or later version
Revisiegeschiedenis (2)
Initiële publicatie — 14 juli 2026
Publication Date
Update A — 21 juli 2026
Initial CISA Republication of Siemens ProductCERT SSA-096828 advisory
ICSA-26-202-02
Siemens RUGGEDCOM APE1808 with Palo Alto Networks Virtual NGFW
Gepubliceerd
14 juli 2026
Laatste update
21 juli 2026
Gekoppelde CVE's
Getroffen sectoren
Risk evaluation
Palo Alto Networks has published [1] information on vulnerabilities in PAN-OS. This advisory lists the related Siemens Industrial products affected by these vulnerabilities. Customers are advised to consult and implement the workarounds provided in Palo Alto Networks' upstream security notifications. [1] https://security.paloaltonetworks.com/
Mitigatiesamenvatting
Contact customer support to receive patch and update information
Revisiegeschiedenis (2)
Initiële publicatie — 14 juli 2026
Publication Date
Update A — 21 juli 2026
Initial CISA Republication of Siemens ProductCERT SSA-104023 advisory
SSA-082556
SSA-082556: Vulnerabilities in the additional GNU/Linux subsystem of the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP V3.1.5
Siemens — SIMATIC S7-1500 CPU 1518-4 PN/DP MFP (6ES7518-4AX00-1AB0)
Gepubliceerd
10 juni 2025
Laatste update
14 juli 2026
Gekoppelde CVE's
Getroffen sectoren
Risk evaluation
Multiple vulnerabilities have been identified in the additional GNU/Linux subsystem of the firmware version V3.1.5 for the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP (incl. SIPLUS variant). Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available. Note: This SSA advises vulnerabilities for firmware version V3.1.5 only; for version V3.1.6 refer to SSA-019113.
Mitigatiesamenvatting
Limit access to the interactive shell of the additional GNU/Linux subssytem to trusted personnel only.
Revisiegeschiedenis (4)
Initiële publicatie — 10 juni 2025
Publication Date
Update A — 12 augustus 2025
Added CVE-2025-6395, CVE-2025-32988, CVE-2025-32989, CVE-2025-32990
Update B — 13 januari 2026
Added CVE-2025-66382, CVE-2025-39929, CVE-2025-39931, CVE-2025-39977, CVE-2025-40022, CVE-2025-11082, CVE-2025-11083, CVE-2025-11412, CVE-2025-11413, CVE-2025-11414, CVE-2025-11494, CVE-2025-11495, CVE-2025-11839, CVE-2025-11840, CVE-2025-9230, CVE-2025-9232, CVE-2025-3198, CVE-2025-5244, CVE-2025-5245, CVE-2025-7545, CVE-2025-7546, CVE-2025-8224, CVE-2025-7425, CVE-2025-59375
Update C — 10 februari 2026
Added 22 CVEs
SSA-096828
SSA-096828: Token Invalidation Vulnerability in Opcenter X Before V2604
Risk evaluation
Opcenter X before V2604 contain an authentication bypass vulnerability that could allow an attacker to gain full unauthorized access to the application. Siemens has released a new version for Opcenter X and recommends to update to the latest version.
Mitigatiesamenvatting
Update to V2604 or later version
Revisiegeschiedenis (1)
Initiële publicatie — 14 juli 2026
Publication Date
Risk evaluation
Multiple Siemens products are affected by unquoted search path vulnerability in IAM Client. This could allow an authenticated local attacker to perform privilege escalation. Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends countermeasures for products where fixes are not, or not yet available.
Mitigatiesamenvatting
Update to V10.6.1 or later version
Revisiegeschiedenis (1)
Initiële publicatie — 14 juli 2026
Publication Date
Gepubliceerd
14 juli 2026
Laatste update
14 juli 2026
Gekoppelde CVE's
Getroffen sectoren
Risk evaluation
CADRA is affected by multiple zlib and Foxit vulnerabilities. Siemens has released a new version for CADRA and recommends to update to the latest version. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.
Mitigatiesamenvatting
Update to V2511 or later version
Revisiegeschiedenis (1)
Initiële publicatie — 14 juli 2026
Publication Date
SSA-555707
SSA-555707: Information Disclosure Vulnerability in Simcenter STAR-CCM+
Gepubliceerd
9 augustus 2022
Laatste update
14 juli 2026
Gekoppelde CVE's
Getroffen sectoren
Risk evaluation
Simcenter STAR-CCM+ contains an information disclosure vulnerability when using the Power-on-Demand public license server. An attacker could access a system's host, user, and display name. Siemens has updated the public Power-on-Demand public license server.
Mitigatiesamenvatting
Avoid using sensitive or personal data in user, host and display names
Revisiegeschiedenis (2)
Initiële publicatie — 9 augustus 2022
Publication Date
Update A — 14 juli 2026
Added fix for Simcenter STAR-CCM+