<feed xmlns="http://www.w3.org/2005/Atom">
  <id>https://cert-portal.siemens.com/productcert/rss/advisories.atom</id>
  <title>Siemens ProductCERT Security Advisories</title>
  <updated>2026-09-22T00:00:00+00:00</updated>
  <author>
    <name>Siemens ProductCERT</name>
    <email>productcert@siemens.com</email>
  </author>
  <link href="https://cert-portal.siemens.com/productcert/rss/advisories.atom" rel="self"/>
  <generator>Siemens ProductCERT</generator>
  <subtitle>Siemens Security Advisories</subtitle>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-814963.html</id>
    <title>SSA-814963 V1.1 (Last Update: 2026-09-22): Insecure Inherited Permission in Mendix (Revoked)</title>
    <updated>2026-09-22T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-814963.html" rel="alternate"/>
    <summary>&lt;p&gt;This advisory is revoked. Re-investigation confirmed the reported
behavior is expected platform configuration and does not expose the
protected attribute.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-823812.html</id>
    <title>SSA-823812 V1.0: Denial of Service Vulnerability in WTV676 and WTV776 devices</title>
    <updated>2026-09-16T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-823812.html" rel="alternate"/>
    <summary>&lt;p&gt;The products listed below contain a denial of service vulnerability
that could allow an attacker to force the devices into protection mode
under certain conditions. This disables remote connectivity functions
(Web Access) to the devices.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and
recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-517424.html</id>
    <title>SSA-517424 V1.0: Path Traversal Vulnerability in SIMOVE Fleetmanager and SIPLANT</title>
    <updated>2026-09-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-517424.html" rel="alternate"/>
    <summary>&lt;p&gt;SIMOVE Fleetmanager and SIPLANT contain a path traversal
vulnerability that could allow an attacker to access files outside of
intended scope.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and
recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-503852.html</id>
    <title>SSA-503852 V1.0: Authentication Bypass Vulnerability in Industrial Edge Management</title>
    <updated>2026-09-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-503852.html" rel="alternate"/>
    <summary>&lt;p&gt;Industrial Edge Management contains an authentication bypass
vulnerability that could allow an unauthenticated remote attacker to
perform full account takeover by resetting user credentials without
completing email verification.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and
recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-434797.html</id>
    <title>SSA-434797 V1.3 (Last Update: 2026-09-08): Buffer Overflow Vulnerability in OpenSSL affecting Siemens Products</title>
    <updated>2026-09-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-434797.html" rel="alternate"/>
    <summary>&lt;p&gt;OpenSSL has published a stack based buffer overflow vulnerability
that allows a remote attacker to cause a denial of service (DoS) or
potentially allow for remote code execution.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and
recommends to update to the latest versions. Siemens is preparing
further fix versions and recommends specific countermeasures for
products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-331739.html</id>
    <title>SSA-331739 V1.2 (Last Update: 2026-09-08): Privilege Escalation Vulnerability in WIBU CodeMeter Runtime Affecting Siemens Products</title>
    <updated>2026-09-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-331739.html" rel="alternate"/>
    <summary>&lt;p&gt;WIBU Systems published information about a privilege escalation
vulnerability under a certain circumstances and associated fix releases
of CodeMeter Runtime, a product provided by WIBU Systems and used in
several Siemens industrial products.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and
recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-330084.html</id>
    <title>SSA-330084 V1.0: Client Code Execution Vulnerability in Desigo CC Product Family</title>
    <updated>2026-09-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-330084.html" rel="alternate"/>
    <summary>&lt;p&gt;A Client Code Execution (CCE) vulnerability has been identified in
Desigo CC, potentially allowing malicious actors to execute arbitrary
code on client devices through specially crafted graphics documents.
This vulnerability leverages user-defined graphics containing embedded
scripts that are executed on client application instances. Successful
exploitation could lead to compromise of the client operating system and
potential lateral movement within the organization.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-328642.html</id>
    <title>SSA-328642 V1.0: "Copy Fail" Vulnerability in Multiple Industrial Products</title>
    <updated>2026-09-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-328642.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple Siemens products are vulnerable to the &#8220;Copy Fail&#8221;
vulnerability.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and
recommends to update to the latest versions. Siemens is preparing
further fix versions and recommends specific countermeasures for
products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-327438.html</id>
    <title>SSA-327438 V1.2 (Last Update: 2026-09-08): Multiple Vulnerabilities in SCALANCE LPE9403</title>
    <updated>2026-09-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-327438.html" rel="alternate"/>
    <summary>&lt;p&gt;SCALANCE LPE9403 is affected by multiple vulnerabilities which lead
to a compromise in availability, integrity and confidentiality.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for SCALANCE LPE9403 and
recommends to update to the latest version. Siemens recommends specific
countermeasures for products where fixes are not, or not yet
available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-282044.html</id>
    <title>SSA-282044 V1.9 (Last Update: 2026-09-08): DLL Hijacking Vulnerability in Siemens Web Installer used by the Online Software Delivery</title>
    <updated>2026-09-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-282044.html" rel="alternate"/>
    <summary>&lt;p&gt;The installers used to install several Siemens products are affected
by a DLL hijacking vulnerability. This could allow an attacker to
execute arbitrary code when a legitimate user installs an application
that uses the affected installer component. This vulnerability poses a
risk only during setup and installation phase of the affected
applications downloaded e.g.&#160;via OSD (Online Software Delivery).&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and
recommends using the latest versions during setup and installation.
Siemens is preparing further fix versions and recommends specific
countermeasures for products where fixes are not, or not yet
available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-254516.html</id>
    <title>SSA-254516 V1.0: Arbitrary File Upload in OIS Web Module</title>
    <updated>2026-09-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-254516.html" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability has been identified in the Open Interface Services
(OIS) web module affecting Siveillance Control and Siveillance Control
Pro (versions OIS 3.x.y and OIS 4.x.y) . This vulnerability allows an
attacker to upload arbitrary files, which can lead to unauthorized
root-level access on the OIS server.&lt;/p&gt;
&lt;p&gt;Siemens has released patches and updates for Siveillance OIS to apply
to the products that incorporate the OIS service, and recommends to
update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-229470.html</id>
    <title>SSA-229470 V1.1 (Last Update: 2026-09-08): Multiple Vulnerabilities in SICAM 8 Products Before V26.20</title>
    <updated>2026-09-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-229470.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple SICAM 8 products are affected by multiple vulnerabilities
that could lead to denial of service, namely:&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;SICAM A8000 Device firmware
&lt;ul&gt;
&lt;li&gt;CPCI85 for CP-8031/CP-8050&lt;/li&gt;
&lt;li&gt;SICORE for CP-8010/CP-8012&lt;/li&gt;
&lt;/ul&gt;&lt;/li&gt;
&lt;li&gt;SICAM EGS Device firmware
&lt;ul&gt;
&lt;li&gt;CPCI85&lt;/li&gt;
&lt;/ul&gt;&lt;/li&gt;
&lt;li&gt;SICAM S8000
&lt;ul&gt;
&lt;li&gt;SICORE&lt;/li&gt;
&lt;/ul&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;Siemens has released new versions for the affected products and
recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-216014.html</id>
    <title>SSA-216014 V1.6 (Last Update: 2026-09-08): Vulnerabilities in EFI variable of SIMATIC IPCs, SIMATIC Tablet PCs, and SIMATIC Field PGs</title>
    <updated>2026-09-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-216014.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities has been identified in Siemens SIMATIC IPCs,
SIMATIC Tablet PCs, and SIMATIC Field PGs that can allow an
authenticated attacker to alter the secure boot and password
configurations.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions of BIOS for several affected
products and recommends to update to the latest versions. Siemens is
preparing further fix versions and recommends specific countermeasures
for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-157465.html</id>
    <title>SSA-157465 V1.0: Reflected Cross-site scripting Vulnerability in Teamcenter</title>
    <updated>2026-09-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-157465.html" rel="alternate"/>
    <summary>&lt;p&gt;A reflected cross site scripting vulnerability in the authentication
redirect flow (/auth/) of Teamcenter allows an unauthenticated remote
attacker to inject JavaScript into an authenticated user&#8217;s session by
crafting a malicious URL. Successful exploitation may enable the
attacker to read data or perform actions within the victim&#8217;s Teamcenter
session.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and
recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-142885.html</id>
    <title>SSA-142885 V1.0: Multiple Vulnerabilities in Reyrolle 7SR5 Before V2.70</title>
    <updated>2026-09-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-142885.html" rel="alternate"/>
    <summary>&lt;p&gt;Siemens Reyrolle 7SR5 Before V2.70 is affected by multiple
vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for Reyrolle 7SR5 and recommends
to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-019113.html</id>
    <title>SSA-019113 V1.1 (Last Update: 2026-09-08): Vulnerabilities in the additional GNU/Linux subsystem of the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP V3.1.6</title>
    <updated>2026-09-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-019113.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities have been identified in the additional
GNU/Linux subsystem of the firmware version V3.1.6 for the SIMATIC
S7-1500 CPU 1518(F)-4 PN/DP MFP (incl.&#160;SIPLUS variant).&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and
recommends to update to the latest versions. Siemens is preparing
further fix versions and recommends specific countermeasures for
products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-887643.html</id>
    <title>SSA-887643 V1.0: Account Hijacking Vulnerability in Mendix SAML module</title>
    <updated>2026-09-03T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-887643.html" rel="alternate"/>
    <summary>&lt;p&gt;Mendix SAML module contains a vulnerability that could allow
unauthenticated remote attackers to hijack an account in specific SSO
configurations.&lt;/p&gt;
&lt;p&gt;Mendix has provided fix releases for the Mendix SAML module and
recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-682041.html</id>
    <title>SSA-682041 V1.0: Cross Site Scripting Vulnerability in Element Maps</title>
    <updated>2026-08-27T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-682041.html" rel="alternate"/>
    <summary>&lt;p&gt;The si-map component does not properly neutralize user-controllable
input of the points property that is used to render the tooltip label of
map pins. This could allow an attacker to craft a malicious URL that,
when loaded by a victim and the map pin is hovered over, executes
arbitrary script code within the victim&#8217;s browser session. This
vulnerability affects only the &lt;span class="citation"
data-cites="siemens/maps-ng"&gt;@siemens/maps-ng&lt;/span&gt; package.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and
recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssb-104599.html</id>
    <title>SSB-104599 V1.3 (Last Update: 2026-08-21): Increasing Cyber Threats to Industrial Control Systems</title>
    <updated>2026-08-21T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssb-104599.html" rel="alternate"/>
    <summary>
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-069220.html</id>
    <title>SSA-069220 V1.1 (Last Update: 2026-08-13): Stack Overflow Vulnerability in Simcenter Nastran Before V2606</title>
    <updated>2026-08-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-069220.html" rel="alternate"/>
    <summary>&lt;p&gt;Simcenter Nastran is affected by a stack overflow vulnerability that
could be triggered when an application binary reads arbitrary string as
a file argument. If a user is tricked to run one of the impacted
application binary with a malicious string, an attacker could leverage
the vulnerability to perform remote code execution in the context of the
current process.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and
recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-864900.html</id>
    <title>SSA-864900 V2.0 (Last Update: 2026-08-11): Multiple Vulnerabilities in Fortigate NGFW on RUGGEDCOM APE1808 Devices</title>
    <updated>2026-08-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-864900.html" rel="alternate"/>
    <summary>&lt;p&gt;&lt;a href="https://www.fortiguard.com/psirt"&gt;Fortinet has published&lt;/a&gt;
information on vulnerabilities in FortiOS. This advisory lists the
related Siemens Industrial products.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for RUGGEDCOM APE1808 and
recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-834709.html</id>
    <title>SSA-834709 V1.0: Missing Authentication Vulnerability in Node-RED on SIMATIC IoT2050 Advanced with Industrial OS</title>
    <updated>2026-08-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-834709.html" rel="alternate"/>
    <summary>&lt;p&gt;SIMATIC IoT2050 Advanced devices running Industrial OS with Node-RED
installed contain a missing authentication vulnerability in the Node-RED
HTTP interface that could allow an unauthenticated remote attacker to
create malicious flows and execute arbitrary code on the underlying
server with maximum privileges.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for SIMATIC IoT2050 Advanced and
strongly recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-827968.html</id>
    <title>SSA-827968 V1.4 (Last Update: 2026-08-11): Vulnerability in Nozomi Guardian/CMC Before  V26.2.0 on RUGGEDCOM APE1808 Devices</title>
    <updated>2026-08-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-827968.html" rel="alternate"/>
    <summary>&lt;p&gt;Nozomi Networks has published information on vulnerabilities in &lt;a
href="https://security.nozominetworks.com/"&gt;Nozomi Guardian/CMC&lt;/a&gt;.
This advisory lists the related Siemens Industrial products affected by
these vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for RUGGEDCOM APE1808 and
recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-825228.html</id>
    <title>SSA-825228 V1.0: Potential Remote Code Execution in Siveillance Video Management Servers</title>
    <updated>2026-08-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-825228.html" rel="alternate"/>
    <summary>&lt;p&gt;Siveillance Video Management Servers contains a vulnerability that
could allow a Remote Code Execution attack.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and
recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-781903.html</id>
    <title>SSA-781903 V1.0: Denial of Service Vulnerability in Desigo DXR and PXC Controllers</title>
    <updated>2026-08-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-781903.html" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in Desigo DXR and PXC controllers has been identified
that could allow an attacker to cause denial of service conditions by
sending malformed BACnet packets. Recovery requires a device reset or
reboot to restore normal functionality.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and
recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-751328.html</id>
    <title>SSA-751328 V1.0: Recoverable Hardcoded AES Master Key in Siemens LOGO! Soft Comfort</title>
    <updated>2026-08-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-751328.html" rel="alternate"/>
    <summary>&lt;p&gt;Siemens LOGO! Soft Comfort contains multiple vulnerabilities in its
project-file encryption and password handling mechanisms. A local
attacker could exploit these vulnerabilities to extract the master key,
allowing them to decrypt project data or remove project passwords. The
lack of password salting enables offline dictionary or brute-force
attacks against the password hashes. Successful exploitation could
result in unauthorized access to, or modification of, sensitive project
logic and configurations.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for LOGO! Soft Comfort and
recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-686975.html</id>
    <title>SSA-686975 V1.7 (Last Update: 2026-08-11): IPU 2022.3 Vulnerabilities in Siemens Industrial Products using Intel CPUs</title>
    <updated>2026-08-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-686975.html" rel="alternate"/>
    <summary>&lt;p&gt;Intel has published information on vulnerabilities in Intel products
in November 2022. This advisory lists the related Siemens Industrial
products affected by these vulnerabilities that can be patched by
applying the corresponding BIOS update (&#8220;2022.3 IPU &#8211; BIOS Advisory&#8221; &lt;a
href="https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00688.html"&gt;Intel-SA-00688&lt;/a&gt;).&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and
recommends to update to the latest versions. Siemens is preparing
further fix versions and recommends specific countermeasures for
products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-628843.html</id>
    <title>SSA-628843 V1.1 (Last Update: 2026-08-11): Out of Bound Read Vulnerability in TPM 2.0</title>
    <updated>2026-08-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-628843.html" rel="alternate"/>
    <summary>&lt;p&gt;The products listed below contain a vulnerability that could allow an
attacker to perform an out-of-bound read, potentially leading to
information disclosure or denial of service of the TPM.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and
recommends to update to the latest versions. Siemens is preparing
further fix versions and recommends countermeasures for products where
fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-621657.html</id>
    <title>SSA-621657 V1.0: File Parsing Vulnerabilities in Solid Edge Before Version SE2026 Update 7</title>
    <updated>2026-08-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-621657.html" rel="alternate"/>
    <summary>&lt;p&gt;Solid Edge is affected by multiple file parsing vulnerabilities that
could be triggered when the application reads specially crafted files in
PAR, PSM or DFT format. This could allow an attacker to crash the
application or execute arbitrary code.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and
recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-584312.html</id>
    <title>SSA-584312 V1.0: File Parsing Vulnerabilities in Simcenter Femap Before V2606 MP1</title>
    <updated>2026-08-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-584312.html" rel="alternate"/>
    <summary>&lt;p&gt;Simcenter Femap contains two file parsing vulnerabilities that could
be triggered when the application reads files in BMP file format. If a
user is tricked to open a malicious file with the affected application,
this could lead the application to crash or potentially lead to
arbitrary code execution.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for Simcenter Femap and recommends
to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-434797.html</id>
    <title>SSA-434797 V1.2 (Last Update: 2026-08-11): Buffer Overflow Vulnerability in OpenSSL affecting Siemens Products</title>
    <updated>2026-08-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-434797.html" rel="alternate"/>
    <summary>&lt;p&gt;OpenSSL has published a stack based buffer overflow vulnerability
that allows a remote attacker to cause a denial of service (DoS) or
potentially allow for remote code execution.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and
recommends to update to the latest versions. Siemens is preparing
further fix versions and recommends specific countermeasures for
products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-392349.html</id>
    <title>SSA-392349 V1.2 (Last Update: 2026-08-11): Denial of Service Vulnerability in Industrial Devices</title>
    <updated>2026-08-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-392349.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple industrial devices contain a vulnerability that could allow
an attacker to cause a denial of service condition.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and
recommends to update to the latest versions. Siemens is preparing
further fix versions and recommends specific countermeasures for
products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-306654.html</id>
    <title>SSA-306654 V2.0 (Last Update: 2026-08-11): Insyde BIOS Vulnerabilities in Siemens Industrial Products</title>
    <updated>2026-08-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-306654.html" rel="alternate"/>
    <summary>&lt;p&gt;Insyde has published information on vulnerabilities in Insyde BIOS in
&lt;a href="https://www.insyde.com/security-pledge"&gt;February 2022&lt;/a&gt;. This
advisory lists the Siemens Industrial products affected by these
vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and
recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-282044.html</id>
    <title>SSA-282044 V1.8 (Last Update: 2026-08-11): DLL Hijacking Vulnerability in Siemens Web Installer used by the Online Software Delivery</title>
    <updated>2026-08-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-282044.html" rel="alternate"/>
    <summary>&lt;p&gt;The installers used to install several Siemens products are affected
by a DLL hijacking vulnerability. This could allow an attacker to
execute arbitrary code when a legitimate user installs an application
that uses the affected installer component. This vulnerability poses a
risk only during setup and installation phase of the affected
applications downloaded e.g.&#160;via OSD (Online Software Delivery).&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and
recommends using the latest versions during setup and installation.
Siemens is preparing further fix versions and recommends specific
countermeasures for products where fixes are not, or not yet
available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-138516.html</id>
    <title>SSA-138516 V1.0: Out of Bounds Read Vulnerability in Parasolid X_T File Parsing</title>
    <updated>2026-08-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-138516.html" rel="alternate"/>
    <summary>&lt;p&gt;Parasolid is affected by an out of bounds read vulnerability that
could be triggered when the application reads files in X_T format. This
could allow an attacker to crash the application or execute arbitrary
code.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and
recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-127084.html</id>
    <title>SSA-127084 V1.0: Multiple Vulnerabilities in Fortigate NGFW on RUGGEDCOM APE1808 Devices</title>
    <updated>2026-08-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-127084.html" rel="alternate"/>
    <summary>&lt;p&gt;&lt;a href="https://www.fortiguard.com/psirt"&gt;Fortinet has published&lt;/a&gt;
information on vulnerabilities in FortiOS. This advisory lists the
related Siemens Industrial products.&lt;/p&gt;
&lt;p&gt;Siemens recommends to contact customer support for additional
information, and follow Fortinet advisory for workarounds and mitigation
measures.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-104023.html</id>
    <title>SSA-104023 V1.1 (Last Update: 2026-08-11): Multiple Vulnerabilities in Palo Alto Networks PAN-OS on RUGGEDCOM APE1808 Devices</title>
    <updated>2026-08-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-104023.html" rel="alternate"/>
    <summary>&lt;p&gt;Palo Alto Networks has published [1] information on vulnerabilities
in PAN-OS. This advisory lists the related Siemens Industrial products
affected by these vulnerabilities.&lt;/p&gt;
&lt;p&gt;Customers are advised to consult and implement the workarounds
provided in Palo Alto Networks&#8217; upstream security notifications.&lt;/p&gt;
&lt;p&gt;[1] https://security.paloaltonetworks.com/&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-077553.html</id>
    <title>SSA-077553 V1.0: Multiple Vulnerabilities in Siemens License Server (SLS)</title>
    <updated>2026-08-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-077553.html" rel="alternate"/>
    <summary>&lt;p&gt;Siemens License Server is affected by multiple vulnerabilities which
could allow an attacker to elevate its privileges and read arbitrary
files on the system.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for Siemens License Server (SLS)
and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-069220.html</id>
    <title>SSA-069220 V1.0: Stack Overflow Vulnerability in Simcenter Nastran Before V2606</title>
    <updated>2026-08-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-069220.html" rel="alternate"/>
    <summary>&lt;p&gt;Simcenter Nastran is affected by a stack overflow vulnerability that
could be triggered when an application binary reads arbitrary string as
a file argument. If a user is tricked to run one of the impacted
application binary with a malicious string, an attacker could leverage
the vulnerability to perform remote code execution in the context of the
current process.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for Simcenter Nastran and
recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssb-104599.html</id>
    <title>SSB-104599 V1.2 (Last Update: 2026-07-23): Increasing Cyber Threats to Industrial Control Systems</title>
    <updated>2026-07-23T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssb-104599.html" rel="alternate"/>
    <summary>
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-967325.html</id>
    <title>SSA-967325 V1.2 (Last Update: 2026-07-14): Multiple Vulnerabilities in Palo Alto Networks PAN-OS on RUGGEDCOM APE1808 Devices</title>
    <updated>2026-07-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-967325.html" rel="alternate"/>
    <summary>&lt;p&gt;Palo Alto Networks has published [1] information on vulnerabilities
in PAN-OS. This advisory lists the related Siemens Industrial products
affected by these vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for RUGGEDCOM APE1808 and
recommends to update to the latest version. Customers are advised to
consult and implement the workarounds provided in Palo Alto Networks&#8217;
upstream security notifications.&lt;/p&gt;
&lt;p&gt;[1] https://security.paloaltonetworks.com/&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-864900.html</id>
    <title>SSA-864900 V1.9 (Last Update: 2026-07-14): Multiple Vulnerabilities in Fortigate NGFW on RUGGEDCOM APE1808 Devices</title>
    <updated>2026-07-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-864900.html" rel="alternate"/>
    <summary>&lt;p&gt;&lt;a href="https://www.fortiguard.com/psirt"&gt;Fortinet has published&lt;/a&gt;
information on vulnerabilities in FortiOS. This advisory lists the
related Siemens Industrial products.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for RUGGEDCOM APE1808 and
recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-828211.html</id>
    <title>SSA-828211 V1.0: Denial of Service Vulnerability in SIMATIC S7-PLCSIM Advanced</title>
    <updated>2026-07-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-828211.html" rel="alternate"/>
    <summary>&lt;p&gt;SIMATIC S7-PLCSIM Advanced contains a vulnerability that could allow
an attacker to cause a denial of service condition.&lt;/p&gt;
&lt;p&gt;Siemens is preparing fix versions and recommends specific
countermeasures for products where fixes are not, or not yet
available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-814963.html</id>
    <title>SSA-814963 V1.0: Insecure Inherited Permission in Mendix</title>
    <updated>2026-07-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-814963.html" rel="alternate"/>
    <summary>&lt;p&gt;Mendix documentation for access rules does not adequately describe
the special behavior of the System.User entity, leaving developers
without sufficient guidance to configure access rules securely. This
documentation gap may lead application developers to unknowingly apply
overly permissive access rules to System.User, resulting in unintended
exposure of sensitive user data or privilege escalation within deployed
Mendix applications.&lt;/p&gt;
&lt;p&gt;A common misconfiguration identified is with the anonymous user role
with a System.User entity to gain access to all stored records, even
though no access rights are explicitly configured on that role.&lt;/p&gt;
&lt;p&gt;Siemens recommends Mendix developers to review their access rules
based on &lt;a
href="https://docs.mendix.com/refguide/access-rules/"&gt;updated
documentation&lt;/a&gt;.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-734552.html</id>
    <title>SSA-734552 V1.0: Buffer Overflow Vulnerability in OpenSSL Affecting Desigo CC</title>
    <updated>2026-07-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-734552.html" rel="alternate"/>
    <summary>&lt;p&gt;OpenSSL has published a stack based buffer overflow vulnerability
that allows a remote attacker to cause a denial of service (DoS) or
potentially allow for remote code execution.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and
recommends to update to the latest versions. Siemens is preparing
further fix versions and recommends countermeasures for products where
fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-688146.html</id>
    <title>SSA-688146 V1.1 (Last Update: 2026-07-14): Multiple Cross-Site Scripting Vulnerabilities in SIMATIC S7 PLCs Web Server</title>
    <updated>2026-07-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-688146.html" rel="alternate"/>
    <summary>&lt;p&gt;SIMATIC S7 PLCs contain multiple vulnerabilities in the web server
that could allow an attacker to perform cross-site scripting
attacks.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and
recommends to update to the latest versions. Siemens is preparing
further fix versions and recommends specific countermeasures for
products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-585531.html</id>
    <title>SSA-585531 V1.0: Multiple Vulnerabilities in SIDIS Secured SmartPlug before V7.26.0310</title>
    <updated>2026-07-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-585531.html" rel="alternate"/>
    <summary>&lt;p&gt;SIDIS Secured SmartPlug before V7.26.0310 is affected by multiple
vulnerabilities in the components OpenSSL, OpenSSH, and several other
packages as described below.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version of SIDIS Secured SmartPlug and
recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-555707.html</id>
    <title>SSA-555707 V1.1 (Last Update: 2026-07-14): Information Disclosure Vulnerability in Simcenter STAR-CCM+</title>
    <updated>2026-07-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-555707.html" rel="alternate"/>
    <summary>&lt;p&gt;Simcenter STAR-CCM+ contains an information disclosure vulnerability
when using the Power-on-Demand public license server. An attacker could
access a system&#8217;s host, user, and display name.&lt;/p&gt;
&lt;p&gt;Siemens has updated the public Power-on-Demand public license
server.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-470355.html</id>
    <title>SSA-470355 V1.0: Zlib and Foxit Vulnerabilities in CADRA</title>
    <updated>2026-07-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-470355.html" rel="alternate"/>
    <summary>&lt;p&gt;CADRA is affected by multiple zlib and Foxit vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for CADRA and recommends to update
to the latest version. Siemens is preparing further fix versions and
recommends specific countermeasures for products where fixes are not, or
not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-434797.html</id>
    <title>SSA-434797 V1.1 (Last Update: 2026-07-14): Buffer Overflow Vulnerability in OpenSSL affecting Siemens Products</title>
    <updated>2026-07-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-434797.html" rel="alternate"/>
    <summary>&lt;p&gt;OpenSSL has published a stack based buffer overflow vulnerability
that allows a remote attacker to cause a denial of service (DoS) or
potentially allow for remote code execution.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and
recommends to update to the latest versions. Siemens is preparing
further fix versions and recommends specific countermeasures for
products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-392349.html</id>
    <title>SSA-392349 V1.1 (Last Update: 2026-07-14): Denial of Service Vulnerability in Industrial Devices</title>
    <updated>2026-07-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-392349.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple industrial devices contain a vulnerability that could allow
an attacker to cause a denial of service condition.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and
recommends to update to the latest versions. Siemens is preparing
further fix versions and recommends specific countermeasures for
products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-288252.html</id>
    <title>SSA-288252 V1.0: Unquoted Search Path Vulnerability in IAM Client</title>
    <updated>2026-07-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-288252.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple Siemens products are affected by unquoted search path
vulnerability in IAM Client. This could allow an authenticated local
attacker to perform privilege escalation.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and
recommends to update to the latest versions. Siemens is preparing
further fix versions and recommends countermeasures for products where
fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-104023.html</id>
    <title>SSA-104023 V1.0: Multiple Vulnerabilities in Palo Alto Networks PAN-OS on RUGGEDCOM APE1808 Devices</title>
    <updated>2026-07-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-104023.html" rel="alternate"/>
    <summary>&lt;p&gt;Palo Alto Networks has published [1] information on vulnerabilities
in PAN-OS. This advisory lists the related Siemens Industrial products
affected by these vulnerabilities.&lt;/p&gt;
&lt;p&gt;Customers are advised to consult and implement the workarounds
provided in Palo Alto Networks&#8217; upstream security notifications.&lt;/p&gt;
&lt;p&gt;[1] https://security.paloaltonetworks.com/&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-096828.html</id>
    <title>SSA-096828 V1.0: Token Invalidation Vulnerability in Opcenter X Before V2604</title>
    <updated>2026-07-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-096828.html" rel="alternate"/>
    <summary>&lt;p&gt;Opcenter X before V2604 contain an authentication bypass
vulnerability that could allow an attacker to gain full unauthorized
access to the application.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for Opcenter X and recommends to
update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-082556.html</id>
    <title>SSA-082556 V1.6 (Last Update: 2026-07-14): Vulnerabilities in the additional GNU/Linux subsystem of the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP V3.1.5</title>
    <updated>2026-07-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-082556.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities have been identified in the additional
GNU/Linux subsystem of the firmware version V3.1.5 for the SIMATIC
S7-1500 CPU 1518(F)-4 PN/DP MFP (incl.&#160;SIPLUS variant).&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and
recommends to update to the latest versions. Siemens is preparing
further fix versions and recommends specific countermeasures for
products where fixes are not, or not yet available.&lt;/p&gt;
&lt;p&gt;Note: This SSA advises vulnerabilities for firmware version V3.1.5
only; for version V3.1.6 refer to &lt;a
href="https://cert-portal.siemens.com/productcert/html/ssa-019113.html"&gt;SSA-019113&lt;/a&gt;.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-019113.html</id>
    <title>SSA-019113 V1.0: Vulnerabilities in the additional GNU/Linux subsystem of the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP V3.1.6</title>
    <updated>2026-07-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-019113.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities have been identified in the additional
GNU/Linux subsystem of the firmware version V3.1.6 for the SIMATIC
S7-1500 CPU 1518(F)-4 PN/DP MFP (incl.&#160;SIPLUS variant).&lt;/p&gt;
&lt;p&gt;Siemens is preparing fix versions and recommends specific
countermeasures for products where fixes are not, or not yet
available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-229470.html</id>
    <title>SSA-229470 V1.0: Multiple Vulnerabilities in SICAM 8 Products Before V26.20</title>
    <updated>2026-07-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-229470.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple SICAM 8 products are affected by multiple vulnerabilities
that could lead to denial of service, namely:&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;SICAM A8000 Device firmware
&lt;ul&gt;
&lt;li&gt;CPCI85 for CP-8031/CP-8050&lt;/li&gt;
&lt;li&gt;SICORE for CP-8010/CP-8012&lt;/li&gt;
&lt;/ul&gt;&lt;/li&gt;
&lt;li&gt;SICAM EGS Device firmware
&lt;ul&gt;
&lt;li&gt;CPCI85&lt;/li&gt;
&lt;/ul&gt;&lt;/li&gt;
&lt;li&gt;SICAM S8000
&lt;ul&gt;
&lt;li&gt;SICORE&lt;/li&gt;
&lt;/ul&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;Siemens has released new versions for the affected products and
recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-779310.html</id>
    <title>SSA-779310 V1.0: Arbitrary Code Execution Vulnerability in Mendix Studio Pro Before V11.12</title>
    <updated>2026-06-30T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-779310.html" rel="alternate"/>
    <summary>&lt;p&gt;Mendix Studio Pro versions before V11.12 are affected by a file
parsing vulnerability that could be triggered when the application reads
specially crafted malicious project during the build pipeline. This
could allow an attacker to execute arbitrary code in the context of that
user.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and
recommends to update to the latest versions. Siemens is preparing
further fix versions and recommends countermeasures for products where
fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssb-301940.html</id>
    <title>SSB-301940 V1.0: Desigo CC patch files identified as malicious by security scanners</title>
    <updated>2026-06-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssb-301940.html" rel="alternate"/>
    <summary>
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-967325.html</id>
    <title>SSA-967325 V1.1 (Last Update: 2026-06-09): Multiple Vulnerabilities in Palo Alto Networks PAN-OS on RUGGEDCOM APE1808 Devices</title>
    <updated>2026-06-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-967325.html" rel="alternate"/>
    <summary>&lt;p&gt;Palo Alto Networks has published [1] information on vulnerabilities
in PAN-OS. This advisory lists the related Siemens Industrial products
affected by these vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens is preparing fix versions and recommends countermeasures for
products where fixes are not, or not yet available. Customers are
advised to consult and implement the workarounds provided in Palo Alto
Networks&#8217; upstream security notifications.&lt;/p&gt;
&lt;p&gt;[1] https://security.paloaltonetworks.com/&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-962515.html</id>
    <title>SSA-962515 V1.6 (Last Update: 2026-06-09): Out of Bounds Read Vulnerability in Industrial Products</title>
    <updated>2026-06-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-962515.html" rel="alternate"/>
    <summary>&lt;p&gt;Several industrial products contain an out of bounds read
vulnerability that could allow an attacker to cause a Blue Screen of
Death (BSOD) crash of the underlying Windows kernel, leading to denial
of service condition.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and
recommends to update to the latest versions. Siemens is preparing
further fix versions and recommends countermeasures for products where
fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-870926.html</id>
    <title>SSA-870926 V1.1 (Last Update: 2026-06-09): Datakit and Parasolid Vulnerabilities in Simcenter Femap</title>
    <updated>2026-06-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-870926.html" rel="alternate"/>
    <summary>&lt;p&gt;Simcenter Femap is affected by file parsing vulnerabilities in
Datakit library and Parasolid Translator Component that could be
triggered when the application reads files in IPT or IGS format. If a
user is tricked to open a malicious file with the affected application,
an attacker could leverage the vulnerability to perform remote code
execution in the context of the current process.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for Simcenter Femap and recommends
to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-864900.html</id>
    <title>SSA-864900 V1.8 (Last Update: 2026-06-09): Multiple Vulnerabilities in Fortigate NGFW on RUGGEDCOM APE1808 Devices</title>
    <updated>2026-06-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-864900.html" rel="alternate"/>
    <summary>&lt;p&gt;&lt;a href="https://www.fortiguard.com/psirt"&gt;Fortinet has published&lt;/a&gt;
information on vulnerabilities in FortiOS. This advisory lists the
related Siemens Industrial products.&lt;/p&gt;
&lt;p&gt;Siemens is preparing fix versions and recommends to consult and
implement the workarounds provided in Fortinet&#8217;s upstream security
notifications.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-860189.html</id>
    <title>SSA-860189 V1.0: Multiple Vulnerabilities in SINEC INS Before V1.0 SP2 Update 6</title>
    <updated>2026-06-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-860189.html" rel="alternate"/>
    <summary>&lt;p&gt;SINEC INS before V1.0 SP2 Update 6 is affected by multiple
vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for SINEC INS and recommends to
update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-827968.html</id>
    <title>SSA-827968 V1.3 (Last Update: 2026-06-09): Vulnerability in Nozomi Guardian/CMC Before  V26.2.0 on RUGGEDCOM APE1808 Devices</title>
    <updated>2026-06-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-827968.html" rel="alternate"/>
    <summary>&lt;p&gt;Nozomi Networks has published information on vulnerabilities in &lt;a
href="https://security.nozominetworks.com/"&gt;Nozomi Guardian/CMC&lt;/a&gt;.
This advisory lists the related Siemens Industrial products affected by
these vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for RUGGEDCOM APE1808 and
recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-794185.html</id>
    <title>SSA-794185 V1.3 (Last Update: 2026-06-09): RADIUS Protocol Susceptible to Forgery Attacks (CVE-2024-3596) - Impact to SIPROTEC, SICAM and Related Products</title>
    <updated>2026-06-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-794185.html" rel="alternate"/>
    <summary>&lt;p&gt;This advisory documents the impact of CVE-2024-3596 (also dubbed
&#8220;Blastradius&#8221;), a vulnerability in the RADIUS protocol, to SIPROTEC,
SICAM and related products.&lt;/p&gt;
&lt;p&gt;The vulnerability could allow on-path attackers, located between a
Network Access Server (the RADIUS client, e.g., a SICAM device) and a
RADIUS server, to forge Access-Request packets in a way that enables
them to modify the corresponding server response packet at will, e.g.,
turning an &#8220;Access-Reject&#8221; message into an &#8220;Access-Accept&#8221;. This would
cause the Network Access Server to grant the attackers access to the
network with the attackers desired authorization (and without the need
of knowing or guessing legitimate access credentials).&lt;/p&gt;
&lt;p&gt;Further details incl.&#160;external references can be found in the chapter
&#8220;Additional Information&#8221;. Siemens has released new versions for several
affected products and recommends to update to the latest versions, and
to configure the updated systems as recommended in the chapter
&#8220;Additional Information&#8221;. Siemens is preparing further fix versions and
recommends specific countermeasures for products where fixes are not, or
not yet available. See chapter &#8220;Additional Information&#8221; for details.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-723487.html</id>
    <title>SSA-723487 V2.0 (Last Update: 2026-06-09): RADIUS Protocol Susceptible to Forgery Attacks (CVE-2024-3596) - Impact to SCALANCE, RUGGEDCOM and Related Products</title>
    <updated>2026-06-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-723487.html" rel="alternate"/>
    <summary>&lt;p&gt;This advisory documents the impact of CVE-2024-3596 (also dubbed
&#8220;Blastradius&#8221;), a vulnerability in the RADIUS protocol, to SCALANCE,
RUGGEDCOM and related products.&lt;/p&gt;
&lt;p&gt;The vulnerability could allow on-path attackers, located between a
Network Access Server (the RADIUS client, e.g., SCALANCE or RUGGEDCOM
devices) and a RADIUS server (e.g., SINEC INS), to forge Access-Request
packets in a way that enables them to modify the corresponding server
response packet at will, e.g., turning an &#8220;Access-Reject&#8221; message into
an &#8220;Access-Accept&#8221;. This would cause the Network Access Server to grant
the attackers access to the network with the attackers desired
authorization (and without the need of knowing or guessing legitimate
access credentials).&lt;/p&gt;
&lt;p&gt;Further details incl.&#160;external references can be found in the chapter
&#8220;Additional Information&#8221;. Siemens has released new versions for several
affected products and recommends to update to the latest versions, and
to configure the updated systems as recommended in the chapter
&#8220;Additional Information&#8221;. Siemens is preparing further fix versions and
recommends specific countermeasures for products where fixes are not, or
not yet available. See chapter &#8220;Additional Information&#8221; for details.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-722410.html</id>
    <title>SSA-722410 V1.2 (Last Update: 2026-06-09): Multiple Vulnerabilities in User Management Component (UMC)</title>
    <updated>2026-06-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-722410.html" rel="alternate"/>
    <summary>&lt;p&gt;Siemens&#8217; User Management Component (UMC) is affected by multiple
vulnerabilities that could allow an unauthenticated remote attacker to
execute arbitrary code or to cause a denial of service condition.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for User Management Component
(UMC) and recommends to update to the latest version. Siemens recommends
specific countermeasures for products where fixes are not, or not yet
available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-693808.html</id>
    <title>SSA-693808 V1.3 (Last Update: 2026-06-09): Deserialization Vulnerability in Siemens Engineering Platforms</title>
    <updated>2026-06-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-693808.html" rel="alternate"/>
    <summary>&lt;p&gt;Affected products do not properly restrict access permissions to a
local Windows Named Pipe and do not properly sanitize user-controllable
input sent to that Named Pipe. This could allow a local authenticated
attacker to cause a type confusion and execute arbitrary code within the
affected application and its privileges.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and
recommends to update to the latest versions. Siemens is preparing
further fix versions and recommends specific countermeasures for
products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-674753.html</id>
    <title>SSA-674753 V1.2 (Last Update: 2026-06-09): Denial-of-Service Vulnerability in ET 200 Devices</title>
    <updated>2026-06-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-674753.html" rel="alternate"/>
    <summary>&lt;p&gt;Siemens ET 200 devices contain a denial-of-service vulnerability that
could be triggered by sending a valid S7 protocol Disconnect Request
(COTP DR TPDU), causing the device to become unresponsive and require a
power cycle to recover.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and
recommends to update to the latest versions. Siemens is preparing
further fix versions and recommends specific countermeasures for
products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-434797.html</id>
    <title>SSA-434797 V1.0: Buffer Overflow Vulnerability in OpenSSL affecting Siemens Products</title>
    <updated>2026-06-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-434797.html" rel="alternate"/>
    <summary>&lt;p&gt;OpenSSL has published a stack based buffer overflow vulnerability
that allows a remote attacker to cause a denial of service (DoS) or
potentially allow for remote code execution.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and
recommends to update to the latest versions. Siemens is preparing
further fix versions and recommends specific countermeasures for
products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-139483.html</id>
    <title>SSA-139483 V1.0: File Upload Vulnerability in SIPROTEC 5 Using DIGSI5 Protocol</title>
    <updated>2026-06-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-139483.html" rel="alternate"/>
    <summary>&lt;p&gt;SIPROTEC 5 is vulnerable to arbitrary file uploads by authenticated
users using the DIGSI 5 protocol. This could allow an attacker to upload
malicious configuration files, potentially causing a permanent denial of
service condition.&lt;/p&gt;
&lt;p&gt;As a mitigation measure, users of the CP050 and CP150 device models
are advised to upgrade to version 9.90 or later. For CP300 device
models, devices 7ST85 and 7ST86 are advised to upgrade to version 10.00
or later, while the remaining models should upgrade to version 9.90 or
later. These versions introduce an allow-list feature that restricts
arbitrary file uploads and reduces the risk associated with this
vulnerability.&lt;/p&gt;
&lt;p&gt;Siemens is preparing fix versions and recommends specific
countermeasures for products where fixes are not, or not yet
available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-063511.html</id>
    <title>SSA-063511 V1.0: Insufficient protection of key material in WinCC Certificate Manager</title>
    <updated>2026-06-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-063511.html" rel="alternate"/>
    <summary>&lt;p&gt;WinCC Certificate Manager insufficiently protects key material that
could allow an attacker to extract sensitive information.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for SIMATIC WinCC Unified PC
Runtime V21 and recommends to update to the latest version. Siemens
recommends specific countermeasures for products where fixes are not, or
not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-253495.html</id>
    <title>SSA-253495 V1.0: Multiple Vulnerabilities in SINEC OS before V4.0</title>
    <updated>2026-06-02T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-253495.html" rel="alternate"/>
    <summary>&lt;p&gt;SINEC OS before V4.0 contains multiple vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for RUGGEDCOM RST2428P and
recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-545643.html</id>
    <title>SSA-545643 V1.1 (Last Update: 2026-05-29): Multiple Vulnerabilities in KACO Blueplanet Inverters</title>
    <updated>2026-05-29T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-545643.html" rel="alternate"/>
    <summary>&lt;p&gt;KACO blueplanet Inverters contain multiple vulnerabilities that could
allow an attacker to derive the credentials from the devices serial
number and misuse them to gain unauthorized access.&lt;/p&gt;
&lt;p&gt;KACO new energy GmbH has released new versions for several affected
products and recommends to update to the latest versions. KACO new
energy GmbH is preparing further fix versions and recommends
countermeasures for products where fixes are not, or not yet
available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-921111.html</id>
    <title>SSA-921111 V1.1 (Last Update: 2026-05-13): Two File Parsing Vulnerabilities in Solid Edge Before Version SE226 Update 5</title>
    <updated>2026-05-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-921111.html" rel="alternate"/>
    <summary>&lt;p&gt;Solid Edge SE2026 before Update 5 is affected by two file parsing
vulnerabilities that could be triggered when the application reads
specially crafted files in PAR format. This could allow an attacker to
crash the application or execute arbitrary code.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for Solid Edge SE2026 and
recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-975644.html</id>
    <title>SSA-975644 V1.1 (Last Update: 2026-05-12): Multiple Vulnerabilities in Fortigate NGFW on RUGGEDCOM APE1808 Devices</title>
    <updated>2026-05-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-975644.html" rel="alternate"/>
    <summary>&lt;p&gt;&lt;a href="https://www.fortiguard.com/psirt"&gt;Fortinet has published&lt;/a&gt;
information on vulnerabilities in FORTIOS. This advisory lists the
related Siemens Industrial products.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for RUGGEDCOM APE1808 and
recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-973901.html</id>
    <title>SSA-973901 V1.0: Arbitrary File Disclosure Vulnerability in Ruggedcom Rox Before V2.17.1</title>
    <updated>2026-05-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-973901.html" rel="alternate"/>
    <summary>&lt;p&gt;Ruggedcom Rox contains an improper access control vulnerability that
could allow an authenticated remote attacker to read arbitrary files
with root privileges from the underlying operating system&#8217;s
filesystem.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and
recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-967325.html</id>
    <title>SSA-967325 V1.0: Buffer Overflow Vulnerability in Palo Alto Networks PAN-OS on RUGGEDCOM APE1808 Devices</title>
    <updated>2026-05-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-967325.html" rel="alternate"/>
    <summary>&lt;p&gt;A buffer overflow vulnerability in the User-ID&#8482; Authentication Portal
(aka Captive Portal) service of Palo Alto Networks PAN-OS software
allows an unauthenticated attacker to execute arbitrary code with root
privileges on the PA-Series and VM-Series firewalls by sending specially
crafted packets.&lt;/p&gt;
&lt;p&gt;Siemens is preparing fix versions and recommends countermeasures for
products where fixes are not, or not yet available. Customers are
advised to consult and implement the workarounds provided in Palo Alto
Networks&#8217; upstream security notifications.&lt;/p&gt;
&lt;p&gt;[1] https://security.paloaltonetworks.com/&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-921111.html</id>
    <title>SSA-921111 V1.0: Two File Parsing Vulnerabilities in Solid Edge Before version SE225 Update 5</title>
    <updated>2026-05-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-921111.html" rel="alternate"/>
    <summary>&lt;p&gt;Solid Edge SE2026 before Update 5 is affected by two file parsing
vulnerabilities that could be triggered when the application reads
specially crafted files in PAR format. This could allow an attacker to
crash the application or execute arbitrary code.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for Solid Edge SE2026 and
recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-904646.html</id>
    <title>SSA-904646 V1.1 (Last Update: 2026-05-12): Sensitive Data Exposure Vulnerability in SIPROTEC 5 Devices</title>
    <updated>2026-05-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-904646.html" rel="alternate"/>
    <summary>&lt;p&gt;A sensitive data exposure vulnerability in SIPROTEC 5 can allow an
attacker to retrieve sensitive session data from browser history, logs,
or other storage mechanisms, potentially leading to unauthorized
access.&lt;/p&gt;
&lt;p&gt;Siemens is preparing fix versions and recommends countermeasures for
products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-876049.html</id>
    <title>SSA-876049 V1.0: Prototype Pollution Vulnerability in Axios Library Affecting Siemens gWAP Before V3.1.1</title>
    <updated>2026-05-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-876049.html" rel="alternate"/>
    <summary>&lt;p&gt;Siemens gPROMS Web Applications Publisher (gWAP) is affected by a
remote code execution vulnerability introduced through a third-party
component, namely the Axios HTTP client library. The vulnerability stems
from a specific &#8220;Gadget&#8221; attack chain that allows prototype pollution in
other third-party libraries, potentially allowing an attacker to execute
arbitrary code.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for gWAP and recommends to update
to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-870926.html</id>
    <title>SSA-870926 V1.0: Datakit Vulnerability in Simcenter Femap</title>
    <updated>2026-05-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-870926.html" rel="alternate"/>
    <summary>&lt;p&gt;Simcenter Femap is affected by heap based buffer overflow
vulnerability in Datakit library that could be triggered when the
application reads files in IPT format. If a user is tricked to open a
malicious file with the affected application, an attacker could leverage
the vulnerability to perform remote code execution in the context of the
current process.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for Simcenter Femap and recommends
to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-827968.html</id>
    <title>SSA-827968 V1.2 (Last Update: 2026-05-12): Vulnerability in Nozomi Guardian/CMC Before  V26.2.0 on RUGGEDCOM APE1808 Devices</title>
    <updated>2026-05-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-827968.html" rel="alternate"/>
    <summary>&lt;p&gt;Nozomi Networks has published information on vulnerabilities in &lt;a
href="https://security.nozominetworks.com/"&gt;Nozomi Guardian/CMC&lt;/a&gt;.
This advisory lists the related Siemens Industrial products affected by
these vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for RUGGEDCOM APE1808 and
recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-827383.html</id>
    <title>SSA-827383 V1.0: Multiple Vulnerabilities in Teamcenter</title>
    <updated>2026-05-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-827383.html" rel="alternate"/>
    <summary>&lt;p&gt;Siemens Teamcenter is affected by multiple vulnerabilities which
could potentially lead to a compromise in availability, integrity and
confidentiality.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and
recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-786884.html</id>
    <title>SSA-786884 V1.0: Insufficient Randomness in Session Identifier Vulnerability in SIPROTEC 5</title>
    <updated>2026-05-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-786884.html" rel="alternate"/>
    <summary>&lt;p&gt;The SIPROTEC 5 devices do not use sufficiently random numbers to
generate session identifiers. This could facilitate a brute-force attack
against a valid session identifier which could allow an unauthenticated
remote attacker to hijack a valid user session. The affected session
identifiers are only used in a subset of the endpoints that are provided
by the affected products.&lt;/p&gt;
&lt;p&gt;Siemens is preparing fix versions and recommends countermeasures for
products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-783943.html</id>
    <title>SSA-783943 V1.0: HTTP Request Smuggling Vulnerability in SENTRON 7KT PAC1261 Data Manager Before V2.1.0</title>
    <updated>2026-05-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-783943.html" rel="alternate"/>
    <summary>&lt;p&gt;The web server in SENTRON 7KT PAC1261 Data Manager Before V2.1.0
contains a request smuggling vulnerability in the Go Project&#8217;s net/http
package that could allow an attacker to retrieve authorization tokens
that can be used to gain administrative control over the device.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for SENTRON 7KT PAC1261 Data
Manager and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-723487.html</id>
    <title>SSA-723487 V1.9 (Last Update: 2026-05-12): RADIUS Protocol Susceptible to Forgery Attacks (CVE-2024-3596) - Impact to SCALANCE, RUGGEDCOM and Related Products</title>
    <updated>2026-05-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-723487.html" rel="alternate"/>
    <summary>&lt;p&gt;This advisory documents the impact of CVE-2024-3596 (also dubbed
&#8220;Blastradius&#8221;), a vulnerability in the RADIUS protocol, to SCALANCE,
RUGGEDCOM and related products.&lt;/p&gt;
&lt;p&gt;The vulnerability could allow on-path attackers, located between a
Network Access Server (the RADIUS client, e.g., SCALANCE or RUGGEDCOM
devices) and a RADIUS server (e.g., SINEC INS), to forge Access-Request
packets in a way that enables them to modify the corresponding server
response packet at will, e.g., turning an &#8220;Access-Reject&#8221; message into
an &#8220;Access-Accept&#8221;. This would cause the Network Access Server to grant
the attackers access to the network with the attackers desired
authorization (and without the need of knowing or guessing legitimate
access credentials).&lt;/p&gt;
&lt;p&gt;Further details incl.&#160;external references can be found in the chapter
&#8220;Additional Information&#8221;. Siemens has released new versions for several
affected products and recommends to update to the latest versions, and
to configure the updated systems as recommended in the chapter
&#8220;Additional Information&#8221;. Siemens is preparing further fix versions and
recommends specific countermeasures for products where fixes are not, or
not yet available. See chapter &#8220;Additional Information&#8221; for details.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-688146.html</id>
    <title>SSA-688146 V1.0: Multiple Cross-Site Scripting Vulnerabilities in SIMATIC S7 PLCs Web Server</title>
    <updated>2026-05-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-688146.html" rel="alternate"/>
    <summary>&lt;p&gt;SIMATIC S7 PLCs contain multiple vulnerabilities in the web server
that could allow an attacker to perform cross-site scripting
attacks.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and
recommends to update to the latest versions. Siemens is preparing
further fix versions and recommends specific countermeasures for
products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-577017.html</id>
    <title>SSA-577017 V1.0: Multiple Vulnerabilities in Ruggedcom Rox Before 2.17.1</title>
    <updated>2026-05-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-577017.html" rel="alternate"/>
    <summary>&lt;p&gt;Ruggedcom Rox before v2.17.1 contain multiple third-party
vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and
recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-545643.html</id>
    <title>SSA-545643 V1.0: Multiple Vulnerabilities in KACO Blueplanet Inverters</title>
    <updated>2026-05-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-545643.html" rel="alternate"/>
    <summary>&lt;p&gt;KACO blueplanet Inverters contain multiple vulnerabilities that could
allow an attacker to derive the credentials from the devices serial
number and misuse them to gain unauthorized access.&lt;/p&gt;
&lt;p&gt;KACO new energy GmbH has released new versions for several affected
products and recommends to update to the latest versions. KACO new
energy GmbH is preparing further fix versions and recommends
countermeasures for products where fixes are not, or not yet
available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-452276.html</id>
    <title>SSA-452276 V1.3 (Last Update: 2026-05-12): Eval Injection Vulnerability in SIMATIC S7-1500</title>
    <updated>2026-05-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-452276.html" rel="alternate"/>
    <summary>&lt;p&gt;SIMATIC S7-1500 devices contain a vulnerability that could allow an
attacker to inject code by tricking a legitimate user into importing a
specially crafted trace file in the web interface.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and
recommends to update to the latest versions. Siemens is preparing
further fix versions and recommends specific countermeasures for
products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-392349.html</id>
    <title>SSA-392349 V1.0: Denial of Service Vulnerability in Industrial Devices</title>
    <updated>2026-05-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-392349.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple industrial devices contain a vulnerability that could allow
an attacker to cause a denial of service condition.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and
recommends to update to the latest versions. Siemens is preparing
further fix versions and recommends specific countermeasures for
products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-387223.html</id>
    <title>SSA-387223 V1.0: Unauthenticated Control Panel Escape Vulnerability on SIMATIC HMI Unified Comfort before V21.0</title>
    <updated>2026-05-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-387223.html" rel="alternate"/>
    <summary>&lt;p&gt;SIMATIC HMI Unified Comfort Panels before V21.0 are affected by a
vulnerability that allows an unauthenticated attacker to access the web
browser via the help link. This vulnerability allows an attacker to
access the web browser through the Control Panel if it is not protected
by the corresponding security mechanisms. This opens the possibility for
the attacker to find backdoors, which might lead to unwanted
misconfigurations.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and
recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-357982.html</id>
    <title>SSA-357982 V1.0: Path Traversal Vulnerability in ROS# Before 2.2.2</title>
    <updated>2026-05-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-357982.html" rel="alternate"/>
    <summary>&lt;p&gt;ROS# contains a ROS service file_server, that before version 2.2.2
contains a path traversal vulnerability which could allow an attacker to
access, i.e.&#160;read and write, arbitrary files, which are accessible with
the user rights of the user that runs the service, on the system that
hosts service.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for ROS# and recommends to update
to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssb-295699.html</id>
    <title>SSB-295699 V1.1 (Last Update: 2026-05-12): Configuration of Microsoft Defender Antivirus for SIMATIC PCS 7 and SIMATIC PCS neo</title>
    <updated>2026-05-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssb-295699.html" rel="alternate"/>
    <summary>
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-280834.html</id>
    <title>SSA-280834 V1.1 (Last Update: 2026-05-12): Improper OpenVPN Credential Validation Vulnerability in SCALANCE M-800 and SC-600 Families</title>
    <updated>2026-05-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-280834.html" rel="alternate"/>
    <summary>&lt;p&gt;SCALANCE M-800 and SC-600 families are affected by improper input
validation in the OpenVPN authentication.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and
recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-265688.html</id>
    <title>SSA-265688 V2.2 (Last Update: 2026-05-12): Vulnerabilities in the additional GNU/Linux subsystem of the SIMATIC S7-1500 TM MFP V1.1</title>
    <updated>2026-05-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-265688.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities have been identified in the additional
GNU/Linux subsystem of the SIMATIC S7-1500 TM MFP V1.1.&lt;/p&gt;
&lt;p&gt;Siemens is preparing fix versions and recommends specific
countermeasures for products where fixes are not, or not yet
available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-216014.html</id>
    <title>SSA-216014 V1.5 (Last Update: 2026-05-12): Vulnerabilities in EFI variable of SIMATIC IPCs, SIMATIC Tablet PCs, and SIMATIC Field PGs</title>
    <updated>2026-05-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-216014.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities has been identified in Siemens SIMATIC IPCs,
SIMATIC Tablet PCs, and SIMATIC Field PGs that can allow an
authenticated attacker to alter the secure boot and password
configurations.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions of BIOS for several affected
products and recommends to update to the latest versions. Siemens is
preparing further fix versions and recommends specific countermeasures
for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-085541.html</id>
    <title>SSA-085541 V1.0: Missing Authentication in Critical Function in ActiveMQ Artemis (CVE-2026-27446) in Opcenter RDnL</title>
    <updated>2026-05-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-085541.html" rel="alternate"/>
    <summary>&lt;p&gt;Opcenter RDnL is affected by missing authentication in critical
function in &#8216;ActiveMQ Artemis&#8217;. An unauthenticated attacker within the
adjacent network could use the Core protocol to force a target broker to
establish an outbound Core federation connection to an
attacker-controlled rogue broker. This could potentially result in
availability impacts or message injection into any queue via the rogue
broker. Breaking the integrity of a message has a low impact due to
missing auto refresh functionality and it does not contain any
confidential information.&lt;/p&gt;
&lt;p&gt;ActiveMQ Artemis has released a new version and Siemens recommends to
update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-082556.html</id>
    <title>SSA-082556 V1.5 (Last Update: 2026-05-12): Vulnerabilities in the additional GNU/Linux subsystem of the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP V3.1.5</title>
    <updated>2026-05-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-082556.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities have been identified in the additional
GNU/Linux subsystem of the firmware version V3.1.5 for the SIMATIC
S7-1500 CPU 1518(F)-4 PN/DP MFP (incl.&#160;SIPLUS variant).&lt;/p&gt;
&lt;p&gt;Siemens is preparing fix versions and recommends countermeasures for
products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-081142.html</id>
    <title>SSA-081142 V1.0: Arbitrary Code Execution Vulnerability in Ruggedcom Rox Before 2.17.1</title>
    <updated>2026-05-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-081142.html" rel="alternate"/>
    <summary>&lt;p&gt;Ruggedcom Rox contains an input validation vulnerability in the
Scheduler functionality that could allow an authenticated remote
attacker to execute arbitrary commands with root privileges on the
underlying operating system.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and
recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-078743.html</id>
    <title>SSA-078743 V1.0: Remote Code Execution Vulnerability in Ruggedcom Rox Before V2.17.1</title>
    <updated>2026-05-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-078743.html" rel="alternate"/>
    <summary>&lt;p&gt;Ruggedcom Rox contains an input validation vulnerability in the
feature key installation process that could allow an authenticated
remote attacker to execute arbitrary commands with root privileges on
the underlying operating system.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and
recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-032379.html</id>
    <title>SSA-032379 V1.0: Multiple Vulnerabilities in SIMATIC CN 4100 Before V5.0</title>
    <updated>2026-05-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-032379.html" rel="alternate"/>
    <summary>&lt;p&gt;SIMATIC CN 4100 contains multiple vulnerabilities which could
potentially lead to a compromise in availability, integrity and
confidentiality.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for SIMATIC CN 4100 and recommends
to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-001536.html</id>
    <title>SSA-001536 V1.1 (Last Update: 2026-05-12): Authorization Bypass Vulnerability in Siemens Industrial Edge Devices</title>
    <updated>2026-05-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-001536.html" rel="alternate"/>
    <summary>&lt;p&gt;Siemens Industrial Edge Devices contain an authorization bypass
vulnerability that could facilitate an unauthenticated remote attacker
to circumvent authentication and impersonate a legitimate user.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and
recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-981622.html</id>
    <title>SSA-981622 V1.0: Improper Certificate Validation Vulnerability in Siemens Analytics Toolkit</title>
    <updated>2026-04-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-981622.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple Siemens applications are affected by improper certificate
validation in Siemens Analytics Toolkit. This could allow an
unauthenticated remote attacker to perform man in the middle
attacks.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and
recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-913875.html</id>
    <title>SSA-913875 V1.5 (Last Update: 2026-04-14): Frame Aggregation and Fragmentation Vulnerabilities in 802.11</title>
    <updated>2026-04-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-913875.html" rel="alternate"/>
    <summary>&lt;p&gt;Twelve vulnerabilities in the implementation of frame aggregation and
fragmentation of the 802.11 standard, under the name of &lt;a
href="https://www.fragattacks.com/"&gt;FragAttacks&lt;/a&gt;, have been
published.&lt;/p&gt;
&lt;p&gt;Successful exploitation of these vulnerabilities could allow an
attacker within Wi-Fi range to forge encrypted frames, which could
result in sensitive data disclosure and possibly traffic
manipulation.&lt;/p&gt;
&lt;p&gt;The advised Siemens products are only affected by some of the
published vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and
recommends to update to the latest versions. Siemens recommends specific
countermeasures for products where fixes are not, or not yet
available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-827968.html</id>
    <title>SSA-827968 V1.1 (Last Update: 2026-04-14): Vulnerability in Nozomi Guardian/CMC on RUGGEDCOM APE1808 Devices</title>
    <updated>2026-04-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-827968.html" rel="alternate"/>
    <summary>&lt;p&gt;Nozomi Networks has published information on vulnerabilities in &lt;a
href="https://security.nozominetworks.com/"&gt;Nozomi Guardian/CMC&lt;/a&gt;.
This advisory lists the related Siemens Industrial products affected by
these vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens is preparing fix versions and recommends countermeasures for
products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-801704.html</id>
    <title>SSA-801704 V1.0: Authentication Bypass Vulnerability in SINEC NMS</title>
    <updated>2026-04-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-801704.html" rel="alternate"/>
    <summary>&lt;p&gt;Siemens SINEC NMS when used with User Management Component (UMC)
contains an authentication bypass vulnerability due to insufficient
validation of user identity. This could allow an unauthenticated remote
attacker to bypass authentication and gain unauthorized access to the
application.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for SINEC NMS and recommends to
update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-741509.html</id>
    <title>SSA-741509 V1.0: Privilege Escalation Vulnerability in RUGGEDCOM CROSSBOW Secure Access Manager Primary Before V5.8</title>
    <updated>2026-04-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-741509.html" rel="alternate"/>
    <summary>&lt;p&gt;RUGGEDCOM CROSSBOW Secure Access Manager Primary (SAM-P) contains a
vulnerability that could allow an attacker to escalate their own
privileges.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for RUGGEDCOM CROSSBOW Secure
Access Manager Primary (SAM-P) and recommends to update to the latest
version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-726834.html</id>
    <title>SSA-726834 V1.1 (Last Update: 2026-04-14): Denial of Service Vulnerability in the RADIUS Client of SIPROTEC 5 Devices</title>
    <updated>2026-04-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-726834.html" rel="alternate"/>
    <summary>&lt;p&gt;The RADIUS client implementation of the VxWorks platform in SIPROTEC
5 devices contains a denial of service vulnerability that could be
triggered when a specially crafted packet is sent by a RADIUS
server.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and
recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-726617.html</id>
    <title>SSA-726617 V1.4 (Last Update: 2026-04-14): Incorrect Privilege Assignment Vulnerability in Mendix OIDC SSO Module</title>
    <updated>2026-04-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-726617.html" rel="alternate"/>
    <summary>&lt;p&gt;The Mendix OIDC SSO module grants read and write access to all tokens
exclusively to the Administrator role and could result in privilege
misuse by an adversary modifying the module during Mendix
development.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and
recommends to update to the latest versions. Siemens is preparing
further fix versions and recommends specific countermeasures for
products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-712929.html</id>
    <title>SSA-712929 V3.1 (Last Update: 2026-04-14): Denial of Service Vulnerability in OpenSSL (CVE-2022-0778) Affecting Industrial Products</title>
    <updated>2026-04-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-712929.html" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in the openSSL component (CVE-2022-0778, [0]) could
allow an attacker to create a denial of service condition by providing
specially crafted elliptic curve certificates to products that use a
vulnerable version of openSSL.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and
recommends to update to the latest versions. Siemens recommends specific
countermeasures for products where fixes are not, or not yet
available.&lt;/p&gt;
&lt;p&gt;[0] &lt;a href="https://www.openssl.org/news/secadv/20220315.txt"
class="uri"&gt;https://www.openssl.org/news/secadv/20220315.txt&lt;/a&gt;&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-710008.html</id>
    <title>SSA-710008 V1.5 (Last Update: 2026-04-14): Multiple Web Vulnerabilities in SCALANCE Products</title>
    <updated>2026-04-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-710008.html" rel="alternate"/>
    <summary>&lt;p&gt;SCALANCE devices contain multiple vulnerabilities in MSPS based
product lines that could allow authenticated remote attackers to execute
custom code or create a XSS situation, as well as unauthenticated remote
attackers to create a denial of service condition.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and
recommends to update to the latest versions. Siemens recommends specific
countermeasures for products where updates are not, or not yet
available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-628843.html</id>
    <title>SSA-628843 V1.0: Out of Bound Read Vulnerability in TPM 2.0</title>
    <updated>2026-04-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-628843.html" rel="alternate"/>
    <summary>&lt;p&gt;The products listed below contain a vulnerability that could allow an
attacker to perform an out-of-bound read, potentially leading to
information disclosure or denial of service of the TPM.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and
recommends to update to the latest versions. Siemens is preparing
further fix versions and recommends countermeasures for products where
fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-609469.html</id>
    <title>SSA-609469 V1.0: Authorization Bypass Vulnerability in Industrial Edge Management</title>
    <updated>2026-04-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-609469.html" rel="alternate"/>
    <summary>&lt;p&gt;Industrial Edge Management contains an authorization bypass
vulnerability that could be exploited by an unauthenticated remote
attacker to circumvent authentication and to access connected Industrial
Edge Devices through the remote connection feature.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and
recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-605717.html</id>
    <title>SSA-605717 V1.0: Authorization Bypass Vulnerability in SINEC NMS Before V4.0 SP3</title>
    <updated>2026-04-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-605717.html" rel="alternate"/>
    <summary>&lt;p&gt;SINEC NMS before V4.0 SP3 contains an Authorization Bypass
vulnerability that could allow an attacker to bypass authorization
checks, leading to the ability to reset the password of any arbitrary
user account.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for SINEC NMS and recommends to
update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-599968.html</id>
    <title>SSA-599968 V1.9 (Last Update: 2026-04-14): Denial of Service Vulnerability in Profinet Devices</title>
    <updated>2026-04-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-599968.html" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in affected devices could allow an attacker to
perform a denial ofservice attack if a large amount of Profinet
Discovery and Configuration Protocol (DCP) reset packets is sent to the
affected devices.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and
recommends to update to the latest versions. Siemens recommends specific
countermeasures for products where fixes are not, or not yet
available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-552702.html</id>
    <title>SSA-552702 V1.6 (Last Update: 2026-04-14): Privilege Escalation Vulnerability in the Web Interface of SCALANCE and RUGGEDCOM Products</title>
    <updated>2026-04-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-552702.html" rel="alternate"/>
    <summary>&lt;p&gt;The products listed below do not properly authorize the change
password function of the web interface. This could allow low privileged
users to escalate their privileges.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and
recommends to update to the latest versions. Siemens recommends specific
countermeasures for products where updates are not, or not yet
available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-408105.html</id>
    <title>SSA-408105 V1.4 (Last Update: 2026-04-14): Buffer Overflow Vulnerabilities in OpenSSL 3.0 Affecting Siemens Products</title>
    <updated>2026-04-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-408105.html" rel="alternate"/>
    <summary>&lt;p&gt;The openSSL component, versions 3.0.0 through 3.0.6, contains two
buffer overflow vulnerabilities (CVE-2022-3602, CVE-2022-3786) in the
X.509 certificate verification [0]. They could allow an attacker to
create a denial of service condition or execute arbitrary code on a
vulnerable TLS server (if the server requests client certificate
authentication), or on a vulnerable TLS client.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and
recommends to update to the latest versions. Siemens is preparing
further updates and recommends specific countermeasures for products
where updates are not, or not yet available.&lt;/p&gt;
&lt;p&gt;[0] &lt;a href="https://www.openssl.org/news/secadv/20221101.txt"
class="uri"&gt;https://www.openssl.org/news/secadv/20221101.txt&lt;/a&gt;&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-311973.html</id>
    <title>SSA-311973 V1.1 (Last Update: 2026-04-14): Multiple Local Privilege Escalation Vulnerabilities in SINEC NMS and User Management Component (UMC)</title>
    <updated>2026-04-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-311973.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple Siemens products are affected by two local privilege
escalation vulnerabilities which could allow an low privileged attacker
to load malicious DLLs, potentially leading to arbitrary code execution
with elevated privileges.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and
recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-244969.html</id>
    <title>SSA-244969 V2.1 (Last Update: 2026-04-14): OpenSSL Vulnerability in Industrial Products</title>
    <updated>2026-04-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-244969.html" rel="alternate"/>
    <summary>&lt;p&gt;OpenSSL has published a security advisory [0] about a vulnerability
in OpenSSL versions 1.1.1 &amp;lt; 1.1.1l and 1.0.2 &amp;lt; 1.0.2za that allows
an attacker to cause a denial of service (DoS) or to disclose private
memory content.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and
recommends to update to the latest versions. Siemens is preparing
further updates and recommends countermeasures for products where
updates are not, or not yet available.&lt;/p&gt;
&lt;p&gt;[0] &lt;a href="https://www.openssl.org/news/secadv/20210824.txt"
class="uri"&gt;https://www.openssl.org/news/secadv/20210824.txt&lt;/a&gt;&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-225816.html</id>
    <title>SSA-225816 V1.0: Memory Corruption Vulnerability in RUGGEDCOM CROSSBOW Station Access Controller Before V5.8</title>
    <updated>2026-04-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-225816.html" rel="alternate"/>
    <summary>&lt;p&gt;RUGGEDCOM CROSSBOW Station Access Controller (SAC) contains a
vulnerability that could allow an attacker to achieve arbitrary code
execution and to create a denial of service condition.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for RUGGEDCOM CROSSBOW Station
Access Controller (SAC) and recommends to update to the latest
version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-216014.html</id>
    <title>SSA-216014 V1.4 (Last Update: 2026-04-14): Vulnerabilities in EFI variable of SIMATIC IPCs, SIMATIC Tablet PCs, and SIMATIC Field PGs</title>
    <updated>2026-04-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-216014.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities has been identified in Siemens SIMATIC IPCs,
SIMATIC Tablet PCs, and SIMATIC Field PGs that can allow an
authenticated attacker to alter the secure boot and password
configurations.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions of BIOS for several affected
products and recommends to update to the latest versions. Siemens is
preparing further fix versions and recommends specific countermeasures
for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-186293.html</id>
    <title>SSA-186293 V1.2 (Last Update: 2026-04-14): XML External Entity (XXE) Injection Vulnerability in SIMOTION SCOUT, SIMOTION SCOUT TIA and SINAMICS STARTER</title>
    <updated>2026-04-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-186293.html" rel="alternate"/>
    <summary>&lt;p&gt;SIMOTION SCOUT, SIMOTION SCOUT TIA and SINAMICS STARTER are affected
by an XXE injection vulnerability that could allow an attacker to access
arbitrary application files.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and
recommends to update to the latest versions. Siemens recommends specific
countermeasures for products where fixes are not, or not yet
available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-019200.html</id>
    <title>SSA-019200 V1.0: Multiple Vulnerabilities in SCALANCE W-700 IEEE 802.11n Devices Before V6.6.0</title>
    <updated>2026-04-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-019200.html" rel="alternate"/>
    <summary>&lt;p&gt;SCALANCE W-700 IEEE 802.11n family before V6.6.0 are affected by
multiple vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for SCALANCE W-700 IEEE 802.11n
family and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssb-104599.html</id>
    <title>SSB-104599 V1.1 (Last Update: 2026-04-10): Increasing Cyber Threats to Industrial Control Systems</title>
    <updated>2026-04-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssb-104599.html" rel="alternate"/>
    <summary>
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-246443.html</id>
    <title>SSA-246443 V1.0: Multiple Vulnerabilities in SICAM 8 Products</title>
    <updated>2026-03-26T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-246443.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple SICAM 8 products are affected by multiple vulnerabilities
that could lead to denial of service, namely:&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;SICAM A8000 Device firmware
&lt;ul&gt;
&lt;li&gt;CPCI85 for CP-8031/CP-8050&lt;/li&gt;
&lt;li&gt;SICORE for CP-8010/CP-8012&lt;/li&gt;
&lt;li&gt;RTUM85 for CP-8010/CP-8012&lt;/li&gt;
&lt;/ul&gt;&lt;/li&gt;
&lt;li&gt;SICAM EGS Device firmware
&lt;ul&gt;
&lt;li&gt;CPCI85&lt;/li&gt;
&lt;/ul&gt;&lt;/li&gt;
&lt;li&gt;SICAM S8000
&lt;ul&gt;
&lt;li&gt;SICORE&lt;/li&gt;
&lt;li&gt;RTUM85&lt;/li&gt;
&lt;/ul&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;Siemens has released new versions for the affected products and
recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-452276.html</id>
    <title>SSA-452276 V1.2 (Last Update: 2026-03-19): Eval Injection Vulnerability in SIMATIC S7-1500</title>
    <updated>2026-03-19T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-452276.html" rel="alternate"/>
    <summary>&lt;p&gt;SIMATIC S7-1500 devices contain a vulnerability that could allow an
attacker to inject code by tricking a legitimate user into importing a
specially crafted trace file in the web interface.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and
recommends to update to the latest versions. Siemens is preparing
further fix versions and recommends specific countermeasures for
products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-452276.html</id>
    <title>SSA-452276 V1.1 (Last Update: 2026-03-13): Stored Cross-Site Scripting Vulnerability in SIMATIC S7-1500</title>
    <updated>2026-03-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-452276.html" rel="alternate"/>
    <summary>&lt;p&gt;SIMATIC S7-1500 devices contain a vulnerability that could allow an
attacker to inject code by tricking a legitimate user into importing a
specially crafted trace file in the web interface.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and
recommends to update to the latest versions. Siemens is preparing
further fix versions and recommends specific countermeasures for
products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-975644.html</id>
    <title>SSA-975644 V1.0: Multiple Vulnerabilities in Fortigate NGFW on RUGGEDCOM APE1808 Devices</title>
    <updated>2026-03-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-975644.html" rel="alternate"/>
    <summary>&lt;p&gt;&lt;a href="https://www.fortiguard.com/psirt"&gt;Fortinet has published&lt;/a&gt;
information on vulnerabilities in FORTIOS. This advisory lists the
related Siemens Industrial products.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for RUGGEDCOM APE1808 and
recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-903736.html</id>
    <title>SSA-903736 V1.0: Multiple vulnerabilities in SICAM SIAPP SDK before V2.1.7</title>
    <updated>2026-03-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-903736.html" rel="alternate"/>
    <summary>&lt;p&gt;The SICAM SIAPP SDK contains multiple vulnerabilities that could
allow an attacker to disrupt the customer-developed SIAPP or its
simulation environment. Potential impacts include denial of service
within the SIAPP, corruption of SIAPP data, or exploit the simulation
environment. These vulnerabilities are only exploitable if the API is
used improperly or hardening measures are not applied.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for SICAM SIAPP SDK and recommends
to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-868571.html</id>
    <title>SSA-868571 V1.1 (Last Update: 2026-03-10): Missing Server Certificate Validation in IAM Client</title>
    <updated>2026-03-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-868571.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple Siemens products are affected by improper certificate
validation in IAM Client. This could allow an unauthenticated remote
attacker to perform man in the middle attacks.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and
recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-770770.html</id>
    <title>SSA-770770 V1.8 (Last Update: 2026-03-10): Multiple Vulnerabilities in Fortigate NGFW Before V7.4.7 on RUGGEDCOM APE1808 Devices</title>
    <updated>2026-03-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-770770.html" rel="alternate"/>
    <summary>&lt;p&gt;&lt;a href="https://www.fortiguard.com/psirt"&gt;Fortinet has published&lt;/a&gt;
information on vulnerabilities in FortiOS. This advisory lists the
related Siemens Industrial products.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for RUGGEDCOM APE1808 and
recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssb-751527.html</id>
    <title>SSB-751527 V1.0: Misconfiguration in Mendix Applications</title>
    <updated>2026-03-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssb-751527.html" rel="alternate"/>
    <summary>
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-710408.html</id>
    <title>SSA-710408 V1.1 (Last Update: 2026-03-10): Missing Server Certificate Validation in Siemens Advanced Licensing (SALT) Toolkit</title>
    <updated>2026-03-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-710408.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple Siemens products are affected by improper certificate
validation in Siemens Advanced Licensing (SALT) Toolkit. This could
allow an unauthenticated remote attacker to perform man in the middle
attacks.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and
recommends to update to the latest versions. Siemens recommends
countermeasures for products where fixes are not, or not yet
available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-535115.html</id>
    <title>SSA-535115 V1.1 (Last Update: 2026-03-10): Data Validation Vulnerability in NX Before V2512</title>
    <updated>2026-03-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-535115.html" rel="alternate"/>
    <summary>&lt;p&gt;Siemens NX is affected by missing data validation vulnerability that
could allow an attacker with local access on a compromised system to
interfere with internal data during the PDF export process that could
potentially lead to arbitrary code execution.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version of NX which resolves the data
tampering vulnerability.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-513708.html</id>
    <title>SSA-513708 V1.4 (Last Update: 2026-03-10): Multiple Vulnerabilities in Palo Alto Networks Virtual NGFW on RUGGEDCOM APE1808 Devices</title>
    <updated>2026-03-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-513708.html" rel="alternate"/>
    <summary>&lt;p&gt;Palo Alto Networks has published [1] information on vulnerabilities
in PAN-OS. This advisory lists the related Siemens Industrial products
affected by these vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens is preparing fix versions and recommends countermeasures for
products where fixes are not, or not yet available. Customers are
advised to consult and implement the workarounds provided in Palo Alto
Networks&#8217; upstream security notifications.&lt;/p&gt;
&lt;p&gt;[1] https://security.paloaltonetworks.com/&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-485750.html</id>
    <title>SSA-485750 V1.0: Multiple Vulnerabilities in SIDIS Prime Before V4.0.800</title>
    <updated>2026-03-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-485750.html" rel="alternate"/>
    <summary>&lt;p&gt;SIDIS Prime before V4.0.800 is affected by multiple vulnerabilities
in the components OpenSSL, SQLite, and several Node.js packages as
described below.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version of SIDIS Prime and recommends to
update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-452276.html</id>
    <title>SSA-452276 V1.0: Stored Cross-Site Scripting Vulnerability in SIMATIC S7-1500</title>
    <updated>2026-03-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-452276.html" rel="alternate"/>
    <summary>&lt;p&gt;SIMATIC S7-1500 devices contain a vulnerability that could allow an
attacker to inject code by tricking a legitimate user into importing a
specially crafted trace file in the web interface.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and
recommends to update to the latest versions. Siemens is preparing
further fix versions and recommends specific countermeasures for
products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-430425.html</id>
    <title>SSA-430425 V1.1 (Last Update: 2026-03-10): Multiple Vulnerabilities in SINEC Security Monitor before V4.9.0</title>
    <updated>2026-03-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-430425.html" rel="alternate"/>
    <summary>&lt;p&gt;SINEC Security Monitor before V4.9.0 contains multiple
vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for SINEC Security Monitor and
recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-282044.html</id>
    <title>SSA-282044 V1.7 (Last Update: 2026-03-10): DLL Hijacking Vulnerability in Siemens Web Installer used by the Online Software Delivery</title>
    <updated>2026-03-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-282044.html" rel="alternate"/>
    <summary>&lt;p&gt;The installers used to install several Siemens products are affected
by a DLL hijacking vulnerability. This could allow an attacker to
execute arbitrary code when a legitimate user installs an application
that uses the affected installer component. This vulnerability poses a
risk only during setup and installation phase of the affected
applications downloaded e.g.&#160;via OSD (Online Software Delivery).&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and
recommends using the latest versions during setup and installation.
Siemens is preparing further fix versions and recommends specific
countermeasures for products where fixes are not, or not yet
available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-212953.html</id>
    <title>SSA-212953 V1.3 (Last Update: 2026-03-10): Multiple Vulnerabilities in COMOS</title>
    <updated>2026-03-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-212953.html" rel="alternate"/>
    <summary>&lt;p&gt;COMOS is affected by multiple vulnerabilities that could allow an
attacker to execute arbitrary code or cause denial of service condition,
data infiltration or perform access control violations.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and
recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-201595.html</id>
    <title>SSA-201595 V1.3 (Last Update: 2026-03-10): Privilege Escalation Vulnerability in WIBU CodeMeter Runtime Affecting the Desigo CC Product Family and SENTRON Powermanager</title>
    <updated>2026-03-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-201595.html" rel="alternate"/>
    <summary>&lt;p&gt;Versions V5.0 through V8 of the Desigo CC product family (Desigo CC,
Desigo CC Compact, Desigo CC Connect, Cerberus DMS), as well as the
Desigo CC-based SENTRON Powermanager, are affected by a vulnerability in
the underlying third-party component WIBU Systems CodeMeter Runtime.
Successful exploitation of this vulnerability could allow privilege
escalation.&lt;/p&gt;
&lt;p&gt;Siemens has released instructions how to update the CodeMeter Runtime
component and recommends to apply the update on affected systems.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-126399.html</id>
    <title>SSA-126399 V1.0: Improper Access Control Vulnerability in Heliox EV Chargers</title>
    <updated>2026-03-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-126399.html" rel="alternate"/>
    <summary>&lt;p&gt;Heliox EV Chargers listed below contain improper access control
vulnerability that could allow an attacker to reach unauthorized
services via the charging cable.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and
recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-082556.html</id>
    <title>SSA-082556 V1.4 (Last Update: 2026-03-10): Vulnerabilities in the additional GNU/Linux subsystem of the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP V3.1.5</title>
    <updated>2026-03-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-082556.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities have been identified in the additional
GNU/Linux subsystem of the firmware version V3.1.5 for the SIMATIC
S7-1500 CPU 1518(F)-4 PN/DP MFP (incl.&#160;SIPLUS variant).&lt;/p&gt;
&lt;p&gt;Siemens is preparing fix versions and recommends countermeasures for
products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-027652.html</id>
    <title>SSA-027652 V1.1 (Last Update: 2026-03-10): Privilege Escalation Vulnerability in SINAMICS Drives</title>
    <updated>2026-03-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-027652.html" rel="alternate"/>
    <summary>&lt;p&gt;Siemens SINAMICS G220, SINAMICS S210, and SINAMICS S200 contains a
privilege escalation vulnerability that could allow users to escalate
their privileges.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and
recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-613116.html</id>
    <title>SSA-613116 V1.2 (Last Update: 2026-02-24): Multiple Vulnerabilities in Third-Party Components in SINEC OS before V3.1</title>
    <updated>2026-02-24T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-613116.html" rel="alternate"/>
    <summary>&lt;p&gt;SINEC OS before V3.1 contains third-party components with multiple
vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and
recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-355557.html</id>
    <title>SSA-355557 V1.2 (Last Update: 2026-02-24): Multiple Vulnerabilities in Third-Party Components in SINEC OS before V3.2</title>
    <updated>2026-02-24T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-355557.html" rel="alternate"/>
    <summary>&lt;p&gt;SINEC OS before V3.2 contains third-party components with multiple
vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and
recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-089022.html</id>
    <title>SSA-089022 V1.1 (Last Update: 2026-02-24): Multiple Vulnerabilities in Third-Party Components in SINEC OS before V3.3</title>
    <updated>2026-02-24T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-089022.html" rel="alternate"/>
    <summary>&lt;p&gt;SINEC OS before V3.3 contains third-party components with multiple
vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and
recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-613116.html</id>
    <title>SSA-613116 V1.1 (Last Update: 2026-02-12): Multiple Vulnerabilities in Third-Party Components in SINEC OS before V3.1</title>
    <updated>2026-02-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-613116.html" rel="alternate"/>
    <summary>&lt;p&gt;SINEC OS before V3.1 contains third-party components with multiple
vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and
recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-355557.html</id>
    <title>SSA-355557 V1.1 (Last Update: 2026-02-12): Multiple Vulnerabilities in Third-Party Components in SINEC OS before V3.2</title>
    <updated>2026-02-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-355557.html" rel="alternate"/>
    <summary>&lt;p&gt;SINEC OS before V3.2 contains third-party components with multiple
vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and
recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-965753.html</id>
    <title>SSA-965753 V1.0: Multiple File Parsing Vulnerabilities in Simcenter Femap and Nastran Before V2512</title>
    <updated>2026-02-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-965753.html" rel="alternate"/>
    <summary>&lt;p&gt;Siemens Simcenter Femap and Nastran is affected by multiple file
parsing vulnerabilities that could be triggered when the application
reads files in NDB and XDB formats. If a user is tricked to open a
malicious file with any of the affected products, this could lead the
application to crash or potentially lead to arbitrary code
execution.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and
recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-864900.html</id>
    <title>SSA-864900 V1.7 (Last Update: 2026-02-10): Multiple Vulnerabilities in Fortigate NGFW on RUGGEDCOM APE1808 Devices</title>
    <updated>2026-02-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-864900.html" rel="alternate"/>
    <summary>&lt;p&gt;&lt;a href="https://www.fortiguard.com/psirt"&gt;Fortinet has published&lt;/a&gt;
information on vulnerabilities in FortiOS. This advisory lists the
related Siemens Industrial products.&lt;/p&gt;
&lt;p&gt;Siemens is preparing fix versions and recommends to consult and
implement the workarounds provided in Fortinet&#8217;s upstream security
notifications.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-783261.html</id>
    <title>SSA-783261 V1.1 (Last Update: 2026-02-10): Denial of Service Vulnerability in Automation License Manager (ALM) Before V5.2</title>
    <updated>2026-02-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-783261.html" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability was identified in the Automation License Manager
software before V5.2 that could be triggered by sending specially
crafted packets to port 4410/tcp of an affected system. This could cause
a denial of service preventing legitimate users from using the
system.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for Automation License Manager and
recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-674753.html</id>
    <title>SSA-674753 V1.1 (Last Update: 2026-02-10): Denial-of-Service Vulnerability in ET 200 Devices</title>
    <updated>2026-02-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-674753.html" rel="alternate"/>
    <summary>&lt;p&gt;Siemens ET 200 devices contain a denial-of-service vulnerability that
could be triggered by sending a valid S7 protocol Disconnect Request
(COTP DR TPDU), causing the device to become unresponsive and require a
power cycle to recover.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and
recommends to update to the latest versions. Siemens is preparing
further fix versions and recommends specific countermeasures for
products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-625934.html</id>
    <title>SSA-625934 V1.0: Improper Access Control Vulnerability in the Webhooks Implementation of Siveillance Video Management Servers</title>
    <updated>2026-02-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-625934.html" rel="alternate"/>
    <summary>&lt;p&gt;The Webhooks implementation of Siveillance Video Management Servers
contains a vulnerability that could allow an authenticated remote
attacker with read-only privileges to achieve full access to Webhooks
API.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and
recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-599451.html</id>
    <title>SSA-599451 V1.1 (Last Update: 2026-02-10): Multiple Vulnerabilities in SiPass integrated</title>
    <updated>2026-02-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-599451.html" rel="alternate"/>
    <summary>&lt;p&gt;SiPass integrated contains multiple vulnerabilities that could allow
an unauthenticated remote attacker to exploit user accounts, manipulate
data, impersonate users, or achieve arbitrary code execution on the
SiPass integrated server.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for SiPass integrated and
recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-535115.html</id>
    <title>SSA-535115 V1.0: Data Validation Vulnerability in NX Before V2512</title>
    <updated>2026-02-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-535115.html" rel="alternate"/>
    <summary>&lt;p&gt;Siemens NX is affected by missing data validation vulnerability that
could allow an attacker with local access on a compromised system to
interfere with internal data during the PDF export process that could
potentially lead to arbitrary code execution.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version of NX which resolves the data
tampering vulnerability.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-513708.html</id>
    <title>SSA-513708 V1.3 (Last Update: 2026-02-10): Multiple Vulnerabilities in Palo Alto Networks Virtual NGFW on RUGGEDCOM APE1808 Devices</title>
    <updated>2026-02-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-513708.html" rel="alternate"/>
    <summary>&lt;p&gt;Palo Alto Networks has published [1] information on vulnerabilities
in PAN-OS. This advisory lists the related Siemens Industrial products
affected by these vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens is preparing fix versions and recommends countermeasures for
products where fixes are not, or not yet available. Customers are
advised to consult and implement the workarounds provided in Palo Alto
Networks&#8217; upstream security notifications.&lt;/p&gt;
&lt;p&gt;[1] https://security.paloaltonetworks.com/&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-507364.html</id>
    <title>SSA-507364 V1.0: Heap Based Buffer Overflow Vulnerability in WIBU CodeMeter Runtime Affecting the Desigo CC Product Family and SENTRON Powermanager</title>
    <updated>2026-02-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-507364.html" rel="alternate"/>
    <summary>&lt;p&gt;Versions V6.0 through V8 QU1 of the Desigo CC product family (Desigo
CC, Desigo CC Compact, Desigo CC Connect, Cerberus DMS), as well as the
Desigo CC-based SENTRON Powermanager, are affected by a vulnerability in
the underlying third-party component WIBU Systems CodeMeter Runtime.
Successful exploitation of this vulnerability could lead to code
execution in the context of the current process.&lt;/p&gt;
&lt;p&gt;Siemens has released instructions how to update the CodeMeter Runtime
component and recommends to apply the update on affected systems.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssb-491780.html</id>
    <title>SSB-491780 V1.0: Missing anti-tamper protection in SIPORT Desktop Client Application</title>
    <updated>2026-02-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssb-491780.html" rel="alternate"/>
    <summary>
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-445819.html</id>
    <title>SSA-445819 V1.0: Out of Bounds Read in PS/IGES Parasolid Translator Component in Solid Edge</title>
    <updated>2026-02-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-445819.html" rel="alternate"/>
    <summary>&lt;p&gt;Solid Edge uses PS/IGES Parasolid Translator Component that contains
an out of bounds read that could be triggered when the application reads
files in IGS file formats. If a user is tricked to open a malicious file
with any of the affected products, this could lead the application to
crash or potentially lead to arbitrary code execution.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for Solid Edge and recommends to
update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-311973.html</id>
    <title>SSA-311973 V1.0: Multiple Local Privilege Escalation Vulnerabilities in SINEC NMS and User Management Component (UMC)</title>
    <updated>2026-02-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-311973.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple Siemens products are affected by two local privilege
escalation vulnerabilities which could allow an low privileged attacker
to load malicious DLLs, potentially leading to arbitrary code execution
with elevated privileges.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and
recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-282044.html</id>
    <title>SSA-282044 V1.6 (Last Update: 2026-02-10): DLL Hijacking Vulnerability in Siemens Web Installer used by the Online Software Delivery</title>
    <updated>2026-02-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-282044.html" rel="alternate"/>
    <summary>&lt;p&gt;The installers used to install several Siemens products are affected
by a DLL hijacking vulnerability. This could allow an attacker to
execute arbitrary code when a legitimate user installs an application
that uses the affected installer component. This vulnerability poses a
risk only during setup and installation phase of the affected
applications downloaded e.g.&#160;via OSD (Online Software Delivery).&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and
recommends using the latest versions during setup and installation.
Siemens is preparing further fix versions and recommends specific
countermeasures for products where fixes are not, or not yet
available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-265688.html</id>
    <title>SSA-265688 V2.1 (Last Update: 2026-02-10): Vulnerabilities in the additional GNU/Linux subsystem of the SIMATIC S7-1500 TM MFP V1.1</title>
    <updated>2026-02-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-265688.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities have been identified in the additional
GNU/Linux subsystem of the SIMATIC S7-1500 TM MFP V1.1.&lt;/p&gt;
&lt;p&gt;Siemens is preparing fix versions and recommends specific
countermeasures for products where fixes are not, or not yet
available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-216014.html</id>
    <title>SSA-216014 V1.3 (Last Update: 2026-02-10): Vulnerabilities in EFI variable of SIMATIC IPCs, SIMATIC Tablet PCs, and SIMATIC Field PGs</title>
    <updated>2026-02-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-216014.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities has been identified in Siemens SIMATIC IPCs,
SIMATIC Tablet PCs, and SIMATIC Field PGs that can allow an
authenticated attacker to alter the secure boot and password
configurations.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions of BIOS for several affected
products and recommends to update to the latest versions. Siemens is
preparing further fix versions and recommends specific countermeasures
for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-212953.html</id>
    <title>SSA-212953 V1.2 (Last Update: 2026-02-10): Multiple Vulnerabilities in COMOS</title>
    <updated>2026-02-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-212953.html" rel="alternate"/>
    <summary>&lt;p&gt;COMOS is affected by multiple vulnerabilities that could allow an
attacker to execute arbitrary code or cause denial of service condition,
data infiltration or perform access control violations.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and
recommends to update to the latest versions. Siemens is preparing
further fix versions and recommends countermeasures for products where
fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-130874.html</id>
    <title>SSA-130874 V1.4 (Last Update: 2026-02-10): Buffer Overflow Vulnerability in SCALANCE X Switches</title>
    <updated>2026-02-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-130874.html" rel="alternate"/>
    <summary>&lt;p&gt;The embedded web server on affected devices contains a buffer
overflow vulnerability. This could allow remote attackers to cause a
denial of service (device reboot) or possibly execute arbitrary code via
a malformed URL.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and
recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-082556.html</id>
    <title>SSA-082556 V1.3 (Last Update: 2026-02-10): Vulnerabilities in the additional GNU/Linux subsystem of the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP V3.1.5</title>
    <updated>2026-02-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-082556.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities have been identified in the additional
GNU/Linux subsystem of the firmware version V3.1.5 for the SIMATIC
S7-1500 CPU 1518(F)-4 PN/DP MFP (incl.&#160;SIPLUS variant).&lt;/p&gt;
&lt;p&gt;Siemens is preparing fix versions and recommends countermeasures for
products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-035571.html</id>
    <title>SSA-035571 V1.0: Cross Site Scripting Vulnerability in Polarion Before V2506</title>
    <updated>2026-02-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-035571.html" rel="alternate"/>
    <summary>&lt;p&gt;Polarion before V2506 contains a vulnerability that could allow
authenticated remote attackers to conduct cross-site scripting
attacks.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and
recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-089022.html</id>
    <title>SSA-089022 V1.0: Multiple Vulnerabilities in Third-Party Components in SINEC OS before V3.3</title>
    <updated>2026-01-28T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-089022.html" rel="alternate"/>
    <summary>&lt;p&gt;SINEC OS before V3.3 contains third-party components with multiple
vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and
recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-864900.html</id>
    <title>SSA-864900 V1.6 (Last Update: 2026-01-22): Multiple Vulnerabilities in Fortigate NGFW on RUGGEDCOM APE1808 Devices</title>
    <updated>2026-01-22T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-864900.html" rel="alternate"/>
    <summary>&lt;p&gt;&lt;a href="https://www.fortiguard.com/psirt"&gt;Fortinet has published&lt;/a&gt;
information on vulnerabilities in FortiOS. This advisory lists the
related Siemens Industrial products.&lt;/p&gt;
&lt;p&gt;Siemens is preparing fix versions and recommends to consult and
implement the workarounds provided in Fortinet&#8217;s upstream security
notifications.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-978177.html</id>
    <title>SSA-978177 V1.3 (Last Update: 2026-01-13): Vulnerability in Nozomi Guardian/CMC Before 25.4.0 on RUGGEDCOM APE1808 Devices</title>
    <updated>2026-01-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-978177.html" rel="alternate"/>
    <summary>&lt;p&gt;Nozomi Networks has published information on vulnerabilities in &lt;a href="https://security.nozominetworks.com/"&gt;Nozomi Guardian/CMC&lt;/a&gt;. This advisory lists the related Siemens Industrial products affected by these vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for RUGGEDCOM APE1808 and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-928984.html</id>
    <title>SSA-928984 V1.4 (Last Update: 2026-01-13): Heap-based Buffer Overflow Vulnerability in User Management Component (UMC)</title>
    <updated>2026-01-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-928984.html" rel="alternate"/>
    <summary>&lt;p&gt;Siemens User Management Component (UMC) is affected by a heap-based buffer overflow vulnerability which could allow an unauthenticated remote attacker arbitrary code execution.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-912274.html</id>
    <title>SSA-912274 V1.1 (Last Update: 2026-01-13): Multiple Vulnerabilities in RUGGEDCOM ROX Before V2.17</title>
    <updated>2026-01-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-912274.html" rel="alternate"/>
    <summary>&lt;p&gt;Devices based on RUGGEDCOM ROX before V2.17 contain multiple high severity vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for RUGGEDCOM ROX II family and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-864900.html</id>
    <title>SSA-864900 V1.5 (Last Update: 2026-01-13): Multiple Vulnerabilities in Fortigate NGFW on RUGGEDCOM APE1808 Devices</title>
    <updated>2026-01-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-864900.html" rel="alternate"/>
    <summary>&lt;p&gt;&lt;a href="https://www.fortiguard.com/psirt"&gt;Fortinet has published&lt;/a&gt; information on vulnerabilities in FortiOS. This advisory lists the related Siemens Industrial products.&lt;/p&gt;
&lt;p&gt;Siemens is preparing fix versions and recommends to consult and implement the workarounds provided in Fortinet&#8217;s upstream security notifications.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-858251.html</id>
    <title>SSA-858251 V1.2 (Last Update: 2026-01-13): Authentication Bypass Vulnerabilities in OPC UA</title>
    <updated>2026-01-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-858251.html" rel="alternate"/>
    <summary>&lt;p&gt;The products listed below contain two authentication bypass vulnerabilities that could allow an attacker to gain access to the data managed by the server.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-832273.html</id>
    <title>SSA-832273 V2.1 (Last Update: 2026-01-13): Multiple Vulnerabilities in Fortigate NGFW Before V7.4.3 on RUGGEDCOM APE1808 Devices</title>
    <updated>2026-01-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-832273.html" rel="alternate"/>
    <summary>&lt;p&gt;&lt;a href="https://www.fortiguard.com/psirt"&gt;Fortinet has published&lt;/a&gt; information on vulnerabilities in FORTIOS. This advisory lists the related Siemens Industrial products.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for RUGGEDCOM APE1808 and recommends to update to the latest version. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-827968.html</id>
    <title>SSA-827968 V1.0: Vulnerability in Nozomi Guardian/CMC on RUGGEDCOM APE1808 Devices</title>
    <updated>2026-01-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-827968.html" rel="alternate"/>
    <summary>&lt;p&gt;Nozomi Networks has published information on vulnerabilities in &lt;a href="https://security.nozominetworks.com/"&gt;Nozomi Guardian/CMC&lt;/a&gt;. This advisory lists the related Siemens Industrial products affected by these vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens is preparing fix versions and recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-698820.html</id>
    <title>SSA-698820 V2.0 (Last Update: 2026-01-13): Multiple Vulnerabilities in Fortigate NGFW Before V7.4.4 on RUGGEDCOM APE1808 Devices</title>
    <updated>2026-01-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-698820.html" rel="alternate"/>
    <summary>&lt;p&gt;&lt;a href="https://www.fortiguard.com/psirt"&gt;Fortinet has published&lt;/a&gt; information on vulnerabilities in FORTIOS. This advisory lists the related Siemens Industrial products.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version of Fortigate NGFW for RUGGEDCOM APE1808 and recommends to update to the latest version. Siemens recommends to consult and implement the workarounds provided in Fortinet&#8217;s upstream security notifications.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-693776.html</id>
    <title>SSA-693776 V1.1 (Last Update: 2026-01-13): Multiple Vulnerabilities in Industrial Communication Devices based on SINEC OS before V3.2</title>
    <updated>2026-01-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-693776.html" rel="alternate"/>
    <summary>&lt;p&gt;Several Industrial Communication Devices based on SINEC OS before V3.2 contain multiple vulnerabilities that could allow an attacker to circumvent authorization checks and perform actions that exceed the permissions of the &#8220;guest&#8221; role.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-674753.html</id>
    <title>SSA-674753 V1.0: Denial-of-Service Vulnerability in ET 200SP</title>
    <updated>2026-01-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-674753.html" rel="alternate"/>
    <summary>&lt;p&gt;Siemens ET 200SP contains a denial-of-service vulnerability that could be triggered by sending a valid S7 protocol Disconnect Request (COTP DR TPDU), causing the device to become unresponsive and require a power cycle to recover.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-366067.html</id>
    <title>SSA-366067 V1.7 (Last Update: 2026-01-13): Multiple Vulnerabilities in Fortigate NGFW Before V7.4.1 on RUGGEDCOM APE1808 Devices</title>
    <updated>2026-01-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-366067.html" rel="alternate"/>
    <summary>&lt;p&gt;&lt;a href="https://www.fortiguard.com/psirt"&gt;Fortinet has published&lt;/a&gt; information on vulnerabilities in FORTIOS. This advisory lists the related Siemens Industrial products.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for RUGGEDCOM APE1808 and recommends to update to the latest version. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-365200.html</id>
    <title>SSA-365200 V1.1 (Last Update: 2026-01-13): Google Chrome Type Confusion Vulnerability in Siemens Products</title>
    <updated>2026-01-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-365200.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple Siemens products are affected by a type confusion vulnerability in Google Chrome prior to 138.0.7204.96. This could allow a remote attacker to perform arbitrary code execution via a crafted HTML page.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for Industrial Edge App Publisher and recommends to update to the latest version. Siemens is preparing further fix versions and recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-364175.html</id>
    <title>SSA-364175 V1.7 (Last Update: 2026-01-13): Multiple Vulnerabilities in Palo Alto Networks Virtual NGFW on RUGGEDCOM APE1808 Devices Before V11.1.4-h1</title>
    <updated>2026-01-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-364175.html" rel="alternate"/>
    <summary>&lt;p&gt;Palo Alto Networks has published [1] information on vulnerabilities in PAN-OS. This advisory lists the related Siemens Industrial products affected by these vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends specific countermeasures for products where updates are not, or not yet available. Customers are advised to consult and implement the workarounds provided in Palo Alto Networks&#8217; upstream security notifications.&lt;/p&gt;
&lt;p&gt;[1] &lt;a href="https://security.paloaltonetworks.com/" class="uri"&gt;https://security.paloaltonetworks.com/&lt;/a&gt;&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-282044.html</id>
    <title>SSA-282044 V1.5 (Last Update: 2026-01-13): DLL Hijacking Vulnerability in Siemens Web Installer used by the Online Software Delivery</title>
    <updated>2026-01-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-282044.html" rel="alternate"/>
    <summary>&lt;p&gt;The installers used to install several Siemens products are affected by a DLL hijacking vulnerability. This could allow an attacker to execute arbitrary code when a legitimate user installs an application that uses the affected installer component. This vulnerability poses a risk only during setup and installation phase of the affected applications downloaded e.g.&#160;via OSD (Online Software Delivery).&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends using the latest versions during setup and installation. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-212953.html</id>
    <title>SSA-212953 V1.1 (Last Update: 2026-01-13): Multiple Vulnerabilities in COMOS</title>
    <updated>2026-01-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-212953.html" rel="alternate"/>
    <summary>&lt;p&gt;COMOS is affected by multiple vulnerabilities that could allow an attacker to execute arbitrary code or cause denial of service condition, data infiltration or perform access control violations.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-201595.html</id>
    <title>SSA-201595 V1.2 (Last Update: 2026-01-13): Privilege Escalation Vulnerability in WIBU CodeMeter Runtime Affecting the Desigo CC Product Family and SENTRON Powermanager</title>
    <updated>2026-01-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-201595.html" rel="alternate"/>
    <summary>&lt;p&gt;Versions V5.0 through V8 of the Desigo CC product family (Desigo CC, Desigo CC Compact, Desigo CC Connect, Cerberus DMS), as well as the Desigo CC-based SENTRON Powermanager, are affected by a vulnerability in the underlying third-party component WIBU Systems CodeMeter Runtime. Successful exploitation of this vulnerability could allow privilege escalation.&lt;/p&gt;
&lt;p&gt;Siemens has released instructions how to update the CodeMeter Runtime component and recommends to apply the update on affected systems.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-192617.html</id>
    <title>SSA-192617 V1.0: Local Privilege Escalation Vulnerability in TeleControl Server Basic Before V3.1.2.4</title>
    <updated>2026-01-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-192617.html" rel="alternate"/>
    <summary>&lt;p&gt;TeleControl Server Basic before V3.1.2.4 contains a local privilege escalation vulnerability that could allow an attacker to run arbitrary code with elevated privileges.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for TeleControl Server Basic and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-082556.html</id>
    <title>SSA-082556 V1.2 (Last Update: 2026-01-13): Vulnerabilities in the additional GNU/Linux subsystem of the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP V3.1.5</title>
    <updated>2026-01-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-082556.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities have been identified in the additional GNU/Linux subsystem of the firmware version V3.1.5 for the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP (incl.&#160;SIPLUS variant).&lt;/p&gt;
&lt;p&gt;Siemens is preparing fix versions and recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-014678.html</id>
    <title>SSA-014678 V1.0: Authorization Bypass Vulnerability in Industrial Edge Device Kit</title>
    <updated>2026-01-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-014678.html" rel="alternate"/>
    <summary>&lt;p&gt;Users of Industrial Edge Devices are advised to consult the respective Security Advisories for their devices (for Siemens Industrial Edge devices see Additional Information).&lt;/p&gt;
&lt;p&gt;Industrial Edge Device Kit contains an authorization bypass vulnerability that could facilitate an unauthenticated remote attacker to circumvent authentication and impersonate a legitimate user.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-001536.html</id>
    <title>SSA-001536 V1.0: Authorization Bypass Vulnerability in Siemens Industrial Edge Devices</title>
    <updated>2026-01-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-001536.html" rel="alternate"/>
    <summary>&lt;p&gt;Siemens Industrial Edge Devices contain an authorization bypass vulnerability that could facilitate an unauthenticated remote attacker to circumvent authentication and impersonate a legitimate user.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-512988.html</id>
    <title>SSA-512988 V1.0: File Parsing Vulnerability in Simcenter Femap Before V2512</title>
    <updated>2025-12-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-512988.html" rel="alternate"/>
    <summary>&lt;p&gt;Siemens Simcenter Femap versions before V2512 are affected by uninitialized memory vulnerability that could be triggered when the application reads files in SLDPRT format. If a user is tricked to open a malicious file with the affected application, an attacker could leverage the vulnerability to perform remote code execution in the context of the current process.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for Simcenter Femap and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-915282.html</id>
    <title>SSA-915282 V1.0: Denial of service Vulnerability in Interniche IP-Stack based Industrial Devices</title>
    <updated>2025-12-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-915282.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple Industrial products are affected by a vulnerability in the
Interniche IP-Stack. The affected products do not properly enforce TCP
sequence number validation in specific scenarios but accept values
within a broad range. This could allow an unauthenticated remote
attacker e.g.&#160;to interfere with connection setup, potentially leading to
a denial of service. The attack succeeds only if an attacker can inject
IP packets with spoofed addresses at precisely timed moments, and it
affects only TCP-based services.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and
recommends to update to the latest versions. Siemens is preparing
further fix versions and recommends specific countermeasures for
products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-912274.html</id>
    <title>SSA-912274 V1.0: Multiple Vulnerabilities in RUGGEDCOM ROX Before V2.17</title>
    <updated>2025-12-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-912274.html" rel="alternate"/>
    <summary>&lt;p&gt;Devices based on RUGGEDCOM ROX before V2.17 contain multiple high
severity vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for RUGGEDCOM ROX II family and
recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-882673.html</id>
    <title>SSA-882673 V1.0: Multiple Vulnerabilities in SINEC Security Monitor before V4.10.0</title>
    <updated>2025-12-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-882673.html" rel="alternate"/>
    <summary>&lt;p&gt;SINEC Security Monitor before V4.10.0 contains multiple
vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for SINEC Security Monitor and
recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-868571.html</id>
    <title>SSA-868571 V1.0: Missing Server Certificate Validation in IAM Client</title>
    <updated>2025-12-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-868571.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple Siemens products are affected by improper certificate
validation in IAM Client. This could allow an unauthenticated remote
attacker to perform man in the middle attacks.&lt;/p&gt;
&lt;p&gt;Siemens is preparing fix versions and recommends countermeasures for
products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-800126.html</id>
    <title>SSA-800126 V1.2 (Last Update: 2025-12-09): Deserialization Vulnerability in Siemens Engineering Platforms before V20</title>
    <updated>2025-12-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-800126.html" rel="alternate"/>
    <summary>&lt;p&gt;Affected products do not properly sanitize user-controllable input
when parsing files. This could allow an attacker to cause a type
confusion and execute arbitrary code within the affected
application.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and
recommends to update to the latest versions. Siemens is preparing
further fix versions and recommends specific countermeasures for
products where fixes are not, or not yet available.&lt;/p&gt;
&lt;p&gt;Siemens has released products based on the Totally Integrated
Automation Portal (TIA Portal) V20 which are not affected by
CVE-2024-49849. See the chapter &#8220;Additional Information&#8221; below for more
details.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-763474.html</id>
    <title>SSA-763474 V1.0: Denial of Service Vulnerability in Ruggedcom ROS devices before V5.10.1</title>
    <updated>2025-12-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-763474.html" rel="alternate"/>
    <summary>&lt;p&gt;Ruggedcom ROS devices contain a temporary denial of service
vulnerability that could allow an attacker to crash and restart the
device.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and
recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-734261.html</id>
    <title>SSA-734261 V1.0: Authentication Bypass Vulnerability in Energy Services Using Elspec G5DFR</title>
    <updated>2025-12-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-734261.html" rel="alternate"/>
    <summary>&lt;p&gt;Energy Services from Siemens (previously known as Managed
Applications and Services), sell solutions using Elspec G5 devices that
allows a person with physical access to the device to reset the Admin
password by inserting a USB drive (containing a publicly documented
reset string) into a USB port.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-723487.html</id>
    <title>SSA-723487 V1.8 (Last Update: 2025-12-09): RADIUS Protocol Susceptible to Forgery Attacks (CVE-2024-3596) - Impact to SCALANCE, RUGGEDCOM and Related Products</title>
    <updated>2025-12-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-723487.html" rel="alternate"/>
    <summary>&lt;p&gt;This advisory documents the impact of CVE-2024-3596 (also dubbed
&#8220;Blastradius&#8221;), a vulnerability in the RADIUS protocol, to SCALANCE,
RUGGEDCOM and related products.&lt;/p&gt;
&lt;p&gt;The vulnerability could allow on-path attackers, located between a
Network Access Server (the RADIUS client, e.g., SCALANCE or RUGGEDCOM
devices) and a RADIUS server (e.g., SINEC INS), to forge Access-Request
packets in a way that enables them to modify the corresponding server
response packet at will, e.g., turning an &#8220;Access-Reject&#8221; message into
an &#8220;Access-Accept&#8221;. This would cause the Network Access Server to grant
the attackers access to the network with the attackers desired
authorization (and without the need of knowing or guessing legitimate
access credentials).&lt;/p&gt;
&lt;p&gt;Further details incl.&#160;external references can be found in the chapter
&#8220;Additional Information&#8221;. Siemens has released new versions for several
affected products and recommends to update to the latest versions, and
to configure the updated systems as recommended in the chapter
&#8220;Additional Information&#8221;. Siemens is preparing further fix versions and
recommends specific countermeasures for products where fixes are not, or
not yet available. See chapter &#8220;Additional Information&#8221; for details.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-710408.html</id>
    <title>SSA-710408 V1.0: Missing Server Certificate Validation in Siemens Advanced Licensing (SALT) Toolkit</title>
    <updated>2025-12-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-710408.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple Siemens products are affected by improper certificate
validation in Siemens Advanced Licensing (SALT) Toolkit. This could
allow an unauthenticated remote attacker to perform man in the middle
attacks.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and
recommends to update to the latest versions. Siemens recommends
countermeasures for products where fixes are not, or not yet
available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-693808.html</id>
    <title>SSA-693808 V1.2 (Last Update: 2025-12-09): Deserialization Vulnerability in Siemens Engineering Platforms</title>
    <updated>2025-12-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-693808.html" rel="alternate"/>
    <summary>&lt;p&gt;Affected products do not properly restrict access permissions to a
local Windows Named Pipe and do not properly sanitize user-controllable
input sent to that Named Pipe. This could allow a local authenticated
attacker to cause a type confusion and execute arbitrary code within the
affected application and its privileges.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and
recommends to update to the latest versions. Siemens is preparing
further fix versions and recommends specific countermeasures for
products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-673996.html</id>
    <title>SSA-673996 V1.3 (Last Update: 2025-12-09): Buffer Overflow Vulnerability in Third-Party Component in SICAM and SITIPE Products</title>
    <updated>2025-12-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-673996.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple SICAM products are affected by buffer overflow vulnerability
in the IEC 61850 Client libraries from Triangle MicroWorks that could
allow an unauthenticated remote attacker to create a denial of service
condition by sending specially crafted MMS messages.&lt;/p&gt;
&lt;p&gt;Affected SICAM and SITIPE products:&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;SICAM A8000 Device firmware
&lt;ul&gt;
&lt;li&gt;ET85 for CP-8000/CP-8021/CP-8022&lt;/li&gt;
&lt;li&gt;ETI5 for CP-8031/CP-8050&lt;/li&gt;
&lt;/ul&gt;&lt;/li&gt;
&lt;li&gt;SICAM EGS Device firmware
&lt;ul&gt;
&lt;li&gt;ETI5&lt;/li&gt;
&lt;/ul&gt;&lt;/li&gt;
&lt;li&gt;SICAM S8000
&lt;ul&gt;
&lt;li&gt;ETI5&lt;/li&gt;
&lt;/ul&gt;&lt;/li&gt;
&lt;li&gt;SICAM SCC&lt;/li&gt;
&lt;li&gt;SITIPE AT&lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;Siemens has released new versions for the affected products and
recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-626856.html</id>
    <title>SSA-626856 V1.0: Multiple Vulnerabilities in SINEMA Remote Connect Sever Before V3.2 SP4</title>
    <updated>2025-12-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-626856.html" rel="alternate"/>
    <summary>&lt;p&gt;SINEMA Remote Connect Server Before V3.2 SP4 is affected by multiple
vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for SINEMA Remote Connect Server
and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-493396.html</id>
    <title>SSA-493396 V1.2 (Last Update: 2025-12-09): Deserialization Vulnerability in Siemens Engineering Platforms</title>
    <updated>2025-12-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-493396.html" rel="alternate"/>
    <summary>&lt;p&gt;Affected products do not properly sanitize user-controllable input
when parsing project files. This could allow an attacker to cause a type
confusion and execute arbitrary code within the affected
application.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and
recommends to update to the latest versions. Siemens is preparing
further fix versions and recommends specific countermeasures for
products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-471761.html</id>
    <title>SSA-471761 V1.0: Multiple Vulnerabilities in SICAM T Before V3.0</title>
    <updated>2025-12-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-471761.html" rel="alternate"/>
    <summary>&lt;p&gt;SICAM T before V3.0 contain multiple vulnerabilities. These include
critical issues such as improper parameter and input validation, various
Cross-Site Scripting (XSS) vulnerabilities , and a Cross-Site Request
Forgery (CSRF) vulnerability . Additional weaknesses comprise session
fixation, authentication and authorization bypasses , missing HTTPS
protection, and missing cookie protection flags. These issues could
potentially lead to remote code execution, denial of service,
unauthorized access to web-interface functionality, session hijacking,
impersonation of legitimate users, or allow an attacker to perform
arbitrary actions on the device on behalf of a user.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for SICAM T and recommends to
update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-420375.html</id>
    <title>SSA-420375 V1.0: Improper Integrity Check of Firmware Updates in Building X - Security Manager Edge Controller (ACC-AP)</title>
    <updated>2025-12-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-420375.html" rel="alternate"/>
    <summary>&lt;p&gt;Building X - Security Manager Edge Controller (ACC-AP) devices do not
properly check the integrity of firmware updates. This could allow an
attacker to upload a maliciously modified firmware onto the device.&lt;/p&gt;
&lt;p&gt;Siemens is preparing fix versions and recommends specific
countermeasures for products where fixes are not, or not yet
available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-416652.html</id>
    <title>SSA-416652 V1.0: Multiple Vulnerabilities in SIMATIC CN 4100 Before V4.0.1</title>
    <updated>2025-12-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-416652.html" rel="alternate"/>
    <summary>&lt;p&gt;SIMATIC CN 4100 contains multiple vulnerabilities which could
potentially lead to a compromise in availability, integrity and
confidentiality.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for SIMATIC CN 4100 and recommends
to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-408105.html</id>
    <title>SSA-408105 V1.3 (Last Update: 2025-12-09): Buffer Overflow Vulnerabilities in OpenSSL 3.0 Affecting Siemens Products</title>
    <updated>2025-12-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-408105.html" rel="alternate"/>
    <summary>&lt;p&gt;The openSSL component, versions 3.0.0 through 3.0.6, contains two
buffer overflow vulnerabilities (CVE-2022-3602, CVE-2022-3786) in the
X.509 certificate verification [0]. They could allow an attacker to
create a denial of service condition or execute arbitrary code on a
vulnerable TLS server (if the server requests client certificate
authentication), or on a vulnerable TLS client.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and
recommends to update to the latest versions. Siemens is preparing
further updates and recommends specific countermeasures for products
where updates are not, or not yet available.&lt;/p&gt;
&lt;p&gt;[0] &lt;a href="https://www.openssl.org/news/secadv/20221101.txt"
class="uri"&gt;https://www.openssl.org/news/secadv/20221101.txt&lt;/a&gt;&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-392859.html</id>
    <title>SSA-392859 V1.2 (Last Update: 2025-12-09): Local Arbitrary Code Execution Vulnerability in Siemens Engineering Platforms before V20</title>
    <updated>2025-12-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-392859.html" rel="alternate"/>
    <summary>&lt;p&gt;Affected products contain a local arbitrary code execution
vulnerability that could allow an attacker to perform actions against
the operation system of that environment.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and
recommends to update to the latest versions. Siemens is preparing
further fix versions and recommends countermeasures for products where
fixes are not, or not yet available.&lt;/p&gt;
&lt;p&gt;Siemens has released products based on the Totally Integrated
Automation Portal (TIA Portal) V20 which are not affected by
CVE-2024-52051. See the chapter &#8220;Additional Information&#8221; below for more
details.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-356310.html</id>
    <title>SSA-356310 V1.0: Multiple Vulnerabilities in Gridscale X Prepay</title>
    <updated>2025-12-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-356310.html" rel="alternate"/>
    <summary>&lt;p&gt;Gridscale X Prepay contains multiple vulnerabilities that could allow
an attacker to enumerate valid user names and to bypass locked-out user
sessions.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for Gridscale X Prepay and
recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-282044.html</id>
    <title>SSA-282044 V1.4 (Last Update: 2025-12-09): DLL Hijacking Vulnerability in Siemens Web Installer used by the Online Software Delivery</title>
    <updated>2025-12-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-282044.html" rel="alternate"/>
    <summary>&lt;p&gt;The installers used to install several Siemens products are affected
by a DLL hijacking vulnerability. This could allow an attacker to
execute arbitrary code when a legitimate user installs an application
that uses the affected installer component. This vulnerability poses a
risk only during setup and installation phase of the affected
applications downloaded e.g.&#160;via OSD (Online Software Delivery).&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and
recommends using the latest versions during setup and installation.
Siemens is preparing further fix versions and recommends specific
countermeasures for products where fixes are not, or not yet
available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-212953.html</id>
    <title>SSA-212953 V1.0: Multiple Vulnerabilities in COMOS</title>
    <updated>2025-12-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-212953.html" rel="alternate"/>
    <summary>&lt;p&gt;COMOS is affected by multiple vulnerabilities that could allow an
attacker to execute arbitrary code or cause denial of service condition,
data infiltration or perform access control violations.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and
recommends to update to the latest versions. Siemens is preparing
further fix versions and recommends countermeasures for products where
fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-202008.html</id>
    <title>SSA-202008 V1.0: Multiple Vulnerabilities in Ruggedcom Rox Before V2.17.0</title>
    <updated>2025-12-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-202008.html" rel="alternate"/>
    <summary>&lt;p&gt;Ruggedcom ROX familly contain multiple vulnerabilities before
V2.17.0&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and
recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-978177.html</id>
    <title>SSA-978177 V1.2 (Last Update: 2025-11-17): Vulnerability in Nozomi Guardian/CMC Before 25.4.0 on RUGGEDCOM APE1808 Devices</title>
    <updated>2025-11-17T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-978177.html" rel="alternate"/>
    <summary>&lt;p&gt;Nozomi Networks has published information on vulnerabilities in &lt;a
href="https://security.nozominetworks.com/"&gt;Nozomi Guardian/CMC&lt;/a&gt;.
This advisory lists the related Siemens Industrial products affected by
these vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for RUGGEDCOM APE1808 and
recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-241605.html</id>
    <title>SSA-241605 V1.0: Out of Bounds Read in PS/IGES Parasolid Translator Component Before V29.0.258</title>
    <updated>2025-11-17T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-241605.html" rel="alternate"/>
    <summary>&lt;p&gt;PS/IGES Parasolid Translator Component contains an out of bounds read
that could be triggered when the application reads files in IGS file
formats. If a user is tricked to open a malicious file with any of the
affected products, this could lead the application to crash or
potentially lead to arbitrary code execution.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for PS/IGES Parasolid Translator
Component and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-190588.html</id>
    <title>SSA-190588 V1.0: Cross-Site Scripting Vulnerability in Mendix Rich Text Widget</title>
    <updated>2025-11-17T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-190588.html" rel="alternate"/>
    <summary>&lt;p&gt;Mendix RichText editor contain a cross-site scripting
vulnerability.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for Mendix RichText and recommends
to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-864900.html</id>
    <title>SSA-864900 V1.4 (Last Update: 2025-11-11): Multiple Vulnerabilities in Fortigate NGFW on RUGGEDCOM APE1808 Devices</title>
    <updated>2025-11-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-864900.html" rel="alternate"/>
    <summary>&lt;p&gt;&lt;a href="https://www.fortiguard.com/psirt"&gt;Fortinet has published&lt;/a&gt; information on vulnerabilities in FortiOS. This advisory lists the related Siemens Industrial products.&lt;/p&gt;
&lt;p&gt;Siemens is preparing fix versions and recommends to consult and implement the workarounds provided in Fortinet&#8217;s upstream security notifications.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-832273.html</id>
    <title>SSA-832273 V2.0 (Last Update: 2025-11-11): Multiple Vulnerabilities in Fortigate NGFW Before V7.4.3 on RUGGEDCOM APE1808 Devices</title>
    <updated>2025-11-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-832273.html" rel="alternate"/>
    <summary>&lt;p&gt;&lt;a href="https://www.fortiguard.com/psirt"&gt;Fortinet has published&lt;/a&gt; information on vulnerabilities in FORTIOS. This advisory lists the related Siemens Industrial products.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for RUGGEDCOM APE1808 and recommends to update to the latest version. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-794185.html</id>
    <title>SSA-794185 V1.2 (Last Update: 2025-11-11): RADIUS Protocol Susceptible to Forgery Attacks (CVE-2024-3596) - Impact to SIPROTEC, SICAM and Related Products</title>
    <updated>2025-11-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-794185.html" rel="alternate"/>
    <summary>&lt;p&gt;This advisory documents the impact of CVE-2024-3596 (also dubbed &#8220;Blastradius&#8221;), a vulnerability in the RADIUS protocol, to SIPROTEC, SICAM and related products.&lt;/p&gt;
&lt;p&gt;The vulnerability could allow on-path attackers, located between a Network Access Server (the RADIUS client, e.g., a SICAM device) and a RADIUS server, to forge Access-Request packets in a way that enables them to modify the corresponding server response packet at will, e.g., turning an &#8220;Access-Reject&#8221; message into an &#8220;Access-Accept&#8221;. This would cause the Network Access Server to grant the attackers access to the network with the attackers desired authorization (and without the need of knowing or guessing legitimate access credentials).&lt;/p&gt;
&lt;p&gt;Further details incl.&#160;external references can be found in the chapter &#8220;Additional Information&#8221;. Siemens has released new versions for several affected products and recommends to update to the latest versions, and to configure the updated systems as recommended in the chapter &#8220;Additional Information&#8221;. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available. See chapter &#8220;Additional Information&#8221; for details.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-770770.html</id>
    <title>SSA-770770 V1.7 (Last Update: 2025-11-11): Multiple Vulnerabilities in Fortigate NGFW Before V7.4.7 on RUGGEDCOM APE1808 Devices</title>
    <updated>2025-11-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-770770.html" rel="alternate"/>
    <summary>&lt;p&gt;&lt;a href="https://www.fortiguard.com/psirt"&gt;Fortinet has published&lt;/a&gt; information on vulnerabilities in FortiOS. This advisory lists the related Siemens Industrial products.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for RUGGEDCOM APE1808 and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-750499.html</id>
    <title>SSA-750499 V1.2 (Last Update: 2025-11-11): Weak Encryption Vulnerability in SIPROTEC 5 Devices</title>
    <updated>2025-11-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-750499.html" rel="alternate"/>
    <summary>&lt;p&gt;The SIPROTEC 5 devices are supporting weak encryption. This could allow an unauthorized attacker in a man-in-the-middle position to read any data passed over the connection between legitimate clients and the affected device.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-726617.html</id>
    <title>SSA-726617 V1.3 (Last Update: 2025-11-11): Incorrect Privilege Assignment Vulnerability in Mendix OIDC SSO Module</title>
    <updated>2025-11-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-726617.html" rel="alternate"/>
    <summary>&lt;p&gt;The Mendix OIDC SSO module grants read and write access to all tokens exclusively to the Administrator role and could result in privilege misuse by an adversary modifying the module during Mendix development.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-711309.html</id>
    <title>SSA-711309 V2.5 (Last Update: 2025-11-11): Denial of Service Vulnerability in the OPC UA Implementations of SIMATIC Products</title>
    <updated>2025-11-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-711309.html" rel="alternate"/>
    <summary>&lt;p&gt;The OPC UA implementations (ANSI C and C++) as used in several SIMATIC products contain a denial of service vulnerability that could allow an unauthenticated remote attacker to create a denial of service condition by sending a specially crafted certificate.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-698820.html</id>
    <title>SSA-698820 V1.9 (Last Update: 2025-11-11): Multiple Vulnerabilities in Fortigate NGFW Before V7.4.4 on RUGGEDCOM APE1808 Devices</title>
    <updated>2025-11-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-698820.html" rel="alternate"/>
    <summary>&lt;p&gt;&lt;a href="https://www.fortiguard.com/psirt"&gt;Fortinet has published&lt;/a&gt; information on vulnerabilities in FORTIOS. This advisory lists the related Siemens Industrial products.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version of Fortigate NGFW for RUGGEDCOM APE1808 and recommends to update to the latest version. Siemens recommends to consult and implement the workarounds provided in Fortinet&#8217;s upstream security notifications.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-687955.html</id>
    <title>SSA-687955 V1.2 (Last Update: 2025-11-11): Accessible Development Shell via Physical Interface in SIPROTEC 5</title>
    <updated>2025-11-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-687955.html" rel="alternate"/>
    <summary>&lt;p&gt;Affected SIPROTEC 5 devices contain a development shell which is accessible via a physical interface which is not properly restricted. This could allow an unauthenticated attacker with physical access to an affected device to execute arbitrary commands on the device.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-682326.html</id>
    <title>SSA-682326 V1.0: Multiple Vulnerabilities in COMOS before V10.4.5</title>
    <updated>2025-11-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-682326.html" rel="alternate"/>
    <summary>&lt;p&gt;COMOS is affected by two vulnerabilities that could allow an attacker to execute arbitrary code or lead to data infiltration.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for COMOS and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-631336.html</id>
    <title>SSA-631336 V1.1 (Last Update: 2025-11-11): Multiple Web Server Vulnerabilities in SICAM GridEdge Before V2.6.6</title>
    <updated>2025-11-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-631336.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities were identified in the web server of the SICAM GridEdge application which includes missing authentication for critical API functions, absent cross-origin resource sharing restrictions and access to credentials.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for SICAM GridEdge (Classic) and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-552874.html</id>
    <title>SSA-552874 V1.5 (Last Update: 2025-11-11): Denial of Service Vulnerability in SIPROTEC 5 Devices</title>
    <updated>2025-11-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-552874.html" rel="alternate"/>
    <summary>&lt;p&gt;Devices of the SIPROTEC 5 family contain a vulnerability related to secure client-initiated renegotiation. This could allow an unauthenticated attacker to cause a denial of service condition for the duration of the attack.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-522291.html</id>
    <title>SSA-522291 V1.0: Improper Certificate Validation Vulnerability in Solid Edge</title>
    <updated>2025-11-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-522291.html" rel="alternate"/>
    <summary>&lt;p&gt;Solid Edge is affected by improper certificate validation while connecting to License Service endpoint. This could allow an unauthenticated remote attacker to perform man in the middle attacks.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for Solid Edge SE2025 and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-514895.html</id>
    <title>SSA-514895 V1.0: Multiple Vulnerabilities in Altair Grid Engine V2025.1.0</title>
    <updated>2025-11-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-514895.html" rel="alternate"/>
    <summary>&lt;p&gt;Altair Grid Engine contain multiple vulnerabilities that could allow an attacker to escalate privileges and execute arbitrary code with superuser permissions. Siemens has released a new version for Altair Grid Engine and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-365596.html</id>
    <title>SSA-365596 V1.0: DLL Hijacking Vulnerability in Siemens Software Center and Solid Edge</title>
    <updated>2025-11-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-365596.html" rel="alternate"/>
    <summary>&lt;p&gt;Siemens Software Center and Solid Edge is affected by a DLL hijacking vulnerability. This could allow an attacker to execute arbitrary code via placing a crafted DLL file on the system.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-339694.html</id>
    <title>SSA-339694 V1.0: Multiple Vulnerabilities in Spectrum Power 4 Before v4.70 SP12 Security Patch 2</title>
    <updated>2025-11-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-339694.html" rel="alternate"/>
    <summary>&lt;p&gt;Spectrum Power 4 before v4.70 SP12 Security Patch 2 contains multiple vulnerabilities that could allow an attacker to remotely execute code as application administrator or locally execute code as operating system administrator.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for Spectrum Power 4 and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-322980.html</id>
    <title>SSA-322980 V1.5 (Last Update: 2025-11-11): Denial of Service Vulnerability in SIPROTEC 5 Devices</title>
    <updated>2025-11-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-322980.html" rel="alternate"/>
    <summary>&lt;p&gt;SIPROTEC 5 devices contain a null pointer dereference vulnerability in the web service. This could allow an attacker to send unauthenticated maliciously crafted http request that could cause denial of service condition of the device.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-301229.html</id>
    <title>SSA-301229 V1.2 (Last Update: 2025-11-11): Client-Side Enforcement of Server-Side Security Vulnerabilities in RUGGEDCOM ROX II</title>
    <updated>2025-11-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-301229.html" rel="alternate"/>
    <summary>&lt;p&gt;The web interface of RUGGEDCOM ROX II devices contain multiple Client-Side Enforcement of Server-Side Security vulnerabilities that could allow an attacker with a legitimate, highly privileged account on the web interface to get privileged code execution in the underlying OS of the affected products.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-282044.html</id>
    <title>SSA-282044 V1.3 (Last Update: 2025-11-11): DLL Hijacking Vulnerability in Siemens Web Installer used by the Online Software Delivery</title>
    <updated>2025-11-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-282044.html" rel="alternate"/>
    <summary>&lt;p&gt;The installers used to install several Siemens products are affected by a DLL hijacking vulnerability. This could allow an attacker to execute arbitrary code when a legitimate user installs an application that uses the affected installer component. This vulnerability poses a risk only during setup and installation phase of the affected applications downloaded e.g.&#160;via OSD (Online Software Delivery).&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends using the latest versions during setup and installation. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-267056.html</id>
    <title>SSA-267056 V1.0: Multiple Vulnerabilities in LOGO! 8 BM Devices</title>
    <updated>2025-11-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-267056.html" rel="alternate"/>
    <summary>&lt;p&gt;LOGO! 8 BM (incl.&#160;SIPLUS variants) contains multiple vulnerabilities. These could allow an attacker to execute code remotely, put the device into a denial of service state, or change the behavior of the device.&lt;/p&gt;
&lt;p&gt;Siemens is preparing fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-225578.html</id>
    <title>SSA-225578 V1.1 (Last Update: 2025-11-11): Improper Access Control Vulnerability in SICAM GridEdge Before V2.7.3</title>
    <updated>2025-11-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-225578.html" rel="alternate"/>
    <summary>&lt;p&gt;SICAM GridEdge contains an improper access control vulnerability. This could allow persons with local access to the host system to inject an SSH key.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for SICAM GridEdge (Classic) and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-216014.html</id>
    <title>SSA-216014 V1.2 (Last Update: 2025-11-11): Vulnerabilities in EFI variable of SIMATIC IPCs, SIMATIC Tablet PCs, and SIMATIC Field PGs</title>
    <updated>2025-11-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-216014.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities has been identified in Siemens SIMATIC IPCs, SIMATIC Tablet PCs, and SIMATIC Field PGs that can allow an authenticated attacker to alter the secure boot and password configurations.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions of BIOS for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-201498.html</id>
    <title>SSA-201498 V1.0: Multiple Vulnerabilities in the Web Server of SICAM P850 and SICAM P855 Devices Before V3.11</title>
    <updated>2025-11-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-201498.html" rel="alternate"/>
    <summary>&lt;p&gt;The web server of SICAM P850 and SICAM P855 devices, versions before V3.11, contains a Cross Site Request Forgery (CSRF) vulnerability and is missing cookie protection flags. This could allow an attacker to perform arbitrary actions on the device on behalf of a legitimate user, or impersonate that user.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-194557.html</id>
    <title>SSA-194557 V1.3 (Last Update: 2025-11-11): Improper Limitation of Filesystem Access through Web Server Vulnerability in SIPROTEC 5</title>
    <updated>2025-11-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-194557.html" rel="alternate"/>
    <summary>&lt;p&gt;Affected SIPROTEC 5 devices do not properly limit the access of the web server to the filesystem. This could allow an authenticated remote attacker to read arbitrary files or the entire filesystem of the device.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-978177.html</id>
    <title>SSA-978177 V1.1 (Last Update: 2025-10-14): Vulnerability in Nozomi Guardian/CMC on RUGGEDCOM APE1808 Devices</title>
    <updated>2025-10-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-978177.html" rel="alternate"/>
    <summary>&lt;p&gt;Nozomi Networks has published information on vulnerabilities in &lt;a href="https://security.nozominetworks.com/"&gt;Nozomi Guardian/CMC&lt;/a&gt;. This advisory lists the related Siemens Industrial products affected by these vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens is preparing fix versions and recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-876787.html</id>
    <title>SSA-876787 V1.9 (Last Update: 2025-10-14): Open Redirect Vulnerability in SIMATIC S7-1500 and S7-1200 CPUs</title>
    <updated>2025-10-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-876787.html" rel="alternate"/>
    <summary>&lt;p&gt;Several SIMATIC S7-1500 and S7-1200 CPU versions are affected by an open redirect vulnerability that could allow an attacker to make the web server of affected devices redirect a legitimate user to an attacker-chosen URL. For a successful attack, the legitimate user must actively click on an attacker-crafted link.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-722410.html</id>
    <title>SSA-722410 V1.1 (Last Update: 2025-10-14): Multiple Vulnerabilities in User Management Component (UMC)</title>
    <updated>2025-10-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-722410.html" rel="alternate"/>
    <summary>&lt;p&gt;Siemens&#8217; User Management Component (UMC) is affected by multiple vulnerabilities that could allow an unauthenticated remote attacker to execute arbitrary code or to cause a denial of service condition.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for User Management Component (UMC) and recommends to update to the latest version. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-693808.html</id>
    <title>SSA-693808 V1.1 (Last Update: 2025-10-14): Deserialization Vulnerability in Siemens Engineering Platforms</title>
    <updated>2025-10-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-693808.html" rel="alternate"/>
    <summary>&lt;p&gt;Affected products do not properly restrict access permissions to a local Windows Named Pipe and do not properly sanitize user-controllable input sent to that Named Pipe. This could allow a local authenticated attacker to cause a type confusion and execute arbitrary code within the affected application and its privileges.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-625789.html</id>
    <title>SSA-625789 V1.4 (Last Update: 2025-10-14): Multiple Vulnerabilities in SIMATIC S7-1200 CPU V1/V2 Devices</title>
    <updated>2025-10-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-625789.html" rel="alternate"/>
    <summary>&lt;p&gt;SIMATIC S7-1200 CPU V1/V2 controllers contain two vulnerabilities that could allow an unauthenticated remote attacker&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;to trigger functions by record and playback of legitimate network communication, or&lt;/li&gt;
&lt;li&gt;to place the controller in stop/defect state by causing a communications error.&lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;Siemens has released new versions for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-614723.html</id>
    <title>SSA-614723 V1.2 (Last Update: 2025-10-14): Denial of Service Vulnerabilities in User Management Component (UMC)</title>
    <updated>2025-10-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-614723.html" rel="alternate"/>
    <summary>&lt;p&gt;Siemens User Management Component (UMC) is affected by three vulnerabilities which could allow an unauthenticated remote attacker to cause a denial of service condition.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-599451.html</id>
    <title>SSA-599451 V1.0: Multiple Vulnerabilities in SiPass integrated Before V3.0</title>
    <updated>2025-10-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-599451.html" rel="alternate"/>
    <summary>&lt;p&gt;SiPass integrated before V3.0 contains multiple vulnerabilities that could allow an unauthenticated remote attacker to exploit user accounts, manipulate data, impersonate users, or achieve arbitrary code execution on the SiPass integrated server.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for SiPass integrated and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-541582.html</id>
    <title>SSA-541582 V1.0: Multiple File Parsing Vulnerabilities in Solid Edge</title>
    <updated>2025-10-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-541582.html" rel="alternate"/>
    <summary>&lt;p&gt;Solid Edge is affected by multiple file parsing vulnerabilities that could be triggered when the application reads specially crafted PRT files format. This could allow an attacker to crash the application or execute arbitrary code.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-513708.html</id>
    <title>SSA-513708 V1.2 (Last Update: 2025-10-14): Multiple Vulnerabilities in Palo Alto Networks Virtual NGFW on RUGGEDCOM APE1808 Devices</title>
    <updated>2025-10-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-513708.html" rel="alternate"/>
    <summary>&lt;p&gt;Palo Alto Networks has published [1] information on vulnerabilities in PAN-OS. This advisory lists the related Siemens Industrial products affected by these vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens is preparing fix versions and recommends countermeasures for products where fixes are not, or not yet available. Customers are advised to consult and implement the workarounds provided in Palo Alto Networks&#8217; upstream security notifications.&lt;/p&gt;
&lt;p&gt;[1] https://security.paloaltonetworks.com/&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-493396.html</id>
    <title>SSA-493396 V1.1 (Last Update: 2025-10-14): Deserialization Vulnerability in Siemens Engineering Platforms</title>
    <updated>2025-10-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-493396.html" rel="alternate"/>
    <summary>&lt;p&gt;Affected products do not properly sanitize user-controllable input when parsing project files. This could allow an attacker to cause a type confusion and execute arbitrary code within the affected application.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-486936.html</id>
    <title>SSA-486936 V1.0: Authentication Vulnerability in SIMATIC ET 200SP Communication Processors</title>
    <updated>2025-10-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-486936.html" rel="alternate"/>
    <summary>&lt;p&gt;SIMATIC ET 200SP communication processors (CP 1542SP-1, CP 1542SP-1 IRC and CP 1543SP-1, incl.&#160;SIPLUS variants) contain an authentication vulnerability that could allow an unauthenticated remote attacker to access the configuration data.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-373591.html</id>
    <title>SSA-373591 V1.2 (Last Update: 2025-10-14): Buffer Overflow Vulnerability in RUGGEDCOM ROS Devices</title>
    <updated>2025-10-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-373591.html" rel="alternate"/>
    <summary>&lt;p&gt;The latest update for RUGGEDCOM ROS devices fixes a buffer overflow vulnerability in the third party component that could allow an attacker with network access to an affected device to cause a remote code execution condition.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-367714.html</id>
    <title>SSA-367714 V1.1 (Last Update: 2025-10-14): Improper Integrity Check of Firmware Updates in SiPass integrated AC5102 / ACC-G2 and ACC-AP</title>
    <updated>2025-10-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-367714.html" rel="alternate"/>
    <summary>&lt;p&gt;SiPass integrated ACC (Advanced Central Controller) devices do not properly check the integrity of firmware updates. This could allow an attacker to upload a maliciously modified firmware onto the device.&lt;/p&gt;
&lt;p&gt;Siemens recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-365200.html</id>
    <title>SSA-365200 V1.0: Google Chrome Type Confusion Vulnerability in Siemens Products</title>
    <updated>2025-10-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-365200.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple Siemens products are affected by a type confusion vulnerability in Google Chrome prior to 138.0.7204.96. This could allow a remote attacker to perform arbitrary code execution via a crafted HTML page.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for Industrial Edge App Publisher and recommends to update to the latest version. Siemens is preparing further fix versions and recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-318832.html</id>
    <title>SSA-318832 V1.0: SQL Injection Vulnerability in SINEC NMS</title>
    <updated>2025-10-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-318832.html" rel="alternate"/>
    <summary>&lt;p&gt;SINEC NMS is affected by SQL injection vulnerability that could allow an authenticated low privileged attacker to exploit by inserting malicious data and achieve privilege escalation.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for SINEC NMS and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-282044.html</id>
    <title>SSA-282044 V1.2 (Last Update: 2025-10-14): DLL Hijacking Vulnerability in Siemens Web Installer used by the Online Software Delivery</title>
    <updated>2025-10-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-282044.html" rel="alternate"/>
    <summary>&lt;p&gt;The installers used to install several Siemens products are affected by a DLL hijacking vulnerability. This could allow an attacker to execute arbitrary code when a legitimate user installs an application that uses the affected installer component. This vulnerability poses a risk only during setup and installation phase of the affected applications downloaded e.g.&#160;via OSD (Online Software Delivery).&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends using the latest versions during setup and installation. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-279823.html</id>
    <title>SSA-279823 V1.2 (Last Update: 2025-10-14): Cross-Site Scripting Vulnerability in SIMATIC S7-1200 CPU V2/V3 Before V3.0.2</title>
    <updated>2025-10-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-279823.html" rel="alternate"/>
    <summary>&lt;p&gt;The web server on SIMATIC S7-1200 CPU V2/V3 Before V3.0.2 contains a cross-site scripting (XSS) vulnerability that could allow remote attackers to inject arbitrary web script or HTML via a crafted URI.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for SIMATIC S7-1200 CPU V3 family (incl.&#160;SIPLUS variants) and recommends to update to the latest version. Siemens recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-265688.html</id>
    <title>SSA-265688 V2.0 (Last Update: 2025-10-14): Vulnerabilities in the additional GNU/Linux subsystem of the SIMATIC S7-1500 TM MFP V1.1</title>
    <updated>2025-10-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-265688.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities have been identified in the additional GNU/Linux subsystem of the SIMATIC S7-1500 TM MFP V1.1.&lt;/p&gt;
&lt;p&gt;Siemens is preparing fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-240718.html</id>
    <title>SSA-240718 V1.2 (Last Update: 2025-10-14): Insecure Storage of HTTPS CA Certificate in SIMATIC S7-1200 CPU V2</title>
    <updated>2025-10-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-240718.html" rel="alternate"/>
    <summary>&lt;p&gt;SIMATIC S7-1200 CPU V2 devices contain an insufficiently protected private key used for the Certificate Authority (CA) for HTTPS connections. Possession of this key could allow remote attackers to spoof the device&#8217;s web server by creating a forged web server certificate.&lt;/p&gt;
&lt;p&gt;Siemens recommends specific countermeasures for products where fixes are not, or not yet available. Refer to the chapter Additional Information for more details.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-186293.html</id>
    <title>SSA-186293 V1.1 (Last Update: 2025-10-14): XML External Entity (XXE) Injection Vulnerability in SIMOTION SCOUT, SIMOTION SCOUT TIA and SINAMICS STARTER</title>
    <updated>2025-10-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-186293.html" rel="alternate"/>
    <summary>&lt;p&gt;SIMOTION SCOUT, SIMOTION SCOUT TIA and SINAMICS STARTER are affected by an XXE injection vulnerability that could allow an attacker to access arbitrary application files.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-083019.html</id>
    <title>SSA-083019 V1.1 (Last Update: 2025-10-14): Multiple Vulnerabilities in RUGGEDCOM ROS Devices</title>
    <updated>2025-10-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-083019.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities affect the RUGGEDCOM Operating System (ROS).&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-062309.html</id>
    <title>SSA-062309 V1.0: Information Disclosure Vulnerability in TeleControl Server Basic V3.1</title>
    <updated>2025-10-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-062309.html" rel="alternate"/>
    <summary>&lt;p&gt;TeleControl Server Basic V3.1 contains an information disclosure vulnerability that could allow an unauthenticated remote attacker to obtain password hashes of users and to login to and perform authenticated operations of the database service.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for TeleControl Server Basic V3.1 and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-054046.html</id>
    <title>SSA-054046 V1.7 (Last Update: 2025-10-14): Unauthenticated Information Disclosure in Web Server of SIMATIC S7-1500 CPUs</title>
    <updated>2025-10-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-054046.html" rel="alternate"/>
    <summary>&lt;p&gt;Several SIMATIC S7-1500 CPU versions are affected by an authentication bypass vulnerability that could allow an unauthenticated remote attacker to gain knowledge about actual and configured maximum cycle times and communication load of the CPU.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-039007.html</id>
    <title>SSA-039007 V1.6 (Last Update: 2025-10-14): Heap-based Buffer Overflow Vulnerability in User Management Component (UMC)</title>
    <updated>2025-10-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-039007.html" rel="alternate"/>
    <summary>&lt;p&gt;Siemens User Management Component (UMC) is affected by a heap-based buffer overflow vulnerability which could allow an unauthenticated remote attacker arbitrary code execution.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssb-065467.html</id>
    <title>SSB-065467 V1.0: Weak Authentication Vulnerability in Trainguard End-of-Train and Head-of-Train</title>
    <updated>2025-09-16T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssb-065467.html" rel="alternate"/>
    <summary>
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-916339.html</id>
    <title>SSA-916339 V1.0: Information Disclosure Vulnerability in Apogee PXC and Talon TC Devices</title>
    <updated>2025-09-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-916339.html" rel="alternate"/>
    <summary>&lt;p&gt;Apogee PXC and Talon TC contain a vulnerability that could allow an attacker to download the device encrypted database file.&lt;/p&gt;
&lt;p&gt;Siemens is preparing fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-864900.html</id>
    <title>SSA-864900 V1.3 (Last Update: 2025-09-09): Multiple Vulnerabilities in Fortigate NGFW on RUGGEDCOM APE1808 Devices</title>
    <updated>2025-09-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-864900.html" rel="alternate"/>
    <summary>&lt;p&gt;&lt;a href="https://www.fortiguard.com/psirt"&gt;Fortinet has published&lt;/a&gt; information on vulnerabilities in FortiOS. This advisory lists the related Siemens Industrial products.&lt;/p&gt;
&lt;p&gt;Siemens is preparing fix versions and recommends to consult and implement the workarounds provided in Fortinet&#8217;s upstream security notifications.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-722410.html</id>
    <title>SSA-722410 V1.0: Multiple Vulnerabilities in User Management Component (UMC)</title>
    <updated>2025-09-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-722410.html" rel="alternate"/>
    <summary>&lt;p&gt;Siemens&#8217; User Management Component (UMC) is affected by multiple vulnerabilities that could allow an unauthenticated remote attacker to execute arbitrary code or to cause a denial of service condition.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for User Management Component (UMC) and recommends to update to the latest version. Siemens recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-712929.html</id>
    <title>SSA-712929 V3.0 (Last Update: 2025-09-09): Denial of Service Vulnerability in OpenSSL (CVE-2022-0778) Affecting Industrial Products</title>
    <updated>2025-09-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-712929.html" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in the openSSL component (CVE-2022-0778, [0]) could allow an attacker to create a denial of service condition by providing specially crafted elliptic curve certificates to products that use a vulnerable version of openSSL.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
&lt;p&gt;[0] &lt;a href="https://www.openssl.org/news/secadv/20220315.txt" class="uri"&gt;https://www.openssl.org/news/secadv/20220315.txt&lt;/a&gt;&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-691715.html</id>
    <title>SSA-691715 V1.7 (Last Update: 2025-09-09): Vulnerability in OPC Foundation Local Discovery Server Affecting Siemens Products</title>
    <updated>2025-09-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-691715.html" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability was identified in OPC Foundation Local Discovery Server which also affects Siemens products that could allow an attacker to escalate privileges under certain circumstances.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-640476.html</id>
    <title>SSA-640476 V1.0: Denial of Service Vulnerability in Industrial Edge Management</title>
    <updated>2025-09-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-640476.html" rel="alternate"/>
    <summary>&lt;p&gt;Industrial Edge Management is affected by a vulnerability that could allow a remote attacker to cause a denial of service condition.&lt;/p&gt;
&lt;p&gt;Siemens recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-563922.html</id>
    <title>SSA-563922 V1.0: Local Privilege Escalation Vulnerability in SIMOTION Tools</title>
    <updated>2025-09-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-563922.html" rel="alternate"/>
    <summary>&lt;p&gt;Several tools for the SIMOTION system are affected by a local privilege escalation vulnerability. This could allow an attacker to execute arbitrary code with SYSTEM privileges when a legitimate user installs an application that uses the affected setup component. This vulnerability poses a risk only during setup and installation phase of the affected tools.&lt;/p&gt;
&lt;p&gt;Siemens is preparing fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-534283.html</id>
    <title>SSA-534283 V1.0: Insecure File Share Vulnerability in SIMATIC Virtualization as a Service (SIVaaS)</title>
    <updated>2025-09-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-534283.html" rel="alternate"/>
    <summary>&lt;p&gt;SIMATIC Virtualization as a Service (SIVaaS) is affected by a vulnerability which exposes a network share without any authentication. This could allow an attacker to access or alter sensitive data without proper authorization.&lt;/p&gt;
&lt;p&gt;Siemens recommends to contact technical support to fix the vulnerability.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-503939.html</id>
    <title>SSA-503939 V1.2 (Last Update: 2025-09-09): Vulnerabilities in the BIOS of the SIMATIC S7-1500 TM MFP</title>
    <updated>2025-09-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-503939.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities have been identified in the BIOS of the SIMATIC S7-1500 TM MFP.&lt;/p&gt;
&lt;p&gt;Siemens is preparing fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-494539.html</id>
    <title>SSA-494539 V1.0: Multiple Vulnerabilities in SINEC OS</title>
    <updated>2025-09-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-494539.html" rel="alternate"/>
    <summary>&lt;p&gt;SINEC OS is affected by multiple vulnerabilities due to open UDP ports, which could allow an attacker to access non-sensitive information without authentication or potentially cause temporary denial of service.&lt;/p&gt;
&lt;p&gt;Siemens is preparing fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-366067.html</id>
    <title>SSA-366067 V1.6 (Last Update: 2025-09-09): Multiple Vulnerabilities in Fortigate NGFW Before V7.4.1 on RUGGEDCOM APE1808 Devices</title>
    <updated>2025-09-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-366067.html" rel="alternate"/>
    <summary>&lt;p&gt;&lt;a href="https://www.fortiguard.com/psirt"&gt;Fortinet has published&lt;/a&gt; information on vulnerabilities in FORTIOS. This advisory lists the related Siemens Industrial products.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for RUGGEDCOM APE1808 and recommends to update to the latest version. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-331739.html</id>
    <title>SSA-331739 V1.1 (Last Update: 2025-09-09): Privilege Escalation Vulnerability in WIBU CodeMeter Runtime Affecting Siemens Products</title>
    <updated>2025-09-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-331739.html" rel="alternate"/>
    <summary>&lt;p&gt;WIBU Systems published information about a privilege escalation vulnerability under a certain circumstances and associated fix releases of CodeMeter Runtime, a product provided by WIBU Systems and used in several Siemens industrial products.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-282044.html</id>
    <title>SSA-282044 V1.1 (Last Update: 2025-09-09): DLL Hijacking Vulnerability in Siemens Web Installer used by the Online Software Delivery</title>
    <updated>2025-09-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-282044.html" rel="alternate"/>
    <summary>&lt;p&gt;The installers used to install several Siemens products are affected by a DLL hijacking vulnerability. This could allow an attacker to execute arbitrary code when a legitimate user installs an application that uses the affected installer component. This vulnerability poses a risk only during setup and installation phase of the affected applications downloaded e.g.&#160;via OSD (Online Software Delivery).&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends using the latest versions during setup and installation. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-265688.html</id>
    <title>SSA-265688 V1.9 (Last Update: 2025-09-09): Vulnerabilities in the additional GNU/Linux subsystem of the SIMATIC S7-1500 TM MFP V1.1</title>
    <updated>2025-09-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-265688.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities have been identified in the additional GNU/Linux subsystem of the SIMATIC S7-1500 TM MFP V1.1.&lt;/p&gt;
&lt;p&gt;Siemens is preparing fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-027652.html</id>
    <title>SSA-027652 V1.0: Privilege Escalation Vulnerability in SINAMICS Drives</title>
    <updated>2025-09-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-027652.html" rel="alternate"/>
    <summary>&lt;p&gt;Siemens SINAMICS G220, SINAMICS S210, and SINAMICS S200 contains a privilege escalation vulnerability that could allow users to escalate their privileges.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-707630.html</id>
    <title>SSA-707630 V1.1 (Last Update: 2025-08-26): Multiple Vulnerabilities in SIMATIC RTLS Locating Manager Before V3.3</title>
    <updated>2025-08-26T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-707630.html" rel="alternate"/>
    <summary>&lt;p&gt;Siemens has released a new version for SIMATIC RTLS Locating Manager and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-201595.html</id>
    <title>SSA-201595 V1.1 (Last Update: 2025-08-19): Privilege Escalation Vulnerability in WIBU CodeMeter Runtime Affecting the Desigo CC Product Family and SENTRON Powermanager</title>
    <updated>2025-08-19T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-201595.html" rel="alternate"/>
    <summary>&lt;p&gt;Versions V5.0 through V8 of the Desigo CC product family (Desigo CC, Desigo CC Compact, Desigo CC Connect, Cerberus DMS), as well as the Desigo CC-based SENTRON Powermanager, are affected by a vulnerability in the underlying third-party component WIBU Systems CodeMeter Runtime. Successful exploitation of this vulnerability could allow privilege escalation.&lt;/p&gt;
&lt;p&gt;Siemens has released instructions how to update the CodeMeter Runtime component and recommends to apply the update on affected systems.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-711309.html</id>
    <title>SSA-711309 V2.4 (Last Update: 2025-08-18): Denial of Service Vulnerability in the OPC UA Implementations of SIMATIC Products</title>
    <updated>2025-08-18T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-711309.html" rel="alternate"/>
    <summary>&lt;p&gt;The OPC UA implementations (ANSI C and C++) as used in several SIMATIC products contain a denial of service vulnerability that could allow an unauthenticated remote attacker to create a denial of service condition by sending a specially crafted certificate.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-395458.html</id>
    <title>SSA-395458 V1.0: Account Hijacking Vulnerability in Mendix SAML Module</title>
    <updated>2025-08-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-395458.html" rel="alternate"/>
    <summary>&lt;p&gt;Mendix SAML module contains a vulnerability that could allow unauthenticated remote attackers to hijack an account in specific SSO configurations.&lt;/p&gt;
&lt;p&gt;Mendix has provided fix releases for the Mendix SAML module and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-201595.html</id>
    <title>SSA-201595 V1.0: Privilege Escalation Vulnerability in WIBU CodeMeter Runtime Affecting the Desigo CC Product Family and SENTRON Powermanager</title>
    <updated>2025-08-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-201595.html" rel="alternate"/>
    <summary>&lt;p&gt;Versions V5.0 through V8 of the Desigo CC product family (Desigo CC, Desigo CC Compact, Desigo CC Connect, Cerberus DMS), as well as the Desigo CC-based SENTRON Powermanager, are affected by a vulnerability in the underlying third-party component WIBU Systems CodeMeter Runtime. Successful exploitation of this vulnerability could allow privilege escalation.&lt;/p&gt;
&lt;p&gt;Siemens has released instructions how to update the CodeMeter Runtime component and recommends to apply the update on affected systems.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-028723.html</id>
    <title>SSA-028723 V1.1 (Last Update: 2025-08-13): Multiple OpenSSL Vulnerabilities in BFCClient Before V2.17</title>
    <updated>2025-08-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-028723.html" rel="alternate"/>
    <summary>&lt;p&gt;Siemens BFCClient contains multiple vulnerabilities in the integrated OpenSSL component that could allow an attacker to read memory contents, to change the application behaviour or to create a denial of service condition.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for BFCClient and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-994087.html</id>
    <title>SSA-994087 V1.0: Multiple SQLite Vulnerabilities in RUGGEDCOM CROSSBOW Station Access Controller Before V5.7</title>
    <updated>2025-08-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-994087.html" rel="alternate"/>
    <summary>&lt;p&gt;RUGGEDCOM CROSSBOW Station Access Controller (SAC) contains multiple vulnerabilities in the integrated SQLite component that could allow an attacker to execute arbitrary code or to create a denial of service condition.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for RUGGEDCOM CROSSBOW Station Access Controller (SAC) and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-978177.html</id>
    <title>SSA-978177 V1.0: Vulnerability in Nozomi Guardian/CMC on RUGGEDCOM APE1808 Devices</title>
    <updated>2025-08-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-978177.html" rel="alternate"/>
    <summary>&lt;p&gt;Nozomi Networks has published information on vulnerabilities in &lt;a href="https://security.nozominetworks.com/"&gt;Nozomi Guardian/CMC&lt;/a&gt;. This advisory lists the related Siemens Industrial products affected by these vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens is preparing fix versions and recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-914892.html</id>
    <title>SSA-914892 V1.1 (Last Update: 2025-08-12): Race Condition Vulnerability in Basic Authentication Implementation of Mendix Runtime</title>
    <updated>2025-08-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-914892.html" rel="alternate"/>
    <summary>&lt;p&gt;The basic authentication mechanism of Mendix Runtime contains a race condition vulnerability which could allow unauthenticated remote attackers to circumvent default account lockout measures.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-908185.html</id>
    <title>SSA-908185 V1.2 (Last Update: 2025-08-12): Mirror Port Isolation Vulnerability in RUGGEDCOM ROS Devices</title>
    <updated>2025-08-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-908185.html" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability was identified in RUGGEDCOM ROS devices with mirror port enabled, that could allow an attacker to inject information into the network via the mirror port.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-894058.html</id>
    <title>SSA-894058 V1.0: Improper Bandwidth Limitation of Network Packets Over Local USB Port Vulnerability in SIPROTEC 5</title>
    <updated>2025-08-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-894058.html" rel="alternate"/>
    <summary>&lt;p&gt;Affected SIPROTEC 5 devices do not properly limit the bandwidth for incoming network packets over their local USB port. This could allow an attacker with physical access to send specially crafted packets with high bandwidth to the affected devices thus forcing them to exhaust their memory and stop responding to any network traffic via the local USB port. Affected devices reset themselves automatically after a successful attack and the protection function is not affected of this vulnerability.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-864900.html</id>
    <title>SSA-864900 V1.2 (Last Update: 2025-08-12): Multiple Vulnerabilities in Fortigate NGFW on RUGGEDCOM APE1808 Devices</title>
    <updated>2025-08-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-864900.html" rel="alternate"/>
    <summary>&lt;p&gt;&lt;a href="https://www.fortiguard.com/psirt"&gt;Fortinet has published&lt;/a&gt; information on vulnerabilities in FortiOS. This advisory lists the related Siemens Industrial products.&lt;/p&gt;
&lt;p&gt;Siemens is preparing fix versions and recommends to consult and implement the workarounds provided in Fortinet&#8217;s upstream security notifications.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-856721.html</id>
    <title>SSA-856721 V1.3 (Last Update: 2025-08-12): Vulnerability in RUGGEDCOM Discovery Protocol (RCDP) of Industrial Communication Devices</title>
    <updated>2025-08-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-856721.html" rel="alternate"/>
    <summary>&lt;p&gt;The RUGGEDCOM RCDP protocol is not properly configured after commissioning of RUGGEDCOM ROS based devices and some SCALANCE X switch models and could allow unauthenticated remote users to perform administrative operations. An attacker must be in the same adjacent network and the RCDP daemon must be enabled in order to exploit the vulnerability.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-840800.html</id>
    <title>SSA-840800 V1.5 (Last Update: 2025-08-12): Code Injection Vulnerability in RUGGEDCOM ROS</title>
    <updated>2025-08-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-840800.html" rel="alternate"/>
    <summary>&lt;p&gt;RUGGEDCOM ROS-based devices are vulnerable to a web-based code injection attack. To execute this attack, it is necessary to access the system via the Command Line Interface (CLI).&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-800126.html</id>
    <title>SSA-800126 V1.1 (Last Update: 2025-08-12): Deserialization Vulnerability in Siemens Engineering Platforms before V20</title>
    <updated>2025-08-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-800126.html" rel="alternate"/>
    <summary>&lt;p&gt;Affected products do not properly sanitize user-controllable input when parsing files. This could allow an attacker to cause a type confusion and execute arbitrary code within the affected application.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
&lt;p&gt;Siemens has released products based on the Totally Integrated Automation Portal (TIA Portal) V20 which are not affected by CVE-2024-49849. See the chapter &#8220;Additional Information&#8221; below for more details.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-794185.html</id>
    <title>SSA-794185 V1.1 (Last Update: 2025-08-12): RADIUS Protocol Susceptible to Forgery Attacks (CVE-2024-3596) - Impact to SIPROTEC, SICAM and Related Products</title>
    <updated>2025-08-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-794185.html" rel="alternate"/>
    <summary>&lt;p&gt;This advisory documents the impact of CVE-2024-3596 (also dubbed &#8220;Blastradius&#8221;), a vulnerability in the RADIUS protocol, to SIPROTEC, SICAM and related products.&lt;/p&gt;
&lt;p&gt;The vulnerability could allow on-path attackers, located between a Network Access Server (the RADIUS client, e.g., a SICAM device) and a RADIUS server, to forge Access-Request packets in a way that enables them to modify the corresponding server response packet at will, e.g., turning an &#8220;Access-Reject&#8221; message into an &#8220;Access-Accept&#8221;. This would cause the Network Access Server to grant the attackers access to the network with the attackers desired authorization (and without the need of knowing or guessing legitimate access credentials).&lt;/p&gt;
&lt;p&gt;Further details incl.&#160;external references can be found in the chapter &#8220;Additional Information&#8221;. Siemens has released new versions for several affected products and recommends to update to the latest versions, and to configure the updated systems as recommended in the chapter &#8220;Additional Information&#8221;. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available. See chapter &#8220;Additional Information&#8221; for details.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-787941.html</id>
    <title>SSA-787941 V1.5 (Last Update: 2025-08-12): Denial of Service Vulnerability in RUGGEDCOM ROS devices</title>
    <updated>2025-08-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-787941.html" rel="alternate"/>
    <summary>&lt;p&gt;RUGGEDCOM ROS-based devices are vulnerable to a denial of service attack (Slowloris). By sending partial HTTP requests nonstop, with none completed, the affected web servers will be waiting for the completion of each request, occupying all available HTTP connections. The web server recovers by itself once the attack ends.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-770902.html</id>
    <title>SSA-770902 V1.2 (Last Update: 2025-08-12): Denial of Service Vulnerability in the Web Server of RUGGEDCOM ROS Devices</title>
    <updated>2025-08-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-770902.html" rel="alternate"/>
    <summary>&lt;p&gt;A denial of service vulnerability could allow an unauthorized attacker to cause total loss of availability in the web server of the affected devices.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-770770.html</id>
    <title>SSA-770770 V1.6 (Last Update: 2025-08-12): Multiple Vulnerabilities in Fortigate NGFW Before V7.4.7 on RUGGEDCOM APE1808 Devices</title>
    <updated>2025-08-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-770770.html" rel="alternate"/>
    <summary>&lt;p&gt;&lt;a href="https://www.fortiguard.com/psirt"&gt;Fortinet has published&lt;/a&gt; information on vulnerabilities in FortiOS. This advisory lists the related Siemens Industrial products.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for RUGGEDCOM APE1808 and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-769791.html</id>
    <title>SSA-769791 V1.0: Local Arbitrary Code Execution Vulnerability in COMOS Before V10.6</title>
    <updated>2025-08-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-769791.html" rel="alternate"/>
    <summary>&lt;p&gt;COMOS before V10.6 is affected by a local arbitrary code execution vulnerability in the integrated Open Design Alliance Drawings SDK.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for COMOS and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-767615.html</id>
    <title>SSA-767615 V1.4 (Last Update: 2025-08-12): Information Disclosure Vulnerability in SIPROTEC 5 Devices</title>
    <updated>2025-08-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-767615.html" rel="alternate"/>
    <summary>&lt;p&gt;An information disclosure vulnerability in SIPROTEC 5 devices could allow an unauthenticated, remote attacker to retrieve sensitive information of the device.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-764417.html</id>
    <title>SSA-764417 V1.9 (Last Update: 2025-08-12): Weak Encryption Vulnerability in RUGGEDCOM ROS Devices</title>
    <updated>2025-08-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-764417.html" rel="alternate"/>
    <summary>&lt;p&gt;The SSH server on RUGGEDCOM ROS devices is configured to offer weak ciphers by default. This could allow an unauthorized attacker in a man-in-the-middle position to read and modify any data passed over the connection between legitimate clients and the affected device.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-707630.html</id>
    <title>SSA-707630 V1.0: Multiple Vulnerabilities in SIMATIC RTLS Locating Manager Before V3.3</title>
    <updated>2025-08-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-707630.html" rel="alternate"/>
    <summary>&lt;p&gt;Siemens has released a new version for SIMATIC RTLS Locating Manager and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-693808.html</id>
    <title>SSA-693808 V1.0: Deserialization Vulnerability in Siemens Engineering Platforms</title>
    <updated>2025-08-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-693808.html" rel="alternate"/>
    <summary>&lt;p&gt;Affected products do not properly restrict access permissions to a local Windows Named Pipe and do not properly sanitize user-controllable input sent to that Named Pipe. This could allow a local authenticated attacker to cause a type confusion and execute arbitrary code within the affected application and its privileges.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-687955.html</id>
    <title>SSA-687955 V1.1 (Last Update: 2025-08-12): Accessible Development Shell via Physical Interface in SIPROTEC 5</title>
    <updated>2025-08-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-687955.html" rel="alternate"/>
    <summary>&lt;p&gt;Affected SIPROTEC 5 devices contain a development shell which is accessible via a physical interface which is not properly restricted. This could allow an unauthenticated attacker with physical access to an affected device to execute arbitrary commands on the device.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-674084.html</id>
    <title>SSA-674084 V1.0: File Parsing Vulnerabilities in Simcenter Femap Before V2506</title>
    <updated>2025-08-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-674084.html" rel="alternate"/>
    <summary>&lt;p&gt;Simcenter Femap contains a file parsing vulnerability that could be triggered when the application reads files in STP or BMP file format. If a user is tricked to open a malicious file with the affected application, this could lead the application to crash or potentially lead to arbitrary code execution.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-665108.html</id>
    <title>SSA-665108 V1.0: Arbitrary File Upload Vulnerability  in RUGGEDCOM ROX II</title>
    <updated>2025-08-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-665108.html" rel="alternate"/>
    <summary>&lt;p&gt;RUGGEDCOM ROX II devices does not properly enforce limitations on type and size of files that can be uploaded through their web interface. This could allow an attacker with a legitimate, highly privileged account on the web interface to upload arbitrary files onto the filesystem of the devices.&lt;/p&gt;
&lt;p&gt;Siemens is preparing fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-613116.html</id>
    <title>SSA-613116 V1.0: Multiple Vulnerabilities in Third-Party Components in SINEC OS before V3.1</title>
    <updated>2025-08-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-613116.html" rel="alternate"/>
    <summary>&lt;p&gt;SINEC OS before V3.1 contains third-party components with multiple vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-529291.html</id>
    <title>SSA-529291 V1.0: Information Disclosure Vulnerabilities in SICAM Q100/Q200</title>
    <updated>2025-08-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-529291.html" rel="alternate"/>
    <summary>&lt;p&gt;SICAM Q100 and Q200 devices are affected by two information disclosure vulnerabilities that could allow an authenticated local attacker to extract the SMTP account password and use the configured SMTP service for arbitrary purposes.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-517338.html</id>
    <title>SSA-517338 V1.0: Multiple Vulnerabilities in SINEC Traffic Analyzer Before V3.0</title>
    <updated>2025-08-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-517338.html" rel="alternate"/>
    <summary>&lt;p&gt;SINEC Traffic Analyzer before V3.0 is affected by multiple vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for SINEC Traffic Analyzer and recommends to update to the latest version. Siemens is preparing further fix versions and recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-493787.html</id>
    <title>SSA-493787 V1.0: Arbitrary Code Execution Vulnerability in SIMATIC RTLS Locating Manager Before V3.2</title>
    <updated>2025-08-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-493787.html" rel="alternate"/>
    <summary>&lt;p&gt;SIMATIC RTLS Locating Manager Before V3.2 contains an improper input validation vulnerability that could allow an authenticated remote attacker to execute arbitrary code with high privileges.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for SIMATIC RTLS Locating Manager and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-493396.html</id>
    <title>SSA-493396 V1.0: Deserialization Vulnerability in Siemens Engineering Platforms</title>
    <updated>2025-08-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-493396.html" rel="alternate"/>
    <summary>&lt;p&gt;Affected products do not properly sanitize user-controllable input when parsing project files. This could allow an attacker to cause a type confusion and execute arbitrary code within the affected application.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-460466.html</id>
    <title>SSA-460466 V1.1 (Last Update: 2025-08-12): Denial of Service Vulnerability in TIA Project-Server and TIA Portal</title>
    <updated>2025-08-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-460466.html" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in TIA Project Server and TIA Portal could allow an attacker to cause a denial of service condition.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-446307.html</id>
    <title>SSA-446307 V1.1 (Last Update: 2025-08-12): Authentication Bypass Vulnerability in BMC (CVE-2024-54085) affects SIMATIC IPC RS-828A</title>
    <updated>2025-08-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-446307.html" rel="alternate"/>
    <summary>&lt;p&gt;SIMATIC IPC RS-828A is affected by an authentication bypass vulnerability in the Redfish interface of its Baseboard Management Controller (BMC) that could allow an attacker to gain unauthorized access and compromise confidentiality, integrity and availability of the BMC and thus the entire system.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for SIMATIC IPC RS-828A - BMC firmware and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-400089.html</id>
    <title>SSA-400089 V1.0: Denial of Service Vulnerability in SIPROTEC 4 and SIPROTEC 4 Compact</title>
    <updated>2025-08-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-400089.html" rel="alternate"/>
    <summary>&lt;p&gt;SIPROTEC 4 and SIPROTEC 4 Compact devices contain a vulnerability that could allow an unauthenticated remote attacker to cause a denial of service condition.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-398330.html</id>
    <title>SSA-398330 V2.7 (Last Update: 2025-08-12): Vulnerabilities in the additional GNU/Linux subsystem of the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP  &gt;= V3.1.0 and &lt; V3.1.5</title>
    <updated>2025-08-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-398330.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities have been identified in the additional GNU/Linux subsystem of the firmware version &amp;gt;= V3.1.0 and &amp;lt; V3.1.5 for the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP (incl.&#160;SIPLUS variant).&lt;/p&gt;
&lt;p&gt;These GNU/Linux vulnerabilities have been externally identified. Siemens has released new versions for the affected products and recommends to update to the latest versions.&lt;/p&gt;
&lt;p&gt;Note: This SSA advises vulnerabilities for firmware version V3.1 only; for versions &amp;lt; V3.1 refer to Siemens Security Bulletin SSB-439005 (&lt;a href="https://cert-portal.siemens.com/productcert/html/ssb-439005.html" class="uri"&gt;https://cert-portal.siemens.com/productcert/html/ssb-439005.html&lt;/a&gt;).&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-392859.html</id>
    <title>SSA-392859 V1.1 (Last Update: 2025-08-12): Local Arbitrary Code Execution Vulnerability in Siemens Engineering Platforms before V20</title>
    <updated>2025-08-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-392859.html" rel="alternate"/>
    <summary>&lt;p&gt;Affected products contain a local arbitrary code execution vulnerability that could allow an attacker to perform actions against the operation system of that environment.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
&lt;p&gt;Siemens has released products based on the Totally Integrated Automation Portal (TIA Portal) V20 which are not affected by CVE-2024-52051. See the chapter &#8220;Additional Information&#8221; below for more details.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-382999.html</id>
    <title>SSA-382999 V1.0: Multiple Vulnerabilities in Opcenter Quality Before V2506</title>
    <updated>2025-08-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-382999.html" rel="alternate"/>
    <summary>&lt;p&gt;The Opcenter Quality is affected by multiple vulnerabilities in the SmartClient modules Opcenter QL Home (SC), SOA Audit and SOA Cockpit.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-355557.html</id>
    <title>SSA-355557 V1.0: Multiple Vulnerabilities in Third-Party Components in SINEC OS before V3.2</title>
    <updated>2025-08-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-355557.html" rel="alternate"/>
    <summary>&lt;p&gt;SINEC OS before V3.2 contains third-party components with multiple vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-353002.html</id>
    <title>SSA-353002 V1.2 (Last Update: 2025-08-12): Multiple Vulnerabilities in SCALANCE XB-200 / XC-200 / XP-200 / XF-200BA / XR-300WG Family</title>
    <updated>2025-08-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-353002.html" rel="alternate"/>
    <summary>&lt;p&gt;SCALANCE XB-200/XC-200/XP-200/XF-200BA/XR-300WG Family is affected by multiple vulnerabilities. CVE-2023-44318 and CVE-2023-44321 were previously published as part of SSA-699386.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-331739.html</id>
    <title>SSA-331739 V1.0: Privilege Escalation Vulnerability in WIBU CodeMeter Runtime Affecting Siemens Products</title>
    <updated>2025-08-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-331739.html" rel="alternate"/>
    <summary>&lt;p&gt;WIBU Systems published information about a privilege escalation vulnerability under a certain circumstances and associated fix releases of CodeMeter Runtime, a product provided by WIBU Systems and used in several Siemens industrial products.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-282044.html</id>
    <title>SSA-282044 V1.0: DLL Hijacking Vulnerability in Siemens Web Installer used by the Online Software Delivery</title>
    <updated>2025-08-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-282044.html" rel="alternate"/>
    <summary>&lt;p&gt;The installers used to install several Siemens products are affected by a DLL hijacking vulnerability. This could allow an attacker to execute arbitrary code when a legitimate user installs an application that uses the affected installer component. This vulnerability poses a risk only during setup and installation phase of the affected applications downloaded e.g.&#160;via OSD (Online Software Delivery).&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends using the latest versions during setup and installation. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-265688.html</id>
    <title>SSA-265688 V1.8 (Last Update: 2025-08-12): Vulnerabilities in the additional GNU/Linux subsystem of the SIMATIC S7-1500 TM MFP V1.1</title>
    <updated>2025-08-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-265688.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities have been identified in the additional GNU/Linux subsystem of the SIMATIC S7-1500 TM MFP V1.1.&lt;/p&gt;
&lt;p&gt;Siemens is preparing fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-256353.html</id>
    <title>SSA-256353 V1.6 (Last Update: 2025-08-12): Third-Party Component Vulnerabilities in RUGGEDCOM ROS</title>
    <updated>2025-08-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-256353.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities affect various third-party components of the RUGGEDCOM Operating System (ROS). If exploited, an attacker could cause a denial-of-service, act as a man-in-the-middle or retrieval of sensitive information or gain privileged functions.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-186293.html</id>
    <title>SSA-186293 V1.0: XML External Entity (XXE) Injection Vulnerability in SIMOTION SCOUT, SIMOTION SCOUT TIA and SINAMICS STARTER</title>
    <updated>2025-08-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-186293.html" rel="alternate"/>
    <summary>&lt;p&gt;SIMOTION SCOUT, SIMOTION SCOUT TIA and SINAMICS STARTER are affected by an XXE injection vulnerability that could allow an attacker to access arbitrary application files.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-177847.html</id>
    <title>SSA-177847 V1.0: Improper VNC Password Check Vulnerability in SINUMERIK Controllers</title>
    <updated>2025-08-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-177847.html" rel="alternate"/>
    <summary>&lt;p&gt;Siemens SINUMERIK Controllers are affected by an improper VNC password check vulnerability.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-170375.html</id>
    <title>SSA-170375 V1.1 (Last Update: 2025-08-12): Multiple Vulnerabilities in RUGGEDCOM ROS Before V5.9</title>
    <updated>2025-08-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-170375.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities affect the RUGGEDCOM Operating System (ROS). The common denominator to all vulnerabilities is the leak of confidential information.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-097435.html</id>
    <title>SSA-097435 V1.9 (Last Update: 2025-08-12): Usernames Disclosure Vulnerability in Mendix Runtime</title>
    <updated>2025-08-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-097435.html" rel="alternate"/>
    <summary>&lt;p&gt;Mendix Runtime contains an observable response discrepancy vulnerability when validating usernames during authentication. This could allow unauthenticated remote attackers to distinguish between valid and invalid usernames.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-094954.html</id>
    <title>SSA-094954 V1.0: Authentication Bypass Vulnerability in BIST mode of RUGGEDCOM ROX II</title>
    <updated>2025-08-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-094954.html" rel="alternate"/>
    <summary>&lt;p&gt;RUGGEDCOM ROX II devices do not properly limit access through their Built-In-Self-Test (BIST) mode. This could allow a local attacker to bypass authentication and access a root shell on the device.&lt;/p&gt;
&lt;p&gt;Siemens is preparing fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-082556.html</id>
    <title>SSA-082556 V1.1 (Last Update: 2025-08-12): Vulnerabilities in the additional GNU/Linux subsystem of the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP V3.1.5</title>
    <updated>2025-08-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-082556.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities have been identified in the additional GNU/Linux subsystem of the firmware version V3.1.5 for the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP (incl.&#160;SIPLUS variant).&lt;/p&gt;
&lt;p&gt;Siemens is preparing fix versions and recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-028723.html</id>
    <title>SSA-028723 V1.0: Multiple OpenSSL Vulnerabilities in BFCClient Before V2.17</title>
    <updated>2025-08-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-028723.html" rel="alternate"/>
    <summary>&lt;p&gt;Siemens BFCClient contains multiple vulnerabilities in the integrated OpenSSL component that could allow an attacker to read memory contents, to change the application behaviour or to create a denial of service condition.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for BFCClient and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-725549.html</id>
    <title>SSA-725549 V1.3 (Last Update: 2025-07-21): Denial of Service of ICMP in Industrial Devices</title>
    <updated>2025-07-21T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-725549.html" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability exists in affected products that could allow remote attackers to affect the availability of the devices under certain conditions.&lt;/p&gt;
&lt;p&gt;The integrated ICMP services in the underlying TCP/IP stack is vulnerable to a denial of service attack through specially crafted ICMP packets. A successful attack will impact the availability of ICMP services on affected products for a limited time before it restores itself after the attack ceases. Other communication services are not affected by this vulnerability.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-183963.html</id>
    <title>SSA-183963 V1.1 (Last Update: 2025-07-18): Certificate Validation Vulnerabilities in SICAM TOOLBOX II Before V07.11</title>
    <updated>2025-07-18T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-183963.html" rel="alternate"/>
    <summary>&lt;p&gt;During establishment of a https connection to the TLS server of a managed device, SICAM TOOLBOX II improperly validates that device&#8217;s certificate. This could allow an attacker to execute an on-path network (MitM) attack.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for SICAM TOOLBOX II and recommends to update to the latest version.&lt;/p&gt;
&lt;p&gt;The chapter &#8220;Additional Information&#8221; provides additional guidance how to prevent on-path network attacks.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-725549.html</id>
    <title>SSA-725549 V1.2 (Last Update: 2025-07-10): Denial of Service of ICMP in Industrial Devices</title>
    <updated>2025-07-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-725549.html" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability exists in affected products that could allow remote attackers to affect the availability of the devices under certain conditions.&lt;/p&gt;
&lt;p&gt;The integrated ICMP services in the underlying TCP/IP stack is vulnerable to a denial of service attack through specially crafted ICMP packets. A successful attack will impact the availability of ICMP services on affected products for a limited time before it restores itself after the attack ceases. Other communication services are not affected by this vulnerability.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-938066.html</id>
    <title>SSA-938066 V1.0: Remote Code Execution Vulnerability in SENTRON Powermanager and Desigo CC</title>
    <updated>2025-07-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-938066.html" rel="alternate"/>
    <summary>&lt;p&gt;SENTRON Powermanager and Desigo CC devices are not affected by a remote code execution vulnerability in Apache Tomcat that can be triggered via a partial PUT request due to a path equivalence issue. It could allow a remote attacker to execute arbitrary code, disclose sensitive information, or inject malicious content.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-904646.html</id>
    <title>SSA-904646 V1.0: Sensitive Data Exposure Vulnerability in SIPROTEC 5 Devices</title>
    <updated>2025-07-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-904646.html" rel="alternate"/>
    <summary>&lt;p&gt;A sensitive data exposure vulnerability in SIPROTEC 5 can allow an attacker to retrieve sensitive session data from browser history, logs, or other storage mechanisms, potentially leading to unauthorized access.&lt;/p&gt;
&lt;p&gt;Siemens is preparing fix versions and recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-876787.html</id>
    <title>SSA-876787 V1.8 (Last Update: 2025-07-08): Open Redirect Vulnerability in SIMATIC S7-1500 and S7-1200 CPUs</title>
    <updated>2025-07-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-876787.html" rel="alternate"/>
    <summary>&lt;p&gt;Several SIMATIC S7-1500 and S7-1200 CPU versions are affected by an open redirect vulnerability that could allow an attacker to make the web server of affected devices redirect a legitimate user to an attacker-chosen URL. For a successful attack, the legitimate user must actively click on an attacker-crafted link.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-864900.html</id>
    <title>SSA-864900 V1.1 (Last Update: 2025-07-08): Multiple Vulnerabilities in Fortigate NGFW on RUGGEDCOM APE1808 Devices</title>
    <updated>2025-07-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-864900.html" rel="alternate"/>
    <summary>&lt;p&gt;&lt;a href="https://www.fortiguard.com/psirt"&gt;Fortinet has published&lt;/a&gt; information on vulnerabilities in FortiOS. This advisory lists the related Siemens Industrial products.&lt;/p&gt;
&lt;p&gt;Siemens is preparing fix versions and recommends to consult and implement the workarounds provided in Fortinet&#8217;s upstream security notifications.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-770770.html</id>
    <title>SSA-770770 V1.5 (Last Update: 2025-07-08): Multiple Vulnerabilities in Fortigate NGFW Before V7.4.7 on RUGGEDCOM APE1808 Devices</title>
    <updated>2025-07-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-770770.html" rel="alternate"/>
    <summary>&lt;p&gt;&lt;a href="https://www.fortiguard.com/psirt"&gt;Fortinet has published&lt;/a&gt; information on vulnerabilities in FortiOS. This advisory lists the related Siemens Industrial products.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for RUGGEDCOM APE1808 and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-763427.html</id>
    <title>SSA-763427 V1.6 (Last Update: 2025-07-08): Authentication Bypass Vulnerability in SIMATIC CP and TIM Devices</title>
    <updated>2025-07-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-763427.html" rel="alternate"/>
    <summary>&lt;p&gt;SIMATIC CP and TIM devices contain an authentication bypass vulnerability that could allow unauthenticated users to perform administrative operations under certain conditions.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-725549.html</id>
    <title>SSA-725549 V1.1 (Last Update: 2025-07-08): Denial of Service of ICMP in Industrial Devices</title>
    <updated>2025-07-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-725549.html" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability exists in affected products that could allow remote attackers to affect the availability of the devices under certain conditions.&lt;/p&gt;
&lt;p&gt;The integrated ICMP services in the underlying TCP/IP stack is vulnerable to a denial of service attack through specially crafted ICMP packets. A successful attack will impact the availability of ICMP services on affected products for a limited time before it restores itself after the attack ceases. Other communication services are not affected by this vulnerability.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-723487.html</id>
    <title>SSA-723487 V1.7 (Last Update: 2025-07-08): RADIUS Protocol Susceptible to Forgery Attacks (CVE-2024-3596) - Impact to SCALANCE, RUGGEDCOM and Related Products</title>
    <updated>2025-07-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-723487.html" rel="alternate"/>
    <summary>&lt;p&gt;This advisory documents the impact of CVE-2024-3596 (also dubbed &#8220;Blastradius&#8221;), a vulnerability in the RADIUS protocol, to SCALANCE, RUGGEDCOM and related products.&lt;/p&gt;
&lt;p&gt;The vulnerability could allow on-path attackers, located between a Network Access Server (the RADIUS client, e.g., SCALANCE or RUGGEDCOM devices) and a RADIUS server (e.g., SINEC INS), to forge Access-Request packets in a way that enables them to modify the corresponding server response packet at will, e.g., turning an &#8220;Access-Reject&#8221; message into an &#8220;Access-Accept&#8221;. This would cause the Network Access Server to grant the attackers access to the network with the attackers desired authorization (and without the need of knowing or guessing legitimate access credentials).&lt;/p&gt;
&lt;p&gt;Further details incl.&#160;external references can be found in the chapter &#8220;Additional Information&#8221;. Siemens has released new versions for several affected products and recommends to update to the latest versions, and to configure the updated systems as recommended in the chapter &#8220;Additional Information&#8221;. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available. See chapter &#8220;Additional Information&#8221; for details.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-698820.html</id>
    <title>SSA-698820 V1.8 (Last Update: 2025-07-08): Multiple Vulnerabilities in Fortigate NGFW Before V7.4.4 on RUGGEDCOM APE1808 Devices</title>
    <updated>2025-07-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-698820.html" rel="alternate"/>
    <summary>&lt;p&gt;&lt;a href="https://www.fortiguard.com/psirt"&gt;Fortinet has published&lt;/a&gt; information on vulnerabilities in FORTIOS. This advisory lists the related Siemens Industrial products.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version of Fortigate NGFW for RUGGEDCOM APE1808 and recommends to update to the latest version. Siemens recommends to consult and implement the workarounds provided in Fortinet&#8217;s upstream security notifications.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-634640.html</id>
    <title>SSA-634640 V1.1 (Last Update: 2025-07-08): Weak Authentication Vulnerability in Siemens Industrial Edge Devices</title>
    <updated>2025-07-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-634640.html" rel="alternate"/>
    <summary>&lt;p&gt;Siemens Industrial Edge Devices contain a weak authentication vulnerability that could facilitate an unauthenticated remote attacker to circumvent authentication and impersonate a legitimate user.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-627195.html</id>
    <title>SSA-627195 V1.1 (Last Update: 2025-07-08): Zip Path Traversal Vulnerability in Mendix Studio Pro's Module Installation Process</title>
    <updated>2025-07-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-627195.html" rel="alternate"/>
    <summary>&lt;p&gt;Mendix Studio Pro contains a vulnerability in the module installation process, that could allow an attacker to write or modify arbitrary files in directories outside a developer&#8217;s project directory.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-626991.html</id>
    <title>SSA-626991 V1.0: Denial of Service Vulnerability in SIMATIC CN 4100 before V4.0</title>
    <updated>2025-07-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-626991.html" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in SIMATIC CN 4100 could allow an attacker to cause a denial of service condition.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for SIMATIC CN 4100 and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-614723.html</id>
    <title>SSA-614723 V1.1 (Last Update: 2025-07-08): Denial of Service Vulnerabilities in User Management Component (UMC)</title>
    <updated>2025-07-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-614723.html" rel="alternate"/>
    <summary>&lt;p&gt;Siemens User Management Component (UMC) is affected by three vulnerabilities which could allow an unauthenticated remote attacker to cause a denial of service condition.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-593272.html</id>
    <title>SSA-593272 V2.5 (Last Update: 2025-07-08): SegmentSmack in Interniche IP-Stack based Industrial Devices</title>
    <updated>2025-07-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-593272.html" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability exists in affected products that could allow remote attackers to affect the availability of the devices under certain conditions.&lt;/p&gt;
&lt;p&gt;The underlying TCP stack can be forced to make very computation expensive calls for every incoming packet which can lead to a Denial-of-Service.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-573669.html</id>
    <title>SSA-573669 V1.0: Multiple Vulnerabilities in TIA Administrator Before V3.0.6</title>
    <updated>2025-07-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-573669.html" rel="alternate"/>
    <summary>&lt;p&gt;Siemens TIA Administrator before V3.0.6 contains multiple vulnerabilities which could allow an attacker to escalate privilege or exceute arbitrary code during installations.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for TIA Administrator and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-513708.html</id>
    <title>SSA-513708 V1.1 (Last Update: 2025-07-08): Multiple Vulnerabilities in Palo Alto Networks Virtual NGFW on RUGGEDCOM APE1808 Devices</title>
    <updated>2025-07-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-513708.html" rel="alternate"/>
    <summary>&lt;p&gt;Palo Alto Networks has published [1] information on vulnerabilities in PAN-OS. This advisory lists the related Siemens Industrial products affected by these vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens is preparing fix versions and recommends countermeasures for products where fixes are not, or not yet available. Customers are advised to consult and implement the workarounds provided in Palo Alto Networks&#8217; upstream security notifications.&lt;/p&gt;
&lt;p&gt;[1] https://security.paloaltonetworks.com/&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-460466.html</id>
    <title>SSA-460466 V1.0: Denial of Service Vulnerability in TIA Project-Server and TIA Portal</title>
    <updated>2025-07-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-460466.html" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in TIA Project Server and TIA Portal could allow an attacker to cause a denial of service condition.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-446545.html</id>
    <title>SSA-446545 V1.1 (Last Update: 2025-07-08): Impact of RegreSSHion (CVE-2024-6387)  in Siemens Industrial Products</title>
    <updated>2025-07-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-446545.html" rel="alternate"/>
    <summary>&lt;p&gt;An OpenSSH vulnerability, known as regreSSHion, affects multiple Siemens industrial products. This security regression vulnerability consists in a race condition which may allow an unauthenticated remote attacker to achieve remote code execution with high impact on the affected system.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-366067.html</id>
    <title>SSA-366067 V1.5 (Last Update: 2025-07-08): Multiple Vulnerabilities in Fortigate NGFW Before V7.4.1 on RUGGEDCOM APE1808 Devices</title>
    <updated>2025-07-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-366067.html" rel="alternate"/>
    <summary>&lt;p&gt;&lt;a href="https://www.fortiguard.com/psirt"&gt;Fortinet has published&lt;/a&gt; information on vulnerabilities in FORTIOS. This advisory lists the related Siemens Industrial products.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for RUGGEDCOM APE1808 and recommends to update to the latest version. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-364175.html</id>
    <title>SSA-364175 V1.6 (Last Update: 2025-07-08): Multiple Vulnerabilities in Palo Alto Networks Virtual NGFW on RUGGEDCOM APE1808 Devices Before V11.1.4-h1</title>
    <updated>2025-07-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-364175.html" rel="alternate"/>
    <summary>&lt;p&gt;Palo Alto Networks has published [1] information on vulnerabilities in PAN-OS. This advisory lists the related Siemens Industrial products affected by these vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends specific countermeasures for products where updates are not, or not yet available. Customers are advised to consult and implement the workarounds provided in Palo Alto Networks&#8217; upstream security notifications.&lt;/p&gt;
&lt;p&gt;[1] &lt;a href="https://security.paloaltonetworks.com/" class="uri"&gt;https://security.paloaltonetworks.com/&lt;/a&gt;&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-327438.html</id>
    <title>SSA-327438 V1.1 (Last Update: 2025-07-08): Multiple Vulnerabilities in SCALANCE LPE9403</title>
    <updated>2025-07-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-327438.html" rel="alternate"/>
    <summary>&lt;p&gt;SCALANCE LPE9403 is affected by multiple vulnerabilities which lead to a compromise in availability, integrity and confidentiality.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for SCALANCE LPE9403 and recommends to update to the latest version. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-265688.html</id>
    <title>SSA-265688 V1.7 (Last Update: 2025-07-08): Vulnerabilities in the additional GNU/Linux subsystem of the SIMATIC S7-1500 TM MFP V1.1</title>
    <updated>2025-07-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-265688.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities have been identified in the additional GNU/Linux subsystem of the SIMATIC S7-1500 TM MFP V1.1.&lt;/p&gt;
&lt;p&gt;Siemens is preparing fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-183963.html</id>
    <title>SSA-183963 V1.0: Certificate Validation Vulnerabilities in SICAM TOOLBOX II Before V07.11</title>
    <updated>2025-07-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-183963.html" rel="alternate"/>
    <summary>&lt;p&gt;During establishment of a https connection to the TLS server of a managed device, SICAM TOOLBOX II improperly validates that device&#8217;s certificate. This could allow an attacker to execute an on-path network (MitM) attack.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for SICAM TOOLBOX II and recommends to update to the latest version.&lt;/p&gt;
&lt;p&gt;The chapter &#8220;Additional Information&#8221; provides additional guidance how to prevent on-path network attacks.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-091753.html</id>
    <title>SSA-091753 V1.0: Multiple Vulnerabilities in Solid Edge Before SE2025 Update 5</title>
    <updated>2025-07-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-091753.html" rel="alternate"/>
    <summary>&lt;p&gt;Solid Edge is affected by multiple file parsing vulnerabilities that could be triggered when the application reads specially crafted files in various formats such as PAR or CFG format. This could allow an attacker to crash the application or execute arbitrary code.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for Solid Edge SE2025 and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-083019.html</id>
    <title>SSA-083019 V1.0: Multiple Vulnerabilities in RUGGEDCOM ROS Devices</title>
    <updated>2025-07-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-083019.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities affect the RUGGEDCOM Operating System (ROS).&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-078892.html</id>
    <title>SSA-078892 V1.0: Multiple Vulnerabilities in SINEC NMS Before V4.0</title>
    <updated>2025-07-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-078892.html" rel="alternate"/>
    <summary>&lt;p&gt;Siemens SINEC NMS before V4.0 is affected by multiple vulnerabilities which could allow an attacker to elevate privilege and exceute arbitrary code.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for SINEC NMS and recommends to update to the latest version. Siemens is preparing further fix versions and recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssb-104599.html</id>
    <title>SSB-104599 V1.0: Increasing Cyber Threats to Industrial Control Systems</title>
    <updated>2025-07-07T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssb-104599.html" rel="alternate"/>
    <summary>
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssb-295699.html</id>
    <title>SSB-295699 V1.0: Configuration of Microsoft Defender Antivirus for SIMATIC PCS 7 and SIMATIC PCS neo</title>
    <updated>2025-06-24T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssb-295699.html" rel="alternate"/>
    <summary>
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-426509.html</id>
    <title>SSA-426509 V1.1 (Last Update: 2025-06-17): Multiple Local Code Execution Vulnerabilities in Questa and ModelSim</title>
    <updated>2025-06-17T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-426509.html" rel="alternate"/>
    <summary>&lt;p&gt;Questa and ModelSim (incl.&#160;OEM Editions) are affected by multiple vulnerabilities that could allow a local attacker to inject arbitrary code and escalate privileges.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-345750.html</id>
    <title>SSA-345750 V1.1 (Last Update: 2025-06-16): Default Credentials in Energy Services Using Elspec G5DFR</title>
    <updated>2025-06-16T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-345750.html" rel="alternate"/>
    <summary>&lt;p&gt;Energy Services from Siemens (previously known as Managed Applications and Services), sell solutions using Elspec G5 Digital Fault Recorder which contains default credentials with admin privileges. A client configuration with remote access could allow an attacker to gain remote control of the G5DFR component and tamper outputs from the device.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-726617.html</id>
    <title>SSA-726617 V1.2 (Last Update: 2025-06-12): Incorrect Privilege Assignment Vulnerability in Mendix OIDC SSO Module</title>
    <updated>2025-06-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-726617.html" rel="alternate"/>
    <summary>&lt;p&gt;The Mendix OIDC SSO module grants read and write access to all tokens exclusively to the Administrator role and could result in privilege misuse by an adversary modifying the module during Mendix development.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-627195.html</id>
    <title>SSA-627195 V1.0: Zip Path Traversal Vulnerability in Mendix Studio Pro's Module Installation Process</title>
    <updated>2025-06-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-627195.html" rel="alternate"/>
    <summary>&lt;p&gt;Mendix Studio Pro contains a vulnerability in the module installation process, that could allow an attacker to write or modify arbitrary files in directories outside a developer&#8217;s project directory.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-928984.html</id>
    <title>SSA-928984 V1.3 (Last Update: 2025-06-10): Heap-based Buffer Overflow Vulnerability in User Management Component (UMC)</title>
    <updated>2025-06-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-928984.html" rel="alternate"/>
    <summary>&lt;p&gt;Siemens User Management Component (UMC) is affected by a heap-based buffer overflow vulnerability which could allow an unauthenticated remote attacker arbitrary code execution.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-876787.html</id>
    <title>SSA-876787 V1.7 (Last Update: 2025-06-10): Open Redirect Vulnerability in SIMATIC S7-1500 and S7-1200 CPUs</title>
    <updated>2025-06-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-876787.html" rel="alternate"/>
    <summary>&lt;p&gt;Several SIMATIC S7-1500 and S7-1200 CPU versions are affected by an open redirect vulnerability that could allow an attacker to make the web server of affected devices redirect a legitimate user to an attacker-chosen URL. For a successful attack, the legitimate user must actively click on an attacker-crafted link.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-874353.html</id>
    <title>SSA-874353 V1.3 (Last Update: 2025-06-10): Entity Enumeration Vulnerability in Mendix Runtime</title>
    <updated>2025-06-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-874353.html" rel="alternate"/>
    <summary>&lt;p&gt;Mendix Runtime allows for entity enumeration due to distinguishable responses in certain client actions. This could allow an unauthenticated remote attacker to list all valid entities and attribute names of a Mendix Runtime-based application.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-858251.html</id>
    <title>SSA-858251 V1.1 (Last Update: 2025-06-10): Authentication Bypass Vulnerabilities in OPC UA</title>
    <updated>2025-06-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-858251.html" rel="alternate"/>
    <summary>&lt;p&gt;The products listed below contain two authentication bypass vulnerabilities that could allow an attacker to gain access to the data managed by the server.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-770770.html</id>
    <title>SSA-770770 V1.4 (Last Update: 2025-06-10): Multiple Vulnerabilities in Fortigate NGFW Before V7.4.7 on RUGGEDCOM APE1808 Devices</title>
    <updated>2025-06-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-770770.html" rel="alternate"/>
    <summary>&lt;p&gt;&lt;a href="https://www.fortiguard.com/psirt"&gt;Fortinet has published&lt;/a&gt; information on vulnerabilities in FortiOS. This advisory lists the related Siemens Industrial products.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for RUGGEDCOM APE1808 and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-723487.html</id>
    <title>SSA-723487 V1.6 (Last Update: 2025-06-10): RADIUS Protocol Susceptible to Forgery Attacks (CVE-2024-3596) - Impact to SCALANCE, RUGGEDCOM and Related Products</title>
    <updated>2025-06-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-723487.html" rel="alternate"/>
    <summary>&lt;p&gt;This advisory documents the impact of CVE-2024-3596 (also dubbed &#8220;Blastradius&#8221;), a vulnerability in the RADIUS protocol, to SCALANCE, RUGGEDCOM and related products.&lt;/p&gt;
&lt;p&gt;The vulnerability could allow on-path attackers, located between a Network Access Server (the RADIUS client, e.g., SCALANCE or RUGGEDCOM devices) and a RADIUS server (e.g., SINEC INS), to forge Access-Request packets in a way that enables them to modify the corresponding server response packet at will, e.g., turning an &#8220;Access-Reject&#8221; message into an &#8220;Access-Accept&#8221;. This would cause the Network Access Server to grant the attackers access to the network with the attackers desired authorization (and without the need of knowing or guessing legitimate access credentials).&lt;/p&gt;
&lt;p&gt;Further details incl.&#160;external references can be found in the chapter &#8220;Additional Information&#8221;. Siemens has released new versions for several affected products and recommends to update to the latest versions, and to configure the updated systems as recommended in the chapter &#8220;Additional Information&#8221;. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available. See chapter &#8220;Additional Information&#8221; for details.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-698820.html</id>
    <title>SSA-698820 V1.7 (Last Update: 2025-06-10): Multiple Vulnerabilities in Fortigate NGFW Before V7.4.4 on RUGGEDCOM APE1808 Devices</title>
    <updated>2025-06-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-698820.html" rel="alternate"/>
    <summary>&lt;p&gt;&lt;a href="https://www.fortiguard.com/psirt"&gt;Fortinet has published&lt;/a&gt; information on vulnerabilities in FORTIOS. This advisory lists the related Siemens Industrial products.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version of Fortigate NGFW for RUGGEDCOM APE1808 and recommends to update to the latest version. Siemens recommends to consult and implement the workarounds provided in Fortinet&#8217;s upstream security notifications.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-693776.html</id>
    <title>SSA-693776 V1.0: Multiple Vulnerabilities in Industrial Communication Devices based on SINEC OS before V3.2</title>
    <updated>2025-06-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-693776.html" rel="alternate"/>
    <summary>&lt;p&gt;Several Industrial Communication Devices based on SINEC OS before V3.2 contain multiple vulnerabilities that could allow an attacker to circumvent authorization checks and perform actions that exceed the permissions of the &#8220;guest&#8221; role.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-656895.html</id>
    <title>SSA-656895 V1.3 (Last Update: 2025-06-10): Open Redirect Vulnerability in Teamcenter</title>
    <updated>2025-06-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-656895.html" rel="alternate"/>
    <summary>&lt;p&gt;The SSO login service in Teamcenter contains an open redirect vulnerability that could allow an attacker to redirect the legitimate user to an attacker-chosen URL to steal valid session data.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-633269.html</id>
    <title>SSA-633269 V1.0: Incorrect Authorization Check Vulnerability in Industrial Communication Devices based on SINEC OS before V3.1</title>
    <updated>2025-06-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-633269.html" rel="alternate"/>
    <summary>&lt;p&gt;Several Industrial Communication Devices based on SINEC OS before V3.1 contain an incorrect authorization check vulnerability that could allow an attacker to perform actions that exceed the permissions of the &#8220;guest&#8221; role.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-620799.html</id>
    <title>SSA-620799 V1.1 (Last Update: 2025-06-10): Denial of Service Vulnerability During BLE Pairing in SENTRON Powercenter 1000/1100</title>
    <updated>2025-06-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-620799.html" rel="alternate"/>
    <summary>&lt;p&gt;SENTRON Powercenter devices are &lt;em&gt;not&lt;/em&gt; affected by a denial of service vulnerability that can be triggered during BLE (Bluetooth Low Energy) pairing.&lt;/p&gt;
&lt;p&gt;Note: Unlike stated in the initial version of this security advisory from 2024-12-10, detailed analysis has shown that SENTRON Powercenter devices are not affected by this vulnerability.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-513708.html</id>
    <title>SSA-513708 V1.0: Reflected Cross-Site Scripting Vulnerability in Palo Alto Networks Virtual NGFW on RUGGEDCOM APE1808 Devices</title>
    <updated>2025-06-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-513708.html" rel="alternate"/>
    <summary>&lt;p&gt;Palo Alto Networks has published [1] information on cross-site scripting vulnerability in PAN-OS. This advisory lists the related Siemens Industrial products affected by this vulnerability.&lt;/p&gt;
&lt;p&gt;Siemens is preparing fix versions and recommends countermeasures for products where fixes are not, or not yet available. Customers are advised to consult and implement the workarounds provided in Palo Alto Networks&#8217; upstream security notifications.&lt;/p&gt;
&lt;p&gt;[1] https://security.paloaltonetworks.com/&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-497656.html</id>
    <title>SSA-497656 V1.1 (Last Update: 2025-06-10): Multiple NTP Vulnerabilities in TIM 4R-IE Devices</title>
    <updated>2025-06-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-497656.html" rel="alternate"/>
    <summary>&lt;p&gt;TIM 4R-IE devices contain multiple vulnerabilities in the integrated NTP component as listed below.&lt;/p&gt;
&lt;p&gt;Siemens recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-486186.html</id>
    <title>SSA-486186 V1.0: Out of Bounds Read Vulnerability in Tecnomatix Plant Simulation Before 2404</title>
    <updated>2025-06-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-486186.html" rel="alternate"/>
    <summary>&lt;p&gt;Siemens Tecnomatix Plant Simulation contains a out-of-bound read vulnerability that could be triggered when the application reads files in WRL format. If a user is tricked to open a malicious file with any of the affected products, this could lead the application to crash or potentially lead to arbitrary code execution.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-398330.html</id>
    <title>SSA-398330 V2.6 (Last Update: 2025-06-10): Vulnerabilities in the additional GNU/Linux subsystem of the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP  &gt;= V3.1.0 and &lt; V3.1.5</title>
    <updated>2025-06-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-398330.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities have been identified in the additional GNU/Linux subsystem of the firmware version &amp;gt;= V3.1.0 and &amp;lt; V3.1.5 for the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP (incl.&#160;SIPLUS variant).&lt;/p&gt;
&lt;p&gt;These GNU/Linux vulnerabilities have been externally identified. Siemens has released new versions for the affected products and recommends to update to the latest versions.&lt;/p&gt;
&lt;p&gt;Note: This SSA advises vulnerabilities for firmware version V3.1 only; for versions &amp;lt; V3.1 refer to Siemens Security Bulletin SSB-439005 (&lt;a href="https://cert-portal.siemens.com/productcert/html/ssb-439005.html" class="uri"&gt;https://cert-portal.siemens.com/productcert/html/ssb-439005.html&lt;/a&gt;).&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-366067.html</id>
    <title>SSA-366067 V1.4 (Last Update: 2025-06-10): Multiple Vulnerabilities in Fortigate NGFW Before V7.4.1 on RUGGEDCOM APE1808 Devices</title>
    <updated>2025-06-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-366067.html" rel="alternate"/>
    <summary>&lt;p&gt;&lt;a href="https://www.fortiguard.com/psirt"&gt;Fortinet has published&lt;/a&gt; information on vulnerabilities in FORTIOS. This advisory lists the related Siemens Industrial products.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for RUGGEDCOM APE1808 and recommends to update to the latest version. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-354569.html</id>
    <title>SSA-354569 V1.5 (Last Update: 2025-06-10): Multiple Vulnerabilities in Palo Alto Networks PAN-OS on RUGGEDCOM APE1808 Devices</title>
    <updated>2025-06-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-354569.html" rel="alternate"/>
    <summary>&lt;p&gt;Palo Alto Networks has published [1] information on vulnerabilities in PAN-OS. This advisory lists the related Siemens Industrial products affected by these vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens is preparing fix versions and recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
&lt;p&gt;[1] https://security.paloaltonetworks.com/&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-345750.html</id>
    <title>SSA-345750 V1.0: Default Credentials in Energy Services Using Elspec G5DFR</title>
    <updated>2025-06-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-345750.html" rel="alternate"/>
    <summary>&lt;p&gt;Siemens Energy Services (previously known as Managed Applications and Services), sell solutions using Elspec G5 Digital Fault Recorder which contains default credentials with admin privileges. A client configuration with remote access could allow an attacker to gain remote control of the G5DFR component and tamper outputs from the device.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-340240.html</id>
    <title>SSA-340240 V1.2 (Last Update: 2025-06-10): Denial of Service Vulnerability in SIRIUS 3RV2921-5M</title>
    <updated>2025-06-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-340240.html" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in SIRIUS 3RV2921-5M could allow an attacker to cause a denial of service condition.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for SIRIUS 3RV2921-5M and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-301229.html</id>
    <title>SSA-301229 V1.1 (Last Update: 2025-06-10): Client-Side Enforcement of Server-Side Security Vulnerabilities in RUGGEDCOM ROX II</title>
    <updated>2025-06-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-301229.html" rel="alternate"/>
    <summary>&lt;p&gt;The web interface of RUGGEDCOM ROX II devices contain multiple Client-Side Enforcement of Server-Side Security vulnerabilities that could allow an attacker with a legitimate, highly privileged account on the web interface to get privileged code execution in the underlying OS of the affected products.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-265688.html</id>
    <title>SSA-265688 V1.6 (Last Update: 2025-06-10): Vulnerabilities in the additional GNU/Linux subsystem of the SIMATIC S7-1500 TM MFP V1.1</title>
    <updated>2025-06-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-265688.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities have been identified in the additional GNU/Linux subsystem of the SIMATIC S7-1500 TM MFP V1.1.&lt;/p&gt;
&lt;p&gt;Siemens is preparing fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-216014.html</id>
    <title>SSA-216014 V1.1 (Last Update: 2025-06-10): Vulnerabilities in EFI variable of SIMATIC IPCs, SIMATIC Tablet PCs, and SIMATIC Field PGs</title>
    <updated>2025-06-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-216014.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities has been identified in Siemens SIMATIC IPCs, SIMATIC Tablet PCs, and SIMATIC Field PGs that can allow an authenticated attacker to alter the secure boot and password configurations.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions of BIOS for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-162506.html</id>
    <title>SSA-162506 V1.4 (Last Update: 2025-06-10): DHCP Client Vulnerability in SIMOTICS CONNECT 400, Desigo PXC/PXM, APOGEE MEC/MBC/PXC, APOGEE PXC Series, and TALON TC Series</title>
    <updated>2025-06-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-162506.html" rel="alternate"/>
    <summary>&lt;p&gt;SIMOTICS CONNECT 400, Desigo (Power PC-based), APOGEE MEC/MBC/PXC and TALON TC products are affected by a DHCP Client vulnerability as initially reported in &lt;a href="https://cert-portal.siemens.com/productcert/html/ssa-434032.html"&gt;SSA-434032&lt;/a&gt; for the Mentor Nucleus Networking Module.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-082556.html</id>
    <title>SSA-082556 V1.0: Vulnerabilities in the additional GNU/Linux subsystem of the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP V3.1.5</title>
    <updated>2025-06-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-082556.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities have been identified in the additional GNU/Linux subsystem of the firmware version V3.1.5 for the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP (incl.&#160;SIPLUS variant).&lt;/p&gt;
&lt;p&gt;Siemens is preparing fix versions and recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-054046.html</id>
    <title>SSA-054046 V1.6 (Last Update: 2025-06-10): Unauthenticated Information Disclosure in Web Server of SIMATIC S7-1500 CPUs</title>
    <updated>2025-06-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-054046.html" rel="alternate"/>
    <summary>&lt;p&gt;Several SIMATIC S7-1500 CPU versions are affected by an authentication bypass vulnerability that could allow an unauthenticated remote attacker to gain knowledge about actual and configured maximum cycle times and communication load of the CPU.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-367714.html</id>
    <title>SSA-367714 V1.0: Improper Integrity Check of Firmware Updates in SiPass integrated AC5102 / ACC-G2 and ACC-AP</title>
    <updated>2025-05-23T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-367714.html" rel="alternate"/>
    <summary>&lt;p&gt;SiPass integrated ACC (Advanced Central Controller) devices do not properly check the integrity of firmware updates. This could allow an attacker to upload a maliciously modified firmware onto the device.&lt;/p&gt;
&lt;p&gt;Siemens is preparing fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-041082.html</id>
    <title>SSA-041082 V1.0: Out of Bounds Read Vulnerability in SiPass Integrated Before V2.95.3.18</title>
    <updated>2025-05-23T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-041082.html" rel="alternate"/>
    <summary>&lt;p&gt;SiPass integrated versions before V2.95.3.18 contain an out of bounds read vulnerability that could allow an unauthenticated remote attacker to create a denial of service condition.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for SiPass integrated and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-726617.html</id>
    <title>SSA-726617 V1.1 (Last Update: 2025-05-22): Incorrect Privilege Assignment Vulnerability in Mendix OIDC SSO Module</title>
    <updated>2025-05-22T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-726617.html" rel="alternate"/>
    <summary>&lt;p&gt;The Mendix OIDC SSO module grants read and write access to all tokens exclusively to the Administrator role and could result in privilege misuse by an adversary modifying the module during Mendix development.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for Mendix OIDC SSO (Mendix 10 compatible) and recommends to update to the latest version. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-556937.html</id>
    <title>SSA-556937 V1.1 (Last Update: 2025-05-14): Multiple Vulnerabilities in VersiCharge AC Series EV Chargers</title>
    <updated>2025-05-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-556937.html" rel="alternate"/>
    <summary>&lt;p&gt;VersiCharge AC Series EV Chargers contain two vulnerabilities that could allow an attacker to gain control of the chargers through default Modbus port or execute arbitrary code by manipulating the M0 firmware.&lt;/p&gt;
&lt;p&gt;Siemens recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-552330.html</id>
    <title>SSA-552330 V1.0: System Configuration Password Reset in Siveillance Video V2024 R1</title>
    <updated>2025-05-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-552330.html" rel="alternate"/>
    <summary>&lt;p&gt;The installer of Siveillance Video V2024 R1 resets the system configuration password when updating from older versions of Siveillance Video. This could inadvertently remove the password protection from system configuration files, also affecting backup data sets that were created after the update to V2024 R1.&lt;/p&gt;
&lt;p&gt;Siemens recommends to change the system configuration password settings for systems that were updated from any older version to V2024 R1.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-935500.html</id>
    <title>SSA-935500 V1.3 (Last Update: 2025-05-13): Denial of Service Vulnerability in FTP Server of Nucleus RTOS based APOGEE, TALON and Desigo PXC/PXM Products</title>
    <updated>2025-05-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-935500.html" rel="alternate"/>
    <summary>&lt;p&gt;A denial of service vulnerability has been identified in the Nucleus RTOS (real-time operating system) and reported in the Siemens Security Advisory SSA-313313: &lt;a href="https://cert-portal.siemens.com/productcert/html/ssa-313313.html" class="uri"&gt;https://cert-portal.siemens.com/productcert/html/ssa-313313.html&lt;/a&gt;.&lt;/p&gt;
&lt;p&gt;The products listed below use affected versions of the Nucleus software and inherently contain the vulnerability.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-928984.html</id>
    <title>SSA-928984 V1.2 (Last Update: 2025-05-13): Heap-based Buffer Overflow Vulnerability in User Management Component (UMC)</title>
    <updated>2025-05-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-928984.html" rel="alternate"/>
    <summary>&lt;p&gt;Siemens User Management Component (UMC) is affected by a heap-based buffer overflow vulnerability which could allow an unauthenticated remote attacker arbitrary code execution.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-901508.html</id>
    <title>SSA-901508 V1.0: Multiple Vulnerabilities in INTRALOG WMS Before V5</title>
    <updated>2025-05-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-901508.html" rel="alternate"/>
    <summary>&lt;p&gt;INTRALOG WMS before V5 is affected by multiple vulnerabilities in the Microsoft .NET implementation as described below.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for INTRALOG WMS and recommends to update to the latest version. Please approach your INTRALOG WMS contact to resolve the reported vulnerabilities for your solution. When contacting your Siemens representative, kindly reference the Siemens Security Advisory ID (SSA-901508).&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-876787.html</id>
    <title>SSA-876787 V1.6 (Last Update: 2025-05-13): Open Redirect Vulnerability in SIMATIC S7-1500 and S7-1200 CPUs</title>
    <updated>2025-05-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-876787.html" rel="alternate"/>
    <summary>&lt;p&gt;Several SIMATIC S7-1500 and S7-1200 CPU versions are affected by an open redirect vulnerability that could allow an attacker to make the web server of affected devices redirect a legitimate user to an attacker-chosen URL. For a successful attack, the legitimate user must actively click on an attacker-crafted link.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-864900.html</id>
    <title>SSA-864900 V1.0: Multiple Vulnerabilities in Fortigate NGFW on RUGGEDCOM APE1808 Devices</title>
    <updated>2025-05-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-864900.html" rel="alternate"/>
    <summary>&lt;p&gt;&lt;a href="https://www.fortiguard.com/psirt"&gt;Fortinet has published&lt;/a&gt; information on vulnerabilities in FortiOS. This advisory lists the related Siemens Industrial products.&lt;/p&gt;
&lt;p&gt;Siemens is preparing fix versions and recommends to consult and implement the workarounds provided in Fortinet&#8217;s upstream security notifications.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-832273.html</id>
    <title>SSA-832273 V1.9 (Last Update: 2025-05-13): Multiple Vulnerabilities in Fortigate NGFW Before V7.4.3 on RUGGEDCOM APE1808 Devices</title>
    <updated>2025-05-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-832273.html" rel="alternate"/>
    <summary>&lt;p&gt;&lt;a href="https://www.fortiguard.com/psirt"&gt;Fortinet has published&lt;/a&gt; information on vulnerabilities in FORTIOS. This advisory lists the related Siemens Industrial products.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for RUGGEDCOM APE1808 and recommends to update to the latest version. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-828116.html</id>
    <title>SSA-828116 V1.0: Denial of Service Vulnerability in BACnet ATEC Devices</title>
    <updated>2025-05-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-828116.html" rel="alternate"/>
    <summary>&lt;p&gt;BACnet ATEC devices are affected by a denial of service vulnerability that could be triggered by an attacker residing in the same BACnet network by sending a specially crafted MSTP message. A power cycle is required to restore the device&#8217;s normal operation.&lt;/p&gt;
&lt;p&gt;Siemens recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-819629.html</id>
    <title>SSA-819629 V1.2 (Last Update: 2025-05-13): Weak Authentication Vulnerability in Industrial Edge Device Kit</title>
    <updated>2025-05-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-819629.html" rel="alternate"/>
    <summary>&lt;p&gt;Users of Industrial Edge Devices are advised to consult the respective Security Advisories for their devices (for Siemens Industrial Edge devices see Additional Information).&lt;/p&gt;
&lt;p&gt;Industrial Edge Device Kit contains a weak authentication vulnerability that could facilitate an unauthenticated remote attacker to circumvent authentication and impersonate a legitimate user.&lt;/p&gt;
&lt;p&gt;Industrial Edge Device Builders integrate Industrial Edge Device Kit into their offerings within the open Industrial Edge ecosystem. See further details about affected Industrial Edge Devices in the Additional Information section.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-794185.html</id>
    <title>SSA-794185 V1.0: RADIUS Protocol Susceptible to Forgery Attacks (CVE-2024-3596) - Impact to SIPROTEC, SICAM and Related Products</title>
    <updated>2025-05-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-794185.html" rel="alternate"/>
    <summary>&lt;p&gt;This advisory documents the impact of CVE-2024-3596 (also dubbed &#8220;Blastradius&#8221;), a vulnerability in the RADIUS protocol, to SIPROTEC, SICAM and related products.&lt;/p&gt;
&lt;p&gt;The vulnerability could allow on-path attackers, located between a Network Access Server (the RADIUS client, e.g., a SICAM device) and a RADIUS server, to forge Access-Request packets in a way that enables them to modify the corresponding server response packet at will, e.g., turning an &#8220;Access-Reject&#8221; message into an &#8220;Access-Accept&#8221;. This would cause the Network Access Server to grant the attackers access to the network with the attackers desired authorization (and without the need of knowing or guessing legitimate access credentials).&lt;/p&gt;
&lt;p&gt;Further details incl.&#160;external references can be found in the chapter &#8220;Additional Information&#8221;. Siemens has released new versions for several affected products and recommends to update to the latest versions, and to configure the updated systems as recommended in the chapter &#8220;Additional Information&#8221;. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available. See chapter &#8220;Additional Information&#8221; for details.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-770770.html</id>
    <title>SSA-770770 V1.3 (Last Update: 2025-05-13): Multiple Vulnerabilities in Fortigate NGFW Before V7.4.7 on RUGGEDCOM APE1808 Devices</title>
    <updated>2025-05-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-770770.html" rel="alternate"/>
    <summary>&lt;p&gt;&lt;a href="https://www.fortiguard.com/psirt"&gt;Fortinet has published&lt;/a&gt; information on vulnerabilities in FortiOS. This advisory lists the related Siemens Industrial products.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for RUGGEDCOM APE1808 and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-767615.html</id>
    <title>SSA-767615 V1.3 (Last Update: 2025-05-13): Information Disclosure Vulnerability in SIPROTEC 5 Devices</title>
    <updated>2025-05-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-767615.html" rel="alternate"/>
    <summary>&lt;p&gt;An information disclosure vulnerability in SIPROTEC 5 devices could allow an unauthenticated, remote attacker to retrieve sensitive information of the device.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-726617.html</id>
    <title>SSA-726617 V1.0: Incorrect Privilege Assignment Vulnerability in Mendix OIDC SSO Module</title>
    <updated>2025-05-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-726617.html" rel="alternate"/>
    <summary>&lt;p&gt;The Mendix OIDC SSO module grants read and write access to all tokens exclusively to the Administrator role and could result in privilege misuse by an adversary modifying the module during Mendix development.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for Mendix OIDC SSO and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-718393.html</id>
    <title>SSA-718393 V1.0: Partial Denial of Service Vulnerability in APOGEE PXC and TALON TC Series (BACnet) Devices</title>
    <updated>2025-05-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-718393.html" rel="alternate"/>
    <summary>&lt;p&gt;APOGEE PXC and TALON TC Series (BACnet) Devices devices start sending unsolicited BACnet broadcast messages after processing a specific BACnet createObject request. This could allow an attacker residing in the same BACnet network to send a specially crafted message that results in a partial denial of service condition of the targeted device, and potentially reduce the availability of BACnet network. A power cycle is required to restore the device&#8217;s normal operation.&lt;/p&gt;
&lt;p&gt;Siemens recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-673996.html</id>
    <title>SSA-673996 V1.2 (Last Update: 2025-05-13): Buffer Overflow Vulnerability in Third-Party Component in SICAM and SITIPE Products</title>
    <updated>2025-05-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-673996.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple SICAM products are affected by buffer overflow vulnerability in the IEC 61850 Client libraries from Triangle MicroWorks that could allow an unauthenticated remote attacker to create a denial of service condition by sending specially crafted MMS messages.&lt;/p&gt;
&lt;p&gt;Affected SICAM and SITIPE products:&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;SICAM A8000 Device firmware
&lt;ul&gt;
&lt;li&gt;ET85 for CP-8000/CP-8021/CP-8022&lt;/li&gt;
&lt;li&gt;ETI5 for CP-8031/CP-8050&lt;/li&gt;
&lt;/ul&gt;&lt;/li&gt;
&lt;li&gt;SICAM EGS Device firmware
&lt;ul&gt;
&lt;li&gt;ETI5&lt;/li&gt;
&lt;/ul&gt;&lt;/li&gt;
&lt;li&gt;SICAM S8000
&lt;ul&gt;
&lt;li&gt;ETI5&lt;/li&gt;
&lt;/ul&gt;&lt;/li&gt;
&lt;li&gt;SICAM SCC&lt;/li&gt;
&lt;li&gt;SITIPE AT&lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-668154.html</id>
    <title>SSA-668154 V1.0: Denial of Service Vulnerability in MS/TP Point Pickup Module</title>
    <updated>2025-05-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-668154.html" rel="alternate"/>
    <summary>&lt;p&gt;MS/TP Point Pickup Module devices are affected by a denial of service vulnerability that could be triggered by an attacker residing in the same BACnet network by sending a specially crafted MSTP message. A power cycle is required to restore the device&#8217;s normal operation.&lt;/p&gt;
&lt;p&gt;Siemens recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-614723.html</id>
    <title>SSA-614723 V1.0: Denial of Service Vulnerabilities in User Management Component (UMC)</title>
    <updated>2025-05-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-614723.html" rel="alternate"/>
    <summary>&lt;p&gt;Siemens User Management Component (UMC) is affected by three vulnerabilities which could allow an unauthenticated remote attacker to cause a denial of service condition.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-556937.html</id>
    <title>SSA-556937 V1.0: Multiple Vulnerabilities in VersiCharge AC Series EV Chargers</title>
    <updated>2025-05-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-556937.html" rel="alternate"/>
    <summary>&lt;p&gt;VersiCharge AC Series EV Chargers contain two vulnerabilities that could allow an attacker to gain control of the chargers through default Modbus port or execute arbitrary code by manipulating the M0 firmware.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-542540.html</id>
    <title>SSA-542540 V1.0: Out of Bounds Read Vulnerability in Teamcenter Visualization</title>
    <updated>2025-05-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-542540.html" rel="alternate"/>
    <summary>&lt;p&gt;Siemens Teamcenter Visualization contains a out-of-bound read vulnerability that could be triggered when the application reads files in WRL format. If a user is tricked to open a malicious file with any of the affected products, this could lead the application to crash or potentially lead to arbitrary code execution.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-523418.html</id>
    <title>SSA-523418 V1.0: Information Disclosure Vulnerability in Desigo CC</title>
    <updated>2025-05-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-523418.html" rel="alternate"/>
    <summary>&lt;p&gt;Desigo CC deployments that use Installed Client are impacted by an information disclosure vulnerability which could result in information leak from the Desigo CC server. The other Desigo CC client options, Windows App Client and Flex Client, are not affected by this vulnerability.&lt;/p&gt;
&lt;p&gt;Siemens recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-455250.html</id>
    <title>SSA-455250 V1.6 (Last Update: 2025-05-13): Multiple Vulnerabilities in Palo Alto Networks Virtual NGFW on RUGGEDCOM APE1808 Devices Before V11.1.2-h3</title>
    <updated>2025-05-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-455250.html" rel="alternate"/>
    <summary>&lt;p&gt;Palo Alto Networks has published [1] information on vulnerabilities in PAN-OS. This advisory lists the related Siemens Industrial products affected by these vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version of Palo Alto Networks Virtual NGFW for RUGGEDCOM APE1808 and recommends to update to the latest version. Customers are advised to consult and implement the workarounds provided in Palo Alto Networks&#8217; upstream security notifications.&lt;/p&gt;
&lt;p&gt;[1] https://security.paloaltonetworks.com/&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-446307.html</id>
    <title>SSA-446307 V1.0: Authentication Bypass Vulnerability in BMC (CVE-2024-54085) affects SIMATIC IPC RS-828A</title>
    <updated>2025-05-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-446307.html" rel="alternate"/>
    <summary>&lt;p&gt;SIMATIC IPC RS-828A is affected by an authentication bypass vulnerability in the Redfish interface of its Baseboard Management Controller (BMC) that could allow an attacker to gain unauthorized access and compromise confidentiality, integrity and availability of the BMC and thus the entire system.&lt;/p&gt;
&lt;p&gt;Siemens is preparing fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-373591.html</id>
    <title>SSA-373591 V1.1 (Last Update: 2025-05-13): Buffer Overflow Vulnerability in RUGGEDCOM ROS Devices</title>
    <updated>2025-05-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-373591.html" rel="alternate"/>
    <summary>&lt;p&gt;The latest update for RUGGEDCOM ROS devices fixes a buffer overflow vulnerability in the third party component that could allow an attacker with network access to an affected device to cause a remote code execution condition.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-366067.html</id>
    <title>SSA-366067 V1.3 (Last Update: 2025-05-13): Multiple Vulnerabilities in Fortigate NGFW Before V7.4.1 on RUGGEDCOM APE1808 Devices</title>
    <updated>2025-05-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-366067.html" rel="alternate"/>
    <summary>&lt;p&gt;&lt;a href="https://www.fortiguard.com/psirt"&gt;Fortinet has published&lt;/a&gt; information on vulnerabilities in FORTIOS. This advisory lists the related Siemens Industrial products.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for RUGGEDCOM APE1808 and recommends to update to the latest version. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-354569.html</id>
    <title>SSA-354569 V1.4 (Last Update: 2025-05-13): Multiple Vulnerabilities in Palo Alto Networks PAN-OS on RUGGEDCOM APE1808 Devices</title>
    <updated>2025-05-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-354569.html" rel="alternate"/>
    <summary>&lt;p&gt;Palo Alto Networks has published [1] information on vulnerabilities in PAN-OS. This advisory lists the related Siemens Industrial products affected by these vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens is preparing fix versions and recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
&lt;p&gt;[1] https://security.paloaltonetworks.com/&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-339086.html</id>
    <title>SSA-339086 V1.0: Insufficient Session Expiration Vulnerability in SIMATIC PCS neo</title>
    <updated>2025-05-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-339086.html" rel="alternate"/>
    <summary>&lt;p&gt;Affected products do not correctly invalidate user sessions upon user logout. This could allow a remote unauthenticated attacker, who has obtained the session token by other means, to re-use a legitimate user&#8217;s session even after logout.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-327438.html</id>
    <title>SSA-327438 V1.0: Multiple Vulnerabilities in SCALANCE LPE9403</title>
    <updated>2025-05-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-327438.html" rel="alternate"/>
    <summary>&lt;p&gt;SCALANCE LPE9403 is affected by multiple vulnerabilities which lead to a compromise in availability, integrity and confidentiality.&lt;/p&gt;
&lt;p&gt;Siemens is preparing fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-301229.html</id>
    <title>SSA-301229 V1.0: Client-Side Enforcement of Server-Side Security Vulnerabilities in RUGGEDCOM ROX II</title>
    <updated>2025-05-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-301229.html" rel="alternate"/>
    <summary>&lt;p&gt;The web interface of RUGGEDCOM ROX II devices contain multiple Client-Side Enforcement of Server-Side Security vulnerabilities that could allow an attacker with a legitimate, highly privileged account on the web interface to get privileged code execution in the underlying OS of the affected products.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-222768.html</id>
    <title>SSA-222768 V1.0: Multiple Vulnerabilities in SIRIUS 3SK2 Safety Relays and 3RK3 Modular Safety Systems</title>
    <updated>2025-05-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-222768.html" rel="alternate"/>
    <summary>&lt;p&gt;SIRIUS 3SK2 Safety Relays and 3RK3 Modular Safety Systems only provide weak password obfuscation. An attacker with access to the PROFINET or serial interface of the device could eavesdrop or read the stored password from the device and de-obfuscate it. The safety passwords work as protection against unauthorized operation (i.e., protection against inadvertent operating errors) but not as protection against malicious access attempts.&lt;/p&gt;
&lt;p&gt;Siemens is preparing fix versions and recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-162255.html</id>
    <title>SSA-162255 V1.0: Multiple Vulnerabilities in Polarion Before V2410</title>
    <updated>2025-05-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-162255.html" rel="alternate"/>
    <summary>&lt;p&gt;Polarion before V2410 contains multiple vulnerabilities that could allow attackers to extract data, conduct cross-site scripting attacks or find out valid usernames.&lt;/p&gt;
&lt;p&gt;Siemens strongly recommends to update Polarion to V2410 or later versions, not only to fix the documented vulnerabilities, but also to benefit from all the other improvements and fixes. For Polarion V2404 patch releases can be applied.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-103653.html</id>
    <title>SSA-103653 V1.1 (Last Update: 2025-05-13): Denial-of-Service Vulnerability in Automation License Manager</title>
    <updated>2025-05-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-103653.html" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability was identified in the Automation License Manager software that could be triggered by sending specially crafted packets to port 4410/tcp of an affected system. This could cause a denial-of-service preventing legitimate users from using the system.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-054046.html</id>
    <title>SSA-054046 V1.5 (Last Update: 2025-05-13): Unauthenticated Information Disclosure in Web Server of SIMATIC S7-1500 CPUs</title>
    <updated>2025-05-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-054046.html" rel="alternate"/>
    <summary>&lt;p&gt;Several SIMATIC S7-1500 CPU versions are affected by an authentication bypass vulnerability that could allow an unauthenticated remote attacker to gain knowledge about actual and configured maximum cycle times and communication load of the CPU.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-047424.html</id>
    <title>SSA-047424 V1.0: Code Execution and SQL Injection Vulnerabilities in OZW Web Servers</title>
    <updated>2025-05-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-047424.html" rel="alternate"/>
    <summary>&lt;p&gt;OZW672 and OZW772 Web Server versions contain vulnerabilities that could allow an attacker to execute arbitrary code on the device with root privileges (in versions before V8.0) or to authenticate as Administrator user (in versions before V6.0).&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-039007.html</id>
    <title>SSA-039007 V1.5 (Last Update: 2025-05-13): Heap-based Buffer Overflow Vulnerability in User Management Component (UMC)</title>
    <updated>2025-05-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-039007.html" rel="alternate"/>
    <summary>&lt;p&gt;Siemens User Management Component (UMC) is affected by a heap-based buffer overflow vulnerability which could allow an unauthenticated remote attacker arbitrary code execution.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-819629.html</id>
    <title>SSA-819629 V1.1 (Last Update: 2025-04-17): Weak Authentication Vulnerability in Industrial Edge Device Kit</title>
    <updated>2025-04-17T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-819629.html" rel="alternate"/>
    <summary>&lt;p&gt;Users of Industrial Edge Devices are advised to consult the respective Security Advisories for their devices (for Siemens Industrial Edge devices see Additional Information).&lt;/p&gt;
&lt;p&gt;Industrial Edge Device Kit contains a weak authentication vulnerability that could facilitate an unauthenticated remote attacker to circumvent authentication and impersonate a legitimate user.&lt;/p&gt;
&lt;p&gt;Industrial Edge Device Builders integrate Industrial Edge Device Kit into their offerings within the open Industrial Edge ecosystem. See further details about affected Industrial Edge Devices in the Additional Information section.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-443402.html</id>
    <title>SSA-443402 V1.0: Multiple SQL Injection Vulnerabilities in TeleControl Server Basic before V3.1.2.2</title>
    <updated>2025-04-16T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-443402.html" rel="alternate"/>
    <summary>&lt;p&gt;TeleControl Server Basic before V3.1.2.2 contains multiple SQL Injection vulnerabilities that could allow an attacker to read and write to the application&#8217;s DB, cause denial of service and execute code in an OS shell with limited &#8220;NT AUTHORITY&#8221; permissions.&lt;/p&gt;
&lt;p&gt;Siemens has conducted a root-cause analysis for potential SQL injection vulnerabilities and has identified the locations in the code base where the underlying legacy design pattern has been used in. TeleControl Server Basic V3.1.2.2 has fixed all occurrences in the affected product.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for TeleControl Server Basic and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-832273.html</id>
    <title>SSA-832273 V1.8 (Last Update: 2025-04-16): Multiple Vulnerabilities in Fortigate NGFW on RUGGEDCOM APE1808 Devices</title>
    <updated>2025-04-16T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-832273.html" rel="alternate"/>
    <summary>&lt;p&gt;&lt;a href="https://www.fortiguard.com/psirt"&gt;Fortinet has published&lt;/a&gt; information on vulnerabilities in FORTIOS. This advisory lists the related Siemens Industrial products.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for RUGGEDCOM APE1808 and recommends to update to the latest version. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-395348.html</id>
    <title>SSA-395348 V1.0: Improper Handling of Length Parameter Inconsistency Vulnerability in TeleControl Server Basic before V3.1.2.2</title>
    <updated>2025-04-16T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-395348.html" rel="alternate"/>
    <summary>&lt;p&gt;TeleControl Server Basic before V3.1.2.2 contains a Improper Handling of Length Parameter Inconsistency Vulnerability that could allow an attacker to cause the application to allocate exhaustive amounts of memory and subsequently create a denial of service condition.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for TeleControl Server Basic and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-366067.html</id>
    <title>SSA-366067 V1.2 (Last Update: 2025-04-16): Multiple Vulnerabilities in Fortigate NGFW on RUGGEDCOM APE1808 Devices</title>
    <updated>2025-04-16T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-366067.html" rel="alternate"/>
    <summary>&lt;p&gt;&lt;a href="https://www.fortiguard.com/psirt"&gt;Fortinet has published&lt;/a&gt; information on vulnerabilities in FORTIOS. This advisory lists the related Siemens Industrial products.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for RUGGEDCOM APE1808 and recommends to update to the latest version. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-874353.html</id>
    <title>SSA-874353 V1.2 (Last Update: 2025-04-14): Entity Enumeration Vulnerability in Mendix Runtime</title>
    <updated>2025-04-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-874353.html" rel="alternate"/>
    <summary>&lt;p&gt;Mendix Runtime allows for entity enumeration due to distinguishable responses in certain client actions. This could allow an unauthenticated remote attacker to list all valid entities and attribute names of a Mendix Runtime-based application.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-874353.html</id>
    <title>SSA-874353 V1.1 (Last Update: 2025-04-10): Entity Enumeration Vulnerability in Mendix Runtime</title>
    <updated>2025-04-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-874353.html" rel="alternate"/>
    <summary>&lt;p&gt;Mendix Runtime allows for entity enumeration due to distinguishable responses in certain client actions. This could allow an unauthenticated remote attacker to list all valid entities and attribute names of a Mendix Runtime-based application.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-935500.html</id>
    <title>SSA-935500 V1.2 (Last Update: 2025-04-08): Denial of Service Vulnerability in FTP Server of Nucleus RTOS based APOGEE, TALON and Desigo PXC/PXM Products</title>
    <updated>2025-04-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-935500.html" rel="alternate"/>
    <summary>&lt;p&gt;A denial of service vulnerability has been identified in the Nucleus RTOS (real-time operating system) and reported in the Siemens Security Advisory SSA-313313: &lt;a href="https://cert-portal.siemens.com/productcert/html/ssa-313313.html" class="uri"&gt;https://cert-portal.siemens.com/productcert/html/ssa-313313.html&lt;/a&gt;.&lt;/p&gt;
&lt;p&gt;The products listed below use affected versions of the Nucleus software and inherently contain the vulnerability.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-913875.html</id>
    <title>SSA-913875 V1.4 (Last Update: 2025-04-08): Frame Aggregation and Fragmentation Vulnerabilities in 802.11</title>
    <updated>2025-04-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-913875.html" rel="alternate"/>
    <summary>&lt;p&gt;Twelve vulnerabilities in the implementation of frame aggregation and fragmentation of the 802.11 standard, under the name of &lt;a href="https://www.fragattacks.com/"&gt;FragAttacks&lt;/a&gt;, have been published.&lt;/p&gt;
&lt;p&gt;Successful exploitation of these vulnerabilities could allow an attacker within Wi-Fi range to forge encrypted frames, which could result in sensitive data disclosure and possibly traffic manipulation.&lt;/p&gt;
&lt;p&gt;The advised Siemens products are only affected by some of the published vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-876787.html</id>
    <title>SSA-876787 V1.5 (Last Update: 2025-04-08): Open Redirect Vulnerability in SIMATIC S7-1500 and S7-1200 CPUs</title>
    <updated>2025-04-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-876787.html" rel="alternate"/>
    <summary>&lt;p&gt;Several SIMATIC S7-1500 and S7-1200 CPU versions are affected by an open redirect vulnerability that could allow an attacker to make the web server of affected devices redirect a legitimate user to an attacker-chosen URL. For a successful attack, the legitimate user must actively click on an attacker-crafted link.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-874353.html</id>
    <title>SSA-874353 V1.0: Entity Enumeration Vulnerability in Mendix Runtime</title>
    <updated>2025-04-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-874353.html" rel="alternate"/>
    <summary>&lt;p&gt;Mendix Runtime allows for entity enumeration due to distinguishable responses in certain client actions. This could allow an unauthenticated remote attacker to list all valid entities and attribute names of a Mendix Runtime-based application.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-819629.html</id>
    <title>SSA-819629 V1.0: Weak Authentication Vulnerability in Industrial Edge Device Kit</title>
    <updated>2025-04-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-819629.html" rel="alternate"/>
    <summary>&lt;p&gt;Industrial Edge Device Kit contains a weak authentication vulnerability that could facilitate an unauthenticated remote attacker to circumvent authentication and impersonate a legitimate user.&lt;/p&gt;
&lt;p&gt;Industrial Edge Device Builders integrate Industrial Edge Device Kit into their offerings within the open Industrial Edge ecosystem. See further details about affected Industrial Edge Devices in the Additional Information section.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-817234.html</id>
    <title>SSA-817234 V1.0: Multiple Kubernetes Ingress NGINX Controller Vulnerabilities in Insights Hub Private Cloud</title>
    <updated>2025-04-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-817234.html" rel="alternate"/>
    <summary>&lt;p&gt;Insights Hub Private Cloud is affected by multiple vulnerabilities in Ingress NGINX Controller for Kubernetes. These vulnerabilities could lead to arbitrary code execution in the context of the &lt;code&gt;ingress-nginx controller&lt;/code&gt;, or disclosure of &lt;code&gt;Secrets&lt;/code&gt; accessible to the controller, or denial of service condition.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for Insights Hub Private Cloud and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-770770.html</id>
    <title>SSA-770770 V1.2 (Last Update: 2025-04-08): Multiple Vulnerabilities in Fortigate NGFW on RUGGEDCOM APE1808 Devices</title>
    <updated>2025-04-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-770770.html" rel="alternate"/>
    <summary>&lt;p&gt;&lt;a href="https://www.fortiguard.com/psirt"&gt;Fortinet has published&lt;/a&gt; information on vulnerabilities in FortiOS. This advisory lists the related Siemens Industrial products.&lt;/p&gt;
&lt;p&gt;Siemens is preparing fix versions and recommends to consult and implement the workarounds provided in Fortinet&#8217;s upstream security notifications.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-767615.html</id>
    <title>SSA-767615 V1.2 (Last Update: 2025-04-08): Information Disclosure Vulnerability in SIPROTEC 5 Devices</title>
    <updated>2025-04-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-767615.html" rel="alternate"/>
    <summary>&lt;p&gt;An information disclosure vulnerability in SIPROTEC 5 devices could allow an unauthenticated, remote attacker to retrieve sensitive information of the device.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-725549.html</id>
    <title>SSA-725549 V1.0: Denial of Service of ICMP in Industrial Devices</title>
    <updated>2025-04-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-725549.html" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability exists in affected products that could allow remote attackers to affect the availability of the devices under certain conditions.&lt;/p&gt;
&lt;p&gt;The integrated ICMP services in the underlying TCP/IP stack is vulnerable to a denial of service attack through specially crafted ICMP packets. A successful attack will impact the availability of ICMP services on affected products for a limited time before it restores itself after the attack ceases. Other communication services are not affected by this vulnerability.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-698820.html</id>
    <title>SSA-698820 V1.6 (Last Update: 2025-04-08): Multiple Vulnerabilities in Fortigate NGFW Before V7.4.4 on RUGGEDCOM APE1808 Devices</title>
    <updated>2025-04-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-698820.html" rel="alternate"/>
    <summary>&lt;p&gt;&lt;a href="https://www.fortiguard.com/psirt"&gt;Fortinet has published&lt;/a&gt; information on vulnerabilities in FORTIOS. This advisory lists the related Siemens Industrial products.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version of Fortigate NGFW for RUGGEDCOM APE1808 and recommends to update to the latest version. Siemens recommends to consult and implement the workarounds provided in Fortinet&#8217;s upstream security notifications.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-686975.html</id>
    <title>SSA-686975 V1.6 (Last Update: 2025-04-08): IPU 2022.3 Vulnerabilities in Siemens Industrial Products using Intel CPUs</title>
    <updated>2025-04-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-686975.html" rel="alternate"/>
    <summary>&lt;p&gt;Intel has published information on vulnerabilities in Intel products in November 2022. This advisory lists the related Siemens Industrial products affected by these vulnerabilities that can be patched by applying the corresponding BIOS update (&#8220;2022.3 IPU &#8211; BIOS Advisory&#8221; &lt;a href="https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00688.html"&gt;Intel-SA-00688&lt;/a&gt;).&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-672923.html</id>
    <title>SSA-672923 V1.0: Out of Bounds Write Vulnerability in Solid Edge</title>
    <updated>2025-04-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-672923.html" rel="alternate"/>
    <summary>&lt;p&gt;Solid Edge is affected by an out of bounds write vulnerability that could be triggered when the application is parsing X_T data or a specially crafted file in X_T format. If a user is tricked to open a malicious file with the affected applications, an attacker could leverage the vulnerability to perform remote code execution in the context of the current process.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-634640.html</id>
    <title>SSA-634640 V1.0: Weak Authentication Vulnerability in Siemens Industrial Edge Devices</title>
    <updated>2025-04-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-634640.html" rel="alternate"/>
    <summary>&lt;p&gt;Siemens Industrial Edge Devices contain a weak authentication vulnerability that could facilitate an unauthenticated remote attacker to circumvent authentication and impersonate a legitimate user.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-525431.html</id>
    <title>SSA-525431 V1.0: Privilege Escalation Vulnerabilities in Siemens License Server Before V4.3</title>
    <updated>2025-04-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-525431.html" rel="alternate"/>
    <summary>&lt;p&gt;Siemens License Server before V4.3 contains various vulnerabilities that could allow a low-privileged local user to escalate privileges or perform arbitrary code execution.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for Siemens License Server (SLS) and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-503939.html</id>
    <title>SSA-503939 V1.1 (Last Update: 2025-04-08): Vulnerabilities in the BIOS of the SIMATIC S7-1500 TM MFP</title>
    <updated>2025-04-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-503939.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities have been identified in the BIOS of the SIMATIC S7-1500 TM MFP.&lt;/p&gt;
&lt;p&gt;Siemens is preparing fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-398330.html</id>
    <title>SSA-398330 V2.5 (Last Update: 2025-04-08): Vulnerabilities in the additional GNU/Linux subsystem of the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP V3.1</title>
    <updated>2025-04-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-398330.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities have been identified in the additional GNU/Linux subsystem of the firmware version V3.1 for the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP (incl.&#160;SIPLUS variant).&lt;/p&gt;
&lt;p&gt;These GNU/Linux vulnerabilities have been externally identified. Siemens is preparing fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
&lt;p&gt;Note: This SSA advises vulnerabilities for firmware version V3.1 only; for versions &amp;lt; V3.1 refer to Siemens Security Bulletin SSB-439005 (&lt;a href="https://cert-portal.siemens.com/productcert/html/ssb-439005.html" class="uri"&gt;https://cert-portal.siemens.com/productcert/html/ssb-439005.html&lt;/a&gt;).&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-369369.html</id>
    <title>SSA-369369 V1.1 (Last Update: 2025-04-08): Weak Registry Permission Vulnerability in SIMATIC IPC DiagBase and SIMATIC IPC DiagMonitor</title>
    <updated>2025-04-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-369369.html" rel="alternate"/>
    <summary>&lt;p&gt;SIMATIC IPC DiagBase and SIMATIC IPC DiagMonitor contain a weak registry permission vulnerability that could allow an authenticated attacker to perform privilege escalation or bypass security measures.&lt;/p&gt;
&lt;p&gt;Siemens recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-364175.html</id>
    <title>SSA-364175 V1.5 (Last Update: 2025-04-08): Multiple Vulnerabilities in Palo Alto Networks Virtual NGFW on RUGGEDCOM APE1808 Devices Before V11.1.4-h1</title>
    <updated>2025-04-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-364175.html" rel="alternate"/>
    <summary>&lt;p&gt;Palo Alto Networks has published [1] information on vulnerabilities in PAN-OS. This advisory lists the related Siemens Industrial products affected by these vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends specific countermeasures for products where updates are not, or not yet available. Customers are advised to consult and implement the workarounds provided in Palo Alto Networks&#8217; upstream security notifications.&lt;/p&gt;
&lt;p&gt;[1] &lt;a href="https://security.paloaltonetworks.com/" class="uri"&gt;https://security.paloaltonetworks.com/&lt;/a&gt;&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-354569.html</id>
    <title>SSA-354569 V1.3 (Last Update: 2025-04-08): Multiple Vulnerabilities in Palo Alto Networks PAN-OS on RUGGEDCOM APE1808 Devices</title>
    <updated>2025-04-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-354569.html" rel="alternate"/>
    <summary>&lt;p&gt;Palo Alto Networks has published [1] information on vulnerabilities in PAN-OS. This advisory lists the related Siemens Industrial products affected by these vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens is preparing fix versions and recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
&lt;p&gt;[1] https://security.paloaltonetworks.com/&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-306654.html</id>
    <title>SSA-306654 V1.9 (Last Update: 2025-04-08): Insyde BIOS Vulnerabilities in Siemens Industrial Products</title>
    <updated>2025-04-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-306654.html" rel="alternate"/>
    <summary>&lt;p&gt;Insyde has published information on vulnerabilities in Insyde BIOS in &lt;a href="https://www.insyde.com/security-pledge"&gt;February 2022&lt;/a&gt;. This advisory lists the Siemens Industrial products affected by these vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-277137.html</id>
    <title>SSA-277137 V1.0: Multiple Vulnerabilities in SIDIS Prime Before V4.0.700</title>
    <updated>2025-04-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-277137.html" rel="alternate"/>
    <summary>&lt;p&gt;SIDIS Prime before V4.0.700 is affected by multiple vulnerabilities in the components OpenSSL, SQLite, Boost C++ Libraries and several Microsoft components as described below.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version of SIDIS Prime and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-265688.html</id>
    <title>SSA-265688 V1.5 (Last Update: 2025-04-08): Vulnerabilities in the additional GNU/Linux subsystem of the SIMATIC S7-1500 TM MFP V1.1</title>
    <updated>2025-04-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-265688.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities have been identified in the additional GNU/Linux subsystem of the SIMATIC S7-1500 TM MFP V1.1.&lt;/p&gt;
&lt;p&gt;Siemens is preparing fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-195895.html</id>
    <title>SSA-195895 V1.2 (Last Update: 2025-04-08): User Enumeration Vulnerability in the Webserver of SIMATIC Products</title>
    <updated>2025-04-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-195895.html" rel="alternate"/>
    <summary>&lt;p&gt;The webserver of several SIMATIC products is affected by a user enumeration vulnerability that could allow an unauthenticated remote attacker to identify valid usernames.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-187636.html</id>
    <title>SSA-187636 V1.0: Multiple Vulnerabilities in SENTRON 7KT PAC1260 Data Manager</title>
    <updated>2025-04-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-187636.html" rel="alternate"/>
    <summary>&lt;p&gt;SENTRON 7KT PAC1260 Data Manager is affected by multiple vulnerabilities as listed below.&lt;/p&gt;
&lt;p&gt;Software fixes can no longer be provided for The SENTRON 7KT PAC1260 Data Manager. This advisory documents the known open vulnerabilities. To fix the vulnerabilities, Siemens recommends to replace the device by the new SENTRON 7KT PAC1261 Data Manager and update it to the latest available firmware version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-054046.html</id>
    <title>SSA-054046 V1.4 (Last Update: 2025-04-08): Unauthenticated Information Disclosure in Web Server of SIMATIC S7-1500 CPUs</title>
    <updated>2025-04-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-054046.html" rel="alternate"/>
    <summary>&lt;p&gt;Several SIMATIC S7-1500 CPU versions are affected by an authentication bypass vulnerability that could allow an unauthenticated remote attacker to gain knowledge about actual and configured maximum cycle times and communication load of the CPU.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-656895.html</id>
    <title>SSA-656895 V1.2 (Last Update: 2025-03-20): Open Redirect Vulnerability in Teamcenter</title>
    <updated>2025-03-20T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-656895.html" rel="alternate"/>
    <summary>&lt;p&gt;The SSO login service in Teamcenter contains an open redirect vulnerability that could allow an attacker to redirect the legitimate user to an attacker-chosen URL to steal valid session data.&lt;/p&gt;
&lt;p&gt;Siemens has released hot fixes for the affected products and recommends to apply them as described in the related Software Field Bulletin PL8837639.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-920092.html</id>
    <title>SSA-920092 V1.0: Memory Corruption Vulnerability in Simcenter Femap</title>
    <updated>2025-03-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-920092.html" rel="alternate"/>
    <summary>&lt;p&gt;Siemens Simcenter Femap is affected by memory corruption vulnerability that could be triggered when the application reads files in .NEU format. If a user is tricked to open a malicious file with the affected application, an attacker could leverage the vulnerability to leak information or potentially perform remote code execution in the context of the current process.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-928984.html</id>
    <title>SSA-928984 V1.1 (Last Update: 2025-03-11): Heap-based Buffer Overflow Vulnerability in User Management Component (UMC)</title>
    <updated>2025-03-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-928984.html" rel="alternate"/>
    <summary>&lt;p&gt;Siemens User Management Component (UMC) is affected by a heap-based buffer overflow vulnerability which could allow an unauthenticated remote attacker arbitrary code execution.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-876787.html</id>
    <title>SSA-876787 V1.4 (Last Update: 2025-03-11): Open Redirect Vulnerability in SIMATIC S7-1500 and S7-1200 CPUs</title>
    <updated>2025-03-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-876787.html" rel="alternate"/>
    <summary>&lt;p&gt;Several SIMATIC S7-1500 and S7-1200 CPU versions are affected by an open redirect vulnerability that could allow an attacker to make the web server of affected devices redirect a legitimate user to an attacker-chosen URL. For a successful attack, the legitimate user must actively click on an attacker-crafted link.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-858251.html</id>
    <title>SSA-858251 V1.0: Authentication Bypass Vulnerabilities in OPC UA</title>
    <updated>2025-03-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-858251.html" rel="alternate"/>
    <summary>&lt;p&gt;The products listed below contain two authentication bypass vulnerabilities that could allow an attacker to gain access to the data managed by the server.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-832273.html</id>
    <title>SSA-832273 V1.7 (Last Update: 2025-03-11): Multiple Vulnerabilities in Fortigate NGFW Before V7.4.3 on RUGGEDCOM APE1808 Devices</title>
    <updated>2025-03-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-832273.html" rel="alternate"/>
    <summary>&lt;p&gt;&lt;a href="https://www.fortiguard.com/psirt"&gt;Fortinet has published&lt;/a&gt; information on vulnerabilities in FORTIOS. This advisory lists the related Siemens Industrial products.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version of Fortigate NGFW for RUGGEDCOM APE1808 and recommends to update to the latest version. Siemens recommends to consult and implement the workarounds provided in Fortinet&#8217;s upstream security notifications.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-787280.html</id>
    <title>SSA-787280 V1.0: Unlocked Bootloader Vulnerability in SINAMICS S200</title>
    <updated>2025-03-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-787280.html" rel="alternate"/>
    <summary>&lt;p&gt;A specific range of produced SINAMICS S200 devices contains an unlocked bootloader vulnerability that could allow an attacker to download untrusted firmware that could damage or compromise the device.&lt;/p&gt;
&lt;p&gt;For delivered products listed below Siemens recommends countermeasures.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-770770.html</id>
    <title>SSA-770770 V1.1 (Last Update: 2025-03-11): Multiple Vulnerabilities in Fortigate NGFW on RUGGEDCOM APE1808 Devices</title>
    <updated>2025-03-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-770770.html" rel="alternate"/>
    <summary>&lt;p&gt;&lt;a href="https://www.fortiguard.com/psirt"&gt;Fortinet has published&lt;/a&gt; information on vulnerabilities in FortiOS. This advisory lists the related Siemens Industrial products.&lt;/p&gt;
&lt;p&gt;Siemens is preparing fix versions and recommends to consult and implement the workarounds provided in Fortinet&#8217;s upstream security notifications.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-767615.html</id>
    <title>SSA-767615 V1.1 (Last Update: 2025-03-11): Information Disclosure Vulnerability in SIPROTEC 5 Devices</title>
    <updated>2025-03-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-767615.html" rel="alternate"/>
    <summary>&lt;p&gt;An information disclosure vulnerability in SIPROTEC 5 devices could allow an unauthenticated, remote attacker to retrieve sensitive information of the device.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-723487.html</id>
    <title>SSA-723487 V1.5 (Last Update: 2025-03-11): RADIUS Protocol Susceptible to Forgery Attacks (CVE-2024-3596) - Impact to SCALANCE, RUGGEDCOM and Related Products</title>
    <updated>2025-03-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-723487.html" rel="alternate"/>
    <summary>&lt;p&gt;This advisory documents the impact of CVE-2024-3596 (also dubbed &#8220;Blastradius&#8221;), a vulnerability in the RADIUS protocol, to SCALANCE, RUGGEDCOM and related products.&lt;/p&gt;
&lt;p&gt;The vulnerability could allow on-path attackers, located between a Network Access Server (the RADIUS client, e.g., SCALANCE or RUGGEDCOM devices) and a RADIUS server (e.g., SINEC INS), to forge Access-Request packets in a way that enables them to modify the corresponding server response packet at will, e.g., turning an &#8220;Access-Reject&#8221; message into an &#8220;Access-Accept&#8221;. This would cause the Network Access Server to grant the attackers access to the network with the attackers desired authorization (and without the need of knowing or guessing legitimate access credentials).&lt;/p&gt;
&lt;p&gt;Further details incl.&#160;external references can be found in the chapter &#8220;Additional Information&#8221;. Siemens has released new versions for several affected products and recommends to update to the latest versions, and to configure the updated systems as recommended in the chapter &#8220;Additional Information&#8221;. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available. See chapter &#8220;Additional Information&#8221; for details.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-620288.html</id>
    <title>SSA-620288 V1.3 (Last Update: 2025-03-11): Multiple Vulnerabilities (NUCLEUS:13) in Capital Embedded AR Classic</title>
    <updated>2025-03-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-620288.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities (also known as &#8220;NUCLEUS:13&#8221;) have be identified in the Nucleus RTOS (real-time operating system) and reported in the Siemens Security Advisory SSA-044112: &lt;a href="https://cert-portal.siemens.com/productcert/html/ssa-044112.html" class="uri"&gt;https://cert-portal.siemens.com/productcert/html/ssa-044112.html&lt;/a&gt;.&lt;/p&gt;
&lt;p&gt;Capital Embedded AR Classic uses an affected version of the Nucleus software and inherently contains several of these vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for Capital Embedded AR Classic R20-11 and recommends to update to the latest version. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-615740.html</id>
    <title>SSA-615740 V1.0: Multiple Vulnerabilities in SINEMA Remote Connect Client Before V3.2 SP3</title>
    <updated>2025-03-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-615740.html" rel="alternate"/>
    <summary>&lt;p&gt;SINEMA Remote Connect Client before V3.2 SP3 is affected by multiple vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for SINEMA Remote Connect Client and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-593272.html</id>
    <title>SSA-593272 V2.4 (Last Update: 2025-03-11): SegmentSmack in Interniche IP-Stack based Industrial Devices</title>
    <updated>2025-03-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-593272.html" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability exists in affected products that could allow remote attackers to affect the availability of the devices under certain conditions.&lt;/p&gt;
&lt;p&gt;The underlying TCP stack can be forced to make very computation expensive calls for every incoming packet which can lead to a Denial-of-Service.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-515903.html</id>
    <title>SSA-515903 V1.0: Multiple Vulnerabilities in SiPass integrated AC5102 / ACC-G2 and ACC-AP</title>
    <updated>2025-03-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-515903.html" rel="alternate"/>
    <summary>&lt;p&gt;SiPass integrated ACC (Advanced Central Controller) devices contain multiple vulnerabilities that could allow attackers to execute commands on the devices with root privileges and access sensitive data.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-507653.html</id>
    <title>SSA-507653 V1.0: Improper Access Control Vulnerabilities in Tecnomatix Plant Simulation</title>
    <updated>2025-03-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-507653.html" rel="alternate"/>
    <summary>&lt;p&gt;Siemens Tecnomatix Plant Simulation do not properly limit the access of the simulation model to the filesystem. This could allow an unauthorized attacker to read or delete arbitrary files or the entire filesystem of the device.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-503939.html</id>
    <title>SSA-503939 V1.0: Vulnerabilities in the BIOS of the SIMATIC S7-1500 TM MFP</title>
    <updated>2025-03-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-503939.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities have been identified in the BIOS of the SIMATIC S7-1500 TM MFP.&lt;/p&gt;
&lt;p&gt;Siemens is preparing fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-434032.html</id>
    <title>SSA-434032 V1.2 (Last Update: 2025-03-11): Input Validation Vulnerability in the DHCP Client of Nucleus RTOS</title>
    <updated>2025-03-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-434032.html" rel="alternate"/>
    <summary>&lt;p&gt;The DHCP implementation of the networking component (Nucleus NET) in Nucleus Real-Time Operating System (RTOS) contains a vulnerability that could allow an attacker to change the IP address of an affected device to an invalid value.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-398330.html</id>
    <title>SSA-398330 V2.4 (Last Update: 2025-03-11): Vulnerabilities in the additional GNU/Linux subsystem of the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP V3.1</title>
    <updated>2025-03-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-398330.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities have been identified in the additional GNU/Linux subsystem of the firmware version V3.1 for the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP (incl.&#160;SIPLUS variant).&lt;/p&gt;
&lt;p&gt;These GNU/Linux vulnerabilities have been externally identified. Siemens is preparing fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
&lt;p&gt;Note: This SSA advises vulnerabilities for firmware version V3.1 only; for versions &amp;lt; V3.1 refer to Siemens Security Bulletin SSB-439005 (&lt;a href="https://cert-portal.siemens.com/productcert/html/ssb-439005.html" class="uri"&gt;https://cert-portal.siemens.com/productcert/html/ssb-439005.html&lt;/a&gt;).&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-280834.html</id>
    <title>SSA-280834 V1.0: Improper OpenVPN Credential Validation Vulnerability in SCALANCE M-800 and SC-600 Families</title>
    <updated>2025-03-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-280834.html" rel="alternate"/>
    <summary>&lt;p&gt;SCALANCE M-800 and SC-600 families are affected by improper input validation in the OpenVPN authentication.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-265688.html</id>
    <title>SSA-265688 V1.4 (Last Update: 2025-03-11): Vulnerabilities in the additional GNU/Linux subsystem of the SIMATIC S7-1500 TM MFP V1.1</title>
    <updated>2025-03-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-265688.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities have been identified in the additional GNU/Linux subsystem of the SIMATIC S7-1500 TM MFP V1.1.&lt;/p&gt;
&lt;p&gt;Siemens is preparing fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-248289.html</id>
    <title>SSA-248289 V1.3 (Last Update: 2025-03-11): Denial of Service Vulnerabilities in the IPv6 Stack of Nucleus RTOS</title>
    <updated>2025-03-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-248289.html" rel="alternate"/>
    <summary>&lt;p&gt;The IPv6 stack of the networking component (Nucleus NET) in Nucleus Real-Time Operating System (RTOS) contains two vulnerabilities when processing IPv6 headers which could allow an attacker to cause a denial of service condition.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-216014.html</id>
    <title>SSA-216014 V1.0: Vulnerabilities in EFI variable of SIMATIC IPCs, SIMATIC Tablet PCs, and SIMATIC Field PGs</title>
    <updated>2025-03-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-216014.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities has been identified in Siemens SIMATIC IPCs, SIMATIC Tablet PCs, and SIMATIC Field PGs that can allow an authenticated attacker to alter the secure boot and password configurations.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions of BIOS for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-195895.html</id>
    <title>SSA-195895 V1.1 (Last Update: 2025-03-11): User Enumeration Vulnerability in the Webserver of SIMATIC Products</title>
    <updated>2025-03-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-195895.html" rel="alternate"/>
    <summary>&lt;p&gt;The webserver of several SIMATIC products is affected by a user enumeration vulnerability that could allow an unauthenticated remote attacker to identify valid usernames.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-194557.html</id>
    <title>SSA-194557 V1.2 (Last Update: 2025-03-11): Improper Limitation of Filesystem Access through Web Server Vulnerability in SIPROTEC 5</title>
    <updated>2025-03-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-194557.html" rel="alternate"/>
    <summary>&lt;p&gt;Affected SIPROTEC 5 devices do not properly limit the access of the web server to the filesystem. This could allow an authenticated remote attacker to read arbitrary files or the entire filesystem of the device.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-075201.html</id>
    <title>SSA-075201 V1.0: Multiple Vulnerabilities in SCALANCE LPE9403 Before V4.0</title>
    <updated>2025-03-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-075201.html" rel="alternate"/>
    <summary>&lt;p&gt;SCALANCE LPE9403 is affected by multiple vulnerabilities that could allow an attacker to impact its confidentiality, integrity and availability.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for SCALANCE LPE9403 and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-073066.html</id>
    <title>SSA-073066 V1.0: Multiple Vulnerabilities in SINEMA Remote Connect Server Before V3.2 SP3</title>
    <updated>2025-03-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-073066.html" rel="alternate"/>
    <summary>&lt;p&gt;SINEMA Remote Connect Server before V3.2 SP3 is affected by multiple vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for SINEMA Remote Connect Server and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-054046.html</id>
    <title>SSA-054046 V1.3 (Last Update: 2025-03-11): Unauthenticated Information Disclosure in Web Server of SIMATIC S7-1500 CPUs</title>
    <updated>2025-03-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-054046.html" rel="alternate"/>
    <summary>&lt;p&gt;Several SIMATIC S7-1500 CPU versions are affected by an authentication bypass vulnerability that could allow an unauthenticated remote attacker to gain knowledge about actual and configured maximum cycle times and communication load of the CPU.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-050438.html</id>
    <title>SSA-050438 V1.0: Multiple File Parsing Vulnerabilities in Teamcenter Visualization and Tecnomatix Plant Simulation</title>
    <updated>2025-03-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-050438.html" rel="alternate"/>
    <summary>&lt;p&gt;Siemens Teamcenter Visualization and Tecnomatrix Plant Simulation contains multiple file parsing vulnerabilities that could be triggered when the application reads files in WRL format. If a user is tricked to open a malicious file with any of the affected products, this could lead the application to crash or potentially lead to arbitrary code execution.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-039007.html</id>
    <title>SSA-039007 V1.4 (Last Update: 2025-03-11): Heap-based Buffer Overflow Vulnerability in User Management Component (UMC)</title>
    <updated>2025-03-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-039007.html" rel="alternate"/>
    <summary>&lt;p&gt;Siemens User Management Component (UMC) is affected by a heap-based buffer overflow vulnerability which could allow an unauthenticated remote attacker arbitrary code execution.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-656895.html</id>
    <title>SSA-656895 V1.1 (Last Update: 2025-02-25): Open Redirect Vulnerability in Teamcenter</title>
    <updated>2025-02-25T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-656895.html" rel="alternate"/>
    <summary>&lt;p&gt;The SSO login service in Teamcenter contains an open redirect vulnerability that could allow an attacker to redirect the legitimate user to an attacker-chosen URL to steal valid session data.&lt;/p&gt;
&lt;p&gt;Siemens is preparing fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-354569.html</id>
    <title>SSA-354569 V1.2 (Last Update: 2025-02-19): Multiple Vulnerabilities in Palo Alto Networks PAN-OS on RUGGEDCOM APE1808 Devices</title>
    <updated>2025-02-19T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-354569.html" rel="alternate"/>
    <summary>&lt;p&gt;Palo Alto Networks has published [1] information on vulnerabilities in PAN-OS. This advisory lists the related Siemens Industrial products affected by these vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens is preparing fix versions and recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
&lt;p&gt;[1] https://security.paloaltonetworks.com/&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-992434.html</id>
    <title>SSA-992434 V1.0: Directory Traversal Vulnerability in Third-Party Component in SiPass integrated</title>
    <updated>2025-02-17T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-992434.html" rel="alternate"/>
    <summary>&lt;p&gt;SiPass integrated is affected by a directory traversal vulnerability in the third-party component DotNetZip. The vulnerability could allow an attacker to execute arbitrary code on the application server, if a specially crafted backup set is used for a restore.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for SiPass integrated and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-246355.html</id>
    <title>SSA-246355 V1.1 (Last Update: 2025-02-14): Multiple Vulnerabilities in Tableau Server Component of Opcenter Intelligence</title>
    <updated>2025-02-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-246355.html" rel="alternate"/>
    <summary>&lt;p&gt;The Tableau Server component in Opcenter Intelligence contains multiple vulnerabilities as described below.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for Opcenter Intelligence and recommends to update to the latest version and to install the latest available version of Tableau Server as described in &lt;a href="https://support.sw.siemens.com/knowledge-base/PL8822108" class="uri"&gt;https://support.sw.siemens.com/knowledge-base/PL8822108&lt;/a&gt;.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-832273.html</id>
    <title>SSA-832273 V1.6 (Last Update: 2025-02-11): Multiple Vulnerabilities in Fortigate NGFW Before V7.4.3 on RUGGEDCOM APE1808 Devices</title>
    <updated>2025-02-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-832273.html" rel="alternate"/>
    <summary>&lt;p&gt;&lt;a href="https://www.fortiguard.com/psirt"&gt;Fortinet has published&lt;/a&gt; information on vulnerabilities in FORTIOS. This advisory lists the related Siemens Industrial products.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version of Fortigate NGFW for RUGGEDCOM APE1808 and recommends to update to the latest version. Siemens recommends to consult and implement the workarounds provided in Fortinet&#8217;s upstream security notifications.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-770770.html</id>
    <title>SSA-770770 V1.0: Multiple Vulnerabilities in Fortigate NGFW on RUGGEDCOM APE1808 Devices</title>
    <updated>2025-02-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-770770.html" rel="alternate"/>
    <summary>&lt;p&gt;&lt;a href="https://www.fortiguard.com/psirt"&gt;Fortinet has published&lt;/a&gt; information on vulnerabilities in FortiOS. This advisory lists the related Siemens Industrial products.&lt;/p&gt;
&lt;p&gt;Siemens is preparing fix versions and recommends to consult and implement the workarounds provided in Fortinet&#8217;s upstream security notifications.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-769027.html</id>
    <title>SSA-769027 V1.0: Multiple Vulnerabilities fixed in SCALANCE W700 IEEE 802.11ax devices before V3.0.0</title>
    <updated>2025-02-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-769027.html" rel="alternate"/>
    <summary>&lt;p&gt;SCALANCE W-700 IEEE 802.11ax family devices are affected by multiple vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-767615.html</id>
    <title>SSA-767615 V1.0: Information Disclosure Vulnerability in SIPROTEC 5 Devices</title>
    <updated>2025-02-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-767615.html" rel="alternate"/>
    <summary>&lt;p&gt;An information disclosure vulnerability in SIPROTEC 5 devices could allow an unauthenticated, remote attacker to retrieve sensitive information of the device.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-712929.html</id>
    <title>SSA-712929 V2.9 (Last Update: 2025-02-11): Denial of Service Vulnerability in OpenSSL (CVE-2022-0778) Affecting Industrial Products</title>
    <updated>2025-02-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-712929.html" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in the openSSL component (CVE-2022-0778, [0]) could allow an attacker to create a denial of service condition by providing specially crafted elliptic curve certificates to products that use a vulnerable version of openSSL.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
&lt;p&gt;[0] &lt;a href="https://www.openssl.org/news/secadv/20220315.txt" class="uri"&gt;https://www.openssl.org/news/secadv/20220315.txt&lt;/a&gt;&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-698820.html</id>
    <title>SSA-698820 V1.5 (Last Update: 2025-02-11): Multiple Vulnerabilities in Fortigate NGFW Before V7.4.4 on RUGGEDCOM APE1808 Devices</title>
    <updated>2025-02-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-698820.html" rel="alternate"/>
    <summary>&lt;p&gt;&lt;a href="https://www.fortiguard.com/psirt"&gt;Fortinet has published&lt;/a&gt; information on vulnerabilities in FORTIOS. This advisory lists the related Siemens Industrial products.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version of Fortigate NGFW for RUGGEDCOM APE1808 and recommends to update to the latest version. Siemens recommends to consult and implement the workarounds provided in Fortinet&#8217;s upstream security notifications.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-697140.html</id>
    <title>SSA-697140 V1.3 (Last Update: 2025-02-11): Denial of Service Vulnerability in the TCP Event Service of SCALANCE and RUGGEDCOM Products</title>
    <updated>2025-02-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-697140.html" rel="alternate"/>
    <summary>&lt;p&gt;The products listed below contain a denial of service vulnerability in the TCP event interface that could allow an unauthenticated remote attacker to render the device unusable.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-687955.html</id>
    <title>SSA-687955 V1.0: Accessible Development Shell via Physical Interface in SIPROTEC 5</title>
    <updated>2025-02-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-687955.html" rel="alternate"/>
    <summary>&lt;p&gt;Affected SIPROTEC 5 devices contain a development shell which is accessible via a physical interface which is not properly restricted. This could allow an unauthenticated attacker with physical access to an affected device to execute arbitrary commands on the device.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-656895.html</id>
    <title>SSA-656895 V1.0: Open Redirect Vulnerability in Teamcenter Before V14.3</title>
    <updated>2025-02-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-656895.html" rel="alternate"/>
    <summary>&lt;p&gt;The SSO login service in Teamcenter contains an open redirect vulnerability that could allow an attacker to redirect the legitimate user to an attacker-chosen URL to steal valid session data.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for Teamcenter and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-647005.html</id>
    <title>SSA-647005 V1.0: Memory Corruption Vulnerability in OpenV2G</title>
    <updated>2025-02-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-647005.html" rel="alternate"/>
    <summary>&lt;p&gt;The open source software OpenV2G contains a buffer overflow vulnerability that could allow an attacker to trigger a memory corruption.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for the OpenV2G and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-637914.html</id>
    <title>SSA-637914 V1.0: Local Code Execution Vulnerability in Questa and ModelSim Before V2025.1</title>
    <updated>2025-02-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-637914.html" rel="alternate"/>
    <summary>&lt;p&gt;Questa and ModelSim (incl.&#160;OEM Editions) are affected by a vulnerability that could allow a local attacker to inject arbitrary code and escalate privileges.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-615116.html</id>
    <title>SSA-615116 V1.0: Multiple Vulnerabilities in Apogee PXC and Talon TC Devices</title>
    <updated>2025-02-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-615116.html" rel="alternate"/>
    <summary>&lt;p&gt;Apogee PXC and Talon TC contain a vulnerability that could allow an attacker to perform a denial of service using a out-of-bounds read forcing the device to enter a cold state and a vulnerability that would allow an attacker to decrypt the passwords of the device.&lt;/p&gt;
&lt;p&gt;Siemens recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-398330.html</id>
    <title>SSA-398330 V2.3 (Last Update: 2025-02-11): Vulnerabilities in the additional GNU/Linux subsystem of the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP V3.1</title>
    <updated>2025-02-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-398330.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities have been identified in the additional GNU/Linux subsystem of the firmware version V3.1 for the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP (incl.&#160;SIPLUS variant).&lt;/p&gt;
&lt;p&gt;These GNU/Linux vulnerabilities have been externally identified. Siemens is preparing fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
&lt;p&gt;Note: This SSA advises vulnerabilities for firmware version V3.1 only; for versions &amp;lt; V3.1 refer to Siemens Security Bulletin SSB-439005 (&lt;a href="https://cert-portal.siemens.com/productcert/html/ssb-439005.html" class="uri"&gt;https://cert-portal.siemens.com/productcert/html/ssb-439005.html&lt;/a&gt;).&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-369369.html</id>
    <title>SSA-369369 V1.0: Weak Registry Permission Vulnerability in SIMATIC IPC DiagBase and SIMATIC IPC DiagMonitor</title>
    <updated>2025-02-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-369369.html" rel="alternate"/>
    <summary>&lt;p&gt;SIMATIC IPC DiagBase and SIMATIC IPC DiagMonitor contain a weak registry permission vulnerability that could allow an authenticated attacker to perform privilege escalation or bypass security measures.&lt;/p&gt;
&lt;p&gt;Siemens recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-354569.html</id>
    <title>SSA-354569 V1.1 (Last Update: 2025-02-11): Multiple Vulnerabilities in Palo Alto Networks Virtual NGFW on RUGGEDCOM APE1808 Devices</title>
    <updated>2025-02-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-354569.html" rel="alternate"/>
    <summary>&lt;p&gt;Palo Alto Networks has published [1] information on vulnerabilities in PAN-OS. This advisory lists the related Siemens Industrial products affected by these vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens is preparing fix versions and recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
&lt;p&gt;[1] https://security.paloaltonetworks.com/&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-349422.html</id>
    <title>SSA-349422 V2.2 (Last Update: 2025-02-11): Denial of Service Vulnerability in Industrial Real-Time (IRT) Devices</title>
    <updated>2025-02-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-349422.html" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in the affected products could allow an unauthorized attacker with network access to perform a denial-of-service attack resulting in loss of real-time synchronization.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-342348.html</id>
    <title>SSA-342348 V1.0: Insufficient Session Expiration Vulnerability in Siemens Products</title>
    <updated>2025-02-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-342348.html" rel="alternate"/>
    <summary>&lt;p&gt;Affected products do not correctly invalidate user sessions upon user logout. This could allow a remote unauthenticated attacker, who has obtained the session token by other means, to re-use a legitimate user&#8217;s session even after logout.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-246355.html</id>
    <title>SSA-246355 V1.0: Multiple Vulnerabilities in Tableau Server Component of Opcenter Intelligence</title>
    <updated>2025-02-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-246355.html" rel="alternate"/>
    <summary>&lt;p&gt;The Tableau Server component in Opcenter Intelligence contains multiple vulnerabilities as described below.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for Opcenter Intelligence and recommends to update to the latest version and to install the latest available version of Tableau Server as described in &lt;a href="https://support.sw.siemens.com/knowledge-base/PL8822108" class="uri"&gt;https://support.sw.siemens.com/knowledge-base/PL8822108&lt;/a&gt;.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-224824.html</id>
    <title>SSA-224824 V1.0: Denial of Service Vulnerabilities in SIMATIC S7-1200 CPU Family Before V4.7</title>
    <updated>2025-02-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-224824.html" rel="alternate"/>
    <summary>&lt;p&gt;SIMATIC S7-1200 CPU family before V4.7 is affected by two denial of service vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-196737.html</id>
    <title>SSA-196737 V1.1 (Last Update: 2025-02-11): Multiple Vulnerabilities in SINEC Traffic Analyzer Before V1.2</title>
    <updated>2025-02-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-196737.html" rel="alternate"/>
    <summary>&lt;p&gt;SINEC Traffic Analyzer before V1.2 is affected by multiple vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for SINEC Traffic Analyzer and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-195895.html</id>
    <title>SSA-195895 V1.0: User Enumeration Vulnerability in the Webserver of SIMATIC Products</title>
    <updated>2025-02-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-195895.html" rel="alternate"/>
    <summary>&lt;p&gt;The webserver of several SIMATIC products is affected by a user enumeration vulnerability that could allow an unauthenticated remote attacker to identify valid usernames.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-194557.html</id>
    <title>SSA-194557 V1.1 (Last Update: 2025-02-11): Improper Limitation of Filesystem Access through Web Server Vulnerability in SIPROTEC 5</title>
    <updated>2025-02-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-194557.html" rel="alternate"/>
    <summary>&lt;p&gt;Affected SIPROTEC 5 devices do not properly limit the access of the web server to the filesystem. This could allow an authenticated remote attacker to read arbitrary files or the entire filesystem of the device.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-111547.html</id>
    <title>SSA-111547 V1.0: Cleartext Storage of Sensitive Information Vulnerability in SIPROTEC 5</title>
    <updated>2025-02-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-111547.html" rel="alternate"/>
    <summary>&lt;p&gt;Affected SIPROTEC 5 devices do not encrypt certain data within the on-board flash storage on their PCB. This could allow an attacker with physical access to read the sensitive information from the filesystem of the device.&lt;/p&gt;
&lt;p&gt;Siemens is preparing fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-404759.html</id>
    <title>SSA-404759 V1.1 (Last Update: 2025-01-15): Information Disclosure Vulnerability in Siveillance Video Camera Drivers</title>
    <updated>2025-01-15T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-404759.html" rel="alternate"/>
    <summary>&lt;p&gt;Several camera device drivers in the Siveillance Video Device Pack store camera credentials in their log file when authentication fails. This could allow a local attacker to read camera credentials stored in the Recording Server under specific conditions.&lt;/p&gt;
&lt;p&gt;Siemens has released an update of the Device Pack and recommends to apply this update to all deployments of Siveillance Video. In general, Siemens recommends installing the latest Device Pack which contains the most up-to-date device drivers.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-999588.html</id>
    <title>SSA-999588 V1.7 (Last Update: 2025-01-14): Multiple Vulnerabilities in User Management Component (UMC) Before V2.11.2</title>
    <updated>2025-01-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-999588.html" rel="alternate"/>
    <summary>&lt;p&gt;Siemens User Management Component (UMC) before V2.11.2 is affected by multiple vulnerabilities where the most severe could lead to a restart of the UMC server.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-876787.html</id>
    <title>SSA-876787 V1.3 (Last Update: 2025-01-14): Open Redirect Vulnerability in SIMATIC S7-1500 and S7-1200 CPUs</title>
    <updated>2025-01-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-876787.html" rel="alternate"/>
    <summary>&lt;p&gt;Several SIMATIC S7-1500 and S7-1200 CPU versions are affected by an open redirect vulnerability that could allow an attacker to make the web server of affected devices redirect a legitimate user to an attacker-chosen URL. For a successful attack, the legitimate user must actively click on an attacker-crafted link.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-871035.html</id>
    <title>SSA-871035 V1.1 (Last Update: 2025-01-14): Session-Memory Deserialization Vulnerability in Siemens Engineering Platforms Before V19</title>
    <updated>2025-01-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-871035.html" rel="alternate"/>
    <summary>&lt;p&gt;Affected products do not properly sanitize user-controllable input when parsing files. This could allow an attacker to cause a type confusion and execute arbitrary code within the affected application.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-773256.html</id>
    <title>SSA-773256 V1.3 (Last Update: 2025-01-14): Impact of Socket.IO CVE-2024-38355 on Siemens Industrial Products</title>
    <updated>2025-01-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-773256.html" rel="alternate"/>
    <summary>&lt;p&gt;A Socket.IO vulnerability affects multiple Siemens industrial products. This vulnerability consists of a specially crafted Socket.IO packet that triggers an uncaught exception on the Socket.IO server killing the Node.js process allowing a remote attacker to cause Denial-of-Service condition in the affected products.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-730482.html</id>
    <title>SSA-730482 V1.2 (Last Update: 2025-01-14): Denial of Service Vulnerability in SIMATIC WinCC</title>
    <updated>2025-01-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-730482.html" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in the login dialog box of SIMATIC WinCC could allow a local attacker to cause a denial of service condition in the runtime of the SCADA system.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-723487.html</id>
    <title>SSA-723487 V1.4 (Last Update: 2025-01-14): RADIUS Protocol Susceptible to Forgery Attacks (CVE-2024-3596) - Impact to SCALANCE, RUGGEDCOM and Related Products</title>
    <updated>2025-01-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-723487.html" rel="alternate"/>
    <summary>&lt;p&gt;This advisory documents the impact of CVE-2024-3596 (also dubbed &#8220;Blastradius&#8221;), a vulnerability in the RADIUS protocol, to SCALANCE, RUGGEDCOM and related products.&lt;/p&gt;
&lt;p&gt;The vulnerability could allow on-path attackers, located between a Network Access Server (the RADIUS client, e.g., SCALANCE or RUGGEDCOM devices) and a RADIUS server (e.g., SINEC INS), to forge Access-Request packets in a way that enables them to modify the corresponding server response packet at will, e.g., turning an &#8220;Access-Reject&#8221; message into an &#8220;Access-Accept&#8221;. This would cause the Network Access Server to grant the attackers access to the network with the attackers desired authorization (and without the need of knowing or guessing legitimate access credentials).&lt;/p&gt;
&lt;p&gt;Further details incl.&#160;external references can be found in the chapter &#8220;Additional Information&#8221;. Siemens has released new versions for several affected products and recommends to update to the latest versions, and to configure the updated systems as recommended in the chapter &#8220;Additional Information&#8221;. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available. See chapter &#8220;Additional Information&#8221; for details.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-717113.html</id>
    <title>SSA-717113 V1.0: Cross-Site Request Forgery (CSRF) Vulnerability in SIMATIC S7-1200 CPUs before V4.7</title>
    <updated>2025-01-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-717113.html" rel="alternate"/>
    <summary>&lt;p&gt;The web interface of SIMATIC S7-1200 CPUs before V4.7 is affected by a cross-site request forgery (CSRF) vulnerability.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-711309.html</id>
    <title>SSA-711309 V2.3 (Last Update: 2025-01-14): Denial of Service Vulnerability in the OPC UA Implementations of SIMATIC Products</title>
    <updated>2025-01-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-711309.html" rel="alternate"/>
    <summary>&lt;p&gt;The OPC UA implementations (ANSI C and C++) as used in several SIMATIC products contain a denial of service vulnerability that could allow an unauthenticated remote attacker to create a denial of service condition by sending a specially crafted certificate.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-690517.html</id>
    <title>SSA-690517 V1.2 (Last Update: 2025-01-14): Multiple Vulnerabilities in SCALANCE W-700 IEEE 802.11ax Family</title>
    <updated>2025-01-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-690517.html" rel="alternate"/>
    <summary>&lt;p&gt;SCALANCE W-700 IEEE 802.11ax family devices are affected by multiple vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for SCALANCE W-700 IEEE 802.11ax family and recommends to update to the latest version. Siemens recommends countermeasures for vulnerabilities where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-629254.html</id>
    <title>SSA-629254 V1.3 (Last Update: 2025-01-14): Remote Code Execution Vulnerability in SIMATIC SCADA and PCS 7 systems</title>
    <updated>2025-01-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-629254.html" rel="alternate"/>
    <summary>&lt;p&gt;The products listed below contain a remote code execution vulnerability that could allow an authenticated remote attacker to execute arbitrary code with high privileges.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-593272.html</id>
    <title>SSA-593272 V2.3 (Last Update: 2025-01-14): SegmentSmack in Interniche IP-Stack based Industrial Devices</title>
    <updated>2025-01-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-593272.html" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability exists in affected products that could allow remote attackers to affect the availability of the devices under certain conditions.&lt;/p&gt;
&lt;p&gt;The underlying TCP stack can be forced to make very computation expensive calls for every incoming packet which can lead to a Denial-of-Service.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-482757.html</id>
    <title>SSA-482757 V1.5 (Last Update: 2025-01-14): Missing Immutable Root of Trust in S7-1500 CPU devices</title>
    <updated>2025-01-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-482757.html" rel="alternate"/>
    <summary>&lt;p&gt;Affected models of the S7-1500 CPU product family do not contain an Immutable Root of Trust in Hardware. With this the integrity of the code executed on the device can not be validated during load-time. An attacker with physical access to the device could use this to replace the boot image of the device and execute arbitrary code.&lt;/p&gt;
&lt;p&gt;As exploiting this vulnerability requires physical tampering with the product, Siemens recommends to assess the risk of physical access to the device in the target deployment and to implement measures to make sure that only trusted personnel have access to the physical hardware.&lt;/p&gt;
&lt;p&gt;The vulnerability is related to the hardware of the product. Siemens has released new hardware versions for several CPU types of the S7-1500 product family in which this vulnerability is fixed and is working on new hardware versions for remaining PLC types to address this vulnerability completely. See the chapter &#8220;Additional Information&#8221; below for more details.&lt;/p&gt;
&lt;p&gt;For more information please also refer to the related product support article: &lt;a href="https://support.industry.siemens.com/cs/ww/en/view/109816536/" class="uri"&gt;https://support.industry.siemens.com/cs/ww/en/view/109816536/&lt;/a&gt;.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-446448.html</id>
    <title>SSA-446448 V2.3 (Last Update: 2025-01-14): Denial of Service Vulnerability in PROFINET Stack Integrated on Interniche Stack</title>
    <updated>2025-01-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-446448.html" rel="alternate"/>
    <summary>&lt;p&gt;The PROFINET (PNIO) stack, when integrated with the Interniche IP stack, contains a vulnerability that could allow an attacker to cause a denial of service condition on affected industrial products.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-416411.html</id>
    <title>SSA-416411 V1.0: Cross-Site Scripting Vulnerability in Industrial Edge Management</title>
    <updated>2025-01-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-416411.html" rel="alternate"/>
    <summary>&lt;p&gt;Industrial Edge Management is affected by a reflected cross-site scripting (XSS) vulnerability that could allow an attacker to extract sensitive information by tricking users into accessing a malicious link.&lt;/p&gt;
&lt;p&gt;Siemens recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-413565.html</id>
    <title>SSA-413565 V1.4 (Last Update: 2025-01-14): Multiple Vulnerabilities in SCALANCE Products</title>
    <updated>2025-01-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-413565.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple SCALANCE devices are affected by several vulnerabilities that could allow an attacker to inject code, retrieve data as debug information as well as user CLI passwords or set the CLI to an irresponsive state.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-404759.html</id>
    <title>SSA-404759 V1.0: Information Disclosure Vulnerability in Siveillance Video Camera Drivers</title>
    <updated>2025-01-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-404759.html" rel="alternate"/>
    <summary>&lt;p&gt;Several HikVision camera device drivers in the Siveillance Video Device Pack store camera credentials in their log file when authentication fails. This could allow a local attacker to read camera credentials stored in the Recording Server under specific conditions.&lt;/p&gt;
&lt;p&gt;Siemens has released an update of the Device Pack and recommends to apply this update to all deployments of Siveillance Video. In general, Siemens recommends installing the latest Device Pack which contains the most up-to-date device drivers.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-398330.html</id>
    <title>SSA-398330 V2.2 (Last Update: 2025-01-14): Vulnerabilities in the additional GNU/Linux subsystem of the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP V3.1</title>
    <updated>2025-01-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-398330.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities have been identified in the additional GNU/Linux subsystem of the firmware version V3.1 for the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP (incl.&#160;SIPLUS variant).&lt;/p&gt;
&lt;p&gt;These GNU/Linux vulnerabilities have been externally identified. Siemens is preparing fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
&lt;p&gt;Note: This SSA advises vulnerabilities for firmware version V3.1 only; for versions &amp;lt; V3.1 refer to Siemens Security Bulletin SSB-439005 (&lt;a href="https://cert-portal.siemens.com/productcert/html/ssb-439005.html" class="uri"&gt;https://cert-portal.siemens.com/productcert/html/ssb-439005.html&lt;/a&gt;).&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-314390.html</id>
    <title>SSA-314390 V1.0: LDAP Injection Vulnerability in Mendix LDAP Module</title>
    <updated>2025-01-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-314390.html" rel="alternate"/>
    <summary>&lt;p&gt;The Mendix LDAP module is affected by an LDAP injection vulnerability that could allow an unauthenticated remote attacker to bypass username verification.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for Mendix LDAP and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-194557.html</id>
    <title>SSA-194557 V1.0: Improper Limitation of Filesystem Access through Web Server Vulnerability in SIPROTEC 5</title>
    <updated>2025-01-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-194557.html" rel="alternate"/>
    <summary>&lt;p&gt;Affected SIPROTEC 5 devices do not properly limit the access of the web server to the filesystem. This could allow an authenticated remote attacker to read arbitrary files or the entire filesystem of the device.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-097435.html</id>
    <title>SSA-097435 V1.8 (Last Update: 2025-01-14): Usernames Disclosure Vulnerability in Mendix Runtime</title>
    <updated>2025-01-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-097435.html" rel="alternate"/>
    <summary>&lt;p&gt;Mendix Runtime contains an observable response discrepancy vulnerability when validating usernames during authentication. This could allow unauthenticated remote attackers to distinguish between valid and invalid usernames.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-054046.html</id>
    <title>SSA-054046 V1.2 (Last Update: 2025-01-14): Unauthenticated Information Disclosure in Web Server of SIMATIC S7-1500 CPUs</title>
    <updated>2025-01-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-054046.html" rel="alternate"/>
    <summary>&lt;p&gt;Several SIMATIC S7-1500 CPU versions are affected by an authentication bypass vulnerability that could allow an unauthenticated remote attacker to gain knowledge about actual and configured maximum cycle times and communication load of the CPU.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-039007.html</id>
    <title>SSA-039007 V1.3 (Last Update: 2025-01-14): Heap-based Buffer Overflow Vulnerability in User Management Component (UMC)</title>
    <updated>2025-01-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-039007.html" rel="alternate"/>
    <summary>&lt;p&gt;Siemens User Management Component (UMC) is affected by a heap-based buffer overflow vulnerability which could allow an unauthenticated remote attacker arbitrary code execution.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-928984.html</id>
    <title>SSA-928984 V1.0: Heap-based Buffer Overflow Vulnerability in User Management Component (UMC)</title>
    <updated>2024-12-16T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-928984.html" rel="alternate"/>
    <summary>&lt;p&gt;Siemens User Management Component (UMC) is affected by a heap-based buffer overflow vulnerability which could allow an unauthenticated remote attacker arbitrary code execution.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-979056.html</id>
    <title>SSA-979056 V1.1 (Last Update: 2024-12-12): Out of Bounds Write Vulnerability in Parasolid</title>
    <updated>2024-12-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-979056.html" rel="alternate"/>
    <summary>&lt;p&gt;Parasolid is affected by an out of bounds write vulnerability that could be triggered when the application is parsing X_T data or a specially crafted file in X_T format. If a user is tricked to open a malicious file with the affected applications, an attacker could leverage the vulnerability to perform remote code execution in the context of the current process.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-097435.html</id>
    <title>SSA-097435 V1.7 (Last Update: 2024-12-12): Usernames Disclosure Vulnerability in Mendix Runtime</title>
    <updated>2024-12-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-097435.html" rel="alternate"/>
    <summary>&lt;p&gt;Mendix Runtime contains an observable response discrepancy vulnerability when validating usernames during authentication. This could allow unauthenticated remote attackers to distinguish between valid and invalid usernames.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and recommends to update to the latest versions. Note that some, Mendix Runtime version lines (main branch or LTS or MTS versions) provide a complete fix, while others still require additional actions after updating to the latest available version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-981975.html</id>
    <title>SSA-981975 V1.4 (Last Update: 2024-12-10): Information Disclosure Vulnerability in Intel-CPUs (CVE-2022-40982) Impacting SIMATIC IPCs</title>
    <updated>2024-12-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-981975.html" rel="alternate"/>
    <summary>&lt;p&gt;Several Intel-CPU based SIMATIC IPCs are affected by an information exposure vulnerability (CVE-2022-40982) in the CPU that could allow an authenticated local user to potentially read other users&#8217; data [1].&lt;/p&gt;
&lt;p&gt;The issue is also known as &#8220;Gather Data Sampling&#8221; (GDS) or Downfall Attacks. For details refer to the chapter &#8220;Additional Information&#8221;.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
&lt;p&gt;[1] &lt;a href="https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00828.html" class="uri"&gt;https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00828.html&lt;/a&gt;&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-979056.html</id>
    <title>SSA-979056 V1.0: Out of Bounds Write Vulnerability in Parasolid</title>
    <updated>2024-12-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-979056.html" rel="alternate"/>
    <summary>&lt;p&gt;Parasolid is affected by out of bounds write vulnerability that could be triggered when the application reads files in PAR format. If a user is tricked to open a malicious file with the affected applications, an attacker could perform remote code execution in the context of the current process.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-962515.html</id>
    <title>SSA-962515 V1.5 (Last Update: 2024-12-10): Out of Bounds Read Vulnerability in Industrial Products</title>
    <updated>2024-12-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-962515.html" rel="alternate"/>
    <summary>&lt;p&gt;Several industrial products contain an out of bounds read vulnerability that could allow an attacker to cause a Blue Screen of Death (BSOD) crash of the underlying Windows kernel, leading to denial of service condition.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-881356.html</id>
    <title>SSA-881356 V1.0: Multiple Memory Corruption Vulnerabilities in Simcenter Femap</title>
    <updated>2024-12-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-881356.html" rel="alternate"/>
    <summary>&lt;p&gt;Simcenter Femap contains multiple memory corruption vulnerabilities that could be triggered when the application reads files in BDF file formats. If a user is tricked to open a malicious file with any of the affected products, this could lead the application to crash or potentially lead to arbitrary code execution.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for Simcenter Femap V2406 and recommends to update to the latest version. Siemens is preparing further fix versions and recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-876787.html</id>
    <title>SSA-876787 V1.2 (Last Update: 2024-12-10): Open Redirect Vulnerability in SIMATIC S7-1500 and S7-1200 CPUs</title>
    <updated>2024-12-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-876787.html" rel="alternate"/>
    <summary>&lt;p&gt;Several SIMATIC S7-1500 and S7-1200 CPU versions are affected by an open redirect vulnerability that could allow an attacker to make the web server of affected devices redirect a legitimate user to an attacker-chosen URL. For a successful attack, the legitimate user must actively click on an attacker-crafted link.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-822518.html</id>
    <title>SSA-822518 V1.2 (Last Update: 2024-12-10): Multiple Vulnerabilities in Palo Alto Networks Virtual NGFW Before V11.0.1 on RUGGEDCOM APE1808 Devices</title>
    <updated>2024-12-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-822518.html" rel="alternate"/>
    <summary>&lt;p&gt;Palo Alto Networks has published [1] information on vulnerabilities in PAN-OS. This advisory lists the related Siemens Industrial products affected by these vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends specific countermeasures for products where updates are not, or not yet available. Customers are advised to consult and implement the workarounds provided in Palo Alto Networks&#8217; upstream security notifications.&lt;/p&gt;
&lt;p&gt;[1] https://security.paloaltonetworks.com/?version=10.2.2&amp;amp;product=PAN-OS&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-800126.html</id>
    <title>SSA-800126 V1.0: Deserialization Vulnerability in Siemens Engineering Platforms before V20</title>
    <updated>2024-12-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-800126.html" rel="alternate"/>
    <summary>&lt;p&gt;Affected products do not properly sanitize user-controllable input when parsing files. This could allow an attacker to cause a type confusion and execute arbitrary code within the affected application.&lt;/p&gt;
&lt;p&gt;Siemens is preparing fix versions and recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
&lt;p&gt;Siemens has released products based on the Totally Integrated Automation Portal (TIA Portal) V20 which are not affected by CVE-2024-49849. See the chapter &#8220;Additional Information&#8221; below for more details.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-773256.html</id>
    <title>SSA-773256 V1.2 (Last Update: 2024-12-10): Impact of Socket.IO CVE-2024-38355 on Siemens Industrial Products</title>
    <updated>2024-12-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-773256.html" rel="alternate"/>
    <summary>&lt;p&gt;A Socket.IO vulnerability affects multiple Siemens industrial products. This vulnerability consists of a specially crafted Socket.IO packet that triggers an uncaught exception on the Socket.IO server killing the Node.js process allowing a remote attacker to cause Denial-of-Service condition in the affected products.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-730188.html</id>
    <title>SSA-730188 V1.0: Multiple File Parsing Vulnerabilities in Solid Edge V2024</title>
    <updated>2024-12-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-730188.html" rel="alternate"/>
    <summary>&lt;p&gt;Siemens Solid Edge is affected by multiple file parsing vulnerabilities that could be triggered when the application reads malicious PAR or ASM files. If a user is tricked to open a malicious file with the affected products, this could lead the application to crash or potentially lead to arbitrary code execution.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for Solid Edge SE2024 and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-723487.html</id>
    <title>SSA-723487 V1.3 (Last Update: 2024-12-10): RADIUS Protocol Susceptible to Forgery Attacks (CVE-2024-3596) - Impact to SCALANCE, RUGGEDCOM and Related Products</title>
    <updated>2024-12-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-723487.html" rel="alternate"/>
    <summary>&lt;p&gt;This advisory documents the impact of CVE-2024-3596 (also dubbed &#8220;Blastradius&#8221;), a vulnerability in the RADIUS protocol, to SCALANCE, RUGGEDCOM and related products.&lt;/p&gt;
&lt;p&gt;The vulnerability could allow on-path attackers, located between a Network Access Server (the RADIUS client, e.g., SCALANCE or RUGGEDCOM devices) and a RADIUS server (e.g., SINEC INS), to forge Access-Request packets in a way that enables them to modify the corresponding server response packet at will, e.g., turning an &#8220;Access-Reject&#8221; message into an &#8220;Access-Accept&#8221;. This would cause the Network Access Server to grant the attackers access to the network with the attackers desired authorization (and without the need of knowing or guessing legitimate access credentials).&lt;/p&gt;
&lt;p&gt;Further details incl.&#160;external references can be found in the chapter &#8220;Additional Information&#8221;. Siemens has released new versions for several affected products and recommends to update to the latest versions, and to configure the updated systems as recommended in the chapter &#8220;Additional Information&#8221;. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available. See chapter &#8220;Additional Information&#8221; for details.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-711309.html</id>
    <title>SSA-711309 V2.2 (Last Update: 2024-12-10): Denial of Service Vulnerability in the OPC UA Implementations of SIMATIC Products</title>
    <updated>2024-12-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-711309.html" rel="alternate"/>
    <summary>&lt;p&gt;The OPC UA implementations (ANSI C and C++) as used in several SIMATIC products contain a denial of service vulnerability that could allow an unauthenticated remote attacker to create a denial of service condition by sending a specially crafted certificate.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-701627.html</id>
    <title>SSA-701627 V1.0: XXE Injection Vulnerabilities in COMOS</title>
    <updated>2024-12-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-701627.html" rel="alternate"/>
    <summary>&lt;p&gt;COMOS is affected by XXE injection vulnerabilities that could allow an attacker to extract arbitrary application files.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-698820.html</id>
    <title>SSA-698820 V1.4 (Last Update: 2024-12-10): Multiple Vulnerabilities in Fortigate NGFW Before V7.4.4 on RUGGEDCOM APE1808 Devices</title>
    <updated>2024-12-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-698820.html" rel="alternate"/>
    <summary>&lt;p&gt;&lt;a href="https://www.fortiguard.com/psirt"&gt;Fortinet has published&lt;/a&gt; information on vulnerabilities in FORTIOS. This advisory lists the related Siemens Industrial products.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version of Fortigate NGFW for RUGGEDCOM APE1808 and recommends to update to the latest version. Siemens recommends to consult and implement the workarounds provided in Fortinet&#8217;s upstream security notifications.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-673996.html</id>
    <title>SSA-673996 V1.1 (Last Update: 2024-12-10): Buffer Overflow Vulnerability in Third-Party Component in SICAM and SITIPE Products</title>
    <updated>2024-12-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-673996.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple SICAM products are affected by buffer overflow vulnerability in the IEC 61850 Client libraries from Triangle MicroWorks that could allow an unauthenticated remote attacker to create a denial of service condition by sending specially crafted MMS messages.&lt;/p&gt;
&lt;p&gt;Affected SICAM and SITIPE products:&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;SICAM A8000 Device firmware
&lt;ul&gt;
&lt;li&gt;ET85 for CP-8000/CP-8021/CP-8022&lt;/li&gt;
&lt;li&gt;ETI5 for CP-8031/CP-8050&lt;/li&gt;
&lt;/ul&gt;&lt;/li&gt;
&lt;li&gt;SICAM EGS Device firmware
&lt;ul&gt;
&lt;li&gt;ETI5&lt;/li&gt;
&lt;/ul&gt;&lt;/li&gt;
&lt;li&gt;SICAM 8 Software Solution
&lt;ul&gt;
&lt;li&gt;ETI5&lt;/li&gt;
&lt;/ul&gt;&lt;/li&gt;
&lt;li&gt;SICAM SCC&lt;/li&gt;
&lt;li&gt;SITIPE AT&lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-645131.html</id>
    <title>SSA-645131 V1.0: Multiple WRL File Parsing Vulnerabilities in Teamcenter Visualization</title>
    <updated>2024-12-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-645131.html" rel="alternate"/>
    <summary>&lt;p&gt;Siemens Teamcenter Visualization contains multiple file parsing vulnerabilities that could be triggered when the application reads files in WRL format. If a user is tricked to open a malicious file with any of the affected products, this could lead the application to crash or potentially lead to arbitrary code execution.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-620799.html</id>
    <title>SSA-620799 V1.0: Denial of Service Vulnerability During BLE Pairing in SENTRON Powercenter 1000/1100</title>
    <updated>2024-12-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-620799.html" rel="alternate"/>
    <summary>&lt;p&gt;SENTRON Powercenter devices are affected by a denial of service vulnerability that can be triggered during BLE (Bluetooth Low Energy) pairing.&lt;/p&gt;
&lt;p&gt;Siemens is preparing fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-599968.html</id>
    <title>SSA-599968 V1.8 (Last Update: 2024-12-10): Denial of Service Vulnerability in Profinet Devices</title>
    <updated>2024-12-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-599968.html" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in affected devices could allow an attacker to perform a denial ofservice attack if a large amount of Profinet Discovery and Configuration Protocol (DCP) reset packets is sent to the affected devices.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-583523.html</id>
    <title>SSA-583523 V1.1 (Last Update: 2024-12-10): Multiple WRL File Parsing Vulnerabilities in Tecnomatix Plant Simulation</title>
    <updated>2024-12-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-583523.html" rel="alternate"/>
    <summary>&lt;p&gt;Siemens Tecnomatix Plant Simulation contains multiple file parsing vulnerabilities that could be triggered when the application reads files in WRL format. If a user is tricked to open a malicious file with any of the affected products, this could lead the application to crash or potentially lead to arbitrary code execution.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-455250.html</id>
    <title>SSA-455250 V1.5 (Last Update: 2024-12-10): Multiple Vulnerabilities in Palo Alto Networks Virtual NGFW on RUGGEDCOM APE1808 Devices Before V11.1.2-h3</title>
    <updated>2024-12-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-455250.html" rel="alternate"/>
    <summary>&lt;p&gt;Palo Alto Networks has published [1] information on vulnerabilities in PAN-OS. This advisory lists the related Siemens Industrial products affected by these vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version of Palo Alto Networks Virtual NGFW for RUGGEDCOM APE1808 and recommends to update to the latest version. Customers are advised to consult and implement the workarounds provided in Palo Alto Networks&#8217; upstream security notifications.&lt;/p&gt;
&lt;p&gt;[1] https://security.paloaltonetworks.com/&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-398330.html</id>
    <title>SSA-398330 V2.1 (Last Update: 2024-12-10): Vulnerabilities in the additional GNU/Linux subsystem of the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP V3.1</title>
    <updated>2024-12-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-398330.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities have been identified in the additional GNU/Linux subsystem of the firmware version V3.1 for the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP (incl.&#160;SIPLUS variant).&lt;/p&gt;
&lt;p&gt;These GNU/Linux vulnerabilities have been externally identified. Siemens is preparing fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
&lt;p&gt;Note: This SSA advises vulnerabilities for firmware version V3.1 only; for versions &amp;lt; V3.1 refer to Siemens Security Bulletin SSB-439005 (&lt;a href="https://cert-portal.siemens.com/productcert/html/ssb-439005.html" class="uri"&gt;https://cert-portal.siemens.com/productcert/html/ssb-439005.html&lt;/a&gt;).&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-392859.html</id>
    <title>SSA-392859 V1.0: Local Arbitrary Code Execution Vulnerability in Siemens Engineering Platforms before V20</title>
    <updated>2024-12-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-392859.html" rel="alternate"/>
    <summary>&lt;p&gt;Affected products contain a local arbitrary code execution vulnerability that could allow an attacker to perform actions against the operation system of that environment.&lt;/p&gt;
&lt;p&gt;Siemens is preparing fix versions and recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
&lt;p&gt;Siemens has released products based on the Totally Integrated Automation Portal (TIA Portal) V20 which are not affected by CVE-2024-52051. See the chapter &#8220;Additional Information&#8221; below for more details.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-384652.html</id>
    <title>SSA-384652 V1.0: Cross-Site Request Forgery (CSRF) Vulnerability in RUGGEDCOM ROX II</title>
    <updated>2024-12-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-384652.html" rel="alternate"/>
    <summary>&lt;p&gt;The CLI feature in the web interface of RUGGEDCOM ROX II devices is vulnerable to cross-site request forgery (CSRF), which could allow an attacker to perform administrative actions if an authenticated user is tricked into accessing a malicious link.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-364175.html</id>
    <title>SSA-364175 V1.4 (Last Update: 2024-12-10): Multiple Vulnerabilities in Palo Alto Networks Virtual NGFW on RUGGEDCOM APE1808 Devices Before V11.1.4-h1</title>
    <updated>2024-12-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-364175.html" rel="alternate"/>
    <summary>&lt;p&gt;Palo Alto Networks has published [1] information on vulnerabilities in PAN-OS. This advisory lists the related Siemens Industrial products affected by these vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends specific countermeasures for products where updates are not, or not yet available. Customers are advised to consult and implement the workarounds provided in Palo Alto Networks&#8217; upstream security notifications.&lt;/p&gt;
&lt;p&gt;[1] &lt;a href="https://security.paloaltonetworks.com/" class="uri"&gt;https://security.paloaltonetworks.com/&lt;/a&gt;&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-340240.html</id>
    <title>SSA-340240 V1.1 (Last Update: 2024-12-10): Denial of Service Vulnerability in SENTRON Powercenter 1000/1100 With 3RV2921-5M Accessory</title>
    <updated>2024-12-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-340240.html" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in SENTRON Powercenter 1000/1100 with 3RV2921-5M accessory could allow an attacker to cause a denial of service condition.&lt;/p&gt;
&lt;p&gt;Siemens is preparing fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-264815.html</id>
    <title>SSA-264815 V1.3 (Last Update: 2024-12-10): Type Confusion Vulnerability in OpenSSL X.400 Address Processing in SIMATIC Products</title>
    <updated>2024-12-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-264815.html" rel="alternate"/>
    <summary>&lt;p&gt;Several SIMATIC products are affected by a type confusion vulnerability relating to OpenSSL X.400 address processing (CVE-2023-0286), as disclosed disclosed on 2023-02-07 at &lt;a href="https://www.openssl.org/news/secadv/20230207.txt" class="uri"&gt;https://www.openssl.org/news/secadv/20230207.txt&lt;/a&gt;.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-264814.html</id>
    <title>SSA-264814 V1.4 (Last Update: 2024-12-10): Timing Based Side Channel Vulnerability in the OpenSSL RSA Decryption in SIMATIC Products</title>
    <updated>2024-12-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-264814.html" rel="alternate"/>
    <summary>&lt;p&gt;Several SIMATIC products are affected by a timing based side channel vulnerability in the OpenSSL RSA Decryption (CVE-2023-4304), as disclosed on 2023-02-07 at &lt;a href="https://www.openssl.org/news/secadv/20230207.txt" class="uri"&gt;https://www.openssl.org/news/secadv/20230207.txt&lt;/a&gt;.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-128393.html</id>
    <title>SSA-128393 V1.0: Firmware Decryption Vulnerability in SICAM A8000 CP-8031 and CP-8050</title>
    <updated>2024-12-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-128393.html" rel="alternate"/>
    <summary>&lt;p&gt;The SICAM A8000 CP-8031 and CP-8050 devices are affected by a vulnerability that could allow an attacker with physical access to the device to decrypt the firmware.&lt;/p&gt;
&lt;p&gt;Siemens has released new firmware and hardware versions for the affected products and recommends to update to the latest versions. Both the firmware and the hardware update are required to fix the vulnerability. For details see the section &#8220;Additional Information&#8221;.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-097435.html</id>
    <title>SSA-097435 V1.6 (Last Update: 2024-12-10): Usernames Disclosure Vulnerability in Mendix Runtime</title>
    <updated>2024-12-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-097435.html" rel="alternate"/>
    <summary>&lt;p&gt;Mendix Runtime contains an observable response discrepancy vulnerability when validating usernames during authentication. This could allow unauthenticated remote attackers to distinguish between valid and invalid usernames.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and recommends to update to the latest versions. Note that some, Mendix Runtime version lines (main branch or LTS or MTS versions) provide a complete fix, while others still require additional actions after updating to the latest available version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-042050.html</id>
    <title>SSA-042050 V1.2 (Last Update: 2024-12-10): Know-How Protection Mechanism Failure in TIA Portal</title>
    <updated>2024-12-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-042050.html" rel="alternate"/>
    <summary>&lt;p&gt;The know-how protection feature in Totally Integrated Automation Portal (TIA Portal) does not properly update the encryption of existing program blocks when a project file is updated. This could allow attackers with access to the project file to recover previous - yet unprotected - versions of the project without the knowledge of the know-how protection password.&lt;/p&gt;
&lt;p&gt;Siemens recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-097435.html</id>
    <title>SSA-097435 V1.5 (Last Update: 2024-11-26): Usernames Disclosure Vulnerability in Mendix Runtime</title>
    <updated>2024-11-26T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-097435.html" rel="alternate"/>
    <summary>&lt;p&gt;Mendix Runtime contains an observable response discrepancy vulnerability when validating usernames during authentication. This could allow unauthenticated remote attackers to distinguish between valid and invalid usernames.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-354569.html</id>
    <title>SSA-354569 V1.0: Multiple Vulnerabilities in Palo Alto Networks Virtual NGFW on RUGGEDCOM APE1808 Devices</title>
    <updated>2024-11-22T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-354569.html" rel="alternate"/>
    <summary>&lt;p&gt;Palo Alto Networks has published [1] information on vulnerabilities in PAN-OS. This advisory lists the related Siemens Industrial products affected by these vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens is preparing fix versions and recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
&lt;p&gt;[1] https://security.paloaltonetworks.com/&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-824503.html</id>
    <title>SSA-824503 V1.0: Multiple WRL File Parsing Vulnerabilities in Tecnomatix Plant Simulation Before V2302.0018 and V2404.0007</title>
    <updated>2024-11-18T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-824503.html" rel="alternate"/>
    <summary>&lt;p&gt;Siemens Tecnomatix Plant Simulation contains multiple file parsing vulnerabilities that could be triggered when the application reads files in WRL format. If a user is tricked to open a malicious file with any of the affected products, this could lead the application to crash or potentially lead to arbitrary code execution.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-472448.html</id>
    <title>SSA-472448 V1.0: Security Bypass Vulnerability in the SQL Client-Server Communication in Siveillance Video</title>
    <updated>2024-11-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-472448.html" rel="alternate"/>
    <summary>&lt;p&gt;Siveillance Video is affected by a security bypass vulnerability in the Microsoft .NET implementation of SQL Client as described in CVE-2024-0056.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-962515.html</id>
    <title>SSA-962515 V1.4 (Last Update: 2024-11-12): Out of Bounds Read Vulnerability in Industrial Products</title>
    <updated>2024-11-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-962515.html" rel="alternate"/>
    <summary>&lt;p&gt;Several industrial products contain an out of bounds read vulnerability that could allow an attacker to cause a Blue Screen of Death (BSOD) crash of the underlying Windows kernel, leading to denial of service condition.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-915275.html</id>
    <title>SSA-915275 V1.0: Multiple Vulnerabilities in SINEC INS Before V1.0 SP2 Update 3</title>
    <updated>2024-11-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-915275.html" rel="alternate"/>
    <summary>&lt;p&gt;SINEC INS before V1.0 SP2 Update 3 is affected by multiple vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for SINEC INS and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-914892.html</id>
    <title>SSA-914892 V1.0: Race Condition Vulnerability in Basic Authentication Implementation of Mendix Runtime</title>
    <updated>2024-11-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-914892.html" rel="alternate"/>
    <summary>&lt;p&gt;The basic authentication mechanism of Mendix Runtime contains a race condition vulnerability which could allow unauthenticated remote attackers to circumvent default account lockout measures.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-883918.html</id>
    <title>SSA-883918 V1.2 (Last Update: 2024-11-12): Information Disclosure Vulnerability in SIMATIC WinCC</title>
    <updated>2024-11-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-883918.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple versions of SIMATIC WinCC and SIMATIC PCS 7 do not properly handle certain requests to their web application (WinCC WebNavigator, PCS 7 Web Server, and PCS 7 Web Diagnostics Server), which may lead to the leak of privileged information. This could allow an unauthenticated remote attacker to retrieve information such as users and passwords.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-876787.html</id>
    <title>SSA-876787 V1.1 (Last Update: 2024-11-12): Open Redirect Vulnerability in SIMATIC S7-1500 and S7-1200 CPUs</title>
    <updated>2024-11-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-876787.html" rel="alternate"/>
    <summary>&lt;p&gt;Several SIMATIC S7-1500 and S7-1200 CPU versions are affected by an open redirect vulnerability that could allow an attacker to make the web server of affected devices redirect a legitimate user to an attacker-chosen URL. For a successful attack, the legitimate user must actively click on an attacker-crafted link.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-871035.html</id>
    <title>SSA-871035 V1.0: Session-Memory Deserialization Vulnerability in Siemens Engineering Platforms Before V19</title>
    <updated>2024-11-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-871035.html" rel="alternate"/>
    <summary>&lt;p&gt;Affected products do not properly sanitize user-controllable input when parsing files. This could allow an attacker to cause a type confusion and execute arbitrary code within the affected application.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-773256.html</id>
    <title>SSA-773256 V1.1 (Last Update: 2024-11-12): Impact of Socket.IO CVE-2024-38355 on Siemens Industrial Products</title>
    <updated>2024-11-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-773256.html" rel="alternate"/>
    <summary>&lt;p&gt;A Socket.IO vulnerability affects multiple Siemens industrial products. This vulnerability consists of a specially crafted Socket.IO packet that triggers an uncaught exception on the Socket.IO server killing the Node.js process allowing a remote attacker to cause Denial-of-Service condition in the affected products.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-723487.html</id>
    <title>SSA-723487 V1.2 (Last Update: 2024-11-12): RADIUS Protocol Susceptible to Forgery Attacks (CVE-2024-3596) - Impact to SCALANCE, RUGGEDCOM and Related Products</title>
    <updated>2024-11-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-723487.html" rel="alternate"/>
    <summary>&lt;p&gt;This advisory documents the impact of CVE-2024-3596 (also dubbed &#8220;Blastradius&#8221;), a vulnerability in the RADIUS protocol, to SCALANCE, RUGGEDCOM and related products.&lt;/p&gt;
&lt;p&gt;The vulnerability could allow on-path attackers, located between a Network Access Server (the RADIUS client, e.g., SCALANCE or RUGGEDCOM devices) and a RADIUS server (e.g., SINEC INS), to forge Access-Request packets in a way that enables them to modify the corresponding server response packet at will, e.g., turning an &#8220;Access-Reject&#8221; message into an &#8220;Access-Accept&#8221;. This would cause the Network Access Server to grant the attackers access to the network with the attackers desired authorization (and without the need of knowing or guessing legitimate access credentials).&lt;/p&gt;
&lt;p&gt;Further details, the impact to SCALANCE, RUGGEDCOM and related products, specific countermeasures and external references can be found in the chapter &#8220;Additional Information&#8221;.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for RUGGEDCOM CROSSBOW and recommends to update to the latest version. Siemens is preparing further fix versions and recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-654798.html</id>
    <title>SSA-654798 V1.0: Incorrect Authorization Vulnerability in SIMATIC CP 1543-1 Devices</title>
    <updated>2024-11-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-654798.html" rel="alternate"/>
    <summary>&lt;p&gt;SIMATIC CP 1543-1 devices contain an Incorrect Authorization vulnerability that could allow an unauthenticated attacker to gain access to the filesystem.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for SIMATIC CP 1543-1 V4.0 and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-629254.html</id>
    <title>SSA-629254 V1.2 (Last Update: 2024-11-12): Remote Code Execution Vulnerability in SIMATIC SCADA and PCS 7 systems</title>
    <updated>2024-11-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-629254.html" rel="alternate"/>
    <summary>&lt;p&gt;The products listed below contain a remote code execution vulnerability that could allow an unauthenticated remote attacker to execute arbitrary code with high privileges.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-616032.html</id>
    <title>SSA-616032 V1.0: Local Privilege Escalation Vulnerability in Spectrum Power 7 Before V24Q3</title>
    <updated>2024-11-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-616032.html" rel="alternate"/>
    <summary>&lt;p&gt;Spectrum Power 7 before V24Q3 contains several root-owned SUID binaries that could allow an authenticated local attacker to escalate privileges.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for Spectrum Power 7 and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-599968.html</id>
    <title>SSA-599968 V1.7 (Last Update: 2024-11-12): Denial-of-Service Vulnerability in Profinet Devices</title>
    <updated>2024-11-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-599968.html" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in affected devices could allow an attacker to perform a denial-of-service attack if a large amount of Profinet Discovery and Configuration Protocol (DCP) reset packets is sent to the affected devices.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-454789.html</id>
    <title>SSA-454789 V1.0: Deserialization Vulnerability in TeleControl Server Basic V3.1</title>
    <updated>2024-11-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-454789.html" rel="alternate"/>
    <summary>&lt;p&gt;TeleControl Server Basic V3.1 contains a deserialization vulnerability that could allow an unauthenticated attacker to execute arbitrary code on the device.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-398330.html</id>
    <title>SSA-398330 V2.0 (Last Update: 2024-11-12): Vulnerabilities in the additional GNU/Linux subsystem of the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP V3.1</title>
    <updated>2024-11-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-398330.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities have been identified in the additional GNU/Linux subsystem of the firmware version V3.1 for the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP (incl.&#160;SIPLUS variant).&lt;/p&gt;
&lt;p&gt;These GNU/Linux vulnerabilities have been externally identified. Siemens is preparing fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
&lt;p&gt;Note: This SSA advises vulnerabilities for firmware version V3.1 only; for versions &amp;lt; V3.1 refer to Siemens Security Bulletin SSB-439005 (&lt;a href="https://cert-portal.siemens.com/productcert/html/ssb-439005.html" class="uri"&gt;https://cert-portal.siemens.com/productcert/html/ssb-439005.html&lt;/a&gt;).&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-364175.html</id>
    <title>SSA-364175 V1.3 (Last Update: 2024-11-12): Multiple Vulnerabilities in Palo Alto Networks Virtual NGFW on RUGGEDCOM APE1808 Devices Before V11.1.4-h1</title>
    <updated>2024-11-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-364175.html" rel="alternate"/>
    <summary>&lt;p&gt;Palo Alto Networks has published [1] information on vulnerabilities in PAN-OS. This advisory lists the related Siemens Industrial products affected by these vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends specific countermeasures for products where updates are not, or not yet available. Customers are advised to consult and implement the workarounds provided in Palo Alto Networks&#8217; upstream security notifications.&lt;/p&gt;
&lt;p&gt;[1] &lt;a href="https://security.paloaltonetworks.com/" class="uri"&gt;https://security.paloaltonetworks.com/&lt;/a&gt;&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-354112.html</id>
    <title>SSA-354112 V1.0: Multiple Vulnerabilities in SCALANCE M-800 Family Before V8.2</title>
    <updated>2024-11-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-354112.html" rel="alternate"/>
    <summary>&lt;p&gt;SCALANCE M-800 family before V8.2 is affected by multiple vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-351178.html</id>
    <title>SSA-351178 V1.0: Multiple Vulnerabilities in Solid Edge Before SE2024 Update 9</title>
    <updated>2024-11-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-351178.html" rel="alternate"/>
    <summary>&lt;p&gt;Solid Edge is affected by multiple file parsing vulnerabilities that could be triggered when the application reads specially crafted files in various formats such as PAR or PSM format, and by a DLL hijacking vulnerability. This could allow an attacker to crash the application or execute arbitrary code.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for Solid Edge SE2024 and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-331112.html</id>
    <title>SSA-331112 V1.0: Multiple Vulnerabilities in SINEC NMS Before V3.0 SP1</title>
    <updated>2024-11-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-331112.html" rel="alternate"/>
    <summary>&lt;p&gt;SINEC NMS before V3.0 SP1 is affected by multiple vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for SINEC NMS and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-265688.html</id>
    <title>SSA-265688 V1.3 (Last Update: 2024-11-12): Vulnerabilities in the additional GNU/Linux subsystem of the SIMATIC S7-1500 TM MFP V1.1</title>
    <updated>2024-11-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-265688.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities have been identified in the additional GNU/Linux subsystem of the SIMATIC S7-1500 TM MFP V1.1.&lt;/p&gt;
&lt;p&gt;Siemens is preparing fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-230445.html</id>
    <title>SSA-230445 V1.0: Stored XSS Vulnerability in OZW Web Servers Before V5.2</title>
    <updated>2024-11-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-230445.html" rel="alternate"/>
    <summary>&lt;p&gt;OZW672 and OZW772 Web Server versions before V5.2 contain a stored cross-site scripting (XSS) vulnerability that could allow an authenticated remote attacker to inject arbitrary JavaScript code that is later executed by another authenticated victim user with potential higher privileges than the attacker.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-097435.html</id>
    <title>SSA-097435 V1.4 (Last Update: 2024-11-12): Usernames Disclosure Vulnerability in Mendix Runtime</title>
    <updated>2024-11-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-097435.html" rel="alternate"/>
    <summary>&lt;p&gt;Mendix Runtime contains an observable response discrepancy vulnerability when validating usernames during authentication. This could allow unauthenticated remote attackers to distinguish between valid and invalid usernames.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-064257.html</id>
    <title>SSA-064257 V1.0: Privilege Escalation Vulnerability in SIPORT Before V3.4.0</title>
    <updated>2024-11-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-064257.html" rel="alternate"/>
    <summary>&lt;p&gt;SIPORT before V3.4.0 contains a privilege escalation vulnerability which could allow a local attacker with an unprivileged account to override or modify the service executable and subsequently gain elevated privileges.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for SIPORT and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-054046.html</id>
    <title>SSA-054046 V1.1 (Last Update: 2024-11-12): Unauthenticated Information Disclosure in Web Server of SIMATIC S7-1500 CPUs</title>
    <updated>2024-11-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-054046.html" rel="alternate"/>
    <summary>&lt;p&gt;Several SIMATIC S7-1500 CPU versions are affected by an authentication bypass vulnerability that could allow an unauthenticated remote attacker to gain knowledge about actual and configured maximum cycle times and communication load of the CPU.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-039007.html</id>
    <title>SSA-039007 V1.2 (Last Update: 2024-11-12): Heap-based Buffer Overflow Vulnerability in User Management Component (UMC)</title>
    <updated>2024-11-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-039007.html" rel="alternate"/>
    <summary>&lt;p&gt;Siemens User Management Component (UMC) is affected by a heap-based buffer overflow vulnerability which could allow an unauthenticated remote attacker arbitrary code execution.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-000297.html</id>
    <title>SSA-000297 V1.0: Multiple SQLite Vulnerabilities in RUGGEDCOM CROSSBOW Station Access Controller Before V5.6</title>
    <updated>2024-11-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-000297.html" rel="alternate"/>
    <summary>&lt;p&gt;RUGGEDCOM CROSSBOW Station Access Controller (SAC) contains multiple vulnerabilities in the integrated SQLite component that could allow an attacker to execute arbitrary code or to create a denial of service condition.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for RUGGEDCOM CROSSBOW Station Access Controller (SAC) and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-333468.html</id>
    <title>SSA-333468 V1.0: Multiple Vulnerabilities in InterMesh Subscriber Devices</title>
    <updated>2024-10-23T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-333468.html" rel="alternate"/>
    <summary>&lt;p&gt;InterMesh Subscriber devices contain multiple vulnerabilities that could allow an unauthenticated remote attacker to execute arbitrary code with root privileges.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-438590.html</id>
    <title>SSA-438590 V1.0: Buffer Overflow Vulnerability in Siveillance Video Camera Drivers</title>
    <updated>2024-10-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-438590.html" rel="alternate"/>
    <summary>&lt;p&gt;Several camera device drivers in the Siveillance Video Device Pack contain a buffer overflow vulnerability that could be exploited under strict conditions. This could allow an attacker to execute code with the permissions of the Recording Server user.&lt;/p&gt;
&lt;p&gt;Siemens has released an update of the Device Pack recommends to apply this update to all deployments of Siveillance Video. In general, Siemens recommends installing the latest Device Pack which contains the most up-to-date device drivers.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-097435.html</id>
    <title>SSA-097435 V1.3 (Last Update: 2024-10-10): Usernames Disclosure Vulnerability in Mendix Runtime</title>
    <updated>2024-10-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-097435.html" rel="alternate"/>
    <summary>&lt;p&gt;Mendix Runtime contains an observable response discrepancy vulnerability when validating usernames during authentication. This could allow unauthenticated remote attackers to distinguish between valid and invalid usernames.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for Mendix Runtime V8 and recommends to update to the latest version. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-999588.html</id>
    <title>SSA-999588 V1.6 (Last Update: 2024-10-08): Multiple Vulnerabilities in User Management Component (UMC) Before V2.11.2</title>
    <updated>2024-10-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-999588.html" rel="alternate"/>
    <summary>&lt;p&gt;Siemens User Management Component (UMC) before V2.11.2 is affected by multiple vulnerabilities where the most severe could lead to a restart of the UMC server.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-962515.html</id>
    <title>SSA-962515 V1.3 (Last Update: 2024-10-08): Out of Bounds Read Vulnerability in Industrial Products</title>
    <updated>2024-10-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-962515.html" rel="alternate"/>
    <summary>&lt;p&gt;Several industrial products contain an out of bounds read vulnerability that could allow an attacker to cause a Blue Screen of Death (BSOD) crash of the underlying Windows kernel, leading to denial of service condition.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-959281.html</id>
    <title>SSA-959281 V1.0: XML File Parsing Vulnerabilities in Teamcenter Visualization and JT2Go</title>
    <updated>2024-10-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-959281.html" rel="alternate"/>
    <summary>&lt;p&gt;Siemens Teamcenter Visualization and JT2Go are affected by stack buffer overflow and null pointer dereference vulnerabilities that could be triggered while parsing XML file. If a user is tricked to open a malicious XML file with any of the affected products, this could cause the application to crash or potentially lead to arbitrary code execution.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-955858.html</id>
    <title>SSA-955858 V1.3 (Last Update: 2024-10-08): Multiple Vulnerabilities in LOGO! 8 BM Devices</title>
    <updated>2024-10-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-955858.html" rel="alternate"/>
    <summary>&lt;p&gt;LOGO! 8 BM (incl.&#160;SIPLUS variants) contains multiple web-related vulnerabilities. These could allow an attacker to execute code remotely, put the device into a denial of service state or retrieve parts of the memory.&lt;/p&gt;
&lt;p&gt;The vulnerabilities are related to the hardware of the product. Siemens has released new hardware versions with the LOGO! V8.4 BM and the SIPLUS LOGO! V8.4 BM product families for all affected devices in which several of those vulnerabilities are fixed. See the chapter &#8220;Additional Information&#8221; below for more details.&lt;/p&gt;
&lt;p&gt;For more information please also refer to the related product support article: &lt;a href="https://support.industry.siemens.com/cs/ww/en/view/109826554/" class="uri"&gt;https://support.industry.siemens.com/cs/ww/en/view/109826554/&lt;/a&gt;.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-921449.html</id>
    <title>SSA-921449 V1.2 (Last Update: 2024-10-08): Plaintext Storage of a Password Vulnerability in LOGO! V8.3 BM Devices</title>
    <updated>2024-10-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-921449.html" rel="alternate"/>
    <summary>&lt;p&gt;LOGO! V8.3 BM (incl.&#160;SIPLUS variants) devices contain a plaintext storage of a password vulnerability. This could allow an attacker with phyiscal access to an affected device to extract user-set passwords from an embedded storage IC.&lt;/p&gt;
&lt;p&gt;Siemens has released new hardware versions with the LOGO! V8.4 BM and the SIPLUS LOGO! V8.4 BM product families for all affected devices in which the vulnerability is fixed. See the chapter &#8220;Additional Information&#8221; below for more details.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-876787.html</id>
    <title>SSA-876787 V1.0: Open Redirect Vulnerability in SIMATIC S7-1500 and S7-1200 CPUs</title>
    <updated>2024-10-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-876787.html" rel="alternate"/>
    <summary>&lt;p&gt;Several SIMATIC S7-1500 and S7-1200 CPU versions are affected by an open redirect vulnerability that could allow an attacker to make the web server of affected devices redirect a legitimate user to an attacker-chosen URL. For a successful attack, the legitimate user must actively click on an attacker-crafted link.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-852501.html</id>
    <title>SSA-852501 V1.0: Multiple Memory Corruption Vulnerabilities in Simcenter Nastran Before 2406.5000</title>
    <updated>2024-10-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-852501.html" rel="alternate"/>
    <summary>&lt;p&gt;Simcenter Nastran contains multiple memory corruption vulnerabilities that could be triggered when the application reads files in BDF file formats. If a user is tricked to open a malicious file with any of the affected products, this could lead the application to crash or potentially lead to arbitrary code execution.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for Simcenter Nastran 2406 and recommends to update to the latest version. Siemens is preparing further fix versions and recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-850560.html</id>
    <title>SSA-850560 V1.0: Use of 4-Digit PIN in SENTRON PAC3200 Devices</title>
    <updated>2024-10-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-850560.html" rel="alternate"/>
    <summary>&lt;p&gt;SENTRON PAC3200 only provide a 4-digit PIN to protect from administrative access via Modbus TCP interface. Attackers with access to the Modbus TCP interface could easily bypass this protection by brute-force attacks or by monitoring the Modbus cleartext communication.&lt;/p&gt;
&lt;p&gt;Siemens recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-844582.html</id>
    <title>SSA-844582 V1.2 (Last Update: 2024-10-08): Electromagnetic Fault Injection in LOGO! V8.3 BM Devices Results in Broken LOGO! V8.3 Product CA</title>
    <updated>2024-10-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-844582.html" rel="alternate"/>
    <summary>&lt;p&gt;LOGO! V8.3 BM (incl.&#160;SIPLUS variants) devices contain a vulnerability that could allow an electromagnetic fault injection. This could allow an attacker to dump and debug the firmware, including the manipulation of memory. Further actions could allow to inject public keys of custom created key pairs which are then signed by the LOGO! V8.3 Product CA.&lt;/p&gt;
&lt;p&gt;The vulnerability is related to the specific hardware architecture of the LOGO! V8.3 BM. Siemens has released new hardware versions with the LOGO! V8.4 BM and the SIPLUS LOGO! V8.4 BM product families for all affected devices in which the vulnerability is fixed and the Product CA private key is rotated. See the chapter &#8220;Additional Information&#8221; below for more details.&lt;/p&gt;
&lt;p&gt;For more information please also refer to the related product support article: &lt;a href="https://support.industry.siemens.com/cs/ww/en/view/109826554/" class="uri"&gt;https://support.industry.siemens.com/cs/ww/en/view/109826554/&lt;/a&gt;.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-783481.html</id>
    <title>SSA-783481 V1.3 (Last Update: 2024-10-08): Denial-of-Service Vulnerability in LOGO! 8 BM</title>
    <updated>2024-10-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-783481.html" rel="alternate"/>
    <summary>&lt;p&gt;A Denial-of-Service vulnerability has been identified in LOGO! 8 BM. This vulnerability could allow an attacker to crash a device, if a user is tricked into loading a malicious project file onto an affected device.&lt;/p&gt;
&lt;p&gt;The vulnerability is related to the hardware of the product. Siemens has released new hardware versions with the LOGO! V8.4 BM and the SIPLUS LOGO! V8.4 BM product families for all affected devices in which this vulnerability is fixed. See the chapter &#8220;Additional Information&#8221; below for more details.&lt;/p&gt;
&lt;p&gt;For more information please also refer to the related product support article: &lt;a href="https://support.industry.siemens.com/cs/ww/en/view/109826554/" class="uri"&gt;https://support.industry.siemens.com/cs/ww/en/view/109826554/&lt;/a&gt;.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-711309.html</id>
    <title>SSA-711309 V2.1 (Last Update: 2024-10-08): Denial of Service Vulnerability in the OPC UA Implementations of SIMATIC Products</title>
    <updated>2024-10-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-711309.html" rel="alternate"/>
    <summary>&lt;p&gt;The OPC UA implementations (ANSI C and C++) as used in several SIMATIC products contain a denial of service vulnerability that could allow an unauthenticated remote attacker to create a denial of service condition by sending a specially crafted certificate.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-698820.html</id>
    <title>SSA-698820 V1.3 (Last Update: 2024-10-08): Multiple Vulnerabilities in Fortigate NGFW Before V7.4.4 on RUGGEDCOM APE1808 Devices</title>
    <updated>2024-10-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-698820.html" rel="alternate"/>
    <summary>&lt;p&gt;&lt;a href="https://www.fortiguard.com/psirt"&gt;Fortinet has published&lt;/a&gt; information on vulnerabilities in FORTIOS. This advisory lists the related Siemens Industrial products.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version of Fortigate NGFW for RUGGEDCOM APE1808 and recommends to update to the latest version. Siemens recommends to consult and implement the workarounds provided in Fortinet&#8217;s upstream security notifications.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-629254.html</id>
    <title>SSA-629254 V1.1 (Last Update: 2024-10-08): Remote Code Execution Vulnerability in SIMATIC SCADA and PCS 7 systems</title>
    <updated>2024-10-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-629254.html" rel="alternate"/>
    <summary>&lt;p&gt;The products listed below contain a remote code execution vulnerability that could allow an unauthenticated remote attacker to execute arbitrary code with high privileges.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-626178.html</id>
    <title>SSA-626178 V1.0: Stack-Based Buffer Overflow Vulnerability in JT2Go Before V2406.0003</title>
    <updated>2024-10-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-626178.html" rel="alternate"/>
    <summary>&lt;p&gt;Siemens JT2Go is affected by a stack-based buffer overflow vulnerability that could be triggered when the application reads files in PDF format. If a user is tricked to open a malicious file with any of the affected products, this could lead the application to crash or potentially lead to arbitrary code execution.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for JT2Go and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-620288.html</id>
    <title>SSA-620288 V1.2 (Last Update: 2024-10-08): Multiple Vulnerabilities (NUCLEUS:13) in Capital Embedded AR Classic</title>
    <updated>2024-10-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-620288.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities (also known as &#8220;NUCLEUS:13&#8221;) have be identified in the Nucleus RTOS (real-time operating system) and reported in the Siemens Security Advisory SSA-044112: &lt;a href="https://cert-portal.siemens.com/productcert/html/ssa-044112.html" class="uri"&gt;https://cert-portal.siemens.com/productcert/html/ssa-044112.html&lt;/a&gt;.&lt;/p&gt;
&lt;p&gt;Capital Embedded AR Classic uses an affected version of the Nucleus software and inherently contains several of these vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for Capital Embedded AR Classic R20-11 and recommends to update to the latest version. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-583523.html</id>
    <title>SSA-583523 V1.0: Multiple WRL File Parsing Vulnerabilities in Tecnomatix Plant Simulation</title>
    <updated>2024-10-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-583523.html" rel="alternate"/>
    <summary>&lt;p&gt;Siemens Tecnomatix Plant Simulation contains multiple file parsing vulnerabilities that could be triggered when the application reads files in WRL format. If a user is tricked to open a malicious file with any of the affected products, this could lead the application to crash or potentially lead to arbitrary code execution.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-540493.html</id>
    <title>SSA-540493 V1.0: Kiosk Mode Escape Vulnerability in HiMed Cockpit Devices Before V11.6.2</title>
    <updated>2024-10-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-540493.html" rel="alternate"/>
    <summary>&lt;p&gt;HiMed Cockpit devices before V11.6.2 contain a Kiosk Mode Escape vulnerability that could allow an attacker to escape the restricted environment and gain access to the underlying operating system.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for the HiMed Cockpit devices and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-455250.html</id>
    <title>SSA-455250 V1.4 (Last Update: 2024-10-08): Multiple Vulnerabilities in Palo Alto Networks Virtual NGFW on RUGGEDCOM APE1808 Devices Before V11.1.2-h3</title>
    <updated>2024-10-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-455250.html" rel="alternate"/>
    <summary>&lt;p&gt;Palo Alto Networks has published [1] information on vulnerabilities in PAN-OS. This advisory lists the related Siemens Industrial products affected by these vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version of Palo Alto Networks Virtual NGFW for RUGGEDCOM APE1808 and recommends to update to the latest version. Customers are advised to consult and implement the workarounds provided in Palo Alto Networks&#8217; upstream security notifications.&lt;/p&gt;
&lt;p&gt;[1] https://security.paloaltonetworks.com/&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-430425.html</id>
    <title>SSA-430425 V1.0: Multiple Vulnerabilities in SINEC Security Monitor before V4.9.0</title>
    <updated>2024-10-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-430425.html" rel="alternate"/>
    <summary>&lt;p&gt;SINEC Security Monitor before V4.9.0 contains multiple vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for Siemens SINEC Security Monitor and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-426509.html</id>
    <title>SSA-426509 V1.0: Multiple Local Code Execution Vulnerabilities in Questa and ModelSim Before V2024.3</title>
    <updated>2024-10-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-426509.html" rel="alternate"/>
    <summary>&lt;p&gt;Questa and ModelSim (incl.&#160;OEM Editions) are affected by multiple vulnerabilities that could allow a local attacker to inject arbitrary code and escalate privileges.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-398330.html</id>
    <title>SSA-398330 V1.9 (Last Update: 2024-10-08): Vulnerabilities in the additional GNU/Linux subsystem of the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP V3.1</title>
    <updated>2024-10-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-398330.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities have been identified in the additional GNU/Linux subsystem of the firmware version V3.1 for the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP (incl.&#160;SIPLUS variant).&lt;/p&gt;
&lt;p&gt;These GNU/Linux vulnerabilities have been externally identified. Siemens is preparing fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
&lt;p&gt;Note: This SSA advises vulnerabilities for firmware version V3.1 only; for versions &amp;lt; V3.1 refer to Siemens Security Bulletin SSB-439005 (&lt;a href="https://cert-portal.siemens.com/productcert/html/ssb-439005.html" class="uri"&gt;https://cert-portal.siemens.com/productcert/html/ssb-439005.html&lt;/a&gt;).&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-368868.html</id>
    <title>SSA-368868 V1.0: Multiple Vulnerabilities in WibuKey for Windows</title>
    <updated>2024-10-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-368868.html" rel="alternate"/>
    <summary>&lt;p&gt;Several Siemens products (optionally) offer the use of WibuKey Dongles [1] for licensing. According to a recent publication by WIBU Systems (WIBU-94453 at [2]), the Windows device driver for these Dongles contains vulnerabilities as listed below.&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;[1] &lt;a href="https://www.wibu.com/products/wibukey.html" class="uri"&gt;https://www.wibu.com/products/wibukey.html&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;[2] &lt;a href="https://www.wibu.com/support/security-advisories.html" class="uri"&gt;https://www.wibu.com/support/security-advisories.html&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;WIBU Systems has released a new version for WibuKey for Windows. Siemens recommends to update this device driver on affected Windows client installations, where WibuKey Dongles are used. See also the chapter &#8220;Additional Information&#8221; for more details.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-366067.html</id>
    <title>SSA-366067 V1.1 (Last Update: 2024-10-08): Multiple Vulnerabilities in Fortigate NGFW Before V7.4.1 on RUGGEDCOM APE1808 Devices</title>
    <updated>2024-10-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-366067.html" rel="alternate"/>
    <summary>&lt;p&gt;&lt;a href="https://www.fortiguard.com/psirt"&gt;Fortinet has published&lt;/a&gt; information on vulnerabilities in FORTIOS. This advisory lists the related Siemens Industrial products.&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends specific countermeasures for products where updates are not, or not yet available. Siemens recommends to consult and implement the workarounds provided in Fortinet&#8217;s upstream security notifications.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-364175.html</id>
    <title>SSA-364175 V1.2 (Last Update: 2024-10-08): Multiple Vulnerabilities in Palo Alto Networks Virtual NGFW on RUGGEDCOM APE1808 Devices Before V11.1.4-h1</title>
    <updated>2024-10-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-364175.html" rel="alternate"/>
    <summary>&lt;p&gt;Palo Alto Networks has published [1] information on vulnerabilities in PAN-OS. This advisory lists the related Siemens Industrial products affected by these vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends specific countermeasures for products where updates are not, or not yet available. Customers are advised to consult and implement the workarounds provided in Palo Alto Networks&#8217; upstream security notifications.&lt;/p&gt;
&lt;p&gt;[1] &lt;a href="https://security.paloaltonetworks.com/" class="uri"&gt;https://security.paloaltonetworks.com/&lt;/a&gt;&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-340240.html</id>
    <title>SSA-340240 V1.0: Denial of Service Vulnerability in Sentron Powercenter 1000 with 3RV2921-5M accessory</title>
    <updated>2024-10-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-340240.html" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in Sentron Powercenter 1000 with 3RV2921-5M accessory could allow an attacker to cause a denial of service condition.&lt;/p&gt;
&lt;p&gt;Siemens is preparing fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-321292.html</id>
    <title>SSA-321292 V1.6 (Last Update: 2024-10-08): Denial of Service in the OPC Foundation Local Discovery Server (LDS) in Industrial Products</title>
    <updated>2024-10-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-321292.html" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability has been identified in the OPC Foundation Local Discovery Server (LDS) [0] of several industrial products. The vulnerability could cause a denial of service condition on the service or the device.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
&lt;p&gt;[0] &lt;a href="https://files.opcfoundation.org/SecurityBulletins/OPC%20Foundation%20Security%20Bulletin%20CVE-2021-40142.pdf" class="uri"&gt;https://files.opcfoundation.org/SecurityBulletins/OPC%20Foundation%20Security%20Bulletin%20CVE-2021-40142.pdf&lt;/a&gt;&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-254396.html</id>
    <title>SSA-254396 V1.0: Vulnerability in Nozomi Guardian/CMC Before 24.3.1 on RUGGEDCOM APE1808 Devices</title>
    <updated>2024-10-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-254396.html" rel="alternate"/>
    <summary>&lt;p&gt;Nozomi Networks has published information on vulnerabilities in &lt;a href="https://security.nozominetworks.com/"&gt;Nozomi Guardian/CMC before 24.2.0&lt;/a&gt;. This advisory lists the related Siemens Industrial products affected by these vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-148641.html</id>
    <title>SSA-148641 V1.3 (Last Update: 2024-10-08): XPath Constraint Vulnerability in Mendix Runtime</title>
    <updated>2024-10-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-148641.html" rel="alternate"/>
    <summary>&lt;p&gt;A XPath Constraint vulnerability in the Mendix Runtime was discovered, that can affect the running applications. The vulnerability could allow a malicious user to deduce contents of inaccessible attributes and modify sensitive data.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-097435.html</id>
    <title>SSA-097435 V1.2 (Last Update: 2024-10-08): Usernames Disclosure Vulnerability in Mendix Runtime</title>
    <updated>2024-10-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-097435.html" rel="alternate"/>
    <summary>&lt;p&gt;Mendix Runtime contains an observable response discrepancy vulnerability when validating usernames during authentication. This could allow unauthenticated remote attackers to distinguish between valid and invalid usernames.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-054046.html</id>
    <title>SSA-054046 V1.0: Unauthenticated Information Disclosure in Web Server of SIMATIC S7-1500 CPUs</title>
    <updated>2024-10-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-054046.html" rel="alternate"/>
    <summary>&lt;p&gt;Several SIMATIC S7-1500 CPU versions are affected by an authentication bypass vulnerability that could allow an unauthenticated remote attacker to gain knowledge about actual and configured maximum cycle times and communication load of the CPU.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-039007.html</id>
    <title>SSA-039007 V1.1 (Last Update: 2024-10-08): Heap-based Buffer Overflow Vulnerability in User Management Component (UMC)</title>
    <updated>2024-10-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-039007.html" rel="alternate"/>
    <summary>&lt;p&gt;Siemens User Management Component (UMC) is affected by a heap-based buffer overflow vulnerability which could allow an unauthenticated remote attacker arbitrary code execution.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-097435.html</id>
    <title>SSA-097435 V1.1 (Last Update: 2024-09-12): Usernames Disclosure Vulnerability in Mendix Runtime</title>
    <updated>2024-09-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-097435.html" rel="alternate"/>
    <summary>&lt;p&gt;Mendix Runtime contains an observable response discrepancy vulnerability when validating usernames during authentication. This could allow unauthenticated remote attackers to distinguish between valid and invalid usernames.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-999588.html</id>
    <title>SSA-999588 V1.5 (Last Update: 2024-09-10): Multiple Vulnerabilities in User Management Component (UMC) Before V2.11.2</title>
    <updated>2024-09-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-999588.html" rel="alternate"/>
    <summary>&lt;p&gt;Siemens User Management Component (UMC) before V2.11.2 is affected by multiple vulnerabilities where the most severe could lead to a restart of the UMC server.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-969738.html</id>
    <title>SSA-969738 V1.0: Denial of Service Vulnerability in SIMATIC S7-200 SMART Devices</title>
    <updated>2024-09-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-969738.html" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in SIMATIC S7-200 SMART devices could allow an attacker to cause a denial of service condition if a specially crafted TCP packet is sent to the device.&lt;/p&gt;
&lt;p&gt;Siemens recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-962515.html</id>
    <title>SSA-962515 V1.2 (Last Update: 2024-09-10): Out of Bounds Read Vulnerability in Industrial Products</title>
    <updated>2024-09-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-962515.html" rel="alternate"/>
    <summary>&lt;p&gt;Several industrial products contain an out of bounds read vulnerability that could allow an attacker to cause a Blue Screen of Death (BSOD) crash of the underlying Windows kernel, leading to denial of service condition.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-955858.html</id>
    <title>SSA-955858 V1.2 (Last Update: 2024-09-10): Multiple Vulnerabilities in LOGO! 8 BM Devices</title>
    <updated>2024-09-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-955858.html" rel="alternate"/>
    <summary>&lt;p&gt;LOGO! 8 BM (incl.&#160;SIPLUS variants) contains multiple web-related vulnerabilities. These could allow an attacker to execute code remotely, put the device into a denial of service state or retrieve parts of the memory.&lt;/p&gt;
&lt;p&gt;The vulnerabilities are related to the hardware of the product. Siemens has released new hardware versions with the LOGO! V8.4 BM and the SIPLUS LOGO! V8.4 BM product families for several affected devices in which several of those vulnerabilities are fixed. Siemens is working on new hardware versions for the SIPLUS devices to address this issue further. See the chapter &#8220;Additional Information&#8221; below for more details.&lt;/p&gt;
&lt;p&gt;For more information please also refer to the related product support article: &lt;a href="https://support.industry.siemens.com/cs/ww/en/view/109826554/" class="uri"&gt;https://support.industry.siemens.com/cs/ww/en/view/109826554/&lt;/a&gt;.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-921449.html</id>
    <title>SSA-921449 V1.1 (Last Update: 2024-09-10): Plaintext Storage of a Password Vulnerability in LOGO! V8.3 BM Devices</title>
    <updated>2024-09-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-921449.html" rel="alternate"/>
    <summary>&lt;p&gt;LOGO! V8.3 BM (incl.&#160;SIPLUS variants) devices contain a plaintext storage of a password vulnerability. This could allow an attacker with phyiscal access to an affected device to extract user-set passwords from an embedded storage IC.&lt;/p&gt;
&lt;p&gt;Siemens has released new hardware versions with the LOGO! V8.4 BM and the SIPLUS LOGO! V8.4 BM product families for several affected devices in which the vulnerability is fixed. Siemens is working on new hardware versions for the SIPLUS devices to address this issue further. See the chapter &#8220;Additional Information&#8221; below for more details.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-883918.html</id>
    <title>SSA-883918 V1.1 (Last Update: 2024-09-10): Information Disclosure Vulnerability in SIMATIC WinCC</title>
    <updated>2024-09-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-883918.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple versions of SIMATIC WinCC and SIMATIC PCS 7 do not properly handle certain requests to their web application (WinCC WebNavigator, PCS 7 Web Server, and PCS 7 Web Diagnostics Server), which may lead to the leak of privileged information. This could allow an unauthenticated remote attacker to retrieve information such as users and passwords.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-869574.html</id>
    <title>SSA-869574 V1.0: Multiple Vulnerabilities in SINEMA Remote Connect Server Before V3.2 SP2</title>
    <updated>2024-09-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-869574.html" rel="alternate"/>
    <summary>&lt;p&gt;SINEMA Remote Connect Server before V3.2 SP2 is affected by multiple vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for SINEMA Remote Connect Client and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-844582.html</id>
    <title>SSA-844582 V1.1 (Last Update: 2024-09-10): Electromagnetic Fault Injection in LOGO! V8.3 BM Devices Results in Broken LOGO! V8.3 Product CA</title>
    <updated>2024-09-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-844582.html" rel="alternate"/>
    <summary>&lt;p&gt;LOGO! V8.3 BM (incl.&#160;SIPLUS variants) devices contain a vulnerability that could allow an electromagnetic fault injection. This could allow an attacker to dump and debug the firmware, including the manipulation of memory. Further actions could allow to inject public keys of custom created key pairs which are then signed by the LOGO! V8.3 Product CA.&lt;/p&gt;
&lt;p&gt;The vulnerability is related to the specific hardware architecture of the LOGO! V8.3 BM. Siemens has released new hardware versions with the LOGO! V8.4 BM and the SIPLUS LOGO! V8.4 BM product families for several affected devices in which the vulnerability is fixed and the Product CA private key is rotated. Siemens is working on new hardware versions for the SIPLUS devices to address this issue further. See the chapter &#8220;Additional Information&#8221; below for more details.&lt;/p&gt;
&lt;p&gt;For more information please also refer to the related product support article: &lt;a href="https://support.industry.siemens.com/cs/ww/en/view/109826554/" class="uri"&gt;https://support.industry.siemens.com/cs/ww/en/view/109826554/&lt;/a&gt;.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-832273.html</id>
    <title>SSA-832273 V1.5 (Last Update: 2024-09-10): Multiple Vulnerabilities in Fortigate NGFW Before V7.4.3 on RUGGEDCOM APE1808 Devices</title>
    <updated>2024-09-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-832273.html" rel="alternate"/>
    <summary>&lt;p&gt;&lt;a href="https://www.fortiguard.com/psirt"&gt;Fortinet has published&lt;/a&gt; information on vulnerabilities in FORTIOS. This advisory lists the related Siemens Industrial products.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version of Fortigate NGFW for RUGGEDCOM APE1808 and recommends to update to the latest version. Siemens recommends to consult and implement the workarounds provided in Fortinet&#8217;s upstream security notifications.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-792319.html</id>
    <title>SSA-792319 V1.1 (Last Update: 2024-09-10): Missing Read Out Protection in SENTRON 7KM PAC3x20 Devices</title>
    <updated>2024-09-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-792319.html" rel="alternate"/>
    <summary>&lt;p&gt;The read out protection of the internal flash of affected devices was not properly set at the end of the manufacturing process.&lt;/p&gt;
&lt;p&gt;An attacker with physical access to the device could read out the data.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-783481.html</id>
    <title>SSA-783481 V1.2 (Last Update: 2024-09-10): Denial-of-Service Vulnerability in LOGO! 8 BM</title>
    <updated>2024-09-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-783481.html" rel="alternate"/>
    <summary>&lt;p&gt;A Denial-of-Service vulnerability has been identified in LOGO! 8 BM. This vulnerability could allow an attacker to crash a device, if a user is tricked into loading a malicious project file onto an affected device.&lt;/p&gt;
&lt;p&gt;The vulnerability is related to the hardware of the product. Siemens has released new hardware versions with the LOGO! V8.4 BM and the SIPLUS LOGO! V8.4 BM product families for several affected devices in which this vulnerability is fixed. Siemens is working on new hardware versions for the SIPLUS devices to address this issue further. See the chapter &#8220;Additional Information&#8221; below for more details.&lt;/p&gt;
&lt;p&gt;For more information please also refer to the related product support article: &lt;a href="https://support.industry.siemens.com/cs/ww/en/view/109826554/" class="uri"&gt;https://support.industry.siemens.com/cs/ww/en/view/109826554/&lt;/a&gt;.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-773256.html</id>
    <title>SSA-773256 V1.0: Impact of Socket.IO CVE-2024-38355 on Siemens Industrial Products</title>
    <updated>2024-09-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-773256.html" rel="alternate"/>
    <summary>&lt;p&gt;A Socket.IO vulnerability affects multiple Siemens industrial products. This vulnerability consists of a specially crafted Socket.IO packet that triggers an uncaught exception on the Socket.IO server killing the Node.js process allowing a remote attacker to cause Denial-of-Service condition in the affected products.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-765405.html</id>
    <title>SSA-765405 V1.0: Multiple Vulnerabilities in SIMATIC RFID Readers</title>
    <updated>2024-09-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-765405.html" rel="alternate"/>
    <summary>&lt;p&gt;SIMATIC RFID Readers contain multiple vulnerabilities that could allow an attacker to cause Denial-of-Service, exploit hidden functionality and information exposure.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-753746.html</id>
    <title>SSA-753746 V1.4 (Last Update: 2024-09-10): Denial of Service Vulnerabilities in SIMATIC WinCC Affecting Other SIMATIC Software Products</title>
    <updated>2024-09-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-753746.html" rel="alternate"/>
    <summary>&lt;p&gt;Two null point dereference vulnerabilities affect multiple SIMATIC software products. These could allow an attacker to cause a persistent denial of service condition in the RPC Server of these products.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-721642.html</id>
    <title>SSA-721642 V1.0: Injection Vulnerability in SCALANCE W700 802.11 AX Family Before V2.4</title>
    <updated>2024-09-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-721642.html" rel="alternate"/>
    <summary>&lt;p&gt;Siemens has released new versions for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-698820.html</id>
    <title>SSA-698820 V1.2 (Last Update: 2024-09-10): Multiple Vulnerabilities in Fortigate NGFW on RUGGEDCOM APE1808 Devices</title>
    <updated>2024-09-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-698820.html" rel="alternate"/>
    <summary>&lt;p&gt;&lt;a href="https://www.fortiguard.com/psirt"&gt;Fortinet has published&lt;/a&gt; information on vulnerabilities in FORTIOS. This advisory lists the related Siemens Industrial products.&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends specific countermeasures for products where updates are not, or not yet available. Siemens recommends to consult and implement the workarounds provided in Fortinet&#8217;s upstream security notifications.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-691715.html</id>
    <title>SSA-691715 V1.6 (Last Update: 2024-09-10): Vulnerability in OPC Foundation Local Discovery Server Affecting Siemens Products</title>
    <updated>2024-09-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-691715.html" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability was identified in OPC Foundation Local Discovery Server which also affects Siemens products that could allow an attacker to escalate privileges under certain circumstances.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-690517.html</id>
    <title>SSA-690517 V1.1 (Last Update: 2024-09-10): Multiple Vulnerabilities in SCALANCE W700 802.11 AX Family</title>
    <updated>2024-09-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-690517.html" rel="alternate"/>
    <summary>&lt;p&gt;SCALANCE W700 802.11 AX Family is affected by multiple vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-673996.html</id>
    <title>SSA-673996 V1.0: Buffer Overflow Vulnerability in Third-Party Component in SICAM and SITIPE Products</title>
    <updated>2024-09-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-673996.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple SICAM products are affected by buffer overflow vulnerability in the IEC 61850 Client libraries from Triangle MicroWorks that could allow an unauthenticated remote attacker to create a denial of service condition by sending specially crafted MMS messages.&lt;/p&gt;
&lt;p&gt;Affected SICAM and SITIPE products:&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;SICAM A8000 Device firmware
&lt;ul&gt;
&lt;li&gt;ETI5 for CP-8031/CP-8050&lt;/li&gt;
&lt;/ul&gt;&lt;/li&gt;
&lt;li&gt;SICAM EGS Device firmware
&lt;ul&gt;
&lt;li&gt;ETI5&lt;/li&gt;
&lt;/ul&gt;&lt;/li&gt;
&lt;li&gt;SICAM 8 Software Solution
&lt;ul&gt;
&lt;li&gt;ETI5&lt;/li&gt;
&lt;/ul&gt;&lt;/li&gt;
&lt;li&gt;SICAM SCC&lt;/li&gt;
&lt;li&gt;SITIPE AT&lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-629254.html</id>
    <title>SSA-629254 V1.0: Remote Code Execution Vulnerability in SIMATIC SCADA and PCS 7 systems</title>
    <updated>2024-09-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-629254.html" rel="alternate"/>
    <summary>&lt;p&gt;The products listed below contain a remote code execution vulnerability that could allow an unauthenticated remote attacker to execute arbitrary code with high privileges.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-566905.html</id>
    <title>SSA-566905 V1.3 (Last Update: 2024-09-10): Multiple Denial of Service Vulnerabilities in the Webserver of Industrial Products</title>
    <updated>2024-09-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-566905.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities in the affected products could allow an unauthorized attacker with network access to the webserver of an affected products to perform a denial of service attack.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-455250.html</id>
    <title>SSA-455250 V1.3 (Last Update: 2024-09-10): Multiple Vulnerabilities in Palo Alto Networks Virtual NGFW on RUGGEDCOM APE1808 Devices Before V11.1.2-h3</title>
    <updated>2024-09-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-455250.html" rel="alternate"/>
    <summary>&lt;p&gt;Palo Alto Networks has published [1] information on vulnerabilities in PAN-OS. This advisory lists the related Siemens Industrial products affected by these vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version of Palo Alto Networks Virtual NGFW for RUGGEDCOM APE1808 and recommends to update to the latest version. Customers are advised to consult and implement the workarounds provided in Palo Alto Networks&#8217; upstream security notifications.&lt;/p&gt;
&lt;p&gt;[1] https://security.paloaltonetworks.com/&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-446545.html</id>
    <title>SSA-446545 V1.0: Impact of RegreSSHion (CVE-2024-6387)  in Siemens Industrial Products</title>
    <updated>2024-09-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-446545.html" rel="alternate"/>
    <summary>&lt;p&gt;An OpenSSH vulnerability, known as regreSSHion, affects multiple Siemens industrial products. This security regression vulnerability consists in a race condition which may allow an unauthenticated remote attacker to achieve remote code execution with high impact on the affected system.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-427715.html</id>
    <title>SSA-427715 V1.0: Stack-Based Buffer Overflow Vulnerability in Tecnomatix Plant Simulation</title>
    <updated>2024-09-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-427715.html" rel="alternate"/>
    <summary>&lt;p&gt;Siemens Tecnomatix Plant Simulation is affected by a stack-based buffer overflow vulnerability that could be triggered when the application reads files in SPP file format. If a user is tricked to open a malicious file with any of the affected products, this could lead the application to crash or potentially lead to arbitrary code execution.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-423808.html</id>
    <title>SSA-423808 V1.0: Multiple NULL Pointer Dereference Vulnerabilities in Industrial Products</title>
    <updated>2024-09-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-423808.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple NULL pointer dereference vulnerabilities in the affected products could allow an attacker with network access to the webserver, to perform a denial of service attack.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-417159.html</id>
    <title>SSA-417159 V1.0: Multiple Vulnerabilities in SINEMA Remote Connect Client Before V3.2 SP2</title>
    <updated>2024-09-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-417159.html" rel="alternate"/>
    <summary>&lt;p&gt;SINEMA Remote Connect Client before V3.2 SP2 is affected by multiple vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for SINEMA Remote Connect Client and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-359713.html</id>
    <title>SSA-359713 V1.0: Authorization Bypass Vulnerability in Industrial Edge Management</title>
    <updated>2024-09-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-359713.html" rel="alternate"/>
    <summary>&lt;p&gt;Industrial Edge Management contains an Authorization Bypass vulnerability that could allow an unauthenticated remote attacker to impersonate other devices onboarded to the system.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-349422.html</id>
    <title>SSA-349422 V2.1 (Last Update: 2024-09-10): Denial of Service Vulnerability in Industrial Real-Time (IRT) Devices</title>
    <updated>2024-09-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-349422.html" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in the affected products could allow an unauthorized attacker with network access to perform a denial-of-service attack resulting in loss of real-time synchronization.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-342438.html</id>
    <title>SSA-342438 V1.0: Privilege Escalation Vulnerability in SINUMERIK ONE, SINUMERIK 840D and SINUMERIK 828D</title>
    <updated>2024-09-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-342438.html" rel="alternate"/>
    <summary>&lt;p&gt;SINUMERIK ONE, SINUMERIK 840D sl and SINUMERIK 828D are affected by a privilege escalation vulnerability that could allow an authenticated local attacker to escalate their privileges in the underlying system.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-293562.html</id>
    <title>SSA-293562 V3.6 (Last Update: 2024-09-10): Denial of Service Vulnerabilities in PROFINET DCP Implementation of Industrial Products</title>
    <updated>2024-09-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-293562.html" rel="alternate"/>
    <summary>&lt;p&gt;Several industrial devices are affected by two vulnerabilities that could allow an attacker to cause a denial of service condition via PROFINET DCP network packets under certain circumstances. The precondition for this scenario is a direct layer 2 access to the affected products. PROFIBUS interfaces are not affected.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-280603.html</id>
    <title>SSA-280603 V1.1 (Last Update: 2024-09-10): Denial of Service Vulnerability in SINUMERIK ONE and SINUMERIK MC</title>
    <updated>2024-09-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-280603.html" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability has been identified in the integrated S7-1500 CPU of SINUMERIK ONE and SINUMERIK MC products that could allow an attacker to cause a denial of service condition. In order to exploit the vulnerability, an attacker must have access to the affected devices on port 102/tcp.&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
&lt;p&gt;Note: The affected integrated S7-1500 CPUs and related products are advised in [1].&lt;/p&gt;
&lt;p&gt;[1] &lt;a href="https://cert-portal.siemens.com/productcert/html/ssa-592380.html"&gt;https://cert-portal.siemens.com/productcert/html/ssa-592380.html&lt;/a&gt;&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-103653.html</id>
    <title>SSA-103653 V1.0: Denial-of-Service Vulnerability in Automation License Manager</title>
    <updated>2024-09-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-103653.html" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability was identified in the Automation License Manager software that could be triggered by sending specially crafted packets to port 4410/tcp of an affected system. This could cause a denial-of-service preventing legitimate users from using the system.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for Automation License Manager V6.2 and recommends to update to the latest version. Siemens recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-097786.html</id>
    <title>SSA-097786 V1.0: Insertion of Sensitive Information into Log File Vulnerability in SINUMERIK systems</title>
    <updated>2024-09-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-097786.html" rel="alternate"/>
    <summary>&lt;p&gt;SINUMERIK systems, that have been provisioned with Create MyConfig (CMC), are affected by a Insertion of Sensitive Information into Log File vulnerability. When using a CMC package on a NCU or on an IPC the password used in the CMC package or typed in manually during package execution is traced on the machine to the file &lt;code&gt;uptrace.out&lt;/code&gt;. This could allow a local authenticated user with low privileges to read that password and use it to impersonate a user with higher privileges.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-097435.html</id>
    <title>SSA-097435 V1.0: Usernames Disclosure Vulnerability in Mendix Runtime</title>
    <updated>2024-09-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-097435.html" rel="alternate"/>
    <summary>&lt;p&gt;Mendix Runtime contains an observable response discrepancy vulnerability when validating usernames during authentication. This could allow unauthenticated remote attackers to distinguish between valid and invalid usernames.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-088132.html</id>
    <title>SSA-088132 V1.1 (Last Update: 2024-09-10): Denial of Service Vulnerability in the OPC UA Server Implementations of Several Industrial Products</title>
    <updated>2024-09-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-088132.html" rel="alternate"/>
    <summary>&lt;p&gt;Unified Automation .NET based OPC UA Server SDK before 3.2.2 used in several industrial products are affected by a similar vulnerability as documented in CVE-2023-27321 for the OPC Foundation UA .NET Standard implementation. A successful attack may lead to high load situation and memory exhaustion, and may block the OPC UA server.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-039007.html</id>
    <title>SSA-039007 V1.0: Heap-based Buffer Overflow Vulnerability in User Management Component (UMC)</title>
    <updated>2024-09-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-039007.html" rel="alternate"/>
    <summary>&lt;p&gt;Siemens User Management Component (UMC) is affected by a heap-based buffer overflow vulnerability which could allow an unauthenticated remote attacker arbitrary code execution.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-999588.html</id>
    <title>SSA-999588 V1.4 (Last Update: 2024-08-13): Multiple Vulnerabilities in User Management Component (UMC) Before V2.11.2</title>
    <updated>2024-08-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-999588.html" rel="alternate"/>
    <summary>&lt;p&gt;Siemens User Management Component (UMC) before V2.11.2 is affected by multiple vulnerabilities where the most severe could lead to a restart of the UMC server.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-981975.html</id>
    <title>SSA-981975 V1.3 (Last Update: 2024-08-13): Information Disclosure Vulnerability in Intel-CPUs (CVE-2022-40982) Impacting SIMATIC IPCs</title>
    <updated>2024-08-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-981975.html" rel="alternate"/>
    <summary>&lt;p&gt;Several Intel-CPU based SIMATIC IPCs are affected by an information exposure vulnerability (CVE-2022-40982) in the CPU that could allow an authenticated local user to potentially read other users&#8217; data [1].&lt;/p&gt;
&lt;p&gt;The issue is also known as &#8220;Gather Data Sampling&#8221; (GDS) or Downfall Attacks. For details refer to the chapter &#8220;Additional Information&#8221;.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
&lt;p&gt;[1] &lt;a href="https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00828.html" class="uri"&gt;https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00828.html&lt;/a&gt;&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-921449.html</id>
    <title>SSA-921449 V1.0: Plaintext Storage of a Password Vulnerability in LOGO! V8.3 BM Devices</title>
    <updated>2024-08-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-921449.html" rel="alternate"/>
    <summary>&lt;p&gt;LOGO! V8.3 BM (incl.&#160;SIPLUS variants) devices contain a plaintext storage of a password vulnerability. This could allow an attacker with phyiscal access to an affected device to extract user-set passwords from an embedded storage IC.&lt;/p&gt;
&lt;p&gt;Siemens has released new hardware versions with the LOGO! V8.4 BM product family for several affected devices in which the vulnerability is fixed. Siemens is working on new hardware versions for the SIPLUS devices to address this issue further. See the chapter &#8220;Additional Information&#8221; below for more details.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-856475.html</id>
    <title>SSA-856475 V1.0: X_T File Parsing Vulnerabilities in Teamcenter Visualization and JT2Go</title>
    <updated>2024-08-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-856475.html" rel="alternate"/>
    <summary>&lt;p&gt;Teamcenter Visualization and JT2Go are affected by out of bounds read and null pointer dereference vulnerabilities that could be triggered when the application reads files in X_T format. If a user is tricked to open a malicious file with the affected applications, an attacker could leverage the vulnerability to perform remote code execution in the context of the current process.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-822518.html</id>
    <title>SSA-822518 V1.1 (Last Update: 2024-08-13): Multiple Vulnerabilities in Palo Alto Networks Virtual NGFW Before V11.0.1 on RUGGEDCOM APE1808 Devices</title>
    <updated>2024-08-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-822518.html" rel="alternate"/>
    <summary>&lt;p&gt;Palo Alto Networks has published [1] information on vulnerabilities in PAN-OS. This advisory lists the related Siemens Industrial products affected by these vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends specific countermeasures for products where updates are not, or not yet available. Customers are advised to consult and implement the workarounds provided in Palo Alto Networks&#8217; upstream security notifications.&lt;/p&gt;
&lt;p&gt;[1] https://security.paloaltonetworks.com/?version=10.2.2&amp;amp;product=PAN-OS&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-813746.html</id>
    <title>SSA-813746 V1.1 (Last Update: 2024-08-13): BadAlloc Vulnerabilities in SCALANCE X-200, X-200IRT, and X-300 Switch Families</title>
    <updated>2024-08-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-813746.html" rel="alternate"/>
    <summary>&lt;p&gt;Siemens has released a new firmware version for SCALANCE X-200 and X-200 IRT switches that address Bad Alloc vulnerabilities in the underlying operating system and recommends to update to the latest versions. Siemens recommends countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-784301.html</id>
    <title>SSA-784301 V1.0: Multiple Vulnerabilities in SINEC NMS Before V3.0</title>
    <updated>2024-08-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-784301.html" rel="alternate"/>
    <summary>&lt;p&gt;SINEC NMS before V3.0 is affected by multiple vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for SINEC NMS and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-771940.html</id>
    <title>SSA-771940 V1.1 (Last Update: 2024-08-13): X_T File Parsing Vulnerabilities in Teamcenter Visualization and JT2Go</title>
    <updated>2024-08-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-771940.html" rel="alternate"/>
    <summary>&lt;p&gt;Teamcenter Visualization and JT2Go are affected by out of bounds read, stack exhaustion and null pointer dereference vulnerabilities that could be triggered when the application reads files in X_T format. If a user is tricked to open a malicious file with the affected applications, an attacker could leverage the vulnerability to perform remote code execution in the context of the current process.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-750499.html</id>
    <title>SSA-750499 V1.1 (Last Update: 2024-08-13): Weak Encryption Vulnerability in SIPROTEC 5 Devices</title>
    <updated>2024-08-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-750499.html" rel="alternate"/>
    <summary>&lt;p&gt;The SIPROTEC 5 devices are supporting weak encryption. This could allow an unauthorized attacker in a man-in-the-middle position to read any data passed over the connection between legitimate clients and the affected device.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-722010.html</id>
    <title>SSA-722010 V1.1 (Last Update: 2024-08-13): Datalogics File Parsing Vulnerability in Teamcenter Visualization and JT2Go</title>
    <updated>2024-08-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-722010.html" rel="alternate"/>
    <summary>&lt;p&gt;Siemens Teamcenter Visualization and JT2Go are affected by an out of bounds read vulnerability in the APDFL library from Datalogics. If a user is tricked to open a malicious PDF file with the affected products, this could lead the application to crash or potentially lead to arbitrary code execution.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-720392.html</id>
    <title>SSA-720392 V1.0: Multiple Vulnerabilities in Third-Party Components in Location Intelligence Before V4.4</title>
    <updated>2024-08-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-720392.html" rel="alternate"/>
    <summary>&lt;p&gt;Location Intelligence before V4.4 is affected by multiple vulnerabilities that could allow an attacker in an on-path position to read and modify data passed over the connection between legitimate clients and the affected product or brute force user passwords.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for Location Intelligence family and recommends to update to the latest version. The update is available from Siemens Online Software Delivery (OSD).&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-716317.html</id>
    <title>SSA-716317 V1.0: Multiple Vulnerability in SINEC Traffic Analyzer Before V2.0</title>
    <updated>2024-08-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-716317.html" rel="alternate"/>
    <summary>&lt;p&gt;SINEC Traffic Analyzer before V2.0 is affected by multiple vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for SINEC Traffic Analyzer and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-698820.html</id>
    <title>SSA-698820 V1.1 (Last Update: 2024-08-13): Multiple Vulnerabilities in Fortigate NGFW on RUGGEDCOM APE1808 Devices</title>
    <updated>2024-08-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-698820.html" rel="alternate"/>
    <summary>&lt;p&gt;&lt;a href="https://www.fortiguard.com/psirt"&gt;Fortinet has published&lt;/a&gt; information on vulnerabilities in FORTIOS. This advisory lists the related Siemens Industrial products.&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends specific countermeasures for products where updates are not, or not yet available. Siemens recommends to consult and implement the workarounds provided in Fortinet&#8217;s upstream security notifications.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-686975.html</id>
    <title>SSA-686975 V1.5 (Last Update: 2024-08-13): IPU 2022.3 Vulnerabilities in Siemens Industrial Products using Intel CPUs</title>
    <updated>2024-08-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-686975.html" rel="alternate"/>
    <summary>&lt;p&gt;Intel has published information on vulnerabilities in Intel products in November 2022. This advisory lists the related Siemens Industrial products affected by these vulnerabilities that can be patched by applying the corresponding BIOS update (&#8220;2022.3 IPU &#8211; BIOS Advisory&#8221; &lt;a href="https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00688.html"&gt;Intel-SA-00688&lt;/a&gt;).&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-659443.html</id>
    <title>SSA-659443 V1.0: Local Code Execution Vulnerabilities in COMOS Before V10.5</title>
    <updated>2024-08-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-659443.html" rel="alternate"/>
    <summary>&lt;p&gt;COMOS before V10.5 is affected by two local code execution vulnerabilities in the integrated Open Design Alliance Drawings SDK.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for COMOS and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-640968.html</id>
    <title>SSA-640968 V1.2 (Last Update: 2024-08-13): Untrusted Search Path Vulnerability in TIA Project-Server formerly known as TIA Multiuser Server</title>
    <updated>2024-08-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-640968.html" rel="alternate"/>
    <summary>&lt;p&gt;TIA Project-Server formerly known as TIA Multiuser Server contains an untrusted search path vulnerability that could allow an attacker to escalate privileges, when tricking a legitimate user to start the service from an attacker controlled path.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-625850.html</id>
    <title>SSA-625850 V1.1 (Last Update: 2024-08-13): Multiple WIBU Systems CodeMeter Vulnerabilities Affecting the Desigo CC Product Family and SENTRON powermanager</title>
    <updated>2024-08-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-625850.html" rel="alternate"/>
    <summary>&lt;p&gt;Versions V5.0 through V7 of the Desigo CC product family (Desigo CC, Desigo CC Compact, Desigo CC Connect, Cerberus DMS), as well as the Desigo CC-based SENTRON powermanager, are affected by multiple vulnerabilities in the underlying third-party component WIBU Systems CodeMeter Runtime. Successful exploitation of these vulnerabilities could allow remote attackers to execute arbitrary code on the Desigo CC server, or create a denial of service condition. While all Desigo CC version lines V5.0, V5.1 and V6 are affected by all listed vulnerabilities, V7 is only affected by CVE-2023-3935.&lt;/p&gt;
&lt;p&gt;Siemens has released a patch to update the CodeMeter Runtime component and recommends to apply the patch on affected systems.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-417547.html</id>
    <title>SSA-417547 V1.0: Multiple Vulnerabilities in INTRALOG WMS Before V4</title>
    <updated>2024-08-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-417547.html" rel="alternate"/>
    <summary>&lt;p&gt;INTRALOG WMS before V4 is affected by vulnerabilities in the SQL Client-Server communication and in the .NET framework. Successful exploitation could allow an unauthenticated attacker located in the INTRALOG WMS network to decrypt and modify client-server communication, or potentially execute arbitrary code on the application servers.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for INTRALOG WMS and recommends to update to the latest version. Please contact your personal INTRALOG WMS contact person referencing the Siemens Security Advisory ID (SSA-417547) and the installed INTRALOG WMS Versions to initiate the dialog with Siemens to get the vulnerabilities fixed.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-407785.html</id>
    <title>SSA-407785 V1.3 (Last Update: 2024-08-13): Multiple X_T File Parsing Vulnerabilities in Parasolid and Teamcenter Visualization</title>
    <updated>2024-08-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-407785.html" rel="alternate"/>
    <summary>&lt;p&gt;Parasolid and Teamcenter Visualization are affected by memory corruption vulnerabilities that could be triggered when the application reads files in X_T format. If a user is tricked to open a malicious file with the affected applications, an attacker could leverage the vulnerability to perform remote code execution or denial of service in the context of the current process.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-398330.html</id>
    <title>SSA-398330 V1.8 (Last Update: 2024-08-13): Vulnerabilities in the additional GNU/Linux subsystem of the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP V3.1</title>
    <updated>2024-08-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-398330.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities have been identified in the additional GNU/Linux subsystem of the firmware version V3.1 for the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP (incl.&#160;SIPLUS variant).&lt;/p&gt;
&lt;p&gt;These GNU/Linux vulnerabilities have been externally identified. Siemens is preparing fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
&lt;p&gt;Note: This SSA advises vulnerabilities for firmware version V3.1 only; for versions &amp;lt; V3.1 refer to Siemens Security Bulletin SSB-439005 (&lt;a href="https://cert-portal.siemens.com/productcert/html/ssb-439005.html" class="uri"&gt;https://cert-portal.siemens.com/productcert/html/ssb-439005.html&lt;/a&gt;).&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-364175.html</id>
    <title>SSA-364175 V1.1 (Last Update: 2024-08-13): Multiple Vulnerabilities in Palo Alto Networks Virtual NGFW on RUGGEDCOM APE1808 Devices</title>
    <updated>2024-08-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-364175.html" rel="alternate"/>
    <summary>&lt;p&gt;Palo Alto Networks has published [1] information on vulnerabilities in PAN-OS. This advisory lists the related Siemens Industrial products affected by these vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends specific countermeasures for products where updates are not, or not yet available. Customers are advised to consult and implement the workarounds provided in Palo Alto Networks&#8217; upstream security notifications.&lt;/p&gt;
&lt;p&gt;[1] &lt;a href="https://security.paloaltonetworks.com/" class="uri"&gt;https://security.paloaltonetworks.com/&lt;/a&gt;&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-357412.html</id>
    <title>SSA-357412 V1.0: PRT File Parsing Vulnerability in NX Before V2406.3000</title>
    <updated>2024-08-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-357412.html" rel="alternate"/>
    <summary>&lt;p&gt;NX (incl.&#160;NX student versions) before V2406.3000 contains an out-of-bounds read vulnerability that could be triggered when the application reads PRT files. If a user is tricked to open a malicious file using the affected application, this could lead to a crash, and potentially also to arbitrary code execution on the target host system.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for NX and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-180704.html</id>
    <title>SSA-180704 V1.1 (Last Update: 2024-08-13): Multiple Vulnerabilities in SCALANCE M-800 Family Before V8.0</title>
    <updated>2024-08-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-180704.html" rel="alternate"/>
    <summary>&lt;p&gt;SCALANCE M-800 family before V8.0 is affected by multiple vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-116924.html</id>
    <title>SSA-116924 V1.2 (Last Update: 2024-08-13): Path Traversal Vulnerability in TIA Portal</title>
    <updated>2024-08-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-116924.html" rel="alternate"/>
    <summary>&lt;p&gt;TIA Portal contains a path traversal vulnerability that could allow the creation or overwrite of arbitrary files in the engineering system. If the user is tricked to open a malicious PC system configuration file, an attacker could exploit this vulnerability to achieve arbitrary code execution.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-087301.html</id>
    <title>SSA-087301 V1.0: Multiple Vulnerabilities in SCALANCE M-800 Family Before V8.1</title>
    <updated>2024-08-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-087301.html" rel="alternate"/>
    <summary>&lt;p&gt;SCALANCE M-800 family before V8.1 is affected by multiple vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-068047.html</id>
    <title>SSA-068047 V1.1 (Last Update: 2024-08-13): Multiple Vulnerabilities in SCALANCE M-800 Family Before V7.2.2</title>
    <updated>2024-08-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-068047.html" rel="alternate"/>
    <summary>&lt;p&gt;SCALANCE M-800 family before V7.2.2 is affected by multiple vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-857368.html</id>
    <title>SSA-857368 V1.0: Multiple Vulnerabilities in Omnivise T3000</title>
    <updated>2024-08-02T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-857368.html" rel="alternate"/>
    <summary>&lt;p&gt;Omnivise T3000 contains multiple vulnerabilities that could allow an attacker to escalate privileges.&lt;/p&gt;
&lt;p&gt;Siemens Energy has released patches for several affected products and recommends to apply the patches. Siemens Energy is preparing further fixes for versions still under maintenance and recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-723487.html</id>
    <title>SSA-723487 V1.1 (Last Update: 2024-07-22): RADIUS Protocol Susceptible to Forgery Attacks (CVE-2024-3596) - Impact to SCALANCE, RUGGEDCOM and Related Products</title>
    <updated>2024-07-22T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-723487.html" rel="alternate"/>
    <summary>&lt;p&gt;This advisory documents the impact of CVE-2024-3596 (also dubbed &#8220;Blastradius&#8221;), a vulnerability in the RADIUS protocol, to SCALANCE, RUGGEDCOM and related products.&lt;/p&gt;
&lt;p&gt;The vulnerability could allow on-path attackers, located between a Network Access Server (the RADIUS client, e.g., SCALANCE or RUGGEDCOM devices) and a RADIUS server (e.g., SINEC INS), to forge Access-Request packets in a way that enables them to modify the corresponding server response packet at will, e.g., turning an &#8220;Access-Reject&#8221; message into an &#8220;Access-Accept&#8221;. This would cause the Network Access Server to grant the attackers access to the network with the attackers desired authorization (and without the need of knowing or guessing legitimate access credentials).&lt;/p&gt;
&lt;p&gt;Further details, the impact to SCALANCE, RUGGEDCOM and related products, specific countermeasures and external references can be found in the chapter &#8220;Additional Information&#8221;.&lt;/p&gt;
&lt;p&gt;Siemens is preparing fix versions and recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-071402.html</id>
    <title>SSA-071402 V1.0: Multiple Vulnerabilities in SICAM Products</title>
    <updated>2024-07-22T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-071402.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple SICAM products are affected by unauthorized password reset and firmware downgrade vulnerabilities that could lead to privilege escalation and potential leak of information, namely:&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;SICAM A8000 Device firmware
&lt;ul&gt;
&lt;li&gt;CPCI85 for CP-8031/CP-8050&lt;/li&gt;
&lt;/ul&gt;&lt;/li&gt;
&lt;li&gt;SICAM EGS Device firmware
&lt;ul&gt;
&lt;li&gt;CPCI85&lt;/li&gt;
&lt;/ul&gt;&lt;/li&gt;
&lt;li&gt;SICAM 8 Software Solution
&lt;ul&gt;
&lt;li&gt;SICORE&lt;/li&gt;
&lt;/ul&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;Siemens has released new firmware versions for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-998949.html</id>
    <title>SSA-998949 V1.0: Hard-coded Default Encryption Key in Mendix Encryption Module V10.0.0 and V10.0.1</title>
    <updated>2024-07-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-998949.html" rel="alternate"/>
    <summary>&lt;p&gt;The Mendix Encryption module versions V10.0.0 and V10.0.1 define a specific hard-coded default value for the EncryptionKey constant, which is used in projects where no individual EncryptionKey was specified. This could allow to an attacker to decrypt any encrypted project data, as the default encryption key can be considered compromised.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for Mendix Encryption and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-981975.html</id>
    <title>SSA-981975 V1.2 (Last Update: 2024-07-09): Information Disclosure Vulnerability in Intel-CPUs (CVE-2022-40982) Impacting SIMATIC IPCs</title>
    <updated>2024-07-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-981975.html" rel="alternate"/>
    <summary>&lt;p&gt;Several Intel-CPU based SIMATIC IPCs are affected by an information exposure vulnerability (CVE-2022-40982) in the CPU that could allow an authenticated local user to potentially read other users&#8217; data [1].&lt;/p&gt;
&lt;p&gt;The issue is also known as &#8220;Gather Data Sampling&#8221; (GDS) or Downfall Attacks. For details refer to the chapter &#8220;Additional Information&#8221;.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
&lt;p&gt;[1] &lt;a href="https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00828.html" class="uri"&gt;https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00828.html&lt;/a&gt;&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-962515.html</id>
    <title>SSA-962515 V1.1 (Last Update: 2024-07-09): Out of Bounds Read Vulnerability in Industrial Products</title>
    <updated>2024-07-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-962515.html" rel="alternate"/>
    <summary>&lt;p&gt;Several industrial products contain an out of bounds read vulnerability that could allow an attacker to cause a Blue Screen of Death (BSOD) crash of the underlying Windows kernel, leading to denial of service condition.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-928781.html</id>
    <title>SSA-928781 V1.0: Multiple Vulnerabilities in SINEMA Remote Connect Server before V3.2 HF1</title>
    <updated>2024-07-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-928781.html" rel="alternate"/>
    <summary>&lt;p&gt;SINEMA Remote Connect Server before V3.2 HF1 is affected by multiple vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for SINEMA Remote Connect Server and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-883918.html</id>
    <title>SSA-883918 V1.0: Information Disclosure Vulnerability in SIMATIC WinCC</title>
    <updated>2024-07-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-883918.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple versions of SIMATIC WinCC and SIMATIC PCS 7 do not properly handle certain requests to their web application (WinCC WebNavigator, PCS 7 Web Serser, and PCS 7 Web Diagnostics Server), which may lead to the leak of privileged information. This could allow an unauthenticated remote attacker to retrieve information such as users and passwords.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-868282.html</id>
    <title>SSA-868282 V1.0: Multiple Vulnerabilities in SINEMA Remote Connect Client before V3.2 HF1</title>
    <updated>2024-07-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-868282.html" rel="alternate"/>
    <summary>&lt;p&gt;SINEMA Remote Connect Server before V3.2 HF1 is affected by multiple vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for SINEMA Remote Connect Client and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-832273.html</id>
    <title>SSA-832273 V1.4 (Last Update: 2024-07-09): Multiple Vulnerabilities in Fortigate NGFW  before V7.4.3 on RUGGEDCOM APE1808 devices</title>
    <updated>2024-07-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-832273.html" rel="alternate"/>
    <summary>&lt;p&gt;&lt;a href="https://www.fortiguard.com/psirt"&gt;Fortinet has published&lt;/a&gt; information on vulnerabilities in FORTIOS. This advisory lists the related Siemens Industrial products.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version of Fortigate NGFW for RUGGEDCOM APE1808 and recommends to update to the latest version. Siemens recommends to consult and implement the workarounds provided in Fortinet&#8217;s upstream security notifications.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-825651.html</id>
    <title>SSA-825651 V1.0: Deserialization Vulnerability in SIMATIC STEP 7 (TIA Portal) before V18 Update 2</title>
    <updated>2024-07-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-825651.html" rel="alternate"/>
    <summary>&lt;p&gt;Affected applications do not properly restrict the .NET BinaryFormatter when deserializing user-controllable input. This could allow an attacker to cause a type confusion and execute arbitrary code within the affected application.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for SIMATIC STEP 7 (TIA Portal)&#160;V18 and recommends to update to the latest version. Siemens recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-824889.html</id>
    <title>SSA-824889 V1.0: XML File Parsing Vulnerabilities in JT Open and PLM XML SDK</title>
    <updated>2024-07-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-824889.html" rel="alternate"/>
    <summary>&lt;p&gt;JT Open Toolkit and PLM XML SDK are affected by stack buffer overflow and null pointer dereference vulnerabilities that could be triggered while parsing XML file. If a user is tricked to open a malicious XML file with any of the affected products, this could cause the application to crash or potentially lead to arbitrary code execution.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-780073.html</id>
    <title>SSA-780073 V2.4 (Last Update: 2024-07-09): Denial of Service Vulnerability in PROFINET Devices via DCE-RPC Packets</title>
    <updated>2024-07-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-780073.html" rel="alternate"/>
    <summary>&lt;p&gt;Products that include the Siemens PROFINET-IO (PNIO) stack in versions prior V06.00 are potentially affected by a denial of service vulnerability when multiple legitimate diagnostic package requests are sent to the DCE-RPC interface.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
&lt;p&gt;Additionally, Siemens recommends other vendors of PROFINET devices to check if their products have incorporated a vulnerable version of the Siemens PNIO stack as part of the Siemens Development/Evaluation Kits.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-779936.html</id>
    <title>SSA-779936 V1.0: Catalog-Profile Deserialization Vulnerability in Siemens Engineering Platforms before V19</title>
    <updated>2024-07-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-779936.html" rel="alternate"/>
    <summary>&lt;p&gt;Affected applications do not properly restrict the .NET BinaryFormatter when deserializing user-controllable input. This could allow an attacker to cause a type confusion and execute arbitrary code within the affected application.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-753746.html</id>
    <title>SSA-753746 V1.3 (Last Update: 2024-07-09): Denial of Service Vulnerabilities in SIMATIC WinCC Affecting Other SIMATIC Software Products</title>
    <updated>2024-07-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-753746.html" rel="alternate"/>
    <summary>&lt;p&gt;Two null point dereference vulnerabilities affect multiple SIMATIC software products. These could allow an attacker to cause a persistent denial of service condition in the RPC Server of these products.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-750499.html</id>
    <title>SSA-750499 V1.0: Weak Encryption Vulnerability in SIPROTEC 5 Devices</title>
    <updated>2024-07-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-750499.html" rel="alternate"/>
    <summary>&lt;p&gt;The SIPROTEC 5 devices are supporting weak encryption. This could allow an unauthorized attacker in a man-in-the-middle position to read any data passed over the connection between legitimate clients and the affected device.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-750274.html</id>
    <title>SSA-750274 V1.1 (Last Update: 2024-07-09): Impact of CVE-2024-3400 on RUGGEDCOM APE1808 devices configured with Palo Alto Networks Virtual NGFW</title>
    <updated>2024-07-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-750274.html" rel="alternate"/>
    <summary>&lt;p&gt;Palo Alto Networks has published [1] information on CVE-2024-3400 in PAN-OS. This advisory addresses Siemens Industrial products affected by this vulnerability.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version of Palo Alto Networks Virtual NGFW for RUGGEDCOM APE1808 and recommends to update to the latest version. Customers are advised to consult and implement the workarounds provided in Palo Alto Networks&#8217; upstream security notifications.&lt;/p&gt;
&lt;p&gt;[1] https://security.paloaltonetworks.com/CVE-2024-3400&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-730482.html</id>
    <title>SSA-730482 V1.1 (Last Update: 2024-07-09): Denial of Service Vulnerability in SIMATIC WinCC</title>
    <updated>2024-07-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-730482.html" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in the login dialog box of SIMATIC WinCC could allow a local attacker to cause a denial of service condition in the runtime of the SCADA system.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-723487.html</id>
    <title>SSA-723487 V1.0: RADIUS Protocol Susceptible to Forgery Attacks (CVE-2024-3596) - Impact to SCALANCE, RUGGEDCOM and Related Products</title>
    <updated>2024-07-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-723487.html" rel="alternate"/>
    <summary>&lt;p&gt;This advisory documents the impact of CVE-2024-3596 (also dubbed &#8220;Blastradius&#8221;), a vulnerability in the RADIUS protocol, to SCALANCE, RUGGEDCOM and related products.&lt;/p&gt;
&lt;p&gt;The vulnerability could allow on-path attackers, located between a Network Access Server (the RADIUS client, e.g., SCALANCE or RUGGEDCOM devices) and a RADIUS server (e.g., SINEC INS), to forge Access-Request packets in a way that enables them to modify the corresponding server response packet at will, e.g., turning an &#8220;Access-Reject&#8221; message into an &#8220;Access-Accept&#8221;. This would cause the Network Access Server to grant the attackers access to the network with the attackers desired authorization (and without the need of knowing or guessing legitimate access credentials).&lt;/p&gt;
&lt;p&gt;Further details, the impact to SCALANCE, RUGGEDCOM and related products, specific countermeasures and external references can be found in the chapter &#8220;Additional Information&#8221;.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for several products and recommends to update to the latest version. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-722010.html</id>
    <title>SSA-722010 V1.0: Datalogics File Parsing Vulnerability in Teamcenter Visualization and JT2Go</title>
    <updated>2024-07-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-722010.html" rel="alternate"/>
    <summary>&lt;p&gt;Siemens Teamcenter Visualization and JT2Go are affected by an out of bounds read vulnerability in the APDFL library from Datalogics. If a user is tricked to open a malicious PDF file with the affected products, this could lead the application to crash or potentially lead to arbitrary code execution.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-712929.html</id>
    <title>SSA-712929 V2.8 (Last Update: 2024-07-09): Denial of Service Vulnerability in OpenSSL (CVE-2022-0778) Affecting Industrial Products</title>
    <updated>2024-07-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-712929.html" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in the openSSL component (CVE-2022-0778, [0]) could allow an attacker to create a denial of service condition by providing specially crafted elliptic curve certificates to products that use a vulnerable version of openSSL.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
&lt;p&gt;[0] &lt;a href="https://www.openssl.org/news/secadv/20220315.txt" class="uri"&gt;https://www.openssl.org/news/secadv/20220315.txt&lt;/a&gt;&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-711309.html</id>
    <title>SSA-711309 V2.0 (Last Update: 2024-07-09): Denial of Service Vulnerability in the OPC UA Implementations of SIMATIC Products</title>
    <updated>2024-07-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-711309.html" rel="alternate"/>
    <summary>&lt;p&gt;The OPC UA implementations (ANSI C and C++) as used in several SIMATIC products contain a denial of service vulnerability that could allow an unauthenticated remote attacker to create a denial of service condition by sending a specially crafted certificate.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-698820.html</id>
    <title>SSA-698820 V1.0: Multiple Vulnerabilities in Fortigate NGFW on RUGGEDCOM APE1808 devices</title>
    <updated>2024-07-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-698820.html" rel="alternate"/>
    <summary>&lt;p&gt;&lt;a href="https://www.fortiguard.com/psirt"&gt;Fortinet has published&lt;/a&gt; information on vulnerabilities in FORTIOS. This advisory lists the related Siemens Industrial products.&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends specific countermeasures for products where updates are not, or not yet available. Siemens recommends to consult and implement the workarounds provided in Fortinet&#8217;s upstream security notifications.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-686975.html</id>
    <title>SSA-686975 V1.4 (Last Update: 2024-07-09): IPU 2022.3 Vulnerabilities in Siemens Industrial Products using Intel CPUs</title>
    <updated>2024-07-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-686975.html" rel="alternate"/>
    <summary>&lt;p&gt;Intel has published information on vulnerabilities in Intel products in November 2022. This advisory lists the related Siemens Industrial products affected by these vulnerabilities that can be patched by applying the corresponding BIOS update (&#8220;2022.3 IPU &#8211; BIOS Advisory&#8221; &lt;a href="https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00688.html"&gt;Intel-SA-00688&lt;/a&gt;).&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-593272.html</id>
    <title>SSA-593272 V2.2 (Last Update: 2024-07-09): SegmentSmack in Interniche IP-Stack based Industrial Devices</title>
    <updated>2024-07-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-593272.html" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability exists in affected products that could allow remote attackers to affect the availability of the devices under certain conditions.&lt;/p&gt;
&lt;p&gt;The underlying TCP stack can be forced to make very computation expensive calls for every incoming packet which can lead to a Denial-of-Service.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-484086.html</id>
    <title>SSA-484086 V1.1 (Last Update: 2024-07-09): Multiple Vulnerabilities in SINEMA Remote Connect Server before V3.1</title>
    <updated>2024-07-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-484086.html" rel="alternate"/>
    <summary>&lt;p&gt;SINEMA Remote Connect Server is affected by multiple vulnerabilities, including&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;A cross-site scripting vulnerability in an error message pop up window (CVE-2022-29034)&lt;/li&gt;
&lt;li&gt;Several authentication bypass, privilege escalation and integrity check vulnerabilities (CVE-2022-32251 through -32261)&lt;/li&gt;
&lt;li&gt;A command injection vulnerability in the file upload service (CVE-2022-32262)&lt;/li&gt;
&lt;li&gt;A chosen-plaintext attack against HTTP over TLS (&#8220;BREACH&#8221;, CVE-2022-27221)&lt;/li&gt;
&lt;li&gt;Information disclosure vulnerabilities in the curl component (CVE-2021-22924 through -22925)&lt;/li&gt;
&lt;li&gt;Several vulnerabilities in the libexpat library, that could be exploited when the server is parsing untrusted XML files (CVE-2021-45960, CVE-2021-46143, CVE-2022-22822 through -22827, CVE-2022-23852, CVE-2022-23990, CVE-2022-25235 through -25236, CVE-2022-25313 through -25315.&lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;Siemens has released an update for the SINEMA Remote Connect Server and recommends to update to the latest version. Note that the update also contains additional fixes for vulnerabilities documented in Siemens Security Advisories SSA-244969, SSA-539476, SSA-685781 and SSA-712929.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-473245.html</id>
    <title>SSA-473245 V2.7 (Last Update: 2024-07-09): Denial of Service Vulnerability in Profinet Devices</title>
    <updated>2024-07-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-473245.html" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in affected devices could allow an attacker to perform a denial of service attack if a large amount of specially crafted UDP packets are sent to the device.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-455250.html</id>
    <title>SSA-455250 V1.2 (Last Update: 2024-07-09): Multiple Vulnerabilities in Palo Alto Networks Virtual NGFW on RUGGEDCOM APE1808 devices before V11.1.2-h3</title>
    <updated>2024-07-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-455250.html" rel="alternate"/>
    <summary>&lt;p&gt;Palo Alto Networks has published [1] information on vulnerabilities in PAN-OS. This advisory lists the related Siemens Industrial products affected by these vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version of Palo Alto Networks Virtual NGFW for RUGGEDCOM APE1808 and recommends to update to the latest version. Customers are advised to consult and implement the workarounds provided in Palo Alto Networks&#8217; upstream security notifications.&lt;/p&gt;
&lt;p&gt;[1] https://security.paloaltonetworks.com/&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-446448.html</id>
    <title>SSA-446448 V2.2 (Last Update: 2024-07-09): Denial of Service Vulnerability in PROFINET Stack Integrated on Interniche Stack</title>
    <updated>2024-07-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-446448.html" rel="alternate"/>
    <summary>&lt;p&gt;The PROFINET (PNIO) stack, when integrated with the Interniche IP stack, contains a vulnerability that could allow an attacker to cause a denial of service condition on affected industrial products.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-398330.html</id>
    <title>SSA-398330 V1.7 (Last Update: 2024-07-09): Vulnerabilities in the additional GNU/Linux subsystem of the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP V3.1</title>
    <updated>2024-07-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-398330.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities have been identified in the additional GNU/Linux subsystem of the firmware version V3.1 for the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP (incl.&#160;SIPLUS variant).&lt;/p&gt;
&lt;p&gt;These GNU/Linux vulnerabilities have been externally identified. Siemens is preparing fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
&lt;p&gt;Note: This SSA advises vulnerabilities for firmware version V3.1 only; for versions &amp;lt; V3.1 refer to Siemens Security Bulletin SSB-439005 (&lt;a href="https://cert-portal.siemens.com/productcert/html/ssb-439005.html" class="uri"&gt;https://cert-portal.siemens.com/productcert/html/ssb-439005.html&lt;/a&gt;).&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-381581.html</id>
    <title>SSA-381581 V1.0: Multiple Vulnerabilities in SINEMA Remote Connect Server before V3.2 SP1</title>
    <updated>2024-07-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-381581.html" rel="alternate"/>
    <summary>&lt;p&gt;SINEMA Remote Connect Server before V3.2 SP1 is affected by multiple vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for SINEMA Remote Connect Server and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-364175.html</id>
    <title>SSA-364175 V1.0: Multiple Vulnerabilities in Palo Alto Networks Virtual NGFW on RUGGEDCOM APE1808 devices</title>
    <updated>2024-07-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-364175.html" rel="alternate"/>
    <summary>&lt;p&gt;Palo Alto Networks has published [1] information on vulnerabilities in PAN-OS. This advisory lists the related Siemens Industrial products affected by these vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends specific countermeasures for products where updates are not, or not yet available. Customers are advised to consult and implement the workarounds provided in Palo Alto Networks&#8217; upstream security notifications.&lt;/p&gt;
&lt;p&gt;[1] https://security.paloaltonetworks.com/&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-346262.html</id>
    <title>SSA-346262 V3.3 (Last Update: 2024-07-09): Denial of Service Vulnerability in SNMP Interface of Industrial Products</title>
    <updated>2024-07-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-346262.html" rel="alternate"/>
    <summary>&lt;p&gt;Several industrial products are affected by a vulnerability that could allow remote attackers to conduct a denial of service attack by sending specially crafted packets to port 161/udp (SNMP).&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-337522.html</id>
    <title>SSA-337522 V1.1 (Last Update: 2024-07-09): Multiple Vulnerabilities in TIM 1531 IRC before V2.4.8</title>
    <updated>2024-07-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-337522.html" rel="alternate"/>
    <summary>&lt;p&gt;Siemens has released new versions for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-313039.html</id>
    <title>SSA-313039 V1.0: Deserialization Vulnerability in STEP 7 Safety before V19</title>
    <updated>2024-07-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-313039.html" rel="alternate"/>
    <summary>&lt;p&gt;Affected applications do not properly restrict the .NET BinaryFormatter when deserializing user-controllable input. This could allow an attacker to cause a type confusion and execute arbitrary code within the affected application.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for SIMATIC STEP 7 Safety V18 and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-293562.html</id>
    <title>SSA-293562 V3.5 (Last Update: 2024-07-09): Denial of Service Vulnerabilities in PROFINET DCP Implementation of Industrial Products</title>
    <updated>2024-07-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-293562.html" rel="alternate"/>
    <summary>&lt;p&gt;Several industrial devices are affected by two vulnerabilities that could allow an attacker to cause a denial of service condition via PROFINET DCP network packets under certain circumstances. The precondition for this scenario is a direct layer 2 access to the affected products. PROFIBUS interfaces are not affected.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-265688.html</id>
    <title>SSA-265688 V1.2 (Last Update: 2024-07-09): Vulnerabilities in the additional GNU/Linux subsystem of the SIMATIC S7-1500 TM MFP V1.1</title>
    <updated>2024-07-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-265688.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities have been identified in the additional GNU/Linux subsystem of the SIMATIC S7-1500 TM MFP V1.1.&lt;/p&gt;
&lt;p&gt;Siemens is preparing fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-170375.html</id>
    <title>SSA-170375 V1.0: Multiple Vulnerabilities in RUGGEDCOM ROS before V5.9</title>
    <updated>2024-07-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-170375.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities affect the RUGGEDCOM Operating System (ROS). The common denominator to all vulnerabilities is the leak of confidential information.&lt;/p&gt;
&lt;p&gt;Siemens is preparing fix versions and recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-160243.html</id>
    <title>SSA-160243 V1.1 (Last Update: 2024-07-09): Multiple Vulnerabilities in SINEC NMS before V2.0</title>
    <updated>2024-07-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-160243.html" rel="alternate"/>
    <summary>&lt;p&gt;SINEC NMS before V2.0 is affected by a code injection and a stored cross-site scripting vulnerability.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for SINEC NMS and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-088132.html</id>
    <title>SSA-088132 V1.0: Denial of Service Vulnerability in the OPC UA Server Implementations of Several Industrial Products</title>
    <updated>2024-07-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-088132.html" rel="alternate"/>
    <summary>&lt;p&gt;Unified Automation .NET based OPC UA Server SDK before 3.2.2 used in several industrial products are affected by a similar vulnerability as documented in CVE-2023-27321 for the OPC Foundation UA .NET Standard implementation. A successful attack may lead to high load situation and memory exhaustion, and may block the OPC UA server.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-064222.html</id>
    <title>SSA-064222 V1.0: Multiple File Parsing Vulnerabilities in Simcenter Femap before V2406</title>
    <updated>2024-07-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-064222.html" rel="alternate"/>
    <summary>&lt;p&gt;Simcenter Femap contains multiple file parsing vulnerabilities that could be triggered when the application reads files in IGS, BDF or BMP file formats. If a user is tricked to open a malicious file with any of the affected products, this could lead the application to crash or potentially lead to arbitrary code execution.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for Simcenter Femap and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-900277.html</id>
    <title>SSA-900277 V1.0: MODEL File Parsing Vulnerability in Tecnomatix Plant Simulation before V2302.0012 and V2024.0001</title>
    <updated>2024-06-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-900277.html" rel="alternate"/>
    <summary>&lt;p&gt;Tecnomatix Plant Simulation contains a type confusion vulnerability that could be triggered when the application reads MODEL files. If a user is tricked to open a malicious file using the affected application, this could lead to a crash, and potentially also to arbitrary code execution on the target host system.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-879734.html</id>
    <title>SSA-879734 V1.0: Multiple Vulnerabilities in SCALANCE XM-400/XR-500 before V6.6.1</title>
    <updated>2024-06-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-879734.html" rel="alternate"/>
    <summary>&lt;p&gt;Siemens has released new versions for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-871704.html</id>
    <title>SSA-871704 V1.1 (Last Update: 2024-06-11): Multiple Vulnerabilities in SICAM Products</title>
    <updated>2024-06-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-871704.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple SICAM products are affected by vulnerabilities that could lead to privilege escalation, remote code execution or information loss namely:&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;SICAM A8000 device firmwares
&lt;ul&gt;
&lt;li&gt;CPC80 for CP-8000/CP-8021/CP-8022&lt;/li&gt;
&lt;li&gt;CPCI85 and OPUPI0 for CP-8031/CP-8050&lt;/li&gt;
&lt;/ul&gt;&lt;/li&gt;
&lt;li&gt;SICAM EGS firmware
&lt;ul&gt;
&lt;li&gt;CPCI85 and OPUPI0&lt;/li&gt;
&lt;/ul&gt;&lt;/li&gt;
&lt;li&gt;SICAM 8 Software Solution
&lt;ul&gt;
&lt;li&gt;SICORE&lt;/li&gt;
&lt;/ul&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;Siemens has released new versions for the affected firmwares and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-832273.html</id>
    <title>SSA-832273 V1.3 (Last Update: 2024-06-11): Multiple Vulnerabilities in Fortigate NGFW  before V7.4.3 on RUGGEDCOM APE1808 devices</title>
    <updated>2024-06-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-832273.html" rel="alternate"/>
    <summary>&lt;p&gt;&lt;a href="https://www.fortiguard.com/psirt"&gt;Fortinet has published&lt;/a&gt; information on vulnerabilities in FORTIOS. This advisory lists the related Siemens Industrial products.&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends specific countermeasures for products where updates are not, or not yet available. Siemens recommends to consult and implement the workarounds provided in Fortinet&#8217;s upstream security notifications.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-771940.html</id>
    <title>SSA-771940 V1.0: X_T File Parsing Vulnerabilities in Teamcenter Visualization and JT2Go</title>
    <updated>2024-06-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-771940.html" rel="alternate"/>
    <summary>&lt;p&gt;Teamcenter Visualization and JT2Go is affected by out of bounds read, stack exhaustion and null pointer dereference vulnerabilities that could be triggered when the application reads files in X_T format. If a user is tricked to open a malicious file with the affected applications, an attacker could leverage the vulnerability to perform remote code execution in the context of the current process.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-753746.html</id>
    <title>SSA-753746 V1.2 (Last Update: 2024-06-11): Denial of Service Vulnerabilities in SIMATIC WinCC Affecting Other SIMATIC Software Products</title>
    <updated>2024-06-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-753746.html" rel="alternate"/>
    <summary>&lt;p&gt;Two null point dereference vulnerabilities affect multiple SIMATIC software products. These could allow an attacker to cause a persistent denial of service condition in the RPC Server of these products.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-711309.html</id>
    <title>SSA-711309 V1.9 (Last Update: 2024-06-11): Denial of Service Vulnerability in the OPC UA Implementations of SIMATIC Products</title>
    <updated>2024-06-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-711309.html" rel="alternate"/>
    <summary>&lt;p&gt;The OPC UA implementations (ANSI C and C++) as used in several SIMATIC products contain a denial of service vulnerability that could allow an unauthenticated remote attacker to create a denial of service condition by sending a specially crafted certificate.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-690517.html</id>
    <title>SSA-690517 V1.0: Multiple Vulnerabilities in SCALANCE W700 802.11 AX Family</title>
    <updated>2024-06-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-690517.html" rel="alternate"/>
    <summary>&lt;p&gt;SCALANCE W700 802.11 AX Family is affected by multiple vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-625862.html</id>
    <title>SSA-625862 V1.0: Multiple Vulnerabilities in Third-Party Components in SIMATIC CP 1542SP-1 and CP 1543SP-1 before V2.3</title>
    <updated>2024-06-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-625862.html" rel="alternate"/>
    <summary>&lt;p&gt;SIMATIC CP 1542SP-1 and CP 1543SP-1 before V2.3 are affected by multiple vulnerabilities in third-party components and the integrated web server.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-620338.html</id>
    <title>SSA-620338 V1.0: Buffer Overflow Vulnerability in SICAM AK3 / BC / TM</title>
    <updated>2024-06-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-620338.html" rel="alternate"/>
    <summary>&lt;p&gt;SICAM AK3/TM/BC devices are affected by a buffer overflow vulnerability that could allow an attacker to execute code in the context of the current process or lead to a denial of service condition.&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;SICAM AK3 device firmware
&lt;ul&gt;
&lt;li&gt;CPCX26 for CP-2016&lt;/li&gt;
&lt;li&gt;PCCX26 for CP-2019&lt;/li&gt;
&lt;/ul&gt;&lt;/li&gt;
&lt;li&gt;SICAM AK3, SICAM BC and SICAM TM device firmware
&lt;ul&gt;
&lt;li&gt;ETA4 and ETA5 for SM-2558&lt;/li&gt;
&lt;/ul&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;Siemens has released new firmware versions for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-599968.html</id>
    <title>SSA-599968 V1.6 (Last Update: 2024-06-11): Denial-of-Service Vulnerability in Profinet Devices</title>
    <updated>2024-06-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-599968.html" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in affected devices could allow an attacker to perform a denial-of-service attack if a large amount of Profinet Discovery and Configuration Protocol (DCP) reset packets is sent to the affected devices.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-566905.html</id>
    <title>SSA-566905 V1.2 (Last Update: 2024-06-11): Multiple Denial of Service Vulnerabilities in the Webserver of Industrial Products</title>
    <updated>2024-06-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-566905.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities in the affected products could allow an unauthorized attacker with network access to the webserver of an affected products to perform a denial of service attack.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-540640.html</id>
    <title>SSA-540640 V1.0: Improper Privilege Management Vulnerability in Mendix Runtime</title>
    <updated>2024-06-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-540640.html" rel="alternate"/>
    <summary>&lt;p&gt;Apps built with Mendix Runtime &amp;gt;= V9.3 could allow users with the capability to manage a role to elevate the access rights of users with that role. Successful exploitation requires to guess the id of a target role which contains the elevated access rights.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-482757.html</id>
    <title>SSA-482757 V1.4 (Last Update: 2024-06-11): Missing Immutable Root of Trust in S7-1500 CPU devices</title>
    <updated>2024-06-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-482757.html" rel="alternate"/>
    <summary>&lt;p&gt;Affected models of the S7-1500 CPU product family do not contain an Immutable Root of Trust in Hardware. With this the integrity of the code executed on the device can not be validated during load-time. An attacker with physical access to the device could use this to replace the boot image of the device and execute arbitrary code.&lt;/p&gt;
&lt;p&gt;As exploiting this vulnerability requires physical tampering with the product, Siemens recommends to assess the risk of physical access to the device in the target deployment and to implement measures to make sure that only trusted personnel have access to the physical hardware.&lt;/p&gt;
&lt;p&gt;The vulnerability is related to the hardware of the product. Siemens has released new hardware versions for several CPU types of the S7-1500 product family in which this vulnerability is fixed and is working on new hardware versions for remaining PLC types to address this vulnerability completely. See the chapter &#8220;Additional Information&#8221; below for more details.&lt;/p&gt;
&lt;p&gt;For more information please also refer to the related product support article: &lt;a href="https://support.industry.siemens.com/cs/ww/en/view/109816536/" class="uri"&gt;https://support.industry.siemens.com/cs/ww/en/view/109816536/&lt;/a&gt;.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-481506.html</id>
    <title>SSA-481506 V1.0: Information Disclosure Vulnerability in SIMATIC S7-200 SMART Devices</title>
    <updated>2024-06-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-481506.html" rel="alternate"/>
    <summary>&lt;p&gt;SIMATIC S7-200 SMART devices contain an information disclosure vulnerability which leaves the system susceptible to a family of attacks which rely on the use of predictable IP ID sequence numbers as their base method of attack and eventually could allow an attacker to create a denial of service condition.&lt;/p&gt;
&lt;p&gt;Siemens recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-446448.html</id>
    <title>SSA-446448 V2.1 (Last Update: 2024-06-11): Denial of Service Vulnerability in PROFINET Stack Integrated on Interniche Stack</title>
    <updated>2024-06-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-446448.html" rel="alternate"/>
    <summary>&lt;p&gt;The PROFINET (PNIO) stack, when integrated with the Interniche IP stack, contains a vulnerability that could allow an attacker to cause a denial of service condition on affected industrial products.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-407785.html</id>
    <title>SSA-407785 V1.2 (Last Update: 2024-06-11): Multiple X_T File Parsing Vulnerabilities in Parasolid and Teamcenter Visualization</title>
    <updated>2024-06-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-407785.html" rel="alternate"/>
    <summary>&lt;p&gt;Parasolid and Teamcenter Visualization are affected by memory corruption vulnerabilities that could be triggered when the application reads files in X_T format. If a user is tricked to open a malicious file with the affected applications, an attacker could leverage the vulnerability to perform remote code execution or denial of service in the context of the current process.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-398330.html</id>
    <title>SSA-398330 V1.6 (Last Update: 2024-06-11): Vulnerabilities in the additional GNU/Linux subsystem of the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP V3.1</title>
    <updated>2024-06-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-398330.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities have been identified in the additional GNU/Linux subsystem of the firmware version V3.1 for the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP (incl.&#160;SIPLUS variant).&lt;/p&gt;
&lt;p&gt;These GNU/Linux vulnerabilities have been externally identified. Siemens is preparing fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
&lt;p&gt;Note: This SSA advises vulnerabilities for firmware version V3.1 only; for versions &amp;lt; V3.1 refer to Siemens Security Bulletin SSB-439005 (&lt;a href="https://cert-portal.siemens.com/productcert/html/ssb-439005.html" class="uri"&gt;https://cert-portal.siemens.com/productcert/html/ssb-439005.html&lt;/a&gt;).&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-353002.html</id>
    <title>SSA-353002 V1.1 (Last Update: 2024-06-11): Multiple Vulnerabilities in SCALANCE XB-200 / XC-200 / XP-200 / XF-200BA / XR-300WG Family</title>
    <updated>2024-06-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-353002.html" rel="alternate"/>
    <summary>&lt;p&gt;SCALANCE XB-200/XC-200/XP-200/XF-200BA/XR-300WG Family is affected by multiple vulnerabilities. CVE-2023-44318 and CVE-2023-44321 were previously published as part of SSA-699386.&lt;/p&gt;
&lt;p&gt;Siemens recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-341067.html</id>
    <title>SSA-341067 V1.0: Multiple vulnerabilities in third-party components in ST7 ScadaConnect  before V1.1</title>
    <updated>2024-06-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-341067.html" rel="alternate"/>
    <summary>&lt;p&gt;Siemens has released a new version for ST7 ScadaConnect and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-337522.html</id>
    <title>SSA-337522 V1.0: Multiple Vulnerabilities in TIM 1531 IRC before V2.4.8</title>
    <updated>2024-06-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-337522.html" rel="alternate"/>
    <summary>&lt;p&gt;Siemens has released new versions for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-319319.html</id>
    <title>SSA-319319 V1.0: Denial of Service Vulnerability in TIA Administrator</title>
    <updated>2024-06-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-319319.html" rel="alternate"/>
    <summary>&lt;p&gt;TIA Administrator creates temporary download files in a directory with insecure permissions. This could allow any authenticated attacker on Windows to disrupt the update process.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for TIA Administrator and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-238730.html</id>
    <title>SSA-238730 V1.0: Out-of-Bounds Write Vulnerabilities in SITOP UPS1600 before V2.5.4</title>
    <updated>2024-06-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-238730.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple out-of-bounds vulnerabilities in third-party components are affecting SITOP UPS1600 before V2.5.4. Attackers could exploit these vulnerabilities and cause limited impact in the affected systems.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-196737.html</id>
    <title>SSA-196737 V1.0: Multiple Vulnerabilities in SINEC Traffic Analyzer before V1.2</title>
    <updated>2024-06-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-196737.html" rel="alternate"/>
    <summary>&lt;p&gt;SINEC Traffic Analyzer before V1.2 is affected by multiple vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for SINEC Traffic Analyzer and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-093430.html</id>
    <title>SSA-093430 V1.1 (Last Update: 2024-06-11): Multiple Vulnerabilities in SIMATIC RTLS Locating Manager before V3.0</title>
    <updated>2024-06-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-093430.html" rel="alternate"/>
    <summary>&lt;p&gt;Siemens has released a new version for SIMATIC RTLS Locating Manager and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-035466.html</id>
    <title>SSA-035466 V1.1 (Last Update: 2024-06-11): Incorrect Permission Assignment in SICAM PAS/PQS</title>
    <updated>2024-06-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-035466.html" rel="alternate"/>
    <summary>&lt;p&gt;SICAM PAS/PQS is affected by insecure permission assignments in application folders that could allow an authenticated local attacker to read and modify configuration data or to escalate privileges.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for SICAM PAS/PQS and recommends to update to the latest version. Siemens has also released a security patch that can be applied to previous versions to fix the permissions of the impacted folders. See also chapter &lt;code&gt;Additional Information&lt;/code&gt;.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-024584.html</id>
    <title>SSA-024584 V1.0: Authentication Bypass Vulnerability in PowerSys before V3.11</title>
    <updated>2024-06-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-024584.html" rel="alternate"/>
    <summary>&lt;p&gt;PowerSys before V3.11 is affected by a vulnerability that could allow a local attacker to bypass authentication, thereby gaining administrative privileges for the managed remote devices.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for PowerSys and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-999588.html</id>
    <title>SSA-999588 V1.3 (Last Update: 2024-05-14): Multiple Vulnerabilities in User Management Component (UMC) before V2.11.2</title>
    <updated>2024-05-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-999588.html" rel="alternate"/>
    <summary>&lt;p&gt;Siemens User Management Component (UMC) before V2.11.2 is affected by multiple vulnerabilities where the most severe could lead to a restart of the UMC server.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-976324.html</id>
    <title>SSA-976324 V1.0: Multiple IGS File Parsing Vulnerabilities in PS/IGES Parasolid Translator Component before V27.1.215</title>
    <updated>2024-05-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-976324.html" rel="alternate"/>
    <summary>&lt;p&gt;PS/IGES Parasolid Translator Component contains multiple file parsing vulnerabilities that could be triggered when the application reads files in IGS file formats. If a user is tricked to open a malicious file with any of the affected products, this could lead the application to crash or potentially lead to arbitrary code execution.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for PS/IGES Parasolid Translator Component and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-968170.html</id>
    <title>SSA-968170 V1.3 (Last Update: 2024-05-14): Remote Code Execution Vulnerability in SIMATIC STEP 7 V5.x and Derived Products</title>
    <updated>2024-05-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-968170.html" rel="alternate"/>
    <summary>&lt;p&gt;SIMATIC STEP 7 and PCS 7 contain a database management system that could allow remote users to use embedded functions of the database (local or in a network share) that have impact on the server.&lt;/p&gt;
&lt;p&gt;An attacker with network access to the server network could leverage these embedded functions to run code in the database management system&#8217;s server (where STEP 7 or PCS 7 are running).&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-962515.html</id>
    <title>SSA-962515 V1.0: Out of Bounds Read Vulnerability in Industrial Products</title>
    <updated>2024-05-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-962515.html" rel="alternate"/>
    <summary>&lt;p&gt;Several industrial products contain an out of bounds read vulnerability that could allow an attacker to cause a Blue Screen of Death (BSOD) crash of the underlying Windows kernel, leading to denial of service condition.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-953710.html</id>
    <title>SSA-953710 V1.0: Vulnerabilities in the Network Communication Stack in Desigo Fire Safety UL and Cerberus PRO UL Fire Protection Systems</title>
    <updated>2024-05-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-953710.html" rel="alternate"/>
    <summary>&lt;p&gt;Several products used in Desigo Fire Safety UL and Cerberus PRO UL Fire Protection Systems contain buffer overflow vulnerabilities in the network communication stack. Successful exploitation of the vulnerabilities could allow an unauthenticated attacker, who gained access to the fire protection system network, to execute arbitrary code on the affected products (CVE-2024-22039) or create a denial of service condition (CVE-2024-22040, CVE-2024-22041).&lt;/p&gt;
&lt;p&gt;Product-specific impact of the individual vulnerabilities is documented in the chapter &#8220;Vulnerability Description&#8221;.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-935500.html</id>
    <title>SSA-935500 V1.1 (Last Update: 2024-05-14): Denial of Service Vulnerability in FTP Server of Nucleus RTOS based APOGEE, TALON and Desigo PXC/PXM Products</title>
    <updated>2024-05-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-935500.html" rel="alternate"/>
    <summary>&lt;p&gt;A denial of service vulnerability has been identified in the Nucleus RTOS (real-time operating system) and reported in the Siemens Security Advisory SSA-313313: &lt;a href="https://cert-portal.siemens.com/productcert/html/ssa-313313.html" class="uri"&gt;https://cert-portal.siemens.com/productcert/html/ssa-313313.html&lt;/a&gt;.&lt;/p&gt;
&lt;p&gt;The products listed below use affected versions of the Nucleus software and inherently contain the vulnerability.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-925850.html</id>
    <title>SSA-925850 V1.0: Improper Access Control in Polarion ALM</title>
    <updated>2024-05-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-925850.html" rel="alternate"/>
    <summary>&lt;p&gt;The Apache Lucene based query engine in Polarion ALM lacks proper access controls. This could allow an authenticated user to query items beyond the user&#8217;s allowed projects.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for Polarion ALM and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-923361.html</id>
    <title>SSA-923361 V1.0: MODEL File Parsing Vulnerability in Tecnomatix Plant Simulation before V2302.0011</title>
    <updated>2024-05-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-923361.html" rel="alternate"/>
    <summary>&lt;p&gt;Tecnomatix Plant Simulation contains an out of bounds write vulnerability that could be triggered when the application reads MODEL files. If a user is tricked to open a malicious file using the affected application, this could lead to a crash, and potentially also to arbitrary code execution on the target host system.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for Tecnomatix Plant Simulation V2302 and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-916916.html</id>
    <title>SSA-916916 V1.0: Security Vulnerabilities Fixed in RUGGEDCOM CROSSBOW V5.5</title>
    <updated>2024-05-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-916916.html" rel="alternate"/>
    <summary>&lt;p&gt;The RUGGEDCOM CROSSBOW server application before V5.5 contains multiple vulnerabilities that could allow an attacker to execute arbitrary database queries via SQL injection attacks, or upload of arbitrary files to the application&#8217;s file system. The majority of the reported vulnerabilities might have a high impact in the availability of the affected systems.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for RUGGEDCOM CROSSBOW and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-871717.html</id>
    <title>SSA-871717 V1.2 (Last Update: 2024-05-14): Multiple Vulnerabilities in Polarion ALM</title>
    <updated>2024-05-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-871717.html" rel="alternate"/>
    <summary>&lt;p&gt;Polarion ALM is affected by incorrect default path permissions in installation path, and improper authentication in the REST API endpoints of DOORS connector. An attacker could exploit the vulnerabilities for unauthenticated access, or privilege escalation.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for Polarion ALM and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-871704.html</id>
    <title>SSA-871704 V1.0: Multiple Vulnerabilities in SICAM Products</title>
    <updated>2024-05-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-871704.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple SICAM products are affected by vulnerabilities that could lead to privilege escalation, remote code execution or information loss namely:&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;SICAM A8000 device firmwares
&lt;ul&gt;
&lt;li&gt;CPC80 for CP-8000/CP-8021/CP-8022&lt;/li&gt;
&lt;li&gt;CPCI85 and OPUPI0 for CP-8031/CP-8050&lt;/li&gt;
&lt;/ul&gt;&lt;/li&gt;
&lt;li&gt;SICAM EGS firmware
&lt;ul&gt;
&lt;li&gt;CPCI85 and OPUPI0&lt;/li&gt;
&lt;/ul&gt;&lt;/li&gt;
&lt;li&gt;SICAM 8 Software Solution
&lt;ul&gt;
&lt;li&gt;SICORE&lt;/li&gt;
&lt;/ul&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;Siemens has released new versions for the affected firmwares and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-832273.html</id>
    <title>SSA-832273 V1.2 (Last Update: 2024-05-14): Multiple Vulnerabilities in Fortigate NGFW  before V7.4.3 on RUGGEDCOM APE1808 devices</title>
    <updated>2024-05-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-832273.html" rel="alternate"/>
    <summary>&lt;p&gt;&lt;a href="https://www.fortiguard.com/psirt"&gt;Fortinet has published&lt;/a&gt; information on vulnerabilities in FORTIOS. This advisory lists the related Siemens Industrial products.&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends specific countermeasures for products where updates are not, or not yet available. Siemens recommends to consult and implement the workarounds provided in Fortinet&#8217;s upstream security notifications.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-712929.html</id>
    <title>SSA-712929 V2.7 (Last Update: 2024-05-14): Denial of Service Vulnerability in OpenSSL (CVE-2022-0778) Affecting Industrial Products</title>
    <updated>2024-05-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-712929.html" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in the openSSL component (CVE-2022-0778, [0]) could allow an attacker to create a denial of service condition by providing specially crafted elliptic curve certificates to products that use a vulnerable version of openSSL.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
&lt;p&gt;[0] &lt;a href="https://www.openssl.org/news/secadv/20220315.txt" class="uri"&gt;https://www.openssl.org/news/secadv/20220315.txt&lt;/a&gt;&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-711309.html</id>
    <title>SSA-711309 V1.8 (Last Update: 2024-05-14): Denial of Service Vulnerability in the OPC UA Implementations of SIMATIC Products</title>
    <updated>2024-05-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-711309.html" rel="alternate"/>
    <summary>&lt;p&gt;The OPC UA implementations (ANSI C and C++) as used in several SIMATIC products contain a denial of service vulnerability that could allow an unauthenticated remote attacker to create a denial of service condition by sending a specially crafted certificate.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-691715.html</id>
    <title>SSA-691715 V1.5 (Last Update: 2024-05-14): Vulnerability in OPC Foundation Local Discovery Server Affecting Siemens Products</title>
    <updated>2024-05-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-691715.html" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability was identified in OPC Foundation Local Discovery Server which also affects Siemens products that could allow an attacker to escalate privileges under certain circumstances.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-665034.html</id>
    <title>SSA-665034 V1.1 (Last Update: 2024-05-14): Vulnerability in Nozomi Guardian/CMC before 23.3.0 on RUGGEDCOM APE1808 devices</title>
    <updated>2024-05-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-665034.html" rel="alternate"/>
    <summary>&lt;p&gt;Nozomi Networks has published information on vulnerabilities in &lt;a href="https://security.nozominetworks.com/"&gt;Nozomi Guardian/CMC before 23.3.0&lt;/a&gt;. This advisory lists the related Siemens Industrial products affected by these vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for RUGGEDCOM APE1808 and recommends to update to the latest version. Customers are advised to consult and implement the workarounds provided in Nozomi Network&#8217;s upstream security notifications.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-661579.html</id>
    <title>SSA-661579 V1.0: Multiple File Parsing Vulnerabilities in Teamcenter Visualization and JT2Go</title>
    <updated>2024-05-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-661579.html" rel="alternate"/>
    <summary>&lt;p&gt;Teamcenter Visualization and JT2Go are affected by multiple file parsing vulnerabilities that could be triggered when the application reads malicious CGM or XML files. If a user is tricked to open a malicious file with the affected products, this could lead the application to crash or potentially lead to arbitrary code execution.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-647455.html</id>
    <title>SSA-647455 V1.2 (Last Update: 2024-05-14): Multiple Vulnerabilities in Nozomi Guardian/CMC before 22.6.2 on RUGGEDCOM APE1808 devices</title>
    <updated>2024-05-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-647455.html" rel="alternate"/>
    <summary>&lt;p&gt;Nozomi Networks has published information on vulnerabilities in &lt;a href="https://security.nozominetworks.com/"&gt;Nozomi Guardian/CMC before V22.6.2&lt;/a&gt;. This advisory lists the related Siemens Industrial products affected by these vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends specific countermeasures for products where updates are not, or not yet available. Customers are advised to consult and implement the workarounds provided in Nozomi Network&#8217;s upstream security notifications.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-593272.html</id>
    <title>SSA-593272 V2.1 (Last Update: 2024-05-14): SegmentSmack in Interniche IP-Stack based Industrial Devices</title>
    <updated>2024-05-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-593272.html" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability exists in affected products that could allow remote attackers to affect the availability of the devices under certain conditions.&lt;/p&gt;
&lt;p&gt;The underlying TCP stack can be forced to make very computation expensive calls for every incoming packet which can lead to a Denial-of-Service.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-592380.html</id>
    <title>SSA-592380 V1.2 (Last Update: 2024-05-14): Denial of Service Vulnerability in SIMATIC S7-1500 CPUs and related products</title>
    <updated>2024-05-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-592380.html" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability has been identified in the SIMATIC S7-1500 CPU family and related products that could allow an attacker to cause a denial of service condition. In order to exploit the vulnerability, an attacker must have access to the affected devices on port 102/tcp.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-589937.html</id>
    <title>SSA-589937 V1.0: Multiple Memory Corruption Vulnerabilities in Solid Edge</title>
    <updated>2024-05-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-589937.html" rel="alternate"/>
    <summary>&lt;p&gt;Solid Edge is affected by multiple memory corruption vulnerabilities that could be triggered when the application is parsing PAR files. If a user is tricked to open a malicious file with the affected application, an attacker could leverage the vulnerability to execute arbitrary code in the context of the current process.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for Solid Edge and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-552874.html</id>
    <title>SSA-552874 V1.4 (Last Update: 2024-05-14): Denial of Service Vulnerability in SIPROTEC 5 Devices</title>
    <updated>2024-05-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-552874.html" rel="alternate"/>
    <summary>&lt;p&gt;Devices of the SIPROTEC 5 family contain a vulnerability related to secure client-initiated renegotiation. This could allow an unauthenticated attacker to cause a denial of service condition for the duration of the attack.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-489698.html</id>
    <title>SSA-489698 V1.0: X_T File Parsing Vulnerability in Parasolid</title>
    <updated>2024-05-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-489698.html" rel="alternate"/>
    <summary>&lt;p&gt;Parasolid is affected by an out of bounds write vulnerability that could be triggered when the application reads files in X_T format. If a user is tricked to open a malicious file with the affected applications, an attacker could leverage the vulnerability to perform remote code execution in the context of the current process.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-455250.html</id>
    <title>SSA-455250 V1.1 (Last Update: 2024-05-14): Multiple Vulnerabilities in Palo Alto Networks Virtual NGFW on RUGGEDCOM APE1808 devices</title>
    <updated>2024-05-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-455250.html" rel="alternate"/>
    <summary>&lt;p&gt;Palo Alto Networks has published [1] information on vulnerabilities in PAN-OS. This advisory lists the related Siemens Industrial products affected by these vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends specific countermeasures for products where updates are not, or not yet available. Customers are advised to consult and implement the workarounds provided in Palo Alto Networks&#8217; upstream security notifications.&lt;/p&gt;
&lt;p&gt;[1] https://security.paloaltonetworks.com/?version=11.0.1&amp;amp;product=PAN-OS&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-446448.html</id>
    <title>SSA-446448 V2.0 (Last Update: 2024-05-14): Denial of Service Vulnerability in PROFINET Stack Integrated on Interniche Stack</title>
    <updated>2024-05-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-446448.html" rel="alternate"/>
    <summary>&lt;p&gt;The PROFINET (PNIO) stack, when integrated with the Interniche IP stack, contains a vulnerability that could allow an attacker to cause a denial of service condition on affected industrial products.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-398330.html</id>
    <title>SSA-398330 V1.5 (Last Update: 2024-05-14): Vulnerabilities in the additional GNU/Linux subsystem of the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP V3.1</title>
    <updated>2024-05-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-398330.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities have been identified in the additional GNU/Linux subsystem of the firmware version V3.1 for the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP (incl.&#160;SIPLUS variant).&lt;/p&gt;
&lt;p&gt;These GNU/Linux vulnerabilities have been externally identified. Siemens is preparing fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
&lt;p&gt;Note: This SSA advises vulnerabilities for firmware version V3.1 only; for versions &amp;lt; V3.1 refer to Siemens Security Bulletin SSB-439005 (&lt;a href="https://cert-portal.siemens.com/productcert/html/ssb-439005.html" class="uri"&gt;https://cert-portal.siemens.com/productcert/html/ssb-439005.html&lt;/a&gt;).&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-382651.html</id>
    <title>SSA-382651 V1.1 (Last Update: 2024-05-14): File Parsing Vulnerability in Solid Edge</title>
    <updated>2024-05-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-382651.html" rel="alternate"/>
    <summary>&lt;p&gt;Solid Edge is affected by an out of bounds read vulnerability that could be triggered when the application reads files that contains XT parts. If a user is tricked to open a malicious file with the affected applications, an attacker could leverage the vulnerability to perform remote code execution in the context of the current process.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-322980.html</id>
    <title>SSA-322980 V1.4 (Last Update: 2024-05-14): Denial of Service Vulnerability in SIPROTEC 5 Devices</title>
    <updated>2024-05-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-322980.html" rel="alternate"/>
    <summary>&lt;p&gt;SIPROTEC 5 devices contain a null pointer dereference vulnerability in the web service. This could allow an attacker to send unauthenticated maliciously crafted http request that could cause denial of service condition of the device.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-292063.html</id>
    <title>SSA-292063 V1.1 (Last Update: 2024-05-14): Multiple Vulnerabilities in Nozomi Guardian/CMC before 22.6.3 and 23.1.0 on RUGGEDCOM APE1808 devices</title>
    <updated>2024-05-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-292063.html" rel="alternate"/>
    <summary>&lt;p&gt;Nozomi Networks has published information on vulnerabilities in &lt;a href="https://security.nozominetworks.com/"&gt;Nozomi Guardian/CMC before V22.6.3 and 23.1.0&lt;/a&gt;. This advisory lists the related Siemens Industrial products affected by these vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends specific countermeasures for products where updates are not, or not yet available. Customers are advised to consult and implement the workarounds provided in Nozomi Network&#8217;s upstream security notifications.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-292022.html</id>
    <title>SSA-292022 V1.0: Vulnerability in Nozomi Guardian/CMC before 23.4.1 on RUGGEDCOM APE1808 devices</title>
    <updated>2024-05-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-292022.html" rel="alternate"/>
    <summary>&lt;p&gt;Nozomi Networks has published information on vulnerabilities in &lt;a href="https://security.nozominetworks.com/"&gt;Nozomi Guardian/CMC before 23.4.1&lt;/a&gt;. This advisory lists the related Siemens Industrial products affected by these vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for RUGGEDCOM APE1808 and recommends to update to the latest version. Customers are advised to consult and implement the workarounds provided in Nozomi Network&#8217;s upstream security notifications.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-273900.html</id>
    <title>SSA-273900 V1.0: Multiple Vulnerabilities in SIMATIC CN 4100 before V3.0</title>
    <updated>2024-05-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-273900.html" rel="alternate"/>
    <summary>&lt;p&gt;SIMATIC CN 4100 is vulnerable to use of hard coded credentials including &lt;code&gt;root&lt;/code&gt; user and contains an unrestricted USB port that could be misused for insecure boot.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for SIMATIC CN 4100 and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-265688.html</id>
    <title>SSA-265688 V1.1 (Last Update: 2024-05-14): Vulnerabilities in the additional GNU/Linux subsystem of the SIMATIC S7-1500 TM MFP V1.1</title>
    <updated>2024-05-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-265688.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities have been identified in the additional GNU/Linux subsystem of the SIMATIC S7-1500 TM MFP V1.1.&lt;/p&gt;
&lt;p&gt;Siemens is preparing fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-258494.html</id>
    <title>SSA-258494 V1.0: Stack Overflow Vulnerability in Simcenter Nastran before 2406.90</title>
    <updated>2024-05-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-258494.html" rel="alternate"/>
    <summary>&lt;p&gt;Simcenter Nastran is affected by a stack overflow vulnerability that could be triggered when an application binary reads arbitrary string as a file argument. If a user is tricked to run one of the impacted application binary with a malicious string, an attacker could leverage the vulnerability to perform remote code execution in the context of the current process.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for Simcenter Nastran 2406 and recommends to update to the latest version. Siemens recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-240541.html</id>
    <title>SSA-240541 V1.3 (Last Update: 2024-05-14): WIBU Systems CodeMeter Heap Buffer Overflow Vulnerability in Industrial Products</title>
    <updated>2024-05-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-240541.html" rel="alternate"/>
    <summary>&lt;p&gt;WIBU Systems published information about a heap buffer overflow vulnerability and associated fix releases of CodeMeter Runtime, a product provided by WIBU Systems and used in several Siemens industrial products for license management.&lt;/p&gt;
&lt;p&gt;The vulnerability is described in the section &#8216;Vulnerability Classification&#8217; below and got assigned the CVE ID CVE-2023-3935. Successful exploitation of this vulnerability could allow&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;an unauthenticated remote attacker to execute code on vulnerable products, where CodeMeter Runtime (i.e., CodeMeter.exe) is configured as a server, or&lt;/li&gt;
&lt;li&gt;an authenticated local attacker to gain root/admin privileges on vulnerable products, where CodeMeter Runtime is configured as a client.&lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-225840.html</id>
    <title>SSA-225840 V1.1 (Last Update: 2024-05-14): Vulnerabilities in the Network Communication Stack in Sinteso EN and Cerberus PRO EN Fire Protection Systems</title>
    <updated>2024-05-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-225840.html" rel="alternate"/>
    <summary>&lt;p&gt;Several products used in Sinteso EN and Cerberus PRO EN Fire Protection Systems contain buffer overflow vulnerabilities in the network communication stack. Successful exploitation of the vulnerabilities could allow an unauthenticated attacker, who gained access to the fire protection system network, to execute arbitrary code on the affected products (CVE-2024-22039) or create a denial of service condition (CVE-2024-22040, CVE-2024-22041).&lt;/p&gt;
&lt;p&gt;Product-specific impact of the individual vulnerabilities is documented in the chapter &#8220;Vulnerability Description&#8221;.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-148641.html</id>
    <title>SSA-148641 V1.2 (Last Update: 2024-05-14): XPath Constraint Vulnerability in Mendix Runtime</title>
    <updated>2024-05-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-148641.html" rel="alternate"/>
    <summary>&lt;p&gt;A XPath Constraint vulnerability in the Mendix Runtime was discovered, that can affect the running applications. The vulnerability could allow a malicious user to deduce contents of inaccessible attributes and modify sensitive data.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-093430.html</id>
    <title>SSA-093430 V1.0: Multiple Vulnerabilities in SIMATIC RTLS Locating Manager before V3.0</title>
    <updated>2024-05-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-093430.html" rel="alternate"/>
    <summary>&lt;p&gt;Siemens has released a new version for SIMATIC RTLS Locating Manager and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-046364.html</id>
    <title>SSA-046364 V1.0: X_T File Parsing Vulnerabilities in Parasolid</title>
    <updated>2024-05-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-046364.html" rel="alternate"/>
    <summary>&lt;p&gt;Parasolid is affected by out of bounds read and null pointer dereference vulnerabilities that could be triggered when the application reads files in X_T format. If a user is tricked to open a malicious file with the affected applications, an attacker could leverage the out of bounds read vulnerabilities to perform remote code execution in the context of the current process or denial of service condition in the application.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-750274.html</id>
    <title>SSA-750274 V1.0: Impact of CVE-2024-3400 on RUGGEDCOM APE1808 devices configured with Palo Alto Networks Virtual NGFW</title>
    <updated>2024-04-19T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-750274.html" rel="alternate"/>
    <summary>&lt;p&gt;Palo Alto Networks has published [1] information on CVE-2024-3400 in PAN-OS. This advisory addresses Siemens Industrial products affected by this vulnerability.&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends specific countermeasures for products where updates are not, or not yet available. Customers are advised to consult and implement the workarounds provided in Palo Alto Networks&#8217; upstream security notifications.&lt;/p&gt;
&lt;p&gt;[1] https://security.paloaltonetworks.com/CVE-2024-3400&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-885980.html</id>
    <title>SSA-885980 V1.0: Multiple Vulnerabilities in Scalance W1750D</title>
    <updated>2024-04-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-885980.html" rel="alternate"/>
    <summary>&lt;p&gt;The SCALANCE W1750D devices contain multiple vulnerabilities that could allow an attacker to exploit buffer overflow and information disclosure vulnerabilities which could lead to information disclosure or unauthenticated remote code execution.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-832273.html</id>
    <title>SSA-832273 V1.1 (Last Update: 2024-04-09): Multiple Vulnerabilities in Fortigate NGFW on RUGGEDCOM APE1808 devices</title>
    <updated>2024-04-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-832273.html" rel="alternate"/>
    <summary>&lt;p&gt;&lt;a href="https://www.fortiguard.com/psirt"&gt;Fortinet has published&lt;/a&gt; information on vulnerabilities in FORTIOS. This advisory lists the related Siemens Industrial products.&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends specific countermeasures for products where updates are not, or not yet available. Siemens recommends to consult and implement the workarounds provided in Fortinet&#8217;s upstream security notifications.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-831302.html</id>
    <title>SSA-831302 V1.4 (Last Update: 2024-04-09): Vulnerabilities in the BIOS of the SIMATIC S7-1500 TM MFP before V1.3.0</title>
    <updated>2024-04-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-831302.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities have been identified in the BIOS of the SIMATIC S7-1500 TM MFP before V1.3.0.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for SIMATIC S7-1500 TM MFP - BIOS and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-822518.html</id>
    <title>SSA-822518 V1.0: Multiple Vulnerabilities in Palo Alto Networks Virtual NGFW before V11.0.1 on RUGGEDCOM APE1808 devices</title>
    <updated>2024-04-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-822518.html" rel="alternate"/>
    <summary>&lt;p&gt;Palo Alto Networks has published [1] information on vulnerabilities in PAN-OS. This advisory lists the related Siemens Industrial products affected by these vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends specific countermeasures for products where updates are not, or not yet available. Customers are advised to consult and implement the workarounds provided in Palo Alto Networks&#8217; upstream security notifications.&lt;/p&gt;
&lt;p&gt;[1] https://security.paloaltonetworks.com/?version=10.2.2&amp;amp;product=PAN-OS&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-794697.html</id>
    <title>SSA-794697 V1.8 (Last Update: 2024-04-09): Vulnerabilities in the additional GNU/Linux subsystem of the SIMATIC S7-1500 TM MFP before V1.1</title>
    <updated>2024-04-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-794697.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities have been identified in the additional GNU/Linux subsystem of the SIMATIC S7-1500 TM MFP V1.0.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for SIMATIC S7-1500 TM MFP -&#160;GNU/Linux subsystem and recommends to update to the latest version.&lt;/p&gt;
&lt;p&gt;This advisory lists vulnerabilities for firmware version V1.0 only; for V1.1 refer to Siemens Security Advisory SSA-265688 (&lt;a href="https://cert-portal.siemens.com/productcert/html/ssa-265688.html" class="uri"&gt;https://cert-portal.siemens.com/productcert/html/ssa-265688.html&lt;/a&gt;).&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-753746.html</id>
    <title>SSA-753746 V1.1 (Last Update: 2024-04-09): Denial of Service Vulnerabilities in SIMATIC WinCC Affecting Other SIMATIC Software Products</title>
    <updated>2024-04-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-753746.html" rel="alternate"/>
    <summary>&lt;p&gt;Two null point dereference vulnerabilities affect multiple SIMATIC software products. These could allow an attacker to cause a persistent denial of service condition in the RPC Server of these products.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-730482.html</id>
    <title>SSA-730482 V1.0: Denial of Service Vulnerability in SIMATIC WinCC</title>
    <updated>2024-04-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-730482.html" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in the login dialog box of SIMATIC WinCC could allow a local attacker to cause a denial of service condition in the runtime of the SCADA system.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-716164.html</id>
    <title>SSA-716164 V1.1 (Last Update: 2024-04-09): Multiple Vulnerabilities in Scalance W1750D</title>
    <updated>2024-04-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-716164.html" rel="alternate"/>
    <summary>&lt;p&gt;The SCALANCE W1750D devices contain multiple vulnerabilities that could allow an attacker to inject commands or exploit buffer overflow vulnerabilities which could lead to sensitive information disclosure, unauthenticated denial of service or unauthenticated remote code execution.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-712929.html</id>
    <title>SSA-712929 V2.6 (Last Update: 2024-04-09): Denial of Service Vulnerability in OpenSSL (CVE-2022-0778) Affecting Industrial Products</title>
    <updated>2024-04-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-712929.html" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in the openSSL component (CVE-2022-0778, [0]) could allow an attacker to create a denial of service condition by providing specially crafted elliptic curve certificates to products that use a vulnerable version of openSSL.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
&lt;p&gt;[0] &lt;a href="https://www.openssl.org/news/secadv/20220315.txt" class="uri"&gt;https://www.openssl.org/news/secadv/20220315.txt&lt;/a&gt;&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-711309.html</id>
    <title>SSA-711309 V1.7 (Last Update: 2024-04-09): Denial of Service Vulnerability in the OPC UA Implementations of SIMATIC Products</title>
    <updated>2024-04-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-711309.html" rel="alternate"/>
    <summary>&lt;p&gt;The OPC UA implementations (ANSI C and C++) as used in several SIMATIC products contain a denial of service vulnerability that could allow an unauthenticated remote attacker to create a denial of service condition by sending a specially crafted certificate.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-691715.html</id>
    <title>SSA-691715 V1.4 (Last Update: 2024-04-09): Vulnerability in OPC Foundation Local Discovery Server Affecting Siemens Products</title>
    <updated>2024-04-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-691715.html" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability was identified in OPC Foundation Local Discovery Server which also affects Siemens products that could allow an attacker to escalate privileges under certain circumstances.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-556635.html</id>
    <title>SSA-556635 V1.0: Multiple Vulnerabilities in Telecontrol Server Basic before V3.1.2.0</title>
    <updated>2024-04-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-556635.html" rel="alternate"/>
    <summary>&lt;p&gt;Siemens has released a new version for Telecontrol Server Basic that fixes multiple vulnerabilities.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-457702.html</id>
    <title>SSA-457702 V1.1 (Last Update: 2024-04-09): Wi-Fi Encryption Bypass Vulnerabilities in SCALANCE W700 Product Family</title>
    <updated>2024-04-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-457702.html" rel="alternate"/>
    <summary>&lt;p&gt;The SCALANCE W700 devices are affected by Wi-Fi encryption bypass vulnerabilities (&#8220;Framing Frames&#8221;) that could allow an attacker to disclose sensitive information, to steal the victims session or to execute denial-of-service attacks.&lt;/p&gt;
&lt;p&gt;Siemens recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-455250.html</id>
    <title>SSA-455250 V1.0: Multiple Vulnerabilities in Palo Alto Networks Virtual NGFW on RUGGEDCOM APE1808 devices</title>
    <updated>2024-04-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-455250.html" rel="alternate"/>
    <summary>&lt;p&gt;Palo Alto Networks has published [1] information on vulnerabilities in PAN-OS. This advisory lists the related Siemens Industrial products affected by these vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends specific countermeasures for products where updates are not, or not yet available. Customers are advised to consult and implement the workarounds provided in Palo Alto Networks&#8217; upstream security notifications.&lt;/p&gt;
&lt;p&gt;[1] https://security.paloaltonetworks.com/?version=11.0.1&amp;amp;product=PAN-OS&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-398330.html</id>
    <title>SSA-398330 V1.4 (Last Update: 2024-04-09): Vulnerabilities in the additional GNU/Linux subsystem of the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP V3.1</title>
    <updated>2024-04-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-398330.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities have been identified in the additional GNU/Linux subsystem of the firmware version V3.1 for the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP (incl.&#160;SIPLUS variant).&lt;/p&gt;
&lt;p&gt;These GNU/Linux vulnerabilities have been externally identified. Siemens is preparing fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
&lt;p&gt;Note: This SSA advises vulnerabilities for firmware version V3.1 only; for versions &amp;lt; V3.1 refer to Siemens Security Bulletin SSB-439005 (&lt;a href="https://cert-portal.siemens.com/productcert/html/ssb-439005.html" class="uri"&gt;https://cert-portal.siemens.com/productcert/html/ssb-439005.html&lt;/a&gt;).&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-265688.html</id>
    <title>SSA-265688 V1.0: Vulnerabilities in the additional GNU/Linux subsystem of the SIMATIC S7-1500 TM MFP V1.1</title>
    <updated>2024-04-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-265688.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities have been identified in the additional GNU/Linux subsystem of the SIMATIC S7-1500 TM MFP V1.1.&lt;/p&gt;
&lt;p&gt;Siemens is preparing fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-222019.html</id>
    <title>SSA-222019 V1.0: X_T File Parsing Vulnerabilities in Parasolid</title>
    <updated>2024-04-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-222019.html" rel="alternate"/>
    <summary>&lt;p&gt;Parasolid is affected by out of bounds read, stack exhaustion and null pointer dereference vulnerabilities that could be triggered when the application reads files in X_T format. If a user is tricked to open a malicious file with the affected applications, an attacker could leverage the vulnerability to perform remote code execution in the context of the current process.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-203374.html</id>
    <title>SSA-203374 V1.2 (Last Update: 2024-04-09): Multiple OpenSSL Vulnerabilities in SCALANCE W1750D Devices</title>
    <updated>2024-04-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-203374.html" rel="alternate"/>
    <summary>&lt;p&gt;The SCALANCE W1750D device contains multiple vulnerabilities in the integrated OpenSSL component that could allow an attacker to read memory contents, decrypt RSA-encrypted messages or create a denial of service condition.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-128433.html</id>
    <title>SSA-128433 V1.0: Multiple Vulnerabilities in SINEC NMS before V2.0 SP2</title>
    <updated>2024-04-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-128433.html" rel="alternate"/>
    <summary>&lt;p&gt;SINEC NMS before V2.0 SP2 is affected by multiple vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for SINEC NMS and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssb-201698.html</id>
    <title>SSB-201698 V1.0: Risk for Denial of Service attack through Discovery and Basic Configuration Protocol (DCP) communication functionality</title>
    <updated>2024-03-26T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssb-201698.html" rel="alternate"/>
    <summary>
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-968170.html</id>
    <title>SSA-968170 V1.2 (Last Update: 2024-03-12): Remote Code Execution Vulnerability in SIMATIC STEP 7 V5.x and Derived Products</title>
    <updated>2024-03-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-968170.html" rel="alternate"/>
    <summary>&lt;p&gt;SIMATIC STEP 7 and PCS 7 contain a database management system that could allow remote users to use embedded functions of the database (local or in a network share) that have impact on the server.&lt;/p&gt;
&lt;p&gt;An attacker with network access to the server network could leverage these embedded functions to run code in the database management system&#8217;s server (where STEP 7 or PCS 7 are running).&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-943925.html</id>
    <title>SSA-943925 V1.1 (Last Update: 2024-03-12): Multiple Vulnerabilities in SINEC NMS before V2.0 SP1</title>
    <updated>2024-03-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-943925.html" rel="alternate"/>
    <summary>&lt;p&gt;SINEC NMS before V2.0 SP1 is affected by multiple vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for SINEC NMS and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-918992.html</id>
    <title>SSA-918992 V1.0: Unused HTTP Service on SENTRON 3KC ATC6 Ethernet Module</title>
    <updated>2024-03-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-918992.html" rel="alternate"/>
    <summary>&lt;p&gt;SENTRON 3KC ATC6 Expansion Module Ethernet exposes an unused, unstable http service at port 80/tcp on the Modbus-TCP Ethernet, which could allow an attacker on the same Modbus network to create a denial of service condition that forces the device to reboot.&lt;/p&gt;
&lt;p&gt;Siemens is preparing fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-871717.html</id>
    <title>SSA-871717 V1.1 (Last Update: 2024-03-12): Multiple Vulnerabilities in Polarion ALM</title>
    <updated>2024-03-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-871717.html" rel="alternate"/>
    <summary>&lt;p&gt;Polarion ALM is affected by incorrect default path permissions in installation path, and improper authentication in the REST API endpoints of DOORS connector. An attacker could exploit the vulnerabilities for unauthenticated access, or privilege escalation.&lt;/p&gt;
&lt;p&gt;Siemens is preparing fixes for the vulnerabilities in Polarion 2404 which is expected to be released in April 2024 and recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-832273.html</id>
    <title>SSA-832273 V1.0: Multiple Vulnerabilities in Fortigate NGFW on RUGGEDCOM APE1808 devices</title>
    <updated>2024-03-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-832273.html" rel="alternate"/>
    <summary>&lt;p&gt;&lt;a href="https://www.fortiguard.com/psirt"&gt;Fortinet has published&lt;/a&gt; information on vulnerabilities in FORTIOS. This advisory lists the related Siemens Industrial products.&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends specific countermeasures for products where updates are not, or not yet available. Siemens recommends to consult and implement the workarounds provided in Fortinet&#8217;s upstream security notifications.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-792319.html</id>
    <title>SSA-792319 V1.0: Missing Read Out Protection in SENTRON 7KM PAC3x20 Devices</title>
    <updated>2024-03-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-792319.html" rel="alternate"/>
    <summary>&lt;p&gt;The read out protection of the internal flash of affected devices was not properly set at the end of the manufacturing process.&lt;/p&gt;
&lt;p&gt;An attacker with physical access to the device could read out the data.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-770721.html</id>
    <title>SSA-770721 V1.0: Multiple Vulnerabilities in SIMATIC RF160B before V2.2</title>
    <updated>2024-03-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-770721.html" rel="alternate"/>
    <summary>&lt;p&gt;SIMATIC RF160B contain multiple vulnerabilities of different types that could allow an attacker to execute arbitrary code within the context of a privileged process.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for SIMATIC RF160B and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-711309.html</id>
    <title>SSA-711309 V1.6 (Last Update: 2024-03-12): Denial of Service Vulnerability in the OPC UA Implementations of SIMATIC Products</title>
    <updated>2024-03-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-711309.html" rel="alternate"/>
    <summary>&lt;p&gt;The OPC UA implementations (ANSI C and C++) as used in several SIMATIC products contain a denial of service vulnerability that could allow an unauthenticated remote attacker to create a denial of service condition by sending a specially crafted certificate.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-699386.html</id>
    <title>SSA-699386 V1.2 (Last Update: 2024-03-12): Multiple Vulnerabilities in SCALANCE XB-200 / XC-200 / XP-200 / XF-200BA / XR-300WG Family before V4.5</title>
    <updated>2024-03-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-699386.html" rel="alternate"/>
    <summary>&lt;p&gt;SCALANCE XB-200/XC-200/XP-200/XF-200BA/XR-300WG Family before V4.5 is affected by multiple vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-693975.html</id>
    <title>SSA-693975 V1.1 (Last Update: 2024-03-12): Denial-of-Service Vulnerability in the Web Server of Industrial Products</title>
    <updated>2024-03-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-693975.html" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in the affected products could allow an unauthorized attacker with network access to the webserver of an affected device to perform a denial-of-service attack.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for SINAMICS S210 (6SL5&#8230;) and recommends to update to the latest version. Siemens recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-653855.html</id>
    <title>SSA-653855 V1.0: Information Disclosure vulnerability in SINEMA Remote Connect Client before V3.1 SP1</title>
    <updated>2024-03-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-653855.html" rel="alternate"/>
    <summary>&lt;p&gt;SINEMA Remote Connect Client before V3.1 SP1 is affected by an information disclosure vulnerability.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-592380.html</id>
    <title>SSA-592380 V1.1 (Last Update: 2024-03-12): Denial of Service Vulnerability in SIMATIC S7-1500 CPUs and related products</title>
    <updated>2024-03-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-592380.html" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability has been identified in the SIMATIC S7-1500 CPU family and related products that could allow an attacker to cause a denial of service condition. In order to exploit the vulnerability, an attacker must have access to the affected devices on port 102/tcp.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-576771.html</id>
    <title>SSA-576771 V1.0: Multiple Vulnerabilities in SINEMA Remote Connect Server before V3.2</title>
    <updated>2024-03-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-576771.html" rel="alternate"/>
    <summary>&lt;p&gt;SINEMA Remote Connect Server before V3.2 is affected by multiple vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-552874.html</id>
    <title>SSA-552874 V1.3 (Last Update: 2024-03-12): Denial of Service Vulnerability in SIPROTEC 5 Devices</title>
    <updated>2024-03-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-552874.html" rel="alternate"/>
    <summary>&lt;p&gt;Devices of the SIPROTEC 5 family contain a vulnerability related to secure client-initiated renegotiation. This could allow an unauthenticated attacker to cause a denial of service condition for the duration of the attack.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-398330.html</id>
    <title>SSA-398330 V1.3 (Last Update: 2024-03-12): Vulnerabilities in the additional GNU/Linux subsystem of the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP V3.1</title>
    <updated>2024-03-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-398330.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities have been identified in the additional GNU/Linux subsystem of the firmware version V3.1 for the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP (incl.&#160;SIPLUS variant).&lt;/p&gt;
&lt;p&gt;These GNU/Linux vulnerabilities have been externally identified. Siemens is preparing fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
&lt;p&gt;Note: This SSA advises vulnerabilities for firmware version V3.1 only; for versions &amp;lt; V3.1 refer to Siemens Security Bulletin SSB-439005 (&lt;a href="https://cert-portal.siemens.com/productcert/html/ssb-439005.html" class="uri"&gt;https://cert-portal.siemens.com/productcert/html/ssb-439005.html&lt;/a&gt;).&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-382651.html</id>
    <title>SSA-382651 V1.0: File Parsing Vulnerability in Solid Edge before V223.0.11</title>
    <updated>2024-03-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-382651.html" rel="alternate"/>
    <summary>&lt;p&gt;Solid Edge is affected by an out of bounds read vulnerability that could be triggered when the application reads files that contains XT parts. If a user is tricked to open a malicious file with the affected applications, an attacker could leverage the vulnerability to perform remote code execution in the context of the current process.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for Solid Edge and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-366067.html</id>
    <title>SSA-366067 V1.0: Multiple Vulnerabilities in Fortigate NGFW before V7.4.1 on RUGGEDCOM APE1808 devices</title>
    <updated>2024-03-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-366067.html" rel="alternate"/>
    <summary>&lt;p&gt;&lt;a href="https://www.fortiguard.com/psirt"&gt;Fortinet has published&lt;/a&gt; information on vulnerabilities in FORTIOS. This advisory lists the related Siemens Industrial products.&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends specific countermeasures for products where updates are not, or not yet available. Siemens recommends to consult and implement the workarounds provided in Fortinet&#8217;s upstream security notifications.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-353002.html</id>
    <title>SSA-353002 V1.0: Multiple Vulnerabilities in SCALANCE XB-200 / XC-200 / XP-200 / XF-200BA / XR-300WG Family</title>
    <updated>2024-03-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-353002.html" rel="alternate"/>
    <summary>&lt;p&gt;SCALANCE XB-200/XC-200/XP-200/XF-200BA/XR-300WG Family is affected by multiple vulnerabilities. CVE-2023-44318 and CVE-2023-44321 were previously published as part of SSA-699386.&lt;/p&gt;
&lt;p&gt;Siemens is preparing fix versions and recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-322980.html</id>
    <title>SSA-322980 V1.3 (Last Update: 2024-03-12): Denial of Service Vulnerability in SIPROTEC 5 Devices</title>
    <updated>2024-03-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-322980.html" rel="alternate"/>
    <summary>&lt;p&gt;SIPROTEC 5 devices contain a null pointer dereference vulnerability in the web service. This could allow an attacker to send unauthenticated maliciously crafted http request that could cause denial of service condition of the device.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-225840.html</id>
    <title>SSA-225840 V1.0: Vulnerabilities in the Network Communication Stack in Sinteso EN and Cerberus PRO EN Fire Protection Systems</title>
    <updated>2024-03-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-225840.html" rel="alternate"/>
    <summary>&lt;p&gt;Several products used in Sinteso EN and Cerberus PRO EN Fire Protection Systems contain buffer overflow vulnerabilities in the network communication stack. Successful exploitation of the vulnerabilities could allow an unauthenticated attacker, who gained access to the fire protection system network, to execute arbitrary code on the affected products (CVE-2024-22039) or create a denial of service condition (CVE-2024-22040, CVE-2024-22041).&lt;/p&gt;
&lt;p&gt;Product-specific impact of the individual vulnerabilities is documented in the chapter &#8220;Vulnerability Description&#8221;.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-145196.html</id>
    <title>SSA-145196 V1.0: Authorization Bypass Vulnerability in Siveillance Control</title>
    <updated>2024-03-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-145196.html" rel="alternate"/>
    <summary>&lt;p&gt;Siveillance Control does not properly check the list of access groups that are assigned to an individual user. This could enable a locally logged on user to gain write privileges for objects where they only have read privileges.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for Siveillance Control and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-000072.html</id>
    <title>SSA-000072 V1.1 (Last Update: 2024-03-12): Multiple File Parsing Vulnerabilities in Simcenter Femap</title>
    <updated>2024-03-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-000072.html" rel="alternate"/>
    <summary>&lt;p&gt;Simcenter Femap contains multiple file parsing vulnerabilities that could be triggered when the application reads files in Catia MODEL file formats. If a user is tricked to open a malicious file with any of the affected products, this could lead the application to crash or potentially lead to arbitrary code execution.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for Simcenter Femap and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-999588.html</id>
    <title>SSA-999588 V1.2 (Last Update: 2024-02-13): Multiple Vulnerabilities in User Management Component (UMC) before V2.11.2</title>
    <updated>2024-02-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-999588.html" rel="alternate"/>
    <summary>&lt;p&gt;Siemens User Management Component (UMC) before V2.11.2 is affected by multiple vulnerabilities where the most severe could lead to a restart of the UMC server.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-943925.html</id>
    <title>SSA-943925 V1.0: Multiple Vulnerabilities in SINEC NMS before V2.0 SP1</title>
    <updated>2024-02-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-943925.html" rel="alternate"/>
    <summary>&lt;p&gt;SINEC NMS before V2.0 SP1 is affected by multiple vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for SINEC NMS and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-871717.html</id>
    <title>SSA-871717 V1.0: Multiple Vulnerabilities in Polarion ALM</title>
    <updated>2024-02-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-871717.html" rel="alternate"/>
    <summary>&lt;p&gt;Polarion ALM is affected by incorrect default path permissions in installation path, and improper authentication in the REST API endpoints of DOORS connector. An attacker could exploit the vulnerabilities for unauthenticated access, or privilege escalation.&lt;/p&gt;
&lt;p&gt;Siemens is preparing fix versions and recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-806742.html</id>
    <title>SSA-806742 V1.0: Multiple Vulnerabilities in SCALANCE XCM-/XRM-300 before V2.4</title>
    <updated>2024-02-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-806742.html" rel="alternate"/>
    <summary>&lt;p&gt;SCALANCE XCM-/XRM-300 before V2.4 is affected by multiple vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for SCALANCE X-300 and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-797296.html</id>
    <title>SSA-797296 V1.0: XT File Parsing Vulnerability in Parasolid</title>
    <updated>2024-02-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-797296.html" rel="alternate"/>
    <summary>&lt;p&gt;Parasolid is affected by out of bounds read and null pointer dereference vulnerabilities that could be triggered when the application reads files in XT format. If a user is tricked to open a malicious file with the affected applications, an attacker could leverage the vulnerability to perform remote code execution in the context of the current process.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-794697.html</id>
    <title>SSA-794697 V1.7 (Last Update: 2024-02-13): Vulnerabilities in the Linux Kernel of the SIMATIC S7-1500 TM MFP V1.0</title>
    <updated>2024-02-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-794697.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities have been identified in the Linux Kernel of the SIMATIC S7-1500 TM MFP V1.0.&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-753746.html</id>
    <title>SSA-753746 V1.0: Denial of Service Vulnerabilities in SIMATIC WinCC Affecting Other SIMATIC Software Products</title>
    <updated>2024-02-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-753746.html" rel="alternate"/>
    <summary>&lt;p&gt;Two null point dereference vulnerabilities affect multiple SIMATIC software products. These could allow an attacker to cause a persistent denial of service condition in the RPC Server of these products.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-716164.html</id>
    <title>SSA-716164 V1.0: Multiple Vulnerabilities in Scalance W1750D</title>
    <updated>2024-02-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-716164.html" rel="alternate"/>
    <summary>&lt;p&gt;The SCALANCE W1750D devices contain multiple vulnerabilities that could allow an attacker to inject commands or exploit buffer overflow vulnerabilities which could lead to sensitive information disclosure, unauthenticated denial of service or unauthenticated remote code execution.&lt;/p&gt;
&lt;p&gt;Siemens is preparing fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-711309.html</id>
    <title>SSA-711309 V1.5 (Last Update: 2024-02-13): Denial of Service Vulnerability in the OPC UA Implementations of SIMATIC Products</title>
    <updated>2024-02-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-711309.html" rel="alternate"/>
    <summary>&lt;p&gt;The OPC UA implementations (ANSI C and C++) as used in several SIMATIC products contain a denial of service vulnerability that could allow an unauthenticated remote attacker to create a denial of service condition by sending a specially crafted certificate.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-665034.html</id>
    <title>SSA-665034 V1.0: Vulnerability in Nozomi Guardian/CMC before 23.3.0 on RUGGEDCOM APE1808 devices</title>
    <updated>2024-02-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-665034.html" rel="alternate"/>
    <summary>&lt;p&gt;Nozomi Networks has published information on vulnerabilities in &lt;a href="https://security.nozominetworks.com/"&gt;Nozomi Guardian/CMC before 23.3.0&lt;/a&gt;. This advisory lists the related Siemens Industrial products affected by these vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for RUGGEDCOM APE1808 and recommends to update to the latest version. Customers are advised to consult and implement the workarounds provided in Nozomi Network&#8217;s upstream security notifications.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-647068.html</id>
    <title>SSA-647068 V1.0: Ripple20 in SIMATIC RTLS Gateways</title>
    <updated>2024-02-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-647068.html" rel="alternate"/>
    <summary>&lt;p&gt;SIMATIC RTLS Gateways are affected by vulnerabilities that were disclosed by JSOF research lab &lt;a href="https://www.jsof-tech.com/ripple20/"&gt;&#8220;Ripple20&#8221;&lt;/a&gt; for the TCP/IP stack.&lt;/p&gt;
&lt;p&gt;Siemens recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-602936.html</id>
    <title>SSA-602936 V1.0: Multiple Vulnerabilities in SCALANCE SC-600 Family before V3.1</title>
    <updated>2024-02-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-602936.html" rel="alternate"/>
    <summary>&lt;p&gt;SCALANCE SC-600 Family before V3.1 is affected by multiple vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-580228.html</id>
    <title>SSA-580228 V1.0: Use of Hard-Coded Credentials Vulnerability in Location Intelligence before V4.3</title>
    <updated>2024-02-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-580228.html" rel="alternate"/>
    <summary>&lt;p&gt;Location Intelligence before V4.3 is affected by a Use of Hard-coded Credentials vulnerability that could allow an attacker to obtain full administrative access to the application.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-543502.html</id>
    <title>SSA-543502 V1.0: Local Privilege Escalation Vulnerability in Unicam FX</title>
    <updated>2024-02-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-543502.html" rel="alternate"/>
    <summary>&lt;p&gt;Unicam FX contains a local privilege escalation vulnerability that could allow an attcker to gain SYSTEM privileges.&lt;/p&gt;
&lt;p&gt;Unicam FX has reached end of software maintanence. Further information on recommendations for successor product can be found in section &#8216;Additional Information&#8217;.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-516818.html</id>
    <title>SSA-516818 V1.0: TCP Sequence Number Validation Vulnerability in the TCP/IP Stack of CP343-1 Devices</title>
    <updated>2024-02-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-516818.html" rel="alternate"/>
    <summary>&lt;p&gt;Affected products incorrectly validate TCP sequence numbers. This could allow an unauthenticated remote attacker to create a denial of service condition by injecting spoofed TCP RST packets.&lt;/p&gt;
&lt;p&gt;Siemens recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssb-439005.html</id>
    <title>SSB-439005 V5.9 (Last Update: 2024-02-13): Vulnerabilities in the additional GNU/Linux subsystem of the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP &lt; V3.1</title>
    <updated>2024-02-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssb-439005.html" rel="alternate"/>
    <summary>
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-434032.html</id>
    <title>SSA-434032 V1.1 (Last Update: 2024-02-13): Input Validation Vulnerability in the DHCP Client of Nucleus RTOS</title>
    <updated>2024-02-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-434032.html" rel="alternate"/>
    <summary>&lt;p&gt;The DHCP implementation of the networking component (Nucleus NET) in Nucleus Real-Time Operating System (RTOS) contains a vulnerability that could allow an attacker to change the IP address of an affected device to an invalid value.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-398330.html</id>
    <title>SSA-398330 V1.2 (Last Update: 2024-02-13): Vulnerabilities in the additional GNU/Linux subsystem of the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP V3.1</title>
    <updated>2024-02-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-398330.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities have been identified in the additional GNU/Linux subsystem of the firmware version V3.1 for the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP (incl.&#160;SIPLUS variant).&lt;/p&gt;
&lt;p&gt;These GNU/Linux vulnerabilities have been externally identified. Siemens is preparing fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
&lt;p&gt;Note: This SSA advises vulnerabilities for firmware version V3.1 only; for versions &amp;lt; V3.1 refer to Siemens Security Bulletin SSB-439005 (&lt;a href="https://cert-portal.siemens.com/productcert/html/ssb-439005.html" class="uri"&gt;https://cert-portal.siemens.com/productcert/html/ssb-439005.html&lt;/a&gt;).&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-309571.html</id>
    <title>SSA-309571 V2.0 (Last Update: 2024-02-13): IPU 2021.1 Vulnerabilities in Siemens Industrial Products using Intel CPUs (June 2021)</title>
    <updated>2024-02-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-309571.html" rel="alternate"/>
    <summary>&lt;p&gt;Intel has published information on vulnerabilities in Intel products in &lt;a href="https://blogs.intel.com/technology/2021/06/intel-security-advisories-for-june-2021/"&gt;June 2021&lt;/a&gt;. This advisory lists the related Siemens Industrial products affected by these vulnerabilities that can be patched by applying the corresponding BIOS update.&lt;/p&gt;
&lt;p&gt;In this advisory we summarize:&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;&lt;p&gt;&#8220;2021.1 IPU &#8211; Intel&#174; CSME, SPS and LMS Advisory&#8221; Intel-SA-00459,&lt;/p&gt;&lt;/li&gt;
&lt;li&gt;&lt;p&gt;&#8220;2021.1 IPU &#8211; BIOS Advisory&#8221; Intel-SA-00463,&lt;/p&gt;&lt;/li&gt;
&lt;li&gt;&lt;p&gt;&#8220;2021.1 IPU &#8211; Intel&#174; Processor Advisory&#8221; Intel-SA-00464, and&lt;/p&gt;&lt;/li&gt;
&lt;li&gt;&lt;p&gt;&#8220;2021.1 IPU - Intel Atom&#174; Processor Advisory&#8221; Intel-SA-00465.&lt;/p&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-248289.html</id>
    <title>SSA-248289 V1.2 (Last Update: 2024-02-13): Denial of Service Vulnerabilities in the IPv6 Stack of Nucleus RTOS</title>
    <updated>2024-02-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-248289.html" rel="alternate"/>
    <summary>&lt;p&gt;The IPv6 stack of the networking component (Nucleus NET) in Nucleus Real-Time Operating System (RTOS) contains two vulnerabilities when processing IPv6 headers which could allow an attacker to cause a denial of service condition.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-108696.html</id>
    <title>SSA-108696 V1.0: Multiple Vulnerabilities in SIDIS Prime before V4.0.400</title>
    <updated>2024-02-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-108696.html" rel="alternate"/>
    <summary>&lt;p&gt;SIDIS Prime before V4.0.400 is affected by multiple vulnerabilities in the components OPC UA and OpenSSL, that could allow an unauthenticated attacker with access to the network where SIDIS Prime is installed to reuse OPC UA client credentials, create a denial of service condition of the SIDIS Prime OPC UA client, or create a denial of service condition of the SIDIS Prime TLS service.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version of SIDIS Prime and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-017796.html</id>
    <title>SSA-017796 V1.0: Multiple File Parsing Vulnerabilities in Tecnomatix Plant Simulation</title>
    <updated>2024-02-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-017796.html" rel="alternate"/>
    <summary>&lt;p&gt;Siemens Tecnomatix Plant Simulation contains multiple file parsing vulnerabilities that could be triggered when the application reads files in WRL, PSOBJ or SPP file formats. If a user is tricked to open a malicious file with any of the affected products, this could lead the application to crash or potentially lead to arbitrary code execution.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-000072.html</id>
    <title>SSA-000072 V1.0: Multiple File Parsing Vulnerabilities in Simcenter Femap</title>
    <updated>2024-02-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-000072.html" rel="alternate"/>
    <summary>&lt;p&gt;Simcenter Femap contains multiple file parsing vulnerabilities that could be triggered when the application reads files in Catia MODEL file formats. If a user is tricked to open a malicious file with any of the affected products, this could lead the application to crash or potentially lead to arbitrary code execution.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for Simcenter Femap and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-999588.html</id>
    <title>SSA-999588 V1.1 (Last Update: 2024-01-09): Multiple Vulnerabilities in User Management Component (UMC) before V2.11.2</title>
    <updated>2024-01-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-999588.html" rel="alternate"/>
    <summary>&lt;p&gt;Siemens User Management Component (UMC) before V2.11.2 is affected by multiple vulnerabilities where the most severe could lead to a restart of the UMC server.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-844761.html</id>
    <title>SSA-844761 V1.3 (Last Update: 2024-01-09): Multiple Vulnerabilities in SiNVR/SiVMS Video Server</title>
    <updated>2024-01-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-844761.html" rel="alternate"/>
    <summary>&lt;p&gt;The Video Server application in SiNVR/SiVMS solutions contains five vulnerabilities involving information disclosure (CVE-2019-19291, CVE-2019-19299), path traversal (CVE-2019-19296, CVE-2019-19297), and denial-of-service (CVE-2019-19298).&lt;/p&gt;
&lt;p&gt;PKE has released updates of the application that fixes the reported vulnerabilities, except for CVE-2019-19299. This update is not available under the former Siemens OEM brand name SiNVR. For details contact PKE (&lt;a href="https://pke.at/" class="uri"&gt;https://pke.at/&lt;/a&gt;).&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-794697.html</id>
    <title>SSA-794697 V1.6 (Last Update: 2024-01-09): Vulnerabilities in the Linux Kernel of the SIMATIC S7-1500 TM MFP V1.0</title>
    <updated>2024-01-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-794697.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities have been identified in the Linux Kernel of the SIMATIC S7-1500 TM MFP V1.0.&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-794653.html</id>
    <title>SSA-794653 V1.0: Multiple File Parsing Vulnerabilities in Teamcenter Visualization and JT2Go</title>
    <updated>2024-01-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-794653.html" rel="alternate"/>
    <summary>&lt;p&gt;Siemens Teamcenter Visualization and JT2Go are affected by multiple file parsing vulnerabilities that could be triggered when the application reads malicious CGM files. If a user is tricked to open a malicious CGM file with the affected products, this could lead the application to crash or potentially lead to arbitrary code execution.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-786191.html</id>
    <title>SSA-786191 V1.0: Local Privilege Escalation Vulnerability in Spectrum Power 7</title>
    <updated>2024-01-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-786191.html" rel="alternate"/>
    <summary>&lt;p&gt;Spectrum Power 7 is affected by a vulnerability that could allow an authenticated local attacker to inject arbitrary code and gain root access.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for Spectrum Power 7 and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-777015.html</id>
    <title>SSA-777015 V1.0: Multiple Vulnerabilities in SIMATIC CN 4100 before V2.7</title>
    <updated>2024-01-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-777015.html" rel="alternate"/>
    <summary>&lt;p&gt;SIMATIC CN 4100 is vulnerable to authorization bypass through user-controlled key, use of default credentials and unauthenticated IP address change that could allow an attacker to remotely login as root or cause denial of service condition of the device.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for SIMATIC CN 4100 and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-772220.html</id>
    <title>SSA-772220 V2.3 (Last Update: 2024-01-09): OpenSSL Vulnerabilities in Industrial Products</title>
    <updated>2024-01-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-772220.html" rel="alternate"/>
    <summary>&lt;p&gt;OpenSSL has published a security advisory [0] about a vulnerability in OpenSSL versions 1.1.1 &amp;lt; 1.1.1k, that allows an unauthenticated attacker to cause a Denial-of-Service (DoS) if a maliciously crafted renegotiation message is sent.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
&lt;p&gt;[0] &lt;a href="https://www.openssl.org/news/secadv/20210325.txt" class="uri"&gt;https://www.openssl.org/news/secadv/20210325.txt&lt;/a&gt;&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-761844.html</id>
    <title>SSA-761844 V1.1 (Last Update: 2024-01-09): Multiple Vulnerabilities in Control Center Server (CCS)</title>
    <updated>2024-01-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-761844.html" rel="alternate"/>
    <summary>&lt;p&gt;The advisory informs about multiple vulnerabilities in the Central Control Server (CCS) application, as initially reported in SSA-761617 (&lt;a href="https://cert-portal.siemens.com/productcert/html/ssa-761617.html" class="uri"&gt;https://cert-portal.siemens.com/productcert/html/ssa-761617.html&lt;/a&gt;) on 2019-12-10 and SSA-844761 (&lt;a href="https://cert-portal.siemens.com/productcert/html/ssa-844761.html" class="uri"&gt;https://cert-portal.siemens.com/productcert/html/ssa-844761.html&lt;/a&gt;) on 2020-03-10.&lt;/p&gt;
&lt;p&gt;The vulnerabilities involve authentication bypass (CVE-2019-18337, CVE-2019-18341), path traversal (CVE-2019-18338, CVE-2019-19290), information disclosure (CVE-2019-13947, CVE-2019-18340, CVE-2019-19291), privilege escalation (CVE-2019-18342), SQL injection (CVE-2019-19292), cross-site scripting (CVE-2019-19293, CVE-2019-19294), and insufficient logging (CVE-2019-19295).&lt;/p&gt;
&lt;p&gt;PKE has released an update for CCS that fixes the reported vulnerabilities, except for CVE-2019-18340. For details contact PKE (&lt;a href="https://pke.at/" class="uri"&gt;https://pke.at/&lt;/a&gt;).&lt;/p&gt;
&lt;p&gt;Siemens recommends to update to the latest version and recommends specific countermeasures to mitigate the vulnerabilities.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-761617.html</id>
    <title>SSA-761617 V1.2 (Last Update: 2024-01-09): Authentication Bypass and Information Disclosure Vulnerabilities in SiNVR/SiVMS Video Server</title>
    <updated>2024-01-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-761617.html" rel="alternate"/>
    <summary>&lt;p&gt;The Video Server application in SiNVR/SiVMS solutions contains two vulnerabilities involving authentication bypass (CVE-2019-18339) and information disclosure (CVE-2019-18340).&lt;/p&gt;
&lt;p&gt;PKE has released an update of the application that fixes CVE-2019-18339. This update is not available under the former Siemens OEM brand name SiNVR. For details contact PKE (&lt;a href="https://pke.at/" class="uri"&gt;https://pke.at/&lt;/a&gt;).&lt;/p&gt;
&lt;p&gt;Siemens recommends specific countermeasures to mitigate the vulnerabilities.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-712929.html</id>
    <title>SSA-712929 V2.5 (Last Update: 2024-01-09): Denial of Service Vulnerability in OpenSSL (CVE-2022-0778) Affecting Industrial Products</title>
    <updated>2024-01-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-712929.html" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in the openSSL component (CVE-2022-0778, [0]) could allow an attacker to create a denial of service condition by providing specially crafted elliptic curve certificates to products that use a vulnerable version of openSSL.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
&lt;p&gt;[0] &lt;a href="https://www.openssl.org/news/secadv/20220315.txt" class="uri"&gt;https://www.openssl.org/news/secadv/20220315.txt&lt;/a&gt;&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-711309.html</id>
    <title>SSA-711309 V1.4 (Last Update: 2024-01-09): Denial of Service Vulnerability in the OPC UA Implementations of SIMATIC Products</title>
    <updated>2024-01-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-711309.html" rel="alternate"/>
    <summary>&lt;p&gt;The OPC UA implementations (ANSI C and C++) as used in several SIMATIC products contain a denial of service vulnerability that could allow an unauthenticated remote attacker to create a denial of service condition by sending a specially crafted certificate.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-702935.html</id>
    <title>SSA-702935 V1.0: Redfish Server Vulnerability in maxView Storage Manager</title>
    <updated>2024-01-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-702935.html" rel="alternate"/>
    <summary>&lt;p&gt;MaxView Storage Manager shipped with affected SIMATIC IPCs contains a Redfish Server Vulnerability that could provide unauthorized access.&lt;/p&gt;
&lt;p&gt;Microchip has released new versions for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-589891.html</id>
    <title>SSA-589891 V1.0: Multiple PAR File Parsing Vulnerabilities in Solid Edge</title>
    <updated>2024-01-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-589891.html" rel="alternate"/>
    <summary>&lt;p&gt;Siemens Solid Edge 2023 has released Update 10, that fixes multiple vulnerabilities that could be triggered when the application reads PAR files. If a user is tricked to open a malicious file using the affected application, this could lead to a crash, and potentially also to arbitrary code execution on the target host system.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for Solid Edge SE2023 and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-583634.html</id>
    <title>SSA-583634 V1.0: Command Injection Vulnerability in the CPCI85 Firmware of SICAM A8000 Devices</title>
    <updated>2024-01-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-583634.html" rel="alternate"/>
    <summary>&lt;p&gt;The CPCI85 firmware of SICAM A8000 CP-8031 and CP-8050 is affected by a command injection vulnerability that could allow an authenticated remote attacker to inject commands that are executed on the device with root privileges during device startup.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-570294.html</id>
    <title>SSA-570294 V1.1 (Last Update: 2024-01-09): Multiple Vulnerabilities in SICAM Q100 Before V2.50</title>
    <updated>2024-01-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-570294.html" rel="alternate"/>
    <summary>&lt;p&gt;SICAM Q100 devices contain multiple vulnerabilities that could allow an attacker to take over the session of a logged in user or to inject custom code.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-480095.html</id>
    <title>SSA-480095 V1.1 (Last Update: 2024-01-09): Vulnerabilities in the Web Interface of SICAM Q100 Devices before V2.60</title>
    <updated>2024-01-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-480095.html" rel="alternate"/>
    <summary>&lt;p&gt;The web server of SICAM Q100 devices, versions before V2.60, contains a Cross Site Request Forgery (CSRF) vulnerability and is missing cookie protection flags. This could allow an attacker to perform arbitrary actions on the device on behalf of a legitimate user, or impersonate that user.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-398330.html</id>
    <title>SSA-398330 V1.1 (Last Update: 2024-01-09): Vulnerabilities in the additional GNU/Linux subsystem of the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP V3.1</title>
    <updated>2024-01-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-398330.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities have been identified in the additional GNU/Linux subsystem of the firmware version V3.1 for the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP (incl.&#160;SIPLUS variant).&lt;/p&gt;
&lt;p&gt;These GNU/Linux vulnerabilities have been externally identified. Siemens is preparing fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
&lt;p&gt;Note: This SSA advises vulnerabilities for firmware version V3.1 only; for versions &amp;lt; V3.1 refer to Siemens Security Bulletin SSB-439005 (&lt;a href="https://cert-portal.siemens.com/productcert/html/ssb-439005.html" class="uri"&gt;https://cert-portal.siemens.com/productcert/html/ssb-439005.html&lt;/a&gt;).&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-999588.html</id>
    <title>SSA-999588 V1.0: Multiple Vulnerabilities in User Management Component (UMC) before V2.11.2</title>
    <updated>2023-12-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-999588.html" rel="alternate"/>
    <summary>&lt;p&gt;Siemens User Management Component (UMC) before V2.11.2 is affected by multiple vulnerabilities where the most severe could lead to a restart of the UMC server.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-983300.html</id>
    <title>SSA-983300 V1.1 (Last Update: 2023-12-12): Vulnerabilities in LOGO! Soft Comfort</title>
    <updated>2023-12-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-983300.html" rel="alternate"/>
    <summary>&lt;p&gt;Two vulnerabilities have been identified in the LOGO! Soft Comfort software. These could allow an attacker to take over a system with the affected software installed.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for LOGO! Soft Comfort and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-955858.html</id>
    <title>SSA-955858 V1.1 (Last Update: 2023-12-12): Multiple Vulnerabilities in LOGO! 8 BM Devices</title>
    <updated>2023-12-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-955858.html" rel="alternate"/>
    <summary>&lt;p&gt;LOGO! 8 BM (incl.&#160;SIPLUS variants) contains multiple web-related vulnerabilities. These could allow an attacker to execute code remotely, put the device into a denial of service state or retrieve parts of the memory.&lt;/p&gt;
&lt;p&gt;The vulnerabilities are related to the hardware of the product. Siemens has released new hardware versions with the LOGO! V8.4 BM product family for several affected devices in which several of those vulnerabilities are fixed. Siemens is working on new hardware versions for the SIPLUS devices to address this issue further. See the chapter &#8220;Additional Information&#8221; below for more details.&lt;/p&gt;
&lt;p&gt;For more information please also refer to the related product support article: &lt;a href="https://support.industry.siemens.com/cs/ww/en/view/109826554/" class="uri"&gt;https://support.industry.siemens.com/cs/ww/en/view/109826554/&lt;/a&gt;.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-892915.html</id>
    <title>SSA-892915 V1.0: Multiple Denial of Service Vulnerabilities in the Webserver of Industrial Products</title>
    <updated>2023-12-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-892915.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities in the affected products could allow an unauthorized attacker with network access to the webserver to perform a denial of service attack.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for SINAMICS S120 (incl.&#160;SIPLUS variants) and recommends to update to the latest version. Siemens recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-887801.html</id>
    <title>SSA-887801 V1.0: Information Disclosure Vulnerability in SIMATIC STEP 7 (TIA Portal)</title>
    <updated>2023-12-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-887801.html" rel="alternate"/>
    <summary>&lt;p&gt;Siemens has released a new version of STEP 7 (TIA Portal) that fixes an information disclosure vulnerability. A local attacker could gain access to the access level password of the SIMATIC S7-1200 and S7-1500 CPUs, when entered by a legitimate user in the hardware configuration of the affected application.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-844582.html</id>
    <title>SSA-844582 V1.0: Electromagnetic Fault Injection in LOGO! V8.3 BM Devices Results in Broken LOGO! V8.3 Product CA</title>
    <updated>2023-12-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-844582.html" rel="alternate"/>
    <summary>&lt;p&gt;LOGO! V8.3 BM (incl.&#160;SIPLUS variants) devices contain a vulnerability that could allow an electromagnetic fault injection. This could allow an attacker to dump and debug the firmware, including the manipulation of memory. Further actions could allow to inject public keys of custom created key pairs which are then signed by the LOGO! V8.3 Product CA.&lt;/p&gt;
&lt;p&gt;The vulnerability is related to the specific hardware architecture of the LOGO! V8.3 BM. Siemens has released new hardware versions with the LOGO! V8.4 BM product family for several affected devices in which the vulnerability is fixed and the Product CA private key is rotated. Siemens is working on new hardware versions for the SIPLUS devices to address this issue further. See the chapter &#8220;Additional Information&#8221; below for more details.&lt;/p&gt;
&lt;p&gt;For more information please also refer to the related product support article: &lt;a href="https://support.industry.siemens.com/cs/ww/en/view/109826554/" class="uri"&gt;https://support.industry.siemens.com/cs/ww/en/view/109826554/&lt;/a&gt;.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-831302.html</id>
    <title>SSA-831302 V1.3 (Last Update: 2023-12-12): Vulnerabilities in the BIOS of the SIMATIC S7-1500 TM MFP V1.0</title>
    <updated>2023-12-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-831302.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities have been identified in the BIOS of the SIMATIC S7-1500 TM MFP V1.0.&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-794697.html</id>
    <title>SSA-794697 V1.5 (Last Update: 2023-12-12): Vulnerabilities in the Linux Kernel of the SIMATIC S7-1500 TM MFP V1.0</title>
    <updated>2023-12-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-794697.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities have been identified in the Linux Kernel of the SIMATIC S7-1500 TM MFP V1.0.&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-783481.html</id>
    <title>SSA-783481 V1.1 (Last Update: 2023-12-12): Denial-of-Service Vulnerability in LOGO! 8 BM</title>
    <updated>2023-12-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-783481.html" rel="alternate"/>
    <summary>&lt;p&gt;A Denial-of-Service vulnerability has been identified in LOGO! 8 BM. This vulnerability could allow an attacker to crash a device, if a user is tricked into loading a malicious project file onto an affected device.&lt;/p&gt;
&lt;p&gt;The vulnerability is related to the hardware of the product. Siemens has released new hardware versions with the LOGO! V8.4 BM product family for several affected devices in which this vulnerability is fixed. Siemens is working on new hardware versions for the SIPLUS devices to address this issue further. See the chapter &#8220;Additional Information&#8221; below for more details.&lt;/p&gt;
&lt;p&gt;For more information please also refer to the related product support article: &lt;a href="https://support.industry.siemens.com/cs/ww/en/view/109826554/" class="uri"&gt;https://support.industry.siemens.com/cs/ww/en/view/109826554/&lt;/a&gt;.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-711309.html</id>
    <title>SSA-711309 V1.3 (Last Update: 2023-12-12): Denial of Service Vulnerability in the OPC UA Implementations of SIMATIC Products</title>
    <updated>2023-12-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-711309.html" rel="alternate"/>
    <summary>&lt;p&gt;The OPC UA implementations (ANSI C and C++) as used in several SIMATIC products contain a denial of service vulnerability that could allow an unauthenticated remote attacker to create a denial of service condition by sending a specially crafted certificate.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-699386.html</id>
    <title>SSA-699386 V1.1 (Last Update: 2023-12-12): Multiple Vulnerabilities in SCALANCE XB-200 / XC-200 / XP-200 / XF-200BA / XR-300WG Family before V4.5</title>
    <updated>2023-12-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-699386.html" rel="alternate"/>
    <summary>&lt;p&gt;SCALANCE XB-200/XC-200/XP-200/XF-200BA/XR-300WG Family before V4.5 is affected by multiple vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-693975.html</id>
    <title>SSA-693975 V1.0: Denial-of-Service Vulnerability in the Web Server of Industrial Products</title>
    <updated>2023-12-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-693975.html" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in the affected products could allow an unauthorized attacker with network access to the webserver of an affected device to perform a denial-of-service attack.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for SINAMICS S210 (6SL5&#8230;) and recommends to update to the latest version. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-618620.html</id>
    <title>SSA-618620 V1.2 (Last Update: 2023-12-12): Vulnerabilities in Boot Loader (U-Boot) of RUGGEDCOM ROS Devices</title>
    <updated>2023-12-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-618620.html" rel="alternate"/>
    <summary>&lt;p&gt;The boot loader within RUGGEDCOM ROS contains two vulnerabilities in the loading process of the operating system kernel. The more severe of these vulnerabilities could allow an attacker with local access to the device to execute arbitrary code on an affected device.&lt;/p&gt;
&lt;p&gt;Siemens recommends specific countermeasures to mitigate this issue.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-592380.html</id>
    <title>SSA-592380 V1.0: Denial of Service Vulnerability in SIMATIC S7-1500 CPUs and related products</title>
    <updated>2023-12-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-592380.html" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability has been identified in the SIMATIC S7-1500 CPU family and related products that could allow an attacker to cause a denial of service condition. In order to exploit the vulnerability, an attacker must have access to the affected devices on port 102/tcp.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-482757.html</id>
    <title>SSA-482757 V1.3 (Last Update: 2023-12-12): Missing Immutable Root of Trust in S7-1500 CPU devices</title>
    <updated>2023-12-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-482757.html" rel="alternate"/>
    <summary>&lt;p&gt;Affected models of the S7-1500 CPU product family do not contain an Immutable Root of Trust in Hardware. With this the integrity of the code executed on the device can not be validated during load-time. An attacker with physical access to the device could use this to replace the boot image of the device and execute arbitrary code.&lt;/p&gt;
&lt;p&gt;As exploiting this vulnerability requires physical tampering with the product, Siemens recommends to assess the risk of physical access to the device in the target deployment and to implement measures to make sure that only trusted personnel have access to the physical hardware.&lt;/p&gt;
&lt;p&gt;The vulnerability is related to the hardware of the product. Siemens has released new hardware versions for several CPU types of the S7-1500 product family in which this vulnerability is fixed and is working on new hardware versions for remaining PLC types to address this vulnerability completely. See the chapter &#8220;Additional Information&#8221; below for more details.&lt;/p&gt;
&lt;p&gt;For more information please also refer to the related product support article: &lt;a href="https://support.industry.siemens.com/cs/ww/en/view/109816536/" class="uri"&gt;https://support.industry.siemens.com/cs/ww/en/view/109816536/&lt;/a&gt;.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-480095.html</id>
    <title>SSA-480095 V1.0: Vulnerabilities in the Web Interface of SICAM Q100 Devices before V2.60</title>
    <updated>2023-12-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-480095.html" rel="alternate"/>
    <summary>&lt;p&gt;The web server of SICAM Q100 devices, versions before V2.60, contains a Cross Site Request Forgery (CSRF) vulnerability and is missing cookie protection flags. This could allow an attacker to perform arbitrary actions on the device on behalf of a legitimate user, or impersonate that user.&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssb-439005.html</id>
    <title>SSB-439005 V5.8 (Last Update: 2023-12-12): Vulnerabilities in the additional GNU/Linux subsystem of the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP &lt; V3.1</title>
    <updated>2023-12-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssb-439005.html" rel="alternate"/>
    <summary>
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-398330.html</id>
    <title>SSA-398330 V1.0: Vulnerabilities in the additional GNU/Linux subsystem of the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP V3.1</title>
    <updated>2023-12-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-398330.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities have been identified in the additional GNU/Linux subsystem of the firmware version V3.1 for the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP (incl.&#160;SIPLUS variant).&lt;/p&gt;
&lt;p&gt;These GNU/Linux vulnerabilities have been externally identified. Siemens is preparing fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
&lt;p&gt;Note: This SSA advises vulnerabilities for firmware version V3.1 only; for versions &amp;lt; V3.1 refer to Siemens Security Bulletin SSB-439005 (&lt;a href="https://cert-portal.siemens.com/productcert/html/ssb-439005.html" class="uri"&gt;https://cert-portal.siemens.com/productcert/html/ssb-439005.html&lt;/a&gt;).&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-280603.html</id>
    <title>SSA-280603 V1.0: Denial of Service Vulnerability in SINUMERIK ONE and SINUMERIK MC</title>
    <updated>2023-12-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-280603.html" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability has been identified in the integrated S7-1500 CPU of SINUMERIK ONE and SINUMERIK MC products that could allow an attacker to cause a denial of service condition. In order to exploit the vulnerability, an attacker must have access to the affected devices on port 102/tcp.&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
&lt;p&gt;Note: The affected integrated S7-1500 CPUs and related products are advised in [1].&lt;/p&gt;
&lt;p&gt;[1] &lt;a href="https://cert-portal.siemens.com/productcert/html/ssa-592380.html"&gt;https://cert-portal.siemens.com/productcert/html/ssa-592380.html&lt;/a&gt;&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-264815.html</id>
    <title>SSA-264815 V1.2 (Last Update: 2023-12-12): Type Confusion Vulnerability in OpenSSL X.400 Address Processing in SIMATIC Products</title>
    <updated>2023-12-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-264815.html" rel="alternate"/>
    <summary>&lt;p&gt;Several SIMATIC products are affected by a type confusion vulnerability relating to OpenSSL X.400 address processing (CVE-2023-0286), as disclosed disclosed on 2023-02-07 at &lt;a href="https://www.openssl.org/news/secadv/20230207.txt" class="uri"&gt;https://www.openssl.org/news/secadv/20230207.txt&lt;/a&gt;.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-264814.html</id>
    <title>SSA-264814 V1.3 (Last Update: 2023-12-12): Timing Based Side Channel Vulnerability in the OpenSSL RSA Decryption in SIMATIC Products</title>
    <updated>2023-12-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-264814.html" rel="alternate"/>
    <summary>&lt;p&gt;Several SIMATIC products are affected by a timing based side channel vulnerability in the OpenSSL RSA Decryption (CVE-2023-4304), as disclosed on 2023-02-07 at &lt;a href="https://www.openssl.org/news/secadv/20230207.txt" class="uri"&gt;https://www.openssl.org/news/secadv/20230207.txt&lt;/a&gt;.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-256353.html</id>
    <title>SSA-256353 V1.5 (Last Update: 2023-12-12): Third-Party Component Vulnerabilities in RUGGEDCOM ROS</title>
    <updated>2023-12-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-256353.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities affect various third-party components of the RUGGEDCOM Operating System (ROS). If exploited, an attacker could cause a denial-of-service, act as a man-in-the-middle or retrieval of sensitive information or gain privileged functions.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-240541.html</id>
    <title>SSA-240541 V1.2 (Last Update: 2023-12-12): WIBU Systems CodeMeter Heap Buffer Overflow Vulnerability in Industrial Products</title>
    <updated>2023-12-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-240541.html" rel="alternate"/>
    <summary>&lt;p&gt;WIBU Systems published information about a heap buffer overflow vulnerability and associated fix releases of CodeMeter Runtime, a product provided by WIBU Systems and used in several Siemens industrial products for license management.&lt;/p&gt;
&lt;p&gt;The vulnerability is described in the section &#8220;Vulnerability Classification&#8221; below and got assigned the CVE ID CVE-2023-3935. Successful exploitation of this vulnerability could allow&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;an unauthenticated remote attacker to execute code on vulnerable products, where CodeMeter Runtime (i.e., CodeMeter.exe) is configured as a server, or&lt;/li&gt;
&lt;li&gt;an authenticated local attacker to gain root/admin privileges on vulnerable products, where CodeMeter Runtime is configured as a client.&lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-180704.html</id>
    <title>SSA-180704 V1.0: Multiple Vulnerabilities in SCALANCE M-800/S615 Family before V8.0</title>
    <updated>2023-12-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-180704.html" rel="alternate"/>
    <summary>&lt;p&gt;SCALANCE M-800/S615 Family before V8.0 is affected by multiple vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for SCALANCE M-800 / S615 and recommends to update to the latest version. Siemens recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-118850.html</id>
    <title>SSA-118850 V1.0: Denial of Service Vulnerability in the OPC UA Implementation in SINUMERIK ONE and SINUMERIK MC</title>
    <updated>2023-12-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-118850.html" rel="alternate"/>
    <summary>&lt;p&gt;SINUMERIK ONE and SINUMERIK MC products are affected by a denial of service vulnerability in the OPC UA implementation of the integrated S7-1500 CPU. The vulnerability in the integrated S7-1500 CPU is documented in more detail in SSA-711309 [1].&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
&lt;p&gt;[1] &lt;a href="https://cert-portal.siemens.com/productcert/html/ssa-711309.html" class="uri"&gt;https://cert-portal.siemens.com/productcert/html/ssa-711309.html&lt;/a&gt;&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-077170.html</id>
    <title>SSA-077170 V1.0: Multiple Vulnerabilities in SINEC INS before V1.0 SP2 Update 2</title>
    <updated>2023-12-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-077170.html" rel="alternate"/>
    <summary>&lt;p&gt;SINEC INS before V1.0 SP2 Update 2 is affected by multiple vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for SINEC INS and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-068047.html</id>
    <title>SSA-068047 V1.0: Multiple Vulnerabilities in SCALANCE M-800/S615 Family before V7.2.2</title>
    <updated>2023-12-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-068047.html" rel="alternate"/>
    <summary>&lt;p&gt;SCALANCE M-800/S615 Family before V7.2.2 is affected by multiple vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-042050.html</id>
    <title>SSA-042050 V1.1 (Last Update: 2023-12-12): Know-How Protection Mechanism Failure in TIA Portal</title>
    <updated>2023-12-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-042050.html" rel="alternate"/>
    <summary>&lt;p&gt;The know-how protection feature in Totally Integrated Automation Portal (TIA Portal) does not properly update the encryption of existing program blocks when a project file is updated. This could allow attackers with access to the project file to recover previous - yet unprotected - versions of the project without the knowledge of the know-how protection password.&lt;/p&gt;
&lt;p&gt;Siemens is preparing fix versions and recommends countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-981975.html</id>
    <title>SSA-981975 V1.1 (Last Update: 2023-11-14): Information Disclosure Vulnerability in Intel-CPUs (CVE-2022-40982) Impacting SIMATIC IPCs</title>
    <updated>2023-11-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-981975.html" rel="alternate"/>
    <summary>&lt;p&gt;Several Intel-CPU based SIMATIC IPCs are affected by an information exposure vulnerability (CVE-2022-40982) in the CPU that could allow an authenticated local user to potentially read other users&#8217; data [1].&lt;/p&gt;
&lt;p&gt;The issue is also known as &#8220;Gather Data Sampling&#8221; (GDS) or Downfall Attacks. For details refer to the chapter &#8220;Additional Information&#8221;.&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
&lt;p&gt;[1] &lt;a href="https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00828.html" class="uri"&gt;https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00828.html&lt;/a&gt;&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-975766.html</id>
    <title>SSA-975766 V1.1 (Last Update: 2023-11-14): Open Design Alliance Drawings SDK Vulnerability in Solid Edge</title>
    <updated>2023-11-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-975766.html" rel="alternate"/>
    <summary>&lt;p&gt;Solid Edge is affected by a file parsing vulnerability in Drawings SDK from Open Design Alliance. If a user is tricked to open a malicious DWG file with the affected application, an attacker could leverage the vulnerability to crash the application or execute arbitrary code.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
&lt;p&gt;Note:&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;This advisory covers security vulnerabilities recently disclosed by Open Design Alliance [0]&lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;[0] &lt;a href="https://www.opendesign.com/security-advisories"&gt;https://www.opendesign.com/security-advisories&lt;/a&gt;&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-908185.html</id>
    <title>SSA-908185 V1.1 (Last Update: 2023-11-14): Mirror Port Isolation Vulnerability in RUGGEDCOM ROS Devices</title>
    <updated>2023-11-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-908185.html" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability was identified in RUGGEDCOM ROS devices with mirror port enabled, that could allow an attacker to inject information into the network via the mirror port.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-887122.html</id>
    <title>SSA-887122 V1.0: X_T File Parsing Vulnerabilities in Simcenter Femap</title>
    <updated>2023-11-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-887122.html" rel="alternate"/>
    <summary>&lt;p&gt;Simcenter Femap is affected by out of bounds write vulnerabilities that could be triggered when the application reads files in X_T format. If a user is tricked to open a malicious file with the affected applications, an attacker could leverage the vulnerability to perform remote code execution in the context of the current process.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-840800.html</id>
    <title>SSA-840800 V1.4 (Last Update: 2023-11-14): Code Injection Vulnerability in RUGGEDCOM ROS</title>
    <updated>2023-11-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-840800.html" rel="alternate"/>
    <summary>&lt;p&gt;RUGGEDCOM ROS-based devices are vulnerable to a web-based code injection attack. To execute this attack, it is necessary to access the system via the Command Line Interface (CLI).&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-831302.html</id>
    <title>SSA-831302 V1.2 (Last Update: 2023-11-14): Vulnerabilities in the BIOS of the SIMATIC S7-1500 TM MFP V1.0</title>
    <updated>2023-11-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-831302.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities have been identified in the BIOS of the SIMATIC S7-1500 TM MFP V1.0.&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-794697.html</id>
    <title>SSA-794697 V1.4 (Last Update: 2023-11-14): Vulnerabilities in the Linux Kernel of the SIMATIC S7-1500 TM MFP V1.0</title>
    <updated>2023-11-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-794697.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities have been identified in the Linux Kernel of the SIMATIC S7-1500 TM MFP V1.0.&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-787941.html</id>
    <title>SSA-787941 V1.4 (Last Update: 2023-11-14): Denial of Service Vulnerability in RUGGEDCOM ROS devices</title>
    <updated>2023-11-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-787941.html" rel="alternate"/>
    <summary>&lt;p&gt;RUGGEDCOM ROS-based devices are vulnerable to a denial of service attack (Slowloris). By sending partial HTTP requests nonstop, with none completed, the affected web servers will be waiting for the completion of each request, occupying all available HTTP connections. The web server recovers by itself once the attack ends.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-770902.html</id>
    <title>SSA-770902 V1.1 (Last Update: 2023-11-14): Denial of Service Vulnerability in the Web Server of RUGGEDCOM ROS Devices</title>
    <updated>2023-11-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-770902.html" rel="alternate"/>
    <summary>&lt;p&gt;A denial of service vulnerability could allow an unauthorized attacker to cause total loss of availability in the web server of the affected devices.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-764417.html</id>
    <title>SSA-764417 V1.8 (Last Update: 2023-11-14): Weak Encryption Vulnerability in RUGGEDCOM ROS Devices</title>
    <updated>2023-11-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-764417.html" rel="alternate"/>
    <summary>&lt;p&gt;The SSH server on RUGGEDCOM ROS devices is configured to offer weak ciphers by default. This could allow an unauthorized attacker in a man-in-the-middle position to read and modify any data passed over the connection between legitimate clients and the affected device.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-711309.html</id>
    <title>SSA-711309 V1.2 (Last Update: 2023-11-14): Denial of Service Vulnerability in the OPC UA Implementations of SIMATIC Products</title>
    <updated>2023-11-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-711309.html" rel="alternate"/>
    <summary>&lt;p&gt;The OPC UA implementations (ANSI C and C++) as used in several SIMATIC products contain a denial of service vulnerability that could allow an unauthenticated remote attacker to create a denial of service condition by sending a specially crafted certificate.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-699386.html</id>
    <title>SSA-699386 V1.0: Multiple Vulnerabilities in SCALANCE XB-200 / XC-200 / XP-200 / XF-200BA / XR-300WG Family before V4.5</title>
    <updated>2023-11-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-699386.html" rel="alternate"/>
    <summary>&lt;p&gt;SCALANCE XB-200/XC-200/XP-200/XF-200BA/XR-300WG Family before V4.5 is affected by multiple vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-691715.html</id>
    <title>SSA-691715 V1.3 (Last Update: 2023-11-14): Vulnerability in OPC Foundation Local Discovery Server Affecting Siemens Products</title>
    <updated>2023-11-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-691715.html" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability was identified in OPC Foundation Local Discovery Server which also affects Siemens products that could allow an attacker to escalate privileges under certain circumstances.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for SIMATIC WinCC and recommends to update to the latest version. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-647455.html</id>
    <title>SSA-647455 V1.1 (Last Update: 2023-11-14): Multiple Vulnerabilities in Nozomi Guardian/CMC before 22.6.2 on RUGGEDCOM APE1808 devices</title>
    <updated>2023-11-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-647455.html" rel="alternate"/>
    <summary>&lt;p&gt;Nozomi Networks has published information on vulnerabilities in &lt;a href="https://security.nozominetworks.com/"&gt;Nozomi Guardian/CMC before V22.6.2&lt;/a&gt;. This advisory lists the related Siemens Industrial products affected by these vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends specific countermeasures for products where updates are not, or not yet available. Customers are advised to consult and implement the workarounds provided in Nozomi Network&#8217;s upstream security notifications.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-625850.html</id>
    <title>SSA-625850 V1.0: Multiple WIBU Systems CodeMeter Vulnerabilities Affecting the Desigo CC Product Family</title>
    <updated>2023-11-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-625850.html" rel="alternate"/>
    <summary>&lt;p&gt;Versions V5.0 through V7 of the Desigo CC product family (Desigo CC, Desigo CC Compact, Desigo CC Connect, Cerberus DMS) are affected by multiple vulnerabilities in the underlying third-party component WIBU Systems CodeMeter Runtime. Successful exploitation of these vulnerabilities could allow remote attackers to execute arbitrary code on the Desigo CC server, or create a denial of service condition. While all verison lines V5.0, V5.1 and V6 are affected by all listed vulnerabilities, V7 is only affected by CVE-2023-3935.&lt;/p&gt;
&lt;p&gt;Siemens has released a patch to update the CodeMeter Runtime component and recommends to apply the patch on affected systems.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-617233.html</id>
    <title>SSA-617233 V1.0: Urgent/11 TCP/IP Stack Vulnerabilities in SIPROTEC 4 7SJ66 Devices</title>
    <updated>2023-11-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-617233.html" rel="alternate"/>
    <summary>&lt;p&gt;SIPROTEC 4 7SJ66 devices are affected by multiple security vulnerabilities due to the underlying Wind River VxWorks network stack. This stack is affected by nine of the eleven vulnerabilities that are also known as &#8220;URGENT/11&#8221;.&lt;/p&gt;
&lt;p&gt;The vulnerabilities could allow an attacker to execute a variety of exploits for the purpose of denial of service (DoS), data extraction, remote code execution, etc. targeting availability, integrity and confidentiality of the devices and data.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for SIPROTEC 4 7SJ66 and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-478780.html</id>
    <title>SSA-478780 V1.0: Multiple WRL File Parsing Vulnerabilities in  Tecnomatix Plant Simulation</title>
    <updated>2023-11-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-478780.html" rel="alternate"/>
    <summary>&lt;p&gt;Siemens Tecnomatix Plant Simulation contains multiple file parsing vulnerabilities that could be triggered when the application reads files in WRL format. If a user is tricked to open a malicious file with any of the affected products, this could lead the application to crash or potentially lead to arbitrary code execution.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-457702.html</id>
    <title>SSA-457702 V1.0: Wi-Fi Encryption Bypass Vulnerabilities in SCALANCE W700 Product Family</title>
    <updated>2023-11-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-457702.html" rel="alternate"/>
    <summary>&lt;p&gt;The SCALANCE W700 devices are affected by Wi-Fi encryption bypass vulnerabilities (&#8220;Framing Frames&#8221;) that could allow an attacker to disclose sensitive information or to steal the victims session. CVE-2022-47522 is divided into 3 different scenarios which are described in the section &#8220;Additional Information&#8221;.&lt;/p&gt;
&lt;p&gt;Siemens recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-456933.html</id>
    <title>SSA-456933 V1.0: Multiple Vulnerabilities in SIMATIC PCS neo before V4.1</title>
    <updated>2023-11-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-456933.html" rel="alternate"/>
    <summary>&lt;p&gt;SIMATIC PCS neo before V4.1 is affected by multiple vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for SIMATIC PCS neo and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssb-439005.html</id>
    <title>SSB-439005 V5.7 (Last Update: 2023-11-14): Vulnerabilities in the additional GNU/Linux subsystem of the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP</title>
    <updated>2023-11-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssb-439005.html" rel="alternate"/>
    <summary>
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-407785.html</id>
    <title>SSA-407785 V1.1 (Last Update: 2023-11-14): Multiple X_T File Parsing Vulnerabilities in Parasolid and Teamcenter Visualization</title>
    <updated>2023-11-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-407785.html" rel="alternate"/>
    <summary>&lt;p&gt;Parasolid and Teamcenter Visualization are affected by memory corruption vulnerabilities that could be triggered when the application reads files in X_T format. If a user is tricked to open a malicious file with the affected applications, an attacker could leverage the vulnerability to perform remote code execution or denial of service in the context of the current process.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-363107.html</id>
    <title>SSA-363107 V1.4 (Last Update: 2023-11-14): An Improper Initialization Vulnerability Affects SIMATIC WinCC Kiosk Mode</title>
    <updated>2023-11-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-363107.html" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability was found in SIMATIC WinCC that could allow authenticated attackers to escape the Kiosk Mode.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-309571.html</id>
    <title>SSA-309571 V1.9 (Last Update: 2023-11-14): IPU 2021.1 Vulnerabilities in Siemens Industrial Products using Intel CPUs (June 2021)</title>
    <updated>2023-11-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-309571.html" rel="alternate"/>
    <summary>&lt;p&gt;Intel has published information on vulnerabilities in Intel products in &lt;a href="https://blogs.intel.com/technology/2021/06/intel-security-advisories-for-june-2021/"&gt;June 2021&lt;/a&gt;. This advisory lists the related Siemens Industrial products affected by these vulnerabilities that can be patched by applying the corresponding BIOS update.&lt;/p&gt;
&lt;p&gt;In this advisory we summarize:&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;&lt;p&gt;&#8220;2021.1 IPU &#8211; Intel&#174; CSME, SPS and LMS Advisory&#8221; Intel-SA-00459,&lt;/p&gt;&lt;/li&gt;
&lt;li&gt;&lt;p&gt;&#8220;2021.1 IPU &#8211; BIOS Advisory&#8221; Intel-SA-00463,&lt;/p&gt;&lt;/li&gt;
&lt;li&gt;&lt;p&gt;&#8220;2021.1 IPU &#8211; Intel&#174; Processor Advisory&#8221; Intel-SA-00464, and&lt;/p&gt;&lt;/li&gt;
&lt;li&gt;&lt;p&gt;&#8220;2021.1 IPU - Intel Atom&#174; Processor Advisory&#8221; Intel-SA-00465.&lt;/p&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;Siemens has released updates for several affected products and is currently working on BIOS updates that include chipset microcode updates for further products.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-306654.html</id>
    <title>SSA-306654 V1.8 (Last Update: 2023-11-14): Insyde BIOS Vulnerabilities in Siemens Industrial Products</title>
    <updated>2023-11-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-306654.html" rel="alternate"/>
    <summary>&lt;p&gt;Insyde has published information on vulnerabilities in Insyde BIOS in &lt;a href="https://www.insyde.com/security-pledge"&gt;February 2022&lt;/a&gt;. This advisory lists the Siemens Industrial products affected by these vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-292063.html</id>
    <title>SSA-292063 V1.0: Multiple Vulnerabilities in Nozomi Guardian/CMC before 22.6.3 and 23.1.0 on RUGGEDCOM APE1808 devices</title>
    <updated>2023-11-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-292063.html" rel="alternate"/>
    <summary>&lt;p&gt;Nozomi Networks has published information on vulnerabilities in &lt;a href="https://security.nozominetworks.com/"&gt;Nozomi Guardian/CMC before V22.6.3 and 23.1.0&lt;/a&gt;. This advisory lists the related Siemens Industrial products affected by these vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends specific countermeasures for products where updates are not, or not yet available. Customers are advised to consult and implement the workarounds provided in Nozomi Network&#8217;s upstream security notifications.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-268517.html</id>
    <title>SSA-268517 V1.0: Code Execution Vulnerability (libwebp CVE-2023-4863) in Mendix Studio Pro</title>
    <updated>2023-11-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-268517.html" rel="alternate"/>
    <summary>&lt;p&gt;Mendix Studio Pro is vulnerable to an out of bounds write vulnerability in the integrated libwebp library (CVE-2023-4863), that could allow an attacker to execute code in the context of a victim user&#8217;s system.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-264814.html</id>
    <title>SSA-264814 V1.2 (Last Update: 2023-11-14): Timing Based Side Channel Vulnerability in the OpenSSL RSA Decryption in SIMATIC Products</title>
    <updated>2023-11-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-264814.html" rel="alternate"/>
    <summary>&lt;p&gt;Several SIMATIC products are affected by a timing based side channel vulnerability in the OpenSSL RSA Decryption (CVE-2023-4304), as disclosed on 2023-02-07 at &lt;a href="https://www.openssl.org/news/secadv/20230207.txt" class="uri"&gt;https://www.openssl.org/news/secadv/20230207.txt&lt;/a&gt;.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-197270.html</id>
    <title>SSA-197270 V1.0: Information Disclosure Vulnerability in Siemens OPC UA Modeling Editor (SiOME)</title>
    <updated>2023-11-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-197270.html" rel="alternate"/>
    <summary>&lt;p&gt;Siemens OPC UA Modeling Editor (SiOME) is affected by an XML external entity (XXE) injection vulnerability that could allow an attacker to interfere with an application&#8217;s processing of XML data and read arbitrary files in the system.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version for Siemens OPC UA Modelling Editor (SiOME) and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-150063.html</id>
    <title>SSA-150063 V1.0: Multiple Vulnerabilities in SINEC PNI before V2.0</title>
    <updated>2023-11-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-150063.html" rel="alternate"/>
    <summary>&lt;p&gt;SINEC PNI before V2.0 is affected by multiple vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for SINEC PNI and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-137900.html</id>
    <title>SSA-137900 V1.0: Multiple Vulnerabilities in COMOS</title>
    <updated>2023-11-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-137900.html" rel="alternate"/>
    <summary>&lt;p&gt;COMOS is affected by multiple vulnerabilities that could allow an attacker to execute arbitrary code or cause denial of service condition, data infiltration or perform access control violations.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for COMOS and recommends to update to the latest version. Siemens recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-099606.html</id>
    <title>SSA-099606 V1.0: Multiple Vulnerabilities in SIMATIC MV500 before V3.3.5</title>
    <updated>2023-11-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-099606.html" rel="alternate"/>
    <summary>&lt;p&gt;SIMATIC MV500 before V3.3.5 is affected by multiple vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for SIMATIC MV500 and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-084182.html</id>
    <title>SSA-084182 V1.0: Privilege Escalation Vulnerability in Mendix Runtime</title>
    <updated>2023-11-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-084182.html" rel="alternate"/>
    <summary>&lt;p&gt;Mendix Runtime contains a capture-replay flaw which could have an impact to apps built with the platform, if certain preconditions are met that depend on the app&#8217;s model and access control design. This could allow authenticated attackers to access or modify objects without proper authorization, or escalate privileges in the context of the vulnerable app.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-843070.html</id>
    <title>SSA-843070 V1.0: Multiple Vulnerabilities in SCALANCE W1750D</title>
    <updated>2023-10-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-843070.html" rel="alternate"/>
    <summary>&lt;p&gt;The SCALANCE W1750D device contains multiple vulnerabilities that could allow an attacker to inject commands or exploit buffer overflow vulnerabilities which could lead to sensitive information disclosure, unauthenticated denial of service or unauthenticated remote code execution.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-829656.html</id>
    <title>SSA-829656 V1.0: Stack Overflow Vulnerability in Xpedition Layout Browser</title>
    <updated>2023-10-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-829656.html" rel="alternate"/>
    <summary>&lt;p&gt;Siemens Xpedition Layout Browser consists of a stack overflow vulnerability that could be triggered when the application reads a malicious file in PCB format. If a user is tricked to open a malicious file with the affected product, this could lead the application to crash or potentially lead to arbitrary code execution.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for Xpedition Layout Browser and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-784849.html</id>
    <title>SSA-784849 V1.0: Direct Memory Access Vulnerabilities in SIMATIC CP Devices</title>
    <updated>2023-10-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-784849.html" rel="alternate"/>
    <summary>&lt;p&gt;Several SIMATIC CP devices contain direct memory access vulnerabilities that could allow an attacker to execute code, access the PROFINET network without restrictions or perform denial of service attacks.&lt;/p&gt;
&lt;p&gt;Siemens recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-770890.html</id>
    <title>SSA-770890 V1.0: Path Traversal Vulnerability in the Web Server of CPCI85 Firmware of SICAM A8000 Devices</title>
    <updated>2023-10-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-770890.html" rel="alternate"/>
    <summary>&lt;p&gt;The web server in the CPCI85 firmware of SICAM A8000 CP-8031 and CP-8050 is affected by a path traversal vulnerability that could allow an authenticated remote attacker to traverse directories on the system, download arbitrary files and potentially escalate privileges to the administrator role.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-712929.html</id>
    <title>SSA-712929 V2.4 (Last Update: 2023-10-10): Denial of Service Vulnerability in OpenSSL (CVE-2022-0778) Affecting Industrial Products</title>
    <updated>2023-10-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-712929.html" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in the openSSL component (CVE-2022-0778, [0]) could allow an attacker to create a denial of service condition by providing specially crafted elliptic curve certificates to products that use a vulnerable version of openSSL.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
&lt;p&gt;[0] &lt;a href="https://www.openssl.org/news/secadv/20220315.txt" class="uri"&gt;https://www.openssl.org/news/secadv/20220315.txt&lt;/a&gt;&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-711309.html</id>
    <title>SSA-711309 V1.1 (Last Update: 2023-10-10): Denial of Service Vulnerability in the OPC UA Implementations of SIMATIC Products</title>
    <updated>2023-10-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-711309.html" rel="alternate"/>
    <summary>&lt;p&gt;The OPC UA implementations (ANSI C and C++) as used in several SIMATIC products contain a denial of service vulnerability that could allow an unauthenticated remote attacker to create a denial of service condition by sending a specially crafted certificate.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-710008.html</id>
    <title>SSA-710008 V1.4 (Last Update: 2023-10-10): Multiple Web Vulnerabilities in SCALANCE Products</title>
    <updated>2023-10-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-710008.html" rel="alternate"/>
    <summary>&lt;p&gt;SCALANCE devices contain multiple vulnerabilities in MSPS based product lines that could allow authenticated remote attackers to execute custom code or create a XSS situation, as well as unauthenticated remote attackers to create a denial of service condition.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-647455.html</id>
    <title>SSA-647455 V1.0: Multiple Vulnerabilities in Nozomi Guardian/CMC before 22.6.2 on RUGGEDCOM APE1808 devices</title>
    <updated>2023-10-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-647455.html" rel="alternate"/>
    <summary>&lt;p&gt;Nozomi Networks has published information on vulnerabilities in &lt;a href="https://security.nozominetworks.com/"&gt;Nozomi Guardian/CMC before V22.6.2&lt;/a&gt;. This advisory lists the related Siemens Industrial products affected by these vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends specific countermeasures for products where updates are not, or not yet available. Customers are advised to consult and implement the workarounds provided in Nozomi Network&#8217;s upstream security notifications.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-594373.html</id>
    <title>SSA-594373 V1.0: Cross-Site-Scripting (XSS) Vulnerability in SINEMA Server V14</title>
    <updated>2023-10-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-594373.html" rel="alternate"/>
    <summary>&lt;p&gt;SINEMA Server V14 improperly sanitizes certain SNMP configuration data retrieved from monitored devices. An attacker with access to a monitored device could perform a stored cross-site scripting (XSS) attack that may lead to arbitrary code execution with &lt;code&gt;SYSTEM&lt;/code&gt; privileges on the application server.&lt;/p&gt;
&lt;p&gt;Siemens recommends to migrate to its successor product SINEC NMS V2.0 or later. Siemens recommends to apply specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-524778.html</id>
    <title>SSA-524778 V1.0: File Parsing Vulnerabilities in Tecnomatix Plant Simulation</title>
    <updated>2023-10-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-524778.html" rel="alternate"/>
    <summary>&lt;p&gt;Siemens Tecnomatix Plant Simulation contains multiple vulnerabilities that could be triggered when the application reads SPP and IGS files. If a user is tricked to open a malicious file using the affected application, this could lead to a crash, and potentially also to arbitrary code execution on the target host system.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-516174.html</id>
    <title>SSA-516174 V1.1 (Last Update: 2023-10-10): Wi-Fi Encryption Bypass Vulnerabilities in SCALANCE W1750D</title>
    <updated>2023-10-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-516174.html" rel="alternate"/>
    <summary>&lt;p&gt;The SCALANCE W1750D device is affected by Wi-Fi encryption bypass vulnerabilities (&#8220;Framing Frames&#8221;) that could allow an attacker to disclose sensitive information or to steal the victims session.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssb-439005.html</id>
    <title>SSB-439005 V5.6 (Last Update: 2023-10-10): Vulnerabilities in the additional GNU/Linux subsystem of the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP</title>
    <updated>2023-10-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssb-439005.html" rel="alternate"/>
    <summary>
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-413565.html</id>
    <title>SSA-413565 V1.3 (Last Update: 2023-10-10): Multiple Vulnerabilities in SCALANCE Products</title>
    <updated>2023-10-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-413565.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple SCALANCE devices are affected by several vulnerabilities that could allow an attacker to inject code, retrieve data as debug information as well as user CLI passwords or set the CLI to an irresponsive state.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-386812.html</id>
    <title>SSA-386812 V1.0: Remote Code Execution Vulnerability in Simcenter Amesim before V2021.1</title>
    <updated>2023-10-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-386812.html" rel="alternate"/>
    <summary>&lt;p&gt;Simcenter Amesim contains a vulnerable SOAP endpoint that could allow an unauthenticated remote attacker to perform DLL injection and execute arbitrary code in the context of the affected application process.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for Simcenter Amesim and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-363107.html</id>
    <title>SSA-363107 V1.3 (Last Update: 2023-10-10): An Improper Initialization Vulnerability Affects SIMATIC WinCC Kiosk Mode</title>
    <updated>2023-10-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-363107.html" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability was found in SIMATIC WinCC that could allow authenticated attackers to escape the Kiosk Mode.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-295483.html</id>
    <title>SSA-295483 V1.0: User Enumeration Vulnerability in Mendix Forgot Password Module</title>
    <updated>2023-10-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-295483.html" rel="alternate"/>
    <summary>&lt;p&gt;The Mendix Forgot Password module contains a user enumeration vulnerability that could allow an attacker to retrieve valid users.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-285795.html</id>
    <title>SSA-285795 V1.4 (Last Update: 2023-10-10): Denial of Service in OPC-UA in Industrial Products</title>
    <updated>2023-10-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-285795.html" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in the underlying third party component OPC UA ANSIC Stack (also called Legacy C-Stack) affects several industrial products. The vulnerability could cause a crash of the component that includes the vulnerable part of the stack.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-250085.html</id>
    <title>SSA-250085 V1.3 (Last Update: 2023-10-10): Multiple Vulnerabilities in SINEC NMS and SINEMA Server</title>
    <updated>2023-10-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-250085.html" rel="alternate"/>
    <summary>&lt;p&gt;SINEC NMS and SINEMA Server V14 contain multiple vulnerabilities that could allow an attacker to execute arbitrary code on the system, arbitrary commands on the local database or achieve privilege escalation.&lt;/p&gt;
&lt;p&gt;Siemens has released several updates for SINEC NMS and recommends to update to the latest version. Siemens recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-240541.html</id>
    <title>SSA-240541 V1.1 (Last Update: 2023-10-10): WIBU Systems CodeMeter Heap Buffer Overflow Vulnerability in Industrial Products</title>
    <updated>2023-10-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-240541.html" rel="alternate"/>
    <summary>&lt;p&gt;WIBU Systems published information about a heap buffer overflow vulnerability and associated fix releases of CodeMeter Runtime, a product provided by WIBU Systems and used in several Siemens industrial products for license management.&lt;/p&gt;
&lt;p&gt;The vulnerability is described in the section &#8220;Vulnerability Classification&#8221; below and got assigned the CVE ID CVE-2023-3935. Successful exploitation of this vulnerability could allow&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;an unauthenticated remote attacker to execute code on vulnerable products, where CodeMeter Runtime (i.e., CodeMeter.exe) is configured as a server, or&lt;/li&gt;
&lt;li&gt;an authenticated local attacker to gain root/admin privileges on vulnerable products, where CodeMeter Runtime is configured as a client.&lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-203374.html</id>
    <title>SSA-203374 V1.1 (Last Update: 2023-10-10): Multiple OpenSSL Vulnerabilities in SCALANCE W1750D Devices</title>
    <updated>2023-10-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-203374.html" rel="alternate"/>
    <summary>&lt;p&gt;The SCALANCE W1750D device contains multiple vulnerabilities in the integrated OpenSSL component that could allow an attacker to read memory contents, decrypt RSA-encrypted messages or create a denial of service condition.&lt;/p&gt;
&lt;p&gt;Siemens recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-160243.html</id>
    <title>SSA-160243 V1.0: Multiple Vulnerabilities in SINEC NMS before V2.0</title>
    <updated>2023-10-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-160243.html" rel="alternate"/>
    <summary>&lt;p&gt;SINEC NMS before V2.0 is affected by a code injection and a stored cross-site scripting vulnerability.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for SINEC NMS and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-134651.html</id>
    <title>SSA-134651 V1.0: Hard Coded SSH ID in CPCI85 Firmware of SICAM A8000 Devices</title>
    <updated>2023-10-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-134651.html" rel="alternate"/>
    <summary>&lt;p&gt;The CPCI85 firmware of SICAM A8000 CP-8031 and CP-8050 contains a hard-coded ID in the SSH &lt;code&gt;authorized_keys&lt;/code&gt; configuration file. An attacker with knowledge of the corresponding credential could login to the device via SSH. Only devices with activated debug support are affected.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-035466.html</id>
    <title>SSA-035466 V1.0: Incorrect Permission Assignment in SICAM PAS/PQS</title>
    <updated>2023-10-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-035466.html" rel="alternate"/>
    <summary>&lt;p&gt;SICAM PAS/PQS is affected by insecure permission assignments in application folders that could allow an authenticated local attacker to read and modify configuration data or to escalate privileges.&lt;/p&gt;
&lt;p&gt;Siemens has prepared a security patch and recommends to run it on affected systems to fix the permissions of the impacted folders. This security patch will be integral part of the upcoming SICAM PAS/PQS V8.22 and later versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-646240.html</id>
    <title>SSA-646240 V1.0: Sensitive Information Disclosure in SIMATIC PCS neo Administration Console</title>
    <updated>2023-09-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-646240.html" rel="alternate"/>
    <summary>&lt;p&gt;The Administration Console of SIMATIC PCS neo leaks Windows admin credentials. An attacker with local Windows access to the Administration Console could get the credentials, and impersonate the admin user, thereby gaining admin access to other Windows systems.&lt;/p&gt;
&lt;p&gt;Siemens has released a security patch for the affected products and recommends to install the patch.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-357182.html</id>
    <title>SSA-357182 V1.0: Local Privilege Escalation Vulnerability in Spectrum Power 7</title>
    <updated>2023-09-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-357182.html" rel="alternate"/>
    <summary>&lt;p&gt;Spectrum Power 7 is affected by a vulnerability that could allow an authenticated local attacker to inject arbitrary code to the update script and escalate privileges.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for Spectrum Power 7 and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-981975.html</id>
    <title>SSA-981975 V1.0: Information Disclosure Vulnerability in Intel-CPUs (CVE-2022-40982) Impacting SIMATIC IPCs</title>
    <updated>2023-09-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-981975.html" rel="alternate"/>
    <summary>&lt;p&gt;Several Intel-CPU based SIMATIC IPCs are affected by an information exposure vulnerability (CVE-2022-40982) in the CPU that could allow an authenticated local user to potentially read other users&#8217; data [1].&lt;/p&gt;
&lt;p&gt;The issue is also known as &#8220;Gather Data Sampling&#8221; (GDS) or Downfall Attacks. For details refer to the chapter &#8220;Additional Information&#8221;.&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
&lt;p&gt;[1] &lt;a href="https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00828.html" class="uri"&gt;https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00828.html&lt;/a&gt;&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-957369.html</id>
    <title>SSA-957369 V1.0: Insyde BIOS Vulnerabilities in RUGGEDCOM APE1808 Product Family</title>
    <updated>2023-09-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-957369.html" rel="alternate"/>
    <summary>&lt;p&gt;Insyde has published information on vulnerabilities in Insyde BIOS up to &lt;a href="https://www.insyde.com/security-pledge"&gt;August 2023&lt;/a&gt;. These vulnerabilities also affect the RUGGEDCOM APE1808 product family.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-831302.html</id>
    <title>SSA-831302 V1.1 (Last Update: 2023-09-12): Vulnerabilities in the BIOS of the SIMATIC S7-1500 TM MFP V1.0</title>
    <updated>2023-09-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-831302.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities have been identified in the BIOS of the SIMATIC S7-1500 TM MFP V1.0.&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-794697.html</id>
    <title>SSA-794697 V1.3 (Last Update: 2023-09-12): Vulnerabilities in the Linux Kernel of the SIMATIC S7-1500 TM MFP V1.0</title>
    <updated>2023-09-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-794697.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities have been identified in the Linux Kernel of the SIMATIC S7-1500 TM MFP V1.0.&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-787941.html</id>
    <title>SSA-787941 V1.3 (Last Update: 2023-09-12): Denial of Service Vulnerability in RUGGEDCOM ROS V4</title>
    <updated>2023-09-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-787941.html" rel="alternate"/>
    <summary>&lt;p&gt;RUGGEDCOM ROS-based V4 devices are vulnerable to a denial of service attack (Slowloris). By sending partial HTTP requests nonstop, with none completed, the affected web servers will be waiting for the completion of each request, occupying all available HTTP connections. The web server recovers by itself once the attack ends.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-764801.html</id>
    <title>SSA-764801 V1.2 (Last Update: 2023-09-12): File Parsing Vulnerabilities in Tecnomatix Plant Simulation</title>
    <updated>2023-09-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-764801.html" rel="alternate"/>
    <summary>&lt;p&gt;Siemens Tecnomatix Plant Simulation contains multiple vulnerabilities that could be triggered when the application reads PAR, SPP, STP and PRT files. If a user is tricked to open a malicious file using the affected application, this could lead to a crash, and potentially also to arbitrary code execution on the target host system.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-712929.html</id>
    <title>SSA-712929 V2.3 (Last Update: 2023-09-12): Denial of Service Vulnerability in OpenSSL (CVE-2022-0778) Affecting Industrial Products</title>
    <updated>2023-09-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-712929.html" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in the openSSL component (CVE-2022-0778, [0]) could allow an attacker to create a denial of service condition by providing specially crafted elliptic curve certificates to products that use a vulnerable version of openSSL.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
&lt;p&gt;[0] &lt;a href="https://www.openssl.org/news/secadv/20220315.txt" class="uri"&gt;https://www.openssl.org/news/secadv/20220315.txt&lt;/a&gt;&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-711309.html</id>
    <title>SSA-711309 V1.0: Denial of Service Vulnerability in the ANSI C OPC UA SDK of SIMATIC Products</title>
    <updated>2023-09-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-711309.html" rel="alternate"/>
    <summary>&lt;p&gt;The ANSI C OPC UA implementation as used in several SIMATIC products contains a denial of service vulnerability that could allow an unauthenticated remote attacker to create a denial of service condition by sending a specially crafted certificate.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-587547.html</id>
    <title>SSA-587547 V1.1 (Last Update: 2023-09-12): Unencrypted Storage of User Credentials in QMS Automotive</title>
    <updated>2023-09-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-587547.html" rel="alternate"/>
    <summary>&lt;p&gt;QMS Automotive contains a vulnerability that stores user credentials in plantext within the user database. This could allow an attacker to read credentials from memory.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for QMS Automotive and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-552874.html</id>
    <title>SSA-552874 V1.2 (Last Update: 2023-09-12): Denial of Service Vulnerability in SIPROTEC 5 Devices</title>
    <updated>2023-09-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-552874.html" rel="alternate"/>
    <summary>&lt;p&gt;Devices of the SIPROTEC 5 family contain a vulnerability related to secure client-initiated renegotiation. This could allow an unauthenticated attacker to cause a denial of service condition for the duration of the attack.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-478960.html</id>
    <title>SSA-478960 V1.7 (Last Update: 2023-09-12): Missing CSRF Protection in the Web Server Login Page of Industrial Controllers</title>
    <updated>2023-09-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-478960.html" rel="alternate"/>
    <summary>&lt;p&gt;The web server login page of affected products does not apply proper origin checking. This could allow authenticated remote attackers to track the activities of other users via a login cross-site request forgery attack..&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-450613.html</id>
    <title>SSA-450613 V1.1 (Last Update: 2023-09-12): Insyde BIOS Vulnerabilities in RUGGEDCOM APE1808 Product Family</title>
    <updated>2023-09-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-450613.html" rel="alternate"/>
    <summary>&lt;p&gt;Insyde has published information on vulnerabilities in Insyde BIOS on &lt;a href="https://www.insyde.com/security-pledge"&gt;November 8th 2022&lt;/a&gt;. These vulnerabilities also affect the RUGGEDCOM APE1808 product family.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssb-439005.html</id>
    <title>SSB-439005 V5.5 (Last Update: 2023-09-12): Vulnerabilities in the additional GNU/Linux subsystem of the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP</title>
    <updated>2023-09-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssb-439005.html" rel="alternate"/>
    <summary>
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-382653.html</id>
    <title>SSA-382653 V1.5 (Last Update: 2023-09-12): Multiple Denial of Service Vulnerabilities in Industrial Products</title>
    <updated>2023-09-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-382653.html" rel="alternate"/>
    <summary>&lt;p&gt;Affected SIMATIC firmware contains multiple vulnerabilities that could allow an unauthenticated attacker to perform a denial of service attack under certain conditions.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-322980.html</id>
    <title>SSA-322980 V1.2 (Last Update: 2023-09-12): Denial of Service Vulnerability in SIPROTEC 5 Devices</title>
    <updated>2023-09-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-322980.html" rel="alternate"/>
    <summary>&lt;p&gt;SIPROTEC 5 devices contain a null pointer dereference vulnerability in the web service. This could allow an attacker to send unauthenticated maliciously crafted http request that could cause denial of service condition of the device.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-278349.html</id>
    <title>SSA-278349 V1.0: Multiple WRL File Parsing Vulnerabilities in Teamcenter Visualization and JT2Go</title>
    <updated>2023-09-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-278349.html" rel="alternate"/>
    <summary>&lt;p&gt;Siemens JT2Go and Teamcenter Visualization are affected by file parsing vulnerabilities that could be triggered when the application reads files in WRL format. If a user is tricked to open a malicious file with any of the affected products, this could lead the application to crash or potentially lead to arbitrary code execution.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens recommends countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-264815.html</id>
    <title>SSA-264815 V1.1 (Last Update: 2023-09-12): Type Confusion Vulnerability in OpenSSL X.400 Address Processing in SIMATIC Products</title>
    <updated>2023-09-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-264815.html" rel="alternate"/>
    <summary>&lt;p&gt;Several SIMATIC products are affected by a type confusion vulnerability relating to OpenSSL X.400 address processing (CVE-2023-0286), as disclosed disclosed on 2023-02-07 at &lt;a href="https://www.openssl.org/news/secadv/20230207.txt" class="uri"&gt;https://www.openssl.org/news/secadv/20230207.txt&lt;/a&gt;.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-264814.html</id>
    <title>SSA-264814 V1.1 (Last Update: 2023-09-12): Timing Based Side Channel Vulnerability in the OpenSSL RSA Decryption in SIMATIC Products</title>
    <updated>2023-09-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-264814.html" rel="alternate"/>
    <summary>&lt;p&gt;Several SIMATIC products are affected by a timing based side channel vulnerability in the OpenSSL RSA Decryption (CVE-2023-4304), as disclosed on 2023-02-07 at &lt;a href="https://www.openssl.org/news/secadv/20230207.txt" class="uri"&gt;https://www.openssl.org/news/secadv/20230207.txt&lt;/a&gt;.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-240541.html</id>
    <title>SSA-240541 V1.0: WIBU Systems CodeMeter Heap Buffer Overflow Vulnerability in Industrial Products</title>
    <updated>2023-09-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-240541.html" rel="alternate"/>
    <summary>&lt;p&gt;WIBU Systems published information about a heap buffer overflow vulnerability and associated fix releases of CodeMeter Runtime, a product provided by WIBU Systems and used in several Siemens industrial products for license management.&lt;/p&gt;
&lt;p&gt;The vulnerability is described in the section &#8220;Vulnerability Classification&#8221; below and got assigned the CVE ID CVE-2023-3935. Successful exploitation of this vulnerability could allow&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;an unauthenticated remote attacker to execute code on vulnerable products, where CodeMeter Runtime (i.e., CodeMeter.exe) is configured as a server, or&lt;/li&gt;
&lt;li&gt;an authenticated local attacker to gain root/admin privileges on vulnerable products, where CodeMeter Runtime is configured as a client.&lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-190839.html</id>
    <title>SSA-190839 V1.0: X_T File Parsing Vulnerabilities in Parasolid</title>
    <updated>2023-09-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-190839.html" rel="alternate"/>
    <summary>&lt;p&gt;Parasolid is affected by out of bounds write vulnerabilities that could be triggered when the application reads files in X_T format. If a user is tricked to open a malicious file with the affected applications, an attacker could leverage the vulnerability to perform remote code execution in the context of the current process.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-147266.html</id>
    <title>SSA-147266 V1.0: Multiple Vulnerabilities in QMS Automotive before V12.39</title>
    <updated>2023-09-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-147266.html" rel="alternate"/>
    <summary>&lt;p&gt;QMS Automotive before V12.39 contains multiple vulnerabilities that could allow an attacker to perform malicious code injection, information disclosure or lead to a denial of service condition.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for QMS Automotive and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-975961.html</id>
    <title>SSA-975961 V1.0: Privilege Escalation Vulnerabilities in SICAM TOOLBOX II before V07.10</title>
    <updated>2023-08-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-975961.html" rel="alternate"/>
    <summary>&lt;p&gt;SICAM TOOLBOX II contains two vulnerabilities that could allow local attackers to execute code on the system with elevated privileges.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for SICAM TOOLBOX II and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-932528.html</id>
    <title>SSA-932528 V1.1 (Last Update: 2023-08-08): Multiple File Parsing Vulnerabilities in Solid Edge</title>
    <updated>2023-08-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-932528.html" rel="alternate"/>
    <summary>&lt;p&gt;Solid Edge is affected by multiple memory corruption vulnerabilities that could be triggered when the application reads specially crafted files in various formats such as DWG, IFC, OBJ or STP format. If a user is tricked to open a malicious file with the affected application, an attacker could leverage the vulnerability to crash the application or execute arbitrary code.&lt;/p&gt;
&lt;p&gt;Siemens has released several updates for Solid Edge SE2023 and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-908185.html</id>
    <title>SSA-908185 V1.0: Mirror Port Isolation Vulnerability in RUGGEDCOM ROS Devices</title>
    <updated>2023-08-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-908185.html" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability was identified in RUGGEDCOM ROS devices with mirror port enabled, that could allow an attacker to inject information into the network via the mirror port.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-851884.html</id>
    <title>SSA-851884 V1.2 (Last Update: 2023-08-08): Authentication Bypass Vulnerability in Mendix SAML Module</title>
    <updated>2023-08-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-851884.html" rel="alternate"/>
    <summary>&lt;p&gt;The Mendix SAML module insufficiently verifies the SAML assertions. This could allow unauthenticated remote attackers to bypass authentication and get access to the application.&lt;/p&gt;
&lt;p&gt;Mendix has provided fix releases for the Mendix SAML module and recommends to update to the latest version.&lt;/p&gt;
&lt;p&gt;Note: For compatibility reasons, fixes for several versions of the Mendix SAML module were introduced in two release steps:&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;&lt;p&gt;The first fix versions address CVE-2023-25957. It removes the vulnerability, except when the recommended, default configuration option &lt;code&gt;'Use Encryption'&lt;/code&gt; is disabled.&lt;/p&gt;&lt;/li&gt;
&lt;li&gt;&lt;p&gt;The second fix versions address CVE-2023-29129, which removes the issue for the non default configuration as well.&lt;/p&gt;&lt;/li&gt;
&lt;/ul&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-811403.html</id>
    <title>SSA-811403 V1.0: Multiple File Parsing Vulnerabilities in Solid Edge before V223 Update 7</title>
    <updated>2023-08-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-811403.html" rel="alternate"/>
    <summary>&lt;p&gt;Solid Edge is affected by multiple memory corruption vulnerabilities that could be triggered when the application reads specially crafted files in various formats such as DFT, PAR or PSM format. If a user is tricked to open a malicious file with the affected application, an attacker could leverage the vulnerability to crash the application or execute arbitrary code.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for Solid Edge SE2023 and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-794697.html</id>
    <title>SSA-794697 V1.2 (Last Update: 2023-08-08): Vulnerabilities in the Linux Kernel of the SIMATIC S7-1500 TM MFP V1.0</title>
    <updated>2023-08-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-794697.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities have been identified in the Linux Kernel of the SIMATIC S7-1500 TM MFP V1.0.&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-770902.html</id>
    <title>SSA-770902 V1.0: Denial of Service Vulnerability in the Web Server of RUGGEDCOM ROS Devices</title>
    <updated>2023-08-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-770902.html" rel="alternate"/>
    <summary>&lt;p&gt;A denial of service vulnerability could allow an unauthorized attacker to cause total loss of availability in the web server of the affected devices.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-764801.html</id>
    <title>SSA-764801 V1.1 (Last Update: 2023-08-08): File Parsing Vulnerabilities in Tecnomatix Plant Simulation</title>
    <updated>2023-08-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-764801.html" rel="alternate"/>
    <summary>&lt;p&gt;Siemens Tecnomatix Plant Simulation contains multiple vulnerabilities that could be triggered when the application reads PAR, SPP, STP and PRT files. If a user is tricked to open a malicious file using the affected application, this could lead to a crash, and potentially also to arbitrary code execution on the target host system.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-691715.html</id>
    <title>SSA-691715 V1.2 (Last Update: 2023-08-08): Vulnerability in OPC Foundation Local Discovery Server Affecting Siemens Products</title>
    <updated>2023-08-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-691715.html" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability was identified in OPC Foundation Local Discovery Server which also affects Siemens products that could allow an attacker to escalate privileges under certain circumstances.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for SIMATIC WinCC and recommends to update to the latest version. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-686975.html</id>
    <title>SSA-686975 V1.3 (Last Update: 2023-08-08): IPU 2022.3 Vulnerabilities in Siemens Industrial Products using Intel CPUs</title>
    <updated>2023-08-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-686975.html" rel="alternate"/>
    <summary>&lt;p&gt;Intel has published information on vulnerabilities in Intel products in November 2022. This advisory lists the related Siemens Industrial products affected by these vulnerabilities that can be patched by applying the corresponding BIOS update (&#8220;2022.3 IPU &#8211; BIOS Advisory&#8221; &lt;a href="https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00688.html"&gt;Intel-SA-00688&lt;/a&gt;).&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-478960.html</id>
    <title>SSA-478960 V1.6 (Last Update: 2023-08-08): Missing CSRF Protection in the Web Server Login Page of Industrial Controllers</title>
    <updated>2023-08-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-478960.html" rel="alternate"/>
    <summary>&lt;p&gt;The web server login page of affected products does not apply proper origin checking. This could allow authenticated remote attackers to track the activities of other users via a login cross-site request forgery attack..&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-472630.html</id>
    <title>SSA-472630 V1.0: Security Vulnerabilities Fixed in RUGGEDCOM CROSSBOW V5.4</title>
    <updated>2023-08-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-472630.html" rel="alternate"/>
    <summary>&lt;p&gt;The RUGGEDCOM CROSSBOW server application before V5.4 contains multiple vulnerabilities that could allow an attacker to execute arbitrary database queries via SQL injection attacks, to create a denial of service condition, or to write arbitrary files to the application&#8217;s file system.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for RUGGEDCOM CROSSBOW and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssb-439005.html</id>
    <title>SSB-439005 V5.4 (Last Update: 2023-08-08): Vulnerabilities in the additional GNU/Linux subsystem of the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP</title>
    <updated>2023-08-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssb-439005.html" rel="alternate"/>
    <summary>
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-407785.html</id>
    <title>SSA-407785 V1.0: Multiple X_T File Parsing Vulnerabilities in Parasolid and Teamcenter Visualization</title>
    <updated>2023-08-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-407785.html" rel="alternate"/>
    <summary>&lt;p&gt;Parasolid and Teamcenter Visualization are affected by memory corruption vulnerabilities that could be triggered when the application reads files in X_T format. If a user is tricked to open a malicious file with the affected applications, an attacker could leverage the vulnerability to perform remote code execution or denial of service in the context of the current process.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates for Teamcenter Visualization V14.1 and V14.3 where fixes are planned for the next patch release.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-306654.html</id>
    <title>SSA-306654 V1.7 (Last Update: 2023-08-08): Insyde BIOS Vulnerabilities in Siemens Industrial Products</title>
    <updated>2023-08-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-306654.html" rel="alternate"/>
    <summary>&lt;p&gt;Insyde has published information on vulnerabilities in Insyde BIOS in &lt;a href="https://www.insyde.com/security-pledge"&gt;February 2022&lt;/a&gt;. This advisory lists the Siemens Industrial products affected by these vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-264815.html</id>
    <title>SSA-264815 V1.0: Type Confusion Vulnerability in OpenSSL X.400 Address Processing in SIMATIC Products</title>
    <updated>2023-08-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-264815.html" rel="alternate"/>
    <summary>&lt;p&gt;Several SIMATIC products are affected by a type confusion vulnerability relating to OpenSSL X.400 address processing (CVE-2023-0286), as disclosed disclosed on 2023-02-07 at &lt;a href="https://www.openssl.org/news/secadv/20230207.txt" class="uri"&gt;https://www.openssl.org/news/secadv/20230207.txt&lt;/a&gt;.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-264814.html</id>
    <title>SSA-264814 V1.0: Timing Based Side Channel Vulnerability in the OpenSSL RSA Decryption in SIMATIC Products</title>
    <updated>2023-08-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-264814.html" rel="alternate"/>
    <summary>&lt;p&gt;Several SIMATIC products are affected by a timing based side channel vulnerability in the OpenSSL RSA Decryption (CVE-2023-4304), as disclosed on 2023-02-07 at &lt;a href="https://www.openssl.org/news/secadv/20230207.txt" class="uri"&gt;https://www.openssl.org/news/secadv/20230207.txt&lt;/a&gt;.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-223771.html</id>
    <title>SSA-223771 V1.3 (Last Update: 2023-08-08): SISCO Stack Vulnerability in SIPROTEC 5 Devices</title>
    <updated>2023-08-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-223771.html" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in the third party component SISCO MMS-EASE could allow attackers to cause a denial of service condition with SIPROTEC 5 devices.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-188491.html</id>
    <title>SSA-188491 V1.0: DLL Hijacking Vulnerabilities in Siemens Software Center</title>
    <updated>2023-08-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-188491.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple DLL Hijacking vulnerabilities in Siemens Software Center (SSC) could allow a local attacker to execute code with elevated privileges.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for the Siemens Software Center and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-180579.html</id>
    <title>SSA-180579 V1.1 (Last Update: 2023-08-08): Privilege Management Vulnerability and Multiple Nucleus RTOS Vulnerabilities in APOGEE/TALON Field Panels before V3.5.5/V2.8.20</title>
    <updated>2023-08-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-180579.html" rel="alternate"/>
    <summary>&lt;p&gt;APOGEE PXC / TALON TC field panels (BACnet before V3.5.5 and P2 Ethernet before V2.8.20) contain multiple vulnerabilities:&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;CVE-2022-45937: A privilege management vulnerability that could allow low privilege authenticated attackers to gain high privilege access.&lt;/li&gt;
&lt;li&gt;CVE-2020-28388: Predictable Initial Sequence Numbers in the TCP/IP Stack of Nucleus RTOS (real-time operating system) used by the affected products.&lt;/li&gt;
&lt;li&gt;Several vulnerabilities in the DNS (domain name service) implementation of Nucleus RTOS.&lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-131450.html</id>
    <title>SSA-131450 V1.0: File parsing Vulnerabilities in Solid Edge, JT2Go and Teamcenter Visualization</title>
    <updated>2023-08-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-131450.html" rel="alternate"/>
    <summary>&lt;p&gt;Siemens JT2Go, Teamcenter Visualization and Solid Edge are affected by multiple file parsing vulnerabilities. If a user is tricked to open a malicious file (crafted as ASM or TIFF file format) with any of the affected products, this could lead the application to crash or potentially lead to arbitrary code execution.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-116172.html</id>
    <title>SSA-116172 V1.0: Nullsoft Scriptable Install System (NSIS) Vulnerability (CVE-2023-37378) in Parasolid Installer</title>
    <updated>2023-08-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-116172.html" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in Nullsoft Scriptable Installer System (NSIS) software (CVE-2023-37378) used in Parasolid installers before V36 creates an &#8220;uninstall directory&#8221; with insufficient access control. This could allow an attacker to misuse the vulnerability, and potentially escalate privileges.&lt;/p&gt;
&lt;p&gt;Only systems where Parasolid is installed with a Parasolid installer is impacted. Siemens recommends to uninstall impacted Parasolid instances and reinstall with the latest installer available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-001569.html</id>
    <title>SSA-001569 V1.0: JT File Parsing Vulnerabilities in JT Open, JT Utilities and Parasolid</title>
    <updated>2023-08-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-001569.html" rel="alternate"/>
    <summary>&lt;p&gt;JT Open Toolkit, JT Utilities and Parasolid are affected by memory corruption vulnerabilities that could be triggered while parsing JT files. If a user is tricked to open a malicious JT file with any of the affected products, this could cause the application to crash or potentially lead to arbitrary code execution.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-968170.html</id>
    <title>SSA-968170 V1.1 (Last Update: 2023-07-11): Remote Code Execution Vulnerability in SIMATIC STEP 7 V5.x and Derived Products</title>
    <updated>2023-07-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-968170.html" rel="alternate"/>
    <summary>&lt;p&gt;SIMATIC STEP 7 and PCS 7 contain a database management system that could allow remote users to use embedded functions of the database (local or in a network share) that have impact on the server.&lt;/p&gt;
&lt;p&gt;An attacker with network access to the server network could leverage these embedded functions to run code in the database management system&#8217;s server (where STEP 7 or PCS 7 are running).&lt;/p&gt;
&lt;p&gt;Siemens has released an update for SIMATIC STEP 7 V5 and recommends to update to the latest version. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-930100.html</id>
    <title>SSA-930100 V1.1 (Last Update: 2023-07-11): Privilege Escalation Vulnerability in Simcenter STAR-CCM+</title>
    <updated>2023-07-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-930100.html" rel="alternate"/>
    <summary>&lt;p&gt;Simcenter STAR-CCM+ contains a privilege escalation vulnerability which could allow a local attacker with an unprivileged account to override or modify the service executable and subsequently gain elevated privileges.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for Simcenter STAR-CCM+ and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-924149.html</id>
    <title>SSA-924149 V1.0: Stack Overflow Vulnerability in SiPass Integrated before V2.90.3.8</title>
    <updated>2023-07-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-924149.html" rel="alternate"/>
    <summary>&lt;p&gt;SiPass integrated versions before V2.90.3.8 contain a stack overflow vulnerability that could allow an unauthenticated remote attacker to crash the server application, creating a denial of service condition.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for SiPass integrated and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-794697.html</id>
    <title>SSA-794697 V1.1 (Last Update: 2023-07-11): Vulnerabilities in the Linux Kernel of the SIMATIC S7-1500 TM MFP V1.0</title>
    <updated>2023-07-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-794697.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities have been identified in the Linux Kernel of the SIMATIC S7-1500 TM MFP V1.0.&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-764801.html</id>
    <title>SSA-764801 V1.0: File Parsing Vulnerabilities in Tecnomatix Plant Simulation</title>
    <updated>2023-07-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-764801.html" rel="alternate"/>
    <summary>&lt;p&gt;Siemens Tecnomatix Plant Simulation contains multiple vulnerabilities that could be triggered when the application reads PAR, SPP, STP and PRT files. If a user is tricked to open a malicious file using the affected application, this could lead to a crash, and potentially also to arbitrary code execution on the target host system.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-712929.html</id>
    <title>SSA-712929 V2.2 (Last Update: 2023-07-11): Denial of Service Vulnerability in OpenSSL (CVE-2022-0778) Affecting Industrial Products</title>
    <updated>2023-07-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-712929.html" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in the openSSL component (CVE-2022-0778, [0]) could allow an attacker to create a denial of service condition by providing specially crafted elliptic curve certificates to products that use a vulnerable version of openSSL.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
&lt;p&gt;[0] &lt;a href="https://www.openssl.org/news/secadv/20220315.txt" class="uri"&gt;https://www.openssl.org/news/secadv/20220315.txt&lt;/a&gt;&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-686975.html</id>
    <title>SSA-686975 V1.2 (Last Update: 2023-07-11): IPU 2022.3 Vulnerabilities in Siemens Industrial Products using Intel CPUs</title>
    <updated>2023-07-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-686975.html" rel="alternate"/>
    <summary>&lt;p&gt;Intel has published information on vulnerabilities in Intel products in November 2022. This advisory lists the related Siemens Industrial products affected by these vulnerabilities that can be patched by applying the corresponding BIOS update (&#8220;2022.3 IPU &#8211; BIOS Advisory&#8221; &lt;a href="https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00688.html"&gt;Intel-SA-00688&lt;/a&gt;).&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-561322.html</id>
    <title>SSA-561322 V1.0: Multiple Vulnerabilities in SIMATIC MV500 Devices before V3.3.4</title>
    <updated>2023-07-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-561322.html" rel="alternate"/>
    <summary>&lt;p&gt;SIMATIC MV500 devices before V3.3.4 are affected by multiple vulnerabilities in the web server and several third-party components.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-478960.html</id>
    <title>SSA-478960 V1.5 (Last Update: 2023-07-11): Missing CSRF Protection in the Web Server Login Page of Industrial Controllers</title>
    <updated>2023-07-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-478960.html" rel="alternate"/>
    <summary>&lt;p&gt;The web server login page of affected products does not apply proper origin checking. This could allow authenticated remote attackers to track the activities of other users via a login cross-site request forgery attack..&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-446448.html</id>
    <title>SSA-446448 V1.9 (Last Update: 2023-07-11): Denial of Service Vulnerability in PROFINET Stack Integrated on Interniche Stack</title>
    <updated>2023-07-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-446448.html" rel="alternate"/>
    <summary>&lt;p&gt;The PROFINET (PNIO) stack, when integrated with the Interniche IP stack, contains a vulnerability that could allow an attacker to cause a denial of service condition on affected industrial products.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssb-439005.html</id>
    <title>SSB-439005 V5.3 (Last Update: 2023-07-11): Vulnerabilities in the additional GNU/Linux subsystem of the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP</title>
    <updated>2023-07-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssb-439005.html" rel="alternate"/>
    <summary>
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-408105.html</id>
    <title>SSA-408105 V1.2 (Last Update: 2023-07-11): Buffer Overflow Vulnerabilities in OpenSSL 3.0 Affecting Siemens Products</title>
    <updated>2023-07-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-408105.html" rel="alternate"/>
    <summary>&lt;p&gt;The openSSL component, versions 3.0.0 through 3.0.6, contains two buffer overflow vulnerabilities (CVE-2022-3602, CVE-2022-3786) in the X.509 certificate verification [0]. They could allow an attacker to create a denial of service condition or execute arbitrary code on a vulnerable TLS server (if the server requests client certificate authentication), or on a vulnerable TLS client.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
&lt;p&gt;[0] &lt;a href="https://www.openssl.org/news/secadv/20221101.txt" class="uri"&gt;https://www.openssl.org/news/secadv/20221101.txt&lt;/a&gt;&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-382653.html</id>
    <title>SSA-382653 V1.4 (Last Update: 2023-07-11): Multiple Denial of Service Vulnerabilities in Industrial Products</title>
    <updated>2023-07-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-382653.html" rel="alternate"/>
    <summary>&lt;p&gt;Affected SIMATIC firmware contains multiple vulnerabilities that could allow an unauthenticated attacker to perform a denial of service attack under certain conditions.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-363107.html</id>
    <title>SSA-363107 V1.2 (Last Update: 2023-07-11): An Improper Initialization Vulnerability Affects SIMATIC WinCC Kiosk Mode</title>
    <updated>2023-07-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-363107.html" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability was found in SIMATIC WinCC that could allow authenticated attackers to escape the Kiosk Mode.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-313488.html</id>
    <title>SSA-313488 V1.0: Multiple Vulnerabilities in SIMATIC CN 4100 before V2.5</title>
    <updated>2023-07-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-313488.html" rel="alternate"/>
    <summary>&lt;p&gt;SIMATIC CN 4100 is vulnerable to improper access control and insecure default configurations that could allow an attacker to gain privilege escalation, and bypass network isolation.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for SIMATIC CN 4100 and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-306654.html</id>
    <title>SSA-306654 V1.6 (Last Update: 2023-07-11): Insyde BIOS Vulnerabilities in Siemens Industrial Products</title>
    <updated>2023-07-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-306654.html" rel="alternate"/>
    <summary>&lt;p&gt;Insyde has published information on vulnerabilities in Insyde BIOS in &lt;a href="https://www.insyde.com/security-pledge"&gt;February 2022&lt;/a&gt;. This advisory lists the Siemens Industrial products affected by these vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-146325.html</id>
    <title>SSA-146325 V1.0: Multiple Vulnerabilities in RUGGEDCOM ROX before V2.16</title>
    <updated>2023-07-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-146325.html" rel="alternate"/>
    <summary>&lt;p&gt;Devices based on RUGGEDCOM ROX before V2.16 contain multiple high severity vulnerabilities, including the third-party vulnerabilities: CVE-2022-24903, CVE-2022-2068, CVE-2021-22946, CVE-2022-22576, CVE-2022-27781, CVE-2022-27782, CVE-2022-32207, CVE-2022-1292.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-942865.html</id>
    <title>SSA-942865 V1.1 (Last Update: 2023-06-14): Multiple Vulnerabilities in the Integrated SCALANCE S615 of SINAMICS Medium Voltage Products</title>
    <updated>2023-06-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-942865.html" rel="alternate"/>
    <summary>&lt;p&gt;SINAMICS PERFECT HARMONY GH180 is affected by multiple vulnerabilities in the integrated SCALANCE S615 device, as documented in SSA-419740 (&lt;a href="https://cert-portal.siemens.com/productcert/html/ssa-419740.html" class="uri"&gt;https://cert-portal.siemens.com/productcert/html/ssa-419740.html&lt;/a&gt;).&lt;/p&gt;
&lt;p&gt;Siemens recommends to update the firmware of the integrated SCALANCE S615 device to the latest version. Siemens recommends specific countermeasures for products where the firmware update is not, or not yet applied.&lt;/p&gt;
&lt;p&gt;Additional considerations regarding the specific impact of the vulnerabilities to SINAMICS MV products can be found in the chapter &#8220;Additional Information&#8221;.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-988345.html</id>
    <title>SSA-988345 V1.1 (Last Update: 2023-06-13): Local Privilege Escalation Vulnerability in Xpedition Designer</title>
    <updated>2023-06-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-988345.html" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in Xpedition Designer could allow an attacker with an unprivileged account to override or modify the service executable and subsequently gain elevated privileges.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-975766.html</id>
    <title>SSA-975766 V1.0: Open Design Alliance Drawings SDK Vulnerability in Solid Edge</title>
    <updated>2023-06-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-975766.html" rel="alternate"/>
    <summary>&lt;p&gt;Solid Edge is affected by a file parsing vulnerability in Drawings SDK from Open Design Alliance. If a user is tricked to open a malicious DWG file with any of the affected products, this could lead the application to crash or potentially lead to arbitrary code execution.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
&lt;p&gt;Note:&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;This advisory covers security vulnerabilities recently disclosed by Open Design Alliance [0]&lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;[0] &lt;a href="https://www.opendesign.com/security-advisories"&gt;https://www.opendesign.com/security-advisories&lt;/a&gt;&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-968170.html</id>
    <title>SSA-968170 V1.0: Remote Code Execution Vulnerability in SIMATIC STEP 7 V5.x and Derived Products</title>
    <updated>2023-06-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-968170.html" rel="alternate"/>
    <summary>&lt;p&gt;SIMATIC STEP 7 and PCS 7 contain a database management system that could allow remote users with low privileges to use embedded functions of the database (local or in a network share) that have impact on the server.&lt;/p&gt;
&lt;p&gt;An attacker with network access to the server network could leverage these embedded functions to run code with elevated privileges in the database management system&#8217;s server (where STEP 7 or PCS 7 are running).&lt;/p&gt;
&lt;p&gt;Siemens has released an update for SIMATIC STEP 7 V5 and recommends to update to the latest version. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-942865.html</id>
    <title>SSA-942865 V1.0: Multiple Vulnerabilities in the Integrated SCALANCE S615 of SINAMICS Medium Voltage Products</title>
    <updated>2023-06-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-942865.html" rel="alternate"/>
    <summary>&lt;p&gt;Several SINAMICS MV (medium voltage) products are affected by multiple vulnerabilities in the integrated SCALANCE S615 device, as documented in SSA-419740 (&lt;a href="https://cert-portal.siemens.com/productcert/html/ssa-419740.html" class="uri"&gt;https://cert-portal.siemens.com/productcert/html/ssa-419740.html&lt;/a&gt;).&lt;/p&gt;
&lt;p&gt;Siemens recommends to update the firmware of the integrated SCALANCE S615 device to the latest version. Siemens recommends specific countermeasures for products where the firmware update is not, or not yet applied.&lt;/p&gt;
&lt;p&gt;Additional considerations regarding the specific impact of the vulnerabilities to SINAMICS MV products can be found in the chapter &#8220;Additional Information&#8221;.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-914026.html</id>
    <title>SSA-914026 V1.0: Local Code Execution Vulnerability in SIMATIC WinCC V7</title>
    <updated>2023-06-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-914026.html" rel="alternate"/>
    <summary>&lt;p&gt;SIMATIC WinCC V7 is affected by a vulnerability that could allow a local attacker to inject arbitrary code and escalate privileges, if a non-default installation path was chosen during installation.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for SIMATIC WinCC and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-887249.html</id>
    <title>SSA-887249 V1.0: Multiple Vulnerabilities in the Web Interface of SICAM Q200 Devices</title>
    <updated>2023-06-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-887249.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities were identified in the webserver of Q200 devices. These include Cross Site Request Forgery (CSRF), session fixation, missing secure flags in HTTP cookies and memory corruption issues due to missing input validation that could lead to remote code execution.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for POWER METER SICAM Q200 family and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-851884.html</id>
    <title>SSA-851884 V1.1 (Last Update: 2023-06-13): Authentication Bypass Vulnerability in Mendix SAML Module</title>
    <updated>2023-06-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-851884.html" rel="alternate"/>
    <summary>&lt;p&gt;The Mendix SAML module insufficiently verifies the SAML assertions. This could allow unauthenticated remote attackers to bypass authentication and get access to the application.&lt;/p&gt;
&lt;p&gt;Mendix has provided fix releases for the Mendix SAML module and recommends to update to the latest version.&lt;/p&gt;
&lt;p&gt;Note: For compatibility reasons, fix versions are introduced in two release steps:&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;&lt;p&gt;The first fix versions address CVE-2023-25957. It removes the vulnerability, except when the recommended, default configuration option &lt;code&gt;'Use Encryption'&lt;/code&gt; is disabled.&lt;/p&gt;&lt;/li&gt;
&lt;li&gt;&lt;p&gt;The second fix versions address CVE-2023-29129, which removes the issue for the non default configuration as well.&lt;/p&gt;&lt;/li&gt;
&lt;/ul&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-831302.html</id>
    <title>SSA-831302 V1.0: Vulnerabilities in the BIOS of the SIMATIC S7-1500 TM MFP V1.0</title>
    <updated>2023-06-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-831302.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities have been identified in the BIOS of the SIMATIC S7-1500 TM MFP V1.0.&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-824231.html</id>
    <title>SSA-824231 V1.4 (Last Update: 2023-06-13): Unauthenticated Firmware Upload Vulnerability in Desigo PX Controllers</title>
    <updated>2023-06-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-824231.html" rel="alternate"/>
    <summary>&lt;p&gt;Several Desigo PXC/PXM devices contain a vulnerability that could allow unauthenticated remote attackers to upload malicious firmware without prior authentication.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-794697.html</id>
    <title>SSA-794697 V1.0: Vulnerabilities in the Linux Kernel of the SIMATIC S7-1500 TM MFP V1.0</title>
    <updated>2023-06-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-794697.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities have been identified in the Linux Kernel of the SIMATIC S7-1500 TM MFP V1.0.&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-731916.html</id>
    <title>SSA-731916 V1.0: Multiple Vulnerabilities in CPCI85 Firmware of SICAM A8000 Devices</title>
    <updated>2023-06-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-731916.html" rel="alternate"/>
    <summary>&lt;p&gt;The CPCI85 firmware of SICAM A8000 CP-8031 and CP-8050 is affected by multiple vulnerabilities such as authenticated remote command injection, exposure of serial UART interface, and hard coded credentials (for UART login).&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-712929.html</id>
    <title>SSA-712929 V2.1 (Last Update: 2023-06-13): Denial of Service Vulnerability in OpenSSL (CVE-2022-0778) Affecting Industrial Products</title>
    <updated>2023-06-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-712929.html" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in the openSSL component (CVE-2022-0778, [0]) could allow an attacker to create a denial of service condition by providing specially crafted elliptic curve certificates to products that use a vulnerable version of openSSL.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
&lt;p&gt;[0] &lt;a href="https://www.openssl.org/news/secadv/20220315.txt" class="uri"&gt;https://www.openssl.org/news/secadv/20220315.txt&lt;/a&gt;&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-691715.html</id>
    <title>SSA-691715 V1.1 (Last Update: 2023-06-13): Vulnerability in OPC Foundation Local Discovery Server Affecting Siemens Products</title>
    <updated>2023-06-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-691715.html" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability was identified in OPC Foundation Local Discovery Server which also affects Siemens products that could allow an attacker to escalate privileges under certain circumstances.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for SIMATIC WinCC and recommends to update to the latest version. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-572005.html</id>
    <title>SSA-572005 V1.2 (Last Update: 2023-06-13): Vulnerabilities in the Web Server of SICAM P850 and SICAM P855 Devices</title>
    <updated>2023-06-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-572005.html" rel="alternate"/>
    <summary>&lt;p&gt;Session fixation and multiple incorrect parameter parsing vulnerabilities that could potentially lead to remote code execution were identified in the web server of SICAM P850 and SICAM P855 devices.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-538795.html</id>
    <title>SSA-538795 V1.0: Multiple File Parsing Vulnerabilities in Teamcenter Visualization and JT2Go</title>
    <updated>2023-06-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-538795.html" rel="alternate"/>
    <summary>&lt;p&gt;Siemens Teamcenter Visualization and JT2Go are affected by multiple file parsing vulnerabilities that could be triggered when the application reads malicious CGM files. If a user is tricked to open a malicious CGM file with the affected products, this could lead the application to crash or potentially lead to arbitrary code execution.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-508677.html</id>
    <title>SSA-508677 V1.0: Use of Obsolete Function Vulnerability in SIMATIC WinCC before V8</title>
    <updated>2023-06-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-508677.html" rel="alternate"/>
    <summary>&lt;p&gt;Before SIMATIC WinCC V8, legacy OPC services (OPC DA (Data Access), OPC HDA (Historical Data Access), and OPC AE (Alarms &amp;amp; Events)) were used per default. These services were designed on top of the Windows ActiveX and DCOM mechanisms and do not implement state-of-the-art security mechanisms for authentication and encryption of contents.&lt;/p&gt;
&lt;p&gt;Starting with WinCC V8.0 the legacy OPC services are no longer enabled by default in new installations. Siemens recommends to use OPC UA instead and to disable the legacy OPC services. For deployments where the legacy OPC services are still in use, ensure that only trusted users are part of the SIMATIC HMI group.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-482956.html</id>
    <title>SSA-482956 V1.0: Information Disclosure Vulnerability in SIMOTION before V5.5</title>
    <updated>2023-06-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-482956.html" rel="alternate"/>
    <summary>&lt;p&gt;SIMOTION contains an information disclosure vulnerability that could allow an unauthenticated attacker to extract confidential technology object (TO) configuration from the device.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssb-439005.html</id>
    <title>SSB-439005 V5.2 (Last Update: 2023-06-13): Vulnerabilities in the additional GNU/Linux subsystem of the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP</title>
    <updated>2023-06-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssb-439005.html" rel="alternate"/>
    <summary>
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-120378.html</id>
    <title>SSA-120378 V1.2 (Last Update: 2023-06-13): Multiple File Parsing Vulnerabilities in Teamcenter Visualization and JT2Go</title>
    <updated>2023-06-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-120378.html" rel="alternate"/>
    <summary>&lt;p&gt;Siemens Teamcenter Visualization and JT2Go are affected by multiple file parsing vulnerabilities that could be triggered when the application reads malicious TIF, CGM or PDF files. If a user is tricked to open a malicious TIF, CGM or PDF file with the affected products, this could lead the application to crash or potentially lead to arbitrary code execution.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-042050.html</id>
    <title>SSA-042050 V1.0: Know-How Protection Mechanism Failure in TIA Portal</title>
    <updated>2023-06-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-042050.html" rel="alternate"/>
    <summary>&lt;p&gt;The know-how protection feature in Totally Integrated Automation Portal (TIA Portal) does not properly update the encryption of existing program blocks when a project file is updated. This could allow attackers with access to the project file to recover previous - yet unprotected - versions of the project without the knowledge of the know-how protection password.&lt;/p&gt;
&lt;p&gt;Siemens recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-932528.html</id>
    <title>SSA-932528 V1.0: Multiple File Parsing Vulnerabilities in Solid Edge</title>
    <updated>2023-05-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-932528.html" rel="alternate"/>
    <summary>&lt;p&gt;Solid Edge is affected by multiple memory corruption vulnerabilities that could be triggered when the application reads specially crafted files in various formats such as IFC, OBJ or STP format. If a user is tricked to open a malicious file with the affected application, an attacker could leverage the vulnerability to crash the application or execute arbitrary code.&lt;/p&gt;
&lt;p&gt;Siemens has released several updates for Solid Edge SE2023 and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-892048.html</id>
    <title>SSA-892048 V1.0: Third-Party Component Vulnerabilities in SINEC NMS before V1.0.3.1</title>
    <updated>2023-05-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-892048.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities affecting third-party components libexpat and libcurl of SINEC NMS before V1.0.3.1 could allow an attacker to impact SINEC NMS confidentiality, integrity and availability.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for SINEC NMS and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-789345.html</id>
    <title>SSA-789345 V1.0: Code Execution Vulnerabilities in Siveillance Video Event and Management Servers</title>
    <updated>2023-05-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-789345.html" rel="alternate"/>
    <summary>&lt;p&gt;Both the Event Server and the Management Server components of Siveillance Video deserialize data without sufficient validations. This could allow an authenticated remote attacker to execute code on the affected system.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions. The provided cumulative hotfix releases include the fixes for both Event Server (ES) and Management Server (MS). Ensure to apply the fixes on all relevant servers in your deployment.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-712929.html</id>
    <title>SSA-712929 V2.0 (Last Update: 2023-05-09): Denial of Service Vulnerability in OpenSSL (CVE-2022-0778) Affecting Industrial Products</title>
    <updated>2023-05-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-712929.html" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in the openSSL component (CVE-2022-0778, [0]) could allow an attacker to create a denial of service condition by providing specially crafted elliptic curve certificates to products that use a vulnerable version of openSSL.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
&lt;p&gt;[0] &lt;a href="https://www.openssl.org/news/secadv/20220315.txt" class="uri"&gt;https://www.openssl.org/news/secadv/20220315.txt&lt;/a&gt;&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-686975.html</id>
    <title>SSA-686975 V1.1 (Last Update: 2023-05-09): IPU 2022.3 Vulnerabilities in Siemens Industrial Products using Intel CPUs</title>
    <updated>2023-05-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-686975.html" rel="alternate"/>
    <summary>&lt;p&gt;Intel has published information on vulnerabilities in Intel products in November 2022. This advisory lists the related Siemens Industrial products affected by these vulnerabilities that can be patched by applying the corresponding BIOS update (&#8220;2022.3 IPU &#8211; BIOS Advisory&#8221; &lt;a href="https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00688.html"&gt;Intel-SA-00688&lt;/a&gt;).&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-640968.html</id>
    <title>SSA-640968 V1.1 (Last Update: 2023-05-09): Untrusted Search Path Vulnerability in TIA Project-Server formerly known as TIA Multiuser Server</title>
    <updated>2023-05-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-640968.html" rel="alternate"/>
    <summary>&lt;p&gt;TIA Project-Server formerly known as TIA Multiuser Server contains an untrusted search path vulnerability that could allow an attacker to escalate privileges, when tricking a legitimate user to start the service from an attacker controlled path.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-632164.html</id>
    <title>SSA-632164 V1.1 (Last Update: 2023-05-09): External Entity Injection Vulnerability in Polarion ALM</title>
    <updated>2023-05-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-632164.html" rel="alternate"/>
    <summary>&lt;p&gt;Polarion ALM is vulnerable to XML External Entity (XXE) injection attack that could allow an attacker to potentially disclose confidential data.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for Polarion ALM and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-592007.html</id>
    <title>SSA-592007 V2.1 (Last Update: 2023-05-09): Denial of Service Vulnerability in Industrial Products</title>
    <updated>2023-05-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-592007.html" rel="alternate"/>
    <summary>&lt;p&gt;Several industrial controllers are affected by a security vulnerability that could allow an attacker to cause a denial of service condition via PROFINET DCP network packets under certain circumstances. Precondition for this scenario is a direct OSI Layer 2 access to the affected products. PROFIBUS interfaces are not affected.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-566905.html</id>
    <title>SSA-566905 V1.1 (Last Update: 2023-05-09): Multiple Denial of Service Vulnerabilities in the Webserver of Industrial Products</title>
    <updated>2023-05-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-566905.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities in the affected products could allow an unauthorized attacker with network access to the webserver of an affected products to perform a denial of service attack.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-555292.html</id>
    <title>SSA-555292 V1.0: Security Vulnerabilities Fixed in SIMATIC Cloud Connect 7 V2.1</title>
    <updated>2023-05-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-555292.html" rel="alternate"/>
    <summary>&lt;p&gt;SIMATIC Cloud Connect 7 contains multiple vulnerabilities that could allow an attacker to impact its confidentiality, integrity and availability.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-552874.html</id>
    <title>SSA-552874 V1.1 (Last Update: 2023-05-09): Denial of Service Vulnerability in SIPROTEC 5 Devices</title>
    <updated>2023-05-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-552874.html" rel="alternate"/>
    <summary>&lt;p&gt;Devices of the SIPROTEC 5 family contain a vulnerability related to secure client-initiated renegotiation. This could allow an unauthenticated attacker to cause a denial of service condition for the duration of the attack.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-516174.html</id>
    <title>SSA-516174 V1.0: Wi-Fi Encryption Bypass Vulnerabilities in SCALANCE W1750D</title>
    <updated>2023-05-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-516174.html" rel="alternate"/>
    <summary>&lt;p&gt;The SCALANCE W1750D device is affected by Wi-Fi encryption bypass vulnerabilities (&#8220;Framing Frames&#8221;) that could allow an attacker to disclose sensitive information or to steal the victims session.&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-480230.html</id>
    <title>SSA-480230 V2.7 (Last Update: 2023-05-09): Denial of Service Vulnerability in Webserver of Industrial Products</title>
    <updated>2023-05-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-480230.html" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in the affected devices could allow an unauthorized attacker with network access to the webserver of an affected device to perform a denial of service attack.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-478960.html</id>
    <title>SSA-478960 V1.4 (Last Update: 2023-05-09): Missing CSRF Protection in the Web Server Login Page of Industrial Controllers</title>
    <updated>2023-05-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-478960.html" rel="alternate"/>
    <summary>&lt;p&gt;The web server login page of affected products does not apply proper origin checking. This could allow authenticated remote attackers to track the activities of other users via a login cross-site request forgery attack..&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-473245.html</id>
    <title>SSA-473245 V2.6 (Last Update: 2023-05-09): Denial of Service Vulnerability in Profinet Devices</title>
    <updated>2023-05-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-473245.html" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in affected devices could allow an attacker to perform a denial of service attack if a large amount of specially crafted UDP packets are sent to the device.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-382653.html</id>
    <title>SSA-382653 V1.3 (Last Update: 2023-05-09): Multiple Denial of Service Vulnerabilities in Industrial Products</title>
    <updated>2023-05-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-382653.html" rel="alternate"/>
    <summary>&lt;p&gt;Affected SIMATIC firmware contains multiple vulnerabilities that could allow an unauthenticated attacker to perform a denial of service attack under certain conditions.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-349422.html</id>
    <title>SSA-349422 V2.0 (Last Update: 2023-05-09): Denial of Service Vulnerability in Industrial Real-Time (IRT) Devices</title>
    <updated>2023-05-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-349422.html" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in the affected products could allow an unauthorized attacker with network access to perform a denial-of-service attack resulting in loss of real-time synchronization.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-325383.html</id>
    <title>SSA-325383 V1.0: Multiple Vulnerabilities in SCALANCE LPE9403 before V2.1</title>
    <updated>2023-05-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-325383.html" rel="alternate"/>
    <summary>&lt;p&gt;SCALANCE LPE9403 is affected by multiple vulnerabilities that could allow an attacker to impact its confidentiality, integrity and availability.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for the SCALANCE LPE9403 and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-322980.html</id>
    <title>SSA-322980 V1.1 (Last Update: 2023-05-09): Denial of Service Vulnerability in SIPROTEC 5 Devices</title>
    <updated>2023-05-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-322980.html" rel="alternate"/>
    <summary>&lt;p&gt;SIPROTEC 5 devices contain a null pointer dereference vulnerability in the web service. This could allow an attacker to send unauthenticated maliciously crafted http request that could cause denial of service condition of the device.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-309571.html</id>
    <title>SSA-309571 V1.8 (Last Update: 2023-05-09): IPU 2021.1 Vulnerabilities in Siemens Industrial Products using Intel CPUs (June 2021)</title>
    <updated>2023-05-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-309571.html" rel="alternate"/>
    <summary>&lt;p&gt;Intel has published information on vulnerabilities in Intel products in &lt;a href="https://blogs.intel.com/technology/2021/06/intel-security-advisories-for-june-2021/"&gt;June 2021&lt;/a&gt;. This advisory lists the related Siemens Industrial products affected by these vulnerabilities that can be patched by applying the corresponding BIOS update.&lt;/p&gt;
&lt;p&gt;In this advisory we summarize:&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;&lt;p&gt;&#8220;2021.1 IPU &#8211; Intel&#174; CSME, SPS and LMS Advisory&#8221; Intel-SA-00459,&lt;/p&gt;&lt;/li&gt;
&lt;li&gt;&lt;p&gt;&#8220;2021.1 IPU &#8211; BIOS Advisory&#8221; Intel-SA-00463,&lt;/p&gt;&lt;/li&gt;
&lt;li&gt;&lt;p&gt;&#8220;2021.1 IPU &#8211; Intel&#174; Processor Advisory&#8221; Intel-SA-00464, and&lt;/p&gt;&lt;/li&gt;
&lt;li&gt;&lt;p&gt;&#8220;2021.1 IPU - Intel Atom&#174; Processor Advisory&#8221; Intel-SA-00465.&lt;/p&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;Siemens has released updates for several affected products and is currently working on BIOS updates that include chipset microcode updates for further products.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-116924.html</id>
    <title>SSA-116924 V1.1 (Last Update: 2023-05-09): Path Traversal Vulnerability in TIA Portal</title>
    <updated>2023-05-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-116924.html" rel="alternate"/>
    <summary>&lt;p&gt;TIA Portal contains a path traversal vulnerability that could allow the creation or overwrite of arbitrary files in the engineering system. If the user is tricked to open a malicious PC system configuration file, an attacker could exploit this vulnerability to achieve arbitrary code execution.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for TIA Portal V18 and recommends to update to the latest version. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-113131.html</id>
    <title>SSA-113131 V1.5 (Last Update: 2023-05-09): Denial of Service Vulnerabilities in SIMATIC S7-400 CPUs</title>
    <updated>2023-05-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-113131.html" rel="alternate"/>
    <summary>&lt;p&gt;Two vulnerabilities have been identified in the SIMATIC S7-400 CPU family that could allow an attacker to cause a denial of service condition. In order to exploit the vulnerabilities, an attacker must have access to the affected devices on port 102/tcp via Ethernet, PROFIBUS or Multi Point Interfaces (MPI).&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-978220.html</id>
    <title>SSA-978220 V1.8 (Last Update: 2023-04-11): Denial of Service Vulnerability over SNMP in Multiple Industrial Products</title>
    <updated>2023-04-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-978220.html" rel="alternate"/>
    <summary>&lt;p&gt;Several industrial products are affected by a vulnerability that could allow remote attackers to conduct a denial of service attack by sending specially crafted packets to port 161/udp (SNMP).&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-840800.html</id>
    <title>SSA-840800 V1.3 (Last Update: 2023-04-11): Code Injection Vulnerability in RUGGEDCOM ROS</title>
    <updated>2023-04-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-840800.html" rel="alternate"/>
    <summary>&lt;p&gt;RUGGEDCOM ROS-based devices are vulnerable to a web-based code injection attack. To execute this attack, it is necessary to access the system via the Command Line Interface (CLI).&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-840188.html</id>
    <title>SSA-840188 V1.6 (Last Update: 2023-04-11): Multiple Vulnerabilities in SIMATIC WinCC Affecting Other SIMATIC Software Products</title>
    <updated>2023-04-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-840188.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities were found in SIMATIC WinCC that ultimately could allow local or remote attackers to escalate privileges and read, write or delete critical files.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
&lt;p&gt;Note: The vulnerability CVE-2021-40359 is part of a shared component, used by various Siemens products (SIMATIC Communication Services - SCS). The installation of a fix version of any product also removes the vulnerability for other products on the same system, even if those products were not updated.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-838121.html</id>
    <title>SSA-838121 V1.3 (Last Update: 2023-04-11): Multiple Denial of Service Vulnerabilities in Industrial Products</title>
    <updated>2023-04-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-838121.html" rel="alternate"/>
    <summary>&lt;p&gt;Affected SIMATIC firmware contains three vulnerabilities that could allow an unauthenticated attacker to perform a denial of service attack under certain conditions.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens recommends countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-813746.html</id>
    <title>SSA-813746 V1.0: BadAlloc Vulnerabilities in SCALANCE X-200, X-200IRT, and X-300 Switch Families</title>
    <updated>2023-04-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-813746.html" rel="alternate"/>
    <summary>&lt;p&gt;Siemens has released a new firmware version for SCALANCE X-200 and X-200 IRT switches that address Bad Alloc vulnerabilities in the underlying operating system and recommends to update to the latest versions. Siemens recommends countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-792594.html</id>
    <title>SSA-792594 V1.1 (Last Update: 2023-04-11): Host Header Injection Vulnerability in Polarion ALM</title>
    <updated>2023-04-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-792594.html" rel="alternate"/>
    <summary>&lt;p&gt;Polarion ALM contains a misconfiguration in its default Apache HTTP Server configuration that could allow an attacker to perform host header injection attacks.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for Polarion ALM and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-787941.html</id>
    <title>SSA-787941 V1.2 (Last Update: 2023-04-11): Denial of Service Vulnerability in RUGGEDCOM ROS V4</title>
    <updated>2023-04-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-787941.html" rel="alternate"/>
    <summary>&lt;p&gt;RUGGEDCOM ROS-based V4 devices are vulnerable to a denial of service attack (Slowloris). By sending partial HTTP requests nonstop, with none completed, the affected web servers will be waiting for the completion of each request, occupying all available HTTP connections. The web server recovers by itself once the attack ends.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-780073.html</id>
    <title>SSA-780073 V2.3 (Last Update: 2023-04-11): Denial of Service Vulnerability in PROFINET Devices via DCE-RPC Packets</title>
    <updated>2023-04-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-780073.html" rel="alternate"/>
    <summary>&lt;p&gt;Products that include the Siemens PROFINET-IO (PNIO) stack in versions prior V06.00 are potentially affected by a denial of service vulnerability when multiple legitimate diagnostic package requests are sent to the DCE-RPC interface.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
&lt;p&gt;Additionally, Siemens recommends other vendors of PROFINET devices to check if their products have incorporated a vulnerable version of the Siemens PNIO stack as part of the Siemens Development/Evaluation Kits.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-712929.html</id>
    <title>SSA-712929 V1.9 (Last Update: 2023-04-11): Denial of Service Vulnerability in OpenSSL (CVE-2022-0778) Affecting Industrial Products</title>
    <updated>2023-04-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-712929.html" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in the openSSL component (CVE-2022-0778, [0]) could allow an attacker to create a denial of service condition by providing specially crafted elliptic curve certificates to products that use a vulnerable version of openSSL.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
&lt;p&gt;[0] &lt;a href="https://www.openssl.org/news/secadv/20220315.txt" class="uri"&gt;https://www.openssl.org/news/secadv/20220315.txt&lt;/a&gt;&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-710008.html</id>
    <title>SSA-710008 V1.3 (Last Update: 2023-04-11): Multiple Web Vulnerabilities in SCALANCE Products</title>
    <updated>2023-04-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-710008.html" rel="alternate"/>
    <summary>&lt;p&gt;SCALANCE devices contain multiple vulnerabilities in MSPS based product lines that could allow authenticated remote attackers to execute custom code or create a XSS situation, as well as unauthenticated remote attackers to create a denial of service condition.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-700053.html</id>
    <title>SSA-700053 V1.2 (Last Update: 2023-04-11): Multiple File Parsing Vulnerabilities in Teamcenter Visualization and JT2Go</title>
    <updated>2023-04-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-700053.html" rel="alternate"/>
    <summary>&lt;p&gt;Siemens Teamcenter Visualization and JT2Go are affected by multiple file parsing vulnerabilities that could be triggered when the application reads a malicious file in CGM or RAS format. If a user is tricked to open a malicious file with the affected products, this could lead the application to crash or potentially lead to arbitrary code execution.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-699404.html</id>
    <title>SSA-699404 V1.0: Observable Response Discrepancy in Mendix Forgot Password Module</title>
    <updated>2023-04-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-699404.html" rel="alternate"/>
    <summary>&lt;p&gt;The Mendix Forgot Password module contains an observable response discrepancy issue that could allow an attacker to retrieve sensitive information.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-691715.html</id>
    <title>SSA-691715 V1.0: Vulnerability in OPC Foundation Local Discovery Server Affecting Siemens Products</title>
    <updated>2023-04-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-691715.html" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability was identified in OPC Foundation Local Discovery Server which also affects Siemens products that could allow an attacker to escalate privileges under certain circumstances.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for SIMATIC WinCC and recommends to update to the latest version. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-676336.html</id>
    <title>SSA-676336 V1.2 (Last Update: 2023-04-11): OpenSSH Vulnerabilities in SCALANCE X-200 and X-300/X408 Switches</title>
    <updated>2023-04-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-676336.html" rel="alternate"/>
    <summary>&lt;p&gt;The latest update of the SCALANCE X-200 and X-300/X408 switches families fixes multiple OpenSSH vulnerabilities. The most severe of these vulnerabilities could allow a denial of service condition.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-642810.html</id>
    <title>SSA-642810 V1.0: JT File Parsing Vulnerability in JT Open and JT Utilities</title>
    <updated>2023-04-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-642810.html" rel="alternate"/>
    <summary>&lt;p&gt;JT Open Toolkit and JT Utilities are affected by a memory corruption vulnerability that could be triggered while parsing JT files. If a user is tricked to open a malicious JT file with any of the affected products, this could cause the application to crash or potentially lead to arbitrary code execution.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-632164.html</id>
    <title>SSA-632164 V1.0: External Entity Injection Vulnerability in Polarion ALM</title>
    <updated>2023-04-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-632164.html" rel="alternate"/>
    <summary>&lt;p&gt;Polarion ALM is vulnerable to XML External Entity (XXE) injection attack that could allow an attacker to potentially disclose confidential data.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for Polarion ALM and recommends to update to the latest version, and update specific configurations to mitigate against the vulnerability. The configuration changes to mitigate this vulnerability will be default from Polarion V2304.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-629917.html</id>
    <title>SSA-629917 V1.0: Datalogics File Parsing Vulnerability in Teamcenter Visualization and JT2Go</title>
    <updated>2023-04-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-629917.html" rel="alternate"/>
    <summary>&lt;p&gt;Siemens Teamcenter Visualization and JT2Go are affected by a memory corruption vulnerability in the APDFL library from Datalogics. If a user is tricked to open a malicious PDF file with the affected products, this could lead the application to crash or potentially lead to arbitrary code execution.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-603476.html</id>
    <title>SSA-603476 V1.4 (Last Update: 2023-04-11): Web Vulnerabilities in SIMATIC NET CP 343-1/CP 443-1 Modules and SIMATIC S7-300/S7-400 CPUs</title>
    <updated>2023-04-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-603476.html" rel="alternate"/>
    <summary>&lt;p&gt;SIMATIC CP 343-1 Advanced/CP-443-1 Advanced devices and SIMATIC S7-300/S7-400 CPUs are affected by two vulnerabilities. One of the vulnerabilities could allow remote attackers to perform operations as an authenticated user under certain conditions.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-592007.html</id>
    <title>SSA-592007 V2.0 (Last Update: 2023-04-11): Denial of Service Vulnerability in Industrial Products</title>
    <updated>2023-04-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-592007.html" rel="alternate"/>
    <summary>&lt;p&gt;Several industrial controllers are affected by a security vulnerability that could allow an attacker to cause a denial of service condition via PROFINET DCP network packets under certain circumstances. Precondition for this scenario is a direct OSI Layer 2 access to the affected products. PROFIBUS interfaces are not affected.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-572164.html</id>
    <title>SSA-572164 V1.0: Luxion KeyShot Vulnerability in Solid Edge</title>
    <updated>2023-04-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-572164.html" rel="alternate"/>
    <summary>&lt;p&gt;The Solid Edge installation package includes a specific version of the third-party product KeyShot from Luxion : &lt;a href="https://www.keyshot.com" class="uri"&gt;https://www.keyshot.com&lt;/a&gt;, which may not contain the latest security fixes provided by Luxion.&lt;/p&gt;
&lt;p&gt;Siemens recommends to update KeyShot according to the information in the Luxion Security Advisory LSA-610622: &lt;a href="https://download.keyshot.com/cert/lsa-610622/lsa-610622.pdf" class="uri"&gt;https://download.keyshot.com/cert/lsa-610622/lsa-610622.pdf&lt;/a&gt;.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-566905.html</id>
    <title>SSA-566905 V1.0: Multiple Denial of Service Vulnerabilities in the Webserver of Industrial Products</title>
    <updated>2023-04-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-566905.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities in the affected products could allow an unauthorized attacker with network access to the webserver of an affected products to perform a denial of service attack.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-558014.html</id>
    <title>SSA-558014 V1.0: Third-Party Component Vulnerabilities in SCALANCE XCM332 before V2.2</title>
    <updated>2023-04-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-558014.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities in the third-party components cURL, BusyBox, libtirpc, Expat as well as in the Linux Kernel could allow an attacker to impact the SCALANCE XCM332 device&#8217;s confidentiality, integrity and availability.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for the SCALANCE XCM332 and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-557541.html</id>
    <title>SSA-557541 V1.2 (Last Update: 2023-04-11): Denial-of-Service Vulnerability in SIMATIC S7-400 CPUs</title>
    <updated>2023-04-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-557541.html" rel="alternate"/>
    <summary>&lt;p&gt;SIMATIC S7-400 CPU devices contain an input validation vulnerability that could allow an attacker to create a Denial-of-Service condition. A restart is needed to restore normal operations.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for SIMATIC S7-410 V10 CPU family and SIMATIC S7-400 H V6 CPU family (incl.&#160;SIPLUS variants for both) and recommends to update to the latest version. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-552702.html</id>
    <title>SSA-552702 V1.5 (Last Update: 2023-04-11): Privilege Escalation Vulnerability in the Web Interface of SCALANCE and RUGGEDCOM Products</title>
    <updated>2023-04-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-552702.html" rel="alternate"/>
    <summary>&lt;p&gt;The products listed below do not properly authorize the change password function of the web interface. This could allow low privileged users to escalate their privileges.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-549234.html</id>
    <title>SSA-549234 V1.3 (Last Update: 2023-04-11): Denial-of-Service Vulnerability in SIMATIC NET CP Modules</title>
    <updated>2023-04-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-549234.html" rel="alternate"/>
    <summary>&lt;p&gt;A denial of service vulnerability was identified in different types of Communication Processors. An attacker could exploit this vulnerability causing the device to become un-operational until the device is restarted.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-511182.html</id>
    <title>SSA-511182 V1.0: Use of Static TLS Certificate Known Hard Coded Private Keys in Adaptec Maxview Application</title>
    <updated>2023-04-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-511182.html" rel="alternate"/>
    <summary>&lt;p&gt;The Adaptec Maxview application shipped with affected SIMATIC IPCs contains a hard coded, non-unique certificate to secure HTTPS connections between the browser and the local Maxview configuration application. A local attacker may use this key to decrypt intercepted local traffic between the browser and the application and could perform a man-in-the-middle attack in order to modify data in transit.&lt;/p&gt;
&lt;p&gt;Adaptec has released updates for the affected products and recommends to update to the latest versions. Siemens recommends countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-480230.html</id>
    <title>SSA-480230 V2.6 (Last Update: 2023-04-11): Denial of Service Vulnerability in Webserver of Industrial Products</title>
    <updated>2023-04-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-480230.html" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in the affected devices could allow an unauthorized attacker with network access to the webserver of an affected device to perform a denial of service attack.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-479249.html</id>
    <title>SSA-479249 V1.0: Weak Encryption Vulnerability in SCALANCE X-200IRT Devices</title>
    <updated>2023-04-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-479249.html" rel="alternate"/>
    <summary>&lt;p&gt;The SSH server on SCALANCE X-200IRT devices is configured to offer weak ciphers by default. This could allow an unauthorized attacker in a man-in-the-middle position to read and modify any data passed over the connection between legitimate clients and the affected device.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-478960.html</id>
    <title>SSA-478960 V1.3 (Last Update: 2023-04-11): Missing CSRF Protection in the Web Server Login Page of Industrial Controllers</title>
    <updated>2023-04-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-478960.html" rel="alternate"/>
    <summary>&lt;p&gt;The web server login page of affected products does not apply proper origin checking. This could allow authenticated remote attackers to track the activities of other users via a login cross-site request forgery attack..&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-472454.html</id>
    <title>SSA-472454 V1.0: Command Injection Vulnerability in CPCI85 Firmware of SICAM A8000 Devices</title>
    <updated>2023-04-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-472454.html" rel="alternate"/>
    <summary>&lt;p&gt;The CPCI85 firmware of SICAM A8000 CP-8031 and CP-8050 is affected by unauthenticated command injection vulnerability. This could allow an attacker to perfom remote code execution.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-462066.html</id>
    <title>SSA-462066 V3.1 (Last Update: 2023-04-11): Vulnerability known as TCP SACK PANIC in Industrial Products</title>
    <updated>2023-04-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-462066.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple industrial products are affected by a vulnerability in the kernel known as TCP SACK PANIC. The vulnerability could allow a remote attacker to cause a denial of service condition.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-459643.html</id>
    <title>SSA-459643 V1.2 (Last Update: 2023-04-11): Denial of Service Vulnerability in RUGGEDCOM ROS before V5.6.0</title>
    <updated>2023-04-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-459643.html" rel="alternate"/>
    <summary>&lt;p&gt;RUGGEDCOM ROS-based devices are vulnerable to a denial of service attack (Slowloris). By sending partial HTTP requests nonstop, with none completed, the affected web servers will be waiting for the completion of each request, occupying all available HTTP connections. The web server recovers by itself once the attack ends.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-446448.html</id>
    <title>SSA-446448 V1.8 (Last Update: 2023-04-11): Denial of Service Vulnerability in PROFINET Stack Integrated on Interniche Stack</title>
    <updated>2023-04-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-446448.html" rel="alternate"/>
    <summary>&lt;p&gt;The PROFINET (PNIO) stack, when integrated with the Interniche IP stack, contains a vulnerability that could allow an attacker to cause a denial of service condition on affected industrial products.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-413565.html</id>
    <title>SSA-413565 V1.2 (Last Update: 2023-04-11): Multiple Vulnerabilities in SCALANCE Products</title>
    <updated>2023-04-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-413565.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple SCALANCE devices are affected by several vulnerabilities that could allow an attacker to inject code, retrieve data as debug information as well as user CLI passwords or set the CLI to an irresponsive state.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-408105.html</id>
    <title>SSA-408105 V1.1 (Last Update: 2023-04-11): Buffer Overflow Vulnerabilities in OpenSSL 3.0 Affecting Siemens Products</title>
    <updated>2023-04-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-408105.html" rel="alternate"/>
    <summary>&lt;p&gt;The openSSL component, versions 3.0.0 through 3.0.6, contains two buffer overflow vulnerabilities (CVE-2022-3602, CVE-2022-3786) in the X.509 certificate verification [0]. They could allow an attacker to create a denial of service condition or execute arbitrary code on a vulnerable TLS server (if the server requests client certificate authentication), or on a vulnerable TLS client.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
&lt;p&gt;[0] &lt;a href="https://www.openssl.org/news/secadv/20221101.txt" class="uri"&gt;https://www.openssl.org/news/secadv/20221101.txt&lt;/a&gt;&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-382653.html</id>
    <title>SSA-382653 V1.2 (Last Update: 2023-04-11): Multiple Denial of Service Vulnerabilities in Industrial Products</title>
    <updated>2023-04-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-382653.html" rel="alternate"/>
    <summary>&lt;p&gt;Affected SIMATIC firmware contains multiple vulnerabilities that could allow an unauthenticated attacker to perform a denial-of-service attack under certain conditions.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-349422.html</id>
    <title>SSA-349422 V1.9 (Last Update: 2023-04-11): Denial of Service Vulnerability in Industrial Real-Time (IRT) Devices</title>
    <updated>2023-04-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-349422.html" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in the affected products could allow an unauthorized attacker with network access to perform a denial-of-service attack resulting in loss of real-time synchronization.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-322980.html</id>
    <title>SSA-322980 V1.0: Denial of Service Vulnerability in SIPROTEC 5 Devices</title>
    <updated>2023-04-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-322980.html" rel="alternate"/>
    <summary>&lt;p&gt;SIPROTEC 5 devices contain a null pointer dereference vulnerability in the web service. This could allow an attacker to send unauthenticated maliciously crafted http request that could cause denial of service condition of the device.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-321292.html</id>
    <title>SSA-321292 V1.5 (Last Update: 2023-04-11): Denial of Service in the OPC Foundation Local Discovery Server (LDS) in Industrial Products</title>
    <updated>2023-04-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-321292.html" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability has been identified in the OPC Foundation Local Discovery Server (LDS) [0] of several industrial products. The vulnerability could cause a denial of service condition on the service or the device.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
&lt;p&gt;[0] &lt;a href="https://files.opcfoundation.org/SecurityBulletins/OPC%20Foundation%20Security%20Bulletin%20CVE-2021-40142.pdf" class="uri"&gt;https://files.opcfoundation.org/SecurityBulletins/OPC%20Foundation%20Security%20Bulletin%20CVE-2021-40142.pdf&lt;/a&gt;&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-310038.html</id>
    <title>SSA-310038 V1.1 (Last Update: 2023-04-11): Multiple Vulnerabilities in SCALANCE X Switch Devices</title>
    <updated>2023-04-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-310038.html" rel="alternate"/>
    <summary>&lt;p&gt;Several SCALANCE X switches contain multiple vulnerabilities. An unauthenticated attacker could reboot, cause denial-of-service conditions and potentially impact the system by other means through heap and buffer overflow vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-270778.html</id>
    <title>SSA-270778 V1.8 (Last Update: 2023-04-11): Denial-of-Service Vulnerability in SIMATIC PCS 7, SIMATIC WinCC and SIMATIC NET PC Software</title>
    <updated>2023-04-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-270778.html" rel="alternate"/>
    <summary>&lt;p&gt;A Denial-of-Service vulnerability was found in SIMATIC PCS 7, SIMATIC WinCC and SIMATIC NET PC software when encrypted communication is enabled. The vulnerability could allow an attacker with network access to cause a Denial-of-Service condition under certain circumstances (versions prior to SIMATIC WinCC V7.3 or SIMATIC PCS 7 V8.1 are not affected as encrypted communication is not an option).&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
&lt;p&gt;Note: The vulnerability is part of a shared component, used by various Siemens products (SIMATIC Communication Services - SCS). The installation of a fix version of any product also removes the vulnerability for other products on the same system, even if those products were not updated.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-256353.html</id>
    <title>SSA-256353 V1.4 (Last Update: 2023-04-11): Third-Party Component Vulnerabilities in RUGGEDCOM ROS</title>
    <updated>2023-04-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-256353.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities affect various third-party components of the RUGGEDCOM Operating System (ROS). If exploited, an attacker could cause a denial-of-service, act as a man-in-the-middle or retrieval of sensitive information or gain privileged functions.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-244969.html</id>
    <title>SSA-244969 V2.0 (Last Update: 2023-04-11): OpenSSL Vulnerability in Industrial Products</title>
    <updated>2023-04-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-244969.html" rel="alternate"/>
    <summary>&lt;p&gt;OpenSSL has published a security advisory [0] about a vulnerability in OpenSSL versions 1.1.1 &amp;lt; 1.1.1l and 1.0.2 &amp;lt; 1.0.2za that allows an attacker to cause a denial of service (DoS) or to disclose private memory content.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
&lt;p&gt;[0] &lt;a href="https://www.openssl.org/news/secadv/20210824.txt" class="uri"&gt;https://www.openssl.org/news/secadv/20210824.txt&lt;/a&gt;&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-116924.html</id>
    <title>SSA-116924 V1.0: Path Traversal Vulnerability in TIA Portal</title>
    <updated>2023-04-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-116924.html" rel="alternate"/>
    <summary>&lt;p&gt;TIA Portal contains a path traversal vulnerability that could allow the creation or overwrite of arbitrary files in the engineering system. If the user is tricked to open a malicious PC system configuration file, an attacker could exploit this vulnerability to achieve arbitrary code execution.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for TIA Portal V18 and recommends to update to the latest version. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-102233.html</id>
    <title>SSA-102233 V2.1 (Last Update: 2023-04-11): SegmentSmack in VxWorks-based Industrial Devices</title>
    <updated>2023-04-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-102233.html" rel="alternate"/>
    <summary>&lt;p&gt;The products listed below contain a vulnerability that could allow remote attackers to affect the availability of the devices under certain conditions. The underlying TCP stack can be forced to make very computation expensive calls for every incoming packet which can lead to a Denial-of-Service.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-941426.html</id>
    <title>SSA-941426 V1.4 (Last Update: 2023-03-14): Multiple LLDP Vulnerabilities in Industrial Products</title>
    <updated>2023-03-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-941426.html" rel="alternate"/>
    <summary>&lt;p&gt;There are multiple vulnerabilities in an underlying Link Layer Discovery Protocol (LLDP) third party library.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-851884.html</id>
    <title>SSA-851884 V1.0: Authentication Bypass Vulnerability in Mendix SAML Module</title>
    <updated>2023-03-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-851884.html" rel="alternate"/>
    <summary>&lt;p&gt;The Mendix SAML module insufficiently verifies the SAML assertions. This could allow unauthenticated remote attackers to bypass authentication and get access to the application.&lt;/p&gt;
&lt;p&gt;Mendix has provided fix releases for the Mendix SAML module and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-847261.html</id>
    <title>SSA-847261 V1.1 (Last Update: 2023-03-14): Multiple SPP File Parsing Vulnerabilities in Tecnomatix Plant Simulation</title>
    <updated>2023-03-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-847261.html" rel="alternate"/>
    <summary>&lt;p&gt;Siemens Tecnomatix Plant Simulation has released an update, 2201 Update 6, that fixes multiple vulnerabilities that could be triggered when the application reads SPP files. If a user is tricked to open a malicious file using the affected application, this could lead to a crash, and potentially also to arbitrary code execution on the target host system.&lt;/p&gt;
&lt;p&gt;Siemens recommends to update to the latest version and to avoid opening of untrusted files from unknown sources.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-840800.html</id>
    <title>SSA-840800 V1.2 (Last Update: 2023-03-14): Code Injection Vulnerability in RUGGEDCOM ROS</title>
    <updated>2023-03-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-840800.html" rel="alternate"/>
    <summary>&lt;p&gt;RUGGEDCOM ROS-based devices are vulnerable to a web-based code injection attack. To execute this attack, it is necessary to access the system via the Command Line Interface (CLI).&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-787941.html</id>
    <title>SSA-787941 V1.1 (Last Update: 2023-03-14): Denial of Service Vulnerability in RUGGEDCOM ROS V4</title>
    <updated>2023-03-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-787941.html" rel="alternate"/>
    <summary>&lt;p&gt;RUGGEDCOM ROS-based V4 devices are vulnerable to a denial of service attack (Slowloris). By sending partial HTTP requests nonstop, with none completed, the affected web servers will be waiting for the completion of each request, occupying all available HTTP connections. The web server recovers by itself once the attack ends.&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-772220.html</id>
    <title>SSA-772220 V2.2 (Last Update: 2023-03-14): OpenSSL Vulnerabilities in Industrial Products</title>
    <updated>2023-03-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-772220.html" rel="alternate"/>
    <summary>&lt;p&gt;OpenSSL has published a security advisory [0] about a vulnerability in OpenSSL versions 1.1.1 &amp;lt; 1.1.1k, that allows an unauthenticated attacker to cause a Denial-of-Service (DoS) if a maliciously crafted renegotiation message is sent.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
&lt;p&gt;[0] &lt;a href="https://www.openssl.org/news/secadv/20210325.txt" class="uri"&gt;https://www.openssl.org/news/secadv/20210325.txt&lt;/a&gt;&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-764417.html</id>
    <title>SSA-764417 V1.7 (Last Update: 2023-03-14): Weak Encryption Vulnerability in RUGGEDCOM ROS Devices</title>
    <updated>2023-03-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-764417.html" rel="alternate"/>
    <summary>&lt;p&gt;The SSH server on RUGGEDCOM ROS devices is configured to offer weak ciphers by default. This could allow an unauthorized attacker in a man-in-the-middle position to read and modify any data passed over the connection between legitimate clients and the affected device.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-726834.html</id>
    <title>SSA-726834 V1.0: Denial of Service Vulnerability in the RADIUS Client of SIPROTEC 5 Devices</title>
    <updated>2023-03-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-726834.html" rel="alternate"/>
    <summary>&lt;p&gt;The RADIUS client implementation of the VxWorks platform in SIPROTEC 5 devices contains a denial of service vulnerability that could be triggered when a specially crafted packet is sent by a RADIUS server.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-712929.html</id>
    <title>SSA-712929 V1.8 (Last Update: 2023-03-14): Denial of Service Vulnerability in OpenSSL (CVE-2022-0778) Affecting Industrial Products</title>
    <updated>2023-03-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-712929.html" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in the openSSL component (CVE-2022-0778, [0]) could allow an attacker to create a denial of service condition by providing specially crafted elliptic curve certificates to products that use a vulnerable version of openSSL.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
&lt;p&gt;[0] &lt;a href="https://www.openssl.org/news/secadv/20220315.txt" class="uri"&gt;https://www.openssl.org/news/secadv/20220315.txt&lt;/a&gt;&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-700053.html</id>
    <title>SSA-700053 V1.1 (Last Update: 2023-03-14): Multiple File Parsing Vulnerabilities in Teamcenter Visualization and JT2Go</title>
    <updated>2023-03-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-700053.html" rel="alternate"/>
    <summary>&lt;p&gt;Siemens Teamcenter Visualization and JT2Go are affected by multiple file parsing vulnerabilities that could be triggered when the application reads a malicious file in CGM or RAS format. If a user is tricked to open a malicious file with the affected products, this could lead the application to crash or potentially lead to arbitrary code execution.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-697140.html</id>
    <title>SSA-697140 V1.2 (Last Update: 2023-03-14): Denial of Service Vulnerability in the TCP Event Service of SCALANCE and RUGGEDCOM Products</title>
    <updated>2023-03-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-697140.html" rel="alternate"/>
    <summary>&lt;p&gt;The products listed below contain a denial of service vulnerability in the TCP event interface that could allow an unauthenticated remote attacker to render the device unusable.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-565386.html</id>
    <title>SSA-565386 V1.0: Third-Party Component Vulnerabilities in SCALANCE W-700 IEEE 802.11ax devices before V2.0</title>
    <updated>2023-03-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-565386.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities affecting various third-party components of SCALANCE W-700 IEEE 802.11ax devices before V2.0 could allow an attacker to cause a denial of service condition, disclose sensitive data or violate the system integrity.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for SCALANCE W-700 IEEE 802.11ax and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-552702.html</id>
    <title>SSA-552702 V1.4 (Last Update: 2023-03-14): Privilege Escalation Vulnerability in the Web Interface of SCALANCE and RUGGEDCOM Products</title>
    <updated>2023-03-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-552702.html" rel="alternate"/>
    <summary>&lt;p&gt;The products listed below do not properly authorize the change password function of the web interface. This could allow low privileged users to escalate their privileges.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-539476.html</id>
    <title>SSA-539476 V1.4 (Last Update: 2023-03-14): Siemens SIMATIC NET CP, SINEMA and SCALANCE Products Affected by Vulnerabilities in Third-Party Component strongSwan</title>
    <updated>2023-03-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-539476.html" rel="alternate"/>
    <summary>&lt;p&gt;Vulnerabilities in the third-party component strongSwan could allow an attacker to cause a denial of service (DoS) condition in affected devices by exploiting integer overflow bugs.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-517377.html</id>
    <title>SSA-517377 V1.2 (Last Update: 2023-03-14): Multiple Vulnerabilities in the SRCS VPN Feature in SIMATIC CP Devices</title>
    <updated>2023-03-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-517377.html" rel="alternate"/>
    <summary>&lt;p&gt;The below referenced devices contain multiple vulnerabilities that could be exploited when the SINEMA Remote Connect Server (SRCS) VPN feature is used. The feature is not activated by default. The most severe could allow an attacker to execute arbitrary code with elevated privileges under certain circumstances.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-491245.html</id>
    <title>SSA-491245 V1.1 (Last Update: 2023-03-14): Multiple File Parsing Vulnerabilities in Solid Edge</title>
    <updated>2023-03-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-491245.html" rel="alternate"/>
    <summary>&lt;p&gt;Solid Edge is affected by multiple memory corruption vulnerabilities that could be triggered when the application reads specially crafted files in various formats such as X_B, DWG, DXF, STL, STP, SLDPRT and PAR format. If a user is tricked to open a malicious file with the affected applications, an attacker could leverage the vulnerability to crash the application, extract data or potentially lead to arbitrary code execution.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-482757.html</id>
    <title>SSA-482757 V1.2 (Last Update: 2023-03-14): Missing Immutable Root of Trust in S7-1500 CPU devices</title>
    <updated>2023-03-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-482757.html" rel="alternate"/>
    <summary>&lt;p&gt;Affected models of the S7-1500 CPU product family do not contain an Immutable Root of Trust in Hardware. With this the integrity of the code executed on the device can not be validated during load-time. An attacker with physical access to the device could use this to replace the boot image of the device and execute arbitrary code.&lt;/p&gt;
&lt;p&gt;As exploiting this vulnerability requires physical tampering with the product, Siemens recommends to assess the risk of physical access to the device in the target deployment and to implement measures to make sure that only trusted personnel have access to the physical hardware.&lt;/p&gt;
&lt;p&gt;The vulnerability is related to the hardware of the product. Siemens has released new hardware versions for several CPU types of the S7-1500 product family in which this vulnerability is fixed and is working on new hardware versions for remaining PLC types to address this vulnerability completely. See the chapter &#8220;Additional Information&#8221; below for more details.&lt;/p&gt;
&lt;p&gt;For more information please also refer to the related product support article: &lt;a href="https://support.industry.siemens.com/cs/ww/en/view/109816536/" class="uri"&gt;https://support.industry.siemens.com/cs/ww/en/view/109816536/&lt;/a&gt;.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-476715.html</id>
    <title>SSA-476715 V1.1 (Last Update: 2023-03-14): Two Vulnerabilities in Automation License Manager</title>
    <updated>2023-03-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-476715.html" rel="alternate"/>
    <summary>&lt;p&gt;Siemens Automation License Manager contains two vulnerabilities which, when combined, could allow an attacker to modify and rename license files, extract licenses and overwrite arbitrary files on the target system potentially leading to privilege escalation and remote code execution. The affected functionality is not available for remote attackers in the default configuration since version V6.0 SP2 of Automation License Manager.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for Automation License Manager V6 and recommends to update to the latest version. Siemens recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssb-439005.html</id>
    <title>SSB-439005 V5.1 (Last Update: 2023-03-14): Vulnerabilities in the additional GNU/Linux subsystem of the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP</title>
    <updated>2023-03-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssb-439005.html" rel="alternate"/>
    <summary>
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-419740.html</id>
    <title>SSA-419740 V1.0: Multiple	Third-Party Component Vulnerabilities in RUGGEDCOM and SCALANCE Products before V7.2</title>
    <updated>2023-03-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-419740.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple third-party component vulnerabilities were reported for the Busybox applet, the Linux Kernel, OpenSSL, OpenVPN and various other components used by the RUGGEDCOM and SCALANCE products. The vulnerabilities range from improper neutralization of special elements to improper handling of commands under certain circumstances, that could lead to code injection and denial of service.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-413565.html</id>
    <title>SSA-413565 V1.1 (Last Update: 2023-03-14): Multiple Vulnerabilities in SCALANCE Products</title>
    <updated>2023-03-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-413565.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple SCALANCE devices are affected by several vulnerabilities that could allow an attacker to inject code, retrieve data as debug information as well as user CLI passwords or set the CLI to an irresponsive state.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-324955.html</id>
    <title>SSA-324955 V2.0 (Last Update: 2023-03-14): SAD DNS Attack in Linux Based Products</title>
    <updated>2023-03-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-324955.html" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability made public under the name SAD DNS affects Domain Name System resolvers due to a vulnerability in the Linux kernel when handling ICMP packets. The Siemens products which are affected are listed below. For more information please see &lt;a href="https://www.saddns.net/" class="uri"&gt;https://www.saddns.net/&lt;/a&gt;.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-321292.html</id>
    <title>SSA-321292 V1.4 (Last Update: 2023-03-14): Denial of Service in the OPC Foundation Local Discovery Server (LDS) in Industrial Products</title>
    <updated>2023-03-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-321292.html" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability has been identified in the OPC Foundation Local Discovery Server (LDS) [0] of several industrial products. The vulnerability could cause a denial of service condition on the service or the device.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
&lt;p&gt;[0] &lt;a href="https://files.opcfoundation.org/SecurityBulletins/OPC%20Foundation%20Security%20Bulletin%20CVE-2021-40142.pdf" class="uri"&gt;https://files.opcfoundation.org/SecurityBulletins/OPC%20Foundation%20Security%20Bulletin%20CVE-2021-40142.pdf&lt;/a&gt;&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-320629.html</id>
    <title>SSA-320629 V1.0: Security Vulnerabilities Fixed in RUGGEDCOM CROSSBOW V5.3</title>
    <updated>2023-03-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-320629.html" rel="alternate"/>
    <summary>&lt;p&gt;RUGGEDCOM CROSSBOW before V5.3 contains two vulnerabilities that could allow authenticated remote attackers to access data they are not authorized for, or execute arbitrary database queries via an SQL injection attack.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for RUGGEDCOM CROSSBOW and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-260625.html</id>
    <title>SSA-260625 V1.0: Security Vulnerabilities Fixed in RUGGEDCOM CROSSBOW V5.2</title>
    <updated>2023-03-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-260625.html" rel="alternate"/>
    <summary>&lt;p&gt;RUGGEDCOM CROSSBOW V5.2 fixes two vulnerabilities that could allow authenticated remote attackers to perform unauthorized actions (CVE-2023-27309) or escalate privileges (CVE-2023-27310).&lt;/p&gt;
&lt;p&gt;Siemens has released an update for RUGGEDCOM CROSSBOW and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-256353.html</id>
    <title>SSA-256353 V1.3 (Last Update: 2023-03-14): Third-Party Component Vulnerabilities in RUGGEDCOM ROS</title>
    <updated>2023-03-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-256353.html" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities affect various third-party components of the RUGGEDCOM Operating System (ROS). If exploited, an attacker could cause a denial-of-service, act as a man-in-the-middle or retrieval of sensitive information or gain privileged functions.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-250085.html</id>
    <title>SSA-250085 V1.2 (Last Update: 2023-03-14): Multiple Vulnerabilities in SINEC NMS and SINEMA Server</title>
    <updated>2023-03-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-250085.html" rel="alternate"/>
    <summary>&lt;p&gt;SINEC NMS and SINEMA Server V14 contains multiple vulnerabilities that could allow an attacker to execute arbitrary code on the system, arbitrary commands on the local database or achieve privilege escalation.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for SINEC NMS to fix CVE-2022-24281 and recommends to update to the latest version. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-244969.html</id>
    <title>SSA-244969 V1.9 (Last Update: 2023-03-14): OpenSSL Vulnerability in Industrial Products</title>
    <updated>2023-03-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-244969.html" rel="alternate"/>
    <summary>&lt;p&gt;OpenSSL has published a security advisory [0] about a vulnerability in OpenSSL versions 1.1.1 &amp;lt; 1.1.1l and 1.0.2 &amp;lt; 1.0.2za that allows an attacker to cause a denial of service (DoS) or to disclose private memory content.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
&lt;p&gt;[0] &lt;a href="https://www.openssl.org/news/secadv/20210824.txt" class="uri"&gt;https://www.openssl.org/news/secadv/20210824.txt&lt;/a&gt;&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-223771.html</id>
    <title>SSA-223771 V1.2 (Last Update: 2023-03-14): SISCO Stack Vulnerability in SIPROTEC 5 Devices</title>
    <updated>2023-03-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-223771.html" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in the third party component SISCO MMS-EASE could allow attackers to cause a denial of service condition with SIPROTEC 5 devices.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/html/ssa-203374.html</id>
    <title>SSA-203374 V1.0: Multiple OpenSSL Vulnerabilities in SCALANCE W1750D Devices</title>
    <updated>2023-03-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/html/ssa-203374.html" rel="alternate"/>
    <summary>&lt;p&gt;The SCALANCE W1750D device contains multiple vulnerabilities in the integrated OpenSSL component that could allow an attacker to read memory contents, decrypt RSA-encrypted messages or create a denial of service condition.&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-953464.pdf</id>
    <title>SSA-953464 V1.0: Multiple Vulnerabilites in Siemens Brownfield Connectivity - Client before V2.15</title>
    <updated>2023-02-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-953464.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Siemens has released a new version for Brownfield Connectivity - Client that contains fixes for multiple vulnerabilities in the underlying OpenSSL library. Successful exploitation of these vulnerabilities could lead to Denial of Service (DoS).&lt;/p&gt;
&lt;p&gt;Siemens has released an update for Brownfield Connectivity - Client and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-847261.pdf</id>
    <title>SSA-847261 V1.0: Multiple SPP File Parsing Vulnerabilities in Tecnomatix Plant Simulation</title>
    <updated>2023-02-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-847261.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Siemens Tecnomatix Plant Simulation has released an update, 2201 Update 6, that fixes multiple vulnerabilities that could be triggered when the application reads SPP files. If a user is tricked to open a malicious file using the affected application, this could lead to a crash, and potentially also to arbitrary code execution on the target host system.&lt;/p&gt;
&lt;p&gt;Siemens recommends to update to the latest version and to avoid opening of untrusted files from unknown sources.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-836777.pdf</id>
    <title>SSA-836777 V1.0: JT File Parsing Vulnerabilities in JT Open, JT Utilities and Parasolid</title>
    <updated>2023-02-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-836777.pdf" rel="alternate"/>
    <summary>&lt;p&gt;JT Open Toolkit, JT Utilities and Parasolid are affected by memory corruption vulnerabilities that could be triggered while parsing JT files. If a user is tricked to open a malicious JT file with any of the affected products, this could cause the application to crash or potentially lead to arbitrary code execution.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-744259.pdf</id>
    <title>SSA-744259 V1.0: Golang Vulnerabilities in Brownfield Connectivity - Gateway before V1.10.1</title>
    <updated>2023-02-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-744259.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Siemens has released a new version for Brownfield Connectivity - Gateway that contains fixes for multiple vulnerabilities in the underlying Golang implementation. Successful exploitation of these vulnerabilities could lead to Denial of Service (DoS).&lt;/p&gt;
&lt;p&gt;Siemens has released an update for Brownfield Connectivity - Gateway and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-712929.pdf</id>
    <title>SSA-712929 V1.7 (Last Update: 2023-02-14): Denial of Service Vulnerability in OpenSSL (CVE-2022-0778) Affecting Industrial Products</title>
    <updated>2023-02-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-712929.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in the openSSL component (CVE-2022-0778, [0]) could allow an attacker to create a denial of service condition by providing specially crafted elliptic curve certificates to products that use a vulnerable version of openSSL.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
&lt;p&gt;[0] &lt;a href="https://www.openssl.org/news/secadv/20220315.txt" class="uri"&gt;https://www.openssl.org/news/secadv/20220315.txt&lt;/a&gt;&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-693110.pdf</id>
    <title>SSA-693110 V1.0: Buffer Overflow Vulnerability in COMOS</title>
    <updated>2023-02-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-693110.pdf" rel="alternate"/>
    <summary>&lt;p&gt;COMOS is affected by memory corruption vulnerability in the cache validation service that could allow an attacker to execute arbitrary code or cause denial of service condition.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-686975.pdf</id>
    <title>SSA-686975 V1.0: IPU 2022.3 Vulnerabilities in Siemens Industrial Products using Intel CPUs</title>
    <updated>2023-02-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-686975.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Intel has published information on vulnerabilities in Intel products in November 2022. This advisory lists the related Siemens Industrial products affected by these vulnerabilities that can be patched by applying the corresponding BIOS update (&#8220;2022.3 IPU &#8211; BIOS Advisory&#8221; &lt;a href="https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00688.html"&gt;Intel-SA-00688&lt;/a&gt;).&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-658793.pdf</id>
    <title>SSA-658793 V1.0: Command Injection Vulnerability in SiPass integrated AC5102 / ACC-G2 and ACC-AP</title>
    <updated>2023-02-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-658793.pdf" rel="alternate"/>
    <summary>&lt;p&gt;SiPass integrated ACC (Advanced Central Controller) devices improperly sanitize user input on the telnet command line interface. This could allow an authenticated user to escalate privileges by injecting arbitrary commands that are executed with root privileges.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-640968.pdf</id>
    <title>SSA-640968 V1.0: Untrusted Search Path Vulnerability in TIA Project-Server formerly known as TIA Multiuser Server</title>
    <updated>2023-02-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-640968.pdf" rel="alternate"/>
    <summary>&lt;p&gt;TIA Project-Server formerly known as TIA Multiuser Server contains an untrusted search path vulnerability that could allow an attacker to escalate privileges, when tricking a legitimate user to start the service from an attacker controlled path.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-617755.pdf</id>
    <title>SSA-617755 V1.0: Denial of Service Vulnerability in the SNMP Agent of SCALANCE X-200IRT Products</title>
    <updated>2023-02-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-617755.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Products of the SCALANCE X-200IRT switch family are affected by a denial of service vulnerability in the SNMP agent that could allow remote attackers to cause a denial of service condition.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-593272.pdf</id>
    <title>SSA-593272 V2.0 (Last Update: 2023-02-14): SegmentSmack in Interniche IP-Stack based Industrial Devices</title>
    <updated>2023-02-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-593272.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability exists in affected products that could allow remote attackers to affect the availability of the devices under certain conditions.&lt;/p&gt;
&lt;p&gt;The underlying TCP stack can be forced to make very computation expensive calls for every incoming packet which can lead to a Denial-of-Service.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens recommends countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-568428.pdf</id>
    <title>SSA-568428 V1.1 (Last Update: 2023-02-14): Weak Key Protection Vulnerability in SINUMERIK ONE and SINUMERIK MC</title>
    <updated>2023-02-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-568428.pdf" rel="alternate"/>
    <summary>&lt;p&gt;SINUMERIK ONE and SINUMERIK MC products are affected by a weak key protection vulnerability in the integrated S7-1500 CPU. The weak key protection vulnerability in the integrated S7-1500 CPU is documented in more detail in SSA-568427 [1].&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
&lt;p&gt;[1] &lt;a href="https://cert-portal.siemens.com/productcert/html/ssa-568427.html" class="uri"&gt;https://cert-portal.siemens.com/productcert/html/ssa-568427.html&lt;/a&gt;&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-565356.pdf</id>
    <title>SSA-565356 V1.0: X_T File Parsing Vulnerabilities in Simcenter Femap before V2023.1</title>
    <updated>2023-02-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-565356.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Simcenter Femap is affected by out of bounds read/write vulnerabilities that could be triggered when the application reads files in X_T format. If a user is tricked to open a malicious file with the affected applications, an attacker could leverage the vulnerability to perform remote code execution in the context of the current process.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-506569.pdf</id>
    <title>SSA-506569 V1.1 (Last Update: 2023-02-14): Multiple Vulnerabilities in SCALANCE W1750D</title>
    <updated>2023-02-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-506569.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The SCALANCE W1750D device contains multiple vulnerabilities that could allow an attacker to inject commands or exploit buffer overflow vulnerabilities which could lead to denial of service, unauthenticated remote code execution or stored XSS.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-491245.pdf</id>
    <title>SSA-491245 V1.0: Multiple File Parsing Vulnerabilities in Solid Edge</title>
    <updated>2023-02-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-491245.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Solid Edge is affected by multiple memory corruption vulnerabilities that could be triggered when the application reads specially crafted files in various formats such as X_B, DWG, DXF, STL, STP, SLDPRT and PAR format. If a user is tricked to open a malicious file with the affected applications, an attacker could leverage the vulnerability to crash the application, extract data or potentially lead to arbitrary code execution.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-482757.pdf</id>
    <title>SSA-482757 V1.1 (Last Update: 2023-02-14): Missing Immutable Root of Trust in S7-1500 CPU devices</title>
    <updated>2023-02-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-482757.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Affected models of the S7-1500 CPU product family do not contain an Immutable Root of Trust in Hardware. With this the integrity of the code executed on the device can not be validated during load-time. An attacker with physical access to the device could use this to replace the boot image of the device and execute arbitrary code.&lt;/p&gt;
&lt;p&gt;As exploiting this vulnerability requires physical tampering with the product, Siemens recommends to assess the risk of physical access to the device in the target deployment and to implement measures to make sure that only trusted personnel have access to the physical hardware.&lt;/p&gt;
&lt;p&gt;The vulnerability is related to the hardware of the product. Siemens has released new hardware versions for several CPU types of the S7-1500 product family in which this vulnerability is fixed and is working on new hardware versions for remaining PLC types to address this vulnerability completely. See the chapter &#8220;Additional Information&#8221; below for more details.&lt;/p&gt;
&lt;p&gt;For more information please also refer to the related product support article: &lt;a href="https://support.industry.siemens.com/cs/ww/en/view/109816536/" class="uri"&gt;https://support.industry.siemens.com/cs/ww/en/view/109816536/&lt;/a&gt;.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-450613.pdf</id>
    <title>SSA-450613 V1.0: Insyde BIOS Vulnerabilities in RUGGEDCOM APE1808 Product Family</title>
    <updated>2023-02-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-450613.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Insyde has published information on vulnerabilities in Insyde BIOS in &lt;a href="https://www.insyde.com/security-pledge"&gt;November 2022&lt;/a&gt;. These vulnerabilities also affect the RUGGEDCOM APE1808 product family.&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-446448.pdf</id>
    <title>SSA-446448 V1.7 (Last Update: 2023-02-14): Denial of Service Vulnerability in PROFINET Stack Integrated on Interniche Stack</title>
    <updated>2023-02-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-446448.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The PROFINET (PNIO) stack, when integrated with the Interniche IP stack, contains a vulnerability that could allow an attacker to cause a denial of service condition on affected industrial products.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssb-439005.pdf</id>
    <title>SSB-439005 V5.0 (Last Update: 2023-02-14): Vulnerabilities in the additional GNU/Linux subsystem of the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP</title>
    <updated>2023-02-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssb-439005.pdf" rel="alternate"/>
    <summary>
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-313313.pdf</id>
    <title>SSA-313313 V1.2 (Last Update: 2023-02-14): Denial of Service Vulnerability in the FTP Server of Nucleus RTOS</title>
    <updated>2023-02-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-313313.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The FTP server of the networking component (Nucleus NET) in Nucleus Real-Time Operating System (RTOS) does not properly release memory resources that were reserved for incomplete connection attempts by FTP clients. This could allow a remote attacker to generate a denial of service condition on devices that incorporate a vulnerable version of the FTP server.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-306654.pdf</id>
    <title>SSA-306654 V1.5 (Last Update: 2023-02-14): Insyde BIOS Vulnerabilities in Siemens Industrial Products</title>
    <updated>2023-02-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-306654.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Insyde has published information on vulnerabilities in Insyde BIOS in &lt;a href="https://www.insyde.com/security-pledge"&gt;February 2022&lt;/a&gt;. This advisory lists the Siemens Industrial products affected by these vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-252808.pdf</id>
    <title>SSA-252808 V1.0: XPath Constraint Vulnerability in Mendix Runtime</title>
    <updated>2023-02-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-252808.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Mendix applications contain an improper access control vulnerability that could allow an attacker to bypass XPath constraints and retrieve information using XPath queries that trigger errors.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-997779.pdf</id>
    <title>SSA-997779 V1.0: File Parsing Vulnerability in Solid Edge before V2023 MP1</title>
    <updated>2023-01-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-997779.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Solid Edge is affected by memory corruption vulnerability that could be triggered when the application read files in different file formats such as PAR, ASM, DFT. If a user is tricked to open a malicious file with the affected applications, an attacker could leverage the vulnerability to perform remote code execution in the context of the current process.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for Solid Edge and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-936212.pdf</id>
    <title>SSA-936212 V1.0: JT File Parsing Vulnerabilities in JT Open, JT Utilities and Solid Edge</title>
    <updated>2023-01-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-936212.pdf" rel="alternate"/>
    <summary>&lt;p&gt;JT Open Toolkit, JT Utilities and Solid Edge are affected by memory corruption vulnerabilities that could be triggered while parsing JT files. If a user is tricked to open a malicious JT file with any of the affected products, this could cause the application to crash or potentially lead to arbitrary code execution.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-712929.pdf</id>
    <title>SSA-712929 V1.6 (Last Update: 2023-01-10): Denial of Service Vulnerability in OpenSSL (CVE-2022-0778) Affecting Industrial Products</title>
    <updated>2023-01-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-712929.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in the openSSL component (CVE-2022-0778, [0]) could allow an attacker to create a denial of service condition by providing specially crafted elliptic curve certificates to products that use a vulnerable version of openSSL.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
&lt;p&gt;[0] &lt;a href="https://www.openssl.org/news/secadv/20220315.txt" class="uri"&gt;https://www.openssl.org/news/secadv/20220315.txt&lt;/a&gt;&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-710008.pdf</id>
    <title>SSA-710008 V1.2 (Last Update: 2023-01-10): Multiple Web Vulnerabilities in SCALANCE Products</title>
    <updated>2023-01-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-710008.pdf" rel="alternate"/>
    <summary>&lt;p&gt;SCALANCE devices contain multiple vulnerabilities in MSPS based product lines that could allow authenticated remote attackers to execute custom code or create a XSS situation, as well as unauthenticated remote attackers to create a denial of service condition.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-697140.pdf</id>
    <title>SSA-697140 V1.1 (Last Update: 2023-01-10): Denial of Service Vulnerability in the TCP Event Service of SCALANCE and RUGGEDCOM Products</title>
    <updated>2023-01-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-697140.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The products listed below contain a denial of service vulnerability in the TCP event interface that could allow an unauthenticated remote attacker to render the device unusable.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-593272.pdf</id>
    <title>SSA-593272 V1.9 (Last Update: 2023-01-10): SegmentSmack in Interniche IP-Stack based Industrial Devices</title>
    <updated>2023-01-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-593272.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability exists in affected products that could allow remote attackers to affect the availability of the devices under certain conditions.&lt;/p&gt;
&lt;p&gt;The underlying TCP stack can be forced to make very computation expensive calls for every incoming packet which can lead to a Denial-of-Service.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens recommends countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-592007.pdf</id>
    <title>SSA-592007 V1.9 (Last Update: 2023-01-10): Denial of Service Vulnerability in Industrial Products</title>
    <updated>2023-01-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-592007.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Several industrial controllers are affected by a security vulnerability that could allow an attacker to cause a denial of service condition via PROFINET DCP network packets under certain circumstances. Precondition for this scenario is a direct OSI Layer 2 access to the affected products. PROFIBUS interfaces are not affected.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-552702.pdf</id>
    <title>SSA-552702 V1.3 (Last Update: 2023-01-10): Privilege Escalation Vulnerability in the Web Interface of SCALANCE and RUGGEDCOM Products</title>
    <updated>2023-01-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-552702.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The products listed below do not properly authorize the change password function of the web interface. This could allow low privileged users to escalate their privileges.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-547714.pdf</id>
    <title>SSA-547714 V1.1 (Last Update: 2023-01-10): Argument Injection Vulnerability in SIMATIC WinCC OA Ultralight Client</title>
    <updated>2023-01-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-547714.pdf" rel="alternate"/>
    <summary>&lt;p&gt;SIMATIC WinCC OA contains an argument injection vulnerability that could allow an authenticated remote attacker to inject arbitrary parameters, when starting the Ultralight Client via the web interface (e.g., open attacker chosen panels with the attacker&#8217;s credentials or start a Ctrl script).&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-496604.pdf</id>
    <title>SSA-496604 V1.0: Cross-Site Scripting Vulnerability in Mendix SAML Module</title>
    <updated>2023-01-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-496604.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The Mendix SAML module is affected by a reflected cross-site scripting (XSS) vulnerability that could allow an attacker to extract sensitive information by tricking users into accessing a malicious link. Apps are only vulnerable in certain cases when non-default configuration is used.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-482757.pdf</id>
    <title>SSA-482757 V1.0: Missing Immutable Root of Trust in S7-1500 CPU devices</title>
    <updated>2023-01-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-482757.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Affected models of the S7-1500 CPU product family do not contain an Immutable Root of Trust in Hardware. With this the integrity of the code executed on the device can not be validated during load-time. An attacker with physical access to the device could use this to replace the boot image of the device and execute arbitrary code.&lt;/p&gt;
&lt;p&gt;As exploiting this vulnerability requires physical tampering with the product, Siemens recommends to assess the risk of physical access to the device in the target deployment and to implement measures to make sure that only trusted personnel have access to the physical hardware.&lt;/p&gt;
&lt;p&gt;The vulnerability is related to the hardware of the product. Siemens has released new hardware versions for several CPU types of the S7-1500 product family in which this vulnerability is fixed and is working on new hardware versions for remaining PLC types to address this vulnerability completely. See the chapter &#8220;Additional Information&#8221; below for more details.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-480230.pdf</id>
    <title>SSA-480230 V2.5 (Last Update: 2023-01-10): Denial of Service Vulnerability in Webserver of Industrial Products</title>
    <updated>2023-01-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-480230.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in the affected devices could allow an unauthorized attacker with network access to the webserver of an affected device to perform a denial of service attack.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the new versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-478960.pdf</id>
    <title>SSA-478960 V1.2 (Last Update: 2023-01-10): Missing CSRF Protection in the Web Server Login Page of Industrial Controllers</title>
    <updated>2023-01-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-478960.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The web server login page of affected products does not apply proper origin checking. This could allow authenticated remote attackers to track the activities of other users via a login cross-site request forgery attack..&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-476715.pdf</id>
    <title>SSA-476715 V1.0: Two Vulnerabilities in Automation License Manager</title>
    <updated>2023-01-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-476715.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Siemens has released a new version for Automation License Manager that fixes multiple vulnerabilities which, when combined, could allow an attacker to modify and rename license files, extract licenses and overwrite arbitrary files on the target system potentially leading to privilege escalation and remote code execution.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for Automation License Manager V6 and recommends to update to the latest version. Siemens recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-473245.pdf</id>
    <title>SSA-473245 V2.5 (Last Update: 2023-01-10): Denial-of-Service Vulnerability in Profinet Devices</title>
    <updated>2023-01-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-473245.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in affected devices could allow an attacker to perform a denial-of-service attack if a large amount of specially crafted UDP packets are sent to the device.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-446448.pdf</id>
    <title>SSA-446448 V1.6 (Last Update: 2023-01-10): Denial of Service Vulnerability in PROFINET Stack Integrated on Interniche Stack</title>
    <updated>2023-01-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-446448.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The PROFINET (PNIO) stack, when integrated with the Interniche IP stack, contains a vulnerability that could allow an attacker to cause a denial of service condition on affected industrial products.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-431678.pdf</id>
    <title>SSA-431678 V1.4 (Last Update: 2023-01-10): Denial of Service Vulnerability in SIMATIC S7 CPU Families</title>
    <updated>2023-01-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-431678.pdf" rel="alternate"/>
    <summary>&lt;p&gt;SIMATIC S7 CPU families are affected by a vulnerability that could allow remote attackers to perform a denial of service attack by sending a specially crafted HTTP request to the web server of an affected device.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-382653.pdf</id>
    <title>SSA-382653 V1.1 (Last Update: 2023-01-10): Multiple Denial of Service Vulnerabilities in Industrial Products</title>
    <updated>2023-01-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-382653.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Affected SIMATIC firmware contains multiple vulnerabilities that could allow an unauthenticated attacker to perform a denial-of-service attack under certain conditions.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-349422.pdf</id>
    <title>SSA-349422 V1.8 (Last Update: 2023-01-10): Denial of Service Vulnerability in Industrial Real-Time (IRT) Devices</title>
    <updated>2023-01-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-349422.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in the affected products could allow an unauthorized attacker with network access to perform a denial-of-service attack resulting in loss of real-time synchronization.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-332410.pdf</id>
    <title>SSA-332410 V1.0: Multiple Vulnerabilities in SINEC INS before V1.0 SP2 Update 1</title>
    <updated>2023-01-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-332410.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Siemens has released a new version for SINEC INS that fixes multiple vulnerabilities that could allow an attacker to read and write arbitrary files from the file system of the affected component and to ultimately execute arbitrary code on the device. In addition, this version also contains fixes for multiple vulnerabilities in underlying third party components.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for SINEC INS and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-210822.pdf</id>
    <title>SSA-210822 V1.1 (Last Update: 2023-01-10): Improper Access Control Vulnerability in Mendix Workflow Commons Module</title>
    <updated>2023-01-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-210822.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The Mendix Workflow Commons module improperly handles access control for some module entities. This could allow authenticated remote attackers to read or delete sensitive information.&lt;/p&gt;
&lt;p&gt;Mendix has released updates for several version lines of the Mendix Workflow Commons module and recommends to update to the latest version.&lt;/p&gt;
&lt;p&gt;Note that the fix might slightly impact the module&#8217;s functionality in specific cases.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-113131.pdf</id>
    <title>SSA-113131 V1.4 (Last Update: 2023-01-10): Denial of Service Vulnerabilities in SIMATIC S7-400 CPUs</title>
    <updated>2023-01-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-113131.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Two vulnerabilities have been identified in the SIMATIC S7-400 CPU family that could allow an attacker to cause a denial of service condition. In order to exploit the vulnerabilities, an attacker must have access to the affected devices on port 102/tcp via Ethernet, PROFIBUS or Multi Point Interfaces (MPI).&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-223771.pdf</id>
    <title>SSA-223771 V1.1 (Last Update: 2022-12-21): SISCO Stack Vulnerability in SIPROTEC 5 Devices</title>
    <updated>2022-12-21T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-223771.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in the third party component SISCO MMS-EASE could allow attackers to cause a denial of service condition with SIPROTEC 5 devices.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-951513.pdf</id>
    <title>SSA-951513 V1.3 (Last Update: 2022-12-13): Clickjacking Vulnerability in SCALANCE S, SCALANCE X-300, X-200IRT, X-200RNA and X-200 Switch Families</title>
    <updated>2022-12-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-951513.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Several SCALANCE X switches contain a vulnerability that could allow an attacker to perform administrative actions if the victim is tricked into clicking on a website controlled by the attacker. The attack only works if the victim has an authenticated session on the administrative interface of the switch.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-930100.pdf</id>
    <title>SSA-930100 V1.0: Privilege Escalation Vulnerability in Simcenter STAR-CCM+</title>
    <updated>2022-12-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-930100.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Simcenter STAR-CCM+ contains a privilege escalation vulnerability which could allow a local attacker with an unprivileged account to override or modify the service executable and subsequently gain elevated privileges.&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-849072.pdf</id>
    <title>SSA-849072 V1.0: Several Vulnerabilities in SICAM PAS before V8.06</title>
    <updated>2022-12-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-849072.pdf" rel="alternate"/>
    <summary>&lt;p&gt;SICAM PAS/PQS before V8.06 is affected by three vulnerabilities which could lead to remote code execution, privilege escalation or the creation of a denial of service condition.&lt;/p&gt;
&lt;p&gt;Siemens has released several updates for SICAM PAS/PQS and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-792594.pdf</id>
    <title>SSA-792594 V1.0: Host Header Injection Vulnerability in Polarion ALM</title>
    <updated>2022-12-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-792594.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Polarion ALM contains a misconfiguration in its default Apache HTTP Server configuration that could allow an attacker to perform host header injection attacks.&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends specific countermeasures for existing installations by checking for misconfigurations in configuration files.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-764417.pdf</id>
    <title>SSA-764417 V1.6 (Last Update: 2022-12-13): Weak Encryption Vulnerability in RUGGEDCOM ROS Devices</title>
    <updated>2022-12-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-764417.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The SSH server on RUGGEDCOM ROS devices is configured to offer weak ciphers by default. This could allow an unauthorized attacker in a man-in-the-middle position to read and modify any data passed over the connection between legitimate clients and the affected device.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-712929.pdf</id>
    <title>SSA-712929 V1.5 (Last Update: 2022-12-13): Denial of Service Vulnerability in OpenSSL (CVE-2022-0778) Affecting Industrial Products</title>
    <updated>2022-12-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-712929.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in the openSSL component (CVE-2022-0778, [0]) could allow an attacker to create a denial of service condition by providing specially crafted elliptic curve certificates to products that use a vulnerable version of openSSL.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
&lt;p&gt;[0] &lt;a href="https://www.openssl.org/news/secadv/20220315.txt" class="uri"&gt;https://www.openssl.org/news/secadv/20220315.txt&lt;/a&gt;&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-700053.pdf</id>
    <title>SSA-700053 V1.0: Multiple File Parsing Vulnerabilities in Teamcenter Visualization and JT2Go</title>
    <updated>2022-12-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-700053.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Siemens Teamcenter Visualization and JT2Go are affected by multiple file parsing vulnerabilities that could be triggered when the application reads a malicious file in CGM or RAS format. If a user is tricked to open a malicious file with the affected products, this could lead the application to crash or potentially lead to arbitrary code execution.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-678983.pdf</id>
    <title>SSA-678983 V1.6 (Last Update: 2022-12-13): Vulnerabilities in Industrial PCs and CNC devices using Intel CPUs (November 2020)</title>
    <updated>2022-12-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-678983.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Intel has published information on vulnerabilities in Intel products in &lt;a href="https://blogs.intel.com/technology/2020/11/ipas-security-advisories-for-november-2020/"&gt;November 2020&lt;/a&gt;. This advisory lists the Siemens IPC related products, that are affected by these vulnerabilities.&lt;/p&gt;
&lt;p&gt;In this advisory we take a representative CVE from each advisory:&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;&lt;p&gt;&#8220;Intel CSME, SPS, TXE, AMT and DAL Advisory&#8221; Intel-SA-00391 is represented by CVE-2020-8745&lt;/p&gt;&lt;/li&gt;
&lt;li&gt;&lt;p&gt;&#8220;Intel RAPL Interface Advisory&#8221; Intel-SA-00389 is represented by CVE-2020-8694&lt;/p&gt;&lt;/li&gt;
&lt;li&gt;&lt;p&gt;&#8220;Intel Processor Advisory&#8221; Intel-SA-00381 is represented by CVE-2020-8698, and&lt;/p&gt;&lt;/li&gt;
&lt;li&gt;&lt;p&gt;&#8220;BIOS Advisory&#8221; Intel-SA-00358 is represented by CVE-2020-0590.&lt;/p&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-638652.pdf</id>
    <title>SSA-638652 V1.2 (Last Update: 2022-12-13): Authentication Bypass Vulnerability in Mendix SAML Module</title>
    <updated>2022-12-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-638652.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The Mendix SAML module insufficiently protects from packet capture replay. This could allow unauthorized remote attackers to bypass authentication and get access to the application.&lt;/p&gt;
&lt;p&gt;Mendix has provided fix releases for the Mendix SAML module and recommends to update to the latest version.&lt;/p&gt;
&lt;p&gt;Note: For compatibility reasons, fix versions are introduced in two release steps:&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;The first fix versions address CVE-2022-37011. It removes the vulnerability, except when the not recommended, non default configuration option &lt;code&gt;'Allow Idp Initiated Authentication'&lt;/code&gt; is enabled.&lt;/li&gt;
&lt;li&gt;The second fix versions address CVE-2022-44457, which removes the issue for the non default configuration as well.&lt;/li&gt;
&lt;/ul&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-593272.pdf</id>
    <title>SSA-593272 V1.8 (Last Update: 2022-12-13): SegmentSmack in Interniche IP-Stack based Industrial Devices</title>
    <updated>2022-12-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-593272.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability exists in affected products that could allow remote attackers to affect the availability of the devices under certain conditions.&lt;/p&gt;
&lt;p&gt;The underlying TCP stack can be forced to make very computation expensive calls for every incoming packet which can lead to a Denial-of-Service.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens recommends countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-588101.pdf</id>
    <title>SSA-588101 V1.0: Multiple File Parsing Vulnerabilities in Parasolid</title>
    <updated>2022-12-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-588101.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Parasolid is affected by out of bounds read/write vulnerabilities that could be triggered when the application reads files in X_B format. If a user is tricked to open a malicious file with the affected applications, an attacker could leverage the vulnerability to perform remote code execution in the context of the current process.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-572005.pdf</id>
    <title>SSA-572005 V1.1 (Last Update: 2022-12-13): Vulnerabilities in the Web Server of SICAM P850 and SICAM P855 Devices</title>
    <updated>2022-12-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-572005.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Session fixation and incorrect parameter parsing vulnerabilities were identified in the web server of SICAM P850 and SICAM P855 devices.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-552874.pdf</id>
    <title>SSA-552874 V1.0: Denial of Service Vulnerability in SIPROTEC 5 Devices</title>
    <updated>2022-12-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-552874.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Devices of the SIPROTEC 5 family contain a vulnerability related to secure client-initiated renegotiation. This could allow an unauthenticated attacker to cause a denial of service condition for the duration of the attack.&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-552702.pdf</id>
    <title>SSA-552702 V1.2 (Last Update: 2022-12-13): Privilege Escalation Vulnerability in the Web Interface of SCALANCE and RUGGEDCOM Products</title>
    <updated>2022-12-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-552702.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The products listed below do not properly authorize the change password function of the web interface. This could allow low privileged users to escalate their privileges.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-547714.pdf</id>
    <title>SSA-547714 V1.0: Argument Injection Vulnerability in SIMATIC WinCC OA Ultralight Client</title>
    <updated>2022-12-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-547714.pdf" rel="alternate"/>
    <summary>&lt;p&gt;SIMATIC WinCC OA contains an argument injection vulnerability that could allow an authenticated remote attacker to inject arbitrary parameters, when starting the Ultralight Client via the web interface (e.g., open attacker chosen panels with the attacker&#8217;s credentials or start a Ctrl script).&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-480829.pdf</id>
    <title>SSA-480829 V1.2 (Last Update: 2022-12-13): Cross-Site Scripting Vulnerabilities in SCALANCE X Switches</title>
    <updated>2022-12-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-480829.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Two cross-site scripting (XSS) vulnerabilities were identified in the web server of several SCALANCE X switches.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-478960.pdf</id>
    <title>SSA-478960 V1.1 (Last Update: 2022-12-13): Missing CSRF Protection in the Web Server Login Page of Industrial Controllers</title>
    <updated>2022-12-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-478960.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The web server login page of affected products does not apply proper origin checking. This could allow authenticated remote attackers to track the activities of other users via a login cross-site request forgery attack..&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-473245.pdf</id>
    <title>SSA-473245 V2.4 (Last Update: 2022-12-13): Denial-of-Service Vulnerability in Profinet Devices</title>
    <updated>2022-12-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-473245.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in affected devices could allow an attacker to perform a denial-of-service attack if a large amount of specially crafted UDP packets are sent to the device.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, and recommends that customers update to the new version. Siemens is preparing further updates and recommends specific countermeasures until patches are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-446448.pdf</id>
    <title>SSA-446448 V1.5 (Last Update: 2022-12-13): Denial of Service Vulnerability in PROFINET Stack Integrated on Interniche Stack</title>
    <updated>2022-12-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-446448.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The PROFINET (PNIO) stack, when integrated with the Interniche IP stack, contains a vulnerability that could allow an attacker to cause a denial of service condition on affected industrial products.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-443566.pdf</id>
    <title>SSA-443566 V1.3 (Last Update: 2022-12-13): Authentication Bypass in SCALANCE X Switches Families</title>
    <updated>2022-12-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-443566.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Several SCALANCE X switches are affected by an Authentication Bypass vulnerability. The vulnerability allows an unauthenticated attacker to violate access-control rules. The vulnerability can be exploited by sending a GET request to a specific uniform resource locator on the web configuration interface of the device.&lt;/p&gt;
&lt;p&gt;The security vulnerability could be exploited by an attacker with network access to the affected systems. An attacker could use the vulnerability to obtain sensitive information or change the device configuration.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssb-439005.pdf</id>
    <title>SSB-439005 V4.9 (Last Update: 2022-12-13): Vulnerabilities in the additional GNU/Linux subsystem of the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP</title>
    <updated>2022-12-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssb-439005.pdf" rel="alternate"/>
    <summary>
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-436469.pdf</id>
    <title>SSA-436469 V1.0: TCP Vulnerability in APOGEE/TALON Field Panels</title>
    <updated>2022-12-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-436469.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A TCP sequence vulnerability in the APOGEE PXC and TALON TC series of products could allow an attacker to execute a denial of service attack by sending specially crafted packets to the device.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-413565.pdf</id>
    <title>SSA-413565 V1.0: Multiple Vulnerabilities in SCALANCE Products</title>
    <updated>2022-12-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-413565.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Multiple SCALANCE devices are affected by several vulnerabilities that could allow an attacker to inject code, retrieve data as debug information as well as user CLI passwords or set the CLI to an irresponsive state.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-412672.pdf</id>
    <title>SSA-412672 V1.0: Multiple OpenSSL and OpenSSH Vulnerabilities in SCALANCE X-200RNA Switch Devices before V3.2.7</title>
    <updated>2022-12-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-412672.pdf" rel="alternate"/>
    <summary>&lt;p&gt;SCALANCE X-200RNA switch devices before V3.2.7 contain multiple OpenSSL and OpenSSH vulnerabilities. The most severe of these vulnerabilities could allow a denial of service condition or could lead to execution of arbitrary code.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-408105.pdf</id>
    <title>SSA-408105 V1.0: Buffer Overflow Vulnerabilities in OpenSSL 3.0 Affecting Siemens Products</title>
    <updated>2022-12-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-408105.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The openSSL component, versions 3.0.0 through 3.0.6, contains two buffer overflow vulnerabilities (CVE-2022-3602, CVE-2022-3786) in the X.509 certificate verification [0]. They could allow an attacker to create a denial of service condition or execute arbitrary code on a vulnerable TLS server (if the server requests client certificate authentication), or on a vulnerable TLS client.&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
&lt;p&gt;[0] &lt;a href="https://www.openssl.org/news/secadv/20221101.txt" class="uri"&gt;https://www.openssl.org/news/secadv/20221101.txt&lt;/a&gt;&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-382653.pdf</id>
    <title>SSA-382653 V1.0: Multiple Denial of Service Vulnerabilities in Industrial Products</title>
    <updated>2022-12-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-382653.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Affected SIMATIC firmware contains multiple vulnerabilities that could allow an unauthenticated attacker to perform a denial-of-service attack under certain conditions.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-363821.pdf</id>
    <title>SSA-363821 V1.0: Multiple Vulnerabilities in SCALANCE X-200RNA Switch Devices before V3.2.7</title>
    <updated>2022-12-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-363821.pdf" rel="alternate"/>
    <summary>&lt;p&gt;SCALANCE X-200RNA switch devices before V3.2.7 contain multiple vulnerabilities that could allow an attacker to cause a denial of service condition, to extract sensitive information or to hijack existing sessions.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-360681.pdf</id>
    <title>SSA-360681 V1.0: Datalogics File Parsing Vulnerabilities in Teamcenter Visualization and JT2Go</title>
    <updated>2022-12-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-360681.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Siemens Teamcenter Visualization and JT2Go are affected by multiple out of bounds write vulnerabilities in the APDFL library from Datalogics. If a user is tricked to open a malicious PDF file with the affected products, this could lead the application to crash or potentially lead to arbitrary code execution.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-333517.pdf</id>
    <title>SSA-333517 V1.0: Multiple Vulnerabilities in SCALANCE SC-600 Family before V3.0</title>
    <updated>2022-12-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-333517.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities affecting various third-party components of the SCALANCE SC-600 family could allow an attacker to cause a denial of service condition, corrupt memory or potentially execute custom code.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-321292.pdf</id>
    <title>SSA-321292 V1.3 (Last Update: 2022-12-13): Denial of Service in the OPC Foundation Local Discovery Server (LDS) in Industrial Products</title>
    <updated>2022-12-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-321292.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability has been identified in the OPC Foundation Local Discovery Server (LDS) [0] of several industrial products. The vulnerability could cause a denial of service condition on the service or the device.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
&lt;p&gt;[0] &lt;a href="https://files.opcfoundation.org/SecurityBulletins/OPC%20Foundation%20Security%20Bulletin%20CVE-2021-40142.pdf" class="uri"&gt;https://files.opcfoundation.org/SecurityBulletins/OPC%20Foundation%20Security%20Bulletin%20CVE-2021-40142.pdf&lt;/a&gt;&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-313313.pdf</id>
    <title>SSA-313313 V1.1 (Last Update: 2022-12-13): Denial of Service Vulnerability in the FTP Server of Nucleus RTOS</title>
    <updated>2022-12-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-313313.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The FTP server of the networking component (Nucleus NET) in Nucleus Real-Time Operating System (RTOS) does not properly release memory resources that were reserved for incomplete connection attempts by FTP clients. This could allow a remote attacker to generate a denial of service condition on devices that incorporate a vulnerable version of the FTP server.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-312271.pdf</id>
    <title>SSA-312271 V2.1 (Last Update: 2022-12-13): Unquoted Search Path Vulnerability in Windows-based Industrial Software Applications</title>
    <updated>2022-12-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-312271.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Several industrial products as listed below contain a local privilege escalation vulnerability that could allow a local attacker to execute arbitrary code with SYTEM privileges.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-309571.pdf</id>
    <title>SSA-309571 V1.7 (Last Update: 2022-12-13): IPU 2021.1 Vulnerabilities in Siemens Industrial Products using Intel CPUs (June 2021)</title>
    <updated>2022-12-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-309571.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Intel has published information on vulnerabilities in Intel products in &lt;a href="https://blogs.intel.com/technology/2021/06/intel-security-advisories-for-june-2021/"&gt;June 2021&lt;/a&gt;. This advisory lists the related Siemens Industrial products affected by these vulnerabilities that can be patched by applying the corresponding BIOS update.&lt;/p&gt;
&lt;p&gt;In this advisory we summarize:&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;&lt;p&gt;&#8220;2021.1 IPU &#8211; Intel&#174; CSME, SPS and LMS Advisory&#8221; Intel-SA-00459,&lt;/p&gt;&lt;/li&gt;
&lt;li&gt;&lt;p&gt;&#8220;2021.1 IPU &#8211; BIOS Advisory&#8221; Intel-SA-00463,&lt;/p&gt;&lt;/li&gt;
&lt;li&gt;&lt;p&gt;&#8220;2021.1 IPU &#8211; Intel&#174; Processor Advisory&#8221; Intel-SA-00464, and&lt;/p&gt;&lt;/li&gt;
&lt;li&gt;&lt;p&gt;&#8220;2021.1 IPU - Intel Atom&#174; Processor Advisory&#8221; Intel-SA-00465.&lt;/p&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;Siemens has released updates for several affected products and is currently working on BIOS updates that include chipset microcode updates for further products.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-274900.pdf</id>
    <title>SSA-274900 V1.3 (Last Update: 2022-12-13): Use of Hardcoded Key in SCALANCE X Devices Under Certain Conditions</title>
    <updated>2022-12-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-274900.pdf" rel="alternate"/>
    <summary>&lt;p&gt;SCALANCE X devices might not generate a unique random key after factory reset, and use a private key shipped with the firmware.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-274282.pdf</id>
    <title>SSA-274282 V1.0: Cross Site Scripting Vulnerability in PLM Help Server V4.2</title>
    <updated>2022-12-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-274282.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The Siemens PLM Help Server V4.2 for documentation contains a reflected cross-&#173;site scripting vulnerability. This product has reached end of life, and security vulnerabilities are no longer patched.&lt;/p&gt;
&lt;p&gt;Siemens has released a new version of Documentation Server that resolves this vulnerability. See the chapter &#8220;Additional Information&#8221; below for more details.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-224632.pdf</id>
    <title>SSA-224632 V1.0: Improper Access Control Vulnerability in Mendix Email Connector Module</title>
    <updated>2022-12-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-224632.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The Mendix Email Connector module improperly handles access control for some module entities. This could allow authenticated remote attackers to read and manipulate sensitive information.&lt;/p&gt;
&lt;p&gt;Mendix has released an update for the Mendix Email Connector module and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-223771.pdf</id>
    <title>SSA-223771 V1.0: SISCO Stack Vulnerability in SIPROTEC 5 Devices</title>
    <updated>2022-12-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-223771.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in the third party component SISCO MMS-EASE could allow attackers to cause a denial of service condition with SIPROTEC 5 devices.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-210822.pdf</id>
    <title>SSA-210822 V1.0: Improper Access Control Vulnerability in Mendix Workflow Commons Module</title>
    <updated>2022-12-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-210822.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The Mendix Workflow Commons module improperly handles access control for some module entities. This could allow authenticated remote attackers to read or delete sensitive information.&lt;/p&gt;
&lt;p&gt;Mendix has released an update for the Mendix Workflow Commons module and recommends to update to the latest version.&lt;/p&gt;
&lt;p&gt;Note that the fix might slightly impact the module&#8217;s functionality in specific cases.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-180579.pdf</id>
    <title>SSA-180579 V1.0: Privilege Management Vulnerability in APOGEE/TALON Field Panels</title>
    <updated>2022-12-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-180579.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A privilege management vulnerability in the APOGEE PXC and TALON TC series of products could allow low privilege authenticated attackers to gain high privilege access.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-120378.pdf</id>
    <title>SSA-120378 V1.1 (Last Update: 2022-12-13): Multiple File Parsing Vulnerabilities in Teamcenter Visualization and JT2Go</title>
    <updated>2022-12-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-120378.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Siemens Teamcenter Visualization and JT2Go are affected by multiple file parsing vulnerabilities that could be triggered when the application reads malicious TIF, CGM or PDF files. If a user is tricked to open a malicious TIF, CGM or PDF file with the affected products, this could lead the application to crash or potentially lead to arbitrary code execution.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-853037.pdf</id>
    <title>SSA-853037 V1.0: File Parsing Vulnerabilities in Parasolid</title>
    <updated>2022-11-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-853037.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Parasolid is affected by out of bounds read/write vulnerabilities that could be triggered when the application reads files in X_T format. If a user is tricked to open a malicious file with the affected applications, an attacker could leverage the vulnerability to perform remote code execution in the context of the current process.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-787941.pdf</id>
    <title>SSA-787941 V1.0: Denial of Service Vulnerability in RUGGEDCOM ROS V4</title>
    <updated>2022-11-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-787941.pdf" rel="alternate"/>
    <summary>&lt;p&gt;RUGGEDCOM ROS-based V4 devices are vulnerable to a denial of service attack (Slowloris). By sending partial HTTP requests nonstop, with none completed, the affected web servers will be waiting for the completion of each request, occupying all available HTTP connections. The web server recovers by itself once the attack ends.&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-764417.pdf</id>
    <title>SSA-764417 V1.5 (Last Update: 2022-11-08): Weak Encryption Vulnerability in RUGGEDCOM ROS Devices</title>
    <updated>2022-11-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-764417.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The SSH server on RUGGEDCOM ROS devices is configured to offer weak ciphers by default. This could allow an unauthorized attacker in a man-in-the-middle position to read and modify any data passed over the connection between legitimate clients and the affected device.&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-638652.pdf</id>
    <title>SSA-638652 V1.1 (Last Update: 2022-11-08): Authentication Bypass Vulnerability in Mendix SAML Module</title>
    <updated>2022-11-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-638652.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The Mendix SAML module insufficiently protects from packet capture replay. This could allow unauthorized remote attackers to bypass authentication and get access to the application.&lt;/p&gt;
&lt;p&gt;Mendix has provided fix releases for the Mendix SAML module and recommends to update to the latest version.&lt;/p&gt;
&lt;p&gt;Note: For compatibility reasons, fix versions are introduced in two release steps:&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;The first fix versions address CVE-2022-37011. It removes the vulnerability, except when the not recommended, non default configuration option &lt;code&gt;'Allow Idp Initiated Authentication'&lt;/code&gt; is enabled.&lt;/li&gt;
&lt;li&gt;The second fix versions address CVE-2022-44457, which removes the issue for the non default configuration as well.&lt;/li&gt;
&lt;/ul&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-620288.pdf</id>
    <title>SSA-620288 V1.1 (Last Update: 2022-11-08): Multiple Vulnerabilities (NUCLEUS:13) in CAPITAL VSTAR</title>
    <updated>2022-11-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-620288.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities (also known as &#8220;NUCLEUS:13&#8221;) have be identified in the Nucleus RTOS (real-time operating system) and reported in the Siemens Security Advisory SSA-044112: &lt;a href="https://cert-portal.siemens.com/productcert/pdf/ssa-044112.pdf" class="uri"&gt;https://cert-portal.siemens.com/productcert/pdf/ssa-044112.pdf&lt;/a&gt;.&lt;/p&gt;
&lt;p&gt;CAPITAL VSTAR uses an affected version of the Nucleus software and inherently contains several of these vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens recommends specific countermeasures for products where updates are not available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-587547.pdf</id>
    <title>SSA-587547 V1.0: Unencrypted Storage of User Credentials in QMS Automotive</title>
    <updated>2022-11-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-587547.pdf" rel="alternate"/>
    <summary>&lt;p&gt;QMS Automotive contains a vulnerability that stores user credentials in plantext within the user database. This could allow an attacker to read credentials from memory.&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-570294.pdf</id>
    <title>SSA-570294 V1.0: Multiple Vulnerabilities in SICAM Q100 Before V2.50</title>
    <updated>2022-11-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-570294.pdf" rel="alternate"/>
    <summary>&lt;p&gt;SICAM Q100 devices contain multiple vulnerabilities that could allow an attacker to take over the session of a logged in user or to inject custom code.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-568428.pdf</id>
    <title>SSA-568428 V1.0: Weak Key Protection Vulnerability in SINUMERIK ONE and SINUMERIK MC</title>
    <updated>2022-11-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-568428.pdf" rel="alternate"/>
    <summary>&lt;p&gt;SINUMERIK ONE and SINUMERIK MC products are affected by a weak key protection vulnerability in the integrated S7-1500 CPU. The weak key protection vulnerability in the integrated S7-1500 CPU is documented in more detail in SSA-568427 [1].&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
&lt;p&gt;[1] &lt;a href="https://cert-portal.siemens.com/productcert/html/ssa-568427.html" class="uri"&gt;https://cert-portal.siemens.com/productcert/html/ssa-568427.html&lt;/a&gt;&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-552702.pdf</id>
    <title>SSA-552702 V1.1 (Last Update: 2022-11-08): Privilege Escalation Vulnerability in the Web Interface of SCALANCE and RUGGEDCOM Products</title>
    <updated>2022-11-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-552702.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The products listed below do not properly authorize the change password function of the web interface. This could allow low privileged users to escalate their privileges.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-506569.pdf</id>
    <title>SSA-506569 V1.0: Multiple Vulnerabilities in SCALANCE W1750D</title>
    <updated>2022-11-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-506569.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The SCALANCE W1750D device contains multiple vulnerabilities that could allow an attacker to inject commands or exploit buffer overflow vulnerabilities which could lead to denial of service, unauthenticated remote code execution or stored XSS.&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-501891.pdf</id>
    <title>SSA-501891 V1.1 (Last Update: 2022-11-08): Cross-Site Scripting Vulnerability in SCALANCE X-200 and X-200IRT Families</title>
    <updated>2022-11-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-501891.pdf" rel="alternate"/>
    <summary>&lt;p&gt;There is a cross-site scripting vulnerability that affects the SCALANCE switches. This vulnerability if used by a threat actor could result in the stealing of session cookies and session hijacking.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-478960.pdf</id>
    <title>SSA-478960 V1.0: Missing CSRF Protection in the Web Server Login Page of Industrial Controllers</title>
    <updated>2022-11-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-478960.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The web server login page of affected products does not apply proper origin checking. This could allow authenticated remote attackers to track the activities of other users via a login cross-site request forgery attack..&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-459643.pdf</id>
    <title>SSA-459643 V1.1 (Last Update: 2022-11-08): Denial of Service Vulnerability in RUGGEDCOM ROS before V5.6.0</title>
    <updated>2022-11-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-459643.pdf" rel="alternate"/>
    <summary>&lt;p&gt;RUGGEDCOM ROS-based devices are vulnerable to a denial of service attack (Slowloris). By sending partial HTTP requests nonstop, with none completed, the affected web servers will be waiting for the completion of each request, occupying all available HTTP connections. The web server recovers by itself once the attack ends.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-400332.pdf</id>
    <title>SSA-400332 V1.1 (Last Update: 2022-11-08): Insufficient Design IP Protection in IEEE 1735 Recommended Practice - Impact to Questa and ModelSim</title>
    <updated>2022-11-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-400332.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A security research [1] identified weaknesses in the IEEE 1735 recommended practice for encryption of Design IP, which could allow a sophisticated attacker access to unencrypted Design IP data in IEEE 1735-compliant products. This advisory addresses the specific details for the affected Siemens software products: Questa and ModelSim simulators.&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends specific countermeasures for Questa and ModelSim.&lt;/p&gt;
&lt;p&gt;[1] &lt;a href="https://arxiv.org/abs/2112.04838" class="uri"&gt;https://arxiv.org/abs/2112.04838&lt;/a&gt;&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-371761.pdf</id>
    <title>SSA-371761 V1.0: Arbitrary Code Execution Vulnerability in the Logback Component of  SINEC NMS before V1.0.3</title>
    <updated>2022-11-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-371761.pdf" rel="alternate"/>
    <summary>&lt;p&gt;SINEC NMS versions before V1.0.3 are affected by a vulnerability in the logback component (CVE-2021-42550) that could allow attackers with write access to the logback configuration file to execute arbitrary code on the system.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for SINEC NMS and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-362164.pdf</id>
    <title>SSA-362164 V1.2 (Last Update: 2022-11-08): Predictable Initial Sequence Numbers in the TCP/IP Stack of Nucleus RTOS</title>
    <updated>2022-11-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-362164.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The networking component (Nucleus NET) in Nucleus Real-Time Operating System (RTOS) use Initial Sequence Numbers for TCP-Sessions that are predictable.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where updates are not available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-120378.pdf</id>
    <title>SSA-120378 V1.0: Multiple File Parsing Vulnerabilities in Teamcenter Visualization and JT2Go</title>
    <updated>2022-11-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-120378.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Siemens Teamcenter Visualization and JT2Go are affected by multiple file parsing vulnerabilities that could be triggered when the application reads malicious TIF, CGM or PDF files. If a user is tricked to open a malicious TIF, CGM or PDF file with the affected products, this could lead the application to crash or potentially lead to arbitrary code execution.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-640732.pdf</id>
    <title>SSA-640732 V1.0: Authentication Bypass Vulnerability in Siveillance Video Mobile Server</title>
    <updated>2022-10-21T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-640732.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The mobile server component of Siveillance Video 2022 R2 contains an authentication bypass vulnerability that could allow an unauthenticated remote attacker to access the application without a valid account.&lt;/p&gt;
&lt;p&gt;Siemens has released a hotfix for Siveillance Video 2022 R2 and recommends to apply the hotfix on all installations of the mobile server.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-955858.pdf</id>
    <title>SSA-955858 V1.0: Multiple Vulnerabilities in LOGO! 8 BM Devices</title>
    <updated>2022-10-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-955858.pdf" rel="alternate"/>
    <summary>&lt;p&gt;LOGO! 8 BM (incl.&#160;SIPLUS variants) contains multiple web-related vulnerabilities. These could allow an attacker to execute code remotely, put the device into a denial of service state or retrieve parts of the memory.&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-935500.pdf</id>
    <title>SSA-935500 V1.0: Denial of Service Vulnerability in FTP Server of Nucleus RTOS based APOGEE, TALON and Desigo PXC/PXM Products</title>
    <updated>2022-10-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-935500.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A denial of service vulnerability has been identified in the Nucleus RTOS (real-time operating system) and reported in the Siemens Security Advisory SSA-313313: &lt;a href="https://cert-portal.siemens.com/productcert/html/ssa-313313.html" class="uri"&gt;https://cert-portal.siemens.com/productcert/html/ssa-313313.html&lt;/a&gt;.&lt;/p&gt;
&lt;p&gt;The products listed below use affected versions of the Nucleus software and inherently contain the vulnerability.&lt;/p&gt;
&lt;p&gt;Siemens recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-928782.pdf</id>
    <title>SSA-928782 V1.0: Firmware Authenticity Vulnerability in LOGO! 8 BM Devices</title>
    <updated>2022-10-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-928782.pdf" rel="alternate"/>
    <summary>&lt;p&gt;LOGO! 8 BM (incl.&#160;SIPLUS variants) contains a vulnerability that could allow an attacker to install manipulated firmware packages.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for the LOGO! 8 BM (incl.&#160;SIPLUS variants) and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-917476.pdf</id>
    <title>SSA-917476 V1.1 (Last Update: 2022-10-11): Multiple Vulnerabilities in SCALANCE W1750D</title>
    <updated>2022-10-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-917476.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The Scalance W1750D device contains multiple vulnerabilities that could allow an attacker to execute code on the affected device(s), read arbitrary files, or create a denial-of-service condition.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssb-898115.pdf</id>
    <title>SSB-898115 V1.0: Remarks Regarding SSA-568427 (Weak Key Protection Vulnerability in SIMATIC S7-1200 and S7-1500 CPU Families)</title>
    <updated>2022-10-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssb-898115.pdf" rel="alternate"/>
    <summary>
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-836027.pdf</id>
    <title>SSA-836027 V1.0: Client-side Authentication in Desigo CC and Cerberus DMS</title>
    <updated>2022-10-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-836027.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Desigo CC and Cerberus DMS are based on SIMATIC WinCC OA and implement client-side only authentication for specific parts of their client-server communication. In this configuration, attackers could impersonate other users or exploit the client-server protocol without being authenticated, as documented for SIMATIC WinCC OA in SSA-111512 [1].&lt;/p&gt;
&lt;p&gt;Siemens recommends specific mitigations, documented in [2], for products where fixes are not, or not yet available. Additional details regarding these mitigations can be found in the chapter Additional Information.&lt;/p&gt;
&lt;p&gt;[1] &lt;a href="https://cert-portal.siemens.com/productcert/html/ssa-111512.html" class="uri"&gt;https://cert-portal.siemens.com/productcert/html/ssa-111512.html&lt;/a&gt;&lt;br /&gt;
[2] &lt;a href="https://support.industry.siemens.com/cs/ww/en/view/109813389/" class="uri"&gt;https://support.industry.siemens.com/cs/ww/en/view/109813389/&lt;/a&gt;&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-712929.pdf</id>
    <title>SSA-712929 V1.4 (Last Update: 2022-10-11): Denial of Service Vulnerability in OpenSSL (CVE-2022-0778) Affecting Industrial Products</title>
    <updated>2022-10-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-712929.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in the openSSL component (CVE-2022-0778, [0]) could allow an attacker to create a denial of service condition by providing specially crafted elliptic curve certificates to products that use a vulnerable version of openSSL.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
&lt;p&gt;[0] &lt;a href="https://www.openssl.org/news/secadv/20220315.txt" class="uri"&gt;https://www.openssl.org/news/secadv/20220315.txt&lt;/a&gt;&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-697140.pdf</id>
    <title>SSA-697140 V1.0: Denial of Service Vulnerability in the TCP Event Service of SCALANCE and RUGGEDCOM Products</title>
    <updated>2022-10-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-697140.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The products listed below contain a denial of service vulnerability in the TCP event interface that could allow an unauthenticated remote attacker to render the device unusable.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-685781.pdf</id>
    <title>SSA-685781 V1.1 (Last Update: 2022-10-11): Multiple Vulnerabilities in Apache HTTP Server Affecting Siemens Products</title>
    <updated>2022-10-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-685781.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities were identified in the Apache HTTP Server software. These include NULL Pointer Dereferencing, Out-of-bounds Write and Server-Side Request Forgery related vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-649853.pdf</id>
    <title>SSA-649853 V1.0: Improper Certificate Validation Vulnerability in Industrial Edge Management</title>
    <updated>2022-10-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-649853.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Industrial Edge Management contains a vulnerability that could allow an unauthenticated attacker to spoof a trusted entity by interfering in the communication path between the Industrial Edge Management (IEM) and the Industrial Edge Hub (IEH) using a crafted certificate.&lt;/p&gt;
&lt;p&gt;An attacker could use this to inject malicious maintenance requests (e.g.&#160;sending statistics, activating remote support, exchanging the initial keys when onboarding, querying new extensions).&lt;/p&gt;
&lt;p&gt;Siemens has released an update for the Industrial Edge Management and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-611756.pdf</id>
    <title>SSA-611756 V1.0: JT File Parsing Vulnerability in JTTK and Simcenter Femap</title>
    <updated>2022-10-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-611756.pdf" rel="alternate"/>
    <summary>&lt;p&gt;JT Open Toolkit (JTTK) and Simcenter Femap are affected by an uninitialized pointer reference vulnerability that could be triggered while parsing JT files. If a user is tricked to open a malicious JT file with any of the affected products, this could cause the application to crash or potentially lead to arbitrary code execution.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-572005.pdf</id>
    <title>SSA-572005 V1.0: Vulnerabilities in the Web Server of SICAM P850 and SICAM P855 Devices</title>
    <updated>2022-10-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-572005.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Session fixation and incorrect parameter parsing vulnerabilities were identified in the web server of SICAM P850 and SICAM P855 devices.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-568427.pdf</id>
    <title>SSA-568427 V1.0: Weak Key Protection Vulnerability in SIMATIC S7-1200 and S7-1500 CPU Families</title>
    <updated>2022-10-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-568427.pdf" rel="alternate"/>
    <summary>&lt;p&gt;SIMATIC S7-1200, S7-1500 CPUs and related products protect the built-in global private key in a way that cannot be considered sufficient any longer. The key is used for the legacy protection of confidential configuration data and the legacy PG/PC and HMI communication.&lt;br /&gt;
This could allow attackers to discover the private key of a CPU product family by an offline attack against a single CPU of the family. Attackers could then use this knowledge to extract confidential configuration data from projects that are protected by that key or to perform attacks against legacy PG/PC and HMI communication.&lt;/p&gt;
&lt;p&gt;Siemens recommends to update both the affected products as well as the corresponding TIA Portal project to the latest versions. TIA Portal V17 and related CPU firmware versions introduced protection of confidential configuration data based on individual passwords per device and TLS-protected PG/PC and HMI communication.&lt;/p&gt;
&lt;p&gt;Additional details can be found in the related Siemens security bulletin SSB-898115 (&lt;a href="https://cert-portal.siemens.com/productcert/html/ssb-898115.html" class="uri"&gt;https://cert-portal.siemens.com/productcert/html/ssb-898115.html&lt;/a&gt;).&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-552702.pdf</id>
    <title>SSA-552702 V1.0: Privilege Escalation Vulnerability in the Web Interface of SCALANCE and RUGGEDCOM Products</title>
    <updated>2022-10-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-552702.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The products listed below do not properly authorize the change password function of the web interface. This could allow low privileged users to escalate their privileges.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-501891.pdf</id>
    <title>SSA-501891 V1.0: Cross-Site Scripting Vulnerability in SCALANCE X-200 and X-200IRT Families</title>
    <updated>2022-10-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-501891.pdf" rel="alternate"/>
    <summary>&lt;p&gt;There is a cross-site scripting vulnerability that affects the SCALANCE switches. This vulnerability if used by a threat actor could result in the stealing of session cookies and session hijacking.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-446448.pdf</id>
    <title>SSA-446448 V1.4 (Last Update: 2022-10-11): Denial of Service Vulnerability in PROFINET Stack Integrated on Interniche Stack</title>
    <updated>2022-10-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-446448.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The PROFINET (PNIO) stack, when integrated with the Interniche IP stack, contains a vulnerability that could allow an attacker to cause a denial of service condition on affected industrial products.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssb-439005.pdf</id>
    <title>SSB-439005 V4.8 (Last Update: 2022-10-11): Vulnerabilities in the additional GNU/Linux subsystem of the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP</title>
    <updated>2022-10-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssb-439005.pdf" rel="alternate"/>
    <summary>
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-384224.pdf</id>
    <title>SSA-384224 V1.0: Denial of Service Vulnerability in SIMATIC HMI Panels</title>
    <updated>2022-10-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-384224.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Several SIMATIC HMI Panels are affected by a vulnerability that could allow an attacker to cause a permanent denial of service condition (requiring a device reboot) by sending specially crafted TCP packets.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-360783.pdf</id>
    <title>SSA-360783 V1.0: Multiple Webserver Vulnerabilities in Desigo PXM Devices</title>
    <updated>2022-10-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-360783.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Desigo PXM devices contain multiple vulnerabilities in the webserver application that could allow an attacker to potentially access sensitive information, execute arbitrary commands, cause a denial of service condition, or perform remote code execution.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-313313.pdf</id>
    <title>SSA-313313 V1.0: Denial of Service Vulnerability in the FTP Server of Nucleus RTOS</title>
    <updated>2022-10-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-313313.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The FTP server of the networking component (Nucleus NET) in Nucleus Real-Time Operating System (RTOS) does not properly release memory resources that were reserved for incomplete connection attempts by FTP clients. This could allow a remote attacker to generate a denial of service condition on devices that incorporate a vulnerable version of the FTP server.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-306654.pdf</id>
    <title>SSA-306654 V1.4 (Last Update: 2022-10-11): Insyde BIOS Vulnerabilities in Siemens Industrial Products</title>
    <updated>2022-10-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-306654.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Insyde has published information on vulnerabilities in Insyde BIOS in &lt;a href="https://www.insyde.com/security-pledge"&gt;February 2022&lt;/a&gt;. This advisory lists the Siemens Industrial products affected by these vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-285795.pdf</id>
    <title>SSA-285795 V1.3 (Last Update: 2022-10-11): Denial of Service in OPC-UA in Industrial Products</title>
    <updated>2022-10-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-285795.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in the underlying third party component OPC UA ANSIC Stack (also called Legacy C-Stack) affects several industrial products. The vulnerability could cause a crash of the component that includes the vulnerable part of the stack.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-280624.pdf</id>
    <title>SSA-280624 V1.1 (Last Update: 2022-10-11): Multiple Vulnerabilities in SCALANCE W1750D</title>
    <updated>2022-10-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-280624.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The Scalance W1750D device contains multiple vulnerabilities that could allow an attacker to inject commands or exploit multiple buffer overflow vulnerabilities that could lead to denial of service or unauthenticated remote code execution.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the SCALANCE W1750D and recommends to update to the latest version. Siemens recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-258115.pdf</id>
    <title>SSA-258115 V1.0: DWG File Parsing Vulnerability in Solid Edge before SE2022MP9</title>
    <updated>2022-10-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-258115.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Solid Edge is affected by a heap overflow vulnerability that could be triggered when the application reads DWG files. If a user is tricked to open a malicious file with the affected application, an attacker could leverage the vulnerability to perform remote code execution in the context of the current process.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for the Solid Edge and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-254054.pdf</id>
    <title>SSA-254054 V1.3 (Last Update: 2022-10-11): Spring Framework Vulnerability (Spring4Shell or SpringShell, CVE-2022-22965) - Impact to Siemens Products</title>
    <updated>2022-10-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-254054.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in Spring Framework was disclosed, that could allow remote unauthenticated attackers to execute code on vulnerable systems. The vulnerability is tracked as CVE-2022-22965 and is also known as &#8220;Spring4Shell&#8221; or &#8220;SpringShell&#8221;.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-250085.pdf</id>
    <title>SSA-250085 V1.1 (Last Update: 2022-10-11): Multiple Vulnerabilities in SINEC NMS</title>
    <updated>2022-10-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-250085.pdf" rel="alternate"/>
    <summary>&lt;p&gt;SINEC NMS contains multiple vulnerabilities that could allow an attacker to execute arbitrary code on the system, arbitrary commands on the local database or achieve privilege escalation.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for SINEC NMS to fix CVE-2022-24281 and recommends to update to the latest version. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-244969.pdf</id>
    <title>SSA-244969 V1.8 (Last Update: 2022-10-11): OpenSSL Vulnerability in Industrial Products</title>
    <updated>2022-10-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-244969.pdf" rel="alternate"/>
    <summary>&lt;p&gt;OpenSSL has published a security advisory [0] about a vulnerability in OpenSSL versions 1.1.1 &amp;lt; 1.1.1l and 1.0.2 &amp;lt; 1.0.2za that allows an attacker to cause a denial of service (DoS) or to disclose private memory content.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
&lt;p&gt;[0] &lt;a href="https://www.openssl.org/news/secadv/20210824.txt" class="uri"&gt;https://www.openssl.org/news/secadv/20210824.txt&lt;/a&gt;&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-712929.pdf</id>
    <title>SSA-712929 V1.3 (Last Update: 2022-09-13): Denial of Service Vulnerability in OpenSSL (CVE-2022-0778) Affecting Industrial Products</title>
    <updated>2022-09-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-712929.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in the openSSL component (CVE-2022-0778, [0]) could allow an attacker to create a denial of service condition by providing specially crafted elliptic curve certificates to products that use a vulnerable version of openSSL.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
&lt;p&gt;[0] &lt;a href="https://www.openssl.org/news/secadv/20220315.txt" class="uri"&gt;https://www.openssl.org/news/secadv/20220315.txt&lt;/a&gt;&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-710008.pdf</id>
    <title>SSA-710008 V1.1 (Last Update: 2022-09-13): Multiple Web Vulnerabilities in SCALANCE Products</title>
    <updated>2022-09-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-710008.pdf" rel="alternate"/>
    <summary>&lt;p&gt;SCALANCE devices contain multiple vulnerabilities in MSPS based product lines that could allow authenticated remote attackers to execute custom code or create a XSS situation, as well as unauthenticated remote attackers to create a denial of service condition.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-638652.pdf</id>
    <title>SSA-638652 V1.0: Authentication Bypass Vulnerability in Mendix SAML Module</title>
    <updated>2022-09-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-638652.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The Mendix SAML module insufficiently protects from packet capture replay. This could allow unauthorized remote attackers to bypass authentication and get access to the application.&lt;/p&gt;
&lt;p&gt;Mendix has provided fix releases for the Mendix SAML module and recommends to update to the latest version.&lt;/p&gt;
&lt;p&gt;Note: For compatibility reasons, fix versions still contain this issue, but only when the not recommended, non default configuration option &lt;code&gt;'Allow Idp Initiated Authentication'&lt;/code&gt; is enabled.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-637483.pdf</id>
    <title>SSA-637483 V1.0: Third-Party Component Vulnerabilities in SINEC INS before V1.0 SP2</title>
    <updated>2022-09-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-637483.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities affecting various third-party components of SINEC INS before V1.0 SP2 could allow an attacker to cause a denial of service condition, disclose sensitive data or violate the system integrity.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for the SINEC INS and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-618620.pdf</id>
    <title>SSA-618620 V1.1 (Last Update: 2022-09-13): Vulnerabilities in Boot Loader (U-Boot) of RUGGEDCOM ROS Devices</title>
    <updated>2022-09-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-618620.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The boot loader within RUGGEDCOM ROS contains two vulnerabilities in the loading process of the operating system kernel. The more severe of these vulnerabilities could allow an attacker with local access to the device to execute arbitrary code on an affected device.&lt;/p&gt;
&lt;p&gt;Siemens recommends specific countermeasures to mitigate this issue.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-589975.pdf</id>
    <title>SSA-589975 V1.0: Improper Access Control Vulnerability in CoreShield OWG Software</title>
    <updated>2022-09-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-589975.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The default installation of the Windows version of the CoreShield One-Way Gateway (OWG) software sets insecure file permissions that could allow a local attacker to escalate privileges to local administrator.&lt;/p&gt;
&lt;p&gt;Siemens Mobility has released an update for the CoreShield OWG software and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-518824.pdf</id>
    <title>SSA-518824 V1.0: Multiple File Parsing Vulnerabilities in Simcenter Femap and Parasolid</title>
    <updated>2022-09-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-518824.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Simcenter Femap and Parasolid are affected by multiple file parsing vulnerabilities that could be triggered when the application reads files in X_T file formats. If a user is tricked to open a malicious file with the affected applications, an attacker could leverage the vulnerability to perform remote code execution in the context of the current process.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-459643.pdf</id>
    <title>SSA-459643 V1.0: Denial of Service Vulnerability in RUGGEDCOM ROS before V5.6.0</title>
    <updated>2022-09-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-459643.pdf" rel="alternate"/>
    <summary>&lt;p&gt;RUGGEDCOM ROS-based devices are vulnerable to a denial of service attack (Slowloris). By sending partial HTTP requests nonstop, with none completed, the affected web servers will be waiting for the completion of each request, occupying all available HTTP connections. The web server recovers by itself once the attack ends.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssb-439005.pdf</id>
    <title>SSB-439005 V4.7 (Last Update: 2022-09-13): Vulnerabilities in the additional GNU/Linux subsystem of the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP</title>
    <updated>2022-09-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssb-439005.pdf" rel="alternate"/>
    <summary>
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-429204.pdf</id>
    <title>SSA-429204 V1.2 (Last Update: 2022-09-13): Open Design Alliance Drawings SDK Vulnerabilities in JT2Go and Teamcenter Visualization</title>
    <updated>2022-09-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-429204.pdf" rel="alternate"/>
    <summary>&lt;p&gt;JT2Go and Teamcenter Visualization are affected by multiple file parsing vulnerabilities in Drawings SDK from Open Design Alliance. If a user is tricked to open a malicious DWG file with any of the affected products, this could lead the application to crash or potentially lead to arbitrary code execution.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
&lt;p&gt;Note:&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;This advisory covers security vulnerabilities recently disclosed by Open Design Alliance [0]&lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;[0] &lt;a href="https://www.opendesign.com/security-advisories"&gt;https://www.opendesign.com/security-advisories&lt;/a&gt;&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-309571.pdf</id>
    <title>SSA-309571 V1.6 (Last Update: 2022-09-13): IPU 2021.1 Vulnerabilities in Siemens Industrial Products using Intel CPUs (June 2021)</title>
    <updated>2022-09-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-309571.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Intel has published information on vulnerabilities in Intel products in &lt;a href="https://blogs.intel.com/technology/2021/06/intel-security-advisories-for-june-2021/"&gt;June 2021&lt;/a&gt;. This advisory lists the related Siemens Industrial products affected by these vulnerabilities that can be patched by applying the corresponding BIOS update.&lt;/p&gt;
&lt;p&gt;In this advisory we summarize:&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;&lt;p&gt;&#8220;2021.1 IPU &#8211; Intel&#174; CSME, SPS and LMS Advisory&#8221; Intel-SA-00459,&lt;/p&gt;&lt;/li&gt;
&lt;li&gt;&lt;p&gt;&#8220;2021.1 IPU &#8211; BIOS Advisory&#8221; Intel-SA-00463,&lt;/p&gt;&lt;/li&gt;
&lt;li&gt;&lt;p&gt;&#8220;2021.1 IPU &#8211; Intel&#174; Processor Advisory&#8221; Intel-SA-00464, and&lt;/p&gt;&lt;/li&gt;
&lt;li&gt;&lt;p&gt;&#8220;2021.1 IPU - Intel Atom&#174; Processor Advisory&#8221; Intel-SA-00465.&lt;/p&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;Siemens has released updates for several affected products and is currently working on BIOS updates that include chipset microcode updates for further products.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-243317.pdf</id>
    <title>SSA-243317 V1.2 (Last Update: 2022-09-13): File Parsing Vulnerability in Simcenter Femap and Parasolid</title>
    <updated>2022-09-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-243317.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Simcenter Femap and Parasolid are affected by an out of bounds read vulnerability that could be triggered when the application reads files in NEU format. If a user is tricked to open a malicious file with the affected applications, an attacker could leverage the vulnerability to perform remote code execution in the context of the current process.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-179516.pdf</id>
    <title>SSA-179516 V1.7 (Last Update: 2022-09-13): OpenSSL Vulnerability in Industrial Products</title>
    <updated>2022-09-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-179516.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Several Siemens industrial products are affected by a vulnerability in OpenSSL, that could result in data being sent out unencrypted by the SSL/TLS record layer.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-941426.pdf</id>
    <title>SSA-941426 V1.3 (Last Update: 2022-08-09): Multiple LLDP Vulnerabilities in Industrial Products</title>
    <updated>2022-08-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-941426.pdf" rel="alternate"/>
    <summary>&lt;p&gt;
There are multiple vulnerabilities in an underlying Link Layer Discovery Protocol (LLDP) third party library.
&lt;/p&gt;
&lt;p&gt;
Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where updates are not, or not yet available.
&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-914168.pdf</id>
    <title>SSA-914168 V1.3 (Last Update: 2022-08-09): Multiple Vulnerabilities in SIMATIC WinCC Affecting Other SIMATIC Software Products</title>
    <updated>2022-08-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-914168.pdf" rel="alternate"/>
    <summary>&lt;p&gt;
Multiple vulnerabilities were found in SIMATIC WinCC that ultimately could allow attackers to retrieve and brute force password hashes and access other systems.
&lt;/p&gt;
&lt;p&gt;
Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.
&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-841348.pdf</id>
    <title>SSA-841348 V1.9 (Last Update: 2022-08-09): Multiple Vulnerabilities in the UMC Component</title>
    <updated>2022-08-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-841348.pdf" rel="alternate"/>
    <summary>&lt;p&gt;
The products listed below contain two security vulnerabilities in the UMC component that could allow an attacker to cause a partial denial-of-service of the UMC component, or to locally escalate privileges from a user with administrative privileges to execute code with SYSTEM level privileges.
&lt;/p&gt;
&lt;p&gt;
Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where updates are not, or not yet available.
&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-840800.pdf</id>
    <title>SSA-840800 V1.1 (Last Update: 2022-08-09): Code Injection Vulnerability in RUGGEDCOM ROS</title>
    <updated>2022-08-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-840800.pdf" rel="alternate"/>
    <summary>&lt;p&gt;
RUGGEDCOM ROS-based devices are vulnerable to a web-based code injection attack. To execute this attack, it is necessary to access the system via the Command Line Interface (CLI).
&lt;/p&gt;
&lt;p&gt;
Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where updates are not, or not yet available.
&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-829738.pdf</id>
    <title>SSA-829738 V1.1 (Last Update: 2022-08-09): Datalogics File Parsing Vulnerability in Teamcenter Visualization and JT2Go</title>
    <updated>2022-08-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-829738.pdf" rel="alternate"/>
    <summary>&lt;p&gt;
Siemens Teamcenter Visualization and JT2Go are affected by an out of bounds write vulnerability in APDFL library from Datalogics. If a user is tricked to open a malicious PDF file with the affected products, this could lead the application to crash or potentially lead to arbitrary code execution.
&lt;/p&gt;
&lt;p&gt;
Siemens has released updates for the affected products and recommends to update to the latest versions.
&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-789162.pdf</id>
    <title>SSA-789162 V1.2 (Last Update: 2022-08-09): Vulnerabilities in Teamcenter</title>
    <updated>2022-08-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-789162.pdf" rel="alternate"/>
    <summary>&lt;p&gt;
Teamcenter is affected by XML External Entity Injection (XXE, CVE-2022-29801) and a stack based buffer overflow vulnerability (CVE-2022-24290). XXE impacts only Teamcenter versions before V13.1.
&lt;/p&gt;
&lt;p&gt;
Siemens has released updates for the affected products and recommends to update to the latest versions.
&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-772220.pdf</id>
    <title>SSA-772220 V2.1 (Last Update: 2022-08-09): OpenSSL Vulnerabilities in Industrial Products</title>
    <updated>2022-08-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-772220.pdf" rel="alternate"/>
    <summary>&lt;p&gt;
OpenSSL has published a security advisory [0] about a vulnerability in OpenSSL versions 1.1.1 &amp;lt; 1.1.1k, that allows an unauthenticated attacker to cause a Denial-of-Service (DoS) if a maliciously crafted renegotiation message is sent .
&lt;/p&gt;
&lt;p&gt;
Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends countermeasures for products where updates are not, or not yet available.
&lt;/p&gt;
&lt;p&gt;
[0] &lt;a href="https://www.openssl.org/news/secadv/20210325.txt"&gt;https://www.openssl.org/news/secadv/20210325.txt&lt;/a&gt;
&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-764417.pdf</id>
    <title>SSA-764417 V1.4 (Last Update: 2022-08-09): Weak Encryption Vulnerability in RUGGEDCOM ROS Devices</title>
    <updated>2022-08-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-764417.pdf" rel="alternate"/>
    <summary>&lt;p&gt;
The SSH server on RUGGEDCOM ROS devices is configured to offer weak ciphers by default. This could allow an unauthorized attacker in a man-in-the-middle position to read and modify any data passed over the connection between legitimate clients and the affected device.
&lt;/p&gt;
&lt;p&gt;
Siemens recommends specific countermeasures for products where updates are not, or not yet available.
&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-759952.pdf</id>
    <title>SSA-759952 V1.0: Command Injection and Denial of Service Vulnerability in Teamcenter</title>
    <updated>2022-08-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-759952.pdf" rel="alternate"/>
    <summary>&lt;p&gt;
Teamcenter is affected by two security vulnerabilities in the File Service Cache service that could lead to command injection and denial of service issues.
&lt;/p&gt;
&lt;p&gt;
Siemens has released updates for the affected products and recommends to update to the latest versions.
&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-732250.pdf</id>
    <title>SSA-732250 V1.2 (Last Update: 2022-08-09): Libcurl Vulnerabilities in Industrial Devices</title>
    <updated>2022-08-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-732250.pdf" rel="alternate"/>
    <summary>&lt;p&gt;
Vulnerabilities in third-party component cURL could allow an attacker to interfere with the affected products in various ways.
&lt;/p&gt;
&lt;p&gt;
Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens recommends countermeasures for products where updates are not, or not yet available.
&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-712929.pdf</id>
    <title>SSA-712929 V1.2 (Last Update: 2022-08-09): Denial of Service Vulnerability in OpenSSL (CVE-2022-0778) Affecting Industrial Products</title>
    <updated>2022-08-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-712929.pdf" rel="alternate"/>
    <summary>&lt;p&gt;
A vulnerability in the openSSL component (CVE-2022-0778, [0]) could allow an attacker to create a denial of service condition by providing specially crafted elliptic curve certificates to products that use a vulnerable version of openSSL.
&lt;/p&gt;
&lt;p&gt;
Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends countermeasures for products where updates are not, or not yet available.
&lt;/p&gt;
&lt;p&gt;
[0] &lt;a href="https://www.openssl.org/news/secadv/20220315.txt"&gt;https://www.openssl.org/news/secadv/20220315.txt&lt;/a&gt;
&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-710008.pdf</id>
    <title>SSA-710008 V1.0: Multiple Web Vulnerabilities in SCALANCE Products</title>
    <updated>2022-08-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-710008.pdf" rel="alternate"/>
    <summary>&lt;p&gt;
SCALANCE devices contain multiple vulnerabilities in MSPS based product lines that could allow authenticated remote attackers to execute custom code or create a XSS situation, as well as unauthenticated remote attackers to create a denial of service condition.
&lt;/p&gt;
&lt;p&gt;
Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.
&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-669737.pdf</id>
    <title>SSA-669737 V1.2 (Last Update: 2022-08-09): Improper Access Control Vulnerability in SICAM TOOLBOX II</title>
    <updated>2022-08-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-669737.pdf" rel="alternate"/>
    <summary>&lt;p&gt;
SICAM TOOLBOX II contains a vulnerability that could allow an attacker access through a circumventable access control.
&lt;/p&gt;
&lt;p&gt;
Siemens recommends countermeasures for products where updates are not, or not yet available.
&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-661247.pdf</id>
    <title>SSA-661247 V3.0 (Last Update: 2022-08-09): Apache Log4j Vulnerabilities (Log4Shell, CVE-2021-44228, CVE-2021-45046) - Impact to Siemens Products</title>
    <updated>2022-08-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-661247.pdf" rel="alternate"/>
    <summary>&lt;p&gt;
On 2021-12-09, a vulnerability in Apache Log4j (a logging tool used in many Java-based applications) was disclosed, that could allow remote unauthenticated attackers to execute code on vulnerable systems. The vulnerability is tracked as CVE-2021-44228 and is also known as &#8220;Log4Shell&#8221;.
&lt;/p&gt;
&lt;p&gt;
On 2021-12-14 an additional denial of service vulnerability (CVE-2021-45046) was published rendering the initial mitigations and fix in version 2.15.0 as incomplete under certain non-default configurations. Log4j versions 2.16.0 and 2.12.2 are supposed to fix both vulnerabilities.
&lt;/p&gt;
&lt;p&gt;
On 2021-12-17, CVE-2021-45046 was reclassified with an increased CVSS base score (from 3.7 to 9.0). The potential impact of CVE-2021-45046 now includes - besides denial of service - also information disclosure and local (and potential remote) code execution.
&lt;/p&gt;
&lt;p&gt;
Siemens is currently investigating to determine which products are affected and is continuously updating this advisory as more information becomes available. See section Additional Information for more details regarding the investigation status.
&lt;/p&gt;
&lt;p&gt;
Note: two additional vulnerabilities were published for Apache Log4j, the impact of which are documented in SSA-501673: &lt;a href="https://cert-portal.siemens.com/productcert/pdf/ssa-501673.pdf"&gt;https://cert-portal.siemens.com/productcert/pdf/ssa-501673.pdf&lt;/a&gt; (CVE-2021-45105) and SSA-784507: &lt;a href="https://cert-portal.siemens.com/productcert/pdf/ssa-784507.pdf"&gt;https://cert-portal.siemens.com/productcert/pdf/ssa-784507.pdf&lt;/a&gt; (CVE-2021-44832).
&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-661034.pdf</id>
    <title>SSA-661034 V1.2 (Last Update: 2022-08-09): Incorrect Permission Assignment in Multiple SIMATIC Software Products</title>
    <updated>2022-08-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-661034.pdf" rel="alternate"/>
    <summary>&lt;p&gt;
Multiple SIMATIC software products are affected by a vulnerability that could allow an attacker to change the content of certain metafiles and subsequently manipulate parameters or behaviour of devices configured by the affected software products.
&lt;/p&gt;
&lt;p&gt;
Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.
&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-629512.pdf</id>
    <title>SSA-629512 V1.6 (Last Update: 2022-08-09): Local Privilege Escalation Vulnerability in TIA Portal</title>
    <updated>2022-08-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-629512.pdf" rel="alternate"/>
    <summary>&lt;p&gt;
The latest updates for TIA Portal fix a vulnerability that could allow a local attacker to execute arbitrary code with SYSTEM privileges.
&lt;/p&gt;
&lt;p&gt;
Update: The previously provided fixes only correctly set the permissions on English Windows versions.
&lt;/p&gt;
&lt;p&gt;
Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where updates are not, or not yet available.
&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-592007.pdf</id>
    <title>SSA-592007 V1.8 (Last Update: 2022-08-09): Denial-of-Service Vulnerability in Industrial Products</title>
    <updated>2022-08-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-592007.pdf" rel="alternate"/>
    <summary>&lt;p&gt;
Several industrial controllers are affected by a security vulnerability that could allow an attacker to cause a Denial-of-Service condition via PROFINET DCP network packets under certain circumstances. Precondition for this scenario is a direct OSI Layer 2 access to the affected products. PROFIBUS interfaces are not affected.
&lt;/p&gt;
&lt;p&gt;
Siemens has released updates for several affected products, is working on updates for the remaining affected products and recommends specific countermeasures until fixes are available.
&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-580693.pdf</id>
    <title>SSA-580693 V1.3 (Last Update: 2022-08-09): WIBU Systems CodeMeter Runtime Denial-of-Service Vulnerability in Siemens Products</title>
    <updated>2022-08-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-580693.pdf" rel="alternate"/>
    <summary>&lt;p&gt;
WIBU Systems published information about a denial-of-service vulnerability and an associated fix release version of CodeMeter Runtime, a product provided by WIBU Systems and used in several Siemens products for license management.
&lt;/p&gt;
&lt;p&gt;
The vulnerability is described in the section &#8220;Vulnerability Classification&#8221; below and got assigned the CVE ID CVE-2021-41057. Successful exploitation of this vulnerability could allow an attacker to crash the CodeMeter Runtime Server (i.e., CodeMeter.exe), which could cause a denial-of-service condition for the affected Siemens product.
&lt;/p&gt;
&lt;p&gt;
Siemens has released updates for the affected products and recommends to update to the latest versions.
&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-580125.pdf</id>
    <title>SSA-580125 V1.1 (Last Update: 2022-08-09): Multiple Vulnerabilities in SIMATIC eaSie</title>
    <updated>2022-08-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-580125.pdf" rel="alternate"/>
    <summary>&lt;p&gt;
SIMATIC eaSie contains multiple vulnerabilities that could allow an attacker to send arbitrary messages to the underlying message passing framework of the affected system or crash the attached application.
&lt;/p&gt;
&lt;p&gt;
Siemens has released an update for the SIMATIC eaSie Core Package and recommends to update to the latest version.
&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-557541.pdf</id>
    <title>SSA-557541 V1.1 (Last Update: 2022-08-09): Denial-of-Service Vulnerability in SIMATIC S7-400 CPUs</title>
    <updated>2022-08-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-557541.pdf" rel="alternate"/>
    <summary>&lt;p&gt;
SIMATIC S7-400 CPU devices contain an input validation vulnerability that could allow an attacker to create a Denial-of-Service condition. A restart is needed to restore normal operations.
&lt;/p&gt;
&lt;p&gt;
Siemens has released an update for SIMATIC S7-410 V10 CPU family and SIMATIC S7-400 H V6 CPU family (incl.&#160;SIPLUS variants for both) and recommends to update to the latest version. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not yet available.
&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-555707.pdf</id>
    <title>SSA-555707 V1.0: Information Disclosure Vulnerability in Simcenter STAR-CCM+</title>
    <updated>2022-08-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-555707.pdf" rel="alternate"/>
    <summary>&lt;p&gt;
Simcenter STAR-CCM+ contains an information disclosure vulnerability when using the Power-on-Demand public license server. An attacker could access a system&#8217;s host, user, and display name.
&lt;/p&gt;
&lt;p&gt;
Siemens is preparing updates and recommends specific countermeasures for products where updates are not, or not yet available.
&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-539476.pdf</id>
    <title>SSA-539476 V1.3 (Last Update: 2022-08-09): Siemens SIMATIC NET CP, SINEMA and SCALANCE Products Affected by Vulnerabilities in Third-Party Component strongSwan</title>
    <updated>2022-08-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-539476.pdf" rel="alternate"/>
    <summary>&lt;p&gt;
Vulnerabilities in the third-party component strongSwan could allow an attacker to cause a denial of service (DoS) condition in affected devices by exploiting integer overflow bugs.
&lt;/p&gt;
&lt;p&gt;
Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends countermeasures for products where updates are not, or not yet available.
&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-517377.pdf</id>
    <title>SSA-517377 V1.1 (Last Update: 2022-08-09): Multiple Vulnerabilities in the SRCS VPN Feature in SIMATIC CP Devices</title>
    <updated>2022-08-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-517377.pdf" rel="alternate"/>
    <summary>&lt;p&gt;
The below referenced devices contain multiple vulnerabilities that could be exploited when the SINEMA Remote Connect Server (SRCS) VPN feature is used. The feature is not activated by default. The most severe could allow an attacker to execute arbitrary code with elevated privileges under certain circumstances.
&lt;/p&gt;
&lt;p&gt;
Siemens has released an update for several products and recommends to update to the latest version. Siemens is preparing further updates and recommends countermeasures for products where updates are not, or not yet available.
&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-492828.pdf</id>
    <title>SSA-492828 V1.2 (Last Update: 2022-08-09): Denial-of-Service Vulnerability in SIMATIC S7-300 CPUs and SINUMERIK Controller</title>
    <updated>2022-08-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-492828.pdf" rel="alternate"/>
    <summary>&lt;p&gt;
A vulnerability in S7-300 might allow an attacker to cause a Denial-of-Service condition on port 102 of the affected devices by sending specially crafted packets.
&lt;/p&gt;
&lt;p&gt;
Siemens recommends specific countermeasures for products where updates are not, or not yet available.
&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-480230.pdf</id>
    <title>SSA-480230 V2.4 (Last Update: 2022-08-09): Denial of Service Vulnerability in Webserver of Industrial Products</title>
    <updated>2022-08-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-480230.pdf" rel="alternate"/>
    <summary>&lt;p&gt;
A vulnerability in the affected devices could allow an unauthorized attacker with network access to the webserver of an affected device to perform a denial of service attack.
&lt;/p&gt;
&lt;p&gt;
Siemens has released updates for several affected products and recommends to update to the new versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.
&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-473245.pdf</id>
    <title>SSA-473245 V2.3 (Last Update: 2022-08-09): Denial-of-Service Vulnerability in Profinet Devices</title>
    <updated>2022-08-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-473245.pdf" rel="alternate"/>
    <summary>&lt;p&gt;
A vulnerability in affected devices could allow an attacker to perform a denial-of-service attack if a large amount of specially crafted UDP packets are sent to the device.
&lt;/p&gt;
&lt;p&gt;
Siemens has released updates for several affected products, and recommends that customers update to the new version. Siemens is preparing further updates and recommends specific countermeasures until patches are available.
&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-446448.pdf</id>
    <title>SSA-446448 V1.3 (Last Update: 2022-08-09): Denial of Service Vulnerability in PROFINET Stack Integrated on Interniche Stack</title>
    <updated>2022-08-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-446448.pdf" rel="alternate"/>
    <summary>&lt;p&gt;
The PROFINET (PNIO) stack, when integrated with the Interniche IP stack, contains a vulnerability that could allow an attacker to cause a denial of service condition on affected industrial products.
&lt;/p&gt;
&lt;p&gt;
Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.
&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssb-439005.pdf</id>
    <title>SSB-439005 V4.6 (Last Update: 2022-08-09): Vulnerabilities in the additional GNU/Linux subsystem of the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP</title>
    <updated>2022-08-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssb-439005.pdf" rel="alternate"/>
    <summary>
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-431678.pdf</id>
    <title>SSA-431678 V1.3 (Last Update: 2022-08-09): Denial-of-Service Vulnerability in SIMATIC S7 CPU Families</title>
    <updated>2022-08-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-431678.pdf" rel="alternate"/>
    <summary>&lt;p&gt;
SIMATIC S7 CPU families are affected by a vulnerability that could allow remote attackers to perform a Denial-of-Service attack by sending a specially crafted HTTP request to the web server of an affected device.
&lt;/p&gt;
&lt;p&gt;
Siemens has released updates for several affected products, is working on updates for the remaining affected products and recommends specific countermeasures until fixes are available.
&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-429204.pdf</id>
    <title>SSA-429204 V1.1 (Last Update: 2022-08-09): Open Design Alliance Drawings SDK Vulnerabilities in JT2Go and Teamcenter Visualization</title>
    <updated>2022-08-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-429204.pdf" rel="alternate"/>
    <summary>&lt;p&gt;
JT2Go and Teamcenter Visualization are affected by multiple file parsing vulnerabilities in Drawings SDK from Open Design Alliance. If a user is tricked to open a malicious DWG file with any of the affected products, this could lead the application to crash or potentially lead to arbitrary code execution.
&lt;/p&gt;
&lt;p&gt;
Siemens has released updates for the affected products and recommends to update to the latest versions.
&lt;/p&gt;
&lt;p&gt;
Note:
&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;
This advisory covers security vulnerabilities recently disclosed by Open Design Alliance [0]
&lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;
[0] &lt;a href="https://www.opendesign.com/security-advisories"&gt;https://www.opendesign.com/security-advisories&lt;/a&gt;
&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-324955.pdf</id>
    <title>SSA-324955 V1.9 (Last Update: 2022-08-09): SAD DNS Attack in Linux Based Products</title>
    <updated>2022-08-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-324955.pdf" rel="alternate"/>
    <summary>&lt;p&gt;
A vulnerability made public under the name SAD DNS affects Domain Name System resolvers due to a vulnerability in the Linux kernel when handling ICMP packets. The Siemens products which are affected are listed below. For more information please see &lt;a href="https://www.saddns.net/"&gt;https://www.saddns.net/&lt;/a&gt;.
&lt;/p&gt;
&lt;p&gt;
Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.
&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-321292.pdf</id>
    <title>SSA-321292 V1.2 (Last Update: 2022-08-09): Denial of Service in the OPC Foundation Local Discovery Server (LDS) in Industrial Products</title>
    <updated>2022-08-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-321292.pdf" rel="alternate"/>
    <summary>&lt;p&gt;
A vulnerability has been identified in the OPC Foundation Local Discovery Server (LDS) [0] of several industrial products. The vulnerability could cause a denial of service condition on the service or the device.
&lt;/p&gt;
&lt;p&gt;
Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.
&lt;/p&gt;
&lt;p&gt;
[0] &lt;a href="https://files.opcfoundation.org/SecurityBulletins/OPC%20Foundation%20Security%20Bulletin%20CVE-2021-40142.pdf"&gt;https://files.opcfoundation.org/SecurityBulletins/OPC%20Foundation%20Security%20Bulletin%20CVE-2021-40142.pdf&lt;/a&gt;
&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-309571.pdf</id>
    <title>SSA-309571 V1.5 (Last Update: 2022-08-09): IPU 2021.1 Vulnerabilities in Siemens Industrial Products using Intel CPUs (June 2021)</title>
    <updated>2022-08-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-309571.pdf" rel="alternate"/>
    <summary>&lt;p&gt;
Intel has published information on vulnerabilities in Intel products in &lt;a href="https://blogs.intel.com/technology/2021/06/intel-security-advisories-for-june-2021/"&gt;June 2021&lt;/a&gt;. This advisory lists the related Siemens Industrial products affected by these vulnerabilities that can be patched by applying the corresponding BIOS update.
&lt;/p&gt;
&lt;p&gt;
In this advisory we summarize:
&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;
&lt;p&gt;
&#8220;2021.1 IPU &#8211; Intel&#174; CSME, SPS and LMS Advisory&#8221; Intel-SA-00459,
&lt;/p&gt;
&lt;/li&gt;
&lt;li&gt;
&lt;p&gt;
&#8220;2021.1 IPU &#8211; BIOS Advisory&#8221; Intel-SA-00463,
&lt;/p&gt;
&lt;/li&gt;
&lt;li&gt;
&lt;p&gt;
&#8220;2021.1 IPU &#8211; Intel&#174; Processor Advisory&#8221; Intel-SA-00464, and
&lt;/p&gt;
&lt;/li&gt;
&lt;li&gt;
&lt;p&gt;
&#8220;2021.1 IPU - Intel Atom&#174; Processor Advisory&#8221; Intel-SA-00465.
&lt;/p&gt;
&lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;
Siemens has released updates for several affected products and is currently working on BIOS updates that include chipset microcode updates for further products.
&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-307392.pdf</id>
    <title>SSA-307392 V1.9 (Last Update: 2022-08-09): Denial of Service in OPC UA in Industrial Products</title>
    <updated>2022-08-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-307392.pdf" rel="alternate"/>
    <summary>&lt;p&gt;
A vulnerability has been identified in the OPC UA server of several industrial products. The vulnerability could cause a denial of service condition on the service or the device.
&lt;/p&gt;
&lt;p&gt;
Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where updates are not, or not yet available.
&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-306654.pdf</id>
    <title>SSA-306654 V1.3 (Last Update: 2022-08-09): Insyde BIOS Vulnerabilities in Siemens Industrial Products</title>
    <updated>2022-08-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-306654.pdf" rel="alternate"/>
    <summary>&lt;p&gt;
Insyde has published information on vulnerabilities in Insyde BIOS in &lt;a href="https://www.insyde.com/security-pledge"&gt;February 2022&lt;/a&gt;. This advisory lists the Siemens Industrial products affected by these vulnerabilities.
&lt;/p&gt;
&lt;p&gt;
Siemens is preparing updates and recommends specific countermeasures for products where updates are not, or not yet available.
&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-285795.pdf</id>
    <title>SSA-285795 V1.2 (Last Update: 2022-08-09): Denial of Service in OPC-UA in Industrial Products</title>
    <updated>2022-08-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-285795.pdf" rel="alternate"/>
    <summary>&lt;p&gt;
A vulnerability in the underlying third party component OPC UA ANSIC Stack (also called Legacy C-Stack) affects several industrial products. The vulnerability could cause a crash of the component that includes the vulnerable part of the stack.
&lt;/p&gt;
&lt;p&gt;
Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.
&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-244969.pdf</id>
    <title>SSA-244969 V1.7 (Last Update: 2022-08-09): OpenSSL Vulnerability in Industrial Products</title>
    <updated>2022-08-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-244969.pdf" rel="alternate"/>
    <summary>&lt;p&gt;
OpenSSL has published a security advisory [0] about a vulnerability in OpenSSL versions 1.1.1 &amp;lt; 1.1.1l and 1.0.2 &amp;lt; 1.0.2za that allows an attacker to cause a denial of service (DoS) or to disclose private memory content.
&lt;/p&gt;
&lt;p&gt;
Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends countermeasures for products where updates are not, or not yet available.
&lt;/p&gt;
&lt;p&gt;
[0] &lt;a href="https://www.openssl.org/news/secadv/20210824.txt"&gt;https://www.openssl.org/news/secadv/20210824.txt&lt;/a&gt;
&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-243317.pdf</id>
    <title>SSA-243317 V1.1 (Last Update: 2022-08-09): File Parsing Vulnerability in Simcenter Femap and Parasolid</title>
    <updated>2022-08-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-243317.pdf" rel="alternate"/>
    <summary>&lt;p&gt;
Simcenter Femap and Parasolid are affected by an out of bounds read vulnerability that could be triggered when the application reads files in NEU format. If a user is tricked to open a malicious file with the affected applications, an attacker could leverage the vulnerability to perform remote code execution in the context of the current process.
&lt;/p&gt;
&lt;p&gt;
Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.
&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-232418.pdf</id>
    <title>SSA-232418 V1.4 (Last Update: 2022-08-09): Vulnerabilities in SIMATIC S7-1200 and SIMATIC S7-1500 CPU Families</title>
    <updated>2022-08-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-232418.pdf" rel="alternate"/>
    <summary>&lt;p&gt;
Two vulnerabilities have been identified in the SIMATIC S7-1200/S7-1500 CPU families and related products. One vulnerability (CVE-2019-10943) could allow an attacker with network access to affected devices to modify the user program stored on these devices such that the source code differs from the actual running code. The other vulnerability (CVE-2019-10929) could allow an attacker in a Man-in-the-Middle position to modify network traffic exchanged on port 102/tcp.
&lt;/p&gt;
&lt;p&gt;
Siemens has released updates for several affected products to fix CVE-2019-10929 and recommends to update to the latest versions. Regarding CVE-2019-10943, Siemens recommends specific countermeasures for products where updates are not, or not yet available.
&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-220589.pdf</id>
    <title>SSA-220589 V1.2 (Last Update: 2022-08-09): Hard Coded Default Credential Vulnerability in Teamcenter</title>
    <updated>2022-08-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-220589.pdf" rel="alternate"/>
    <summary>&lt;p&gt;
Siemens has released updates for Teamcenter that fixes a security vulnerability related to unsecure storage of user credentials. This vulnerability affects Java EE Server Manager HTML Adaptor. This service is not installed by default and currently also obsoleted.
&lt;/p&gt;
&lt;p&gt;
Siemens has released updates for the affected products and recommends to update to the latest versions.
&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-185638.pdf</id>
    <title>SSA-185638 V1.0: Authentication Bypass Vulnerability in SICAM A8000 Web Server Module</title>
    <updated>2022-08-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-185638.pdf" rel="alternate"/>
    <summary>&lt;p&gt;
A vulnerability was identified in the web server module used in the SICAM A8000 CP-8000, CP-8021 and CP-8022 devices&#8217; protocol firmwares.
&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;
AGPMT0 (AGP Master)
&lt;/li&gt;
&lt;li&gt;
DNPiT1 (DNP3 TCP/IP Server)
&lt;/li&gt;
&lt;li&gt;
DNPiT2 (DNP3 TCP/IP Client)
&lt;/li&gt;
&lt;li&gt;
DNPMT0 (DNP3 Master seriell)
&lt;/li&gt;
&lt;li&gt;
DNPST0 (DNP3 Slave seriell)
&lt;/li&gt;
&lt;li&gt;
ET83 (61850 Ed.1)
&lt;/li&gt;
&lt;li&gt;
ET85 (61850 Ed.2)
&lt;/li&gt;
&lt;li&gt;
MBCiT0 (MODBUS TCP/IP Client)
&lt;/li&gt;
&lt;li&gt;
MBSiT0 (MODBUS TCP/IP Server)
&lt;/li&gt;
&lt;li&gt;
MODMT2 (MODBUS Master seriell)
&lt;/li&gt;
&lt;li&gt;
OPUPT0 (OPCUA Pub/Sub)
&lt;/li&gt;
&lt;li&gt;
OPUPT1 (Mindconnect)
&lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;
The vulnerability could allow unauthenticated access to the web interface of the affected web server module. The module is used for diagnostic purposes as well as commissioning and has to be activated manually within the protocol firmwares. For this reason the protocol firmwares are &lt;em&gt;secure by default&lt;/em&gt;. Siemens updated the manual to make the situation transparent and raise awareness for operators.
&lt;/p&gt;
&lt;p&gt;
Siemens recommends countermeasures for products where updates are not, or not yet available.
&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-113131.pdf</id>
    <title>SSA-113131 V1.3 (Last Update: 2022-08-09): Denial of Service Vulnerabilities in SIMATIC S7-400 CPUs</title>
    <updated>2022-08-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-113131.pdf" rel="alternate"/>
    <summary>&lt;p&gt;
Two vulnerabilities have been identified in the SIMATIC S7-400 CPU family that could allow an attacker to cause a denial of service condition. In order to exploit the vulnerabilities, an attacker must have access to the affected devices on port 102/tcp via Ethernet, PROFIBUS or Multi Point Interfaces (MPI).
&lt;/p&gt;
&lt;p&gt;
Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.
&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-944952.pdf</id>
    <title>SSA-944952 V1.0: Authentication Bypass Vulnerability in Opcenter Quality</title>
    <updated>2022-07-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-944952.pdf" rel="alternate"/>
    <summary>&lt;p&gt;
Siemens has released updates for Opcenter Quality to fix an authentication bypass vulnerability. This could allow unauthenticated access to the application or cause denial of service condition for existing users. The issue is based on rich client modules using IbsGailWrapper-interface. After issuing the record the authentication bypass vulnerability could take place on all modules.
&lt;/p&gt;
&lt;p&gt;
Siemens has released updates for the affected products and recommends to update to the latest versions.
&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-910883.pdf</id>
    <title>SSA-910883 V1.0: DHCP Client Vulnerability in SINAMICS PERFECT HARMONY GH180 Drives</title>
    <updated>2022-07-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-910883.pdf" rel="alternate"/>
    <summary>&lt;p&gt;
Several models of SINAMICS PERFECT HARMONY GH180 Drives are affected by a DHCP client vulnerability (CVE-2021-29998) in the integrated SCALANCE X206-1 device. The vulnerability could allow an attacker to cause a heap-based buffer overflow on that device and use it to get access to the drive&#8217;s internal network.
&lt;/p&gt;
&lt;p&gt;
The list of affected drive models can be found in the section &#8220;Additional Information&#8221; below.
&lt;/p&gt;
&lt;p&gt;
Recently manufactured drives are no longer affected. For older drives, Siemens provides detailed remediation advise via customer support.
&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-865333.pdf</id>
    <title>SSA-865333 V1.0: Memory Corruption Vulnerability in EN100 Ethernet Module</title>
    <updated>2022-07-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-865333.pdf" rel="alternate"/>
    <summary>&lt;p&gt;
EN100 Ethernet module is affected by memory corruption vulnerability (CVE-2022-30938).
&lt;/p&gt;
&lt;p&gt;
Siemens has released an update for the EN100 Ethernet module IEC 61850 variant and recommends to update to the latest version. Siemens recommends specific countermeasures for products where updates are not, or not yet available.
&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-840800.pdf</id>
    <title>SSA-840800 V1.0: Code Injection Vulnerability in RUGGEDCOM ROS</title>
    <updated>2022-07-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-840800.pdf" rel="alternate"/>
    <summary>&lt;p&gt;
RUGGEDCOM ROS-based devices are vulnerable to a web-based code injection attack. To execute this attack, it is necessary to access the system via the console.
&lt;/p&gt;
&lt;p&gt;
Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where updates are not, or not yet available.
&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-840188.pdf</id>
    <title>SSA-840188 V1.5 (Last Update: 2022-07-12): Multiple Vulnerabilities in SIMATIC WinCC Affecting Other SIMATIC Software Products</title>
    <updated>2022-07-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-840188.pdf" rel="alternate"/>
    <summary>&lt;p&gt;
Multiple vulnerabilities were found in SIMATIC WinCC that ultimately could allow local or remote attackers to escalate privileges and read, write or delete critical files.
&lt;/p&gt;
&lt;p&gt;
Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.
&lt;/p&gt;
&lt;p&gt;
Note: The vulnerability CVE-2021-40359 is part of a shared component, used by various Siemens products (SIMATIC Communication Services - SCS). The installation of a fix version of any product also removes the vulnerability for other products on the same system, even if those products were not updated.
&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-838121.pdf</id>
    <title>SSA-838121 V1.2 (Last Update: 2022-07-12): Multiple Denial of Service Vulnerabilities in Industrial Products</title>
    <updated>2022-07-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-838121.pdf" rel="alternate"/>
    <summary>&lt;p&gt;
Affected SIMATIC firmware contains three vulnerabilities that could allow an unauthenticated attacker to perform a denial-of-service attack under certain conditions.
&lt;/p&gt;
&lt;p&gt;
Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends countermeasures for products where updates are not, or not yet available.
&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-829738.pdf</id>
    <title>SSA-829738 V1.0: Datalogics File Parsing Vulnerability in Teamcenter Visualization and JT2Go</title>
    <updated>2022-07-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-829738.pdf" rel="alternate"/>
    <summary>&lt;p&gt;
Siemens has released a new version for Teamcenter Visualization and JT2Go that fixes an out of bounds write vulnerability in APDFL library from Datalogics. If a user is tricked to open a malicious PDF file with the affected products, this could lead the application to crash or potentially lead to arbitrary code execution.
&lt;/p&gt;
&lt;p&gt;
Siemens has released updates for the affected products and recommends to update to the latest versions.
&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-712929.pdf</id>
    <title>SSA-712929 V1.1 (Last Update: 2022-07-12): Denial of Service Vulnerability in OpenSSL (CVE-2022-0778) Affecting Industrial Products</title>
    <updated>2022-07-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-712929.pdf" rel="alternate"/>
    <summary>&lt;p&gt;
A vulnerability in the openSSL component (CVE-2022-0778, [0]) could allow an attacker to create a denial of service condition by providing specially crafted elliptic curve certificates to products that use a vulnerable version of openSSL.
&lt;/p&gt;
&lt;p&gt;
Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends countermeasures for products where updates are not, or not yet available.
&lt;/p&gt;
&lt;p&gt;
[0] &lt;a href="https://www.openssl.org/news/secadv/20220315.txt"&gt;https://www.openssl.org/news/secadv/20220315.txt&lt;/a&gt;
&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-711829.pdf</id>
    <title>SSA-711829 V1.1 (Last Update: 2022-07-12): Denial of Service Vulnerability in TIA Administrator</title>
    <updated>2022-07-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-711829.pdf" rel="alternate"/>
    <summary>&lt;p&gt;
In conjunction with the installation of the affected products listed in the table below, a vulnerability in TIA Administrator occurs that could allow an unauthenticated attacker to perform a denial of service attack.
&lt;/p&gt;
&lt;p&gt;
Siemens has released updates for the affected products and recommends to update to the latest versions.
&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-678983.pdf</id>
    <title>SSA-678983 V1.5 (Last Update: 2022-07-12): Vulnerabilities in Industrial PCs and CNC devices using Intel CPUs (November 2020)</title>
    <updated>2022-07-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-678983.pdf" rel="alternate"/>
    <summary>&lt;p&gt;
Intel has published information on vulnerabilities in Intel products in &lt;a href="https://blogs.intel.com/technology/2020/11/ipas-security-advisories-for-november-2020/"&gt;November 2020&lt;/a&gt;. This advisory lists the Siemens IPC related products, that are affected by these vulnerabilities.
&lt;/p&gt;
&lt;p&gt;
In this advisory we take a representative CVE from each advisory:
&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;
&lt;p&gt;
&#8220;Intel CSME, SPS, TXE, AMT and DAL Advisory&#8221; Intel-SA-00391 is represented by CVE-2020-8745
&lt;/p&gt;
&lt;/li&gt;
&lt;li&gt;
&lt;p&gt;
&#8220;Intel RAPL Interface Advisory&#8221; Intel-SA-00389 is represented by CVE-2020-8694
&lt;/p&gt;
&lt;/li&gt;
&lt;li&gt;
&lt;p&gt;
&#8220;Intel Processor Advisory&#8221; Intel-SA-00381 is represented by CVE-2020-8698, and
&lt;/p&gt;
&lt;/li&gt;
&lt;li&gt;
&lt;p&gt;
&#8220;BIOS Advisory&#8221; Intel-SA-00358 is represented by CVE-2020-0590.
&lt;/p&gt;
&lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;
Siemens has released updates for several affected products and is currently working on BIOS updates that include chipset microcode updates for further products.
&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-610768.pdf</id>
    <title>SSA-610768 V1.0: XML Entity Expansion Injection Vulnerability in Mendix Excel Importer Module</title>
    <updated>2022-07-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-610768.pdf" rel="alternate"/>
    <summary>&lt;p&gt;
The latest update of Mendix Excel Importer module fixes an XML Entity Expansion Injection vulnerability.
&lt;/p&gt;
&lt;p&gt;
Mendix has released an update for the Mendix Excel Importer module and recommends to update to the latest version.
&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-599506.pdf</id>
    <title>SSA-599506 V1.0: Command Injection in RUGGEDCOM ROX</title>
    <updated>2022-07-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-599506.pdf" rel="alternate"/>
    <summary>&lt;p&gt;
RUGGEDCOM ROX devices are affected by a command injection vulnerability that could allow an attacker with administrative privileges to gain root access.
&lt;/p&gt;
&lt;p&gt;
Siemens has released updates for the affected products and recommends to update to the latest versions.
&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-580125.pdf</id>
    <title>SSA-580125 V1.0: Multiple Vulnerabilities in SIMATIC eaSie Core Package</title>
    <updated>2022-07-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-580125.pdf" rel="alternate"/>
    <summary>&lt;p&gt;
SIMATIC eaSie PCS 7 Skill Package contains multiple vulnerabilities that could allow an attacker to send arbitrary messages to the underlying message passing framework of the affected system or crash the attached application.
&lt;/p&gt;
&lt;p&gt;
Siemens has released an update for the SIMATIC eaSie Core Package and recommends to update to the latest version.
&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-557804.pdf</id>
    <title>SSA-557804 V1.4 (Last Update: 2022-07-12): Mirror Port Isolation Vulnerability in SCALANCE X Switches</title>
    <updated>2022-07-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-557804.pdf" rel="alternate"/>
    <summary>&lt;p&gt;
A vulnerability was identified in several SCALANCE X switches that could allow an attacker to feed information into a network via the mirror port with the monitor barrier feature enabled.
&lt;/p&gt;
&lt;p&gt;
Siemens has released updates for the affected products and recommends to update to the latest versions.
&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-517377.pdf</id>
    <title>SSA-517377 V1.0: Multiple Vulnerabilities in the SRCS VPN Feature in SIMATIC CP Devices</title>
    <updated>2022-07-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-517377.pdf" rel="alternate"/>
    <summary>&lt;p&gt;
The below referenced devices contain multiple vulnerabilities that could be exploited when the SINEMA Remote Connect Server (SRCS) VPN feature is used. The feature is not activated by default. The most severe could allow an attacker to execute arbitrary code with elevated privileges under certain circumstances.
&lt;/p&gt;
&lt;p&gt;
Siemens has released an update for SIMATIC CP 1543-1 (incl.&#160;SIPLUS variants) and recommends to update to the latest version. Siemens is preparing further updates and recommends countermeasures for products where updates are not, or not yet available.
&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-492173.pdf</id>
    <title>SSA-492173 V1.0: Expression Injection Vulnerability in Mendix Applications</title>
    <updated>2022-07-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-492173.pdf" rel="alternate"/>
    <summary>&lt;p&gt;
An expression injection vulnerability was discovered in the Workflow processing of Mendix Runtime, that can affect the running applications. The vulnerability could allow a malicious user to leak sensitive information if the Workflow visual language of Mendix is used.
&lt;/p&gt;
&lt;p&gt;
Mendix has released updates for the affected product lines, recommends to update to the latest versions and to redeploy the applications.
&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-491621.pdf</id>
    <title>SSA-491621 V1.0: Denial of Service Vulnerability in CPC80 Firmware of SICAM A8000 Devices</title>
    <updated>2022-07-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-491621.pdf" rel="alternate"/>
    <summary>&lt;p&gt;
A vulnerability was identified in the CPC80 firmware of SICAM A8000 devices. It could allow an unauthenticated remote attacker to cause a permanent denial of service condition.
&lt;/p&gt;
&lt;p&gt;
Siemens has released updates for the affected products and recommends to update to the latest versions.
&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-474231.pdf</id>
    <title>SSA-474231 V1.0: File Parsing Vulnerability in Simcenter Femap before V2022.2</title>
    <updated>2022-07-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-474231.pdf" rel="alternate"/>
    <summary>&lt;p&gt;
Siemens Simcenter Femap versions before V2022.2 are affected by an out of bounds write vulnerability that could be triggered when the application reads files in X_T format. If a user is tricked to open a malicious file with the affected application, an attacker could leverage the vulnerability to perform remote code execution in the context of the current process.
&lt;/p&gt;
&lt;p&gt;
Siemens has released an update for the Simcenter Femap and recommends to update to the latest version.
&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-446448.pdf</id>
    <title>SSA-446448 V1.2 (Last Update: 2022-07-12): Denial of Service Vulnerability in PROFINET Stack Integrated on Interniche Stack</title>
    <updated>2022-07-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-446448.pdf" rel="alternate"/>
    <summary>&lt;p&gt;
The PROFINET (PNIO) stack, when integrated with the Interniche IP stack, contains a vulnerability that could allow an attacker to cause a denial of service condition on affected industrial products.
&lt;/p&gt;
&lt;p&gt;
Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.
&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-439148.pdf</id>
    <title>SSA-439148 V1.0: File Parsing Vulnerabilities in PADS Standard/Plus Viewer</title>
    <updated>2022-07-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-439148.pdf" rel="alternate"/>
    <summary>&lt;p&gt;
Siemens PADS Standard/Plus Viewer is affected by multiple memory corruption vulnerabilities that could be triggered when the application reads files in PCB format. If a user is tricked to open a malicious file with the affected application, an attacker could leverage the vulnerability to perform remote code execution in the context of the current process
&lt;/p&gt;
&lt;p&gt;
Siemens recommends specific countermeasures for products where updates are not, or not yet available.
&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssb-439005.pdf</id>
    <title>SSB-439005 V4.5 (Last Update: 2022-07-12): Vulnerabilities in the additional GNU/Linux subsystem of the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP</title>
    <updated>2022-07-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssb-439005.pdf" rel="alternate"/>
    <summary>
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-433782.pdf</id>
    <title>SSA-433782 V1.0: Improper Access Control Vulnerability in Mendix</title>
    <updated>2022-07-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-433782.pdf" rel="alternate"/>
    <summary>&lt;p&gt;
An improper access control vulnerability in Mendix applications was discovered. In case of access to an active user session, the vulnerability could allow to change that user&#8217;s password bypassing password validations within a Mendix application.
&lt;/p&gt;
&lt;p&gt;
Siemens has released updates for the affected products and recommends to update to the latest versions.
&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-429204.pdf</id>
    <title>SSA-429204 V1.0: Open Design Alliance Drawings SDK Vulnerabilities in JT2Go and Teamcenter Visualization</title>
    <updated>2022-07-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-429204.pdf" rel="alternate"/>
    <summary>&lt;p&gt;
JT2Go and Teamcenter Visualization are affected by multiple file parsing vulnerabilities in Drawings SDK from Open Design Alliance. If a user is tricked to open a malicious DWG file with any of the affected products, this could lead the application to crash or potentially lead to arbitrary code execution.
&lt;/p&gt;
&lt;p&gt;
Siemens has released updates for the affected products and recommends to update to the latest versions.
&lt;/p&gt;
&lt;p&gt;
Note:
&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;
This advisory covers security vulnerabilities recently disclosed by Open Design Alliance [0]
&lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;
[0] &lt;a href="https://www.opendesign.com/security-advisories"&gt;https://www.opendesign.com/security-advisories&lt;/a&gt;
&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-414513.pdf</id>
    <title>SSA-414513 V1.2 (Last Update: 2022-07-12): Information Disclosure Vulnerability in Mendix</title>
    <updated>2022-07-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-414513.pdf" rel="alternate"/>
    <summary>&lt;p&gt;
An information disclosure vulnerability in Mendix applications was discovered. The vulnerability could allow to read sensitive data.
&lt;/p&gt;
&lt;p&gt;
Siemens has released updates for the affected products and recommends to update to the latest versions.
&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-348662.pdf</id>
    <title>SSA-348662 V1.0: Multiple Vulnerabilities in SIMATIC MV500 Devices before V3.3</title>
    <updated>2022-07-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-348662.pdf" rel="alternate"/>
    <summary>&lt;p&gt;
SIMATIC MV500 devices before V3.3 are affected by multiple vulnerabilities that could allow attackers to hijack other users&#8217; web based management sessions (CVE-2022-33137) or access data on the device without prior authentication (CVE-2022-33138).
&lt;/p&gt;
&lt;p&gt;
Siemens has released an update for the SIMATIC MV500 devices and recommends to update to the latest version. Note that the update also contains additional fixes for vulnerabilities documented in Siemens Security Advisory SSA-712929.
&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-321292.pdf</id>
    <title>SSA-321292 V1.1 (Last Update: 2022-07-12): Denial of Service in the OPC Foundation Local Discovery Server (LDS) in Industrial Products</title>
    <updated>2022-07-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-321292.pdf" rel="alternate"/>
    <summary>&lt;p&gt;
A vulnerability has been identified in the OPC Foundation Local Discovery Server (LDS) [0] of several industrial products. The vulnerability could cause a denial of service condition on the service or the device.
&lt;/p&gt;
&lt;p&gt;
Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.
&lt;/p&gt;
&lt;p&gt;
[0] &lt;a href="https://files.opcfoundation.org/SecurityBulletins/OPC%20Foundation%20Security%20Bulletin%20CVE-2021-40142.pdf"&gt;https://files.opcfoundation.org/SecurityBulletins/OPC%20Foundation%20Security%20Bulletin%20CVE-2021-40142.pdf&lt;/a&gt;
&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-310038.pdf</id>
    <title>SSA-310038 V1.0: Multiple Vulnerabilities in SCALANCE X Switch Devices</title>
    <updated>2022-07-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-310038.pdf" rel="alternate"/>
    <summary>&lt;p&gt;
Several SCALANCE X switches contain multiple vulnerabilities. An unauthenticated attacker could reboot, cause denial-of-service conditions and potentially impact the system by other means through heap and buffer overflow vulnerabilities.
&lt;/p&gt;
&lt;p&gt;
Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.
&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-309571.pdf</id>
    <title>SSA-309571 V1.4 (Last Update: 2022-07-12): IPU 2021.1 Vulnerabilities in Siemens Industrial Products using Intel CPUs (June 2021)</title>
    <updated>2022-07-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-309571.pdf" rel="alternate"/>
    <summary>&lt;p&gt;
Intel has published information on vulnerabilities in Intel products in &lt;a href="https://blogs.intel.com/technology/2021/06/intel-security-advisories-for-june-2021/"&gt;June 2021&lt;/a&gt;. This advisory lists the related Siemens Industrial products affected by these vulnerabilities that can be patched by applying the corresponding BIOS update.
&lt;/p&gt;
&lt;p&gt;
In this advisory we summarize:
&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;
&lt;p&gt;
&#8220;2021.1 IPU &#8211; Intel&#174; CSME, SPS and LMS Advisory&#8221; Intel-SA-00459,
&lt;/p&gt;
&lt;/li&gt;
&lt;li&gt;
&lt;p&gt;
&#8220;2021.1 IPU &#8211; BIOS Advisory&#8221; Intel-SA-00463,
&lt;/p&gt;
&lt;/li&gt;
&lt;li&gt;
&lt;p&gt;
&#8220;2021.1 IPU &#8211; Intel&#174; Processor Advisory&#8221; Intel-SA-00464, and
&lt;/p&gt;
&lt;/li&gt;
&lt;li&gt;
&lt;p&gt;
&#8220;2021.1 IPU - Intel Atom&#174; Processor Advisory&#8221; Intel-SA-00465.
&lt;/p&gt;
&lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;
Siemens has released updates for several affected products and is currently working on BIOS updates that include chipset microcode updates for further products.
&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-306654.pdf</id>
    <title>SSA-306654 V1.2 (Last Update: 2022-07-12): Insyde BIOS Vulnerabilities in Siemens Industrial Products</title>
    <updated>2022-07-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-306654.pdf" rel="alternate"/>
    <summary>&lt;p&gt;
Insyde has published information on vulnerabilities in Insyde BIOS in &lt;a href="https://www.insyde.com/security-pledge"&gt;February 2022&lt;/a&gt;. This advisory lists the Siemens Industrial products affected by these vulnerabilities.
&lt;/p&gt;
&lt;p&gt;
Siemens is preparing updates and recommends specific countermeasures for products where updates are not, or not yet available.
&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-285795.pdf</id>
    <title>SSA-285795 V1.1 (Last Update: 2022-07-12): Denial of Service in OPC-UA in Industrial Products</title>
    <updated>2022-07-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-285795.pdf" rel="alternate"/>
    <summary>&lt;p&gt;
Vulnerability in the underlying third party component OPC UA ANSIC Stack (also called Legacy C-Stack) affects several industrial products. The vulnerability could cause a crash of the component that includes the vulnerable part of the stack.
&lt;/p&gt;
&lt;p&gt;
Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.
&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-244969.pdf</id>
    <title>SSA-244969 V1.6 (Last Update: 2022-07-12): OpenSSL Vulnerability in Industrial Products</title>
    <updated>2022-07-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-244969.pdf" rel="alternate"/>
    <summary>&lt;p&gt;
OpenSSL has published a security advisory [0] about a vulnerability in OpenSSL versions 1.1.1 &amp;lt; 1.1.1l and 1.0.2 &amp;lt; 1.0.2za that allows an attacker to cause a denial of service (DoS) or to disclose private memory content.
&lt;/p&gt;
&lt;p&gt;
Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends countermeasures for products where updates are not, or not yet available.
&lt;/p&gt;
&lt;p&gt;
[0] &lt;a href="https://www.openssl.org/news/secadv/20210824.txt"&gt;https://www.openssl.org/news/secadv/20210824.txt&lt;/a&gt;
&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-243317.pdf</id>
    <title>SSA-243317 V1.0: File Parsing Vulnerability in Simcenter Femap and Parasolid</title>
    <updated>2022-07-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-243317.pdf" rel="alternate"/>
    <summary>&lt;p&gt;
Simcenter Femap and Parasolid are affected by an out of bounds read vulnerability that could be triggered when the application reads files in NEU format. If a user is tricked to open a malicious file with the affected applications, an attacker could leverage the vulnerability to perform remote code execution in the context of the current process.
&lt;/p&gt;
&lt;p&gt;
Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.
&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-225578.pdf</id>
    <title>SSA-225578 V1.0: Improper Access Control in SICAM GridEdge</title>
    <updated>2022-07-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-225578.pdf" rel="alternate"/>
    <summary>&lt;p&gt;
The SICAM GridEdge software contains a improper access control vulnerability. This could allow persons with local access to the host system to inject an SSH key.
&lt;/p&gt;
&lt;p&gt;
Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where updates are not, or not yet available.
&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-220589.pdf</id>
    <title>SSA-220589 V1.1 (Last Update: 2022-07-12): Hard Coded Default Credential Vulnerability in Teamcenter</title>
    <updated>2022-07-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-220589.pdf" rel="alternate"/>
    <summary>&lt;p&gt;
Siemens has released updates for Teamcenter that fixes a security vulnerability related to unsecure storage of user credentials. This vulnerability affects Java EE Server Manager HTML Adaptor. This service is not installed by default and currently also obsoleted.
&lt;/p&gt;
&lt;p&gt;
Siemens has released updates for the affected products and recommends to update to the latest versions.
&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-111512.pdf</id>
    <title>SSA-111512 V1.0: Client-side Authentication in SIMATIC WinCC OA</title>
    <updated>2022-06-21T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-111512.pdf" rel="alternate"/>
    <summary>&lt;p&gt;SIMATIC WinCC OA implements client-side only authentication, when neither server-side authentication (SSA) nor Kerberos authentication is enabled. In this configuration, attackers could impersonate other users or exploit the client-server protocol without being authenticated.&lt;/p&gt;
&lt;p&gt;Siemens recommends to enable server-side authentication (SSA) or Kerberos authentication for all WinCC OA projects, as documented in the WinCC OA Security Guideline. In SIMATIC WinCC OA server-side authentication is available since V3.15 (and offered as the default configuration since V3.17). Additional information can be found at: &lt;a href="https://cert-portal.siemens.com/productcert/news.html?id=21" class="uri"&gt;https://cert-portal.siemens.com/productcert/news.html?id=21&lt;/a&gt;.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-988345.pdf</id>
    <title>SSA-988345 V1.0: Local Privilege Escalation Vulnerability in Xpedition Designer</title>
    <updated>2022-06-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-988345.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in Xpedition Designer could allow an attacker with an unprivileged account to override or modify the service executable and subsequently gain elevated privileges.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for the Xpedition Designer and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-978220.pdf</id>
    <title>SSA-978220 V1.7 (Last Update: 2022-06-14): Denial of Service Vulnerability over SNMP in Multiple Industrial Products</title>
    <updated>2022-06-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-978220.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Several industrial products are affected by a vulnerability that could allow remote attackers to conduct a denial of service attack by sending specially crafted packets to port 161/udp (SNMP).&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the new versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-941426.pdf</id>
    <title>SSA-941426 V1.2 (Last Update: 2022-06-14): Multiple LLDP Vulnerabilities in Industrial Products</title>
    <updated>2022-06-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-941426.pdf" rel="alternate"/>
    <summary>&lt;p&gt;There are multiple vulnerabilities in an underlying Link Layer Discovery Protocol (LLDP) third party library.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-911567.pdf</id>
    <title>SSA-911567 V1.0: Missing HTTP headers in SINEMA Remote Connect Server before V3.0 SP2</title>
    <updated>2022-06-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-911567.pdf" rel="alternate"/>
    <summary>&lt;p&gt;SINEMA Remote Connect Server is missing HTTP security headers on the web server. This could aid attackers by making the servers more prone to clickjacking, channel downgrade attacks and other similar client-based attack vectors.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for the SINEMA Remote Connect Server and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-789162.pdf</id>
    <title>SSA-789162 V1.1 (Last Update: 2022-06-14): Vulnerabilities in Teamcenter</title>
    <updated>2022-06-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-789162.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Teamcenter is affected by XML External Entity Injection (XXE, CVE-2022-29801) and a stack based buffer overflow vulnerability (CVE-2022-24290). XXE impacts only Teamcenter versions before V13.1.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-780073.pdf</id>
    <title>SSA-780073 V2.2 (Last Update: 2022-06-14): Denial of Service Vulnerability in PROFINET Devices via DCE-RPC Packets</title>
    <updated>2022-06-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-780073.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Products that include the Siemens PROFINET-IO (PNIO) stack in versions prior V06.00 are potentially affected by a denial of service vulnerability when multiple legitimate diagnostic package requests are sent to the DCE-RPC interface.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the new versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
&lt;p&gt;Additionally, Siemens recommends other vendors of PROFINET devices to check if their products have incorporated a vulnerable version of the Siemens PNIO stack as part of the Siemens Development/Evaluation Kits.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-772220.pdf</id>
    <title>SSA-772220 V2.0 (Last Update: 2022-06-14): OpenSSL Vulnerabilities in Industrial Products</title>
    <updated>2022-06-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-772220.pdf" rel="alternate"/>
    <summary>&lt;p&gt;OpenSSL has published a security advisory [0] about a vulnerability in OpenSSL versions 1.1.1 &amp;lt; 1.1.1k, that allows an unauthenticated attacker to cause a Denial-of-Service (DoS) if a maliciously crafted renegotiation message is sent .&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
&lt;p&gt;[0] &lt;a href="https://www.openssl.org/news/secadv/20210325.txt" class="uri"&gt;https://www.openssl.org/news/secadv/20210325.txt&lt;/a&gt;&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-764417.pdf</id>
    <title>SSA-764417 V1.3 (Last Update: 2022-06-14): Weak Encryption Vulnerability in RUGGEDCOM ROS Devices</title>
    <updated>2022-06-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-764417.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The SSH server on RUGGEDCOM ROS devices is configured to offer weak ciphers by default. This could allow an unauthorized attacker in a man-in-the-middle position to read and modify any data passed over the connection between legitimate clients and the affected device.&lt;/p&gt;
&lt;p&gt;Siemens recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-740594.pdf</id>
    <title>SSA-740594 V1.0: Privilege Escalation Vulnerability in Mendix SAML Module</title>
    <updated>2022-06-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-740594.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest updates of Mendix the SAML module fixes two vulnerabilities. One is an XML External Entity (XXE) attack that could allow an attacker to potentially disclose confidential data under certain circumstances the other is an Cross Site Scripting (XSS) attack allowing to execute malicious code by tricking users into accessing a malicious link .&lt;/p&gt;
&lt;p&gt;Mendix has released an update for the Mendix SAML module and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-732250.pdf</id>
    <title>SSA-732250 V1.1 (Last Update: 2022-06-14): Libcurl Vulnerabilities in Industrial Devices</title>
    <updated>2022-06-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-732250.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Vulnerabilities in third-party component cURL could allow an attacker to interfere with the affected products in various ways.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-712929.pdf</id>
    <title>SSA-712929 V1.0: Denial of Service Vulnerability in OpenSSL (CVE-2022-0778) Affecting Industrial Products</title>
    <updated>2022-06-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-712929.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in the openSSL component (CVE-2022-0778, [0]) could allow an attacker to create a denial of service condition by providing specially crafted elliptic curve certificates to products that use a vulnerable version of openSSL.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
&lt;p&gt;[0] &lt;a href="https://www.openssl.org/news/secadv/20220315.txt" class="uri"&gt;https://www.openssl.org/news/secadv/20220315.txt&lt;/a&gt;&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-693555.pdf</id>
    <title>SSA-693555 V1.0: Memory Corruption Vulnerability in EN100 Ethernet Module</title>
    <updated>2022-06-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-693555.pdf" rel="alternate"/>
    <summary>&lt;p&gt;EN100 Ethernet module is affected by memory corruption vulnerability (CVE-2022-30937).&lt;/p&gt;
&lt;p&gt;Siemens has released an update for the EN100 Ethernet module IEC 61850 variant and recommends to update to the latest version. Siemens recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-685781.pdf</id>
    <title>SSA-685781 V1.0: Multiple Vulnerabilities in Apache HTTP Server Affecting Siemens Products</title>
    <updated>2022-06-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-685781.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities were identified in the Apache HTTP Server software. These include NULL Pointer Dereferencing, Out-of-bounds Write and Server-Side Request Forgery related vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for the SINEMA Remote Connect Server and recommends to update to the latest version. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-679335.pdf</id>
    <title>SSA-679335 V1.1 (Last Update: 2022-06-14): Multiple Vulnerabilities in Embedded FTP Server of SIMATIC CP Modules</title>
    <updated>2022-06-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-679335.pdf" rel="alternate"/>
    <summary>&lt;p&gt;SIMATIC CP 1543-1 and CP 1545-1 devices are affected by multiple vulnerabilities in ProFTPD, a third party component, that could allow a remote attacker to access sensitive information and execute arbitrary code.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-662649.pdf</id>
    <title>SSA-662649 V1.1 (Last Update: 2022-06-14): Denial of Service Vulnerability in Desigo DXR and PXC Controllers</title>
    <updated>2022-06-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-662649.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in Desigo DXR and PXC controllers has been identified that could allow an attacker to disable and reset a device to factory state using a denial of service attack.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-661247.pdf</id>
    <title>SSA-661247 V2.9 (Last Update: 2022-06-14): Apache Log4j Vulnerabilities (Log4Shell, CVE-2021-44228, CVE-2021-45046) - Impact to Siemens Products</title>
    <updated>2022-06-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-661247.pdf" rel="alternate"/>
    <summary>&lt;p&gt;On 2021-12-09, a vulnerability in Apache Log4j (a logging tool used in many Java-based applications) was disclosed, that could allow remote unauthenticated attackers to execute code on vulnerable systems. The vulnerability is tracked as CVE-2021-44228 and is also known as &#8220;Log4Shell&#8221;.&lt;/p&gt;
&lt;p&gt;On 2021-12-14 an additional denial of service vulnerability (CVE-2021-45046) was published rendering the initial mitigations and fix in version 2.15.0 as incomplete under certain non-default configurations. Log4j versions 2.16.0 and 2.12.2 are supposed to fix both vulnerabilities.&lt;/p&gt;
&lt;p&gt;On 2021-12-17, CVE-2021-45046 was reclassified with an increased CVSS base score (from 3.7 to 9.0). The potential impact of CVE-2021-45046 now includes - besides denial of service - also information disclosure and local (and potential remote) code execution.&lt;/p&gt;
&lt;p&gt;Siemens is currently investigating to determine which products are affected and is continuously updating this advisory as more information becomes available. See section Additional Information for more details regarding the investigation status.&lt;/p&gt;
&lt;p&gt;Note: two additional vulnerabilities were published for Apache Log4j, the impact of which are documented in SSA-501673: &lt;a href="https://cert-portal.siemens.com/productcert/pdf/ssa-501673.pdf" class="uri"&gt;https://cert-portal.siemens.com/productcert/pdf/ssa-501673.pdf&lt;/a&gt; (CVE-2021-45105) and SSA-784507: &lt;a href="https://cert-portal.siemens.com/productcert/pdf/ssa-784507.pdf" class="uri"&gt;https://cert-portal.siemens.com/productcert/pdf/ssa-784507.pdf&lt;/a&gt; (CVE-2021-44832).&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-631336.pdf</id>
    <title>SSA-631336 V1.0: Multiple Web Server Vulnerabilities in SICAM GridEdge Software</title>
    <updated>2022-06-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-631336.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities were identified in the webserver of the SICAM GridEdge application which includes missing authentication for critical API functions, absent cross-origin resource sharing restrictions and access to credentials.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-629512.pdf</id>
    <title>SSA-629512 V1.5 (Last Update: 2022-06-14): Local Privilege Escalation Vulnerability in TIA Portal</title>
    <updated>2022-06-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-629512.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest updates for TIA Portal fix a vulnerability that could allow a local attacker to execute arbitrary code with SYSTEM privileges.&lt;/p&gt;
&lt;p&gt;Update: The previously provided fixes only correctly set the permissions on English Windows versions.&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-626968.pdf</id>
    <title>SSA-626968 V1.1 (Last Update: 2022-06-14): Multiple Webserver Vulnerabilities in Desigo PXC and DXR Devices</title>
    <updated>2022-06-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-626968.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Desigo PXC3, PXC4, PXC5 and DXR2 devices contain multiple vulnerabilities in the webserver application that could allow an attacker to potentially intercept unencrypted transmission of sensitive information, cause a denial of service condition, or perform remote code execution.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-593272.pdf</id>
    <title>SSA-593272 V1.7 (Last Update: 2022-06-14): SegmentSmack in Interniche IP-Stack based Industrial Devices</title>
    <updated>2022-06-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-593272.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability exists in affected products that could allow remote attackers to affect the availability of the devices under certain conditions.&lt;/p&gt;
&lt;p&gt;The underlying TCP stack can be forced to make very computation expensive calls for every incoming packet which can lead to a Denial-of-Service.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens recommends countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-592007.pdf</id>
    <title>SSA-592007 V1.7 (Last Update: 2022-06-14): Denial-of-Service Vulnerability in Industrial Products</title>
    <updated>2022-06-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-592007.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Several industrial controllers are affected by a security vulnerability that could allow an attacker to cause a Denial-of-Service condition via PROFINET DCP network packets under certain circumstances. Precondition for this scenario is a direct OSI Layer 2 access to the affected products. PROFIBUS interfaces are not affected.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, is working on updates for the remaining affected products and recommends specific countermeasures until fixes are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-549234.pdf</id>
    <title>SSA-549234 V1.2 (Last Update: 2022-06-14): Denial-of-Service Vulnerability in SIMATIC NET CP Modules</title>
    <updated>2022-06-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-549234.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A denial of service vulnerability was identified in different types of Communication Processors. An attacker could exploit this vulnerability causing the device to become un-operational until the device is restarted.&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-539476.pdf</id>
    <title>SSA-539476 V1.2 (Last Update: 2022-06-14): Siemens SIMATIC NET CP, SINEMA and SCALANCE Products Affected by Vulnerabilities in Third-Party Component strongSwan</title>
    <updated>2022-06-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-539476.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Vulnerabilities in the third-party component strongSwan could allow an attacker to cause a denial of service (DoS) condition in affected devices by exploiting integer overflow bugs.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-535997.pdf</id>
    <title>SSA-535997 V1.1 (Last Update: 2022-06-14): Cleartext Storage of Sensitive Information in Multiple SIMATIC Products</title>
    <updated>2022-06-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-535997.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A cleartext vulnerability was found in the SIMATIC communication processors CP 1543-1 and CP 1545-1 that could allow an attacker to read sensitive information.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-484086.pdf</id>
    <title>SSA-484086 V1.0: Multiple Vulnerabilities in SINEMA Remote Connect Server before V3.1</title>
    <updated>2022-06-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-484086.pdf" rel="alternate"/>
    <summary>&lt;p&gt;SINEMA Remote Connect Server is affected by multiple vulnerabilities, including&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;A cross-site scripting vulnerability in an error message pop up window (CVE-2022-29034)&lt;/li&gt;
&lt;li&gt;Several authentication bypass, privilege escalation and integrity check vulnerabilities (CVE-2022-32251 through -32261)&lt;/li&gt;
&lt;li&gt;A command injection vulnerability in the file upload service (CVE-2022-32262)&lt;/li&gt;
&lt;li&gt;A chosen-plaintext attack against HTTP over TLS (&#8220;BREACH&#8221;, CVE-2022-27221)&lt;/li&gt;
&lt;li&gt;Information disclosure vulnerabilities in the curl component (CVE-2021-22924 through -22925)&lt;/li&gt;
&lt;li&gt;Several vulnerabilities in the libexpat library, that could be exploited when the server is parsing untrusted XML files (CVE-2021-45960, CVE-2021-46143, CVE-2022-22822 through -22827, CVE-2022-23852, CVE-2022-23990, CVE-2022-25235 through -25236, CVE-2022-25313 through -25315.&lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;Siemens has released an update for the SINEMA Remote Connect Server and recommends to update to the latest version. Note that the update also contains additional fixes for vulnerabilities documented in Siemens Security Advisories SSA-244969, SSA-539476, SSA-685781 and SSA-712929.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-480230.pdf</id>
    <title>SSA-480230 V2.3 (Last Update: 2022-06-14): Denial of service in Webserver of Industrial Products</title>
    <updated>2022-06-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-480230.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in the affected devices could allow an unauthorized attacker with network access to the webserver of an affected device to perform a denial of service attack.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the new versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-462066.pdf</id>
    <title>SSA-462066 V3.0 (Last Update: 2022-06-14): Vulnerability known as TCP SACK PANIC in Industrial Products</title>
    <updated>2022-06-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-462066.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Multiple industrial products are affected by a vulnerability in the kernel known as TCP SACK PANIC. The vulnerability could allow a remote attacker to cause a denial of service condition.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the new versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-446448.pdf</id>
    <title>SSA-446448 V1.1 (Last Update: 2022-06-14): Denial of Service Vulnerability in PROFINET Stack Integrated on Interniche Stack</title>
    <updated>2022-06-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-446448.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The PROFINET (PNIO) stack, when integrated with the Interniche IP stack, contains a vulnerability that could allow an attacker to cause a denial of service condition on affected industrial products.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-443566.pdf</id>
    <title>SSA-443566 V1.2 (Last Update: 2022-06-14): Authentication Bypass in SCALANCE X Switches Families</title>
    <updated>2022-06-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-443566.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Several SCALANCE X switches are affected by an Authentication Bypass vulnerability. The vulnerability allows an unauthenticated attacker to violate access-control rules. The vulnerability can be exploited by sending a GET request to a specific uniform resource locator on the web configuration interface of the device.&lt;/p&gt;
&lt;p&gt;The security vulnerability could be exploited by an attacker with network access to the affected systems. An attacker could use the vulnerability to obtain sensitive information or change the device configuration.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for the SCALANCE X-300 switch family (incl.&#160;X408 and SIPLUS NET variants) and recommends to update to the latest version. Siemens recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssb-439005.pdf</id>
    <title>SSB-439005 V4.4 (Last Update: 2022-06-14): Vulnerabilities in the additional GNU/Linux subsystem of the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP</title>
    <updated>2022-06-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssb-439005.pdf" rel="alternate"/>
    <summary>
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-414513.pdf</id>
    <title>SSA-414513 V1.1 (Last Update: 2022-06-14): Information Disclosure Vulnerability in Mendix</title>
    <updated>2022-06-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-414513.pdf" rel="alternate"/>
    <summary>&lt;p&gt;An information disclosure vulnerability in Mendix applications was discovered. The vulnerability could allow to read sensitive data.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several Mendix Applications and recommends to update to the latest versions. Siemens is preparing further updates and recommends countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-401167.pdf</id>
    <title>SSA-401167 V1.0: Cross-site scripting Vulnerability in Teamcenter Active Workspace</title>
    <updated>2022-06-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-401167.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Teamcenter Active Workspace is affected by a cross site scripting vulnerability. Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-388239.pdf</id>
    <title>SSA-388239 V1.0: Default Password Leakage affecting the Component Shared HIS used in Spectrum Power Systems</title>
    <updated>2022-06-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-388239.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Siemens has been made aware of a default password leakage in the internet affecting the component Shared HIS (SHHIS) used in Spectrum Power systems.&lt;/p&gt;
&lt;p&gt;The products listed below are affected by this default password leakage. This could allow an attacker to access the component Shared HIS of those products with administrative privileges by using an account with default credentials.&lt;/p&gt;
&lt;p&gt;Siemens offers configuration recommendations for the affected products in order to mitigate the issue.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-363107.pdf</id>
    <title>SSA-363107 V1.1 (Last Update: 2022-06-14): An Improper Initialization Vulnerability Affects SIMATIC WinCC Kiosk Mode</title>
    <updated>2022-06-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-363107.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability was found in SIMATIC WinCC that could allow authenticated attackers to escape the Kiosk Mode.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-330556.pdf</id>
    <title>SSA-330556 V1.0: PwnKit Vulnerability in SCALANCE LPE9403 and SINUMERIK Edge Products (CVE-2021-4034)</title>
    <updated>2022-06-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-330556.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The products listed below contain a local privilege escalation vulnerability (CVE-2021-4034) found on polkit&#8217;s pkexec utility, that could allow an unprivileged user to gain administrative rights.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-324955.pdf</id>
    <title>SSA-324955 V1.8 (Last Update: 2022-06-14): SAD DNS Attack in Linux Based Products</title>
    <updated>2022-06-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-324955.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability made public under the name SAD DNS affects Domain Name System resolvers due to a vulnerability in the Linux kernel when handling ICMP packets. The Siemens products which are affected are listed below. For more information please see &lt;a href="https://www.saddns.net/" class="uri"&gt;https://www.saddns.net/&lt;/a&gt;.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-301589.pdf</id>
    <title>SSA-301589 V1.3 (Last Update: 2022-06-14): Multiple File Parsing Vulnerabilities in Solid Edge, JT2Go and Teamcenter Visualization</title>
    <updated>2022-06-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-301589.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Siemens has released updates for JT2Go, Solid Edge and Teamcenter Visualization to fix multiple file parsing vulnerabilities. If a user is tricked to open a malicious file (crafted as PDF, DXF or PAR) with any of the affected products, this could lead the application to crash or potentially lead to arbitrary code execution.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for some of the affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-254054.pdf</id>
    <title>SSA-254054 V1.2 (Last Update: 2022-06-14): Spring Framework Vulnerability (Spring4Shell or SpringShell, CVE-2022-22965) - Impact to Siemens Products</title>
    <updated>2022-06-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-254054.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in Spring Framework was disclosed, that could allow remote unauthenticated attackers to execute code on vulnerable systems. The vulnerability is tracked as CVE-2022-22965 and is also known as &#8220;Spring4Shell&#8221; or &#8220;SpringShell&#8221;.&lt;/p&gt;
&lt;p&gt;Siemens is currently investigating to determine which products are affected and is continuously updating this advisory as more information becomes available.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-244969.pdf</id>
    <title>SSA-244969 V1.5 (Last Update: 2022-06-14): OpenSSL Vulnerability in Industrial Products</title>
    <updated>2022-06-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-244969.pdf" rel="alternate"/>
    <summary>&lt;p&gt;OpenSSL has published a security advisory [0] about a vulnerability in OpenSSL versions 1.1.1 &amp;lt; 1.1.1l and 1.0.2 &amp;lt; 1.0.2za that allows an attacker to cause a denial of service (DoS) or to disclose private memory content.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
&lt;p&gt;[0] &lt;a href="https://www.openssl.org/news/secadv/20210824.txt" class="uri"&gt;https://www.openssl.org/news/secadv/20210824.txt&lt;/a&gt;&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-222547.pdf</id>
    <title>SSA-222547 V1.0: Third-Party Component Vulnerabilities in SCALANCE LPE9403 before V2.0</title>
    <updated>2022-06-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-222547.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities in the third-party components CivetWeb, Docker, Linux Kernel and systemd could allow an attacker to impact SCALANCE LPE9403 confidentiality, integrity and availability.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for the SCALANCE LPE9403 and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-220589.pdf</id>
    <title>SSA-220589 V1.0: Hard Coded Default Credential Vulnerability in Teamcenter</title>
    <updated>2022-06-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-220589.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Siemens has released updates for Teamcenter that fixes a security vulnerability related to unsecure storage of user credentials. This vulnerability affects Java EE Server Manager HTML Adaptor. This service is not installed by default and currently also obsoleted.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-148078.pdf</id>
    <title>SSA-148078 V1.1 (Last Update: 2022-06-14): Multiple Vulnerabilities in APOGEE/TALON Field Panels</title>
    <updated>2022-06-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-148078.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities in the APOGEE PXC and TALON TC series of products could allow unauthenticated attackers to download sensitive information through the integrated webserver.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens recommends countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-145224.pdf</id>
    <title>SSA-145224 V1.0: Vulnerability in OSPF Packet Handling of SCALANCE XM-400 and XR-500 Devices</title>
    <updated>2022-06-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-145224.pdf" rel="alternate"/>
    <summary>&lt;p&gt;SCALANCE XM-400 and XR-500 devices contain a vulnerability in the OSPF protocol implementation that could allow an unauthenticated remote attacker to cause interruptions in the network.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-102233.pdf</id>
    <title>SSA-102233 V2.0 (Last Update: 2022-06-14): SegmentSmack in VxWorks-based Industrial Devices</title>
    <updated>2022-06-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-102233.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The products listed below contain a vulnerability that could allow remote attackers to affect the availability of the devices under certain conditions. The underlying TCP stack can be forced to make very computation expensive calls for every incoming packet which can lead to a Denial-of-Service.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for the SCALANCE X-200IRT switch family and recommends to update to the latest version. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-162616.pdf</id>
    <title>SSA-162616 V1.0: File Parsing Vulnerabilities in Simcenter Femap before V2022.2</title>
    <updated>2022-05-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-162616.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Siemens Simcenter Femap versions before V2022.2 are affected by an out of bounds write vulnerability that could be triggered when the application reads files in .NEU format. If a user is tricked to open a malicious file with the affected application, an attacker could leverage the vulnerability to perform remote code execution in the context of the current process.&lt;/p&gt;
&lt;p&gt;Siemens recommends to update to the latest version line of Simcenter Femap and to avoid opening of untrusted files from unknown sources.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-165073.pdf</id>
    <title>SSA-165073 V1.0: Multiple Vulnerabilities in the Webinterface of SICAM P850 and SICAM P855 Devices</title>
    <updated>2022-05-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-165073.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities were identified in the webserver of SICAM P850 and SICAM P855 devices. These include unauthenticated access to web-interface functionality, missing HTTPS or impersonation as well as cross-site scripting related vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-285795.pdf</id>
    <title>SSA-285795 V1.0: Denial of Service in OPC-UA in Industrial Products</title>
    <updated>2022-05-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-285795.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Vulnerability in the underlying third party component OPC UA ANSIC Stack (also called Legacy C-Stack) affects several industrial products. The vulnerability could cause a crash of the component that includes the vulnerable part of the stack.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-321292.pdf</id>
    <title>SSA-321292 V1.0: Denial of Service in the OPC Foundation Local Discovery Server (LDS) in Industrial Products</title>
    <updated>2022-05-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-321292.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability has been identified in the OPC Foundation Local Discovery Server (LDS) [0] of several industrial products. The vulnerability could cause a denial of service condition on the service or the device.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
&lt;p&gt;[0] &lt;a href="https://files.opcfoundation.org/SecurityBulletins/OPC%20Foundation%20Security%20Bulletin%20CVE-2021-40142.pdf" class="uri"&gt;https://files.opcfoundation.org/SecurityBulletins/OPC%20Foundation%20Security%20Bulletin%20CVE-2021-40142.pdf&lt;/a&gt;&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-363107.pdf</id>
    <title>SSA-363107 V1.0: An Improper Initialization Vulnerability Affects SIMATIC WinCC Kiosk Mode</title>
    <updated>2022-05-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-363107.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability was found in SIMATIC WinCC that could allow authenticated attackers to escape the Kiosk Mode.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for the SIMATIC WinCC V7.5 and recommends to update to the latest version. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-480937.pdf</id>
    <title>SSA-480937 V1.0: Denial of Service Vulnerability in CP 44x-1 RNA before V1.5.18</title>
    <updated>2022-05-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-480937.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Siemens has released a new version for the communication processor modules CP 44x-1 RNA that fixes a vulnerability that could allow an attacker to cause a denial of service condition.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-553086.pdf</id>
    <title>SSA-553086 V1.0: Multiple File Parsing Vulnerabilities in JT2Go and Teamcenter Visualization</title>
    <updated>2022-05-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-553086.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Siemens has released updates for JT2Go and Teamcenter Visualization to fix multiple file parsing vulnerabilities. If a user is tricked to open a malicious file (crafted as CGM, TIFF or TG4) with any of the affected products, this could lead the application to crash or potentially lead to arbitrary code execution.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for some of the affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-626968.pdf</id>
    <title>SSA-626968 V1.0: Multiple Webserver Vulnerabilities in Desigo PXC and DXR Devices</title>
    <updated>2022-05-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-626968.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Desigo PXC3, PXC4, PXC5 and DXR2 devices contain multiple vulnerabilities in the webserver application that could allow an attacker to potentially intercept unencrypted transmission of sensitive information, cause a denial of service condition, or perform remote code execution.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-662649.pdf</id>
    <title>SSA-662649 V1.0: Denial of Service Vulnerability in Desigo DXR and PXC Controllers</title>
    <updated>2022-05-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-662649.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in Desigo DXR and PXC controllers has been identified that could allow an attacker to disable and reset a device to factory state using a denial of service attack.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-732250.pdf</id>
    <title>SSA-732250 V1.0: Libcurl Vulnerabilities in Industrial Devices</title>
    <updated>2022-05-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-732250.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Vulnerabilities in third-party component cURL could allow an attacker to interfere with the affected products in various ways.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-736385.pdf</id>
    <title>SSA-736385 V1.0: Memory Corruption Vulnerability in OpenV2G</title>
    <updated>2022-05-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-736385.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The open source software OpenV2G contains a buffer overflow vulnerability that could allow an attacker to trigger a memory corruption.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for the OpenV2G and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-789162.pdf</id>
    <title>SSA-789162 V1.0: Vulnerabilities in Teamcenter</title>
    <updated>2022-05-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-789162.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Teamcenter is affected by XML External Entity Injection (XXE, CVE-2022-29801) and a stack based buffer overflow vulnerability (CVE-2022-24290). XXE impacts only Teamcenter versions before V13.1.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-102233.pdf</id>
    <title>SSA-102233 V1.9 (Last Update: 2022-05-10): SegmentSmack in VxWorks-based Industrial Devices</title>
    <updated>2022-05-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-102233.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The products listed below contain a vulnerability that could allow remote attackers to affect the availability of the devices under certain conditions. The underlying TCP stack can be forced to make very computation expensive calls for every incoming packet which can lead to a Denial-of-Service.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for the SCALANCE X-200IRT switch family and recommends to update to the latest version. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-114589.pdf</id>
    <title>SSA-114589 V1.3 (Last Update: 2022-05-10): Multiple Vulnerabilities in Nucleus RTOS based APOGEE, TALON and Desigo PXC/PXM Products</title>
    <updated>2022-05-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-114589.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities (also known as &#8220;NUCLEUS:13&#8221;) have been identified in the Nucleus RTOS (real-time operating system) and reported in the Siemens Security Advisory SSA-044112: &lt;a href="https://cert-portal.siemens.com/productcert/pdf/ssa-044112.pdf" class="uri"&gt;https://cert-portal.siemens.com/productcert/pdf/ssa-044112.pdf&lt;/a&gt;.&lt;/p&gt;
&lt;p&gt;The products listed below use affected versions of the Nucleus software and inherently contain these vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-162506.pdf</id>
    <title>SSA-162506 V1.3 (Last Update: 2022-05-10): DHCP Client Vulnerability in SIMOTICS CONNECT 400, Desigo PXC/PXM, APOGEE MEC/MBC/PXC, APOGEE PXC Series, and TALON TC Series</title>
    <updated>2022-05-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-162506.pdf" rel="alternate"/>
    <summary>&lt;p&gt;SIMOTICS CONNECT 400, Desigo (Power PC-based), APOGEE MEC/MBC/PXC and TALON TC products are affected by a DHCP Client vulnerability as initially reported in &lt;a href="https://cert-portal.siemens.com/productcert/pdf/ssa-434032.pdf"&gt;SSA-434032&lt;/a&gt; for the Mentor Nucleus Networking Module.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-244969.pdf</id>
    <title>SSA-244969 V1.4 (Last Update: 2022-05-10): OpenSSL Vulnerability in Industrial Products</title>
    <updated>2022-05-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-244969.pdf" rel="alternate"/>
    <summary>&lt;p&gt;OpenSSL has published a security advisory [0] about a vulnerability in OpenSSL versions 1.1.1 &amp;lt; 1.1.1l and 1.0.2 &amp;lt; 1.0.2za that allows an attacker to cause a denial of service (DoS) or to disclose private memory content.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
&lt;p&gt;[0] &lt;a href="https://www.openssl.org/news/secadv/20210824.txt" class="uri"&gt;https://www.openssl.org/news/secadv/20210824.txt&lt;/a&gt;&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssb-439005.pdf</id>
    <title>SSB-439005 V4.3 (Last Update: 2022-05-10): Vulnerabilities in the additional GNU/Linux subsystem of the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP</title>
    <updated>2022-05-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssb-439005.pdf" rel="alternate"/>
    <summary>
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-462066.pdf</id>
    <title>SSA-462066 V2.9 (Last Update: 2022-05-10): Vulnerability known as TCP SACK PANIC in Industrial Products</title>
    <updated>2022-05-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-462066.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Multiple industrial products are affected by a vulnerability in the kernel known as TCP SACK PANIC. The vulnerability could allow a remote attacker to cause a denial of service condition.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the new versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-560465.pdf</id>
    <title>SSA-560465 V1.2 (Last Update: 2022-05-10): DHCP Client Vulnerability in VxWorks-based Industrial Products</title>
    <updated>2022-05-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-560465.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Various industry products are affected by a DHCP client vulnerability in Wind River VxWorks, that could allow an attacker to cause a heap-based buffer overflow.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-629512.pdf</id>
    <title>SSA-629512 V1.4 (Last Update: 2022-05-10): Local Privilege Escalation Vulnerability in TIA Portal</title>
    <updated>2022-05-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-629512.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest updates for TIA Portal fix a vulnerability that could allow a local attacker to execute arbitrary code with SYSTEM privileges.&lt;/p&gt;
&lt;p&gt;Update: The previously provided fixes only correctly set the permissions on English Windows versions.&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-661247.pdf</id>
    <title>SSA-661247 V2.8 (Last Update: 2022-05-10): Apache Log4j Vulnerabilities (Log4Shell, CVE-2021-44228, CVE-2021-45046) - Impact to Siemens Products</title>
    <updated>2022-05-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-661247.pdf" rel="alternate"/>
    <summary>&lt;p&gt;On 2021-12-09, a vulnerability in Apache Log4j (a logging tool used in many Java-based applications) was disclosed, that could allow remote unauthenticated attackers to execute code on vulnerable systems. The vulnerability is tracked as CVE-2021-44228 and is also known as &#8220;Log4Shell&#8221;.&lt;/p&gt;
&lt;p&gt;On 2021-12-14 an additional denial of service vulnerability (CVE-2021-45046) was published rendering the initial mitigations and fix in version 2.15.0 as incomplete under certain non-default configurations. Log4j versions 2.16.0 and 2.12.2 are supposed to fix both vulnerabilities.&lt;/p&gt;
&lt;p&gt;On 2021-12-17, CVE-2021-45046 was reclassified with an increased CVSS base score (from 3.7 to 9.0). The potential impact of CVE-2021-45046 now includes - besides denial of service - also information disclosure and local (and potential remote) code execution.&lt;/p&gt;
&lt;p&gt;Siemens is currently investigating to determine which products are affected and is continuously updating this advisory as more information becomes available. See section Additional Information for more details regarding the investigation status.&lt;/p&gt;
&lt;p&gt;Note: two additional vulnerabilities were published for Apache Log4j, the impact of which are documented in SSA-501673: &lt;a href="https://cert-portal.siemens.com/productcert/pdf/ssa-501673.pdf" class="uri"&gt;https://cert-portal.siemens.com/productcert/pdf/ssa-501673.pdf&lt;/a&gt; (CVE-2021-45105) and SSA-784507: &lt;a href="https://cert-portal.siemens.com/productcert/pdf/ssa-784507.pdf" class="uri"&gt;https://cert-portal.siemens.com/productcert/pdf/ssa-784507.pdf&lt;/a&gt; (CVE-2021-44832).&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-678983.pdf</id>
    <title>SSA-678983 V1.4 (Last Update: 2022-05-10): Vulnerabilities in Industrial PCs and CNC devices using Intel CPUs (November 2020)</title>
    <updated>2022-05-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-678983.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Intel has published information on vulnerabilities in Intel products in &lt;a href="https://blogs.intel.com/technology/2020/11/ipas-security-advisories-for-november-2020/"&gt;November 2020&lt;/a&gt;. This advisory lists the Siemens IPC related products, that are affected by these vulnerabilities.&lt;/p&gt;
&lt;p&gt;In this advisory we take a representative CVE from each advisory:&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;&lt;p&gt;&#8220;Intel CSME, SPS, TXE, AMT and DAL Advisory&#8221; Intel-SA-00391 is represented by CVE-2020-8745&lt;/p&gt;&lt;/li&gt;
&lt;li&gt;&lt;p&gt;&#8220;Intel RAPL Interface Advisory&#8221; Intel-SA-00389 is represented by CVE-2020-8694&lt;/p&gt;&lt;/li&gt;
&lt;li&gt;&lt;p&gt;&#8220;Intel Processor Advisory&#8221; Intel-SA-00381 is represented by CVE-2020-8698, and&lt;/p&gt;&lt;/li&gt;
&lt;li&gt;&lt;p&gt;&#8220;BIOS Advisory&#8221; Intel-SA-00358 is represented by CVE-2020-0590.&lt;/p&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;Siemens has released updates for several affected products and is currently working on BIOS updates that include chipset microcode updates for further products.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-756638.pdf</id>
    <title>SSA-756638 V1.1 (Last Update: 2022-05-10): Vulnerabilities in Third-Party Component Mbed TLS of LOGO! CMR Family and SIMATIC RTU 3000 Family</title>
    <updated>2022-05-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-756638.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Devices of the LOGO! CMR family and the SIMATIC RTU 3000 family are affected by several vulnerabilities in the third party component Mbed TLS. They could allow an attacker with access to any of the interfaces of an affected device to impact the availability or to communicate with invalid certificates.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-772220.pdf</id>
    <title>SSA-772220 V1.9 (Last Update: 2022-05-10): OpenSSL Vulnerabilities in Industrial Products</title>
    <updated>2022-05-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-772220.pdf" rel="alternate"/>
    <summary>&lt;p&gt;OpenSSL has published a security advisory [0] about a vulnerability in OpenSSL versions 1.1.1 &amp;lt; 1.1.1k, that allows an unauthenticated attacker to cause a Denial-of-Service (DoS) if a maliciously crafted renegotiation message is sent .&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
&lt;p&gt;[0] &lt;a href="https://www.openssl.org/news/secadv/20210325.txt" class="uri"&gt;https://www.openssl.org/news/secadv/20210325.txt&lt;/a&gt;&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-787292.pdf</id>
    <title>SSA-787292 V1.2 (Last Update: 2022-05-10): Denial of Service Vulnerability in SIMATIC RFID Readers</title>
    <updated>2022-05-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-787292.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest updates for SIMATIC RF products fix a vulnerability that could allow an unauthorized attacker to crash the OPC UA service of the affected devices.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-840188.pdf</id>
    <title>SSA-840188 V1.4 (Last Update: 2022-05-10): Multiple Vulnerabilities in SIMATIC WinCC Affecting Other SIMATIC Software Products</title>
    <updated>2022-05-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-840188.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities were found in SIMATIC WinCC that ultimately could allow local or remote attackers to escalate privileges and read, write or delete critical files.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
&lt;p&gt;Note: The vulnerability CVE-2021-40359 is part of a shared component, used by various Siemens products (SIMATIC Communication Services - SCS). The installation of a fix version of any product also removes the vulnerability for other products on the same system, even if those products were not updated.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-914168.pdf</id>
    <title>SSA-914168 V1.2 (Last Update: 2022-05-10): Multiple Vulnerabilities in SIMATIC WinCC Affecting Other SIMATIC Software Products</title>
    <updated>2022-05-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-914168.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities were found in SIMATIC WinCC that ultimately could allow attackers to retrieve and brute force password hashes and access other systems.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-254054.pdf</id>
    <title>SSA-254054 V1.1 (Last Update: 2022-04-27): Spring Framework Vulnerability (Spring4Shell or SpringShell, CVE-2022-22965) - Impact to Siemens Products</title>
    <updated>2022-04-27T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-254054.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in Spring Framework was disclosed, that could allow remote unauthenticated attackers to execute code on vulnerable systems. The vulnerability is tracked as CVE-2022-22965 and is also known as &#8220;Spring4Shell&#8221; or &#8220;SpringShell&#8221;.&lt;/p&gt;
&lt;p&gt;Siemens is currently investigating to determine which products are affected and is continuously updating this advisory as more information becomes available.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-254054.pdf</id>
    <title>SSA-254054 V1.0: Spring Framework Vulnerability (Spring4Shell or SpringShell, CVE-2022-22965) - Impact to Siemens Products</title>
    <updated>2022-04-19T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-254054.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in Spring Framework was disclosed, that could allow remote unauthenticated attackers to execute code on vulnerable systems. The vulnerability is tracked as CVE-2022-22965 and is also known as &#8220;Spring4Shell&#8221; or &#8220;SpringShell&#8221;.&lt;/p&gt;
&lt;p&gt;Siemens is currently investigating to determine which products are affected and is continuously updating this advisory as more information becomes available.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-316850.pdf</id>
    <title>SSA-316850 V1.0: Unauthenticated File Access in SICAM A8000 Devices</title>
    <updated>2022-04-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-316850.pdf" rel="alternate"/>
    <summary>&lt;p&gt;SICAM A8000 CP-8050 and CP-8031 devices contain vulnerabilities that could allow an attacker to access files without authentication.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-350757.pdf</id>
    <title>SSA-350757 V1.0: Improper Access Control Vulnerability in TIA Portal Affecting S7-1200 and S7-1500 CPUs Web Server (Incl. Related ET200 CPUs and SIPLUS variants)</title>
    <updated>2022-04-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-350757.pdf" rel="alternate"/>
    <summary>&lt;p&gt;An attacker could achieve privilege escalation on the web server of certain devices configured by SIMATIC STEP 7 (TIA Portal) due to incorrect handling of the webserver&#8217;s user management configuration during downloading. This only affects the S7-1200 and S7-1500 CPUs&#8217; (incl.&#160;related ET200 CPUs and SIPLUS variants) web server, when activated.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-392912.pdf</id>
    <title>SSA-392912 V1.0: Multiple Denial Of Service Vulnerabilities in SCALANCE W1700 Devices</title>
    <updated>2022-04-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-392912.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Vulnerabilities have been identified in devices of the SCALANCE W-1700 (11ac) family that could allow an attacker to cause various denial of service conditions.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-414513.pdf</id>
    <title>SSA-414513 V1.0: Information Disclosure Vulnerability in Mendix</title>
    <updated>2022-04-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-414513.pdf" rel="alternate"/>
    <summary>&lt;p&gt;An information disclosure vulnerability in Mendix applications was discovered. The vulnerability could allow to read sensitive data.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for the Mendix Applications using Mendix 9 and recommends to update to the latest version. Siemens recommends countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-446448.pdf</id>
    <title>SSA-446448 V1.0: Denial of Service Vulnerability in PROFINET Stack Integrated on Interniche Stack</title>
    <updated>2022-04-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-446448.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The PROFINET (PNIO) stack, when integrated with the Interniche IP stack, contains a vulnerability that could allow an attacker to cause a denial of service condition on affected industrial products.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-557541.pdf</id>
    <title>SSA-557541 V1.0: Denial-of-Service Vulnerability in SIMATIC S7-400 CPUs</title>
    <updated>2022-04-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-557541.pdf" rel="alternate"/>
    <summary>&lt;p&gt;SIMATIC S7-400 CPU devices contain an input validation vulnerability that could allow an attacker to create a Denial-of-Service condition. A restart is needed to restore normal operations.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for SIMATIC S7-410 V10 CPU family and SIMATIC S7-400 H V6 CPU family (incl.&#160;SIPLUS variants for both) and recommends to update to the latest version. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-655554.pdf</id>
    <title>SSA-655554 V1.0: Multiple Vulnerabilities in SIMATIC Energy Manager before V7.3 Update 1</title>
    <updated>2022-04-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-655554.pdf" rel="alternate"/>
    <summary>&lt;p&gt;SIMATIC Energy Manager is affected by multiple vulnerabilities that could allow an attacker to gain local privilege escalation, local code execution or remote code execution.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-711829.pdf</id>
    <title>SSA-711829 V1.0: Denial of Service Vulnerability in TIA Administrator</title>
    <updated>2022-04-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-711829.pdf" rel="alternate"/>
    <summary>&lt;p&gt;In conjunction with the installation of the affected products listed in the table below, a vulnerability in TIA Administrator occurs that could allow an unauthenticated attacker to perform a denial of service attack.&lt;/p&gt;
&lt;p&gt;Siemens has released a first update for one of the affected products and recommends to update to the latest version. Siemens is preparing further updates and recommends specific countermeasures.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-836527.pdf</id>
    <title>SSA-836527 V1.0: Multiple Vulnerabilities in SCALANCE X-300 Switch Family Devices</title>
    <updated>2022-04-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-836527.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Several SCALANCE X-300 switches contain multiple vulnerabilities. An unauthenticated attacker could reboot, cause denial of service conditions and potentially impact the system by other means through heap and buffer overflow vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-870917.pdf</id>
    <title>SSA-870917 V1.0: Improper Access Control Vulnerability in Mendix</title>
    <updated>2022-04-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-870917.pdf" rel="alternate"/>
    <summary>&lt;p&gt;When querying the database, it is possible to sort the results using a protected field. With this an authenticated attacker could extract information about the contents of a protected field.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-998762.pdf</id>
    <title>SSA-998762 V1.0: File Parsing Vulnerabilities in Simcenter Femap before V2022.1.2</title>
    <updated>2022-04-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-998762.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Siemens Simcenter Femap versions before V2022.1.2 are affected by vulnerabilities that could be triggered when the application reads files in .NEU format. If a user is tricked to open a malicious file with the affected application, an attacker could leverage the vulnerability to leak information or potentially perform remote code execution in the context of the current process.&lt;/p&gt;
&lt;p&gt;Siemens recommends to update to the latest version line of Simcenter Femap and to avoid opening of untrusted files from unknown sources.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-102233.pdf</id>
    <title>SSA-102233 V1.8 (Last Update: 2022-04-12): SegmentSmack in VxWorks-based Industrial Devices</title>
    <updated>2022-04-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-102233.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The products listed below contain a vulnerability that could allow remote attackers to affect the availability of the devices under certain conditions. The underlying TCP stack can be forced to make very computation expensive calls for every incoming packet which can lead to a Denial-of-Service.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for the SCALANCE X-200IRT switch family and recommends to update to the latest version. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-114589.pdf</id>
    <title>SSA-114589 V1.2 (Last Update: 2022-04-12): Multiple Vulnerabilities in Nucleus RTOS based APOGEE, TALON and Desigo PXC/PXM Products</title>
    <updated>2022-04-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-114589.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities (also known as &#8220;NUCLEUS:13&#8221;) have be identified in the Nucleus RTOS (real-time operating system) and reported in the Siemens Security Advisory SSA-044112: &lt;a href="https://cert-portal.siemens.com/productcert/pdf/ssa-044112.pdf" class="uri"&gt;https://cert-portal.siemens.com/productcert/pdf/ssa-044112.pdf&lt;/a&gt;.&lt;/p&gt;
&lt;p&gt;The products listed below use affected versions of the Nucleus software and inherently contain these vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens recommends countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-148641.pdf</id>
    <title>SSA-148641 V1.1 (Last Update: 2022-04-12): XPath Constraint Vulnerability in Mendix Runtime</title>
    <updated>2022-04-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-148641.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A XPath Constraint vulnerability in the Mendix Runtime was discovered, that can affect the running applications. The vulnerability could allow a malicious user to deduce contents of inaccessible attributes and modify sensitive data.&lt;/p&gt;
&lt;p&gt;Mendix has released updates for the affected product lines, recommends to update to the latest versions and to redeploy the applications.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-162506.pdf</id>
    <title>SSA-162506 V1.2 (Last Update: 2022-04-12): DHCP Client Vulnerability in SIMOTICS CONNECT 400, Desigo PXC/PXM, APOGEE MEC/MBC/PXC, APOGEE PXC Series, and TALON TC Series</title>
    <updated>2022-04-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-162506.pdf" rel="alternate"/>
    <summary>&lt;p&gt;SIMOTICS CONNECT 400, Desigo (Power PC-based), APOGEE MEC/MBC/PXC and TALON TC products are affected by a DHCP Client vulnerability as initially reported in &lt;a href="https://cert-portal.siemens.com/productcert/pdf/ssa-434032.pdf"&gt;SSA-434032&lt;/a&gt; for the Mentor Nucleus Networking Module.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens recommends countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-244969.pdf</id>
    <title>SSA-244969 V1.3 (Last Update: 2022-04-12): OpenSSL Vulnerability in Industrial Products</title>
    <updated>2022-04-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-244969.pdf" rel="alternate"/>
    <summary>&lt;p&gt;OpenSSL has published a security advisory [0] about a vulnerability in OpenSSL versions 1.1.1 &amp;lt; 1.1.1l and 1.0.2 &amp;lt; 1.0.2za that allows an attacker to cause a denial of service (DoS) or to disclose private memory content.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
&lt;p&gt;[0] &lt;a href="https://www.openssl.org/news/secadv/20210824.txt" class="uri"&gt;https://www.openssl.org/news/secadv/20210824.txt&lt;/a&gt;&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-256353.pdf</id>
    <title>SSA-256353 V1.2 (Last Update: 2022-04-12): Third-Party Component Vulnerabilities in RUGGEDCOM ROS</title>
    <updated>2022-04-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-256353.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities affect various third-party components of the RUGGEDCOM ROS, and a cross-site scripting exploit. If exploited, an attacker could cause a denial-of-service, act as a man-in-the-middle or retrieval of sensitive information or gain privileged functions.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-270778.pdf</id>
    <title>SSA-270778 V1.7 (Last Update: 2022-04-12): Denial-of-Service Vulnerability in SIMATIC PCS 7, SIMATIC WinCC and SIMATIC NET PC Software</title>
    <updated>2022-04-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-270778.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A Denial-of-Service vulnerability was found in SIMATIC PCS 7, SIMATIC WinCC and SIMATIC NET PC software when encrypted communication is enabled. The vulnerability could allow an attacker with network access to cause a Denial-of-Service condition under certain circumstances (versions prior to SIMATIC WinCC V7.3 or SIMATIC PCS 7 V8.1 are not affected as encrypted communication is not an option).&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
&lt;p&gt;Note: The vulnerability is part of a shared component, used by various Siemens products (SIMATIC Communication Services - SCS). The installation of a fix version of any product also removes the vulnerability for other products on the same system, even if those products were not updated.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-273799.pdf</id>
    <title>SSA-273799 V1.3 (Last Update: 2022-04-12): Message Integrity Protection Bypass Vulnerability in SIMATIC Products</title>
    <updated>2022-04-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-273799.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A message integrity protection bypass vulnerability has been identified in several SIMATIC products. The vulnerability could allow an attacker in a Man-in-the-Middle position to modify network traffic exchanged on port 102/tcp to PLCs of the SIMATIC S7-1200, SIMATIC S7-1500 and SIMATIC SoftwareController CPU families.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens recommends countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-301589.pdf</id>
    <title>SSA-301589 V1.2 (Last Update: 2022-04-12): Multiple File Parsing Vulnerabilities in Solid Edge, JT2Go and Teamcenter Visualization</title>
    <updated>2022-04-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-301589.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Siemens has released updates for JT2Go, Solid Edge and Teamcenter Visualization to fix multiple file parsing vulnerabilities. If a user is tricked to open a malicious file (crafted as PDF, DXF or PAR) with any of the affected products, this could lead the application to crash or potentially lead to arbitrary code execution.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for some of the affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-307392.pdf</id>
    <title>SSA-307392 V1.8 (Last Update: 2022-04-12): Denial of Service in OPC UA in Industrial Products</title>
    <updated>2022-04-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-307392.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability has been identified in the OPC UA server of several industrial products. The vulnerability could cause a denial of service condition on the service or the device.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-309571.pdf</id>
    <title>SSA-309571 V1.3 (Last Update: 2022-04-12): IPU 2021.1 Vulnerabilities in Siemens Industrial Products using Intel CPUs (June 2021)</title>
    <updated>2022-04-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-309571.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Intel has published information on vulnerabilities in Intel products in &lt;a href="https://blogs.intel.com/technology/2021/06/intel-security-advisories-for-june-2021/"&gt;June 2021&lt;/a&gt;. This advisory lists the related Siemens Industrial products affected by these vulnerabilities that can be patched by applying the corresponding BIOS update.&lt;/p&gt;
&lt;p&gt;In this advisory we summarize:&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;&lt;p&gt;&#8220;2021.1 IPU &#8211; Intel&#174; CSME, SPS and LMS Advisory&#8221; Intel-SA-00459,&lt;/p&gt;&lt;/li&gt;
&lt;li&gt;&lt;p&gt;&#8220;2021.1 IPU &#8211; BIOS Advisory&#8221; Intel-SA-00463,&lt;/p&gt;&lt;/li&gt;
&lt;li&gt;&lt;p&gt;&#8220;2021.1 IPU &#8211; Intel&#174; Processor Advisory&#8221; Intel-SA-00464, and&lt;/p&gt;&lt;/li&gt;
&lt;li&gt;&lt;p&gt;&#8220;2021.1 IPU - Intel Atom&#174; Processor Advisory&#8221; Intel-SA-00465.&lt;/p&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;Siemens has released updates for several affected products and is currently working on BIOS updates that include chipset microcode updates for further products.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-312271.pdf</id>
    <title>SSA-312271 V2.0 (Last Update: 2022-04-12): Unquoted Search Path Vulnerabilities in Windows-based Industrial Software Applications</title>
    <updated>2022-04-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-312271.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Several industrial products as listed below contain a local privilege escalation vulnerabilities that could allow authorized local users with administrative privileges to execute custom code with SYSTEM level privileges.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-348629.pdf</id>
    <title>SSA-348629 V1.9 (Last Update: 2022-04-12): Denial-of-Service Vulnerability in SIMATIC PCS 7, SIMATIC WinCC, SIMATIC WinCC Runtime Professional and SIMATIC NET PC Software</title>
    <updated>2022-04-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-348629.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A Denial-of-Service vulnerability has been identified in SIMATIC PCS 7, SIMATIC WinCC, SIMATIC WinCC Runtime Professional and SIMATIC NET PC-Software.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssb-439005.pdf</id>
    <title>SSB-439005 V4.2 (Last Update: 2022-04-12): Vulnerabilities in the additional GNU/Linux subsystem of the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP</title>
    <updated>2022-04-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssb-439005.pdf" rel="alternate"/>
    <summary>
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-462066.pdf</id>
    <title>SSA-462066 V2.8 (Last Update: 2022-04-12): Vulnerability known as TCP SACK PANIC in Industrial Products</title>
    <updated>2022-04-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-462066.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Multiple industrial products are affected by a vulnerability in the kernel known as TCP SACK PANIC. The vulnerability could allow a remote attacker to cause a denial of service condition.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the new versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-535640.pdf</id>
    <title>SSA-535640 V1.5 (Last Update: 2022-04-12): Vulnerability in Industrial Products</title>
    <updated>2022-04-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-535640.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Various industrial products use the Discovery Service of the OPC UA protocol stack by the OPC foundation &lt;a href="https://github.com/OPCFoundation/UA-.NETStandard" class="uri"&gt;https://github.com/OPCFoundation/UA-.NETStandard&lt;/a&gt; and could therefore be affected by the remote resource consumption attacks (CVE-2017-12069).&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-539476.pdf</id>
    <title>SSA-539476 V1.1 (Last Update: 2022-04-12): Siemens SIMATIC NET CP, SINEMA and SCALANCE Products Affected by Vulnerabilities in Third-Party Component strongSwan</title>
    <updated>2022-04-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-539476.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Vulnerabilities in the third-party component strongSwan could allow an attacker to cause a denial of service (DoS) condition in affected devices by exploiting integer overflow bugs.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-560465.pdf</id>
    <title>SSA-560465 V1.1 (Last Update: 2022-04-12): DHCP Client Vulnerability in VxWorks-based Industrial Products</title>
    <updated>2022-04-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-560465.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Various industry products are affected by a DHCP client vulnerability in Wind River VxWorks, that could allow an attacker to cause a heap-based buffer overflow.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-562051.pdf</id>
    <title>SSA-562051 V1.1 (Last Update: 2022-04-12): Cross-Site Scripting Vulnerability in Polarion ALM</title>
    <updated>2022-04-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-562051.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The Subversion Webclient in Polarion ALM contains a cross-site scripting vulnerability, that could be triggered by an attacker by sending crafted links to an administrator user of Polarion ALM.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for the Subversion Webclient in Polarion ALM and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-593272.pdf</id>
    <title>SSA-593272 V1.6 (Last Update: 2022-04-12): SegmentSmack in Interniche IP-Stack based Industrial Devices</title>
    <updated>2022-04-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-593272.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability exists in affected products that could allow remote attackers to affect the availability of the devices under certain conditions.&lt;/p&gt;
&lt;p&gt;The underlying TCP stack can be forced to make very computation expensive calls for every incoming packet which can lead to a Denial-of-Service.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-599968.pdf</id>
    <title>SSA-599968 V1.5 (Last Update: 2022-04-12): Denial-of-Service Vulnerability in Profinet Devices</title>
    <updated>2022-04-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-599968.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in affected devices could allow an attacker to perform a denial-of-service attack if a large amount of Profinet Discovery and Configuration Protocol (DCP) reset packets is sent to the affected devices.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-661247.pdf</id>
    <title>SSA-661247 V2.7 (Last Update: 2022-04-12): Apache Log4j Vulnerabilities (Log4Shell, CVE-2021-44228, CVE-2021-45046) - Impact to Siemens Products</title>
    <updated>2022-04-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-661247.pdf" rel="alternate"/>
    <summary>&lt;p&gt;On 2021-12-09, a vulnerability in Apache Log4j (a logging tool used in many Java-based applications) was disclosed, that could allow remote unauthenticated attackers to execute code on vulnerable systems. The vulnerability is tracked as CVE-2021-44228 and is also known as &#8220;Log4Shell&#8221;.&lt;/p&gt;
&lt;p&gt;On 2021-12-14 an additional denial of service vulnerability (CVE-2021-45046) was published rendering the initial mitigations and fix in version 2.15.0 as incomplete under certain non-default configurations. Log4j versions 2.16.0 and 2.12.2 are supposed to fix both vulnerabilities.&lt;/p&gt;
&lt;p&gt;On 2021-12-17, CVE-2021-45046 was reclassified with an increased CVSS base score (from 3.7 to 9.0). The potential impact of CVE-2021-45046 now includes - besides denial of service - also information disclosure and local (and potential remote) code execution.&lt;/p&gt;
&lt;p&gt;Siemens is currently investigating to determine which products are affected and is continuously updating this advisory as more information becomes available. See section Additional Information for more details regarding the investigation status.&lt;/p&gt;
&lt;p&gt;Note: two additional vulnerabilities were published for Apache Log4j, the impact of which are documented in SSA-501673: &lt;a href="https://cert-portal.siemens.com/productcert/pdf/ssa-501673.pdf" class="uri"&gt;https://cert-portal.siemens.com/productcert/pdf/ssa-501673.pdf&lt;/a&gt; (CVE-2021-45105) and SSA-784507: &lt;a href="https://cert-portal.siemens.com/productcert/pdf/ssa-784507.pdf" class="uri"&gt;https://cert-portal.siemens.com/productcert/pdf/ssa-784507.pdf&lt;/a&gt; (CVE-2021-44832).&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-672373.pdf</id>
    <title>SSA-672373 V1.2 (Last Update: 2022-04-12): Vulnerabilities in CP 1543-1 before V2.0.28</title>
    <updated>2022-04-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-672373.pdf" rel="alternate"/>
    <summary>&lt;p&gt;SIMATIC CP 1543-1 devices before V2.0.28 contain two vulnerabilities that could allow authorized users to escalate their privileges on the CP or create a denial of service condition.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-676336.pdf</id>
    <title>SSA-676336 V1.1 (Last Update: 2022-04-12): OpenSSH Vulnerabilities in SCALANCE X-200 and X-300/X408 Switches</title>
    <updated>2022-04-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-676336.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest update of the SCALANCE X-200 and X-300/X408 switches families fixes multiple OpenSSH vulnerabilities. The most severe of these vulnerabilities could allow a denial of service condition.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-764417.pdf</id>
    <title>SSA-764417 V1.2 (Last Update: 2022-04-12): Multiple Vulnerabilities in RUGGEDCOM Devices</title>
    <updated>2022-04-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-764417.pdf" rel="alternate"/>
    <summary>&lt;p&gt;There is an insecure cryptographic vulnerability for the affected RUGGEDCOM devices. If an attacker were to exploit this, they could gain privileged functions.&lt;/p&gt;
&lt;p&gt;Siemens recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-772220.pdf</id>
    <title>SSA-772220 V1.8 (Last Update: 2022-04-12): OpenSSL Vulnerabilities in Industrial Products</title>
    <updated>2022-04-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-772220.pdf" rel="alternate"/>
    <summary>&lt;p&gt;OpenSSL has published a security advisory [0] about a vulnerability in OpenSSL versions 1.1.1 &amp;lt; 1.1.1k, that allows an unauthenticated attacker to cause a Denial-of-Service (DoS) if a maliciously crafted renegotiation message is sent .&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
&lt;p&gt;[0] &lt;a href="https://www.openssl.org/news/secadv/20210325.txt" class="uri"&gt;https://www.openssl.org/news/secadv/20210325.txt&lt;/a&gt;&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-780073.pdf</id>
    <title>SSA-780073 V2.1 (Last Update: 2022-04-12): Denial of Service Vulnerability in PROFINET Devices via DCE-RPC Packets</title>
    <updated>2022-04-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-780073.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Products that include the Siemens PROFINET-IO (PNIO) stack in versions prior V06.00 are potentially affected by a denial of service vulnerability when multiple legitimate diagnostic package requests are sent to the DCE-RPC interface.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the new versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
&lt;p&gt;Additionally, Siemens recommends other vendors of PROFINET devices to check if their products have incorporated a vulnerable version of the Siemens PNIO stack as part of the Siemens Development/Evaluation Kits.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-787292.pdf</id>
    <title>SSA-787292 V1.1 (Last Update: 2022-04-12): Denial-of-Service Vulnerability in SIMATIC RFID Readers</title>
    <updated>2022-04-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-787292.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest updates for SIMATIC RF products fix a vulnerability that could allow an unauthorized attacker to crash the OPC UA service of the affected devices.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-840188.pdf</id>
    <title>SSA-840188 V1.3 (Last Update: 2022-04-12): Multiple Vulnerabilities in SIMATIC WinCC Affecting Other SIMATIC Software Products</title>
    <updated>2022-04-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-840188.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities were found in SIMATIC WinCC that ultimately could allow local or remote attackers to escalate privileges and read, write or delete critical files.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
&lt;p&gt;Note: The vulnerability CVE-2021-40359 is part of a shared component, used by various Siemens products (SIMATIC Communication Services - SCS). The installation of a fix version of any product also removes the vulnerability for other products on the same system, even if those products were not updated.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-913875.pdf</id>
    <title>SSA-913875 V1.3 (Last Update: 2022-04-12): Frame Aggregation and Fragmentation Vulnerabilities in 802.11</title>
    <updated>2022-04-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-913875.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Twelve vulnerabilities in the implementation of frame aggregation and fragmentation of the 802.11 standard, under the name of &lt;a href="https://www.fragattacks.com/"&gt;FragAttacks&lt;/a&gt;, have been published.&lt;/p&gt;
&lt;p&gt;Successful exploitation of these vulnerabilities could allow an attacker within Wi-Fi range to forge encrypted frames, which could result in sensitive data disclosure and possibly traffic manipulation.&lt;/p&gt;
&lt;p&gt;The advised Siemens products are only affected by some of the published vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-914168.pdf</id>
    <title>SSA-914168 V1.1 (Last Update: 2022-04-12): Multiple Vulnerabilities in SIMATIC WinCC Affecting Other SIMATIC Software Products</title>
    <updated>2022-04-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-914168.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities were found in SIMATIC WinCC that ultimately could allow attackers to retrieve and brute force password hashes and access other systems.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-978220.pdf</id>
    <title>SSA-978220 V1.6 (Last Update: 2022-04-12): Denial of Service Vulnerability over SNMP in Multiple Industrial Products</title>
    <updated>2022-04-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-978220.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Several industrial products are affected by a vulnerability that could allow remote attackers to conduct a denial of service attack by sending specially crafted packets to port 161/udp (SNMP).&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the new versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-995338.pdf</id>
    <title>SSA-995338 V1.2 (Last Update: 2022-04-12): Multiple Vulnerabilities in COMOS Web</title>
    <updated>2022-04-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-995338.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities were identified in the web components of COMOS that could allow an attacker to conduct code injections, store data in undesired locations, execute arbitrary SQL statements, and run cross-site request forgery attacks.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-593272.pdf</id>
    <title>SSA-593272 V1.5 (Last Update: 2022-03-28): SegmentSmack in Interniche IP-Stack based Industrial Devices</title>
    <updated>2022-03-28T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-593272.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability exists in affected products that could allow remote attackers to affect the availability of the devices under certain conditions.&lt;/p&gt;
&lt;p&gt;The underlying TCP stack can be forced to make very computation expensive calls for every incoming packet which can lead to a Denial-of-Service.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-256353.pdf</id>
    <title>SSA-256353 V1.1 (Last Update: 2022-03-11): Third-Party Component Vulnerabilities in RUGGEDCOM ROS</title>
    <updated>2022-03-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-256353.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities affect various third-party components of the RUGGEDCOM ROS, and a cross-site scripting exploit. If exploited, an attacker could cause a denial-of-service, act as a man-in-the-middle or retrieval of sensitive information or gain privileged functions.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-593272.pdf</id>
    <title>SSA-593272 V1.4 (Last Update: 2022-03-11): SegmentSmack in Interniche IP-Stack based Industrial Devices</title>
    <updated>2022-03-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-593272.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability exists in affected products that could allow remote attackers to affect the availability of the devices under certain conditions.&lt;/p&gt;
&lt;p&gt;The underlying TCP stack can be forced to make very computation expensive calls for every incoming packet which can lead to a Denial-of-Service.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-764417.pdf</id>
    <title>SSA-764417 V1.1 (Last Update: 2022-03-11): Multiple Vulnerabilities in RUGGEDCOM Devices</title>
    <updated>2022-03-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-764417.pdf" rel="alternate"/>
    <summary>&lt;p&gt;There is an insecure cryptographic vulnerability for the affected RUGGEDCOM devices. If an attacker were to exploit this, they could gain privileged functions.&lt;/p&gt;
&lt;p&gt;Siemens recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-134279.pdf</id>
    <title>SSA-134279 V1.0: Vulnerability in Mendix Forgot Password Appstore module</title>
    <updated>2022-03-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-134279.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Mendix Forgot Password Appstore module contains two vulnerabilities that could allow unauthorized users to take over accounts.&lt;/p&gt;
&lt;p&gt;Mendix has released an update for the Mendix Forgot Password Appstore module and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-148641.pdf</id>
    <title>SSA-148641 V1.0: XPath Constraint Vulnerability in Mendix Runtime</title>
    <updated>2022-03-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-148641.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A XPath Constraint vulnerability in the Mendix Studio Pro was discovered, that can affect the running applications. The vulnerability, if acted upon by a malicious user, could allow them the ability to dump and modify sensitive data.&lt;/p&gt;
&lt;p&gt;Mendix has released updates for the affected product lines, recommends to update to the latest versions and to redeploy the applications.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-155599.pdf</id>
    <title>SSA-155599 V1.0: File Parsing Vulnerabilities in COMOS</title>
    <updated>2022-03-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-155599.pdf" rel="alternate"/>
    <summary>&lt;p&gt;COMOS uses Drawings SDK from Open Design Alliance that is affected by multiple vulnerabilities that could be triggered when the application reads files in DGN, DXF or DWG file formats. If a user is tricked to open a malicious file with the affected application, an attacker could leverage the vulnerability to leak information or potentially perform remote code execution in the context of the current process.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for the COMOS and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-166747.pdf</id>
    <title>SSA-166747 V1.0: Scene File Parsing Vulnerability in Simcenter STAR-CCM+ Viewer before V2022.1</title>
    <updated>2022-03-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-166747.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Siemens Simcenter STAR-CCM+ Viewer is affected by a memory corruption vulnerability that could be triggered when the application reads scene (.sce) files. If a user is tricked to open a malicious file with the affected application, this could lead to a crash, and potentially also to arbitrary code execution or data extraction on the target host system.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for Simcenter STAR-CCM+ Viewer and recommends to update to the latest version to fix the vulnerability. Siemens recommends to avoid opening of untrusted files from unknown sources.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-223353.pdf</id>
    <title>SSA-223353 V1.0: Multiple Vulnerabilities in Nucleus RTOS based SIMOTICS CONNECT 400</title>
    <updated>2022-03-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-223353.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities (also known as &#8220;NUCLEUS:13&#8221;) have been identified in the Nucleus RTOS (real-time operating system), originally reported in the Siemens Security Advisory SSA-044112: &lt;a href="https://cert-portal.siemens.com/productcert/pdf/ssa-044112.pdf" class="uri"&gt;https://cert-portal.siemens.com/productcert/pdf/ssa-044112.pdf&lt;/a&gt;.&lt;/p&gt;
&lt;p&gt;SIMOTICS CONNECT 400 devices are affected by some of the vulnerabilities as documented below.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for the SIMOTICS CONNECT 400 and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-250085.pdf</id>
    <title>SSA-250085 V1.0: Multiple Vulnerabilities in SINEC NMS</title>
    <updated>2022-03-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-250085.pdf" rel="alternate"/>
    <summary>&lt;p&gt;SINEC NMS contains multiple vulnerabilities that could allow an attacker to execute arbitrary code on the system, arbitrary commands on the local database or achieve privilege escalation.&lt;/p&gt;
&lt;p&gt;Siemens recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-252466.pdf</id>
    <title>SSA-252466 V1.0: Multiple Vulnerabilities in Climatix POL909 (AWM and AWB)</title>
    <updated>2022-03-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-252466.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities have been identified in the Climatix POL909 (AWM and AWB) that could allow an unauthenticated attacker to hijack and redirect users to a malicious webpage, or allow an authenticated attacker to access sensitive files.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for the Climatix POL909 (AWM and AWB) and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-256353.pdf</id>
    <title>SSA-256353 V1.0: Third-Party Component Vulnerabilities in RUGGEDCOM ROS</title>
    <updated>2022-03-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-256353.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities affect various third-party components of the RUGGEDCOM ROS, and a cross-site scripting exploit. If exploited, an attacker could cause a denial-of-service, act as a man-in-the-middle or retrieval of sensitive information or gain privileged functions.&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-337210.pdf</id>
    <title>SSA-337210 V1.0: Privilege Escalation Vulnerability in SINUMERIK MC</title>
    <updated>2022-03-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-337210.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The NC plug-in card in SINUMERIK MC contains a privilege escalation vulnerability that could allow local attackers to escalate their privileges to root. This allows full access to the device, including read and modifying G code.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-389290.pdf</id>
    <title>SSA-389290 V1.0: Third-Party Component Vulnerabilities in SINEC INS</title>
    <updated>2022-03-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-389290.pdf" rel="alternate"/>
    <summary>&lt;p&gt;71 vulnerabilities in third-party components as Node.js, cURL, SQLite, CivetWeb and DNS(ISC BIND) could allow an attacker to interfere with the affected product in various ways.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for SINEC INS and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-406691.pdf</id>
    <title>SSA-406691 V1.0: Buffer Vulnerabilities in DHCP function of RUGGEDCOM ROX products</title>
    <updated>2022-03-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-406691.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in the RUGGEDCOM ROX devices&#8217; third party component, ISC DHCP, could allow an attacker to cause a buffer overrun due to a bug when reading a stored DHCP lease containing certain option information, eventually leading to a denial-of-service condition, or cause a remote-code execution.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-415938.pdf</id>
    <title>SSA-415938 V1.0: Improper Access Control Vulnerability in Mendix</title>
    <updated>2022-03-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-415938.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in Mendix Studio Pro was discovered, that, if acted upon by a malicious user, could allow to retrieve the status of a job run by another user in certain cases.&lt;/p&gt;
&lt;p&gt;Mendix has released updates for the affected product lines, recommends to update to the latest versions and to redeploy the applications.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-562051.pdf</id>
    <title>SSA-562051 V1.0: Cross-Site Scripting Vulnerability in Polarion ALM</title>
    <updated>2022-03-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-562051.pdf" rel="alternate"/>
    <summary>&lt;p&gt;An attacker could trigger malicious actions via a cross-site scripting vulnerability by sending crafted links to an administrator user of Polarion ALM.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for the Polarion Subversion Webclient and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-594438.pdf</id>
    <title>SSA-594438 V1.0: Remote Code Execution and Denial-of-Service Vulnerability in multiple RUGGEDCOM ROX products</title>
    <updated>2022-03-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-594438.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in the RUGGEDCOM ROX devices&#8217; third party component, NSS, could allow an attacker to remotely execute code or cause a denial-of-service condition due to the way it verifies security certificates.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-764417.pdf</id>
    <title>SSA-764417 V1.0: Multiple Vulnerabilities in RUGGEDCOM Devices</title>
    <updated>2022-03-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-764417.pdf" rel="alternate"/>
    <summary>&lt;p&gt;There is an insecure cryptographic vulnerability for the affected RUGGEDCOM devices. If an attacker were to exploit this, they could gain privileged functions.&lt;/p&gt;
&lt;p&gt;&lt;strong&gt;See auto-generated summary suggestion from build&lt;/strong&gt;&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-244969.pdf</id>
    <title>SSA-244969 V1.2 (Last Update: 2022-03-08): OpenSSL Vulnerability in Industrial Products</title>
    <updated>2022-03-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-244969.pdf" rel="alternate"/>
    <summary>&lt;p&gt;OpenSSL has published a security advisory [0] about a vulnerability in OpenSSL versions 1.1.1 &amp;lt; 1.1.1l and 1.0.2 &amp;lt; 1.0.2za that allows an attacker to cause a denial of service (DoS) or to disclose private memory content.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
&lt;p&gt;[0] &lt;a href="https://www.openssl.org/news/secadv/20210824.txt" class="uri"&gt;https://www.openssl.org/news/secadv/20210824.txt&lt;/a&gt;&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-301589.pdf</id>
    <title>SSA-301589 V1.1 (Last Update: 2022-03-08): Multiple File Parsing Vulnerabilities in Solid Edge, JT2Go and Teamcenter Visualization</title>
    <updated>2022-03-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-301589.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Siemens has released updates for Solid Edge and Teamcenter Visualization to fix multiple file parsing vulnerabilities. If a user is tricked to open a malicious file (crafted as PDF, DXF or PAR) with any of the affected products, this could lead the application to crash or potentially lead to arbitrary code execution.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for some of the affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-306654.pdf</id>
    <title>SSA-306654 V1.1 (Last Update: 2022-03-08): Insyde BIOS Vulnerabilities in Siemens Industrial Products</title>
    <updated>2022-03-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-306654.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Insyde has published information on vulnerabilities in Insyde BIOS in &lt;a href="https://www.insyde.com/security-pledge"&gt;February 2022&lt;/a&gt;. This advisory lists the Siemens Industrial products affected by these vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-309571.pdf</id>
    <title>SSA-309571 V1.2 (Last Update: 2022-03-08): IPU 2021.1 Vulnerabilities in Siemens Industrial Products using Intel CPUs (June 2021)</title>
    <updated>2022-03-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-309571.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Intel has published information on vulnerabilities in Intel products in &lt;a href="https://blogs.intel.com/technology/2021/06/intel-security-advisories-for-june-2021/"&gt;June 2021&lt;/a&gt;. This advisory lists the related Siemens Industrial products affected by these vulnerabilities that can be patched by applying the corresponding BIOS update.&lt;/p&gt;
&lt;p&gt;In this advisory we summarize:&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;&lt;p&gt;&#8220;2021.1 IPU &#8211; Intel&#174; CSME, SPS and LMS Advisory&#8221; Intel-SA-00459,&lt;/p&gt;&lt;/li&gt;
&lt;li&gt;&lt;p&gt;&#8220;2021.1 IPU &#8211; BIOS Advisory&#8221; Intel-SA-00463,&lt;/p&gt;&lt;/li&gt;
&lt;li&gt;&lt;p&gt;&#8220;2021.1 IPU &#8211; Intel&#174; Processor Advisory&#8221; Intel-SA-00464, and&lt;/p&gt;&lt;/li&gt;
&lt;li&gt;&lt;p&gt;&#8220;2021.1 IPU - Intel Atom&#174; Processor Advisory&#8221; Intel-SA-00465.&lt;/p&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;Siemens has released updates for several affected products and is currently working on BIOS updates that include chipset microcode updates for further products.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssb-439005.pdf</id>
    <title>SSB-439005 V4.1 (Last Update: 2022-03-08): Vulnerabilities in the additional GNU/Linux subsystem of the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP</title>
    <updated>2022-03-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssb-439005.pdf" rel="alternate"/>
    <summary>
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-462066.pdf</id>
    <title>SSA-462066 V2.7 (Last Update: 2022-03-08): Vulnerability known as TCP SACK PANIC in Industrial Products</title>
    <updated>2022-03-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-462066.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Multiple industrial products are affected by a vulnerability in the kernel known as TCP SACK PANIC. The vulnerability could allow a remote attacker to cause a denial of service condition.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the new versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-501073.pdf</id>
    <title>SSA-501073 V1.1 (Last Update: 2022-03-08): Vulnerabilities in Controllers CPU 1518 MFP using Intel CPUs (November 2020)</title>
    <updated>2022-03-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-501073.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Intel has published information on vulnerabilities in Intel products in &lt;a href="https://blogs.intel.com/technology/2020/11/ipas-security-advisories-for-november-2020/"&gt;November 2020&lt;/a&gt;. This advisory lists the Siemens Controllers that are affected by these vulnerabilities.&lt;/p&gt;
&lt;p&gt;In this advisory we take a representative CVE from each advisory:&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;&lt;p&gt;&#8220;Intel CSME, SPS, TXE, AMT and DAL Advisory&#8221; Intel-SA-00391 is represented by CVE-2020-8744&lt;/p&gt;&lt;/li&gt;
&lt;li&gt;&lt;p&gt;&#8220;BIOS Advisory&#8221; Intel-SA-00358 is represented by CVE-2020-0591.&lt;/p&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;Siemens is currently working on BIOS updates that include chipset microcode updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-534763.pdf</id>
    <title>SSA-534763 V1.6 (Last Update: 2022-03-08): Special Register Buffer Data Sampling (SRBDS) aka Crosstalk in Industrial Products</title>
    <updated>2022-03-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-534763.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Security researchers published information on a vulnerability known as Crosstalk (&lt;a href="https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00320.html"&gt;INTEL-SA-00320&lt;/a&gt;). This vulnerability affects modern Intel processors to a varying degree.&lt;/p&gt;
&lt;p&gt;Several Siemens Industrial Products contain processors that are affected by the vulnerability.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-541018.pdf</id>
    <title>SSA-541018 V1.5 (Last Update: 2022-03-08): Embedded TCP/IP Stack Vulnerabilities (AMNESIA:33) in SENTRON PAC / 3VA Devices (Part 2)</title>
    <updated>2022-03-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-541018.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Security researchers discovered and disclosed 33 vulnerabilities in several open-source TCP/IP stacks for embedded devices, also known as &#8220;AMNESIA:33&#8221; vulnerabilities.&lt;/p&gt;
&lt;p&gt;This advisory describes the impact of two of these vulnerabilities (CVE-2020-13987, CVE-2020-17437) to Siemens products.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where updates are not available.&lt;/p&gt;
&lt;p&gt;The impact of another &#8220;AMNESIA:33&#8221; vulnerability (CVE-2020-13988) is described in &lt;a href="https://cert-portal.siemens.com/productcert/pdf/ssa-541017.pdf"&gt;Siemens Security Advisory SSA-541017&lt;/a&gt;.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-661247.pdf</id>
    <title>SSA-661247 V2.6 (Last Update: 2022-03-08): Apache Log4j Vulnerabilities (Log4Shell, CVE-2021-44228, CVE-2021-45046) - Impact to Siemens Products</title>
    <updated>2022-03-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-661247.pdf" rel="alternate"/>
    <summary>&lt;p&gt;On 2021-12-09, a vulnerability in Apache Log4j (a logging tool used in many Java-based applications) was disclosed, that could allow remote unauthenticated attackers to execute code on vulnerable systems. The vulnerability is tracked as CVE-2021-44228 and is also known as &#8220;Log4Shell&#8221;.&lt;/p&gt;
&lt;p&gt;On 2021-12-14 an additional denial of service vulnerability (CVE-2021-45046) was published rendering the initial mitigations and fix in version 2.15.0 as incomplete under certain non-default configurations. Log4j versions 2.16.0 and 2.12.2 are supposed to fix both vulnerabilities.&lt;/p&gt;
&lt;p&gt;On 2021-12-17, CVE-2021-45046 was reclassified with an increased CVSS base score (from 3.7 to 9.0). The potential impact of CVE-2021-45046 now includes - besides denial of service - also information disclosure and local (and potential remote) code execution.&lt;/p&gt;
&lt;p&gt;Siemens is currently investigating to determine which products are affected and is continuously updating this advisory as more information becomes available. See section Additional Information for more details regarding the investigation status.&lt;/p&gt;
&lt;p&gt;Note: two additional vulnerabilities were published for Apache Log4j, the impact of which are documented in SSA-501673: &lt;a href="https://cert-portal.siemens.com/productcert/pdf/ssa-501673.pdf" class="uri"&gt;https://cert-portal.siemens.com/productcert/pdf/ssa-501673.pdf&lt;/a&gt; (CVE-2021-45105) and SSA-784507: &lt;a href="https://cert-portal.siemens.com/productcert/pdf/ssa-784507.pdf" class="uri"&gt;https://cert-portal.siemens.com/productcert/pdf/ssa-784507.pdf&lt;/a&gt; (CVE-2021-44832).&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-669158.pdf</id>
    <title>SSA-669158 V1.1 (Last Update: 2022-03-08): DNS Client Vulnerabilities in SIMOTICS CONNECT 400</title>
    <updated>2022-03-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-669158.pdf" rel="alternate"/>
    <summary>&lt;p&gt;SIMOTICS CONNECT 400 is affected by DNS Client vulnerabilities as initially reported in Siemens Security Advisory SSA-705111 (&lt;a href="https://cert-portal.siemens.com/productcert/pdf/ssa-705111.pdf" class="uri"&gt;https://cert-portal.siemens.com/productcert/pdf/ssa-705111.pdf&lt;/a&gt;) for the DNS Module in Nucleus RTOS.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the SIMOTICS CONNECT 400 and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-669737.pdf</id>
    <title>SSA-669737 V1.1 (Last Update: 2022-03-08): Improper Access Control Vulnerability in SICAM TOOLBOX II</title>
    <updated>2022-03-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-669737.pdf" rel="alternate"/>
    <summary>&lt;p&gt;SICAM TOOLBOX II contains a vulnerability that could allow an attacker access through a circumventable access control.&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-678983.pdf</id>
    <title>SSA-678983 V1.3 (Last Update: 2022-03-08): Vulnerabilities in Industrial PCs and CNC devices using Intel CPUs (November 2020)</title>
    <updated>2022-03-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-678983.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Intel has published information on vulnerabilities in Intel products in &lt;a href="https://blogs.intel.com/technology/2020/11/ipas-security-advisories-for-november-2020/"&gt;November 2020&lt;/a&gt;. This advisory lists the Siemens IPC related products, that are affected by these vulnerabilities.&lt;/p&gt;
&lt;p&gt;In this advisory we take a representative CVE from each advisory:&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;&lt;p&gt;&#8220;Intel CSME, SPS, TXE, AMT and DAL Advisory&#8221; Intel-SA-00391 is represented by CVE-2020-8745&lt;/p&gt;&lt;/li&gt;
&lt;li&gt;&lt;p&gt;&#8220;Intel RAPL Interface Advisory&#8221; Intel-SA-00389 is represented by CVE-2020-8694&lt;/p&gt;&lt;/li&gt;
&lt;li&gt;&lt;p&gt;&#8220;Intel Processor Advisory&#8221; Intel-SA-00381 is represented by CVE-2020-8698, and&lt;/p&gt;&lt;/li&gt;
&lt;li&gt;&lt;p&gt;&#8220;BIOS Advisory&#8221; Intel-SA-00358 is represented by CVE-2020-0590.&lt;/p&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;Siemens has released updates for several affected products and is currently working on BIOS updates that include chipset microcode updates for further products.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-703715.pdf</id>
    <title>SSA-703715 V1.1 (Last Update: 2022-03-08): Information Disclosure Vulnerability in Climatix POL909 (AWM and AWB)</title>
    <updated>2022-03-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-703715.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Climatix POL909 (AWM and AWB) contains an information disclosure vulnerability that could allow a man-in-the-middle attacker to read sensitive data, such as administrator credentials, or modify data in transit.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for Climatix POL909 (AWM and AWB) and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-838121.pdf</id>
    <title>SSA-838121 V1.1 (Last Update: 2022-03-08): Multiple Denial of Service Vulnerabilities in Industrial Products</title>
    <updated>2022-03-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-838121.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Affected SIMATIC firmware contains three vulnerabilities that could allow an unauthenticated attacker to perform a denial-of-service attack under certain conditions.&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-840188.pdf</id>
    <title>SSA-840188 V1.2 (Last Update: 2022-03-08): Multiple Vulnerabilities in SIMATIC WinCC Affecting Other SIMATIC Software Products</title>
    <updated>2022-03-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-840188.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities were found in SIMATIC WinCC that ultimately could allow local or remote attackers to escalate privileges and read, write or delete critical files.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-306654.pdf</id>
    <title>SSA-306654 V1.0: Insyde BIOS Vulnerabilities in Siemens Industrial Products</title>
    <updated>2022-02-22T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-306654.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Insyde has published information on vulnerabilities in Insyde BIOS in &lt;a href="https://www.insyde.com/security-pledge"&gt;February 2022&lt;/a&gt;. This advisory lists the Siemens Industrial products affected by these vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-244969.pdf</id>
    <title>SSA-244969 V1.1 (Last Update: 2022-02-17): OpenSSL Vulnerability in Industrial Products</title>
    <updated>2022-02-17T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-244969.pdf" rel="alternate"/>
    <summary>&lt;p&gt;OpenSSL has published a security advisory [0] about a vulnerability in OpenSSL versions 1.1.1 &amp;lt; 1.1.1l and 1.0.2 &amp;lt; 1.0.2za that allows an attacker to cause a denial of service (DoS) or to disclose private memory content.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
&lt;p&gt;[0] &lt;a href="https://www.openssl.org/news/secadv/20210824.txt" class="uri"&gt;https://www.openssl.org/news/secadv/20210824.txt&lt;/a&gt;&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-455843.pdf</id>
    <title>SSA-455843 V1.7 (Last Update: 2022-02-17): WIBU Systems CodeMeter Runtime Vulnerabilities in Siemens Products</title>
    <updated>2022-02-17T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-455843.pdf" rel="alternate"/>
    <summary>&lt;p&gt;CISA and WIBU Systems disclosed six vulnerabilities in different versions of CodeMeter Runtime, a product provided by WIBU Systems and used in several Siemens products for license management.&lt;/p&gt;
&lt;p&gt;The vulnerabilities are described in the section &#8220;Vulnerability Classification&#8221; below and got assigned the CVE IDs CVE-2020-14509, CVE-2020-14513, CVE-2020-14515, CVE-2020-14517, CVE-2020-14519, and CVE-2020-16233. Successful exploitation of these vulnerabilities could allow an attacker to alter and forge a license file, cause a denial-of-service condition, attain remote code execution, or prevent normal operation of the Siemens software that depends on CodeMeter Runtime.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-772220.pdf</id>
    <title>SSA-772220 V1.7 (Last Update: 2022-02-17): OpenSSL Vulnerabilities in Industrial Products</title>
    <updated>2022-02-17T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-772220.pdf" rel="alternate"/>
    <summary>&lt;p&gt;OpenSSL has published a security advisory [0] about a vulnerability in OpenSSL versions 1.1.1 &amp;lt; 1.1.1k, that allows an unauthenticated attacker to cause a Denial-of-Service (DoS) if a maliciously crafted renegotiation message is sent.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
&lt;p&gt;[0] &lt;a href="https://www.openssl.org/news/secadv/20210325.txt" class="uri"&gt;https://www.openssl.org/news/secadv/20210325.txt&lt;/a&gt;&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-949188.pdf</id>
    <title>SSA-949188 V1.0: File Parsing Vulnerabilities in Simcenter Femap before V2022.1.1</title>
    <updated>2022-02-17T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-949188.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Siemens Simcenter Femap versions before V2022.1.1 are affected by vulnerabilities that could be triggered when the application reads files in .NEU or .BDF format. If a user is tricked to open a malicious file with the affected application, an attacker could leverage the vulnerability to leak information or potentially perform remote code execution in the context of the current process.&lt;/p&gt;
&lt;p&gt;Siemens recommends to update to the latest version line of Simcenter Femap and to avoid opening of untrusted files from unknown sources.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-244969.pdf</id>
    <title>SSA-244969 V1.0: OpenSSL Vulnerability in Industrial Products</title>
    <updated>2022-02-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-244969.pdf" rel="alternate"/>
    <summary>&lt;p&gt;OpenSSL has published a security advisory [0] about a vulnerability in OpenSSL versions 1.1.1 &amp;lt; 1.1.1l and 1.0.2 &amp;lt; 1.0.2za that allows an attacker to cause a denial of service (DoS) or to disclose private memory content.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
&lt;p&gt;[0] &lt;a href="https://www.openssl.org/news/secadv/20210824.txt" class="uri"&gt;https://www.openssl.org/news/secadv/20210824.txt&lt;/a&gt;&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-301589.pdf</id>
    <title>SSA-301589 V1.0: Multiple File Parsing Vulnerabilities in Solid Edge, JT2Go and Teamcenter Visualization</title>
    <updated>2022-02-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-301589.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Siemens has released updates for Solid Edge and Teamcenter Visualization to fix multiple file parsing vulnerabilities. If a user is tricked to open a malicious file (crafted as PDF, DXF or PAR) with any of the affected products, this could lead the application to crash or potentially lead to arbitrary code execution.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for some of the affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-539476.pdf</id>
    <title>SSA-539476 V1.0: Siemens SIMATIC NET CP, SINEMA and SCALANCE Products Affected by Vulnerabilities in Third-Party Component strongSwan</title>
    <updated>2022-02-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-539476.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Vulnerabilities in the third-party component strongSwan could allow an attacker to cause a denial of service (DoS) condition in affected devices by exploiting integer overflow bugs.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-609880.pdf</id>
    <title>SSA-609880 V1.0: File Parsing Vulnerabilities in Simcenter Femap before V2022.1</title>
    <updated>2022-02-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-609880.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Siemens Simcenter Femap is affected by multiple vulnerabilities that could be triggered when the application reads files in .NEU format. If a user is tricked to open a malicious file with the affected application, an attacker could leverage the vulnerability to leak information or potentially perform remote code execution in the context of the current process.&lt;/p&gt;
&lt;p&gt;Siemens recommends to update to the latest version line of Simcenter Femap and to avoid opening of untrusted files from unknown sources.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-654775.pdf</id>
    <title>SSA-654775 V1.0: Open Redirect Vulnerability in SINEMA Remote Connect Server</title>
    <updated>2022-02-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-654775.pdf" rel="alternate"/>
    <summary>&lt;p&gt;An open redirect vulnerability in SINEMA Remote Connect Server could allow an attacker to steal logon credentials with a specially crafted malicious link.&lt;/p&gt;
&lt;p&gt;Siemens has released software update for the SINEMA Remote Connect Server and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-669737.pdf</id>
    <title>SSA-669737 V1.0: Improper Access Control Vulnerability in SICAM TOOLBOX II</title>
    <updated>2022-02-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-669737.pdf" rel="alternate"/>
    <summary>&lt;p&gt;SICAM TOOLBOX II contains a vulnerability that could allow an attacker access through a circumventable access control.&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-831168.pdf</id>
    <title>SSA-831168 V1.0: Cross-Site Scripting Vulnerability in Spectrum Power 4</title>
    <updated>2022-02-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-831168.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A Cross-Site Scripting (XSS) vulnerability is found in the integrated web application &#8220;Online Help&#8221; of Spectrum Power 4.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for the Spectrum Power 4 and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-838121.pdf</id>
    <title>SSA-838121 V1.0: Multiple Denial of Service Vulnerabilities in Industrial Products</title>
    <updated>2022-02-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-838121.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Affected SIMATIC firmware contains three vulnerabilities that could allow an unauthenticated attacker to perform a denial-of-service attack under certain conditions.&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-914168.pdf</id>
    <title>SSA-914168 V1.0: Multiple Vulnerabilities in SIMATIC WinCC Affecting Other SIMATIC Software Products</title>
    <updated>2022-02-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-914168.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities were found in SIMATIC WinCC that ultimately could allow attackers to retrieve and brute force password hashes and access other systems.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-100232.pdf</id>
    <title>SSA-100232 V1.4 (Last Update: 2022-02-08): Denial-of-Service vulnerability in SCALANCE X Switches</title>
    <updated>2022-02-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-100232.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in several SCALANCE X devices could allow an unauthenticated attacker with network access to an affected device to perform a denial-of-service.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for SCALANCE X-200IRT and recommends to update to the latest version. Siemens recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-102233.pdf</id>
    <title>SSA-102233 V1.7 (Last Update: 2022-02-08): SegmentSmack in VxWorks-based Industrial Devices</title>
    <updated>2022-02-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-102233.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The products listed below contain a vulnerability that could allow remote attackers to affect the availability of the devices under certain conditions. The underlying TCP stack can be forced to make very computation expensive calls for every incoming packet which can lead to a Denial-of-Service.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for the SCALANCE X-200IRT switch family and recommends to update to the latest version. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-211752.pdf</id>
    <title>SSA-211752 V1.1 (Last Update: 2022-02-08): Multiple NTP-Client Related Vulnerabilities in SIMATIC CP 443-1 OPC UA</title>
    <updated>2022-02-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-211752.pdf" rel="alternate"/>
    <summary>&lt;p&gt;All versions of the SIMATIC CP 443-1 OPC UA contain multiple vulnerabilities in the underlying third party component NTP.&lt;/p&gt;
&lt;p&gt;Siemens recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-293562.pdf</id>
    <title>SSA-293562 V3.4 (Last Update: 2022-02-08): Denial of Service Vulnerabilities in PROFINET DCP Implementation of Industrial Products</title>
    <updated>2022-02-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-293562.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Several industrial devices are affected by two vulnerabilities that could allow an attacker to cause a denial of service condition via PROFINET DCP network packets under certain circumstances. The precondition for this scenario is a direct layer 2 access to the affected products. PROFIBUS interfaces are not affected.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the new versions. Siemens recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-307392.pdf</id>
    <title>SSA-307392 V1.7 (Last Update: 2022-02-08): Denial of Service in OPC UA in Industrial Products</title>
    <updated>2022-02-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-307392.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability has been identified in the OPC UA server of several industrial products. The vulnerability could cause a denial of service condition on the service or the device.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-309571.pdf</id>
    <title>SSA-309571 V1.1 (Last Update: 2022-02-08): IPU 2021.1 Vulnerabilities in Siemens Industrial Products using Intel CPUs (June 2021)</title>
    <updated>2022-02-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-309571.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Intel has published information on vulnerabilities in Intel products in &lt;a href="https://blogs.intel.com/technology/2021/06/intel-security-advisories-for-june-2021/"&gt;June 2021&lt;/a&gt;. This advisory lists the related Siemens Industrial products affected by these vulnerabilities that can be patched by applying the corresponding BIOS update.&lt;/p&gt;
&lt;p&gt;In this advisory we summarize:&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;&lt;p&gt;&#8220;2021.1 IPU &#8211; Intel&#174; CSME, SPS and LMS Advisory&#8221; Intel-SA-00459,&lt;/p&gt;&lt;/li&gt;
&lt;li&gt;&lt;p&gt;&#8220;2021.1 IPU &#8211; BIOS Advisory&#8221; Intel-SA-00463,&lt;/p&gt;&lt;/li&gt;
&lt;li&gt;&lt;p&gt;&#8220;2021.1 IPU &#8211; Intel&#174; Processor Advisory&#8221; Intel-SA-00464, and&lt;/p&gt;&lt;/li&gt;
&lt;li&gt;&lt;p&gt;&#8220;2021.1 IPU - Intel Atom&#174; Processor Advisory&#8221; Intel-SA-00465.&lt;/p&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;Siemens has released updates for several affected products and is currently working on BIOS updates that include chipset microcode updates for further products.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-316383.pdf</id>
    <title>SSA-316383 V1.1 (Last Update: 2022-02-08): NumberJack Vulnerability in LOGO! CMR and SIMATIC RTU 3000 devices</title>
    <updated>2022-02-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-316383.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability has been identified in the underlying TCP/IP stack of LOGO! CMR and SIMATIC RTU 3000 devices. It could allow an attacker with network access to the LAN interface of an affected device to hijack an ongoing connection or spoof a new one. The WAN interface, however, is not affected.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-346262.pdf</id>
    <title>SSA-346262 V3.2 (Last Update: 2022-02-08): Denial-of-Service in Industrial Products</title>
    <updated>2022-02-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-346262.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Several industrial products are affected by a vulnerability that could allow remote attackers to conduct a Denial-of-Service (DoS) attack by sending specially crafted packets to port 161/udp (SNMP).&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, and recommends that customers update to the new version. Siemens is preparing further updates and recommends specific countermeasures until patches are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-349422.pdf</id>
    <title>SSA-349422 V1.7 (Last Update: 2022-02-08): Denial-of-Service in Industrial Real-Time (IRT) Devices</title>
    <updated>2022-02-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-349422.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in the affected products could allow an unauthorized attacker with network access to perform a denial-of-service attack resulting in loss of real-time synchronization.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssb-439005.pdf</id>
    <title>SSB-439005 V4.0 (Last Update: 2022-02-08): Vulnerabilities in the additional GNU/Linux subsystem of the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP</title>
    <updated>2022-02-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssb-439005.pdf" rel="alternate"/>
    <summary>
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-443566.pdf</id>
    <title>SSA-443566 V1.1 (Last Update: 2022-02-08): Authentication Bypass in SCALANCE X Switches Families</title>
    <updated>2022-02-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-443566.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Several SCALANCE X switches are affected by an Authentication Bypass vulnerability. The vulnerability allows an unauthenticated attacker to violate access-control rules. The vulnerability can be exploited by sending a GET request to a specific uniform resource locator on the web configuration interface of the device.&lt;/p&gt;
&lt;p&gt;The security vulnerability could be exploited by an attacker with network access to the affected systems. An attacker could use the vulnerability to obtain sensitive information or change the device configuration.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for the SCALANCE X-300 switch family (incl.&#160;X408 and SIPLUS NET variants) and recommends to update to the latest version. Siemens recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-462066.pdf</id>
    <title>SSA-462066 V2.6 (Last Update: 2022-02-08): Vulnerability known as TCP SACK PANIC in Industrial Products</title>
    <updated>2022-02-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-462066.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Multiple industrial products are affected by a vulnerability in the kernel known as TCP SACK PANIC. The vulnerability could allow a remote attacker to cause a denial of service condition.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the new versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-473245.pdf</id>
    <title>SSA-473245 V2.2 (Last Update: 2022-02-08): Denial-of-Service Vulnerability in Profinet Devices</title>
    <updated>2022-02-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-473245.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in affected devices could allow an attacker to perform a denial-of-service attack if a large amount of specially crafted UDP packets are sent to the device.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, and recommends that customers update to the new version. Siemens is preparing further updates and recommends specific countermeasures until patches are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-480230.pdf</id>
    <title>SSA-480230 V2.2 (Last Update: 2022-02-08): Denial of service in Webserver of Industrial Products</title>
    <updated>2022-02-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-480230.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in the affected devices could allow an unauthorized attacker with network access to the webserver of an affected device to perform a denial of service attack.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the new versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-541018.pdf</id>
    <title>SSA-541018 V1.4 (Last Update: 2022-02-08): Embedded TCP/IP Stack Vulnerabilities (AMNESIA:33) in SENTRON PAC / 3VA Devices (Part 2)</title>
    <updated>2022-02-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-541018.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Security researchers discovered and disclosed 33 vulnerabilities in several open-source TCP/IP stacks for embedded devices, also known as &#8220;AMNESIA:33&#8221; vulnerabilities.&lt;/p&gt;
&lt;p&gt;This advisory describes the impact of two of these vulnerabilities (CVE-2020-13987, CVE-2020-17437) to Siemens products.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where updates are not available.&lt;/p&gt;
&lt;p&gt;The impact of another &#8220;AMNESIA:33&#8221; vulnerability (CVE-2020-13988) is described in &lt;a href="https://cert-portal.siemens.com/productcert/pdf/ssa-541017.pdf"&gt;Siemens Security Advisory SSA-541017&lt;/a&gt;.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-593272.pdf</id>
    <title>SSA-593272 V1.3 (Last Update: 2022-02-08): SegmentSmack in Interniche IP-Stack based Industrial Devices</title>
    <updated>2022-02-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-593272.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability exists in affected products that could allow remote attackers to affect the availability of the devices under certain conditions.&lt;/p&gt;
&lt;p&gt;The underlying TCP stack can be forced to make very computation expensive calls for every incoming packet which can lead to a Denial-of-Service.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-599968.pdf</id>
    <title>SSA-599968 V1.4 (Last Update: 2022-02-08): Denial-of-Service Vulnerability in Profinet Devices</title>
    <updated>2022-02-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-599968.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in affected devices could allow an attacker to perform a denial-of-service attack if a large amount of Profinet Discovery and Configuration Protocol (DCP) reset packets is sent to the affected devices.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-661247.pdf</id>
    <title>SSA-661247 V2.5 (Last Update: 2022-02-08): Apache Log4j Vulnerabilities (Log4Shell, CVE-2021-44228, CVE-2021-45046) - Impact to Siemens Products</title>
    <updated>2022-02-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-661247.pdf" rel="alternate"/>
    <summary>&lt;p&gt;On 2021-12-09, a vulnerability in Apache Log4j (a logging tool used in many Java-based applications) was disclosed, that could allow remote unauthenticated attackers to execute code on vulnerable systems. The vulnerability is tracked as CVE-2021-44228 and is also known as &#8220;Log4Shell&#8221;.&lt;/p&gt;
&lt;p&gt;On 2021-12-14 an additional denial of service vulnerability (CVE-2021-45046) was published rendering the initial mitigations and fix in version 2.15.0 as incomplete under certain non-default configurations. Log4j versions 2.16.0 and 2.12.2 are supposed to fix both vulnerabilities.&lt;/p&gt;
&lt;p&gt;On 2021-12-17, CVE-2021-45046 was reclassified with an increased CVSS base score (from 3.7 to 9.0). The potential impact of CVE-2021-45046 now includes - besides denial of service - also information disclosure and local (and potential remote) code execution.&lt;/p&gt;
&lt;p&gt;Siemens is currently investigating to determine which products are affected and is continuously updating this advisory as more information becomes available. See section Additional Information for more details regarding the investigation status.&lt;/p&gt;
&lt;p&gt;Note: two additional vulnerabilities were published for Apache Log4j, the impact of which are documented in SSA-501673: &lt;a href="https://cert-portal.siemens.com/productcert/pdf/ssa-501673.pdf" class="uri"&gt;https://cert-portal.siemens.com/productcert/pdf/ssa-501673.pdf&lt;/a&gt; (CVE-2021-45105) and SSA-784507: &lt;a href="https://cert-portal.siemens.com/productcert/pdf/ssa-784507.pdf" class="uri"&gt;https://cert-portal.siemens.com/productcert/pdf/ssa-784507.pdf&lt;/a&gt; (CVE-2021-44832).&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-675303.pdf</id>
    <title>SSA-675303 V1.3 (Last Update: 2022-02-08): WIBU Systems CodeMeter Runtime Vulnerabilities in Siemens Products</title>
    <updated>2022-02-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-675303.pdf" rel="alternate"/>
    <summary>&lt;p&gt;WIBU Systems published information about two vulnerabilities and an associated fix release version of CodeMeter Runtime, a product provided by WIBU Systems and used in several Siemens products for license management.&lt;/p&gt;
&lt;p&gt;The vulnerabilities are described in the section &#8220;Vulnerability Classification&#8221; below and got assigned the CVE IDs CVE-2021-20093 and CVE-2021-20094. Successful exploitation of these vulnerabilities could allow an attacker to read data from the heap of the CodeMeter Runtime network server, or crash the CodeMeter Runtime Server (i.e., CodeMeter.exe).&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-772220.pdf</id>
    <title>SSA-772220 V1.6 (Last Update: 2022-02-08): OpenSSL Vulnerabilities in Industrial Products</title>
    <updated>2022-02-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-772220.pdf" rel="alternate"/>
    <summary>&lt;p&gt;OpenSSL has published a security advisory [0] about a vulnerability in OpenSSL versions 1.1.1 &amp;lt; 1.1.1k, that allows an unauthenticated attacker to cause a Denial-of-Service (DoS) if a maliciously crafted renegotiation message is sent.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
&lt;p&gt;[0] &lt;a href="https://www.openssl.org/news/secadv/20210325.txt" class="uri"&gt;https://www.openssl.org/news/secadv/20210325.txt&lt;/a&gt;&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-780073.pdf</id>
    <title>SSA-780073 V2.0 (Last Update: 2022-02-08): Denial of Service Vulnerability in PROFINET Devices via DCE-RPC Packets</title>
    <updated>2022-02-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-780073.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Products that include the Siemens PROFINET-IO (PNIO) stack in versions prior V06.00 are potentially affected by a denial of service vulnerability when multiple legitimate diagnostic package requests are sent to the DCE-RPC interface.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the new versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
&lt;p&gt;Additionally, Siemens recommends other vendors of PROFINET devices to check if their products have incorporated a vulnerable version of the Siemens PNIO stack as part of the Siemens Development/Evaluation Kits.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-840188.pdf</id>
    <title>SSA-840188 V1.1 (Last Update: 2022-02-08): Multiple Vulnerabilities in SIMATIC WinCC Affecting Other SIMATIC Software Products</title>
    <updated>2022-02-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-840188.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities were found in SIMATIC WinCC that ultimately could allow local or remote attackers to escalate privileges and read, write or delete critical files.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-913875.pdf</id>
    <title>SSA-913875 V1.2 (Last Update: 2022-02-08): Frame Aggregation and Fragmentation Vulnerabilities in 802.11</title>
    <updated>2022-02-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-913875.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Twelve vulnerabilities in the implementation of frame aggregation and fragmentation of the 802.11 standard, under the name of &lt;a href="https://www.fragattacks.com/"&gt;FragAttacks&lt;/a&gt;, have been published.&lt;/p&gt;
&lt;p&gt;Successful exploitation of these vulnerabilities could allow an attacker within Wi-Fi range to forge encrypted frames, which could result in sensitive data disclosure and possibly traffic manipulation.&lt;/p&gt;
&lt;p&gt;The advised Siemens products are only affected by some of the published vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-978220.pdf</id>
    <title>SSA-978220 V1.5 (Last Update: 2022-02-08): Denial of Service Vulnerability over SNMP in Multiple Industrial Products</title>
    <updated>2022-02-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-978220.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Several industrial products are affected by a vulnerability that could allow remote attackers to conduct a denial of service attack by sending specially crafted packets to port 161/udp (SNMP).&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the new versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-995338.pdf</id>
    <title>SSA-995338 V1.1 (Last Update: 2022-02-08): Multiple Vulnerabilities in COMOS Web</title>
    <updated>2022-02-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-995338.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities were identified in the web components of COMOS that could allow an attacker to conduct code injections, store data in undesired locations, execute arbitrary SQL statements, and run cross-site request forgery attacks.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-661247.pdf</id>
    <title>SSA-661247 V2.4 (Last Update: 2022-01-28): Apache Log4j Vulnerabilities (Log4Shell, CVE-2021-44228, CVE-2021-45046) - Impact to Siemens Products</title>
    <updated>2022-01-28T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-661247.pdf" rel="alternate"/>
    <summary>&lt;p&gt;On 2021-12-09, a vulnerability in Apache Log4j (a logging tool used in many Java-based applications) was disclosed, that could allow remote unauthenticated attackers to execute code on vulnerable systems. The vulnerability is tracked as CVE-2021-44228 and is also known as &#8220;Log4Shell&#8221;.&lt;/p&gt;
&lt;p&gt;On 2021-12-14 an additional denial of service vulnerability (CVE-2021-45046) was published rendering the initial mitigations and fix in version 2.15.0 as incomplete under certain non-default configurations. Log4j versions 2.16.0 and 2.12.2 are supposed to fix both vulnerabilities.&lt;/p&gt;
&lt;p&gt;On 2021-12-17, CVE-2021-45046 was reclassified with an increased CVSS base score (from 3.7 to 9.0). The potential impact of CVE-2021-45046 now includes - besides denial of service - also information disclosure and local (and potential remote) code execution.&lt;/p&gt;
&lt;p&gt;Siemens is currently investigating to determine which products are affected and is continuously updating this advisory as more information becomes available. See section Additional Information for more details regarding the investigation status.&lt;/p&gt;
&lt;p&gt;Note: two additional vulnerabilities were published for Apache Log4j, the impact of which are documented in SSA-501673: &lt;a href="https://cert-portal.siemens.com/productcert/pdf/ssa-501673.pdf" class="uri"&gt;https://cert-portal.siemens.com/productcert/pdf/ssa-501673.pdf&lt;/a&gt; (CVE-2021-45105) and SSA-784507: &lt;a href="https://cert-portal.siemens.com/productcert/pdf/ssa-784507.pdf" class="uri"&gt;https://cert-portal.siemens.com/productcert/pdf/ssa-784507.pdf&lt;/a&gt; (CVE-2021-44832).&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-661247.pdf</id>
    <title>SSA-661247 V2.3 (Last Update: 2022-01-17): Apache Log4j Vulnerabilities (Log4Shell, CVE-2021-44228, CVE-2021-45046) - Impact to Siemens Products</title>
    <updated>2022-01-17T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-661247.pdf" rel="alternate"/>
    <summary>&lt;p&gt;On 2021-12-09, a vulnerability in Apache Log4j (a logging tool used in many Java-based applications) was disclosed, that could allow remote unauthenticated attackers to execute code on vulnerable systems. The vulnerability is tracked as CVE-2021-44228 and is also known as &#8220;Log4Shell&#8221;.&lt;/p&gt;
&lt;p&gt;On 2021-12-14 an additional denial of service vulnerability (CVE-2021-45046) was published rendering the initial mitigations and fix in version 2.15.0 as incomplete under certain non-default configurations. Log4j versions 2.16.0 and 2.12.2 are supposed to fix both vulnerabilities.&lt;/p&gt;
&lt;p&gt;On 2021-12-17, CVE-2021-45046 was reclassified with an increased CVSS base score (from 3.7 to 9.0). The potential impact of CVE-2021-45046 now includes - besides denial of service - also information disclosure and local (and potential remote) code execution.&lt;/p&gt;
&lt;p&gt;Siemens is currently investigating to determine which products are affected and is continuously updating this advisory as more information becomes available. See section Additional Information for more details regarding the investigation status.&lt;/p&gt;
&lt;p&gt;Note: two additional vulnerabilities were published for Apache Log4j, the impact of which are documented in SSA-501673: &lt;a href="https://cert-portal.siemens.com/productcert/pdf/ssa-501673.pdf" class="uri"&gt;https://cert-portal.siemens.com/productcert/pdf/ssa-501673.pdf&lt;/a&gt; (CVE-2021-45105) and SSA-784507: &lt;a href="https://cert-portal.siemens.com/productcert/pdf/ssa-784507.pdf" class="uri"&gt;https://cert-portal.siemens.com/productcert/pdf/ssa-784507.pdf&lt;/a&gt; (CVE-2021-44832).&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-173318.pdf</id>
    <title>SSA-173318 V1.0: Unquoted Search Path Vulnerability in SICAM PQ Analyzer</title>
    <updated>2022-01-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-173318.pdf" rel="alternate"/>
    <summary>&lt;p&gt;SICAM PQ Analyzer uses an unquoted registry entry and is thus vulnerable to an unquoted search path vulnerability.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for the SICAM PQ Analyzer and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-324998.pdf</id>
    <title>SSA-324998 V1.0: Multiple Vulnerabilities in SICAM A8000</title>
    <updated>2022-01-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-324998.pdf" rel="alternate"/>
    <summary>&lt;p&gt;SICAM A8000 devices are impacted by two vulnerabilities. The first one could allow a privileged user to enable a debug port with default credentials. The second vulnerability could allow unauthenticated access to certain previously created log files.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-439673.pdf</id>
    <title>SSA-439673 V1.0: Information Disclosure Vulnerability in SIPROTEC 5 Devices</title>
    <updated>2022-01-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-439673.pdf" rel="alternate"/>
    <summary>&lt;p&gt;An information disclosure vulnerability in SIPROTEC 5 products could allow an unauthenticated attacker to read device information.&lt;/p&gt;
&lt;p&gt;Only devices with the hardware variants CP050, CP100 and CP300 are affected. The DIGSI engineering tool can be used to identify the hardware version of your devices.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-845392.pdf</id>
    <title>SSA-845392 V1.0: Multiple Vulnerabilities in Nucleus RTOS based Siemens Energy PLUSCONTROL 1st Gen Devices</title>
    <updated>2022-01-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-845392.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities (also known as &#8220;NUCLEUS:13&#8221;) have been identified in the Nucleus RTOS (real-time operating system) and reported in the Siemens Security Advisory SSA-044112: &lt;a href="https://cert-portal.siemens.com/productcert/pdf/ssa-044112.pdf" class="uri"&gt;https://cert-portal.siemens.com/productcert/pdf/ssa-044112.pdf&lt;/a&gt;.&lt;/p&gt;
&lt;p&gt;PLUSCONTROL 1st Gen devices are affected by some of the vulnerabilities as documented below.&lt;/p&gt;
&lt;p&gt;Siemens Energy recommends specific countermeasures for products where updates are not available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-995338.pdf</id>
    <title>SSA-995338 V1.0: Multiple Vulnerabilities in COMOS Web</title>
    <updated>2022-01-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-995338.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities were identified in the COMOS Web component of COMOS. They could allow an attacker to conduct code injections, store data in undesired locations, execute arbitrary SQL statements, and run cross-site-request-forgery attacks.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for COMOS and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-185699.pdf</id>
    <title>SSA-185699 V1.2 (Last Update: 2022-01-11): Out of Bounds Write Vulnerabilities (NAME:WRECK) in the DNS Module of Nucleus RTOS</title>
    <updated>2022-01-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-185699.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Security researchers discovered and disclosed 9 vulnerabilities in several DNS implementations, also known as &#8220;NAME:WRECK&#8221; vulnerabilities. The vulnerabilities described in this advisory are from this set.&lt;/p&gt;
&lt;p&gt;The DNS client of the networking component (Nucleus NET) in Nucleus Real-Time Operating System (RTOS) contains two out of bounds write vulnerabilities in the handling of DNS responses that could allow an attacker to cause a denial-of-service condition or to remotely execute code.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where updates are not available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-201384.pdf</id>
    <title>SSA-201384 V1.2 (Last Update: 2022-01-11): Predictable UDP Port Number Vulnerability (NAME:WRECK) in the DNS Module of Nucleus RTOS</title>
    <updated>2022-01-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-201384.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Security researchers discovered and disclosed 9 vulnerabilities in several DNS implementations, also known as &#8220;NAME:WRECK&#8221; vulnerabilities. The vulnerability described in this advisory is from this set.&lt;/p&gt;
&lt;p&gt;The DNS client of of the networking component (Nucleus NET) in Nucleus Real-Time Operating System (RTOS) contains a vulnerability related to the handling of UDP port numbers in DNS requests that could allow an attacker to poison the DNS cache or spoof DNS resolving.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where updates are not available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-580693.pdf</id>
    <title>SSA-580693 V1.2 (Last Update: 2022-01-11): WIBU Systems CodeMeter Runtime Denial-of-Service Vulnerability in Siemens Products</title>
    <updated>2022-01-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-580693.pdf" rel="alternate"/>
    <summary>&lt;p&gt;WIBU Systems published information about a denial-of-service vulnerability and an associated fix release version of CodeMeter Runtime, a product provided by WIBU Systems and used in several Siemens products for license management.&lt;/p&gt;
&lt;p&gt;The vulnerability is described in the section &#8220;Vulnerability Classification&#8221; below and got assigned the CVE ID CVE-2021-41057. Successful exploitation of this vulnerability could allow an attacker to crash the CodeMeter Runtime Server (i.e., CodeMeter.exe), which could cause a denial-of-service condition for the affected Siemens product.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-705111.pdf</id>
    <title>SSA-705111 V1.2 (Last Update: 2022-01-11): Multiple Vulnerabilities (NAME:WRECK) in the DNS Module of Nucleus RTOS</title>
    <updated>2022-01-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-705111.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Security researchers discovered and disclosed 9 vulnerabilities in several DNS implementations, also known as &#8220;NAME:WRECK&#8221; vulnerabilities. The vulnerabilities described in this advisory are from this set.&lt;/p&gt;
&lt;p&gt;The DNS client of affected products contains multiple vulnerabilities related to the handling of DNS responses and requests. The most severe could allow an attacker to manipulate the DNS responses and cause a denial-of-service condition.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where updates are not available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-766247.pdf</id>
    <title>SSA-766247 V1.1 (Last Update: 2022-01-11): Authentication Vulnerability in SIMATIC Process Historian</title>
    <updated>2022-01-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-766247.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest update for SIMATIC Process Historian (PH) fixes an authentication vulnerability in the configuration interface of redundant PH instances that could enable the execution of admin operations on the database.&lt;/p&gt;
&lt;p&gt;The related vulnerable interface is restricted to local access on recent versions starting from SIMATIC Process Historian 2020.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-772220.pdf</id>
    <title>SSA-772220 V1.5 (Last Update: 2022-01-11): OpenSSL Vulnerabilities in Industrial Products</title>
    <updated>2022-01-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-772220.pdf" rel="alternate"/>
    <summary>&lt;p&gt;OpenSSL has published a security advisory [0] about a vulnerability in OpenSSL versions 1.1.1 &amp;lt; 1.1.1k, that allows an unauthenticated attacker to cause a Denial-of-Service (DoS) if a maliciously crafted renegotiation message is sent.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
&lt;p&gt;[0] &lt;a href="https://www.openssl.org/news/secadv/20210325.txt" class="uri"&gt;https://www.openssl.org/news/secadv/20210325.txt&lt;/a&gt;&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-789208.pdf</id>
    <title>SSA-789208 V1.2 (Last Update: 2022-01-11): Multiple Vulnerabilities (INFRA:HALT) in Interniche IP-Stack based Low Voltage Devices</title>
    <updated>2022-01-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-789208.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Security researchers discovered and disclosed 14 vulnerabilities in the Interniche IP stack, also known as &#8220;INFRA:HALT&#8221; vulnerabilities [0]. This advisory describes the impact to Siemens low voltage products, which are only affected by four out of the 14 vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
&lt;p&gt;[0] &lt;a href="https://www.forescout.com/blog/new-critical-operational-technology-vulnerabilities-found-on-nichestack/"&gt;https://www.forescout.com/blog/new-critical-operational-technology-vulnerabilities-found-on-nichestack/&lt;/a&gt;&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-661247.pdf</id>
    <title>SSA-661247 V2.2 (Last Update: 2022-01-05): Apache Log4j Vulnerabilities (Log4Shell, CVE-2021-44228, CVE-2021-45046) - Impact to Siemens Products</title>
    <updated>2022-01-05T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-661247.pdf" rel="alternate"/>
    <summary>&lt;p&gt;On 2021-12-09, a vulnerability in Apache Log4j (a logging tool used in many Java-based applications) was disclosed, that could allow remote unauthenticated attackers to execute code on vulnerable systems. The vulnerability is tracked as CVE-2021-44228 and is also known as &#8220;Log4Shell&#8221;.&lt;/p&gt;
&lt;p&gt;On 2021-12-14 an additional denial of service vulnerability (CVE-2021-45046) was published rendering the initial mitigations and fix in version 2.15.0 as incomplete under certain non-default configurations. Log4j versions 2.16.0 and 2.12.2 are supposed to fix both vulnerabilities.&lt;/p&gt;
&lt;p&gt;On 2021-12-17, CVE-2021-45046 was reclassified with an increased CVSS base score (from 3.7 to 9.0). The potential impact of CVE-2021-45046 now includes - besides denial of service - also information disclosure and local (and potential remote) code execution.&lt;/p&gt;
&lt;p&gt;Siemens is currently investigating to determine which products are affected and is continuously updating this advisory as more information becomes available. See section Additional Information for more details regarding the investigation status.&lt;/p&gt;
&lt;p&gt;Note: two additional vulnerabilities were published for Apache Log4j, the impact of which are documented in SSA-501673: &lt;a href="https://cert-portal.siemens.com/productcert/pdf/ssa-501673.pdf" class="uri"&gt;https://cert-portal.siemens.com/productcert/pdf/ssa-501673.pdf&lt;/a&gt; (CVE-2021-45105) and SSA-784507: &lt;a href="https://cert-portal.siemens.com/productcert/pdf/ssa-784507.pdf" class="uri"&gt;https://cert-portal.siemens.com/productcert/pdf/ssa-784507.pdf&lt;/a&gt; (CVE-2021-44832).&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-661247.pdf</id>
    <title>SSA-661247 V2.1 (Last Update: 2021-12-28): Apache Log4j Vulnerabilities (Log4Shell, CVE-2021-44228, CVE-2021-45046) - Impact to Siemens Products</title>
    <updated>2021-12-28T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-661247.pdf" rel="alternate"/>
    <summary>&lt;p&gt;On 2021-12-09, a vulnerability in Apache Log4j (a logging tool used in many Java-based applications) was disclosed, that could allow remote unauthenticated attackers to execute code on vulnerable systems. The vulnerability is tracked as CVE-2021-44228 and is also known as &#8220;Log4Shell&#8221;.&lt;/p&gt;
&lt;p&gt;On 2021-12-14 an additional denial of service vulnerability (CVE-2021-45046) was published rendering the initial mitigations and fix in version 2.15.0 as incomplete under certain non-default configurations. Log4j versions 2.16.0 and 2.12.2 are supposed to fix both vulnerabilities.&lt;/p&gt;
&lt;p&gt;On 2021-12-17, CVE-2021-45046 was reclassified with an increased CVSS base score (from 3.7 to 9.0). The potential impact of CVE-2021-45046 now includes - besides denial of service - also information disclosure and local (and potential remote) code execution.&lt;/p&gt;
&lt;p&gt;Siemens is currently investigating to determine which products are affected and is continuously updating this advisory as more information becomes available. See section Additional Information for more details regarding the investigation status.&lt;/p&gt;
&lt;p&gt;Note: two additional vulnerabilities were published for Apache Log4j, the impact of which are documented in SSA-501673: &lt;a href="https://cert-portal.siemens.com/productcert/pdf/ssa-501673.pdf" class="uri"&gt;https://cert-portal.siemens.com/productcert/pdf/ssa-501673.pdf&lt;/a&gt; (CVE-2021-45105) and SSA-784507: &lt;a href="https://cert-portal.siemens.com/productcert/pdf/ssa-784507.pdf" class="uri"&gt;https://cert-portal.siemens.com/productcert/pdf/ssa-784507.pdf&lt;/a&gt; (CVE-2021-44832).&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-784507.pdf</id>
    <title>SSA-784507 V1.0: Apache Log4j Vulnerability (CVE-2021-44832) via JDBC Appender - Impact to Siemens Products</title>
    <updated>2021-12-28T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-784507.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Apache Log4j2 versions 2.0-beta7 through 2.17.0 (excluding security fix releases 2.3.2 and 2.12.4) contain a vulnerability (CVE-2021-44832) that could allow an attacker with permission to modify the logging configuration file to execute arbitrary code, when the JDBC Appender is used [1].&lt;/p&gt;
&lt;p&gt;This advisory informs about the impact of CVE-2021-44832 to Siemens products and the corresponding remediation and mitigation measures. The vulnerability is different from other JNDI lookup vulnerabilities, the impact of which is documented in SSA-661247 [2].&lt;/p&gt;
&lt;p&gt;Currently, no products vulnerable to CVE-2021-44832 have been identified.&lt;/p&gt;
&lt;p&gt;Siemens is investigating to determine which products are affected and is continuously updating this advisory as more information becomes available. See section Additional Information for more details regarding the investigation status.&lt;/p&gt;
&lt;p&gt;[1] &lt;a href="https://logging.apache.org/log4j/2.x/security.html" class="uri"&gt;https://logging.apache.org/log4j/2.x/security.html&lt;/a&gt;&lt;/p&gt;
&lt;p&gt;[2] &lt;a href="https://cert-portal.siemens.com/productcert/pdf/ssa-661247.pdf" class="uri"&gt;https://cert-portal.siemens.com/productcert/pdf/ssa-661247.pdf&lt;/a&gt;&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-661247.pdf</id>
    <title>SSA-661247 V2.0 (Last Update: 2021-12-27): Apache Log4j Vulnerabilities (Log4Shell, CVE-2021-44228, CVE-2021-45046) - Impact to Siemens Products</title>
    <updated>2021-12-27T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-661247.pdf" rel="alternate"/>
    <summary>&lt;p&gt;On 2021-12-09, a vulnerability in Apache Log4j (a logging tool used in many Java-based applications) was disclosed, that could allow remote unauthenticated attackers to execute code on vulnerable systems. The vulnerability is tracked as CVE-2021-44228 and is also known as &#8220;Log4Shell&#8221;.&lt;/p&gt;
&lt;p&gt;On 2021-12-14 an additional denial of service vulnerability (CVE-2021-45046) was published rendering the initial mitigations and fix in version 2.15.0 as incomplete under certain non-default configurations. Log4j versions 2.16.0 and 2.12.2 are supposed to fix both vulnerabilities.&lt;/p&gt;
&lt;p&gt;On 2021-12-17, CVE-2021-45046 was reclassified with an increased CVSS base score (from 3.7 to 9.0). The potential impact of CVE-2021-45046 now includes - besides denial of service - also information disclosure and local (and potential remote) code execution.&lt;/p&gt;
&lt;p&gt;Siemens is currently investigating to determine which products are affected and is continuously updating this advisory as more information becomes available. See section Additional Information for more details regarding the investigation status.&lt;/p&gt;
&lt;p&gt;Note: an additional but unrelated vulnerability, CVE-2021-45105, was published for Apache Log4j, the impact of which is documented in SSA-501673: &lt;a href="https://cert-portal.siemens.com/productcert/pdf/ssa-501673.pdf" class="uri"&gt;https://cert-portal.siemens.com/productcert/pdf/ssa-501673.pdf&lt;/a&gt;.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-661247.pdf</id>
    <title>SSA-661247 V1.9 (Last Update: 2021-12-23): Apache Log4j Vulnerabilities (Log4Shell, CVE-2021-44228, CVE-2021-45046) - Impact to Siemens Products</title>
    <updated>2021-12-23T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-661247.pdf" rel="alternate"/>
    <summary>&lt;p&gt;On 2021-12-09, a vulnerability in Apache Log4j (a logging tool used in many Java-based applications) was disclosed, that could allow remote unauthenticated attackers to execute code on vulnerable systems. The vulnerability is tracked as CVE-2021-44228 and is also known as &#8220;Log4Shell&#8221;.&lt;/p&gt;
&lt;p&gt;On 2021-12-14 an additional denial of service vulnerability (CVE-2021-45046) was published rendering the initial mitigations and fix in version 2.15.0 as incomplete under certain non-default configurations. Log4j versions 2.16.0 and 2.12.2 are supposed to fix both vulnerabilities.&lt;/p&gt;
&lt;p&gt;On 2021-12-17, CVE-2021-45046 was reclassified with an increased CVSS base score (from 3.7 to 9.0). The potential impact of CVE-2021-45046 now includes - besides denial of service - also information disclosure and local (and potential remote) code execution.&lt;/p&gt;
&lt;p&gt;Siemens is currently investigating to determine which products are affected and is continuously updating this advisory as more information becomes available. See section Additional Information for more details regarding the investigation status.&lt;/p&gt;
&lt;p&gt;Note: an additional but unrelated vulnerability, CVE-2021-45105, was published for Apache Log4j, the impact of which is documented in SSA-501673: &lt;a href="https://cert-portal.siemens.com/productcert/pdf/ssa-501673.pdf" class="uri"&gt;https://cert-portal.siemens.com/productcert/pdf/ssa-501673.pdf&lt;/a&gt;.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-479842.pdf</id>
    <title>SSA-479842 V1.1 (Last Update: 2021-12-23): Apache Log4j Vulnerabilities - Impact to Siemens Energy Sensformer / Sensgear (Platform, Basic and Advanced)</title>
    <updated>2021-12-23T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-479842.pdf" rel="alternate"/>
    <summary>&lt;p&gt;On 2021-12-09, a vulnerability in Apache Log4j (a logging tool used in many Java-based applications) was disclosed, that could allow remote unauthenticated attackers to execute code on vulnerable systems. The vulnerability is tracked as CVE-2021-44228 and is also known as &#8220;Log4Shell&#8221;.&lt;/p&gt;
&lt;p&gt;On 2021-12-14 an additional denial of service vulnerability (CVE-2021-45046) was published rendering the initial mitigations and fix in version 2.15.0 as incomplete under certain non-default configurations. Log4j versions 2.16.0 and 2.12.2 are supposed to fix both vulnerabilities.&lt;/p&gt;
&lt;p&gt;On 2021-12-17, CVE-2021-45046 was reclassified with an increased CVSS base score (from 3.7 to 9.0). The potential impact of CVE-2021-45046 now includes - besides denial of service - also information disclosure and local (and potential remote) code execution. Furthermore, one additional denial of service vulnerability, CVE-2021-45105, was disclosed.&lt;/p&gt;
&lt;p&gt;The Siemens Energy Sensformer / Sensgear cloud service was affected by these vulnerabilities and has remediated them. No user actions are necessary.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-661247.pdf</id>
    <title>SSA-661247 V1.8 (Last Update: 2021-12-22): Apache Log4j Vulnerabilities (Log4Shell, CVE-2021-44228, CVE-2021-45046) - Impact to Siemens Products</title>
    <updated>2021-12-22T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-661247.pdf" rel="alternate"/>
    <summary>&lt;p&gt;On 2021-12-09, a vulnerability in Apache Log4j (a logging tool used in many Java-based applications) was disclosed, that could allow remote unauthenticated attackers to execute code on vulnerable systems. The vulnerability is tracked as CVE-2021-44228 and is also known as &#8220;Log4Shell&#8221;.&lt;/p&gt;
&lt;p&gt;On 2021-12-14 an additional denial of service vulnerability (CVE-2021-45046) was published rendering the initial mitigations and fix in version 2.15.0 as incomplete under certain non-default configurations. Log4j versions 2.16.0 and 2.12.2 are supposed to fix both vulnerabilities.&lt;/p&gt;
&lt;p&gt;On 2021-12-17, CVE-2021-45046 was reclassified with an increased CVSS base score (from 3.7 to 9.0). The potential impact of CVE-2021-45046 now includes - besides denial of service - also information disclosure and local (and potential remote) code execution.&lt;/p&gt;
&lt;p&gt;Siemens is currently investigating to determine which products are affected and is continuously updating this advisory as more information becomes available. See section Additional Information for more details regarding the investigation status.&lt;/p&gt;
&lt;p&gt;Note: an additional but unrelated vulnerability, CVE-2021-45105, was published for Apache Log4j, the impact of which is documented in SSA-501673: &lt;a href="https://cert-portal.siemens.com/productcert/pdf/ssa-501673.pdf" class="uri"&gt;https://cert-portal.siemens.com/productcert/pdf/ssa-501673.pdf&lt;/a&gt;.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-661247.pdf</id>
    <title>SSA-661247 V1.7 (Last Update: 2021-12-21): Apache Log4j Vulnerabilities (Log4Shell, CVE-2021-44228, CVE-2021-45046) - Impact to Siemens Products</title>
    <updated>2021-12-21T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-661247.pdf" rel="alternate"/>
    <summary>&lt;p&gt;On 2021-12-09, a vulnerability in Apache Log4j (a logging tool used in many Java-based applications) was disclosed, that could allow remote unauthenticated attackers to execute code on vulnerable systems. The vulnerability is tracked as CVE-2021-44228 and is also known as &#8220;Log4Shell&#8221;.&lt;/p&gt;
&lt;p&gt;On 2021-12-14 an additional denial of service vulnerability (CVE-2021-45046) was published rendering the initial mitigations and fix in version 2.15.0 as incomplete under certain non-default configurations. Log4j versions 2.16.0 and 2.12.2 are supposed to fix both vulnerabilities.&lt;/p&gt;
&lt;p&gt;On 2021-12-17, CVE-2021-45046 was reclassified with an increased CVSS base score (from 3.7 to 9.0). The potential impact of CVE-2021-45046 now includes - besides denial of service - also information disclosure and local (and potential remote) code execution.&lt;/p&gt;
&lt;p&gt;Siemens is currently investigating to determine which products are affected and is continuously updating this advisory as more information becomes available. See section Additional Information for more details regarding the investigation status.&lt;/p&gt;
&lt;p&gt;Note: an additional but unrelated vulnerability, CVE-2021-45105, was published for Apache Log4j, the impact of which is documented in SSA-501673: &lt;a href="https://cert-portal.siemens.com/productcert/pdf/ssa-501673.pdf" class="uri"&gt;https://cert-portal.siemens.com/productcert/pdf/ssa-501673.pdf&lt;/a&gt;.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-479842.pdf</id>
    <title>SSA-479842 V1.0: Apache Log4j Vulnerabilities - Impact to Siemens Energy Sensformer (Platform, Basic and Advanced)</title>
    <updated>2021-12-21T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-479842.pdf" rel="alternate"/>
    <summary>&lt;p&gt;On 2021-12-09, a vulnerability in Apache Log4j (a logging tool used in many Java-based applications) was disclosed, that could allow remote unauthenticated attackers to execute code on vulnerable systems. The vulnerability is tracked as CVE-2021-44228 and is also known as &#8220;Log4Shell&#8221;.&lt;/p&gt;
&lt;p&gt;On 2021-12-14 an additional denial of service vulnerability (CVE-2021-45046) was published rendering the initial mitigations and fix in version 2.15.0 as incomplete under certain non-default configurations. Log4j versions 2.16.0 and 2.12.2 are supposed to fix both vulnerabilities.&lt;/p&gt;
&lt;p&gt;On 2021-12-17, CVE-2021-45046 was reclassified with an increased CVSS base score (from 3.7 to 9.0). The potential impact of CVE-2021-45046 now includes - besides denial of service - also information disclosure and local (and potential remote) code execution.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-661247.pdf</id>
    <title>SSA-661247 V1.6 (Last Update: 2021-12-20): Apache Log4j Vulnerabilities (Log4Shell, CVE-2021-44228, CVE-2021-45046) - Impact to Siemens Products</title>
    <updated>2021-12-20T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-661247.pdf" rel="alternate"/>
    <summary>&lt;p&gt;On 2021-12-09, a vulnerability in Apache Log4j (a logging tool used in many Java-based applications) was disclosed, that could allow remote unauthenticated attackers to execute code on vulnerable systems. The vulnerability is tracked as CVE-2021-44228 and is also known as &#8220;Log4Shell&#8221;.&lt;/p&gt;
&lt;p&gt;On 2021-12-14 an additional denial of service vulnerability (CVE-2021-45046) was published rendering the initial mitigations and fix in version 2.15.0 as incomplete under certain non-default configurations. Log4j versions 2.16.0 and 2.12.2 are supposed to fix both vulnerabilities.&lt;/p&gt;
&lt;p&gt;On 2021-12-17, CVE-2021-45046 was reclassified with an increased CVSS base score (from 3.7 to 9.0). The potential impact of CVE-2021-45046 now includes - besides denial of service - also information disclosure and local (and potential remote) code execution.&lt;/p&gt;
&lt;p&gt;Siemens is currently investigating to determine which products are affected and is continuously updating this advisory as more information becomes available. See section Additional Information for more details regarding the investigation status.&lt;/p&gt;
&lt;p&gt;Note: an additional but unrelated vulnerability, CVE-2021-45105, was published for Apache Log4j, the impact of which is documented in SSA-501673: &lt;a href="https://cert-portal.siemens.com/productcert/pdf/ssa-501673.pdf" class="uri"&gt;https://cert-portal.siemens.com/productcert/pdf/ssa-501673.pdf&lt;/a&gt;.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-397453.pdf</id>
    <title>SSA-397453 V1.0: Apache Log4j Vulnerabilities (Log4Shell, CVE-2021-44228, CVE-2021-45046) - Impact to Siemens Energy TraceAlertServerPLUS</title>
    <updated>2021-12-20T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-397453.pdf" rel="alternate"/>
    <summary>&lt;p&gt;On 2021-12-09, a vulnerability in Apache Log4j (a logging library used in many Java-based applications) was disclosed, that could allow remote unauthenticated attackers to execute code on vulnerable systems. The vulnerability is tracked as CVE-2021-44228 and is also known as &#8220;Log4Shell&#8221;.&lt;/p&gt;
&lt;p&gt;On 2021-12-14 an additional denial of service vulnerability (CVE-2021-45046) was published rendering the initial mitigations and fix in version 2.15.0 as incomplete under certain non-default configurations. Log4j versions 2.16.0 and 2.12.2 are supposed to fix both vulnerabilities.&lt;/p&gt;
&lt;p&gt;On 2021-12-17, CVE-2021-45046 was reclassified with an increased CVSS base score (from 3.7 to 9.0). The potential impact of CVE-2021-45046 now includes - besides denial of service - also information disclosure and local (and potential remote) code execution.&lt;/p&gt;
&lt;p&gt;Siemens Energy is preparing updates and recommends specific countermeasures for TraceAlertServerPLUS.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-661247.pdf</id>
    <title>SSA-661247 V1.5 (Last Update: 2021-12-19): Apache Log4j Vulnerabilities (Log4Shell, CVE-2021-44228, CVE-2021-45046) - Impact to Siemens Products</title>
    <updated>2021-12-19T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-661247.pdf" rel="alternate"/>
    <summary>&lt;p&gt;On 2021-12-09, a vulnerability in Apache Log4j (a logging tool used in many Java-based applications) was disclosed, that could allow remote unauthenticated attackers to execute code on vulnerable systems. The vulnerability is tracked as CVE-2021-44228 and is also known as &#8220;Log4Shell&#8221;.&lt;/p&gt;
&lt;p&gt;On 2021-12-14 an additional denial of service vulnerability (CVE-2021-45046) was published rendering the initial mitigations and fix in version 2.15.0 as incomplete under certain non-default configurations. Log4j versions 2.16.0 and 2.12.2 are supposed to fix both vulnerabilities.&lt;/p&gt;
&lt;p&gt;On 2021-12-17, CVE-2021-45046 was reclassified with an increased CVSS base score (from 3.7 to 9.0). The potential impact of CVE-2021-45046 now includes - besides denial of service - also information disclosure and local (and potential remote) code execution.&lt;/p&gt;
&lt;p&gt;Siemens is currently investigating to determine which products are affected and is continuously updating this advisory as more information becomes available. See section Additional Information for more details regarding the investigation status.&lt;/p&gt;
&lt;p&gt;Note: an additional but unrelated vulnerability, CVE-2021-45105, was published for Apache Log4j, the impact of which is documented in SSA-501673: &lt;a href="https://cert-portal.siemens.com/productcert/pdf/ssa-501673.pdf" class="uri"&gt;https://cert-portal.siemens.com/productcert/pdf/ssa-501673.pdf&lt;/a&gt;.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-501673.pdf</id>
    <title>SSA-501673 V1.0: Apache Log4j Denial of Service Vulnerability (CVE-2021-45105) - Impact to Siemens Products</title>
    <updated>2021-12-19T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-501673.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Apache Log4j2 versions 2.0-alpha1 through 2.16.0 contain a vulnerability (CVE-2021-45105) that could allow attackers to cause a denial of service condition in affected applications [1].&lt;/p&gt;
&lt;p&gt;This advisory informs about the impact of CVE-2021-45105 to Siemens products and the corresponding remediation and mitigation measures. The vulnerability is different from the JNDI lookup vulnerabilities, the impact of which is documented in SSA-661247 [2].&lt;/p&gt;
&lt;p&gt;Currently, no products vulnerable to CVE-2021-45105 have been identified.&lt;/p&gt;
&lt;p&gt;Siemens is investigating to determine which products are affected and is continuously updating this advisory as more information becomes available. See section Additional Information for more details regarding the investigation status.&lt;/p&gt;
&lt;p&gt;[1] &lt;a href="https://logging.apache.org/log4j/2.x/security.html" class="uri"&gt;https://logging.apache.org/log4j/2.x/security.html&lt;/a&gt;&lt;/p&gt;
&lt;p&gt;[2] &lt;a href="https://cert-portal.siemens.com/productcert/pdf/ssa-661247.pdf" class="uri"&gt;https://cert-portal.siemens.com/productcert/pdf/ssa-661247.pdf&lt;/a&gt;&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-661247.pdf</id>
    <title>SSA-661247 V1.5 (Last Update: 2021-12-19): Apache Log4j Vulnerabilities (Log4Shell, CVE-2021-44228, CVE-2021-45046) - Impact to Siemens Products</title>
    <updated>2021-12-19T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-661247.pdf" rel="alternate"/>
    <summary>&lt;p&gt;On 2021-12-09, a vulnerability in Apache Log4j (a logging tool used in many Java-based applications) was disclosed, that could allow remote unauthenticated attackers to execute code on vulnerable systems. The vulnerability is tracked as CVE-2021-44228 and is also known as &#8220;Log4Shell&#8221;.&lt;/p&gt;
&lt;p&gt;On 2021-12-14 an additional denial of service vulnerability (CVE-2021-45046) was published rendering the initial mitigations and fix in version 2.15.0 as incomplete under certain non-default configurations. Log4j versions 2.16.0 and 2.12.2 are supposed to fix both vulnerabilities.&lt;/p&gt;
&lt;p&gt;On 2021-12-17, CVE-2021-45046 was reclassified with an increased CVSS base score (from 3.7 to 9.0). The potential impact of CVE-2021-45046 now includes - besides denial of service - also information disclosure and local (and potential remote) code execution.&lt;/p&gt;
&lt;p&gt;Siemens is currently investigating to determine which products are affected and is continuously updating this advisory as more information becomes available. See section Additional Information for more details regarding the investigation status.&lt;/p&gt;
&lt;p&gt;Note: an additional but unrelated vulnerability, CVE-2021-45105, was published for Apache Log4j, the impact of which is documented in SSA-501673: &lt;a href="https://cert-portal.siemens.com/productcert/pdf/ssa-501673.pdf" class="uri"&gt;https://cert-portal.siemens.com/productcert/pdf/ssa-501673.pdf&lt;/a&gt;.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-501673.pdf</id>
    <title>SSA-501673 V1.0: Apache Log4j Denial of Service Vulnerability (CVE-2021-45105) - Impact to Siemens Products</title>
    <updated>2021-12-19T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-501673.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Apache Log4j2 versions 2.0-alpha1 through 2.16.0 contain a vulnerability (CVE-2021-45105) that could allow attackers to cause a denial of service condition in affected applications [1].&lt;/p&gt;
&lt;p&gt;This advisory informs about the impact of CVE-2021-45105 to Siemens products and the corresponding remediation and mitigation measures. The vulnerability is different from the JNDI lookup vulnerabilities, the impact of which is documented in SSA-661247 [2].&lt;/p&gt;
&lt;p&gt;Currently, no products vulnerable to CVE-2021-45105 have been identified.&lt;/p&gt;
&lt;p&gt;Siemens is investigating to determine which products are affected and is continuously updating this advisory as more information becomes available. See section Additional Information for more details regarding the investigation status.&lt;/p&gt;
&lt;p&gt;[1] &lt;a href="https://logging.apache.org/log4j/2.x/security.html" class="uri"&gt;https://logging.apache.org/log4j/2.x/security.html&lt;/a&gt;&lt;/p&gt;
&lt;p&gt;[2] &lt;a href="https://cert-portal.siemens.com/productcert/pdf/ssa-661247.pdf" class="uri"&gt;https://cert-portal.siemens.com/productcert/pdf/ssa-661247.pdf&lt;/a&gt;&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-661247.pdf</id>
    <title>SSA-661247 V1.4 (Last Update: 2021-12-18): Apache Log4j Vulnerabilities (Log4Shell, CVE-2021-44228, CVE-2021-45046) - Impact to Siemens Products</title>
    <updated>2021-12-18T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-661247.pdf" rel="alternate"/>
    <summary>&lt;p&gt;On 2021-12-09, a vulnerability in Apache Log4j (a logging tool used in many Java-based applications) was disclosed, that could allow remote unauthenticated attackers to execute code on vulnerable systems. The vulnerability is tracked as CVE-2021-44228 and is also known as &#8220;Log4Shell&#8221;.&lt;/p&gt;
&lt;p&gt;On 2021-12-14 an additional denial of service vulnerability (CVE-2021-45046) was published rendering the initial mitigations and fix in version 2.15.0 as incomplete under certain non-default configurations. Log4j versions 2.16.0 and 2.12.2 are supposed to fix both vulnerabilities.&lt;/p&gt;
&lt;p&gt;On 2021-12-17, CVE-2021-45046 was reclassified with an increased CVSS base score (from 3.7 to 9.0). The potential impact of CVE-2021-45046 now includes - besides denial of service - also information disclosure and local (and potential remote) code execution.&lt;/p&gt;
&lt;p&gt;Siemens is currently investigating to determine which products are affected and is continuously updating this advisory as more information becomes available. See section Additional Information for more details regarding the investigation status.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-661247.pdf</id>
    <title>SSA-661247 V1.3 (Last Update: 2021-12-17): Apache Log4j Vulnerabilities (Log4Shell, CVE-2021-44228, CVE-2021-45046) - Impact to Siemens Products</title>
    <updated>2021-12-17T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-661247.pdf" rel="alternate"/>
    <summary>&lt;p&gt;On 2021-12-09, a vulnerability in Apache Log4j (a logging tool used in many Java-based applications) was disclosed, that could allow remote unauthenticated attackers to execute code on vulnerable systems. The vulnerability is tracked as CVE-2021-44228 and is also known as &#8220;Log4Shell&#8221;.&lt;/p&gt;
&lt;p&gt;On 2021-12-14 an additional denial of service vulnerability (CVE-2021-45046) was published rendering the initial mitigations and fix in version 2.15.0 as incomplete under certain non-default configurations. Log4j versions 2.16.0 and 2.12.2 are supposed to fix both vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens is currently investigating to determine which products are affected and is continuously updating this advisory as more information becomes available. See section Additional Information for more details regarding the investigation status.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-714170.pdf</id>
    <title>SSA-714170 V1.0: Apache Log4j Vulnerabilities (Log4Shell, CVE-2021-44228, CVE-2021-45046) - Impact to SPPA-T3000</title>
    <updated>2021-12-16T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-714170.pdf" rel="alternate"/>
    <summary>&lt;p&gt;On 2021-12-09, a vulnerability in Apache Log4j (a logging tool used in many Java-based applications) was disclosed, that could allow remote unauthenticated attackers to execute code on vulnerable systems. The vulnerability is tracked as CVE-2021-44228 and is also known as &#8220;Log4Shell&#8221;.&lt;/p&gt;
&lt;p&gt;On 2021-12-14 an additional denial of service vulnerability (CVE-2021-45046) was published rendering the initial mitigations and fix in version 2.15.0 as incomplete under certain non-default configurations. Log4j versions 2.16.0 and 2.12.2 are supposed to fix both vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens Energy is preparing updates and recommends specific countermeasures.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-661247.pdf</id>
    <title>SSA-661247 V1.2 (Last Update: 2021-12-16): Apache Log4j Vulnerabilities (Log4Shell, CVE-2021-44228, CVE-2021-45046) - Impact to Siemens Products</title>
    <updated>2021-12-16T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-661247.pdf" rel="alternate"/>
    <summary>&lt;p&gt;On 2021-12-09, a vulnerability in Apache Log4j (a logging tool used in many Java-based applications) was disclosed, that could allow remote unauthenticated attackers to execute code on vulnerable systems. The vulnerability is tracked as CVE-2021-44228 and is also known as &#8220;Log4Shell&#8221;.&lt;/p&gt;
&lt;p&gt;On 2021-12-14 an additional denial of service vulnerability (CVE-2021-45046) was published rendering the initial mitigations and fix in version 2.15.0 as incomplete under certain non-default configurations. Log4j versions 2.16.0 and 2.12.2 are supposed to fix both vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens is currently investigating to determine which products are affected and is continuously updating this advisory as more information becomes available. See section Additional Information for more details regarding the investigation status.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-661247.pdf</id>
    <title>SSA-661247 V1.1 (Last Update: 2021-12-15): Apache Log4j Vulnerabilities (Log4Shell, CVE-2021-44228, CVE-2021-45046) - Impact to Siemens Products</title>
    <updated>2021-12-15T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-661247.pdf" rel="alternate"/>
    <summary>&lt;p&gt;On 2021-12-09, a vulnerability in Apache Log4j (a logging tool used in many Java-based applications) was disclosed, that could allow remote unauthenticated attackers to execute code on vulnerable systems. The vulnerability is tracked as CVE-2021-44228 and is also known as &#8220;Log4Shell&#8221;.&lt;/p&gt;
&lt;p&gt;On 2021-12-14 an additional denial of service vulnerability (CVE-2021-45046) was published rendering the initial mitigations and fix in version 2.15.0 as incomplete under certain non-default configurations. Log4j versions 2.16.0 and 2.12.2 are supposed to fix both vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens is currently investigating to determine which products are affected and is continuously updating this advisory as more information becomes available. See section Additional Information for more details regarding the investigation status.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-133772.pdf</id>
    <title>SSA-133772 V1.0: Zip Path Traversal Vulnerability in Teamcenter Active Workspace</title>
    <updated>2021-12-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-133772.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A zip path traversal vulnerability in Teamcenter Active Workspace could allow an attacker to achieve remote code execution.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-160202.pdf</id>
    <title>SSA-160202 V1.0: Multiple Access Control Vulnerabilities in SiPass Integrated</title>
    <updated>2021-12-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-160202.pdf" rel="alternate"/>
    <summary>&lt;p&gt;SiPass integrated contains multiple vulnerabilities that could allow an unauthenticated remote attacker to access or modify several internal application resources.&lt;/p&gt;
&lt;p&gt;Siemens has released a tool, &#8220;SiPass integrated Component Manager&#8221;, to remediate the vulnerabilities on all maintained and supported versions of SiPass integrated and recommends to apply this tool.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-161331.pdf</id>
    <title>SSA-161331 V1.0: Scene File Parsing Vulnerability in Simcenter STAR-CCM+ Viewer before V2021.3.1</title>
    <updated>2021-12-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-161331.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Siemens Simcenter STAR-CCM+ Viewer is affected by a vulnerability that could be triggered when the application reads scene (.sce) files. If a user is tricked to open a malicious file with the affected application, this could lead to a crash, and potentially also to arbitrary code execution or data extraction on the target host system.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for Simcenter STAR-CCM+ Viewer and recommends to update to the latest version to fix the vulnerability. Siemens recommends to avoid opening of untrusted files from unknown sources.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-199605.pdf</id>
    <title>SSA-199605 V1.0: Arbitrary File Download Vulnerability in SIMATIC eaSie PCS 7 Skill Package</title>
    <updated>2021-12-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-199605.pdf" rel="alternate"/>
    <summary>&lt;p&gt;SIMATIC eaSie PCS 7 Skill Package contains a path traversal vulnerability that could allow an authenticated remote attacker to read arbitrary files for the application server.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for the SIMATIC eaSie PCS 7 Skill Package and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-352143.pdf</id>
    <title>SSA-352143 V1.0: Multiple File Parsing Vulnerabilities in JTTK before V11.0.3.0 and JT Utilities before V13.0.3.0</title>
    <updated>2021-12-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-352143.pdf" rel="alternate"/>
    <summary>&lt;p&gt;JT Open Toolkit (JTTK) before V11.0.3.0 contains multiple vulnerabilities that could be triggered when the affected product reads a maliciously crafted JT file. These vulnerabilities also affects JT Utilities before V13.0.3.0. If a user is tricked to open a malicious file with any of the affected products, this could lead the application to crash or potentially lead to arbitrary code execution.&lt;/p&gt;
&lt;p&gt;Siemens recommends to update to the latest versions and to limit opening of untrusted files from unknown sources in the affected products.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-390195.pdf</id>
    <title>SSA-390195 V1.0: LibVNC Vulnerabilities in SIMATIC ITC Products</title>
    <updated>2021-12-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-390195.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Multiple LibVNC vulnerabilities in the affected products listed below could allow remote code execution, information disclosure and Denial-of-Service attacks under certain conditions.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-396621.pdf</id>
    <title>SSA-396621 V1.0: Multiple File Parsing Vulnerabilities in JTTK before V10.8.1.1 and JT Utilities before V12.8.1.1</title>
    <updated>2021-12-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-396621.pdf" rel="alternate"/>
    <summary>&lt;p&gt;JT Open Toolkit (JTTK) before V10.8.1.1 contains multiple vulnerabilities that could be triggered when it reads a maliciously crafted JT file. These vulnerabilities also affects JT Utilities before V12.8.1.1. If a user is tricked to open a malicious file with any of the affected products, this could lead the application to crash or potentially lead to arbitrary code execution.&lt;/p&gt;
&lt;p&gt;Siemens recommends to update to the latest versions and to limit opening of untrusted files from unknown sources in the affected products.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-400332.pdf</id>
    <title>SSA-400332 V1.0: Insufficient Design IP Protection in IEEE 1735 Recommended Practice - Impact to Questa and ModelSim</title>
    <updated>2021-12-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-400332.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Recent security research identifies weaknesses in the IEEE 1735 recommended practice for encryption of Design IP, which could allow a sophisticated attacker access to unencrypted Design IP data in IEEE 1735-compliant products. This advisory addresses the specific details for the affected Siemens software products: Questa and ModelSim simulators.&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends specific countermeasures for Questa and ModelSim.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-463116.pdf</id>
    <title>SSA-463116 V1.0: Multiple Access Control Vulnerabilities in Siveillance Identity before V1.6.284.0</title>
    <updated>2021-12-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-463116.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Siveillance Identity contains multiple vulnerabilities that could allow an unauthenticated remote attacker to access or modify several internal application resources.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-496292.pdf</id>
    <title>SSA-496292 V1.0: Remote Code Execution Vulnerability in POWER METER SICAM Q100</title>
    <updated>2021-12-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-496292.pdf" rel="alternate"/>
    <summary>&lt;p&gt;POWER METER SICAM Q100 contains a vulnerability that could allow an attacker to remotely execute code.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-523250.pdf</id>
    <title>SSA-523250 V1.0: Improper Certificate Validation Vulnerability in SINUMERIK Edge</title>
    <updated>2021-12-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-523250.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability was found in SINUMERIK Edge that could allow an attacker to spoof a trusted entity by interfering in the communication path between the client and the intended server.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for the SINUMERIK Edge and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-595101.pdf</id>
    <title>SSA-595101 V1.0: Multiple File Parsing Vulnerabilities in JT2Go and Teamcenter Visualization before V13.2.0.5</title>
    <updated>2021-12-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-595101.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Siemens has released version V13.2.0.5 for JT2Go and Teamcenter Visualization to fix multiple vulnerabilities that could be triggered when the products read maliciously crafted files in different file formats (PDF, JT, TIFF, CGM and TIF). If a user is tricked to open a malicious file with any of the affected products, this could lead the application to crash or potentially lead to arbitrary code execution.&lt;/p&gt;
&lt;p&gt;Siemens recommends to update to the latest versions and to limit opening of untrusted files from unknown sources in the affected products.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-620288.pdf</id>
    <title>SSA-620288 V1.0: Multiple Vulnerabilities (NUCLEUS:13) in CAPITAL VSTAR</title>
    <updated>2021-12-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-620288.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities (also known as &#8220;NUCLEUS:13&#8221;) have be identified in the Nucleus RTOS (real-time operating system) and reported in the Siemens Security Advisory SSA-044112: &lt;a href="https://cert-portal.siemens.com/productcert/pdf/ssa-044112.pdf" class="uri"&gt;https://cert-portal.siemens.com/productcert/pdf/ssa-044112.pdf&lt;/a&gt;.&lt;/p&gt;
&lt;p&gt;CAPITAL VSTAR uses an affected version of the Nucleus software and inherently contains several of these vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens recommends specific countermeasures for products where updates are not available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-802578.pdf</id>
    <title>SSA-802578 V1.0: Multiple File Parsing Vulnerabilities in JTTK before V11.1.1.0 and JT Utilities before V13.1.1.0</title>
    <updated>2021-12-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-802578.pdf" rel="alternate"/>
    <summary>&lt;p&gt;JT Open Toolkit (JTTK) before V11.1.1.0 contains multiple vulnerabilities that could be triggered when it reads a maliciously crafted JT file. These vulnerabilities also affects JT Utilities before V13.1.1.0. If a user is tricked to open a malicious JT file with any of the affected products, this could lead the application to crash or potentially lead to arbitrary code execution.&lt;/p&gt;
&lt;p&gt;Siemens recommends to update to the latest versions and to limit opening of untrusted files from unknown sources in the affected products.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-044112.pdf</id>
    <title>SSA-044112 V1.1 (Last Update: 2021-12-14): Multiple Vulnerabilities (NUCLEUS:13) in the TCP/IP Stack of Nucleus RTOS</title>
    <updated>2021-12-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-044112.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The TCP/IP stack and related services (FTP, TFTP) of the networking component (Nucleus NET) in Nucleus Real-Time Operating System (RTOS) contain several vulnerabilities, also known as &#8220;NUCLEUS:13&#8221; and as documented below.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens recommends countermeasures for products where updates are not available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-114589.pdf</id>
    <title>SSA-114589 V1.1 (Last Update: 2021-12-14): Multiple Vulnerabilities in Nucleus RTOS based APOGEE, TALON and Desigo PXC/PXM Products</title>
    <updated>2021-12-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-114589.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities (also known as &#8220;NUCLEUS:13&#8221;) have be identified in the Nucleus RTOS (real-time operating system) and reported in the Siemens Security Advisory SSA-044112: &lt;a href="https://cert-portal.siemens.com/productcert/pdf/ssa-044112.pdf" class="uri"&gt;https://cert-portal.siemens.com/productcert/pdf/ssa-044112.pdf&lt;/a&gt;.&lt;/p&gt;
&lt;p&gt;The products listed below use affected versions of the Nucleus software and inherently contain these vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-324955.pdf</id>
    <title>SSA-324955 V1.7 (Last Update: 2021-12-14): SAD DNS Attack in Linux Based Products</title>
    <updated>2021-12-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-324955.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability made public under the name SAD DNS affects Domain Name System resolvers due to a vulnerability in the Linux kernel when handling ICMP packets. The Siemens products which are affected are listed below. For more information please see &lt;a href="https://www.saddns.net/" class="uri"&gt;https://www.saddns.net/&lt;/a&gt;.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-549234.pdf</id>
    <title>SSA-549234 V1.1 (Last Update: 2021-12-14): Denial-of-Service Vulnerability in SIMATIC NET CP Modules</title>
    <updated>2021-12-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-549234.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A denial of service vulnerability was identified in different types of Communication Processors. An attacker could exploit this vulnerability causing the device to become un-operational until the device is restarted.&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-580693.pdf</id>
    <title>SSA-580693 V1.1 (Last Update: 2021-12-14): WIBU Systems CodeMeter Runtime Denial-of-Service Vulnerability in Siemens Products</title>
    <updated>2021-12-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-580693.pdf" rel="alternate"/>
    <summary>&lt;p&gt;WIBU Systems published information about a denial-of-service vulnerability and an associated fix release version of CodeMeter Runtime, a product provided by WIBU Systems and used in several Siemens products for license management.&lt;/p&gt;
&lt;p&gt;The vulnerability is described in the section &#8220;Vulnerability Classification&#8221; below and got assigned the CVE ID CVE-2021-41057. Successful exploitation of this vulnerability could allow an attacker to crash the CodeMeter Runtime Server (i.e., CodeMeter.exe), which could cause a denial-of-service condition for the affected Siemens product.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-629512.pdf</id>
    <title>SSA-629512 V1.3 (Last Update: 2021-12-14): Local Privilege Escalation Vulnerability in TIA Portal</title>
    <updated>2021-12-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-629512.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest updates for TIA Portal fix a vulnerability that could allow a local attacker to execute arbitrary code with SYSTEM privileges.&lt;/p&gt;
&lt;p&gt;Update: The previously provided fixes only correctly set the permissions on English Windows versions.&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-772220.pdf</id>
    <title>SSA-772220 V1.4 (Last Update: 2021-12-14): OpenSSL Vulnerabilities in Industrial Products</title>
    <updated>2021-12-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-772220.pdf" rel="alternate"/>
    <summary>&lt;p&gt;OpenSSL has published a security advisory [0] about a vulnerability in OpenSSL versions 1.1.1 &amp;lt; 1.1.1k, that allows an unauthenticated attacker to cause a Denial-of-Service (DoS) if a maliciously crafted renegotiation message is sent.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
&lt;p&gt;[0] &lt;a href="https://www.openssl.org/news/secadv/20210325.txt" class="uri"&gt;https://www.openssl.org/news/secadv/20210325.txt&lt;/a&gt;&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-661247.pdf</id>
    <title>SSA-661247 V1.0: Apache Log4j Vulnerability (CVE-2021-44228, Log4Shell) - Impact to Siemens Products</title>
    <updated>2021-12-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-661247.pdf" rel="alternate"/>
    <summary>&lt;p&gt;On 2021-12-09, a vulnerability in Apache Log4j (a logging tool used in many Java-based applications) was disclosed, that could allow remote unauthenticated attackers to execute code on vulnerable systems. The vulnerability is tracked as CVE-2021-44228 and is also known as &#8220;Log4Shell&#8221;.&lt;/p&gt;
&lt;p&gt;Siemens is currently investigating to determine which products are affected and is continuously updating this advisory as more information becomes available. See section Additional Information for more details regarding the investigation status.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-044112.pdf</id>
    <title>SSA-044112 V1.0: Multiple Vulnerabilities (NUCLEUS:13) in the TCP/IP Stack of Nucleus RTOS</title>
    <updated>2021-11-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-044112.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The TCP/IP stack and related services (FTP, TFTP) of the networking component (Nucleus NET) in Nucleus Real-Time Operating System (RTOS) contain several vulnerabilities, also known as &#8220;NUCLEUS:13&#8221; and as documented below.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens recommends countermeasures for products where updates are not available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-114589.pdf</id>
    <title>SSA-114589 V1.0: Multiple Vulnerabilities in Nucleus RTOS based APOGEE and TALON Products</title>
    <updated>2021-11-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-114589.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities (also known as &#8220;NUCLEUS:13&#8221;) have be identified in the Nucleus RTOS (real-time operating system) and reported in the Siemens Security Advisory SSA-044112: &lt;a href="https://cert-portal.siemens.com/productcert/pdf/ssa-044112.pdf" class="uri"&gt;https://cert-portal.siemens.com/productcert/pdf/ssa-044112.pdf&lt;/a&gt;.&lt;/p&gt;
&lt;p&gt;The products listed below use affected versions of the Nucleus software and inherently contain these vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-145157.pdf</id>
    <title>SSA-145157 V1.0: Multiple Vulnerabilities in SIMATIC RTLS Locating Manager before V2.12</title>
    <updated>2021-11-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-145157.pdf" rel="alternate"/>
    <summary>&lt;p&gt;SIMATIC RTLS Locating Manager before V2.12 contains multiple vulnerabilities that could allow an attacker to read sensitive data or trigger a denial-of-service condition of the application service.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for the SIMATIC RTLS Locating Manager and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-328042.pdf</id>
    <title>SSA-328042 V1.0: File Parsing Vulnerabilities in OBJ Translator in NX</title>
    <updated>2021-11-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-328042.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Siemens NX is affected by two vulnerabilities that could be triggered when the application reads OBJ files. If a user is tricked to open a malicious file with the affected application, this could lead to an access violation, and potentially also to arbitrary code execution on the target host system.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the NX and recommends to update to the latest version. Siemens recommends to avoid opening of untrusted files from unknown sources.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-338732.pdf</id>
    <title>SSA-338732 V1.0: Information Disclosure Vulnerability in Mendix</title>
    <updated>2021-11-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-338732.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Applications built with affected versions of Mendix Studio Pro do not prevent file documents from being cached when files are opened or downloaded using a browser. This could allow a local attacker to read those documents by exploring the browser cache.&lt;/p&gt;
&lt;p&gt;Mendix has released updates for the affected product lines, recommends to update to the latest versions and to redeploy the applications.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-537983.pdf</id>
    <title>SSA-537983 V1.0: Local Code Execution Vulnerability in SENTRON powermanager V3</title>
    <updated>2021-11-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-537983.pdf" rel="alternate"/>
    <summary>&lt;p&gt;SENTRON powermanager V3 is affected by a vulnerability that could allow a local attacker to inject arbitrary code and escalate privileges.&lt;/p&gt;
&lt;p&gt;Siemens has released a security patch for SENTRON powermanager V3.6 HF1 and recommends to update to the latest version and apply this patch.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-580693.pdf</id>
    <title>SSA-580693 V1.0: WIBU Systems CodeMeter Runtime Denial-of-Service Vulnerability in Siemens Products</title>
    <updated>2021-11-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-580693.pdf" rel="alternate"/>
    <summary>&lt;p&gt;WIBU Systems published information about a denial-of-service vulnerability and an associated fix release version of CodeMeter Runtime, a product provided by WIBU Systems and used in several Siemens products for license management.&lt;/p&gt;
&lt;p&gt;The vulnerability is described in the section &#8220;</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-703715.pdf</id>
    <title>SSA-703715 V1.0: Information Disclosure Vulnerability in Climatix POL909 (AWM)</title>
    <updated>2021-11-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-703715.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Climatix POL909 (AWM module) contains an information disclosure vulnerability could allow an attacker in a man-in-the-middle position to read sensitive data, such as administrator credentials, or modify data in transit.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for Climatix POL909 (AWM module) and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-740908.pdf</id>
    <title>SSA-740908 V1.0: File Parsing Vulnerabilities in JT Translator in NX</title>
    <updated>2021-11-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-740908.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Siemens NX is affected by two vulnerabilities that could be triggered when the application reads JT files. If a user is tricked to open a malicious file with the affected application, this could lead to an access violation, and potentially also to arbitrary code execution on the target host system.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for the NX 1980 Series and recommends to update to the latest version. Siemens recommends to avoid opening of untrusted files from unknown sources.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-755517.pdf</id>
    <title>SSA-755517 V1.0: Path Traversal Vulnerability in Siveillance Video DLNA Server</title>
    <updated>2021-11-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-755517.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Siemens has released hotfixes for Siveillance Video DLNA Server, which fix a path traversal vulnerability that could allow an authenticated remote attacker to access sensitive information on the DLNA server.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the DLNA server and recommends to apply the update on all installations where DLNA server used.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-779699.pdf</id>
    <title>SSA-779699 V1.0: Two Incorrect Authorization Vulnerabilities in Mendix</title>
    <updated>2021-11-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-779699.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Applications built with affected versions of Mendix Studio Pro do not properly control read or write access for certain client actions. This could allow authenticated attackers to manipulate the content of System.FileDocument objects or to retrieve the changedDate attribute of arbitrary objects.&lt;/p&gt;
&lt;p&gt;Mendix has released updates for the affected product lines, recommends to update to the latest versions and to redeploy the applications.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-840188.pdf</id>
    <title>SSA-840188 V1.0: Multiple Vulnerabilities in SIMATIC WinCC Affecting Other SIMATIC Software Products</title>
    <updated>2021-11-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-840188.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities were found in SIMATIC WinCC that ultimately could allow local attackers to escalate privileges and read, write or delete critical files.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-917476.pdf</id>
    <title>SSA-917476 V1.0: Multiple Vulnerabilities in SCALANCE W1750D</title>
    <updated>2021-11-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-917476.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The Scalance W1750D device contains multiple vulnerabilities that could allow an attacker to execute code on the affected device(s), read arbitrary files, or create a denial-of-service condition.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for the SCALANCE W1750D and recommends to update to the latest version. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-185699.pdf</id>
    <title>SSA-185699 V1.1 (Last Update: 2021-11-09): Out of Bounds Write Vulnerabilities (NAME:WRECK) in the DNS Module of Nucleus RTOS</title>
    <updated>2021-11-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-185699.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Security researchers discovered and disclosed 9 vulnerabilities in several DNS implementations, also known as &#8220;NAME:WRECK&#8221; vulnerabilities. The vulnerabilities described in this advisory are from this set.&lt;/p&gt;
&lt;p&gt;The DNS client of the networking component (Nucleus NET) in Nucleus Real-Time Operating System (RTOS) contains two out of bounds write vulnerabilities in the handling of DNS responses that could allow an attacker to cause a denial-of-service condition or to remotely execute code.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where updates are not available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-201384.pdf</id>
    <title>SSA-201384 V1.1 (Last Update: 2021-11-09): Predictable UDP Port Number Vulnerability (NAME:WRECK) in the DNS Module of Nucleus RTOS</title>
    <updated>2021-11-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-201384.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Security researchers discovered and disclosed 9 vulnerabilities in several DNS implementations, also known as &#8220;NAME:WRECK&#8221; vulnerabilities. The vulnerability described in this advisory is from this set.&lt;/p&gt;
&lt;p&gt;The DNS client of of the networking component (Nucleus NET) in Nucleus Real-Time Operating System (RTOS) contains a vulnerability related to the handling of UDP port numbers in DNS requests that could allow an attacker to poison the DNS cache or spoof DNS resolving.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where updates are not available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-248289.pdf</id>
    <title>SSA-248289 V1.1 (Last Update: 2021-11-09): Denial of Service Vulnerabilities in the IPv6 Stack of Nucleus RTOS</title>
    <updated>2021-11-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-248289.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The IPv6 stack of the networking component (Nucleus NET) in Nucleus Real-Time Operating System (RTOS) contains two vulnerabilities when processing IPv6 headers which could allow an attacker to cause a denial of service condition.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens recommends countermeasures for products where updates are not available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-312271.pdf</id>
    <title>SSA-312271 V1.9 (Last Update: 2021-11-09): Unquoted Search Path Vulnerabilities in Windows-based Industrial Software Applications</title>
    <updated>2021-11-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-312271.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Several industrial products as listed below contain a local privilege escalation vulnerabilities that could allow authorized local users with administrative privileges to execute custom code with SYSTEM level privileges.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-324955.pdf</id>
    <title>SSA-324955 V1.6 (Last Update: 2021-11-09): SAD DNS Attack in Linux Based Products</title>
    <updated>2021-11-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-324955.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability made public under the name SAD DNS affects Domain Name System resolvers due to a vulnerability in the Linux kernel when handling ICMP packets. The Siemens products which are affected are listed below. For more information please see &lt;a href="https://www.saddns.net/" class="uri"&gt;https://www.saddns.net/&lt;/a&gt;.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-362164.pdf</id>
    <title>SSA-362164 V1.1 (Last Update: 2021-11-09): Predictable Initial Sequence Numbers in the TCP/IP Stack of Nucleus RTOS</title>
    <updated>2021-11-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-362164.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The networking component (Nucleus NET) in Nucleus Real-Time Operating System (RTOS) use Initial Sequence Numbers for TCP-Sessions that are predictable.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where updates are not available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssb-439005.pdf</id>
    <title>SSB-439005 V3.9 (Last Update: 2021-11-09): Vulnerabilities in the additional GNU/Linux subsystem of the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP</title>
    <updated>2021-11-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssb-439005.pdf" rel="alternate"/>
    <summary>
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-675303.pdf</id>
    <title>SSA-675303 V1.2 (Last Update: 2021-11-09): WIBU Systems CodeMeter Runtime Vulnerabilities in Siemens Products</title>
    <updated>2021-11-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-675303.pdf" rel="alternate"/>
    <summary>&lt;p&gt;WIBU Systems published information about two vulnerabilities and an associated fix release version of CodeMeter Runtime, a product provided by WIBU Systems and used in several Siemens products for license management.&lt;/p&gt;
&lt;p&gt;The vulnerabilities are described in the section &#8220;Vulnerability Classification&#8221; below and got assigned the CVE IDs CVE-2021-20093 and CVE-2021-20094. Successful exploitation of these vulnerabilities could allow an attacker to read data from the heap of the CodeMeter Runtime network server, or crash the CodeMeter Runtime Server (i.e., CodeMeter.exe).&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-705111.pdf</id>
    <title>SSA-705111 V1.1 (Last Update: 2021-11-09): Multiple Vulnerabilities (NAME:WRECK) in the DNS Module of Nucleus RTOS</title>
    <updated>2021-11-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-705111.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Security researchers discovered and disclosed 9 vulnerabilities in several DNS implementations, also known as &#8220;NAME:WRECK&#8221; vulnerabilities. The vulnerabilities described in this advisory are from this set.&lt;/p&gt;
&lt;p&gt;The DNS client of affected products contains multiple vulnerabilities related to the handling of DNS responses and requests. The most severe could allow an attacker to manipulate the DNS responses and cause a denial-of-service condition.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where updates are not available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-772220.pdf</id>
    <title>SSA-772220 V1.3 (Last Update: 2021-11-09): OpenSSL Vulnerabilities in Industrial Products</title>
    <updated>2021-11-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-772220.pdf" rel="alternate"/>
    <summary>&lt;p&gt;OpenSSL has published a security advisory [0] about a vulnerability in OpenSSL versions 1.1.1 &amp;lt; 1.1.1k, that allows an unauthenticated attacker to cause a Denial-of-Service (DoS) if a maliciously crafted renegotiation message is sent.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
&lt;p&gt;[0] &lt;a href="https://www.openssl.org/news/secadv/20210325.txt" class="uri"&gt;https://www.openssl.org/news/secadv/20210325.txt&lt;/a&gt;&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-163251.pdf</id>
    <title>SSA-163251 V1.0: Multiple Vulnerabilities in SINEC NMS</title>
    <updated>2021-10-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-163251.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest update for SINEC NMS fixes multiple vulnerabilities. The most severe could allow an authenticated remote attacker to execute arbitrary code on the system, with system privileges, under certain conditions.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for SINEC NMS and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-173565.pdf</id>
    <title>SSA-173565 V1.0: Denial-of-Service Vulnerability in RUGGEDCOM ROX Devices</title>
    <updated>2021-10-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-173565.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest update for RUGGEDCOM ROX devices fixes a vulnerability that could allow an unauthenticated attacker to cause a permanent Denial-of-Service condition under certain conditions.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-178380.pdf</id>
    <title>SSA-178380 V1.0: Denial-of-Service Vulnerability in SINUMERIK Controllers</title>
    <updated>2021-10-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-178380.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A Denial-of-Service vulnerability found in SINUMERIK Controllers could allow an unauthenticated attacker with network access to the affected devices to cause system failure with total loss of availability.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for the SINUMERIK 828D and recommends to update to the latest version. Siemens recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-280624.pdf</id>
    <title>SSA-280624 V1.0: Multiple Vulnerabilities in SCALANCE W1750D</title>
    <updated>2021-10-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-280624.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The Scalance W1750D device contains multiple vulnerabilities that could allow an attacker to inject commands or trigger buffer overflows.&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-766247.pdf</id>
    <title>SSA-766247 V1.0: Authentication Vulnerability in SIMATIC Process Historian</title>
    <updated>2021-10-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-766247.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest update for SIMATIC Process Historian (PH) fixes an authentication vulnerability in the configuration interface of redundant PH instances that could enable the execution of admin operations on the database.&lt;/p&gt;
&lt;p&gt;The related vulnerable interface is restricted to local access on recent versions starting from SIMATIC Process Historian 2020.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for the SIMATIC Process Historian 2014 and recommends to update to the latest version. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-150692.pdf</id>
    <title>SSA-150692 V1.1 (Last Update: 2021-10-12): Multiple Vulnerabilities in RUGGEDCOM ROX</title>
    <updated>2021-10-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-150692.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities in RUGGEDCOM ROX devices have been detected, ranging from command injection to filesystem traversal. An attacker could exploit these to gain root access to the affected devices.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-293562.pdf</id>
    <title>SSA-293562 V3.3 (Last Update: 2021-10-12): Vulnerabilities in Industrial Products</title>
    <updated>2021-10-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-293562.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Several industrial devices are affected by two vulnerabilities that could allow an attacker to cause a Denial-of-Service condition via PROFINET DCP network packets under certain circumstances. The precondition for this scenario is a direct layer 2 access to the affected products. PROFIBUS interfaces are not affected.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the new versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-324955.pdf</id>
    <title>SSA-324955 V1.5 (Last Update: 2021-10-12): SAD DNS Attack in Linux Based Products</title>
    <updated>2021-10-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-324955.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability made public under the name SAD DNS affects Domain Name System resolvers due to a vulnerability in the Linux kernel when handling ICMP packets. The Siemens products which are affected are listed below. For more information please see &lt;a href="https://www.saddns.net/" class="uri"&gt;https://www.saddns.net/&lt;/a&gt;.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-346262.pdf</id>
    <title>SSA-346262 V3.1 (Last Update: 2021-10-12): Denial-of-Service in Industrial Products</title>
    <updated>2021-10-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-346262.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Several industrial products are affected by a vulnerability that could allow remote attackers to conduct a Denial-of-Service (DoS) attack by sending specially crafted packets to port 161/udp (SNMP).&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, and recommends that customers update to the new version. Siemens is preparing further updates and recommends specific countermeasures until patches are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-349422.pdf</id>
    <title>SSA-349422 V1.6 (Last Update: 2021-10-12): Denial-of-Service in Industrial Real-Time (IRT) Devices</title>
    <updated>2021-10-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-349422.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in the affected products could allow an unauthorized attacker with network access to perform a denial-of-service attack resulting in loss of real-time synchronization.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssb-439005.pdf</id>
    <title>SSB-439005 V3.8 (Last Update: 2021-10-12): Vulnerabilities in the additional GNU/Linux subsystem of the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP</title>
    <updated>2021-10-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssb-439005.pdf" rel="alternate"/>
    <summary>
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-473245.pdf</id>
    <title>SSA-473245 V2.1 (Last Update: 2021-10-12): Denial-of-Service Vulnerability in Profinet Devices</title>
    <updated>2021-10-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-473245.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in affected devices could allow an attacker to perform a denial-of-service attack if a large amount of specially crafted UDP packets are sent to the device.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, and recommends that customers update to the new version. Siemens is preparing further updates and recommends specific countermeasures until patches are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-500748.pdf</id>
    <title>SSA-500748 V1.1 (Last Update: 2021-10-12): Denial-of-Service Vulnerabilities in SIPROTEC 5 Devices</title>
    <updated>2021-10-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-500748.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest update for SIPROTEC 5 family devices fixes a vulnerability in the web interface which could allow unauthorized users to cause a Denial-of-Service situation by sending maliciously crafted web requests.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for the SIPROTEC 5 and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-538778.pdf</id>
    <title>SSA-538778 V1.2 (Last Update: 2021-10-12): SmartVNC Vulnerabilities in SIMATIC HMI/WinCC Products</title>
    <updated>2021-10-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-538778.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Multiple SmartVNC vulnerabilities in the affected products listed below could allow remote code execution and Denial-of-Service attacks under certain conditions.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-541018.pdf</id>
    <title>SSA-541018 V1.3 (Last Update: 2021-10-12): Embedded TCP/IP Stack Vulnerabilities (AMNESIA:33) in SENTRON PAC / 3VA Devices (Part 2)</title>
    <updated>2021-10-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-541018.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Security researchers discovered and disclosed 33 vulnerabilities in several open-source TCP/IP stacks for embedded devices, also known as &#8220;AMNESIA:33&#8221; vulnerabilities.&lt;/p&gt;
&lt;p&gt;This advisory describes the impact of two of these vulnerabilities (CVE-2020-13987, CVE-2020-17437) to Siemens products.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where updates are not available.&lt;/p&gt;
&lt;p&gt;The impact of another &#8220;AMNESIA:33&#8221; vulnerability (CVE-2020-13988) is described in &lt;a href="https://cert-portal.siemens.com/productcert/pdf/ssa-541017.pdf"&gt;Siemens Security Advisory SSA-541017&lt;/a&gt;.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-557804.pdf</id>
    <title>SSA-557804 V1.3 (Last Update: 2021-10-12): Mirror Port Isolation Vulnerability in SCALANCE X Switches</title>
    <updated>2021-10-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-557804.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability was identified in several SCALANCE X switches that could allow an attacker to feed information into a network via the mirror port with the monitor barrier feature enabled.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-599968.pdf</id>
    <title>SSA-599968 V1.3 (Last Update: 2021-10-12): Denial-of-Service Vulnerability in Profinet Devices</title>
    <updated>2021-10-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-599968.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in affected devices could allow an attacker to perform a denial-of-service attack if a large amount of Profinet Discovery and Configuration Protocol (DCP) reset packets is sent to the affected devices.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-723417.pdf</id>
    <title>SSA-723417 V1.2 (Last Update: 2021-10-12): Multiple Vulnerabilities in SCALANCE W1750D</title>
    <updated>2021-10-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-723417.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The Scalance W1750D device contains multiple vulnerabilities that could allow an attacker to inject commands or trigger buffer overflows.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-780073.pdf</id>
    <title>SSA-780073 V1.9 (Last Update: 2021-10-12): Denial-of-Service Vulnerability in PROFINET Devices via DCE-RPC Packets</title>
    <updated>2021-10-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-780073.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Products that include the Siemens PROFINET-IO (PNIO) stack in versMions prior V06.00 are potentially affected by a denial-of-service vulnerability when multiple legitimate diagnostic package requests are sent to the DCE-RPC interface.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the new versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
&lt;p&gt;Additionally, Siemens recommends other vendors of PROFINET devices to check if their products have incorporated a vulnerable version of the Siemens PNIO stack as part of the Siemens Development/Evaluation Kits.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-847986.pdf</id>
    <title>SSA-847986 V1.1 (Last Update: 2021-10-12): Denial-of-Service Vulnerabilities in SIPROTEC 5 relays</title>
    <updated>2021-10-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-847986.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest update for SIPROTEC 5 relays fixes two vulnerabilities that could allow a remote attacker to cause a denial-of-service or potentially trigger a remote code execution under certain circumstances.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for SIPROTEC 5 relays and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-913875.pdf</id>
    <title>SSA-913875 V1.1 (Last Update: 2021-10-12): Frame Aggregation and Fragmentation Vulnerabilities in 802.11</title>
    <updated>2021-10-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-913875.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Twelve vulnerabilities in the implementation of frame aggregation and fragmentation of the 802.11 standard, under the name of &lt;a href="https://www.fragattacks.com/"&gt;FragAttacks&lt;/a&gt;, have been published.&lt;/p&gt;
&lt;p&gt;Successful exploitation of these vulnerabilities could allow an attacker within Wi-Fi range to forge encrypted frames, which could result in sensitive data disclosure and possibly traffic manipulation.&lt;/p&gt;
&lt;p&gt;The advised Siemens products are only affected by some of the published vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for the SCALANCE W1750D and recommends to update to the latest version. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-728618.pdf</id>
    <title>SSA-728618 V1.0: Multiple Vulnerabilities in Solid Edge before SE2021MP8</title>
    <updated>2021-09-28T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-728618.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Siemens has released a new version for Solid Edge that fixes multiple file parsing vulnerabilities which could be triggered when the application reads files in IFC, JT or OBJ formats.&lt;/p&gt;
&lt;p&gt;If a user is tricked to opening a malicious file using the affected application this could lead the application to crash, or potentially arbitrary code execution on the target host system.&lt;/p&gt;
&lt;p&gt;Siemens recommends to update to the latest version and to limit opening of files from unknown sources in the affected products.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-109294.pdf</id>
    <title>SSA-109294 V1.0: Scene File Parsing Vulnerability in Simcenter STAR-CCM+ Viewer</title>
    <updated>2021-09-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-109294.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Siemens Simcenter STAR-CCM+ Viewer is affected by a vulnerability that could be triggered when the application reads scene (.sce) files. If a user is tricked to open a malicious file with the affected application, this could lead to a crash, and potentially also to arbitrary code execution or data extraction on the target host system.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for Simcenter STAR-CCM+ Viewer and recommends to update to the latest version to fix the vulnerability. Siemens recommends to avoid opening of untrusted files from unknown sources.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-150692.pdf</id>
    <title>SSA-150692 V1.0: Multiple Vulnerabilities in RUGGEDCOM ROX</title>
    <updated>2021-09-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-150692.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities in RUGGEDCOM ROX devices have been detected, ranging from command injection to filesystem traversal. An attacker could exploit these to gain root access to the affected devices.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-208530.pdf</id>
    <title>SSA-208530 V1.0: File parsing vulnerabilities in IFC adapter in NX</title>
    <updated>2021-09-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-208530.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Siemens NX is affected by two vulnerabilities that could be triggered when the application reads ifc files. If a user is tricked to open a malicious file with the affected application, this could lead to an access violation, and potentially also to arbitrary code execution on the target host system.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for NX and recommends to update to the latest version to fix the vulnerabilities. Siemens recommends to avoid opening of untrusted files from unknown sources.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-288459.pdf</id>
    <title>SSA-288459 V1.0: Heap Overflow Vulnerability in RFID terminals</title>
    <updated>2021-09-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-288459.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A heap overflow vulnerability in dhclient of the affected products, which has been published alongside other vulnerabilities as part of NAME:WRECK could allow an attacker to potentially remotely execute code.&lt;/p&gt;
&lt;p&gt;Siemens recommends specific countermeasures for products.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-316383.pdf</id>
    <title>SSA-316383 V1.0: NumberJack Vulnerability in LOGO! CMR family and SIMATIC RTU 3000 family</title>
    <updated>2021-09-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-316383.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability has been identified in the underlying TCP/IP stack of LOGO! CMR family and SIMATIC RTU 3000 family devices. It could allow an attacker with network access to the LAN interface of an affected device to hijack an ongoing connection or spoof a new one. The WAN interface, however, is not affected.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for the LOGO! CMR family and recommends to update to the latest version. Siemens is preparing further updates and recommends countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-330339.pdf</id>
    <title>SSA-330339 V1.0: Web Vulnerabilities in SINEC NMS</title>
    <updated>2021-09-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-330339.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A recent update for SINEC NMS fixed multiple vulnerabilities. The most severe of these vulnerabilities could allow an attacker to manipulate the SINEC NMS configuration by tricking an admin to click on a malicious link.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for SINEC NMS and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-334944.pdf</id>
    <title>SSA-334944 V1.0: Vulnerability in SINEMA Remote Connect Server</title>
    <updated>2021-09-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-334944.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities in SINEMA Remote Connect Server could allow an unauthorized remote attacker to retrieve or manipulate sensitive information from the affected software. In addition, the attacker could also cause a Denial-of-Service condition in devices controlled by the affected software.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for the SINEMA Remote Connect Server and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-413407.pdf</id>
    <title>SSA-413407 V1.0: Path Traversal Vulnerability in Teamcenter Active Workspace</title>
    <updated>2021-09-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-413407.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Teamcenter Active Workspace contains a path traversal vulnerability that could lead to access control violations.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-453715.pdf</id>
    <title>SSA-453715 V1.0: Deserialization Vulnerability in CCOM Communication Component of Desigo CC Family</title>
    <updated>2021-09-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-453715.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Desigo CC, Desigo CC Compact and Cerberus DMS that use CCOM communication component hosted in IIS contain a deserialisation vulnerability that could allow an unauthenticated attacker to perform remote code execution. Only those systems that use Windows App and/or IE XBAP Web Client are affected. Regular installed clients and the new HTML5 Flex Clients are not impacted by this vulnerability.&lt;/p&gt;
&lt;p&gt;Note that the risk of this vulnerability being exploited is particularly high for any Desigo CC system that is connected directly to the Internet. For systems not accessible directly from the Internet, an attacker would need to have access to the local network to exploit this vulnerability.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-500748.pdf</id>
    <title>SSA-500748 V1.0: Denial-of-Service Vulnerabilities in SIPROTEC 5 Devices</title>
    <updated>2021-09-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-500748.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest update for SIPROTEC 5 family devices fixes a vulnerability in the web interface which could allow unauthorized users to cause a Denial-of-Service situation by sending maliciously crafted web requests.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for the SIPROTEC 5 and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-535380.pdf</id>
    <title>SSA-535380 V1.0: Command Injection Vulnerability in Siveillance OIS Affecting Several Building Management Systems</title>
    <updated>2021-09-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-535380.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The Siveillance Open Interface Services (OIS) application used for integration of different subsystems to several Siemens building management systems contains a command injection vulnerability that could allow a remote unauthenticated attacker to execute code on the affected system with root privileges.&lt;/p&gt;
&lt;p&gt;Siemens has released patches and updates for Siveillance OIS to apply to the products that incorporate the OIS service, and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-535997.pdf</id>
    <title>SSA-535997 V1.0: Cleartext Storage of Sensitive Information in Multiple SIMATIC Products</title>
    <updated>2021-09-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-535997.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A cleartext vulnerability was found in the SIMATIC communication processors CP 1543-1 and CP 1545-1 that could allow an attacker to read sensitive information.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for the SIMATIC CP 1543-1 (incl.&#160;SIPLUS variants) and recommends to update to the latest version. Siemens is preparing further updates and recommends countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-549234.pdf</id>
    <title>SSA-549234 V1.0: Denial-of-Service Vulnerability in SIMATIC NET CP Modules</title>
    <updated>2021-09-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-549234.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A Denial of Service vulnerability was identified in different types of Communication Processors. An attacker could exploit this vulnerability causing the device to become un-operational until the device is restarted.&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-676336.pdf</id>
    <title>SSA-676336 V1.0: OpenSSH Vulnerabilities in SCALANCE X-200 and X-300/X408 Switches</title>
    <updated>2021-09-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-676336.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest update of the SCALANCE X-200 and X-300/X408 switches families fixes multiple OpenSSH vulnerabilities. The most severe of these vulnerabilities could allow a denial of service condition.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-692317.pdf</id>
    <title>SSA-692317 V1.0: Authorization Bypass Vulnerability in Industrial Edge</title>
    <updated>2021-09-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-692317.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest update for Industrial Edge fixes a vulnerability that could allow an unauthenticated attacker to change the password of any user in the system. With this an attacker could impersonate any valid user on an affected system.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-756638.pdf</id>
    <title>SSA-756638 V1.0: Vulnerabilities in Third-Party Component Mbed TLS of LOGO! CMR Family and SIMATIC RTU 3000 Family</title>
    <updated>2021-09-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-756638.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Devices of the LOGO! CMR family and the SIMATIC RTU 3000 family are affected by several vulnerabilities in the third party component Mbed TLS. They could allow an attacker with access to any of the interfaces of an affected device to impact the availability or to communicate with invalid certificates.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for the LOGO! CMR family and recommends to update to the latest version. Siemens is preparing further updates and recommends countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-835377.pdf</id>
    <title>SSA-835377 V1.0: Missing Authentication Vulnerability in SINEMA Server</title>
    <updated>2021-09-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-835377.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest update for SINEMA Server fixes a vulnerability that could allow an unauthenticated attacker to obtain encoded system configuration backup files under certain conditions.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for the SINEMA Server and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-847986.pdf</id>
    <title>SSA-847986 V1.0: Denial-of-Service Vulnerabilities in SIPROTEC 5 relays</title>
    <updated>2021-09-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-847986.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest update for SIPROTEC 5 relays fixes two vulnerabilities that could allow a remote attacker to cause a denial-of-service or potentially trigger a remote code execution under certain circumstances.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for SIPROTEC 5 relays and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-944498.pdf</id>
    <title>SSA-944498 V1.0: Buffer Overflow Vulnerability in Web Server of APOGEE and TALON Automation Devices</title>
    <updated>2021-09-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-944498.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A buffer overflow vulnerability in the integrated web server of multiple APOGEE and TALON automation devices could allow a remote attacker to execute arbitrary code on the devices with root privileges.&lt;/p&gt;
&lt;p&gt;Affected devices include the APOGEE MBC/MEC/PXC P2 Ethernet devices with Power Open Processors (PPC), APOGEE PXC BACnet devices, and TALON TC BACnet devices.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens recommends countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-987403.pdf</id>
    <title>SSA-987403 V1.0: Multiple Vulnerabilities in Teamcenter</title>
    <updated>2021-09-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-987403.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Teamcenter is affected by three vulnerabilities namely incorrect privilege assignment, Insecure Direct Object Reference (IDOR) and XML External Entity Injection (XXE).&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-997732.pdf</id>
    <title>SSA-997732 V1.0: Modfem File Parsing Vulnerability in Simcenter Femap before V2021.2</title>
    <updated>2021-09-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-997732.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Siemens Simcenter Femap is affected by a vulnerability that could be triggered when the application reads modfem files. If a user is tricked to open a malicious file with the affected application, an attacker could leverage this vulnerability to leak information in the context of the current process.&lt;/p&gt;
&lt;p&gt;Siemens recommends to update to the latest version line of Simcenter Femap (2021.2), which is not affected by this type of vulnerabilities. Siemens recommends to avoid opening of untrusted files from unknown sources.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-100232.pdf</id>
    <title>SSA-100232 V1.3 (Last Update: 2021-09-14): Denial-of-Service vulnerability in SCALANCE X Switches</title>
    <updated>2021-09-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-100232.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in several SCALANCE X devices could allow an unauthenticated attacker with network access to an affected device to perform a denial-of-service.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for SCALANCE X-200IRT and recommends to update to the latest version. Siemens recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-102233.pdf</id>
    <title>SSA-102233 V1.6 (Last Update: 2021-09-14): SegmentSmack in VxWorks-based Industrial Devices</title>
    <updated>2021-09-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-102233.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The products listed below contain a vulnerability that could allow remote attackers to affect the availability of the devices under certain conditions. The underlying TCP stack can be forced to make very computation expensive calls for every incoming packet which can lead to a Denial-of-Service.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for the SCALANCE X-200IRT switch family and recommends to update to the latest version. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-139628.pdf</id>
    <title>SSA-139628 V1.2 (Last Update: 2021-09-14): Vulnerabilities in Web Server for Scalance X Products</title>
    <updated>2021-09-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-139628.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Several SCALANCE X switches contain vulnerabilities in the web server of the affected devices.&lt;/p&gt;
&lt;p&gt;An unauthenticated attacker could reboot, cause denial-of-service conditions and potentially impact the system by other means through heap and buffer overflow vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-187092.pdf</id>
    <title>SSA-187092 V1.1 (Last Update: 2021-09-14): Several Buffer-Overflow Vulnerabilities in Web Server of SCALANCE X-200</title>
    <updated>2021-09-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-187092.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Several SCALANCE X-200 switches contain buffer overflow vulnerabilities in the web server.&lt;/p&gt;
&lt;p&gt;In the most severe case an attacker could potentially remotely execute code.&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-274900.pdf</id>
    <title>SSA-274900 V1.2 (Last Update: 2021-09-14): Use of hardcoded key in Scalance X devices under certain conditions</title>
    <updated>2021-09-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-274900.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Scalance X devices might not generate a unique random key after factory reset, and use a private key shipped with the firmware&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-312271.pdf</id>
    <title>SSA-312271 V1.8 (Last Update: 2021-09-14): Unquoted Search Path Vulnerabilities in Windows-based Industrial Software Applications</title>
    <updated>2021-09-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-312271.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Several industrial products as listed below contain a local privilege escalation vulnerabilities that could allow authorized local users with administrative privileges to execute custom code with SYSTEM level privileges.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-324955.pdf</id>
    <title>SSA-324955 V1.4 (Last Update: 2021-09-14): SAD DNS Attack in Linux Based Products</title>
    <updated>2021-09-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-324955.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability made public under the name SAD DNS affects Domain Name System resolvers due to a vulnerability in the Linux kernel when handling ICMP packets. The Siemens products which are affected are listed below. For more information please see &lt;a href="https://www.saddns.net/" class="uri"&gt;https://www.saddns.net/&lt;/a&gt;.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-428051.pdf</id>
    <title>SSA-428051 V1.1 (Last Update: 2021-09-14): Privilege Escalation Vulnerability in TIA Administrator</title>
    <updated>2021-09-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-428051.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest update for TIA Administrator, installed together with TIA Portal and PCS neo, fixes a privilege escalation vulnerability that could allow local users to escalate privileges and execute code as local SYSTEM user.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-434534.pdf</id>
    <title>SSA-434534 V1.1 (Last Update: 2021-09-14): Memory Protection Bypass Vulnerability in SIMATIC S7-1200 and S7-1500 CPU Families</title>
    <updated>2021-09-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-434534.pdf" rel="alternate"/>
    <summary>&lt;p&gt;SIMATIC S7-1200 and S7-1500 CPU products contain a memory protection bypass vulnerability that could allow an attacker to write arbitrary data and code to protected memory areas or read sensitive data to launch further attacks.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and strongly recommends to update to the latest versions. Siemens recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-434535.pdf</id>
    <title>SSA-434535 V1.1 (Last Update: 2021-09-14): Memory Protection Bypass Vulnerability in SINAMICS PERFECT HARMONY GH180 Drives</title>
    <updated>2021-09-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-434535.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Several models of SINAMICS PERFECT HARMONY GH180 Drives are affected by a memory protection bypass vulnerability in the integrated S7-1500 or S7-1200 CPU that could allow an attacker to write arbitrary data and code to protected memory areas or read sensitive data to launch further attacks on the CPU.&lt;/p&gt;
&lt;p&gt;Siemens provides new drives with the fix included and recommends specific countermeasures for older drives. The list of affected drive models can be found in the section &#8220;Additional Information&#8221;.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-434536.pdf</id>
    <title>SSA-434536 V1.1 (Last Update: 2021-09-14): Memory Protection Bypass Vulnerability in SINUMERIK ONE and SINUMERIK MC</title>
    <updated>2021-09-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-434536.pdf" rel="alternate"/>
    <summary>&lt;p&gt;SINUMERIK ONE and SINUMERIK MC products are affected by a memory protection bypass vulnerability in the integrated S7-1500 CPU that could allow an attacker to write arbitrary data and code to protected memory areas or read sensitive data to launch further attacks on the CPU.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends that customers update to the new version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssb-439005.pdf</id>
    <title>SSB-439005 V3.7 (Last Update: 2021-09-14): Vulnerabilities in the additional GNU/Linux subsystem of the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP</title>
    <updated>2021-09-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssb-439005.pdf" rel="alternate"/>
    <summary>
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-462066.pdf</id>
    <title>SSA-462066 V2.5 (Last Update: 2021-09-14): Vulnerability known as TCP SACK PANIC in Industrial Products</title>
    <updated>2021-09-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-462066.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Multiple industrial products are affected by a vulnerability in the kernel known as TCP SACK PANIC. The vulnerability could allow a remote attacker to cause a denial of service condition.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the new versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-538778.pdf</id>
    <title>SSA-538778 V1.1 (Last Update: 2021-09-14): SmartVNC Vulnerabilities in SIMATIC HMI/WinCC Products</title>
    <updated>2021-09-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-538778.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Multiple SmartVNC vulnerabilities in the affected products listed below could allow remote code execution and Denial-of-Service attacks under certain conditions.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-599968.pdf</id>
    <title>SSA-599968 V1.2 (Last Update: 2021-09-14): Denial-of-Service Vulnerability in Profinet Devices</title>
    <updated>2021-09-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-599968.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in affected devices could allow an attacker to perform a denial-of-service attack if a large amount of Profinet Discovery and Configuration Protocol (DCP) reset packets is sent to the affected devices.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-661034.pdf</id>
    <title>SSA-661034 V1.1 (Last Update: 2021-09-14): Incorrect Permission Assignment in Multiple SIMATIC Software Products</title>
    <updated>2021-09-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-661034.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Multiple SIMATIC software products are affected by a vulnerability that could allow an attacker to change the content of certain metafiles and subsequently manipulate parameters or behaviour of devices configured by the affected software products.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-675303.pdf</id>
    <title>SSA-675303 V1.1 (Last Update: 2021-09-14): WIBU Systems CodeMeter Runtime Vulnerabilities in Siemens Products</title>
    <updated>2021-09-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-675303.pdf" rel="alternate"/>
    <summary>&lt;p&gt;WIBU Systems disclosed two vulnerabilities and a new release version of CodeMeter Runtime, a product provided by WIBU Systems and used in several Siemens products for license management.&lt;/p&gt;
&lt;p&gt;The vulnerabilities are described in the section &#8220;Vulnerability Classification&#8221; below and got assigned the CVE IDs CVE-2021-20093 and CVE-2021-20094. Successful exploitation of these vulnerabilities could allow an attacker to read data from the heap of the CodeMeter Runtime network server, or crash the CodeMeter Runtime Server (i.e., CodeMeter.exe).&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-756744.pdf</id>
    <title>SSA-756744 V1.1 (Last Update: 2021-09-14): OS Command Injection Vulnerability in SINEC NMS</title>
    <updated>2021-09-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-756744.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest update for SINEC NMS fixes a vulnerability that could allow an authenticated remote attacker to execute arbitrary code on the system, with system privileges, under certain conditions.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for SINEC NMS and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-772220.pdf</id>
    <title>SSA-772220 V1.2 (Last Update: 2021-09-14): OpenSSL Vulnerabilities in Industrial Products</title>
    <updated>2021-09-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-772220.pdf" rel="alternate"/>
    <summary>&lt;p&gt;OpenSSL has published a security advisory [0] about a vulnerability in OpenSSL versions 1.1.1 &amp;lt; 1.1.1k, that allows an unauthenticated attacker to cause a Denial-of-Service (DoS) if a maliciously crafted renegotiation message is sent.&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
&lt;p&gt;[0] &lt;a href="https://www.openssl.org/news/secadv/20210325.txt" class="uri"&gt;https://www.openssl.org/news/secadv/20210325.txt&lt;/a&gt;&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-780073.pdf</id>
    <title>SSA-780073 V1.8 (Last Update: 2021-09-14): Denial-of-Service Vulnerability in PROFINET Devices via DCE-RPC Packets</title>
    <updated>2021-09-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-780073.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Products that include the Siemens PROFINET-IO (PNIO) stack in versMions prior V06.00 are potentially affected by a denial-of-service vulnerability when multiple legitimate diagnostic package requests are sent to the DCE-RPC interface.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the new versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
&lt;p&gt;Additionally, Siemens recommends other vendors of PROFINET devices to check if their products have incorporated a vulnerable version of the Siemens PNIO stack as part of the Siemens Development/Evaluation Kits.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-789208.pdf</id>
    <title>SSA-789208 V1.1 (Last Update: 2021-09-14): Multiple Vulnerabilities (INFRA:HALT) in Interniche IP-Stack based Low Voltage Devices</title>
    <updated>2021-09-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-789208.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Security researchers discovered and disclosed 14 vulnerabilities in the Interniche IP stack, also known as &#8220;INFRA:HALT&#8221; vulnerabilities [0]. This advisory describes the impact to Siemens low voltage products, which are only affected by four out of the 14 vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
&lt;p&gt;[0] &lt;a href="https://www.forescout.com/blog/new-critical-operational-technology-vulnerabilities-found-on-nichestack/"&gt;https://www.forescout.com/blog/new-critical-operational-technology-vulnerabilities-found-on-nichestack/&lt;/a&gt;&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-830194.pdf</id>
    <title>SSA-830194 V1.1 (Last Update: 2021-09-14): Missing Authentication Vulnerability in S7-1200 Devices</title>
    <updated>2021-09-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-830194.pdf" rel="alternate"/>
    <summary>&lt;p&gt;SIMATIC S7-1200 PLC, version V4.5.0 fails to authenticate against configured passwords when the affected device was provisioned using TIA Portal V13. This could allow an attacker using TIA Portal V13 or later versions to bypass authentication and download arbitrary programs to the PLC.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for SIMATIC S7-1200 and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-865327.pdf</id>
    <title>SSA-865327 V1.1 (Last Update: 2021-09-14): Incorrect Authorization Vulnerability in Industrial Products</title>
    <updated>2021-09-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-865327.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest updates for the below mentioned products fix a vulnerability that allows an unauthenticated attacker to read PLC variables from affected devices without proper authentication under certain circumstances.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for some of the affected products, is working on updates for the remaining affected products and recommends specific countermeasures until fixes are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-936080.pdf</id>
    <title>SSA-936080 V1.2 (Last Update: 2021-09-14): Multiple Vulnerabilities in Third-Party Component libcurl</title>
    <updated>2021-09-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-936080.pdf" rel="alternate"/>
    <summary>&lt;p&gt;SIMATIC CM 1542-1, SCALANCE SC600 family and SIMATIC CP 343-1 Advanced devices are vulnerable to a vulnerability in the third party component libcurl that could allow an attacker to cause a Denial-of-Service condition on the affected devices.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
&lt;p&gt;The impact of additional libcurl vulnerabilities is described in &lt;a href="https://cert-portal.siemens.com/productcert/pdf/ssa-436177.pdf"&gt;Siemens Security Advisory SSA-436177&lt;/a&gt;.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-938030.pdf</id>
    <title>SSA-938030 V1.1 (Last Update: 2021-09-14): DGN and PAR File Parsing Vulnerabilities in JT2Go and Teamcenter Visualization before V13.2.0.2</title>
    <updated>2021-09-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-938030.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Siemens has released version V13.2.0.2 for JT2Go and Teamcenter Visualization to fix three vulnerabilities that could be triggered while parsing DGN or PAR files. If a user is tricked to open a malicious file with the affected products, this could lead the application to crash or potential arbitrary code execution.&lt;/p&gt;
&lt;p&gt;Siemens recommends to update to the latest versions and to limit opening of untrusted files from unknown sources in the affected products.&lt;/p&gt;
&lt;p&gt;Note:&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;This advisory also covers security vulnerabilities recently disclosed by Open Design Alliance [0]&lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;[0] &lt;a href="https://www.opendesign.com/security-advisories"&gt;https://www.opendesign.com/security-advisories&lt;/a&gt;&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-816035.pdf</id>
    <title>SSA-816035 V1.0: Code Execution Vulnerability in SINEMA Remote Connect Client</title>
    <updated>2021-08-19T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-816035.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest update for SINEMA Remote Connect Client fixes a vulnerability that could allow a local attacker to escalate privileges or even allow remote code execution under certain circumstances.&lt;/p&gt;
&lt;p&gt;Siemens has released a firmware update for SINEMA Remote Connect Client and proposes mitigations if an update is not possible.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-158827.pdf</id>
    <title>SSA-158827 V1.0: Denial-of-Service Vulnerability in Automation License Manager</title>
    <updated>2021-08-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-158827.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability was identified in the Automation License Manager software that could be triggered by sending specially crafted packets to port 4410/tcp of an affected system. This could cause a denial-of-service preventing legitimate users from using the system.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for the Automation License Manager 6 and recommends to update to the latest version. Siemens recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-309571.pdf</id>
    <title>SSA-309571 V1.0: IPU 2021.1 Vulnerabilities in Siemens Industrial Products using Intel CPUs (June 2021)</title>
    <updated>2021-08-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-309571.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Intel has published information on vulnerabilities in Intel products in &lt;a href="https://blogs.intel.com/technology/2021/06/intel-security-advisories-for-june-2021/"&gt;June 2021&lt;/a&gt;. This advisory lists the related Siemens Industrial products affected by these vulnerabilities that can be patched by applying the corresponding BIOS update.&lt;/p&gt;
&lt;p&gt;In this advisory we summarize:&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;&lt;p&gt;&#8220;2021.1 IPU &#8211; Intel&#174; CSME, SPS and LMS Advisory&#8221; Intel-SA-00459,&lt;/p&gt;&lt;/li&gt;
&lt;li&gt;&lt;p&gt;&#8220;2021.1 IPU &#8211; BIOS Advisory&#8221; Intel-SA-00463,&lt;/p&gt;&lt;/li&gt;
&lt;li&gt;&lt;p&gt;&#8220;2021.1 IPU &#8211; Intel&#174; Processor Advisory&#8221; Intel-SA-00464, and&lt;/p&gt;&lt;/li&gt;
&lt;li&gt;&lt;p&gt;&#8220;2021.1 IPU - Intel Atom&#174; Processor Advisory&#8221; Intel-SA-00465.&lt;/p&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;Siemens has released updates for several affected products and is currently working on BIOS updates that include chipset microcode updates for further products.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-365397.pdf</id>
    <title>SSA-365397 V1.0: Multiple File Parsing Vulnerabilities in JT2Go and Teamcenter Visualization before V13.2.0.1</title>
    <updated>2021-08-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-365397.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Siemens has released version V13.2.0.1 for JT2Go and Teamcenter Visualization to fix multiple vulnerabilities that could be triggered when the products read files in different file formats (CGM, DGN, DXF, and DWG). If a user is tricked to open a malicious file with the affected products, this could lead the application to crash or potentially arbitrary code execution.&lt;/p&gt;
&lt;p&gt;Siemens recommends to update to the latest versions and to limit opening of untrusted files from unknown sources in the affected products.&lt;/p&gt;
&lt;p&gt;Note:&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;This advisory also covers security vulnerabilities recently disclosed by Open Design Alliance [0]&lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;[0] &lt;a href="https://www.opendesign.com/security-advisories"&gt;https://www.opendesign.com/security-advisories&lt;/a&gt;&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-553445.pdf</id>
    <title>SSA-553445 V1.0: DNS "Name:Wreck" Vulnerabilities in Multiple Siemens Energy AGT and SGT solutions</title>
    <updated>2021-08-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-553445.pdf" rel="alternate"/>
    <summary>&lt;p&gt;One of the DNS-related vulnerabilities that were reported as &#8220;Name:Wreck&#8221; may affect the following Siemens Energy products:&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;Industrial Gas Turbines SGT-100, SGT-200, SGT-300 and SGT-400 with Allen Bradley control systems&lt;/li&gt;
&lt;li&gt;Aeroderivative Gas Turbines SGT-A20, SGT-A35 and SGT-A65 with FT125 control systems&lt;/li&gt;
&lt;/ul&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-679335.pdf</id>
    <title>SSA-679335 V1.0: Multiple Vulnerabilities in Embedded FTP Server of SIMATIC NET CP Modules</title>
    <updated>2021-08-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-679335.pdf" rel="alternate"/>
    <summary>&lt;p&gt;SIMATIC CP 1543-1 and CP 1545-1 devices are affected by multiple vulnerabilities in ProFTPD, a third party component, that could allow a remote attacker to access sensitive information and execute arbitrary code.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for SIMATIC NET CP 1543-1 and recommends to update to the latest version. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-756744.pdf</id>
    <title>SSA-756744 V1.0: OS Command Injection Vulnerability in SINEC NMS</title>
    <updated>2021-08-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-756744.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest update for SINEC NMS fixes a vulnerability that could allow an authenticated remote attacker to execute arbitrary code on the system, with system privileges, under certain conditions.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for SINEC NMS and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-818688.pdf</id>
    <title>SSA-818688 V1.0: Multiple Vulnerabilities in Solid Edge before SE2021MP7</title>
    <updated>2021-08-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-818688.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Siemens has released a new version for Solid Edge that fixes three vulnerabilities - an XML external entity (XXE) injection, and two file parsing issues which could be triggered when the application reads OBJ files.&lt;/p&gt;
&lt;p&gt;If a user is tricked to opening a malicious file using the affected application this could lead the application to crash, or potentially arbitrary code execution and data extraction on the target host system.&lt;/p&gt;
&lt;p&gt;Siemens recommends to update to the latest version and to limit opening of files from unknown sources in the affected products.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-830194.pdf</id>
    <title>SSA-830194 V1.0: Missing Authentication Vulnerability in S7-1200 Devices</title>
    <updated>2021-08-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-830194.pdf" rel="alternate"/>
    <summary>&lt;p&gt;SIMATIC S7-1200 PLC, version V4.5.0 fails to authenticate against configured passwords when the affected device was provisioned using TIA Portal V13. This could allow an attacker using TIA Portal V17 or later versions to bypass authentication and download arbitrary programs to the PLC.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for SIMATIC S7-1200 and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-865327.pdf</id>
    <title>SSA-865327 V1.0: Incorrect Authorization Vulnerability in Industrial Products</title>
    <updated>2021-08-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-865327.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest updates for the below mentioned products fix a vulnerability that allows an unauthenticated attacker to read PLC variables from affected devices without proper authentication under certain circumstances.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for some of the affected products, is working on updates for the remaining affected products and recommends specific countermeasures until fixes are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-938030.pdf</id>
    <title>SSA-938030 V1.0: DGN and PAR File Parsing Vulnerabilities in JT2Go and Teamcenter Visualization before V13.2.0.2</title>
    <updated>2021-08-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-938030.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Siemens has released version V13.2.0.2 for JT2Go and Teamcenter Visualization to fix three vulnerabilities that could be triggered while parsing DGN or PAR files. If a user is tricked to open a malicious file with the affected products, this could lead the application to crash or potential arbitrary code execution.&lt;/p&gt;
&lt;p&gt;Siemens recommends to update to the latest versions and to limit opening of untrusted files from unknown sources in the affected products.&lt;/p&gt;
&lt;p&gt;Note:&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;This advisory also covers security vulnerabilities recently disclosed by Open Design Alliance [0]&lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;[0] &lt;a href="https://www.opendesign.com/security-advisories"&gt;https://www.opendesign.com/security-advisories&lt;/a&gt;&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-286838.pdf</id>
    <title>SSA-286838 V1.1 (Last Update: 2021-08-10): Multiple Vulnerabilities in SINAMICS Medium Voltage Products</title>
    <updated>2021-08-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-286838.pdf" rel="alternate"/>
    <summary>&lt;p&gt;SINAMICS medium voltage products, with Sm@rtServer enabled on SIMATIC comfort HMI Panels, are affected by multiple vulnerabilities that could allow an attacker, under certain conditions, to gain full remote access to the HMI. Note that by default Sm@rtServer is disabled, but it can be enabled by the system integrator on request.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products, and recommends to update them to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-324955.pdf</id>
    <title>SSA-324955 V1.3 (Last Update: 2021-08-10): SAD DNS Attack in Linux Based Products</title>
    <updated>2021-08-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-324955.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability made public under the name SAD DNS affects Domain Name System resolvers due to a vulnerability in the Linux kernel when handling ICMP packets. The Siemens products which are affected are listed below. For more information please see &lt;a href="https://www.saddns.net/" class="uri"&gt;https://www.saddns.net/&lt;/a&gt;.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssb-439005.pdf</id>
    <title>SSB-439005 V3.6 (Last Update: 2021-08-10): Vulnerabilities in the additional GNU/Linux subsystem of the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP</title>
    <updated>2021-08-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssb-439005.pdf" rel="alternate"/>
    <summary>
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-492828.pdf</id>
    <title>SSA-492828 V1.1 (Last Update: 2021-08-10): Denial-of-Service Vulnerability in SIMATIC S7-300 CPUs and SINUMERIK Controller</title>
    <updated>2021-08-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-492828.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in S7-300 might allow an attacker to cause a Denial-of-Service condition on port 102 of the affected devices by sending specially crafted packets.&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends specific countermeasures until fixes are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-541018.pdf</id>
    <title>SSA-541018 V1.2 (Last Update: 2021-08-10): Embedded TCP/IP Stack Vulnerabilities (AMNESIA:33) in SENTRON PAC / 3VA Devices (Part 2)</title>
    <updated>2021-08-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-541018.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Security researchers discovered and disclosed 33 vulnerabilities in several open-source TCP/IP stacks for embedded devices, also known as &#8220;AMNESIA:33&#8221; vulnerabilities.&lt;/p&gt;
&lt;p&gt;This advisory describes the impact of two of these vulnerabilities (CVE-2020-13987, CVE-2020-17437) to Siemens products.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
&lt;p&gt;The impact of another &#8220;AMNESIA:33&#8221; vulnerability (CVE-2020-13988) is described in &lt;a href="https://cert-portal.siemens.com/productcert/pdf/ssa-541017.pdf"&gt;Siemens Security Advisory SSA-541017&lt;/a&gt;.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-599968.pdf</id>
    <title>SSA-599968 V1.1 (Last Update: 2021-08-10): Denial-of-Service Vulnerability in Profinet Devices</title>
    <updated>2021-08-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-599968.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in affected devices could allow an attacker to perform a denial-of-service attack if a large amount of Profinet Discovery and Configuration Protocol (DCP) reset packets is sent to the affected devices.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-678983.pdf</id>
    <title>SSA-678983 V1.2 (Last Update: 2021-08-10): Vulnerabilities in Industrial PCs and CNC devices using Intel CPUs (November 2020)</title>
    <updated>2021-08-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-678983.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Intel has published information on vulnerabilities in Intel products in &lt;a href="https://blogs.intel.com/technology/2020/11/ipas-security-advisories-for-november-2020/"&gt;November 2020&lt;/a&gt;. This advisory lists the Siemens IPC related products, that are affected by these vulnerabilities.&lt;/p&gt;
&lt;p&gt;In this advisory we take a representative CVE from each advisory:&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;&lt;p&gt;&#8220;Intel CSME, SPS, TXE, AMT and DAL Advisory&#8221; Intel-SA-00391 is represented by CVE-2020-8745&lt;/p&gt;&lt;/li&gt;
&lt;li&gt;&lt;p&gt;&#8220;Intel RAPL Interface Advisory&#8221; Intel-SA-00389 is represented by CVE-2020-8694&lt;/p&gt;&lt;/li&gt;
&lt;li&gt;&lt;p&gt;&#8220;Intel Processor Advisory&#8221; Intel-SA-00381 is represented by CVE-2020-8698, and&lt;/p&gt;&lt;/li&gt;
&lt;li&gt;&lt;p&gt;&#8220;BIOS Advisory&#8221; Intel-SA-00358 is represented by CVE-2020-0590.&lt;/p&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;Siemens has released updates for several affected products and is currently working on BIOS updates that include chipset microcode updates for further products.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-723417.pdf</id>
    <title>SSA-723417 V1.1 (Last Update: 2021-08-10): Multiple Vulnerabilities in SCALANCE W1750D</title>
    <updated>2021-08-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-723417.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Siemens SCALANCE W1750D is a brand-labeled device. Aruba has released a related security advisory &lt;a href="https://www.arubanetworks.com/assets/alert/ARUBA-PSA-2021-007.txt"&gt;ARUBA-PSA-2021-007&lt;/a&gt; disclosing vulnerabilities in its Aruba Instant product line.&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-752103.pdf</id>
    <title>SSA-752103 V1.1 (Last Update: 2021-08-10): Telnet Authentication Vulnerability in SINAMICS Medium Voltage Products</title>
    <updated>2021-08-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-752103.pdf" rel="alternate"/>
    <summary>&lt;p&gt;SINAMICS medium voltage products, with telnet enabled on SIMATIC comfort HMI Panels, are affected by a remote access vulnerability that could allow an attacker, under certain conditions, to gain full remote access to the HMI. Note that by default telnet is disabled, but it can be enabled by the system integrator on request.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products, and recommends to update them to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-772220.pdf</id>
    <title>SSA-772220 V1.1 (Last Update: 2021-08-10): OpenSSL Vulnerabilities in Industrial Products</title>
    <updated>2021-08-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-772220.pdf" rel="alternate"/>
    <summary>&lt;p&gt;OpenSSL has published a security advisory [0] about a vulnerability in OpenSSL versions 1.1.1 &amp;lt; 1.1.1k, that allows an unauthenticated attacker to cause a Denial-of-Service (DoS) if a maliciously crafted renegotiation message is sent.&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
&lt;p&gt;[0] &lt;a href="https://www.openssl.org/news/secadv/20210325.txt" class="uri"&gt;https://www.openssl.org/news/secadv/20210325.txt&lt;/a&gt;&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-844761.pdf</id>
    <title>SSA-844761 V1.2 (Last Update: 2021-08-10): Multiple Vulnerabilities in SiNVR/SiVMS Video Server</title>
    <updated>2021-08-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-844761.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The Video Server application in SiNVR/SiVMS solutions contains five vulnerabilities involving information disclosure (CVE-2019-19291, CVE-2019-19299), path traversal (CVE-2019-19296, CVE-2019-19297), and denial-of-service (CVE-2019-19298).&lt;/p&gt;
&lt;p&gt;PKE has released updates of the application that fixes the reported vulnerabilities, except for CVE-2019-19299. This update is not available under the former Siemens OEM brand name SiNVR. For details see PKE Security Advisory at &lt;a href="https://sivms.cloud/wp-content/uploads/2021/03/sivms-cve-fixes_1.0_EN.pdf"&gt;https://sivms.cloud/wp-content/uploads/2021/03/sivms-cve-fixes_1.0_EN.pdf&lt;/a&gt;&lt;/p&gt;
&lt;p&gt;Siemens recommends specific countermeasures to mitigate the vulnerabilities.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-941426.pdf</id>
    <title>SSA-941426 V1.1 (Last Update: 2021-08-10): Multiple LLDP Vulnerabilities in Industrial Products</title>
    <updated>2021-08-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-941426.pdf" rel="alternate"/>
    <summary>&lt;p&gt;There are multiple vulnerabilities in an underlying Link Layer Discovery Protocol (LLDP) third party library.&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-789208.pdf</id>
    <title>SSA-789208 V1.0: Multiple Vulnerabilities (INFRA:HALT) in Interniche IP-Stack based Low Voltage Devices</title>
    <updated>2021-08-04T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-789208.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Security researchers discovered and disclosed 14 vulnerabilities in the Interniche IP stack, also known as &#8220;INFRA:HALT&#8221; vulnerabilities [0]. This advisory describes the impact to Siemens low voltage products, which are only affected by four out of the 14 vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
&lt;p&gt;[0] &lt;a href="https://www.forescout.com/blog/new-critical-operational-technology-vulnerabilities-found-on-nichestack/"&gt;https://www.forescout.com/blog/new-critical-operational-technology-vulnerabilities-found-on-nichestack/&lt;/a&gt;&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-173615.pdf</id>
    <title>SSA-173615 V1.0: Multiple PAR and ASM File Parsing Vulnerabilities in Solid Edge</title>
    <updated>2021-07-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-173615.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Siemens has released version SE2021MP5 for Solid Edge to fix multiple heap based buffer overflow vulnerabilities that could be triggered when the application read files in PAR or ASM file formats. If a user is tricked to open a malicious file with the affected application, this could lead to a crash, and potentially also to arbitrary code execution.&lt;/p&gt;
&lt;p&gt;Siemens recommends to update to the latest version and to avoid opening of untrusted files from unknown sources.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-209268.pdf</id>
    <title>SSA-209268 V1.0: Multiple JT File Parsing Vulnerabilities in JT Utilities before V13.0.2.0</title>
    <updated>2021-07-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-209268.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Siemens has released version V13.0.2.0 for JT Utilities to &#64257;x multiple vulnerabilities that could be triggered when reading JT &#64257;les.&lt;/p&gt;
&lt;p&gt;Siemens recommends to update to the latest version, which contains solutions to all the vulnerabilities listed in this advisory. Standing recommendation is to avoid opening of untrusted &#64257;les from unknown sources in the affected product, as this generally mitigates the risk of exploitation of this class of vulnerabilities for any product release.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-352521.pdf</id>
    <title>SSA-352521 V1.0: Access Check Bypass Vulnerability in Mendix</title>
    <updated>2021-07-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-352521.pdf" rel="alternate"/>
    <summary>&lt;p&gt;An incorrect authorization check in Mendix applications could allow an attacker to bypass write permissions to attributes of objects under certain circumstances.&lt;/p&gt;
&lt;p&gt;Mendix has released an update for Mendix and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-373591.pdf</id>
    <title>SSA-373591 V1.0: Buffer Overflow Vulnerability in RUGGEDCOM ROS Devices</title>
    <updated>2021-07-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-373591.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest update for RUGGEDCOM ROS devices fixes a buffer overflow vulnerability in the third party component that could allow an attacker with network access to an affected device to cause a remote code execution condition.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-434535.pdf</id>
    <title>SSA-434535 V1.0: Memory Protection Bypass Vulnerability in SINAMICS PERFECT HARMONY GH180 Drives</title>
    <updated>2021-07-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-434535.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Several models of SINAMICS PERFECT HARMONY GH180 Drives are affected by a memory protection bypass vulnerability in the integrated S7-1500 or S7-1200 CPU that could allow an attacker to write arbitrary data and code to protected memory areas or read sensitive data to launch further attacks on the CPU.&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-434536.pdf</id>
    <title>SSA-434536 V1.0: Memory Protection Bypass Vulnerability in SINUMERIK ONE and SINUMERIK MC</title>
    <updated>2021-07-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-434536.pdf" rel="alternate"/>
    <summary>&lt;p&gt;SINUMERIK ONE and SINUMERIK MC products are affected by a memory protection bypass vulnerability in the integrated S7-1500 CPU that could allow an attacker to write arbitrary data and code to protected memory areas or read sensitive data to launch further attacks on the CPU.&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-448291.pdf</id>
    <title>SSA-448291 V1.0: Denial-of-Service Vulnerability in ARP Protocol of RWG Universal Controllers</title>
    <updated>2021-07-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-448291.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A Denial-of-Service vulnerability was found affecting the ARP protocol on RWG Universal Controller devices.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-483182.pdf</id>
    <title>SSA-483182 V1.0: Multiple File Parsing Vulnerabilities in JT2Go and Teamcenter Visualization before V13.2</title>
    <updated>2021-07-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-483182.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Siemens has released version V13.2 for JT2Go and Teamcenter Visualization to fix multiple vulnerabilities that could be triggered when the products read files in different file formats (GIF, TIFF, BMP, J2K, JT, SGI, PDF, PCT, PCX, PAR and ASM ). If a user is tricked to opening of a malicious file with the affected products, this could lead to application crash, or potentially arbitrary code execution on the target host system.&lt;/p&gt;
&lt;p&gt;Siemens recommends to update to the latest versions and to limit opening of untrusted files from unknown sources in the affected products.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-560465.pdf</id>
    <title>SSA-560465 V1.0: DHCP Client Vulnerability in VxWorks-based Industrial Products</title>
    <updated>2021-07-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-560465.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Various industry products are affected by a DHCP client vulnerability in Wind River VxWorks, that could allow an attacker to cause a heap-based buffer overflow.&lt;/p&gt;
&lt;p&gt;Siemens recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-599968.pdf</id>
    <title>SSA-599968 V1.0: Denial-of-Service Vulnerability in Profinet Devices</title>
    <updated>2021-07-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-599968.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in affected devices could allow an attacker to perform a denial-of-service attack if a large amount of Profinet Discovery and Configuration Protocol (DCP) reset packets is sent to the affected devices.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-622535.pdf</id>
    <title>SSA-622535 V1.0: Multiple Vulnerabilities in Teamcenter Active Workspace</title>
    <updated>2021-07-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-622535.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities affecting Teamcenter Active Workspace could lead to sensitive information disclosure and reflected cross site scripting.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-641963.pdf</id>
    <title>SSA-641963 V1.0: Remote Code Execution Vulnerability in Multiple SIMATIC Software Products</title>
    <updated>2021-07-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-641963.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Multiple SIMATIC Software products are affected by a vulnerability that could allow an attacker to manipulate project files and remotely execute code.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-661034.pdf</id>
    <title>SSA-661034 V1.0: Incorrect Permission Assignment in Multiple SIMATIC Software Products</title>
    <updated>2021-07-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-661034.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Multiple SIMATIC software products are affected by a vulnerability that could allow an attacker to change the content of certain metafiles and subsequently manipulate parameters or behaviour of devices configured by the affected software products.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for the SIMATIC STEP 7 V5.X and recommends to update to the latest version. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-675303.pdf</id>
    <title>SSA-675303 V1.0: WIBU Systems CodeMeter Runtime Vulnerabilities in Siemens Products</title>
    <updated>2021-07-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-675303.pdf" rel="alternate"/>
    <summary>&lt;p&gt;WIBU Systems disclosed two vulnerabilities and a new release version of CodeMeter Runtime, a product provided by WIBU Systems and used in several Siemens products for license management.&lt;/p&gt;
&lt;p&gt;The vulnerabilities are described in the section &#8220;Vulnerability Classification&#8221; below and got assigned the CVE IDs CVE-2021-20093 and CVE-2021-20094. Successful exploitation of these vulnerabilities could allow an attacker to read data from the heap of the CodeMeter Runtime network server, or crash the CodeMeter Runtime Server (i.e., CodeMeter.exe).&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-729965.pdf</id>
    <title>SSA-729965 V1.0: TLS Certificate Validation Vulnerability in SINUMERIK Integrate Operate Client</title>
    <updated>2021-07-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-729965.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest update for SINUMERIK Integrate Operate Client fixes a vulnerability that could allow an attacker to spoof any SSL server certificate and conduct man-in-the-middle attacks.&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends specific countermeasures for products where updates are not, or not yet available&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-772220.pdf</id>
    <title>SSA-772220 V1.0: OpenSSL Vulnerabilities in Industrial Products</title>
    <updated>2021-07-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-772220.pdf" rel="alternate"/>
    <summary>&lt;p&gt;OpenSSL has published a security advisory [0] about a vulnerability in OpenSSL versions 1.1.1 &amp;lt; k, that allows an unauthenticated attacker to cause a Denial-of-Service (DoS) if a a maliciously crafted renegotiation message is sent.&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
&lt;p&gt;[0] &lt;a href="https://www.openssl.org/news/secadv/20210325.txt" class="uri"&gt;https://www.openssl.org/news/secadv/20210325.txt&lt;/a&gt;&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-913875.pdf</id>
    <title>SSA-913875 V1.0: Frame Aggregation and Fragmentation Vulnerabilities in 802.11</title>
    <updated>2021-07-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-913875.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Twelve vulnerabilities in the implementation of frame aggregation and fragmentation of the 802.11 standard, under the name of &lt;a href="https://www.fragattacks.com/"&gt;FragAttacks&lt;/a&gt;, have been published.&lt;/p&gt;
&lt;p&gt;Successful exploitation of these vulnerabilities could allow an attacker within Wi-Fi range to forge encrypted frames, which could result in sensitive data disclosure and possibly traffic manipulation.&lt;/p&gt;
&lt;p&gt;The advised Siemens products are only affected by some of the published vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-941426.pdf</id>
    <title>SSA-941426 V1.0: Multiple LLDP Vulnerabilities in Industrial Products</title>
    <updated>2021-07-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-941426.pdf" rel="alternate"/>
    <summary>&lt;p&gt;There are multiple vulnerabilities in an underlying Link Layer Discovery Protocol (LLDP) third party library.&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-203306.pdf</id>
    <title>SSA-203306 V1.5 (Last Update: 2021-07-13): Password Vulnerabilities in SIPROTEC 4 and SIPROTEC Compact Relay Families</title>
    <updated>2021-07-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-203306.pdf" rel="alternate"/>
    <summary>&lt;p&gt;SIPROTEC 4 and SIPROTEC Compact devices could allow access authorization passwords to be reconstructed or overwritten via engineering mechanisms that involve DIGSI 4 and EN100 Ethernet communication modules.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, and recommends specific countermeasures for the remaining products.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-324955.pdf</id>
    <title>SSA-324955 V1.2 (Last Update: 2021-07-13): SAD DNS Attack in Linux Based Products</title>
    <updated>2021-07-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-324955.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability made public under the name SAD DNS affects Domain Name System resolvers due to a vulnerability in the Linux kernel when handling ICMP packets. The Siemens products which are affected are listed below. For more information please see &lt;a href="https://www.saddns.net/" class="uri"&gt;https://www.saddns.net/&lt;/a&gt;.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssb-439005.pdf</id>
    <title>SSB-439005 V3.5 (Last Update: 2021-07-13): Vulnerabilities in the additional GNU/Linux subsystem of the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP</title>
    <updated>2021-07-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssb-439005.pdf" rel="alternate"/>
    <summary>
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-462066.pdf</id>
    <title>SSA-462066 V2.4 (Last Update: 2021-07-13): Vulnerability known as TCP SACK PANIC in Industrial Products</title>
    <updated>2021-07-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-462066.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Multiple industrial products are affected by a vulnerability in the kernel known as TCP SACK PANIC. The vulnerability could allow a remote attacker to cause a denial of service condition.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the new versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-841348.pdf</id>
    <title>SSA-841348 V1.8 (Last Update: 2021-07-13): Multiple Vulnerabilities in the UMC Stack</title>
    <updated>2021-07-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-841348.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest update for the below listed products fixes two security vulnerabilities that could allow an attacker to cause a partial Denial-of-Service on the UMC component of the affected devices under certain circumstances, and one vulnerability that could allow an attacker to locally escalate privileges from a user with administrative privileges to execute code with SYSTEM level privileges.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-133038.pdf</id>
    <title>SSA-133038 V1.0: Multiple Modfem File Parsing Vulnerabilities in Simcenter Femap</title>
    <updated>2021-06-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-133038.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Siemens Simcenter Femap is affected by two vulnerabilities that could be triggered when the application reads modfem files. If a user is tricked to open a malicious file with the affected application, this could lead to a crash, and potentially also to arbitrary code execution or data extraction on the target host system.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for Simcenter Femap and recommends to update to the latest version to fix the vulnerabilities. Siemens recommends to avoid opening of untrusted files from unknown sources.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-200951.pdf</id>
    <title>SSA-200951 V1.0: Multiple Vulnerabilities in Third-Party Component libcurl of TIM Devices</title>
    <updated>2021-06-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-200951.pdf" rel="alternate"/>
    <summary>&lt;p&gt;SIMATIC TIM 1531 IRC devices are vulnerable to multiple vulnerabilities in the third party component libcurl that could allow an attacker to extract sensitive information and pass a revoked certificate as valid.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for SIMATIC TIM 1531 IRC and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-208356.pdf</id>
    <title>SSA-208356 V1.0: DFT File Parsing Vulnerabilities in Solid Edge</title>
    <updated>2021-06-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-208356.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Siemens has released a new version for Solid Edge to fix two vulnerabilities that could be triggered when the application read files in DFT file format. If a user is tricked to opening of a malicious file with the affected products, this could lead to application crash, or potentially arbitrary code execution on the target host system.&lt;/p&gt;
&lt;p&gt;Siemens recommends to update to the latest versions and to limit opening of untrusted files from unknown sources in the affected products.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-211752.pdf</id>
    <title>SSA-211752 V1.0: Multiple NTP-Client Related Vulnerabilities in SIMATIC NET CP 443-1 OPC UA</title>
    <updated>2021-06-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-211752.pdf" rel="alternate"/>
    <summary>&lt;p&gt;All versions of the SIMATIC NET CP 443-1 OPC UA contain multiple vulnerabilities in the underlying third party component NTP.&lt;/p&gt;
&lt;p&gt;Siemens recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-419820.pdf</id>
    <title>SSA-419820 V1.0: Denial-of-Service Vulnerability in TIM 1531 IRC</title>
    <updated>2021-06-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-419820.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest update for TIM 1531 IRC fixes a vulnerability that could allow a remote attacker to cause a denial-of-service under certain circumstances.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for the TIM 1531 IRC and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-522654.pdf</id>
    <title>SSA-522654 V1.0: Privilege Escalation Vulnerability in Mendix SAML Module</title>
    <updated>2021-06-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-522654.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest update of Mendix SAML module fixes a privilege escalation vulnerability.&lt;/p&gt;
&lt;p&gt;Mendix has released an update for the Mendix SAML module and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-645530.pdf</id>
    <title>SSA-645530 V1.0: TIFF File Parsing Vulnerability in JT2Go and Teamcenter Visualization before V13.1.0.3</title>
    <updated>2021-06-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-645530.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Siemens has released version V13.1.0.3 for JT2Go and Teamcenter Visualization to fix a vulnerability that could be triggered when the products read files in TIFF file format. If a user is tricked to opening of a malicious file with the affected products, this could lead to application crash, or potentially arbitrary code execution or data extraction on the target host system.&lt;/p&gt;
&lt;p&gt;Siemens recommends to update to the latest versions and to limit opening of untrusted files from unknown sources in the affected products.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-787292.pdf</id>
    <title>SSA-787292 V1.0: Denial-of-Service Vulnerability in SIMATIC RFID Readers</title>
    <updated>2021-06-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-787292.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest updates for SIMATIC RF products fix a vulnerability that could allow an unauthorized attacker to crash the OPC UA service of the affected devices.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-293562.pdf</id>
    <title>SSA-293562 V3.2 (Last Update: 2021-06-08): Vulnerabilities in Industrial Products</title>
    <updated>2021-06-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-293562.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Several industrial devices are affected by two vulnerabilities that could allow an attacker to cause a Denial-of-Service condition via PROFINET DCP network packets under certain circumstances. The precondition for this scenario is a direct layer 2 access to the affected products. PROFIBUS interfaces are not affected.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the new versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-312271.pdf</id>
    <title>SSA-312271 V1.7 (Last Update: 2021-06-08): Unquoted Search Path Vulnerabilities in Windows-based Industrial Software Applications</title>
    <updated>2021-06-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-312271.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest update for affected products fix local privilege escalation vulnerabilities that could allow authorized local users with administrative privileges to execute custom code with SYSTEM level privileges.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for some of the affected products, and is working on further updates. For the remaining affected products, Siemens recommends specific countermeasures until fixes are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-324955.pdf</id>
    <title>SSA-324955 V1.1 (Last Update: 2021-06-08): SAD DNS Attack in Linux Based Products</title>
    <updated>2021-06-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-324955.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability made public under the name SAD DNS affects Domain Name System resolvers due to a vulnerability in the Linux kernel when handling ICMP packets. The Siemens products which are affected are listed below. For more information please see &lt;a href="https://www.saddns.net/" class="uri"&gt;https://www.saddns.net/&lt;/a&gt;.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-346262.pdf</id>
    <title>SSA-346262 V3.0 (Last Update: 2021-06-08): Denial-of-Service in Industrial Products</title>
    <updated>2021-06-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-346262.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Several industrial products are affected by a vulnerability that could allow remote attackers to conduct a Denial-of-Service (DoS) attack by sending specially crafted packets to port 161/udp (SNMP).&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, and recommends that customers update to the new version. Siemens is preparing further updates and recommends specific countermeasures until patches are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-473245.pdf</id>
    <title>SSA-473245 V2.0 (Last Update: 2021-06-08): Denial-of-Service Vulnerability in Profinet Devices</title>
    <updated>2021-06-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-473245.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in affected devices could allow an attacker to perform a denial-of-service attack if a large amount of specially crafted UDP packets are sent to the device.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, and recommends that customers update to the new version. Siemens is preparing further updates and recommends specific countermeasures until patches are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-534763.pdf</id>
    <title>SSA-534763 V1.5 (Last Update: 2021-06-08): Special Register Buffer Data Sampling (SRBDS) aka Crosstalk in Industrial Products</title>
    <updated>2021-06-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-534763.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Security researchers published information on a vulnerability known as Crosstalk (&lt;a href="https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00320.html"&gt;INTEL-SA-00320&lt;/a&gt;). This vulnerability affects modern Intel processors to a varying degree.&lt;/p&gt;
&lt;p&gt;Several Siemens Industrial Products contain processors that are affected by the vulnerability.&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends specific countermeasures until fixes are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-542525.pdf</id>
    <title>SSA-542525 V1.3 (Last Update: 2021-06-08): Authentication Vulnerabilities in SIMATIC HMI Products</title>
    <updated>2021-06-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-542525.pdf" rel="alternate"/>
    <summary>&lt;p&gt;SIMATIC HMI Products are affected by two vulnerabilities that could allow a remote attacker to discover user passwords and obtain access to the Sm@rt Server via a brute-force attack.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions. Siemens also suggests following the listed mitigations for the Unified Comfort Panels.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-574442.pdf</id>
    <title>SSA-574442 V1.1 (Last Update: 2021-06-08): Multiple PAR and DFT File Parsing Vulnerabilities in Solid Edge</title>
    <updated>2021-06-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-574442.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Siemens has released a new version for Solid Edge to fix multiple vulnerabilities that could be triggered when the application reads files in different file formats (PAR, DFT extensions). If a user is tricked to open a malicious file with the affected application, this could lead to a crash, and potentially also to arbitrary code execution or data extraction on the target host system.&lt;/p&gt;
&lt;p&gt;Siemens recommends to update to the latest version and to avoid opening of untrusted files from unknown sources.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-678983.pdf</id>
    <title>SSA-678983 V1.1 (Last Update: 2021-06-08): Vulnerabilities in Industrial PCs and CNC devices using Intel CPUs (November 2020)</title>
    <updated>2021-06-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-678983.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Intel has published information on vulnerabilities in Intel products in &lt;a href="https://blogs.intel.com/technology/2020/11/ipas-security-advisories-for-november-2020/"&gt;November 2020&lt;/a&gt;. This advisory lists the Siemens IPC related products, that are affected by these vulnerabilities.&lt;/p&gt;
&lt;p&gt;In this advisory we take a representative CVE from each advisory:&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;&lt;p&gt;&#8220;Intel CSME, SPS, TXE, AMT and DAL Advisory&#8221; Intel-SA-00391 is represented by CVE-2020-8745&lt;/p&gt;&lt;/li&gt;
&lt;li&gt;&lt;p&gt;&#8220;Intel RAPL Interface Advisory&#8221; Intel-SA-00389 is represented by CVE-2020-8694&lt;/p&gt;&lt;/li&gt;
&lt;li&gt;&lt;p&gt;&#8220;Intel Processor Advisory&#8221; Intel-SA-00381 is represented by CVE-2020-8698, and&lt;/p&gt;&lt;/li&gt;
&lt;li&gt;&lt;p&gt;&#8220;BIOS Advisory&#8221; Intel-SA-00358 is represented by CVE-2020-0590.&lt;/p&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;Siemens has released updates for several affected products and is currently working on BIOS updates that include chipset microcode updates for further products.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-434534.pdf</id>
    <title>SSA-434534 V1.0: Memory Protection Bypass Vulnerability in SIMATIC S7-1200 and S7-1500 CPU Families</title>
    <updated>2021-05-28T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-434534.pdf" rel="alternate"/>
    <summary>&lt;p&gt;SIMATIC S7-1200 and S7-1500 CPU products contain a memory protection bypass vulnerability that could allow an attacker to write arbitrary data and code to protected memory areas or read sensitive data to launch further attacks.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and strongly recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-119468.pdf</id>
    <title>SSA-119468 V1.0: Luxion KeyShot Vulnerabilities in Solid Edge</title>
    <updated>2021-05-25T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-119468.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The Solid Edge installation package includes a specific version of the third-party product &lt;a href="https://www.keyshot.com"&gt;KeyShot from Luxion&lt;/a&gt;, which may not contain the latest security fixes provided by Luxion.&lt;/p&gt;
&lt;p&gt;Siemens recommends to update KeyShot according to the information in the &lt;a href="https://download.keyshot.com/cert/lsa-394129/lsa-394129.pdf"&gt;Luxion Security Advisory LSA-394129&lt;/a&gt;.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-622830.pdf</id>
    <title>SSA-622830 V1.2 (Last Update: 2021-05-17): Multiple File Parsing Vulnerabilities in JT2Go and Teamcenter Visualization before V13.1.0</title>
    <updated>2021-05-17T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-622830.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Siemens has released version V13.1.0 for JT2Go and Teamcenter Visualization to fix multiple vulnerabilities that could be triggered when the products read files in different file formats (JT, XML, CG4, CGM, PDF, RGB, SGI, TGA, PAR, PCX). If a user is tricked to opening of a malicious file with the affected products, this could lead to application crash, or potentially arbitrary code execution or data extraction on the target host system.&lt;/p&gt;
&lt;p&gt;Siemens recommends to update to the latest versions and to limit opening of untrusted files from unknown sources in the affected products. Please refer to SSA-663999 [0] and SSA-695540 [1] for further information regarding later version updates.&lt;/p&gt;
&lt;p&gt;Note: Previous versions of this advisory also contained the vulnerabilities CVE-2020-26989, CVE-2020-26990, and CVE-2020-28383 (now addressed in [0]) and CVE-2020-26991 (now addressed in [1]).&lt;/p&gt;
&lt;p&gt;[0] &lt;a href="https://cert-portal.siemens.com/productcert/pdf/ssa-663999.pdf"&gt;https://cert-portal.siemens.com/productcert/pdf/ssa-663999.pdf&lt;/a&gt;&lt;/p&gt;
&lt;p&gt;[1] &lt;a href="https://cert-portal.siemens.com/productcert/pdf/ssa-695540.pdf"&gt;https://cert-portal.siemens.com/productcert/pdf/ssa-695540.pdf&lt;/a&gt;&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-663999.pdf</id>
    <title>SSA-663999 V1.1 (Last Update: 2021-05-17): Multiple File Parsing Vulnerabilities in JT2Go and Teamcenter Visualization before V13.1.0.1</title>
    <updated>2021-05-17T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-663999.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Siemens has released version V13.1.0.1 for JT2Go and Teamcenter Visualization to fix multiple vulnerabilities that could be triggered when the products read files in different file formats (BMP, TIFF, CGM, TGA, PCT, HPG, PLT, RAS, PAR, ASM, DXF, DWG). If a user is tricked to opening of a malicious file with the affected products, this could lead to application crash, or potentially arbitrary code execution or data extraction on the target host system.&lt;/p&gt;
&lt;p&gt;Siemens recommends to update to the latest versions and to limit opening of untrusted files from unknown sources in the affected products.&lt;/p&gt;
&lt;p&gt;Notes:&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;&lt;p&gt;Previous versions of this advisory incorrectly listed the following vulnerabilities as being fixed in V13.1.0.1: CVE-2020-26991, CVE-2020-26998, CVE-2020-26999, CVE-2020-27001 and CVE-2020-27002. Those were fixed in V13.1.0.2 and are therefore addressed in advisory SSA-695540 [0]&lt;/p&gt;&lt;/li&gt;
&lt;li&gt;&lt;p&gt;The vulnerability CVE-2020-28383 was incorrectly listed in SSA-622830 [1] as being fixed in V13.1.0.0. This was fixed in V13.1.0.1 and therefore added here&lt;/p&gt;&lt;/li&gt;
&lt;li&gt;&lt;p&gt;The Open Design Alliance [2] recently disclosed an additional vulnerability (CVE-2021-31784) which is also covered in this advisory&lt;/p&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;[0] &lt;a href="https://cert-portal.siemens.com/productcert/pdf/ssa-622830.pdf"&gt;https://cert-portal.siemens.com/productcert/pdf/ssa-622830.pdf&lt;/a&gt;&lt;/p&gt;
&lt;p&gt;[1] &lt;a href="https://cert-portal.siemens.com/productcert/pdf/ssa-695540.pdf"&gt;https://cert-portal.siemens.com/productcert/pdf/ssa-695540.pdf&lt;/a&gt;&lt;/p&gt;
&lt;p&gt;[2] &lt;a href="https://www.opendesign.com/security-advisories"&gt;https://www.opendesign.com/security-advisories&lt;/a&gt;&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-695540.pdf</id>
    <title>SSA-695540 V1.0: ASM and PAR File Parsing Vulnerabilities in JT2Go and Teamcenter Visualization before V13.1.0.2</title>
    <updated>2021-05-17T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-695540.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Siemens has released version V13.1.0.2 for JT2Go and Teamcenter Visualization to fix multiple vulnerabilities that could be triggered when the products read files in ASM and PAR file formats. If a user is tricked to opening of a malicious file with the affected products, this could lead to application crash, or potentially arbitrary code execution or data extraction on the target host system.&lt;/p&gt;
&lt;p&gt;Siemens recommends to update to the latest versions and to limit opening of untrusted files from unknown sources in the affected products.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-116379.pdf</id>
    <title>SSA-116379 V1.0: Denial-of-Service Vulnerability in OSPF Packet Handling of SCALANCE XM-400 and XR-500 Devices</title>
    <updated>2021-05-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-116379.pdf" rel="alternate"/>
    <summary>&lt;p&gt;SCALANCE XM-400 and XR-500 devices contain a vulnerability in the OSPF protocol implementation that could allow an unauthenticated remote attacker to create a permanent denial-of-service condition.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-286838.pdf</id>
    <title>SSA-286838 V1.0: Multiple Vulnerabilities in SINAMICS Medium Voltage Products</title>
    <updated>2021-05-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-286838.pdf" rel="alternate"/>
    <summary>&lt;p&gt;SINAMICS medium voltage products, with Sm@rtServer enabled on SIMATIC comfort HMI Panels, are affected by multiple vulnerabilities that could allow an attacker, under certain conditions, to gain full remote access to the HMI. Note that by default Sm@rtServer is disabled, but it can be enabled on request by the system integrator.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for some of the affected products, and recommends to update them to the latest version without undue delay. For the remaining affected products, Siemens is attempting to provide updates and recommends countermeasures (see recommendations from section Workarounds and Mitigations) for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-324955.pdf</id>
    <title>SSA-324955 V1.0: SAD DNS Attack in Linux Based Products</title>
    <updated>2021-05-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-324955.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability made public under the name SAD DNS affects Domain Name System resolvers due to a vulnerability in the Linux kernel when handling ICMP packets. The Siemens products which are affected are listed below. For more information please see &lt;a href="https://www.saddns.net/" class="uri"&gt;https://www.saddns.net/&lt;/a&gt;.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-501073.pdf</id>
    <title>SSA-501073 V1.0: Vulnerabilities in Controllers CPU 1518 MFP using Intel CPUs (November 2020)</title>
    <updated>2021-05-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-501073.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Intel has published information on vulnerabilities in Intel products in &lt;a href="https://blogs.intel.com/technology/2020/11/ipas-security-advisories-for-november-2020/"&gt;November 2020&lt;/a&gt;. This advisory lists the Siemens Controllers that are affected by these vulnerabilities.&lt;/p&gt;
&lt;p&gt;In this advisory we take a representative CVE from each advisory:&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;&lt;p&gt;&#8220;Intel CSME, SPS, TXE, AMT and DAL Advisory&#8221; Intel-SA-00391 is represented by CVE-2020-8744&lt;/p&gt;&lt;/li&gt;
&lt;li&gt;&lt;p&gt;&#8220;BIOS Advisory&#8221; Intel-SA-00358 is represented by CVE-2020-0591.&lt;/p&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;Siemens is currently working on BIOS updates that include chipset microcode updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-538778.pdf</id>
    <title>SSA-538778 V1.0: SmartVNC Vulnerabilities in SIMATIC HMI/WinCC Products</title>
    <updated>2021-05-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-538778.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Multiple SmartVNC vulnerabilities in the affected products listed below could allow remote code execution and Denial-of-Service attacks under certain conditions.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-594364.pdf</id>
    <title>SSA-594364 V1.0: Denial-of-Service Vulnerability in SNMP Implementation of WinCC Runtime</title>
    <updated>2021-05-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-594364.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A denial-of-service vulnerability in WinCC Runtime could allow an unauthenticated attacker with network access to cause a denial-of-service condition in the SNMP service by sending crafted SNMP packets to port 161/udp.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-676775.pdf</id>
    <title>SSA-676775 V1.0: Denial-of-Service Vulnerability in SIMATIC NET CP 343-1 Devices</title>
    <updated>2021-05-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-676775.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in SIMATIC CP343-1 devices could allow an attacker to cause a Denial-of-Service condition on TCP port 102 of the affected devices by sending specially crafted packets.&lt;/p&gt;
&lt;p&gt;Siemens recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-678983.pdf</id>
    <title>SSA-678983 V1.0: Vulnerabilities in Industrial PCs and CNC devices using Intel CPUs (November 2020)</title>
    <updated>2021-05-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-678983.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Intel has published information on vulnerabilities in Intel products in &lt;a href="https://blogs.intel.com/technology/2020/11/ipas-security-advisories-for-november-2020/"&gt;November 2020&lt;/a&gt;. This advisory lists the Siemens IPC related products, that are affected by these vulnerabilities.&lt;/p&gt;
&lt;p&gt;In this advisory we take a representative CVE from each advisory:&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;&lt;p&gt;&#8220;Intel CSME, SPS, TXE, AMT and DAL Advisory&#8221; Intel-SA-00391 is represented by CVE-2020-8745&lt;/p&gt;&lt;/li&gt;
&lt;li&gt;&lt;p&gt;&#8220;Intel RAPL Interface Advisory&#8221; Intel-SA-00389 is represented by CVE-2020-8694&lt;/p&gt;&lt;/li&gt;
&lt;li&gt;&lt;p&gt;&#8220;Intel Processor Advisory&#8221; Intel-SA-00381 is represented by CVE-2020-8698, and&lt;/p&gt;&lt;/li&gt;
&lt;li&gt;&lt;p&gt;&#8220;BIOS Advisory&#8221; Intel-SA-00358 is represented by CVE-2020-0590.&lt;/p&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;Siemens has released updates for several affected products and is currently working on BIOS updates that include chipset microcode updates for further products.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-723417.pdf</id>
    <title>SSA-723417 V1.0: Multiple Vulnerabilities in SCALANCE W1750D</title>
    <updated>2021-05-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-723417.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Siemens SCALANCE W1750D is a brand-labeled device. Aruba has released a related security advisory &lt;a href="https://www.arubanetworks.com/assets/alert/ARUBA-PSA-2021-007.txt"&gt;ARUBA-PSA-2021-007&lt;/a&gt; disclosing vulnerabilities in its Aruba Instant product line.&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-752103.pdf</id>
    <title>SSA-752103 V1.0: Telnet Authentication Vulnerability in SINAMICS Medium Voltage Products</title>
    <updated>2021-05-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-752103.pdf" rel="alternate"/>
    <summary>&lt;p&gt;SINAMICS medium voltage products, with telnet enabled on SIMATIC comfort HMI Panels, are affected by a remote access vulnerability that could allow an attacker, under certain conditions, to gain full remote access to the HMI. Note that by default telnet is disabled, but it can be enabled on request by the panel operator.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for some of the affected products, and recommends to update them to the latest version without undue delay. For the remaining affected products, Siemens is attempting to provide updates and recommends countermeasures (see recommendations from section Workarounds and Mitigations) for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-854248.pdf</id>
    <title>SSA-854248 V1.0: Information Disclosure Vulnerability in Mendix Excel Importer Module</title>
    <updated>2021-05-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-854248.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest update of Mendix Excel Importer module fixes an infomation disclosure vulnerability.&lt;/p&gt;
&lt;p&gt;Mendix has released an update for the Mendix Excel Importer module and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-919955.pdf</id>
    <title>SSA-919955 V1.0: Information Disclosure Vulnerability in Mendix Database Replication Module</title>
    <updated>2021-05-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-919955.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest update of Mendix Database Replication module fixes a infomation disclosure vulnerability.&lt;/p&gt;
&lt;p&gt;Mendix has released an update for the Mendix Database Replication module and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-940818.pdf</id>
    <title>SSA-940818 V1.0: UltraVNC Vulnerabilities in SIMATIC HMIs/WinCC Products</title>
    <updated>2021-05-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-940818.pdf" rel="alternate"/>
    <summary>&lt;p&gt;UltraVNC vulnerabilities in the affected products listed below could allow remote code execution, information disclosure and Denial-of-Service attacks under certain conditions.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-983548.pdf</id>
    <title>SSA-983548 V1.0: Multiple SPP File Parsing Vulnerabilities in Tecnomatix Plant Simulation</title>
    <updated>2021-05-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-983548.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Siemens Tecnomatix Plant Simulation has released an update for version V16.0 that fixes multiple vulnerabilities that could be triggered when the application reads SPP files. If a user is tricked to open a malicious file using the affected application, this could lead to a crash, and potentially also to arbitrary code execution or data extraction on the target host system.&lt;/p&gt;
&lt;p&gt;Siemens recommends to update to the latest version and to avoid opening of untrusted files from unknown sources.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssb-439005.pdf</id>
    <title>SSB-439005 V3.4 (Last Update: 2021-05-11): Vulnerabilities in the additional GNU/Linux subsystem of the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP</title>
    <updated>2021-05-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssb-439005.pdf" rel="alternate"/>
    <summary>
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-462066.pdf</id>
    <title>SSA-462066 V2.3 (Last Update: 2021-05-11): Vulnerability known as TCP SACK PANIC in Industrial Products</title>
    <updated>2021-05-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-462066.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Multiple industrial products are affected by a vulnerability in the kernel known as TCP SACK PANIC. The vulnerability could allow a remote attacker to cause a denial of service condition.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the new versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-478893.pdf</id>
    <title>SSA-478893 V1.1 (Last Update: 2021-05-11): TightVNC Vulnerabilities in Industrial Products (Revoked)</title>
    <updated>2021-05-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-478893.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Multiple TightVNC (V1.x) vulnerabilities could allow remote code execution and Denial-of-Service attacks under certain conditions.&lt;/p&gt;
&lt;p&gt;Siemens has previously released this advisory containing a set of products that were considered to be affected. Through Siemens&#8217; continuous investigation processes it was identified that all products previously advised are not affected by any vulnerability listed in this advisory.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-541018.pdf</id>
    <title>SSA-541018 V1.1 (Last Update: 2021-05-11): Embedded TCP/IP Stack Vulnerabilities (AMNESIA:33) in SENTRON PAC / 3VA Devices (Part 2)</title>
    <updated>2021-05-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-541018.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Security researchers discovered and disclosed 33 vulnerabilities in several open-source TCP/IP stacks for embedded devices, also known as &#8220;AMNESIA:33&#8221; vulnerabilities.&lt;/p&gt;
&lt;p&gt;This advisory describes the impact of two of these vulnerabilities (CVE-2020-13987, CVE-2020-17437) to Siemens products.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
&lt;p&gt;The impact of another &#8220;AMNESIA:33&#8221; vulnerability (CVE-2020-13988) is described in &lt;a href="https://cert-portal.siemens.com/productcert/pdf/ssa-541017.pdf"&gt;Siemens Security Advisory SSA-541017&lt;/a&gt;.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-646763.pdf</id>
    <title>SSA-646763 V1.3 (Last Update: 2021-05-11): DNSpooq - Dnsmasq Vulnerabilities in SCALANCE and RUGGEDCOM Devices</title>
    <updated>2021-05-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-646763.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Security researchers discovered and disclosed seven vulnerabilities in the open-source DNS component &#8220;dnsmasq&#8221;, also known as &#8220;DNSpooq&#8221; vulnerabilities (CVE-2020-25681 through CVE-2020-25687). Three vulnerabilities (CVE-2020-25684 through CVE-2020-25686) affect the validation of DNS responses and impact several SCALANCE and RUGGEDCOM devices as listed below.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where updates are not available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-794542.pdf</id>
    <title>SSA-794542 V1.1 (Last Update: 2021-05-11): Insecure Folder Permissions in SIMARIS Configuration</title>
    <updated>2021-05-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-794542.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The installation of SIMARIS configuration causes insecure folder permissions that could allow vertical privilege escalation.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for SIMARIS and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-936080.pdf</id>
    <title>SSA-936080 V1.1 (Last Update: 2021-05-11): Multiple Vulnerabilities in Third-Party Component libcurl</title>
    <updated>2021-05-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-936080.pdf" rel="alternate"/>
    <summary>&lt;p&gt;SIMATIC NET CM 1542-1, SCALANCE SC600 family and SIMATIC NET CP 343-1 Advanced devices are vulnerable to a vulnerability in the third party component libcurl that could allow an attacker to cause a Denial-of-Service condition on the affected devices.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for SCALANCE SC600. For the remaining affected product, Siemens is preparing further updates and recommends specific countermeasures until fixes are available.&lt;/p&gt;
&lt;p&gt;The impact of additional libcurl vulnerabilities is described in &lt;a href="https://cert-portal.siemens.com/productcert/pdf/ssa-436177.pdf"&gt;Siemens Security Advisory SSA-436177&lt;/a&gt;.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-875726.pdf</id>
    <title>SSA-875726 V1.0: Privilege Escalation Vulnerability in Mendix</title>
    <updated>2021-04-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-875726.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest updates for Mendix fix a vulnerability in Mendix Applications that could allow malicious authorized users to escalate their privileges.&lt;/p&gt;
&lt;p&gt;Mendix has released an update for Mendix and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-163226.pdf</id>
    <title>SSA-163226 V1.0: CELL File Parsing Vulnerability in Tecnomatix RobotExpert</title>
    <updated>2021-04-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-163226.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Siemens Tecnomatix RobotExpert version V16.1 fixes a vulnerability that could be triggered when the application reads CELL files. If a user is tricked to open a malicious file with the affected application, this could lead to a crash, and potentially also to arbitrary code execution or data extraction on the target host system.&lt;/p&gt;
&lt;p&gt;Siemens recommends to update to the latest version and to avoid opening of untrusted files from unknown sources.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-185699.pdf</id>
    <title>SSA-185699 V1.0: Out of Bounds Write Vulnerabilities (NAME:WRECK) in the DNS Module of Nucleus Products</title>
    <updated>2021-04-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-185699.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Security researchers discovered and disclosed 9 vulnerabilities in several DNS implementations, also known as &#8220;NAME:WRECK&#8221; vulnerabilities. The vulnerabilities described in this advisories are from this set.&lt;/p&gt;
&lt;p&gt;The DNS client of affected products contains two out of bounds write vulnerabilities in the handling of DNS responses that could allow an attacker to cause a denial-of-service condition or to remotely execute code.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-187092.pdf</id>
    <title>SSA-187092 V1.0: Several Buffer-Overflow Vulnerabilities in Web Server of SCALANCE X-200</title>
    <updated>2021-04-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-187092.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Several SCALANCE X-200 switches contain buffer overflow vulnerabilities in the web server.&lt;/p&gt;
&lt;p&gt;In the most severe case an attacker could potentially remotely execute code.&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-201384.pdf</id>
    <title>SSA-201384 V1.0: Predictable UDP Port Number Vulnerability (NAME:WRECK) in the DNS Module of Nucleus Products</title>
    <updated>2021-04-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-201384.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Security researchers discovered and disclosed 9 vulnerabilities in several DNS implementations, also known as &#8220;NAME:WRECK&#8221; vulnerabilities. The vulnerability described in this advisories is from this set.&lt;/p&gt;
&lt;p&gt;The DNS client of affected products contains a vulnerability related to the handling of UDP port numbers in DNS requests that could allow an attacker to poison the DNS cache or spoof DNS resolving.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-248289.pdf</id>
    <title>SSA-248289 V1.0: Denial-of-Service Vulnerabilities in the IPv6 Stack of Nucleus Products</title>
    <updated>2021-04-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-248289.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The IPv6 stack of affected products contains two vulnerabilities when processing IPv6 headers which could allow an attacker to cause a denial-of-service condition.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-292794.pdf</id>
    <title>SSA-292794 V1.0: Multiple Denial-of-Service Vulnerabilities in SINEMA Remote Connect Server</title>
    <updated>2021-04-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-292794.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest update for SINEMA Remote Connect Server fixes two Denial-of-Service vulnerabilities in the underlying third-party XML parser.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected product and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-497656.pdf</id>
    <title>SSA-497656 V1.0: Multiple NTP Vulnerabilities in TIM 4R-IE Devices</title>
    <updated>2021-04-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-497656.pdf" rel="alternate"/>
    <summary>&lt;p&gt;There are multiple vulnerabilities in the underlying NTP component of the affected TIM 4R-IE.&lt;/p&gt;
&lt;p&gt;Siemens recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-574442.pdf</id>
    <title>SSA-574442 V1.0: Multiple PAR and DFT File Parsing Vulnerabilities in Solid Edge</title>
    <updated>2021-04-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-574442.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Siemens has released a new version for Solid Edge to fix multiple vulnerabilities that could be triggered when the application reads files in different file formats (PAR, DFT extensions). If a user is tricked to open a malicious file with the affected application, this could lead to a crash, and potentially also to arbitrary code execution or data extraction on the target host system.&lt;/p&gt;
&lt;p&gt;Siemens recommends to update to the latest version and to avoid opening of untrusted files from unknown sources.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-669158.pdf</id>
    <title>SSA-669158 V1.0: DNS Client Vulnerabilities in SIMOTICS CONNECT 400</title>
    <updated>2021-04-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-669158.pdf" rel="alternate"/>
    <summary>&lt;p&gt;SIMOTICS CONNECT 400 is affected by DNS Client vulnerabilities as initially reported in &lt;a href="https://cert-portal.siemens.com/productcert/pdf/ssa-705111.pdf"&gt;Siemens Security Advisory SSA-705111&lt;/a&gt; for the Mentor DNS Module.&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-705111.pdf</id>
    <title>SSA-705111 V1.0: Vulnerabilities (NAME:WRECK) in DNS Module of Nucleus Products</title>
    <updated>2021-04-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-705111.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Security researchers discovered and disclosed 9 vulnerabilities in several DNS implementations, also known as &#8220;NAME:WRECK&#8221; vulnerabilities. The vulnerabilities described in this advisories are from this set.&lt;/p&gt;
&lt;p&gt;The DNS client of affected products contains multiple vulnerabilities related to the handling of DNS responses and requests. The most severe could allow an attacker to manipulate the DNS responses and cause a denial-of-service condition.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-761844.pdf</id>
    <title>SSA-761844 V1.0: Multiple Vulnerabilities in Control Center Server (CCS)</title>
    <updated>2021-04-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-761844.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The advisory informs about multiple vulnerabilities in the Central Control Server (CCS) application, as initially reported in &lt;a href="https://cert-portal.siemens.com/productcert/pdf/ssa-761617.pdf"&gt;SSA-761617&lt;/a&gt; on 2019-12-10 and &lt;a href="https://cert-portal.siemens.com/productcert/pdf/ssa-844761.pdf"&gt;SSA-844761&lt;/a&gt; on 2020-03-10.&lt;/p&gt;
&lt;p&gt;The vulnerabilities involve authentication bypass (CVE-2019-18337, CVE-2019-18341), path traversal (CVE-2019-18338, CVE-2019-19290), information disclosure (CVE-2019-13947, CVE-2019-18340, CVE-2019-19291), privilege escalation (CVE-2019-18342), SQL injection (CVE-2019-19292), cross-site scripting (CVE-2019-19293, CVE-2019-19294), and insufficient logging (CVE-2019-19295).&lt;/p&gt;
&lt;p&gt;PKE has released an update for CCS that fixes the reported vulnerabilities, except for CVE-2019-18340. For details see the PKE Security Advisory at &lt;a href="https://sivms.cloud/wp-content/uploads/2021/03/sivms-cve-fixes_1.0_EN.pdf"&gt;https://sivms.cloud/wp-content/uploads/2021/03/sivms-cve-fixes_1.0_EN.pdf&lt;/a&gt;&lt;/p&gt;
&lt;p&gt;Siemens recommends to update to the latest version and recommends specific countermeasures to mitigate the vulnerabilities.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-788287.pdf</id>
    <title>SSA-788287 V1.0: Disclosure of Private Data</title>
    <updated>2021-04-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-788287.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Due to SmartClient Installation technology (ClickOnce) a customer/integrator needs to create a customer specific Smartclient installer. The mentioned products delivered a trusted but yet expired codesigning certificate.&lt;/p&gt;
&lt;p&gt;An attacker could have exploited the vulnerability by spoofing the code-signing certificate and signing a malicious executable resulting in having a trusted digital signature from a trusted provider.&lt;/p&gt;
&lt;p&gt;The certificate was revoked immediately.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-853866.pdf</id>
    <title>SSA-853866 V1.0: User Credentials Disclosure Vulnerability in Siveillance Video Open Network Bridge (ONVIF)</title>
    <updated>2021-04-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-853866.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Siemens has released hotfixes for Siveillance Video Open Network Bridge (ONVIF) which fix a security vulnerability related to unsecure storage of ONVIF user credentials. The vulnerability could allow an authenticated remote attacker to retrieve and decrypt all user credentials stored on the ONVIF server.&lt;/p&gt;
&lt;p&gt;Siemens recommends to apply the hotfixes at the earliest opportunity. See also the chapter Additional Information, how to apply the hotfix.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-983300.pdf</id>
    <title>SSA-983300 V1.0: Vulnerabilities in LOGO! Soft Comfort</title>
    <updated>2021-04-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-983300.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Two vulnerabilities have been identified in the LOGO! Soft Comfort software. These could allow an attacker to take over a system with the affected software installed.&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-296266.pdf</id>
    <title>SSA-296266 V1.1 (Last Update: 2021-04-13): Denial-of-Service Vulnerability in SCALANCE and RUGGEDCOM Devices</title>
    <updated>2021-04-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-296266.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Some firmware versions of the SCALANCE and RUGGEDCOM devices listed below are affected by a vulnerability in the SSH authentication that could allow an attacker to cause a Denial-of-Service under certain conditions.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssb-439005.pdf</id>
    <title>SSB-439005 V3.3 (Last Update: 2021-04-13): Vulnerabilities in the additional GNU/Linux subsystem of the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP</title>
    <updated>2021-04-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssb-439005.pdf" rel="alternate"/>
    <summary>
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-455843.pdf</id>
    <title>SSA-455843 V1.6 (Last Update: 2021-04-13): WIBU Systems CodeMeter Runtime Vulnerabilities in Siemens and Siemens Energy Products</title>
    <updated>2021-04-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-455843.pdf" rel="alternate"/>
    <summary>&lt;p&gt;CISA and WIBU Systems disclosed six vulnerabilities in different versions of CodeMeter Runtime, a product provided by WIBU Systems and used in several Siemens and Siemens Energy products for license management.&lt;/p&gt;
&lt;p&gt;The vulnerabilities are described in the section &#8220;Vulnerability Classification&#8221; below and got assigned the CVE IDs CVE-2020-14509, CVE-2020-14513, CVE-2020-14515, CVE-2020-14517, CVE-2020-14519, and CVE-2020-16233. Successful exploitation of these vulnerabilities could allow an attacker to alter and forge a license file, cause a denial-of-service condition, attain remote code execution, or prevent normal operation of the Siemens software that depends on CodeMeter Runtime.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-462066.pdf</id>
    <title>SSA-462066 V2.2 (Last Update: 2021-04-13): Vulnerability known as TCP SACK PANIC in Industrial Products</title>
    <updated>2021-04-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-462066.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Multiple industrial products are affected by a vulnerability in the kernel known as TCP SACK PANIC. The vulnerability could allow a remote attacker to cause a denial of service condition.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the new versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-534763.pdf</id>
    <title>SSA-534763 V1.4 (Last Update: 2021-04-13): Special Register Buffer Data Sampling (SRBDS) aka Crosstalk in Industrial Products</title>
    <updated>2021-04-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-534763.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Security researchers published information on a vulnerability known as Crosstalk (&lt;a href="https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00320.html"&gt;INTEL-SA-00320&lt;/a&gt;). This vulnerability affects modern Intel processors to a varying degree.&lt;/p&gt;
&lt;p&gt;Several Siemens Industrial Products contain processors that are affected by the vulnerability.&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends specific countermeasures until fixes are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-541017.pdf</id>
    <title>SSA-541017 V1.3 (Last Update: 2021-04-13): Embedded TCP/IP Stack Vulnerabilities (AMNESIA:33) in SIRIUS 3RW5 Modbus TCP and SENTRON PAC / 3VA Devices</title>
    <updated>2021-04-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-541017.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Security researchers discovered and disclosed 33 vulnerabilities in several open-source TCP/IP stacks for embedded devices, also known as &#8220;AMNESIA:33&#8221; vulnerabilities.&lt;/p&gt;
&lt;p&gt;This advisory describes the impact of one of these vulnerabilities (CVE-2020-13988) to Siemens products. Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
&lt;p&gt;The impact of additional &#8220;AMNESIA:33&#8221; vulnerabilities is described in &lt;a href="https://cert-portal.siemens.com/productcert/pdf/ssa-541018.pdf"&gt;Siemens Security Advisory SSA-541018&lt;/a&gt;.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-591405.pdf</id>
    <title>SSA-591405 V1.2 (Last Update: 2021-04-13): Web Vulnerabilities in SCALANCE S-600 Family</title>
    <updated>2021-04-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-591405.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The firmware for SCALANCE S-600 family devices contains multiple web vulnerabilities. The vulnerabilities could allow an remote attacker to conduct Denial-of-Service attacks or perform Cross-Site Scripting attacks.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions, or to upgrade to a successor product.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-646763.pdf</id>
    <title>SSA-646763 V1.2 (Last Update: 2021-04-13): DNSpooq - Dnsmasq Vulnerabilities in SCALANCE and RUGGEDCOM Devices</title>
    <updated>2021-04-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-646763.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Security researchers discovered and disclosed seven vulnerabilities in the open-source DNS component &#8220;dnsmasq&#8221;, also known as &#8220;DNSpooq&#8221; vulnerabilities (CVE-2020-25681 through CVE-2020-25687). Three vulnerabilities (CVE-2020-25684 through CVE-2020-25686) affect the validation of DNS responses and impact several SCALANCE and RUGGEDCOM devices as listed below.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-689942.pdf</id>
    <title>SSA-689942 V1.3 (Last Update: 2021-04-13): Denial-of-Service and DLL Hijacking Vulnerabilities in Multiple SIMATIC Software Products</title>
    <updated>2021-04-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-689942.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Multiple SIMATIC Software products are affected by two vulnerabilities that could allow an attacker to manipulate project files that may lead to Remote Code Execution or Denial-of-Service attacks.&lt;/p&gt;
&lt;p&gt;Siemens has released updates to some of the affected products and recommends that customers update to the latest version. Siemens is preparing further updates and recommends specific workarounds and mitigations until patches are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-715184.pdf</id>
    <title>SSA-715184 V1.1 (Last Update: 2021-04-13): Multiple File Parsing Vulnerabilities in Solid Edge</title>
    <updated>2021-04-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-715184.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Siemens has released new versions for Solid Edge to fix multiple vulnerabilities that could be triggered when the application reads files in different file formats (PAR, DFT, XML extensions). If a user is tricked to open a malicious file with the affected application, this could lead to a crash, and potentially also to arbitrary code execution or data extraction on the target host system.&lt;/p&gt;
&lt;p&gt;Siemens recommends to update to the latest version and to avoid opening of untrusted files from unknown sources. Please refer to &lt;a href="https://cert-portal.siemens.com/productcert/pdf/ssa-574442.pdf"&gt;SSA-574442&lt;/a&gt; for further information regarding latest version update.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-761617.pdf</id>
    <title>SSA-761617 V1.1 (Last Update: 2021-04-13): Authentication Bypass and Information Disclosure Vulnerabilities in SiNVR/SiVMS Video Server</title>
    <updated>2021-04-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-761617.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The Video Server application in SiNVR/SiVMS solutions contains two vulnerabilities involving authentication bypass (CVE-2019-18339) and information disclosure (CVE-2019-18340).&lt;/p&gt;
&lt;p&gt;PKE has released an update of the application that fixes CVE-2019-18339. This update is not available under the former Siemens OEM brand name SiNVR. For details see PKE Security Advisory at &lt;a href="https://sivms.cloud/wp-content/uploads/2021/03/sivms-cve-fixes_1.0_EN.pdf"&gt;https://sivms.cloud/wp-content/uploads/2021/03/sivms-cve-fixes_1.0_EN.pdf&lt;/a&gt;&lt;/p&gt;
&lt;p&gt;Siemens recommends specific countermeasures to mitigate the vulnerabilities.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-763427.pdf</id>
    <title>SSA-763427 V1.5 (Last Update: 2021-04-13): Authentication Bypass Vulnerability in SIMATIC NET CP Modules and TIM Devices</title>
    <updated>2021-04-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-763427.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Siemens has released updates for Communication Processor (CP) module families CP 343-1/TIM 3V-IE/TIM 4R-IE/CP 443-1 to resolve an authentication bypass vulnerability that could allow unauthenticated users to perform administrative operations under certain conditions.&lt;/p&gt;
&lt;p&gt;2021-04-13: Siemens has also added Profibus devices (CP 342-5 / CP 443-5) to this advisory. For these additional devices, the attacker must have network access to S7 Protocol Interface of the affected device and the configuration data of the CP must be stored on the CPU. Therefore, in this case the adapted CVSS Vector is CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H (9.6)&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-841348.pdf</id>
    <title>SSA-841348 V1.7 (Last Update: 2021-04-13): Multiple Vulnerabilities in the UMC Stack</title>
    <updated>2021-04-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-841348.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest update for the below listed products fixes two security vulnerabilities that could allow an attacker to cause a partial Denial-of-Service on the UMC component of the affected devices under certain circumstances, and one vulnerability that could allow an attacker to locally escalate privileges from a user with administrative privileges to execute code with SYSTEM level privileges.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-844761.pdf</id>
    <title>SSA-844761 V1.1 (Last Update: 2021-04-13): Multiple Vulnerabilities in SiNVR/SiVMS Video Server</title>
    <updated>2021-04-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-844761.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The Video Server application in SiNVR/SiVMS solutions contains five vulnerabilities involving information disclosure (CVE-2019-19291, CVE-2019-19299), path traversal (CVE-2019-19296, CVE-2019-19297), and denial-of-service (CVE-2019-19298).&lt;/p&gt;
&lt;p&gt;PKE has released an update of the application that fixes the reported vulnerabilities, except for CVE-2019-19298 and CVE-2019-19299. This update is not available under the former Siemens OEM brand name SiNVR. For details see PKE Security Advisory at &lt;a href="https://sivms.cloud/wp-content/uploads/2021/03/sivms-cve-fixes_1.0_EN.pdf"&gt;https://sivms.cloud/wp-content/uploads/2021/03/sivms-cve-fixes_1.0_EN.pdf&lt;/a&gt;&lt;/p&gt;
&lt;p&gt;Siemens recommends specific countermeasures to mitigate the vulnerabilities.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-951513.pdf</id>
    <title>SSA-951513 V1.2 (Last Update: 2021-04-13): Clickjacking Vulnerability in SCALANCE S, SCALANCE X-300, X-200IRT, and X-200 Switch Families</title>
    <updated>2021-04-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-951513.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Several SCALANCE X switches contain a vulnerability that could allow an attacker to perform administrative actions if the victim is tricked into clicking on a website controlled by the attacker. The attack only works if the victim has an authenticated session on the administrative interface of the switch.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-978220.pdf</id>
    <title>SSA-978220 V1.4 (Last Update: 2021-04-13): Denial-of-Service Vulnerability over SNMP in Multiple Industrial Products</title>
    <updated>2021-04-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-978220.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Several industrial products are affected by a vulnerability that could allow remote attackers to conduct a Denial-of-Service (DoS) attack by sending specially crafted packets to port 161/udp (SNMP).&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the new versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-979775.pdf</id>
    <title>SSA-979775 V1.1 (Last Update: 2021-04-13): Stack Overflow Vulnerability in SCALANCE and RUGGEDCOM Devices</title>
    <updated>2021-04-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-979775.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Several firmware versions of the SCALANCE and RUGGEDCOM devices listed below are affected by a vulnerability in the passive listening feature that could allow an attacker to cause a reboot or, under specific circumstances, attain remote code execution of the affected devices.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-231216.pdf</id>
    <title>SSA-231216 V1.0: Luxion KeyShot Vulnerabilities in Solid Edge</title>
    <updated>2021-03-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-231216.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The Solid Edge installation package includes a specific version of the third-party product &lt;a href="https://www.keyshot.com"&gt;KeyShot from Luxion&lt;/a&gt;, which may not contain the latest security fixes provided by Luxion.&lt;/p&gt;
&lt;p&gt;Siemens recommends to update KeyShot according to the information in the &lt;a href="https://download.keyshot.com/cert/lsa-192169/lsa-192169.pdf"&gt;Luxion Security Advisory LSA-192169&lt;/a&gt;.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-256092.pdf</id>
    <title>SSA-256092 V1.0: Multiple local Denial-of-Service Vulnerabilities in SIMATIC S7-PLCSIM V5.4</title>
    <updated>2021-03-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-256092.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities affecting SIMATIC S7-PLCSIM V5.4 could allow an attacker with local access to the system to craft special project files that may lead to denial-of-service attacks.&lt;/p&gt;
&lt;p&gt;Siemens recommends specific workarounds and mitigations.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-296266.pdf</id>
    <title>SSA-296266 V1.0: Denial-of-Service Vulnerability in SCALANCE and RUGGEDCOM Devices</title>
    <updated>2021-03-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-296266.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Some firmware versions of the SCALANCE and RUGGEDCOM devices listed below are affected by a vulnerability in the SSH authentication that could allow an attacker to cause a Denial-of-Service under certain conditions.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for the SCALANCE SC-600 family and recommends to update to the latest version. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-344238.pdf</id>
    <title>SSA-344238 V1.0: TCP Session Hijacking Vulnerability in Siemens Energy PLUSCONTROL 1st Gen Devices</title>
    <updated>2021-03-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-344238.pdf" rel="alternate"/>
    <summary>&lt;p&gt;PLUSCONTROL 1st Gen devices are affected by a vulnerability as initially reported in &lt;a href="https://cert-portal.siemens.com/productcert/pdf/ssa-362164.pdf"&gt;SSA-362164&lt;/a&gt; for the Mentor Nucleus TCP/IP stack. The vulnerability could allow an attacker located in the same network to hijack or terminate TCP/IP sessions of a vulnerable device.&lt;/p&gt;
&lt;p&gt;Siemens Energy recommends specific countermeasures for use cases of the affected product.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-541018.pdf</id>
    <title>SSA-541018 V1.0: Embedded TCP/IP Stack Vulnerabilities (AMNESIA:33) in SENTRON PAC / 3VA Devices (Part 2)</title>
    <updated>2021-03-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-541018.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Security researchers discovered and disclosed 33 vulnerabilities in several open-source TCP/IP stacks for embedded devices, also known as &#8220;AMNESIA:33&#8221; vulnerabilities.&lt;/p&gt;
&lt;p&gt;This advisory describes the impact of two of these vulnerabilities (CVE-2020-13987, CVE-2020-17437) to Siemens products.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
&lt;p&gt;The impact of another &#8220;AMNESIA:33&#8221; vulnerability (CVE-2020-13988) is described in &lt;a href="https://cert-portal.siemens.com/productcert/pdf/ssa-541017.pdf"&gt;Siemens Security Advisory SSA-541017&lt;/a&gt;.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-599268.pdf</id>
    <title>SSA-599268 V1.0: Several Vulnerabilities in TCP Stack of SIMATIC MV400 family</title>
    <updated>2021-03-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-599268.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Several vulnerabilities in the TCP stack of the SIMATIC MV400 family could allow an attacker to cause Denial-of-Service condition, or affect integrity of TCP connections.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for the SIMATIC MV400 family and recommends to update to the latest version&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-715184.pdf</id>
    <title>SSA-715184 V1.0: Multiple File Parsing Vulnerabilities in Solid Edge</title>
    <updated>2021-03-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-715184.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Siemens has released new versions for Solid Edge to fix multiple vulnerabilities that could be triggered when the application reads files in different file formats (PAR, DFT, XML extensions). If a user is tricked to open a malicious file with the affected application, this could lead to a crash, and potentially also to arbitrary code execution or data extraction on the target host system.&lt;/p&gt;
&lt;p&gt;Siemens recommends to update to the latest version and to avoid opening of untrusted files from unknown sources.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-731317.pdf</id>
    <title>SSA-731317 V1.0: Multiple vulnerabilities in SINEMA Remote Connect Web Based Management</title>
    <updated>2021-03-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-731317.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest update for SINEMA Remote Connect Server fixes vulnerabilities in the web interface that could allow authenticated unpriviledged user accounts to access functionality unauthorized. Siemens has released updates for SINEMA Remote Connect Server and recommends specific countermeasures.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-783481.pdf</id>
    <title>SSA-783481 V1.0: Denial-of-Service Vulnerability in LOGO! 8 BM</title>
    <updated>2021-03-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-783481.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A Denial-of-Service vulnerability has been identified in LOGO! 8 BM. This vulnerability could allow an attacker to crash a device, if a user is tricked into loading a malicious project file onto an affected device.&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-917115.pdf</id>
    <title>SSA-917115 V1.0: Mendix Forgot Password Appstore module</title>
    <updated>2021-03-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-917115.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Mendix Forgot Password Appstore module contains a vulnerability that could allow authorized users to take over accounts.&lt;/p&gt;
&lt;p&gt;Mendix has released an update for the Mendix Forgot Password Appstore module and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-936080.pdf</id>
    <title>SSA-936080 V1.0: Multiple Vulnerabilities in Third-Party Component libcurl</title>
    <updated>2021-03-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-936080.pdf" rel="alternate"/>
    <summary>&lt;p&gt;SIMATIC NET CM 1542-1 and SCALANCE SC600 family devices are vulnerable to a vulnerability in the third party component libcurl that could allow an attacker to cause a Denial-of-Service condition on the affected devices.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for SCALANCE SC600. For the remaining affected product, Siemens is preparing further updates and recommends specific countermeasures until fixes are available.&lt;/p&gt;
&lt;p&gt;The impact of additional libcurl vulnerabilities is described in &lt;a href="https://cert-portal.siemens.com/productcert/pdf/ssa-436177.pdf"&gt;Siemens Security Advisory SSA-436177&lt;/a&gt;.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-979775.pdf</id>
    <title>SSA-979775 V1.0: Stack Overflow Vulnerability in SCALANCE and RUGGEDCOM Devices</title>
    <updated>2021-03-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-979775.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Several firmware versions of the SCALANCE and RUGGEDCOM devices listed below are affected by a vulnerability in the passive listening feature that could allow an attacker to cause a reboot or, under specific circumstances, attain remote code execution of the affected devices.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-293562.pdf</id>
    <title>SSA-293562 V3.1 (Last Update: 2021-03-09): Vulnerabilities in Industrial Products</title>
    <updated>2021-03-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-293562.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Several industrial devices are affected by two vulnerabilities that could allow an attacker to cause a Denial-of-Service condition via PROFINET DCP network packets under certain circumstances. The precondition for this scenario is a direct layer 2 access to the affected products. PROFIBUS interfaces are not affected.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the new versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-312271.pdf</id>
    <title>SSA-312271 V1.6 (Last Update: 2021-03-09): Unquoted Search Path Vulnerabilities in Windows-based Industrial Software Applications</title>
    <updated>2021-03-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-312271.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest update for affected products fix local privilege escalation vulnerabilities that could allow authorized local users with administrative privileges to execute custom code with SYSTEM level privileges.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for some of the affected products, and is working on further updates. For the remaining affected products, Siemens recommends specific countermeasures until fixes are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-346262.pdf</id>
    <title>SSA-346262 V2.9 (Last Update: 2021-03-09): Denial-of-Service in Industrial Products</title>
    <updated>2021-03-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-346262.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Several industrial products are affected by a vulnerability that could allow remote attackers to conduct a Denial-of-Service (DoS) attack by sending specially crafted packets to port 161/udp (SNMP).&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, and recommends that customers update to the new version. Siemens is preparing further updates and recommends specific countermeasures until patches are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-398519.pdf</id>
    <title>SSA-398519 V1.6 (Last Update: 2021-03-09): Vulnerabilities in Intel CPUs (November 2019)</title>
    <updated>2021-03-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-398519.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Intel has published information on vulnerabilities in Intel products in &lt;a href="https://blogs.intel.com/technology/2019/11/ipas-november-2019-intel-platform-update-ipu/#gs.jdy72s"&gt;November 2019&lt;/a&gt;. In this advisory Siemens only explicitly mentions the vulnerabilities from the &#8220;Intel&#174; CPU Security Advisory&#8221; and one vulnerability from &#8220;Intel&#174; CSME, Intel&#174; SPS, Intel&#174; TXE, Intel&#174; AMT, Intel&#174; PTT and Intel&#174; DAL Advisory&#8221; and lists the Siemens IPC related products that are affected by these vulnerabilities. For further information about BIOS updates related to Intel CPU vulnerabilities see: &lt;a href="https://support.industry.siemens.com/cs/ww/en/view/109747626" class="uri"&gt;https://support.industry.siemens.com/cs/ww/en/view/109747626&lt;/a&gt;.&lt;/p&gt;
&lt;p&gt;Several Siemens Industrial Products contain processors that are affected by the vulnerabilities. Siemens has released updates for several affected products and is currently working on BIOS updates that include chipset microcode updates for further products.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-436177.pdf</id>
    <title>SSA-436177 V1.1 (Last Update: 2021-03-09): Multiple Vulnerabilities in SINEMA Remote Connect</title>
    <updated>2021-03-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-436177.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest updates for SINEMA Remote Connect Client and Server fix multiple vulnerabilities. One of these vulnerabilities could allow an attacker to circumvent the authorization of the system for certain functionalities and to execute privileged functions.&lt;/p&gt;
&lt;p&gt;Siemens has released firmware updates for SINEMA Remote Connect Client and Server.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssb-439005.pdf</id>
    <title>SSB-439005 V3.2 (Last Update: 2021-03-09): Vulnerabilities in the additional GNU/Linux subsystem of the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP</title>
    <updated>2021-03-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssb-439005.pdf" rel="alternate"/>
    <summary>
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-455843.pdf</id>
    <title>SSA-455843 V1.5 (Last Update: 2021-03-09): WIBU Systems CodeMeter Runtime Vulnerabilities in Siemens and Siemens Energy Products</title>
    <updated>2021-03-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-455843.pdf" rel="alternate"/>
    <summary>&lt;p&gt;CISA and WIBU Systems disclosed six vulnerabilities in different versions of CodeMeter Runtime, a product provided by WIBU Systems and used in several Siemens and Siemens Energy products for license management.&lt;/p&gt;
&lt;p&gt;The vulnerabilities are described in the section &#8220;Vulnerability Classification&#8221; below and got assigned the CVE IDs CVE-2020-14509, CVE-2020-14513, CVE-2020-14515, CVE-2020-14517, CVE-2020-14519, and CVE-2020-16233. Successful exploitation of these vulnerabilities could allow an attacker to alter and forge a license file, cause a denial-of-service condition, attain remote code execution, or prevent normal operation of the Siemens software that depends on CodeMeter Runtime.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-541017.pdf</id>
    <title>SSA-541017 V1.2 (Last Update: 2021-03-09): Embedded TCP/IP Stack Vulnerabilities (AMNESIA:33) in SIRIUS 3RW5 Modbus TCP and SENTRON PAC / 3VA Devices</title>
    <updated>2021-03-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-541017.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Security researchers discovered and disclosed 33 vulnerabilities in several open-source TCP/IP stacks for embedded devices, also known as &#8220;AMNESIA:33&#8221; vulnerabilities.&lt;/p&gt;
&lt;p&gt;This advisory describes the impact of one of these vulnerabilities (CVE-2020-13988) to Siemens products. Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
&lt;p&gt;The impact of additional &#8220;AMNESIA:33&#8221; vulnerabilities is described in &lt;a href="https://cert-portal.siemens.com/productcert/pdf/ssa-541018.pdf"&gt;Siemens Security Advisory SSA-541018&lt;/a&gt;.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-593272.pdf</id>
    <title>SSA-593272 V1.2 (Last Update: 2021-03-09): SegmentSmack in Interniche IP-Stack based Industrial Devices</title>
    <updated>2021-03-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-593272.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability exists in affected products that could allow remote attackers to affect the availability of the devices under certain conditions.&lt;/p&gt;
&lt;p&gt;The underlying TCP stack can be forced to make very computation expensive calls for every incoming packet which can lead to a Denial-of-Service.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-646763.pdf</id>
    <title>SSA-646763 V1.1 (Last Update: 2021-03-09): DNSpooq - Dnsmasq Vulnerabilities in SCALANCE and RUGGEDCOM Devices</title>
    <updated>2021-03-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-646763.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Security researchers discovered and disclosed seven vulnerabilities in the open-source DNS component &#8220;dnsmasq&#8221;, also known as &#8220;DNSpooq&#8221; vulnerabilities (CVE-2020-25681 through CVE-2020-25687). Three vulnerabilities (CVE-2020-25684 through CVE-2020-25686) affect the validation of DNS responses and impact several SCALANCE and RUGGEDCOM devices as listed below.&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-780073.pdf</id>
    <title>SSA-780073 V1.7 (Last Update: 2021-03-09): Denial-of-Service Vulnerability in PROFINET Devices via DCE-RPC Packets</title>
    <updated>2021-03-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-780073.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Products that include the Siemens PROFINET-IO (PNIO) stack in versions prior V06.00 are potentially affected by a denial-of-service vulnerability when multiple legitimate diagnostic package requests are sent to the DCE-RPC interface.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the new versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
&lt;p&gt;Additionally, Siemens recommends other vendors of PROFINET devices to check if their products have incorporated a vulnerable version of the Siemens PNIO stack as part of the Siemens Development/Evaluation Kits.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-816980.pdf</id>
    <title>SSA-816980 V1.1 (Last Update: 2021-03-09): Multiple Web Vulnerabilities in SIMATIC MV400 Family</title>
    <updated>2021-03-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-816980.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The SIMATIC MV400 product family is affected by two web vulnerabilities. The vulnerabilities could allow an authenticated user to escalate privileges, or might expose sensitive information to an attacker that is able to eavesdrop the communication.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for the SIMATIC MV400 family and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-841348.pdf</id>
    <title>SSA-841348 V1.6 (Last Update: 2021-03-09): Multiple Vulnerabilities in the UMC Stack</title>
    <updated>2021-03-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-841348.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest update for the below listed products fixes two security vulnerabilities that could allow an attacker to cause a partial Denial-of-Service on the UMC component of the affected devices under certain circumstances, and one vulnerability that could allow an attacker to locally escalate privileges from a user with administrative privileges to execute code with SYSTEM level privileges.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-156833.pdf</id>
    <title>SSA-156833 V1.0: Zip-Slip Directory Traversal Vulnerability in SINEMA Server and SINEC NMS</title>
    <updated>2021-02-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-156833.pdf" rel="alternate"/>
    <summary>&lt;p&gt;There exists a directory traversal vulnerability which allows arbitrary file upload to an affected system. This type of vulnerability is also known as &#8216;Zip-Slip&#8217;. An authenticated attacker could exploit this vulnerability to gain arbitrary code execution by uploading a new or modifying an existing file to an affected system.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-362164.pdf</id>
    <title>SSA-362164 V1.0: Predictable Initial Sequence Numbers in Mentor Nucleus TCP stack</title>
    <updated>2021-02-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-362164.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Some versions of Mentor Nucleus ReadyStart and Nucleus NET use Initial Sequence Numbers for TCP- Sessions that are predictable.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest version(s).&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-379803.pdf</id>
    <title>SSA-379803 V1.0: Vulnerabilities in RUGGEDCOM ROX II</title>
    <updated>2021-02-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-379803.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest update for ROX II contains multiple fixes for IPsec related vulnerabilities in Libreswan and NSS.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-428051.pdf</id>
    <title>SSA-428051 V1.0: Privilege Escalation Vulnerability in TIA Administrator</title>
    <updated>2021-02-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-428051.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest update for TIA Administrator, installed together with TIA Portal and PCS neo, fixes a privilege escalation vulnerability that could allow local users to escalate privileges and execute code as local SYSTEM user.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for TIA Portal and recommends that customers update to the latest version. Siemens is preparing further updates and recommends specific countermeasures until fixes are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-536315.pdf</id>
    <title>SSA-536315 V1.0: Privilege escalation vulnerability in DIGSI 4</title>
    <updated>2021-02-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-536315.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vertical privilege escalation vulnerability exists in DIGSI 4.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for DIGSI 4 and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-663999.pdf</id>
    <title>SSA-663999 V1.0: Multiple File Parsing Vulnerabilities in JT2Go and Teamcenter Visualization before V13.1.0.1</title>
    <updated>2021-02-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-663999.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Siemens has released version V13.1.0.1 for JT2Go and Teamcenter Visualization to fix multiple vulnerabilities that could be triggered when the products read files in different file formats (PAR, BMP, TIFF, CGM, TGA, PCT, HPG, PLT, RAS, ASM, DGN, DXF, DWG). If a user is tricked to opening of a malicious file with the affected products, this could lead to application crash, or potentially arbitrary code execution or data extraction on the target host system.&lt;/p&gt;
&lt;p&gt;Siemens recommends to update to the latest versions and to limit opening of untrusted files from unknown sources in the affected products.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-686152.pdf</id>
    <title>SSA-686152 V1.0: Denial-of-Service Vulnerability in ARP Protocol of SCALANCE W780 and W740</title>
    <updated>2021-02-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-686152.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A Denial-of-Service vulnerability was found affecting the ARP protocol on older firmware versions of the SCALANCE W780 and W740 (IEEE 802.11n) devices.&lt;/p&gt;
&lt;p&gt;Siemens recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-794542.pdf</id>
    <title>SSA-794542 V1.0: Insecure Folder Permissions in SIMARIS configuration</title>
    <updated>2021-02-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-794542.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The installation of SIMARIS configuration causes insecure folder permissions that could allow vertical privilege escalation.&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends specific countermeasures until fixes are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-944678.pdf</id>
    <title>SSA-944678 V1.0: Potential Password Protection Bypass in SIMATIC WinCC</title>
    <updated>2021-02-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-944678.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in the SIMATIC WinCC Graphics Designer tool could allow an attacker that has physical access to a machine running the software to get access to the user&#8217;s private password-protected pictures.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for SIMATIC WinCC and recommends to update to the latest version. Siemens recommends specific countermeasures for PCS 7 as the affected feature is not officially supported.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-100232.pdf</id>
    <title>SSA-100232 V1.2 (Last Update: 2021-02-09): Denial-of-Service vulnerability in SCALANCE X Switches</title>
    <updated>2021-02-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-100232.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in several SCALANCE X devices could allow an unauthenticated attacker with network access to an affected device to perform a denial-of-service.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for SCALANCE X-200IRT and recommends to update to the latest version. Siemens recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-102233.pdf</id>
    <title>SSA-102233 V1.5 (Last Update: 2021-02-09): SegmentSmack in VxWorks-based Industrial Devices</title>
    <updated>2021-02-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-102233.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The products listed below contain a vulnerability that could allow remote attackers to affect the availability of the devices under certain conditions. The underlying TCP stack can be forced to make very computation expensive calls for every incoming packet which can lead to a Denial-of-Service.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for the SCALANCE X-200IRT switch family and recommends to update to the latest version. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-139628.pdf</id>
    <title>SSA-139628 V1.1 (Last Update: 2021-02-09): Vulnerabilities in Web Server for Scalance X Products</title>
    <updated>2021-02-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-139628.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Several SCALANCE X switches contain vulnerabilities in the web server of the affected devices.&lt;/p&gt;
&lt;p&gt;An unauthenticated attacker could reboot, cause denial-of-service conditions and potentially impact the system by other means through heap and buffer overflow vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-274900.pdf</id>
    <title>SSA-274900 V1.1 (Last Update: 2021-02-09): Use of hardcoded key in Scalance X devices under certain conditions</title>
    <updated>2021-02-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-274900.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Scalance X devices might not generate a unique random key after factory reset, and use a private key shipped with the firmware&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-349422.pdf</id>
    <title>SSA-349422 V1.5 (Last Update: 2021-02-09): Denial-of-Service in Industrial Real-Time (IRT) Devices</title>
    <updated>2021-02-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-349422.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in the affected products could allow an unauthorized attacker with network access to perform a denial-of-service attack resulting in loss of real-time synchronization.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-398519.pdf</id>
    <title>SSA-398519 V1.5 (Last Update: 2021-02-09): Vulnerabilities in Intel CPUs (November 2019)</title>
    <updated>2021-02-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-398519.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Intel has published information on vulnerabilities in Intel products in &lt;a href="https://blogs.intel.com/technology/2019/11/ipas-november-2019-intel-platform-update-ipu/#gs.jdy72s"&gt;November 2019&lt;/a&gt;. In this advisory Siemens only explicitly mentions the vulnerabilities from the &#8220;Intel&#174; CPU Security Advisory&#8221; and one vulnerability from &#8220;Intel&#174; CSME, Intel&#174; SPS, Intel&#174; TXE, Intel&#174; AMT, Intel&#174; PTT and Intel&#174; DAL Advisory&#8221; and lists the Siemens IPC related products that are affected by these vulnerabilities. For further information about BIOS updates related to Intel CPU vulnerabilities see: &lt;a href="https://support.industry.siemens.com/cs/ww/en/view/109747626" class="uri"&gt;https://support.industry.siemens.com/cs/ww/en/view/109747626&lt;/a&gt;.&lt;/p&gt;
&lt;p&gt;Several Siemens Industrial Products contain processors that are affected by the vulnerabilities. Siemens has released updates for several affected products and is currently working on BIOS updates that include chipset microcode updates for further products.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssb-439005.pdf</id>
    <title>SSB-439005 V3.1 (Last Update: 2021-02-09): Vulnerabilities in the additional GNU/Linux subsystem of the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP</title>
    <updated>2021-02-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssb-439005.pdf" rel="alternate"/>
    <summary>
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-455843.pdf</id>
    <title>SSA-455843 V1.4 (Last Update: 2021-02-09): WIBU Systems CodeMeter Runtime Vulnerabilities in Siemens and Siemens Energy Products</title>
    <updated>2021-02-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-455843.pdf" rel="alternate"/>
    <summary>&lt;p&gt;CISA and WIBU Systems disclosed six vulnerabilities in different versions of CodeMeter Runtime, a product provided by WIBU Systems and used in several Siemens and Siemens Energy products for license management.&lt;/p&gt;
&lt;p&gt;The vulnerabilities are described in the section &#8220;Vulnerability Classification&#8221; below and got assigned the CVE IDs CVE-2020-14509, CVE-2020-14513, CVE-2020-14515, CVE-2020-14517, CVE-2020-14519, and CVE-2020-16233. Successful exploitation of these vulnerabilities could allow an attacker to alter and forge a license file, cause a denial-of-service condition, attain remote code execution, or prevent normal operation of the Siemens software that depends on CodeMeter Runtime.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-534763.pdf</id>
    <title>SSA-534763 V1.3 (Last Update: 2021-02-09): Special Register Buffer Data Sampling (SRBDS) aka Crosstalk in Industrial Products</title>
    <updated>2021-02-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-534763.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Security researchers published information on a vulnerability known as Crosstalk (&lt;a href="https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00320.html"&gt;INTEL-SA-00320&lt;/a&gt;). This vulnerability affects modern Intel processors to a varying degree.&lt;/p&gt;
&lt;p&gt;Several Siemens Industrial Products contain processors that are affected by the vulnerability.&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends specific countermeasures until fixes are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-541017.pdf</id>
    <title>SSA-541017 V1.1 (Last Update: 2021-02-09): Embedded TCP/IP Stack Vulnerabilities (AMNESIA:33) in SIRIUS 3RW5 Modbus TCP and SENTRON PAC / 3VA Devices</title>
    <updated>2021-02-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-541017.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Security researchers discovered and disclosed 33 vulnerabilities in several open-source TCP/IP stacks for embedded devices, also known as &#8220;AMNESIA:33&#8221; vulnerabilities.&lt;/p&gt;
&lt;p&gt;The Siemens products mentioned below are affected by one of these vulnerabilities (CVE-2020-13988).&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-622830.pdf</id>
    <title>SSA-622830 V1.1 (Last Update: 2021-02-09): Multiple File Parsing Vulnerabilities in JT2Go and Teamcenter Visualization before V13.1.0</title>
    <updated>2021-02-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-622830.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Siemens has released version V13.1.0 for JT2Go and Teamcenter Visualization to fix multiple vulnerabilities that could be triggered when the products read files in different file formats (JT, XML, CG4, CGM, PDF, RGB, SGI, TGA, PAR, ASM, PCX). If a user is tricked to opening of a malicious file with the affected products, this could lead to application crash, or potentially arbitrary code execution or data extraction on the target host system.&lt;/p&gt;
&lt;p&gt;Siemens recommends to update to the latest versions and to limit opening of untrusted files from unknown sources in the affected products. Please refer to &lt;a href="https://cert-portal.siemens.com/productcert/pdf/ssa-663999.pdf"&gt;SSA-663999&lt;/a&gt; for further information regarding latest version update.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-646841.pdf</id>
    <title>SSA-646841 V1.2 (Last Update: 2021-02-09): Recoverable Password from Configuration Storage in SCALANCE X Switches</title>
    <updated>2021-02-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-646841.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability exists in several SCALANCE X switches that could allow external entities to reconstruct passwords for users of the affected devices if an attacker is able to obtain a backup of the device configuration.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-841348.pdf</id>
    <title>SSA-841348 V1.5 (Last Update: 2021-02-09): Multiple Vulnerabilities in the UMC Stack</title>
    <updated>2021-02-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-841348.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest update for the below listed products fixes two security vulnerabilities that could allow an attacker to cause a partial Denial-of-Service on the UMC component of the affected devices under certain circumstances, and one vulnerability that could allow an attacker to locally escalate privileges from a user with administrative privileges to execute code with SYSTEM level privileges.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-886514.pdf</id>
    <title>SSA-886514 V1.1 (Last Update: 2021-02-09): Persistent XSS Vulnerabilities in the Web Interface of Climatix POL908 and POL909 Modules</title>
    <updated>2021-02-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-886514.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The Climatix BACnet/IP (POL908) and AWM (POL909) modules contain two persistent cross-site scripting (XSS) vulnerabilities in the web interface that could allow a remote attacker to execute arbitrary JavaScript code in the context of other users&#8217; web sessions.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for Climatix POL909 and recommends to update to the latest version. Siemens recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-951513.pdf</id>
    <title>SSA-951513 V1.1 (Last Update: 2021-02-09): Clickjacking Vulnerability in SCALANCE X-300, X-200IRT, and X-200 Switch Families</title>
    <updated>2021-02-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-951513.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Several SCALANCE X switches contain a vulnerability that could allow an attacker to perform administrative actions if the victim is tricked into clicking on a website controlled by the attacker. The attack only works if the victim has an authenticated session on the administrative interface of the switch.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-978220.pdf</id>
    <title>SSA-978220 V1.3 (Last Update: 2021-02-09): Denial-of-Service Vulnerability over SNMP in Multiple Industrial Products</title>
    <updated>2021-02-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-978220.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Several industrial products are affected by a vulnerability that could allow remote attackers to conduct a Denial-of-Service (DoS) attack by sending specially crafted packets to port 161/udp (SNMP).&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the new versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-520004.pdf</id>
    <title>SSA-520004 V1.0: Telnet Authentication Vulnerability in SIMATIC HMI Comfort Panels</title>
    <updated>2021-01-28T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-520004.pdf" rel="alternate"/>
    <summary>&lt;p&gt;SIMATIC HMI Panels are affected by a vulnerability that could allow a remote attacker to gain full access to the device(s), if the telnet service is enabled.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-646763.pdf</id>
    <title>SSA-646763 V1.0: DNSpooq - Dnsmasq Vulnerabilities in SCALANCE and RUGGEDCOM Devices</title>
    <updated>2021-01-19T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-646763.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Security researchers discovered and disclosed seven vulnerabilities in the open-source DNS component &#8220;dnsmasq&#8221;, also known as &#8220;DNSpooq&#8221; vulnerabilities (CVE-2020-25681 through CVE-2020-25687). Three vulnerabilities (CVE-2020-25684 through CVE-2020-25686) affect the validation of DNS responses and impact several SCALANCE and RUGGEDCOM devices as listed below.&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-646763.pdf</id>
    <title>SSA-646763 V1.0: DNSpooq - Dnsmasq Vulnerabilities in SCALANCE and RUGGEDCOM Devices</title>
    <updated>2021-01-19T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-646763.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Security researchers discovered and disclosed seven vulnerabilities in the open-source DNS component &#8220;dnsmasq&#8221;, also known as &#8220;DNSpooq&#8221; vulnerabilities (CVE-2020-25681 through CVE-2020-25687). Three vulnerabilities (CVE-2020-25684 through CVE-2020-25686) affect the validation of DNS responses and impact several SCALANCE and RUGGEDCOM devices as listed below.&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-979834.pdf</id>
    <title>SSA-979834 V1.1 (Last Update: 2021-01-15): Multiple vulnerabilities in Solid Edge</title>
    <updated>2021-01-15T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-979834.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Solid Edge is affected by multiple vulnerabilities that could allow arbitrary code execution on an affected system. Siemens has released an update for Solid Edge and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-139628.pdf</id>
    <title>SSA-139628 V1.0: Vulnerabilities in Web Server for Scalance X Products</title>
    <updated>2021-01-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-139628.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Several SCALANCE X switches contain vulnerabilities in the web server of the affected devices.&lt;/p&gt;
&lt;p&gt;An unauthenticated attacker could reboot, cause denial-of-service conditions and potentially impact the system by other means through heap and buffer overflow vulnerabilities.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest version(s). Siemens recommends countermeasures where fixes are not currently available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-274900.pdf</id>
    <title>SSA-274900 V1.0: Use of hardcoded key in Scalance X devices under certain conditions</title>
    <updated>2021-01-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-274900.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Scalance X devices might not generate a unique random key after factory reset, and use a private key shipped with the firmware&lt;/p&gt;
&lt;p&gt;Siemens has released updates for some devices, is working on updates for the remaining affected products and recommends specific countermeasures until fixes are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-622830.pdf</id>
    <title>SSA-622830 V1.0: Multiple Vulnerabilities in JT2Go and Teamcenter Visualization</title>
    <updated>2021-01-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-622830.pdf" rel="alternate"/>
    <summary>&lt;p&gt;JT2Go and Teamcenter Visualization are affected by multiple vulnerabilities that could lead to arbitrary code execution or data extraction on the target host system. Siemens has released updates for both affected products and recommends to update to the latest versions. Siemens is also preparing further updates and recommends specific countermeasures until remaining fixes are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-979834.pdf</id>
    <title>SSA-979834 V1.0: Multiple vulnerabilities in Solid Edge</title>
    <updated>2021-01-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-979834.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Solid Edge is affected by multiple vulnerabilities that could allow arbitrary code execution on an affected system. Siemens has released an update for Solid Edge and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-102233.pdf</id>
    <title>SSA-102233 V1.4 (Last Update: 2021-01-12): SegmentSmack in VxWorks-based Industrial Devices</title>
    <updated>2021-01-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-102233.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The products listed below contain a vulnerability that could allow remote attackers to affect the availability of the devices under certain conditions. The underlying TCP stack can be forced to make very computation expensive calls for every incoming packet which can lead to a Denial-of-Service.&lt;/p&gt;
&lt;p&gt;Siemens is working on software updates for affected products and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-162506.pdf</id>
    <title>SSA-162506 V1.1 (Last Update: 2021-01-12): DHCP Client Vulnerability in SIMOTICS CONNECT 400, Desigo PXC/PXM, APOGEE MEC/MBC/PXC, APOGEE PXC Series, and TALON TC Series</title>
    <updated>2021-01-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-162506.pdf" rel="alternate"/>
    <summary>&lt;p&gt;SIMOTICS CONNECT 400, Desigo (Power PC-based), APOGEE MEC/MBC/PXC and TALON TC products are affected by a DHCP Client vulnerability as initially reported in &lt;a href="https://cert-portal.siemens.com/productcert/pdf/ssa-434032.pdf"&gt;SSA-434032&lt;/a&gt; for the Mentor Nucleus Networking Module.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens recommends countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-270778.pdf</id>
    <title>SSA-270778 V1.6 (Last Update: 2021-01-12): Denial-of-Service Vulnerability in SIMATIC PCS 7, SIMATIC WinCC and SIMATIC NET PC Software</title>
    <updated>2021-01-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-270778.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A Denial-of-Service vulnerability was found in SIMATIC PCS 7, SIMATIC WinCC and SIMATIC NET PC software when encrypted communication is enabled. The vulnerability could allow an attacker with network access to cause a Denial-of-Service condition under certain circumstances (versions prior to SIMATIC WinCC V7.3 or SIMATIC PCS 7 V8.1 are not affected as encrypted communication is not an option).&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends that customers update to the latest version(s). Siemens is preparing further updates and recommends specific countermeasures until fixes are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-312271.pdf</id>
    <title>SSA-312271 V1.5 (Last Update: 2021-01-12): Unquoted Search Path Vulnerabilities in Windows-based Industrial Software Applications</title>
    <updated>2021-01-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-312271.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest update for affected products fix local privilege escalation vulnerabilities that could allow authorized local users with administrative privileges to execute custom code with SYSTEM level privileges.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for some of the affected products, and is working on further updates. For the remaining affected products, Siemens recommends specific countermeasures until fixes are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-455843.pdf</id>
    <title>SSA-455843 V1.3 (Last Update: 2021-01-12): WIBU Systems CodeMeter Runtime Vulnerabilities in Siemens and Siemens Energy Products</title>
    <updated>2021-01-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-455843.pdf" rel="alternate"/>
    <summary>&lt;p&gt;CISA and WIBU Systems disclosed six vulnerabilities in different versions of CodeMeter Runtime, a product provided by WIBU Systems and used in several Siemens and Siemens Energy products for license management.&lt;/p&gt;
&lt;p&gt;The vulnerabilities are described in the section &#8220;Vulnerability Classification&#8221; below and got assigned the CVE IDs CVE-2020-14509, CVE-2020-14513, CVE-2020-14515, CVE-2020-14517, CVE-2020-14519, and CVE-2020-16233. Successful exploitation of these vulnerabilities could allow an attacker to alter and forge a license file, cause a denial-of-service condition, attain remote code execution, or prevent normal operation of the Siemens software that depends on CodeMeter Runtime.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the latest versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-473245.pdf</id>
    <title>SSA-473245 V1.9 (Last Update: 2021-01-12): Denial-of-Service Vulnerability in Profinet Devices</title>
    <updated>2021-01-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-473245.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in affected devices could allow an attacker to perform a denial-of-service attack if a large amount of specially crafted UDP packets are sent to the device.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, and recommends that customers update to the new version. Siemens is preparing further updates and recommends specific countermeasures until patches are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-604937.pdf</id>
    <title>SSA-604937 V1.2 (Last Update: 2021-01-12): Multiple Web Server Vulnerabilities in Opcenter Execution Core</title>
    <updated>2021-01-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-604937.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Opcenter Execution Core (formerly known as Camstar Enterprise Platform) contains a cross-site scripting (CVE-2020-7576), an SQL injection (CVE-2020-7577), a privilege escalation (CVE-2020-7578), and an information disclosure vulnerability (CVE-2020-28930) in various versions of the product.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for Opcenter Execution Core and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-629512.pdf</id>
    <title>SSA-629512 V1.2 (Last Update: 2021-01-12): Local Privilege Escalation Vulnerability in TIA Portal</title>
    <updated>2021-01-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-629512.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest updates for TIA Portal fix a vulnerability that could allow a local attacker to execute arbitrary code with SYSTEM privileges.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest version(s).&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-415783.pdf</id>
    <title>SSA-415783 V1.0: Insecure SSL configuration in SICAM A8000 CP-8000, CP-8021 and CP-8022</title>
    <updated>2020-12-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-415783.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Some firmware versions of the affected products use outdated and insecure ciphers or can be downgraded to use outdated and insecure ciphers.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-478893.pdf</id>
    <title>SSA-478893 V1.0: TightVNC Vulnerabilities in Industrial Products</title>
    <updated>2020-12-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-478893.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Multiple TightVNC (V1.x) vulnerabilities in the affected products could allow remote code execution and Denial-of-Service attacks under certain conditions.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, is working on updates for the remaining affected products and recommends specific countermeasures until fixes are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-480824.pdf</id>
    <title>SSA-480824 V1.0: Multiple Vulnerabilities in LOGO! 8 BM</title>
    <updated>2020-12-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-480824.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest update for LOGO! 8 BM fixes multiple vulnerabilities. The most severe could allow an attacker with network access to gain full control over the device.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends that customers update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-541017.pdf</id>
    <title>SSA-541017 V1.0: Embedded TCP/IP Stack Vulnerabilities (AMNESIA:33) in SIRIUS 3RW5 Modbus TCP and SENTRON PAC Devices</title>
    <updated>2020-12-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-541017.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Recently security researchers discovered and disclosed 33 vulnerabilities in several open-source TCP/IP stacks for embedded devices, also known as &#8220;AMNESIA:33&#8221; vulnerabilities.&lt;/p&gt;
&lt;p&gt;The Siemens products mentioned below are affected by one of these vulnerabilities (CVE-2020-13988).&lt;/p&gt;
&lt;p&gt;Siemens has released updates for SENTRON PAC devices, is working on updates for SIRIUS 3RW5 communication module Modbus TCP, and recommends specific countermeasures for vulnerable product versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-700697.pdf</id>
    <title>SSA-700697 V1.0: Denial-of-Service Vulnerability in Web Server of SIMATIC Controllers</title>
    <updated>2020-12-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-700697.pdf" rel="alternate"/>
    <summary>&lt;p&gt;SIMATIC ET 200SP Open Controller V20.8 and SIMATIC S7-1500 Software Controller V20.8 are affected by a denial-of-service vulnerability in the web server.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-712690.pdf</id>
    <title>SSA-712690 V1.0: Vulnerabilities in XHQ Operations Intelligence</title>
    <updated>2020-12-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-712690.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities have been identified in the XHQ Operations Intelligence product line. These vulnerabilities could allow for data injection in the XHQ&#8217;s web interfaces.&lt;/p&gt;
&lt;p&gt;Siemens recommends to update XHQ Operations Intelligence product line to the newest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-087240.pdf</id>
    <title>SSA-087240 V1.2 (Last Update: 2020-12-08): Vulnerabilities in SIEMENS LOGO!</title>
    <updated>2020-12-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-087240.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Two vulnerabilities have been identified in SIEMENS LOGO!8 BM devices. The most severe vulnerability could allow an attacker to hijack existing web sessions.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends that customers update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-102144.pdf</id>
    <title>SSA-102144 V1.1 (Last Update: 2020-12-08): Code Execution Vulnerability in LOGO! Soft Comfort</title>
    <updated>2020-12-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-102144.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability was identified in LOGO! Soft Comfort. The vulnerability could allow an attacker to execute arbitrary code if the attacker tricks a legitimate user to open a manipulated project.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for the LOGO! Soft Comfort and recommends that customers update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-102233.pdf</id>
    <title>SSA-102233 V1.3 (Last Update: 2020-12-08): SegmentSmack in VxWorks-based Industrial Devices</title>
    <updated>2020-12-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-102233.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The products listed below contain a vulnerability that could allow remote attackers to affect the availability of the devices under certain conditions. The underlying TCP stack can be forced to make very computation expensive calls for every incoming packet which can lead to a Denial-of-Service.&lt;/p&gt;
&lt;p&gt;Siemens is working on software updates for affected products and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-181018.pdf</id>
    <title>SSA-181018 V1.6 (Last Update: 2020-12-08): Heap Overflow Vulnerability in SCALANCE X switches, RUGGEDCOM Win, RFID 181EIP, and SIMATIC RF182C</title>
    <updated>2020-12-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-181018.pdf" rel="alternate"/>
    <summary>&lt;p&gt;SCALANCE X switches, RUGGEDCOM Win, RFID 181EIP, and SIMATIC RF182C are affected by a vulnerability that could allow an unprivileged attacker located in the same local network segment (OSI Layer 2) to gain system privileges by sending a specially crafted DHCP response to a client&#8217;s DHCP request.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the new versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-312271.pdf</id>
    <title>SSA-312271 V1.4 (Last Update: 2020-12-08): Unquoted Search Path Vulnerabilities in Windows-based Industrial Software Applications</title>
    <updated>2020-12-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-312271.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest update for affected products fix local privilege escalation vulnerabilities that could allow authorized local users with administrative privileges to execute custom code with SYSTEM level privileges.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for some of the affected products, and is working on further updates. For the remaining affected products, Siemens recommends specific countermeasures until fixes are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-381684.pdf</id>
    <title>SSA-381684 V1.3 (Last Update: 2020-12-08): Improper Password Protection during Authentication in SIMATIC S7-300 and S7-400 CPUs and Derived Products</title>
    <updated>2020-12-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-381684.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability has been identified in SIMATIC S7-300 and S7-400 CPU families and derived products, which could result in credential disclosure.&lt;/p&gt;
&lt;p&gt;Siemens recommends countermeasures as there are currently no fixes available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssb-439005.pdf</id>
    <title>SSB-439005 V3.0 (Last Update: 2020-12-08): Vulnerabilities in the additional GNU/Linux subsystem of the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP</title>
    <updated>2020-12-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssb-439005.pdf" rel="alternate"/>
    <summary>
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-462066.pdf</id>
    <title>SSA-462066 V2.1 (Last Update: 2020-12-08): Vulnerability known as TCP SACK PANIC in Industrial Products</title>
    <updated>2020-12-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-462066.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Multiple industrial products are affected by a vulnerability in the kernel known as TCP SACK PANIC. The vulnerability could allow a remote attacker to cause a denial of service condition.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the new versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-480230.pdf</id>
    <title>SSA-480230 V2.1 (Last Update: 2020-12-08): Denial-of-Service in Webserver of Industrial Products</title>
    <updated>2020-12-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-480230.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in the affected devices could allow an unauthorized attacker with network access to the webserver of an affected device to perform a denial-of-service attack.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the new versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-534763.pdf</id>
    <title>SSA-534763 V1.2 (Last Update: 2020-12-08): Special Register Buffer Data Sampling (SRBDS) aka Crosstalk in Industrial Products</title>
    <updated>2020-12-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-534763.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Security researchers published information on a vulnerability known as Crosstalk (&lt;a href="https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00320.html"&gt;INTEL-SA-00320&lt;/a&gt;). This vulnerability affects modern Intel processors to a varying degree.&lt;/p&gt;
&lt;p&gt;Several Siemens Industrial Products contain processors that are affected by the vulnerability.&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends specific countermeasures until fixes are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-542525.pdf</id>
    <title>SSA-542525 V1.2 (Last Update: 2020-12-08): Authentication Vulnerabilities in SIMATIC HMI Products</title>
    <updated>2020-12-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-542525.pdf" rel="alternate"/>
    <summary>&lt;p&gt;SIMATIC HMI Products are affected by two vulnerabilities that could allow a remote attacker to discover user passwords and obtain access to the Sm@rt Server via a brute-force attack.&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-542701.pdf</id>
    <title>SSA-542701 V1.2 (Last Update: 2020-12-08): Vulnerabilities in SIEMENS LOGO!</title>
    <updated>2020-12-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-542701.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities have been identified in SIEMENS LOGO!8 BM devices. The most severe vulnerability could lead to an attacker reading and modifying the device configuration if the attacker has access to port 10005/tcp.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for the LOGO! 8 BM (incl.&#160;SIPLUS variants) and recommends that customers update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-616472.pdf</id>
    <title>SSA-616472 V1.7 (Last Update: 2020-12-08): ZombieLoad and Microarchitectural Data Sampling Vulnerabilities in Industrial Products</title>
    <updated>2020-12-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-616472.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Security researchers published information on vulnerabilities known as ZombieLoad and Microarchitectural Data Sampling (MDS). These vulnerabilities affect many modern processors from different vendors to a varying degree.&lt;/p&gt;
&lt;p&gt;Several Siemens Industrial Products contain processors that are affected by the vulnerabilities.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-689942.pdf</id>
    <title>SSA-689942 V1.2 (Last Update: 2020-12-08): Denial-of-Service and DLL Hijacking Vulnerabilities in Multiple SIMATIC Software Products</title>
    <updated>2020-12-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-689942.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Multiple SIMATIC Software products are affected by two vulnerabilities that could allow an attacker to manipulate project files that may lead to Remote Code Execution or Denial-of-Service attacks.&lt;/p&gt;
&lt;p&gt;Siemens has released updates to some of the affected products and recommends that customers update to the latest version. Siemens is preparing further updates and recommends specific workarounds and mitigations until patches are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-712518.pdf</id>
    <title>SSA-712518 V1.1 (Last Update: 2020-12-08): Information Disclosure Vulnerability (Kr00k) in Industrial Wi-Fi Products</title>
    <updated>2020-12-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-712518.pdf" rel="alternate"/>
    <summary>&lt;p&gt;An information disclosure vulnerability (CVE-2019-15126, also known as Kr00k) could allow an attacker to read a discrete set of traffic over the air after a Wi-Fi device state change.&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-780073.pdf</id>
    <title>SSA-780073 V1.6 (Last Update: 2020-12-08): Denial-of-Service Vulnerability in PROFINET Devices via DCE-RPC Packets</title>
    <updated>2020-12-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-780073.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Products that include the Siemens PROFINET-IO (PNIO) stack in versions prior V06.00 are potentially affected by a denial-of-service vulnerability when multiple legitimate diagnostic package requests are sent to the DCE-RPC interface.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the new versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
&lt;p&gt;Additionally, Siemens recommends other vendors of PROFINET devices to check if their products have incorporated a vulnerable version of the Siemens PNIO stack as part of the Siemens Development/Evaluation Kits.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-817401.pdf</id>
    <title>SSA-817401 V1.1 (Last Update: 2020-12-08): Missing Authentication Vulnerability in SIEMENS LOGO!</title>
    <updated>2020-12-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-817401.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A missing authentication vulnerability has been identified in SIEMENS LOGO!8 BM devices. The vulnerability could lead to an attacker reading and modifying the device configuration and obtain project files from the devices if the attacker has access to port 135/tcp.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-841348.pdf</id>
    <title>SSA-841348 V1.4 (Last Update: 2020-12-08): Multiple Vulnerabilities in the UMC Stack</title>
    <updated>2020-12-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-841348.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest update for the below listed products fixes two security vulnerabilities that could allow an attacker to cause a partial Denial-of-Service on the UMC component of the affected devices under certain circumstances, and one vulnerability that could allow an attacker to locally escalate privileges from a user with administrative privileges to execute code with SYSTEM level privileges.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends that customers update to the latest version. Siemens is preparing further updates and recommends specific countermeasures until patches are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-431802.pdf</id>
    <title>SSA-431802 (Last Update: 2020-11-10): Multiple Vulnerabilities in SCALANCE W1750D</title>
    <updated>2020-11-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-431802.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Siemens SCALANCE W1750D is a brandlabled device. Aruba has released a related security advisory (ARUBA-PSA-2016-004) [0] disclosing vulnerabilities in its Aruba Instant product line. The advisory contains multiple related vulnerabilities that are summarized in CVE-2016-2031.&lt;/p&gt;
&lt;p&gt;This advisory is a reminder to customers that the PAPI protocol is not a secure protocol and that some device configurations must be taken to mitigate risks. Although this information was previously disclosed, an impending public disclosure by the Google Security Team (focused on Aruba Instant) will call out the vulnerable details of this protocol and bring it to the attention of the attacker community.&lt;/p&gt;
&lt;p&gt;Siemens recommends specific countermeasures until fixes are available.&lt;/p&gt;
&lt;p&gt;[0] &lt;a href="https://www.arubanetworks.com/assets/alert/ARUBA-PSA-2016-004.txt" class="uri"&gt;https://www.arubanetworks.com/assets/alert/ARUBA-PSA-2016-004.txt&lt;/a&gt;&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-492828.pdf</id>
    <title>SSA-492828 (Last Update: 2020-11-10): Denial-of-Service Vulnerability in SIMATIC S7-300 CPUs and SINUMERIK Controller</title>
    <updated>2020-11-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-492828.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in S7-300 might allow an attacker to cause a Denial-of-Service condition on port 102 of the affected devices by sending specially crafted packets.&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends specific countermeasures until fixes are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-381684.pdf</id>
    <title>SSA-381684 (Last Update: 2020-11-10): Improper Password Protection during Authentication in SIMATIC S7-300 and S7-400 CPUs and Derived Products</title>
    <updated>2020-11-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-381684.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability has been identified in SIMATIC S7-300 and S7-400 CPU families and derived products, which could result in credential disclosure.&lt;/p&gt;
&lt;p&gt;Siemens recommends countermeasures as there are currently no fixes available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-455843.pdf</id>
    <title>SSA-455843 (Last Update: 2020-11-10): WIBU Systems CodeMeter Runtime Vulnerabilities in Siemens and Siemens Energy Products</title>
    <updated>2020-11-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-455843.pdf" rel="alternate"/>
    <summary>&lt;p&gt;CISA and WIBU Systems disclosed six vulnerabilities in different versions of CodeMeter Runtime, a product provided by WIBU Systems and used in several Siemens and Siemens Energy products for license management.&lt;/p&gt;
&lt;p&gt;The vulnerabilities are described in the section &#8220;Vulnerability Classification&#8221; below and got assigned the CVE IDs CVE-2020-14509, CVE-2020-14513, CVE-2020-14515, CVE-2020-14517, CVE-2020-14519, and CVE-2020-16233. Successful exploitation of these vulnerabilities could allow an attacker to alter and forge a license file, cause a denial-of-service condition, attain remote code execution, or prevent normal operation of the Siemens software that depends on CodeMeter Runtime.&lt;/p&gt;
&lt;p&gt;Siemens is working on software updates for affected products and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-841348.pdf</id>
    <title>SSA-841348 (Last Update: 2020-11-10): Multiple Vulnerabilities in the UMC Stack</title>
    <updated>2020-11-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-841348.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest update for the below listed products fixes two security vulnerabilities that could allow an attacker to cause a partial Denial-of-Service on the UMC component of the affected devices under certain circumstances, and one vulnerability that could allow an attacker to locally escalate privileges from a user with administrative privileges to execute code with SYSTEM level privileges.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends that customers update to the latest version. Siemens is preparing further updates and recommends specific countermeasures until patches are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssb-439005.pdf</id>
    <title>SSB-439005 (Last Update: 2020-11-10): Vulnerabilities in the additional GNU/Linux subsystem of the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP</title>
    <updated>2020-11-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssb-439005.pdf" rel="alternate"/>
    <summary>
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-226339.pdf</id>
    <title>SSA-226339 (Last Update: 2020-10-13): Multiple Web Application Vulnerabilities in Desigo Insight</title>
    <updated>2020-10-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-226339.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest hotfix for Desigo Insight fixes three vulnerabilities that have been identified in the web server, including SQL injection (CVE-2020-15792), clickjacking (CVE-2020-15793), and full path disclosure (CVE-2020-15794).&lt;/p&gt;
&lt;p&gt;Siemens recommends updating to the latest version of Desigo Insight and to apply the hotfix.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-384879.pdf</id>
    <title>SSA-384879 (Last Update: 2020-10-13): Authentication Bypass Vulnerability in SIPORT MP</title>
    <updated>2020-10-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-384879.pdf" rel="alternate"/>
    <summary>&lt;p&gt;SIPORT MP version 3.2.1 fixes an authentication bypass vulnerability which could enable an attacker to impersonate other users of the system and perform administrative actions.&lt;/p&gt;
&lt;p&gt;Siemens recommends to apply the update.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-381684.pdf</id>
    <title>SSA-381684 (Last Update: 2020-10-13): Improper Password Protection during Authentication in SIMATIC S7-300 and S7-400 CPUs and Derived Products</title>
    <updated>2020-10-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-381684.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability has been identified in SIMATIC S7-300 and S7-400 CPU families and derived products, which could result in credential disclosure.&lt;/p&gt;
&lt;p&gt;Siemens recommends countermeasures as there are currently no fixes available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-398519.pdf</id>
    <title>SSA-398519 (Last Update: 2020-10-13): Vulnerabilities in Intel CPUs (November 2019)</title>
    <updated>2020-10-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-398519.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Intel has published information on vulnerabilities in Intel products in &lt;a href="https://blogs.intel.com/technology/2019/11/ipas-november-2019-intel-platform-update-ipu/#gs.jdy72s"&gt;November 2019&lt;/a&gt;. In this advisory Siemens only explicitly mentions the vulnerabilities from the &#8220;Intel&#174; CPU Security Advisory&#8221; and one vulnerability from &#8220;Intel&#174; CSME, Intel&#174; SPS, Intel&#174; TXE, Intel&#174; AMT, Intel&#174; PTT and Intel&#174; DAL Advisory&#8221; and lists the Siemens IPC related products that are affected by these vulnerabilities. For further information about BIOS updates related to Intel CPU vulnerabilities see: &lt;a href="https://support.industry.siemens.com/cs/ww/en/view/109747626" class="uri"&gt;https://support.industry.siemens.com/cs/ww/en/view/109747626&lt;/a&gt;.&lt;/p&gt;
&lt;p&gt;Several Siemens Industrial Products contain processors that are affected by the vulnerabilities. Siemens has released updates for several affected products and is currently working on BIOS updates that include chipset microcode updates for further products.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssb-439005.pdf</id>
    <title>SSB-439005 (Last Update: 2020-10-13): Vulnerabilities in the additional GNU/Linux subsystem of the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP</title>
    <updated>2020-10-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssb-439005.pdf" rel="alternate"/>
    <summary>
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-455843.pdf</id>
    <title>SSA-455843 (Last Update: 2020-10-13): WIBU Systems CodeMeter Runtime Vulnerabilities in Siemens and Siemens Energy Products</title>
    <updated>2020-10-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-455843.pdf" rel="alternate"/>
    <summary>&lt;p&gt;CISA and WIBU Systems disclosed six vulnerabilities in different versions of CodeMeter Runtime, a product provided by WIBU Systems and used in several Siemens and Siemens Energy products for license management.&lt;/p&gt;
&lt;p&gt;The vulnerabilities are described in the section &#8220;Vulnerability Classification&#8221; below and got assigned the CVE IDs CVE-2020-14509, CVE-2020-14513, CVE-2020-14515, CVE-2020-14517, CVE-2020-14519, and CVE-2020-16233. Successful exploitation of these vulnerabilities could allow an attacker to alter and forge a license file, cause a denial-of-service condition, attain remote code execution, or prevent normal operation of the Siemens software that depends on CodeMeter Runtime.&lt;/p&gt;
&lt;p&gt;Siemens is working on software updates for affected products and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-462066.pdf</id>
    <title>SSA-462066 (Last Update: 2020-10-13): Vulnerability known as TCP SACK PANIC in Industrial Products</title>
    <updated>2020-10-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-462066.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Multiple industrial products are affected by a vulnerability in the kernel known as TCP SACK PANIC. The vulnerability could allow a remote attacker to cause a denial of service condition.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the new versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-534763.pdf</id>
    <title>SSA-534763 (Last Update: 2020-10-13): Special Register Buffer Data Sampling (SRBDS) aka Crosstalk in Industrial Products</title>
    <updated>2020-10-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-534763.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Security researchers published information on a vulnerability known as Crosstalk (&lt;a href="https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00320.html"&gt;INTEL-SA-00320&lt;/a&gt;). This vulnerability affects modern Intel processors to a varying degree.&lt;/p&gt;
&lt;p&gt;Several Siemens Industrial Products contain processors that are affected by the vulnerability.&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends specific countermeasures until fixes are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-689071.pdf</id>
    <title>SSA-689071 (Last Update: 2020-10-13): DNSMasq Vulnerabilities in SCALANCE W1750D, SCALANCE M-800 / S615 and RUGGEDCOM RM1224</title>
    <updated>2020-10-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-689071.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities have been identified in SCALANCE W1750D, SCALANCE M-800 / S615 and RUGGEDCOM RM1224 devices. The highest scored vulnerability could allow a remote attacker to crash the DNS service or execute arbitrary code. The attacker must be able to craft malicious DNS responses and inject them into the network in order to exploit the vulnerability.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected devices, recommends to update, and provides specific countermeasures for unpatched devices.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-251935.pdf</id>
    <title>SSA-251935 (Last Update: 2020-09-08): Multiple Privilege Escalation Vulnerabilities in SIMATIC RTLS Locating Manager</title>
    <updated>2020-09-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-251935.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest update for SIMATIC RTLS Locating Manager fixes various vulnerabilities that could allow a low-privileged local user to escalate privileges.&lt;/p&gt;
&lt;p&gt;Siemens recommends to apply the update of the SIMATIC RTLS Locating Manager.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-381684.pdf</id>
    <title>SSA-381684 (Last Update: 2020-09-08): Improper Password Protection during Authentication in SIMATIC S7-300 and S7-400 CPUs</title>
    <updated>2020-09-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-381684.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability has been identified in SIMATIC S7-300 and S7-400 CPU families, which could result in credential disclosure.&lt;/p&gt;
&lt;p&gt;Siemens recommends countermeasures as there are currently no fixes available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-436520.pdf</id>
    <title>SSA-436520 (Last Update: 2020-09-08): XSS and CSRF Vulnerabilities in Polarion Subversion Webclient</title>
    <updated>2020-09-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-436520.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Multiple cross-site scripting (XSS) vulnerabilities were found in the subversion webclient of Polarion. In addition, the webclient doesn&#8217;t have any cross-site request forgery (CSRF) protection. An attacker could inject client side script to induce the victim to issue an HTTP request that would lead to a state changing operation. Siemens recommends specific countermeasures as there are currently no fixes available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-455843.pdf</id>
    <title>SSA-455843 (Last Update: 2020-09-08): WIBU Systems CodeMeter Runtime Vulnerabilities in Siemens and Siemens Energy Products</title>
    <updated>2020-09-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-455843.pdf" rel="alternate"/>
    <summary>&lt;p&gt;CISA and WIBU Systems disclosed six vulnerabilities in different versions of CodeMeter Runtime, a product provided by WIBU Systems and used in several Siemens and Siemens Energy products for license management.&lt;/p&gt;
&lt;p&gt;The vulnerabilities are described in the section &#8220;Vulnerability Classification&#8221; below and got assigned the CVE IDs CVE-2020-14509, CVE-2020-14513, CVE-2020-14515, CVE-2020-14517, CVE-2020-14519, and CVE-2020-16233. Successful exploitation of these vulnerabilities could allow an attacker to alter and forge a license file, cause a denial-of-service condition, attain remote code execution, or prevent normal operation of the Siemens software that depends on CodeMeter Runtime.&lt;/p&gt;
&lt;p&gt;Siemens is working on software updates for affected products and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-534763.pdf</id>
    <title>SSA-534763 (Last Update: 2020-09-08): Special Register Buffer Data Sampling (SRBDS) aka Crosstalk in Industrial Products</title>
    <updated>2020-09-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-534763.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Security researchers published information on a vulnerability known as Crosstalk (&lt;a href="https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00320.html"&gt;INTEL-SA-00320&lt;/a&gt;). This vulnerability affects modern Intel processors to a varying degree.&lt;/p&gt;
&lt;p&gt;Several Siemens Industrial Products contain processors that are affected by the vulnerability.&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends specific countermeasures until fixes are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-542525.pdf</id>
    <title>SSA-542525 (Last Update: 2020-09-08): Authentication Vulnerabilities in SIMATIC HMI Products</title>
    <updated>2020-09-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-542525.pdf" rel="alternate"/>
    <summary>&lt;p&gt;SIMATIC HMI Products are affected by two vulnerabilities that could allow a remote attacker to discover user passwords and obtain access to the Sm@rt Server via a brute-force attack.&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-568969.pdf</id>
    <title>SSA-568969 (Last Update: 2020-09-08): Insecure Storage of Sensitive Information in Spectrum Power&#8482; 4</title>
    <updated>2020-09-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-568969.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Vulnerabilities in Spectrum Power&#8482; 4 could allow an unauthorized attacker to retrieve a list of software users, or in certain cases to list the contents of a directory.&lt;/p&gt;
&lt;p&gt;Siemens has released updates and configuration recommendations for Spectrum Power&#8482; 4 in order to mitigate the issues.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-709003.pdf</id>
    <title>SSA-709003 (Last Update: 2020-09-08): Privilege Escalation Vulnerability in License Management Utility (LMU)</title>
    <updated>2020-09-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-709003.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest update for the License Management Utility (LMU), which is used by multiple Siemens building technology products, fixes a vulnerability that could allow local users to escalate privileges and execute code as local SYSTEM user.&lt;/p&gt;
&lt;p&gt;Siemens has released an update version of LMU, recommends to install this update on all affected systems and provides specific countermeasures for yet unpatched systems.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-770698.pdf</id>
    <title>SSA-770698 (Last Update: 2020-09-08): User Information Disclosure Vulnerability in Siveillance Video Client</title>
    <updated>2020-09-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-770698.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The Siveillance Video Client contains an information disclosure vulnerability that could allow an attacker to obtain valid adminstrator login names and use this information to launch further attacks.&lt;/p&gt;
&lt;p&gt;Siemens recommends specific countermeasures and provides patches for released versions of the Siveillance Video Client.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-102233.pdf</id>
    <title>SSA-102233 (Last Update: 2020-09-08): SegmentSmack in VxWorks-based Industrial Devices</title>
    <updated>2020-09-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-102233.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest updates for the affected products fix a vulnerability that could allow remote attackers to affect the availability of the devices under certain conditions.&lt;/p&gt;
&lt;p&gt;The underlying TCP stack can be forced to make very computation expensive calls for every incoming packet which can lead to a Denial-of-Service.&lt;/p&gt;
&lt;p&gt;Siemens is working on software updates for affected products and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-270778.pdf</id>
    <title>SSA-270778 (Last Update: 2020-09-08): Denial-of-Service Vulnerability in SIMATIC PCS 7, SIMATIC WinCC and SIMATIC NET PC Software</title>
    <updated>2020-09-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-270778.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A Denial-of-Service vulnerability was found in SIMATIC PCS 7, SIMATIC WinCC and SIMATIC NET PC software when encrypted communication is enabled. The vulnerability could allow an attacker with network access to cause a Denial-of-Service condition under certain circumstances (versions prior to SIMATIC WinCC V7.3 or SIMATIC PCS 7 V8.1 are not affected as encrypted communication is not an option).&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends that customers update to the latest version(s). Siemens is preparing further updates and recommends specific countermeasures until patches are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-312271.pdf</id>
    <title>SSA-312271 (Last Update: 2020-09-08): Unquoted Search Path Vulnerabilities in Windows-based Industrial Software Applications</title>
    <updated>2020-09-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-312271.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest update for affected products fix local privilege escalation vulnerabilities that could allow authorized local users with administrative privileges to execute custom code with SYSTEM level privileges.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for some of the affected products, and is working on further updates. For the remaining affected products, Siemens recommends specific countermeasures until fixes are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-377115.pdf</id>
    <title>SSA-377115 (Last Update: 2020-09-08): SegmentSmack in Linux IP-Stack based Industrial Devices</title>
    <updated>2020-09-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-377115.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest updates for the affected products fix a vulnerability that could allow remote attackers to affect the availability of the devices under certain conditions.&lt;/p&gt;
&lt;p&gt;The underlying TCP stack can be forced to make very computation expensive calls for every incoming packet which can lead to a Denial-of-Service.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends to update to the new versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssb-439005.pdf</id>
    <title>SSB-439005 (Last Update: 2020-09-08): Vulnerabilities in the additional GNU/Linux subsystem of the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP</title>
    <updated>2020-09-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssb-439005.pdf" rel="alternate"/>
    <summary>
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-462066.pdf</id>
    <title>SSA-462066 (Last Update: 2020-09-08): Vulnerability known as TCP SACK PANIC in Industrial Products</title>
    <updated>2020-09-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-462066.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Multiple industrial products are affected by a vulnerability in the kernel known as TCP SACK PANIC. The vulnerability could allow a remote attacker to cause a denial of service condition.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the new versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-473245.pdf</id>
    <title>SSA-473245 (Last Update: 2020-09-08): Denial-of-Service Vulnerability in Profinet Devices</title>
    <updated>2020-09-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-473245.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in affected devices could allow an attacker to perform a denial-of-service attack if a large amount of specially crafted UDP packets are sent to the device.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, and recommends that customers update to the new version. Siemens is preparing further updates and recommends specific countermeasures until patches are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-480230.pdf</id>
    <title>SSA-480230 (Last Update: 2020-09-08): Denial-of-Service in Webserver of Industrial Products</title>
    <updated>2020-09-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-480230.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in the affected devices could allow an unauthorized attacker with network access to the webserver of an affected device to perform a denial-of-service attack.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the new versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-780073.pdf</id>
    <title>SSA-780073 (Last Update: 2020-09-08): Denial-of-Service Vulnerability in PROFINET Devices via DCE-RPC Packets</title>
    <updated>2020-09-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-780073.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Products that include the Siemens PROFINET-IO (PNIO) stack in versions prior V06.00 are potentially affected by a denial-of-service vulnerability when multiple legitimate diagnostic package requests are sent to the DCE-RPC interface.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the new versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
&lt;p&gt;Additionally, Siemens recommends other vendors of PROFINET devices to check if their products have incorporated a vulnerable version of the Siemens PNIO stack as part of the Siemens Development/Evaluation Kits.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-841348.pdf</id>
    <title>SSA-841348 (Last Update: 2020-09-08): Multiple Vulnerabilities in the UMC Stack</title>
    <updated>2020-09-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-841348.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest update for the below listed products fixes two security vulnerabilities that could allow an attacker to cause a partial Denial-of-Service on the UMC component of the affected devices under certain circumstances, and one vulnerability that could allow an attacker to locally escalate privileges from a user with administrative privileges to execute code with SYSTEM level privileges.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends that customers update to the latest version. Siemens is preparing further updates and recommends specific countermeasures until patches are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-370042.pdf</id>
    <title>SSA-370042 (Last Update: 2020-08-11): Cross-Site-Scripting (XSS) in SICAM A8000 RTUs</title>
    <updated>2020-08-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-370042.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest update for SICAM A8000 RTUs fixes a vulnerability that could allow attackers with network access to the device&#8217;s web server to perform a stored Cross-Site-Scripting attack.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for SICAM A8000 RTUs and recommends to update as soon as possible.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-388646.pdf</id>
    <title>SSA-388646 (Last Update: 2020-08-11): Local Privilege Escalation in Automation License Manager</title>
    <updated>2020-08-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-388646.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest update for Automation License Manager (ALM) fixes a vulnerability that could allow local users to locally escalate privileges and modify files that should be protected against writing.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for ALM 6 and recommends that customers update to the latest version. Siemens recommends specific countermeasures for ALM 5 as currently there are no fixes available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-712518.pdf</id>
    <title>SSA-712518 (Last Update: 2020-08-11): Information Disclosure Vulnerability (Kr00k) in Industrial Wi-Fi Products</title>
    <updated>2020-08-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-712518.pdf" rel="alternate"/>
    <summary>&lt;p&gt;An information disclosure vulnerability (CVE-2019-15126, also known as Kr00k) could allow an attacker to read a discrete set of traffic over the air after a Wi-Fi device state change.&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-786743.pdf</id>
    <title>SSA-786743 (Last Update: 2020-08-11): Code Injection Vulnerability in Advanced Reporting for Desigo CC and Desigo CC Compact</title>
    <updated>2020-08-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-786743.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The extension module Advanced Reporting for Desigo CC and Desigo CC Compact contains a code injection vulnerability, which could be exploited if the extension module is installed on the server and configured.&lt;/p&gt;
&lt;p&gt;Siemens has released patches for the affected products and recommends specific countermeasures for unpatched systems.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-809841.pdf</id>
    <title>SSA-809841 (Last Update: 2020-08-11): Buffer Overflow Vulnerability in Third-Party Component pppd</title>
    <updated>2020-08-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-809841.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest update for SCALANCE M-800 / S615 and RUGGEDCOM RM1224 devices fixes a buffer overflow vulnerability in the third party component pppd that could allow an attacker with network access to an affected device to execute custom code on the device.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for affected devices and recommends specific countermeasures.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-102233.pdf</id>
    <title>SSA-102233 (Last Update: 2020-08-11): SegmentSmack in VxWorks-based Industrial Devices</title>
    <updated>2020-08-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-102233.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest updates for the affected products fix a vulnerability that could allow remote attackers to affect the availability of the devices under certain conditions.&lt;/p&gt;
&lt;p&gt;The underlying TCP stack can be forced to make very computation expensive calls for every incoming packet which can lead to a Denial-of-Service.&lt;/p&gt;
&lt;p&gt;Siemens is working on software updates for affected products and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-293562.pdf</id>
    <title>SSA-293562 (Last Update: 2020-08-11): Vulnerabilities in Industrial Products</title>
    <updated>2020-08-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-293562.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Several industrial devices are affected by two vulnerabilities that could allow an attacker to cause a Denial-of-Service condition via PROFINET DCP network packets under certain circumstances. The precondition for this scenario is a direct layer 2 access to the affected products. PROFIBUS interfaces are not affected.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the new versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-312271.pdf</id>
    <title>SSA-312271 (Last Update: 2020-08-11): Unquoted Search Path Vulnerabilities in Windows-based Industrial Software Applications</title>
    <updated>2020-08-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-312271.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest update for affected products fix local privilege escalation vulnerabilities that could allow authorized local users with administrative privileges to execute custom code with SYSTEM level privileges.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for some of the affected products, and is working on further updates. For the remaining affected products, Siemens recommends specific countermeasures until fixes are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-346262.pdf</id>
    <title>SSA-346262 (Last Update: 2020-08-11): Denial-of-Service in Industrial Products</title>
    <updated>2020-08-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-346262.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Several industrial products are affected by a vulnerability that could allow remote attackers to conduct a Denial-of-Service (DoS) attack by sending specially crafted packets to port 161/udp (SNMP).&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, and recommends that customers update to the new version. Siemens is preparing further updates and recommends specific countermeasures until patches are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-349422.pdf</id>
    <title>SSA-349422 (Last Update: 2020-08-11): Denial-of-Service in Industrial Real-Time (IRT) Devices</title>
    <updated>2020-08-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-349422.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in the affected products could allow an unauthorized attacker with network access to perform a denial-of-service attack resulting in loss of real-time synchronization.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, and recommends that customers update to the new version. Siemens is preparing further updates and recommends specific countermeasures until updates are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssb-439005.pdf</id>
    <title>SSB-439005 (Last Update: 2020-08-11): Vulnerabilities in the additional GNU/Linux subsystem of the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP</title>
    <updated>2020-08-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssb-439005.pdf" rel="alternate"/>
    <summary>
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-462066.pdf</id>
    <title>SSA-462066 (Last Update: 2020-08-11): Vulnerability known as TCP SACK PANIC in Industrial Products</title>
    <updated>2020-08-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-462066.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Multiple industrial products are affected by a vulnerability in the kernel known as TCP SACK PANIC. The vulnerability could allow a remote attacker to cause a denial of service condition.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the new versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-473245.pdf</id>
    <title>SSA-473245 (Last Update: 2020-08-11): Denial-of-Service Vulnerability in Profinet Devices</title>
    <updated>2020-08-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-473245.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in affected devices could allow an attacker to perform a denial-of-service attack if a large amount of specially crafted UDP packets are sent to the device.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, and recommends that customers update to the new version. Siemens is preparing further updates and recommends specific countermeasures until patches are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-480230.pdf</id>
    <title>SSA-480230 (Last Update: 2020-08-11): Denial-of-Service in Webserver of Industrial Products</title>
    <updated>2020-08-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-480230.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in the affected devices could allow an unauthorized attacker with network access to the webserver of an affected device to perform a denial-of-service attack.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the new versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-535640.pdf</id>
    <title>SSA-535640 (Last Update: 2020-08-11): Vulnerability in Industrial Products</title>
    <updated>2020-08-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-535640.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Various industrial products use the Discovery Service of the OPC UA protocol stack by the OPC foundation &lt;a href="https://github.com/OPCFoundation/UA-.NETStandard" class="uri"&gt;https://github.com/OPCFoundation/UA-.NETStandard&lt;/a&gt; and could therefore be affected by the remote resource consumption attacks (CVE-2017-12069).&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-591405.pdf</id>
    <title>SSA-591405 (Last Update: 2020-08-11): Web Vulnerabilities in SCALANCE S-600 Family</title>
    <updated>2020-08-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-591405.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The firmware for SCALANCE S-600 family devices contains multiple web vulnerabilities. The vulnerabilities could allow an remote attacker to conduct Denial-of-Service attacks or perform Cross-Site Scripting attacks.&lt;/p&gt;
&lt;p&gt;Siemens recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-604937.pdf</id>
    <title>SSA-604937 (Last Update: 2020-08-11): Multiple Web Server Vulnerabilities in Opcenter Execution Core</title>
    <updated>2020-08-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-604937.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Opcenter Execution Core (formerly known as Camstar Enterprise Platform) contains a Cross-Site-Scripting, an SQL injection and an information disclosure vulnerability.&lt;/p&gt;
&lt;p&gt;Siemens recommends to update to the latest version of Opcenter Execution Core that fixes two vulnerabilities and recommends specific countermeasures for the remaining vulnerability.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-780073.pdf</id>
    <title>SSA-780073 (Last Update: 2020-08-11): Denial-of-Service Vulnerability in PROFINET Devices via DCE-RPC Packets</title>
    <updated>2020-08-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-780073.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Products that include the Siemens PROFINET-IO (PNIO) stack in versions prior V06.00 are potentially affected by a denial-of-service vulnerability when multiple legitimate diagnostic package requests are sent to the DCE-RPC interface.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, and recommends that customers update to the new version. Siemens is preparing further updates and recommends specific countermeasures until patches are available.&lt;/p&gt;
&lt;p&gt;Additionally, Siemens recommends other vendors of PROFINET devices to check if their products have incorporated a vulnerable version of the Siemens PNIO stack as part of the Siemens Development/Evaluation Kits.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-841348.pdf</id>
    <title>SSA-841348 (Last Update: 2020-08-11): Multiple Vulnerabilities in the UMC Stack</title>
    <updated>2020-08-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-841348.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest update for the below listed products fixes two security vulnerabilities that could allow an attacker to cause a partial Denial-of-Service on the UMC component of the affected devices under certain circumstances, and one vulnerability that could allow an attacker to locally escalate privileges from a user with administrative privileges to execute code with SYSTEM level privileges.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends that customers update to the latest version. Siemens is preparing further updates and recommends specific countermeasures until patches are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-978220.pdf</id>
    <title>SSA-978220 (Last Update: 2020-08-11): Denial-of-Service Vulnerability over SNMP in Multiple Industrial Products</title>
    <updated>2020-08-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-978220.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Several industrial products are affected by a vulnerability that could allow remote attackers to conduct a Denial-of-Service (DoS) attack by sending specially crafted packets to port 161/udp (SNMP).&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends to update to the new versions. Siemens is preparing further updates and recommends specific countermeasures for products where updates are not, or not yet available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-270778.pdf</id>
    <title>SSA-270778 (Last Update: 2020-07-14): Denial-of-Service Vulnerability in SIMATIC PCS 7, SIMATIC WinCC and SIMATIC NET PC Software</title>
    <updated>2020-07-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-270778.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A Denial-of-Service vulnerability was found in SIMATIC PCS 7, SIMATIC WinCC and SIMATIC NET PC software when encrypted communication is enabled. The vulnerability could allow an attacker with network access to cause a Denial-of-Service condition under certain circumstances (versions prior to SIMATIC WinCC V7.3 or SIMATIC PCS 7 V8.1 are not affected as encrypted communication is not an option).&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends that customers update to the latest version(s). Siemens is preparing further updates and recommends specific countermeasures until patches are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-293562.pdf</id>
    <title>SSA-293562 (Last Update: 2020-07-14): Vulnerabilities in Industrial Products</title>
    <updated>2020-07-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-293562.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Several industrial devices are affected by two vulnerabilities that could allow an attacker to cause a Denial-of-Service condition via PROFINET DCP network packets under certain circumstances. The precondition for this scenario is a direct layer 2 access to the affected products. PROFIBUS interfaces are not affected.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, is working on updates for the remaining affected products and recommends specific countermeasures until fixes are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-305120.pdf</id>
    <title>SSA-305120 (Last Update: 2020-07-14): Vulnerabilities in SICAM MMU, SICAM T and SICAM SGU</title>
    <updated>2020-07-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-305120.pdf" rel="alternate"/>
    <summary>&lt;p&gt;SICAM MMU, SICAM T and the discontinued SICAM SGU devices are affected by multiple security vulnerabilities which could allow an attacker to perform a variety of attacks. This may include unauthenticated firmware installation, remote code execution and leakage of confidential data like passwords. Siemens has released updates to introduce authentication to the web application. It is still recommended to implement further mitigations, as most of the vulnerabilities might not be sufficiently mitigated by this.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-312271.pdf</id>
    <title>SSA-312271 (Last Update: 2020-07-14): Unquoted Search Path Vulnerabilities in Windows-based Industrial Software Applications</title>
    <updated>2020-07-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-312271.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest update for affected products fix local privilege escalation vulnerabilities that could allow authorized local users with administrative privileges to execute custom code with SYSTEM level privileges.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for some of the affected products, and is working on further updates. For the remaining affected products, Siemens recommends specific countermeasures until fixes are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-346262.pdf</id>
    <title>SSA-346262 (Last Update: 2020-07-14): Denial-of-Service in Industrial Products</title>
    <updated>2020-07-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-346262.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Several industrial products are affected by a vulnerability that could allow remote attackers to conduct a Denial-of-Service (DoS) attack by sending specially crafted packets to port 161/udp (SNMP).&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, and recommends that customers update to the new version. Siemens is preparing further updates and recommends specific countermeasures until patches are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-364335.pdf</id>
    <title>SSA-364335 (Last Update: 2020-07-14): Clear Text Transmission Vulnerability on SIMATIC HMI Panels</title>
    <updated>2020-07-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-364335.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A clear text transmission vulnerability in SIMATIC HMI panels could allow an attacker to access sensitive information under certain circumstances.&lt;/p&gt;
&lt;p&gt;Siemens recommends specific countermeasures to mitigate this vulnerability.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-398519.pdf</id>
    <title>SSA-398519 (Last Update: 2020-07-14): Vulnerabilities in Intel CPUs (November 2019)</title>
    <updated>2020-07-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-398519.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Intel has published information on vulnerabilities in Intel products in &lt;a href="https://blogs.intel.com/technology/2019/11/ipas-november-2019-intel-platform-update-ipu/#gs.jdy72s"&gt;November 2019&lt;/a&gt;. In this advisory Siemens only explicitly mentions the vulnerabilities from the &#8220;Intel&#174; CPU Security Advisory&#8221; and one vulnerability from &#8220;Intel&#174; CSME, Intel&#174; SPS, Intel&#174; TXE, Intel&#174; AMT, Intel&#174; PTT and Intel&#174; DAL Advisory&#8221; and lists the Siemens IPC related products that are affected by these vulnerabilities. For further information about BIOS updates related to Intel CPU vulnerabilities see: &lt;a href="https://support.industry.siemens.com/cs/ww/en/view/109747626" class="uri"&gt;https://support.industry.siemens.com/cs/ww/en/view/109747626&lt;/a&gt;.&lt;/p&gt;
&lt;p&gt;Several Siemens Industrial Products contain processors that are affected by the vulnerabilities. Siemens has released updates for several affected products and is currently working on BIOS updates that include chipset microcode updates for further products.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-473245.pdf</id>
    <title>SSA-473245 (Last Update: 2020-07-14): Denial-of-Service Vulnerability in Profinet Devices</title>
    <updated>2020-07-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-473245.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in affected devices could allow an attacker to perform a denial-of-service attack if a large amount of specially crafted UDP packets are sent to the device.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, and recommends that customers update to the new version. Siemens is preparing further updates and recommends specific countermeasures until patches are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-508982.pdf</id>
    <title>SSA-508982 (Last Update: 2020-07-14): Denial-of-Service Vulnerability in SIMATIC S7-300 CPUs, SIMATIC TDC, and SINUMERIK Controller over Profinet</title>
    <updated>2020-07-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-508982.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest firmware update for the S7-300 CPUs fixes a vulnerability that could allow an unauthenticated attacker with network access to cause a denial-of-service condition. SINUMERIK 840D sl Controller, which contains a S7-300 CPU, is also affected, as well as SIMATIC TDC.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends that customers update to the latest version(s).&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-573753.pdf</id>
    <title>SSA-573753 (Last Update: 2020-07-14): Remote Code Execution in Siemens LOGO! Web Server</title>
    <updated>2020-07-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-573753.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest update for LOGO! 8 BM devices fixes a vulnerability that could allow remote code execution in the web server functionality.&lt;/p&gt;
&lt;p&gt;Siemens provides a firmware update for the latest versions of LOGO! BM.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-589181.pdf</id>
    <title>SSA-589181 (Last Update: 2020-07-14): Denial-Of-Service in SIMATIC S7-200 SMART CPU Family Devices</title>
    <updated>2020-07-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-589181.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest update for SIMATIC S7-200 SMART fixes a vulnerability that could allow an attacker to cause a permanent Denial-of-Service of an affected device by sending a large number of crafted packets.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for the SIMATIC S7-200 SMART CPU family and recommends that customers update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-604937.pdf</id>
    <title>SSA-604937 (Last Update: 2020-07-14): Multiple Web Server Vulnerabilities in Opcenter Execution Core</title>
    <updated>2020-07-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-604937.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest update of Opcenter Execution Core fixes multiple vulnerabilities where the most severe could allow an attacker to perform a cross-site scripting (XSS) attack under certain conditions.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for the Opcenter Execution Core and recommends that customers update to the latest version. Siemens recommends specific countermeasures as there are currently no further fixes available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-631949.pdf</id>
    <title>SSA-631949 (Last Update: 2020-07-14): Ripple20 and Intel SPS Vulnerabilities in SPPA-T3000 Solutions</title>
    <updated>2020-07-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-631949.pdf" rel="alternate"/>
    <summary>&lt;p&gt;SPPA-T3000 solutions are affected by vulnerabilities that were recently dislosed by JSOF research lab (&#8220;&lt;a href="https://www.jsof-tech.com/ripple20/"&gt;Ripple20&lt;/a&gt;&#8221;) for the TCP/IP stack used in APC UPS systems, and by Intel for the Server Platform Services (&lt;a href="https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00295.html"&gt;SPS&lt;/a&gt;) used in SPPA-T3000 Application Server and Terminal Server hardware.&lt;/p&gt;
&lt;p&gt;The advisory provides information to what amount SPAA-T3000 solutions are affected. Detailed information, including solution and mitigation measures, are available for SPPA-T3000 customers in the &lt;a href="https://www.cp4ic.siemens.com/"&gt;Siemens Energy Customer Portal&lt;/a&gt;.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-671286.pdf</id>
    <title>SSA-671286 (Last Update: 2020-07-14): Multiple Vulnerabilities in SCALANCE Products</title>
    <updated>2020-07-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-671286.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest updates for the below mentioned products contain fixes for multiple vulnerabilities. The most severe could allow authenticated local users with physical access to the device to execute arbitrary commands on the device under certain conditions.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends that customers update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-689942.pdf</id>
    <title>SSA-689942 (Last Update: 2020-07-14): Denial-of-Service and DLL Hijacking Vulnerabilities in Multiple SIMATIC Software Products</title>
    <updated>2020-07-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-689942.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Multiple SIMATIC Software products are affected by two vulnerabilities that could allow an attacker to manipulate project files that may lead to Remote Code Execution or Denial-of-Service attacks.&lt;/p&gt;
&lt;p&gt;Siemens has released updates to some of the affected products and recommends that customers update to the latest version. Siemens is preparing further updates and recommends specific workarounds and mitigations until patches are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-841348.pdf</id>
    <title>SSA-841348 (Last Update: 2020-07-14): Multiple Vulnerabilities in the UMC Stack</title>
    <updated>2020-07-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-841348.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest update for the below listed products fixes two security vulnerabilities that could allow an attacker to cause a partial Denial-of-Service on the UMC component of the affected devices under certain circumstances, and one vulnerability that could allow an attacker to locally escalate privileges from a user with administrative privileges to execute code with SYSTEM level privileges.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends that customers update to the latest version. Siemens is preparing further updates and recommends specific countermeasures until patches are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-978220.pdf</id>
    <title>SSA-978220 (Last Update: 2020-07-14): Denial-of-Service Vulnerability over SNMP in Multiple Industrial Products</title>
    <updated>2020-07-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-978220.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Several industrial products are affected by a vulnerability that could allow remote attackers to conduct a Denial-of-Service (DoS) attack by sending specially crafted packets to port 161/udp (SNMP).&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, and recommends that customers update to the new version. Siemens is preparing further updates and recommends specific countermeasures until patches are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssb-439005.pdf</id>
    <title>SSB-439005 (Last Update: 2020-07-14): Vulnerabilities in the additional GNU/Linux subsystem of the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP</title>
    <updated>2020-07-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssb-439005.pdf" rel="alternate"/>
    <summary>
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-686531.pdf</id>
    <title>SSA-686531 (Last Update: 2020-07-14): Hardware based manufacturing access on S7-1200 and S7-200 SMART</title>
    <updated>2020-07-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-686531.pdf" rel="alternate"/>
    <summary>&lt;p&gt;There is an access mode used during manufacturing of SIMATIC S7-1200 and S7-200 SMART CPUs that allows additional diagnostic functionality. Using this functionality requires physical access to the CPU during boot process.&lt;/p&gt;
&lt;p&gt;If additional protection from unauthorized use is needed Siemens provides specific countermeasures via an update of the device boot loader.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-312271.pdf</id>
    <title>SSA-312271 (Last Update: 2020-06-09): Unquoted Search Path Vulnerabilities in Windows-based Industrial Software Applications</title>
    <updated>2020-06-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-312271.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest update for affected products fix local privilege escalation vulnerabilities that could allow authorized local users with administrative privileges to execute custom code with SYSTEM level privileges.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for some of the affected products, and is working on further updates. For the remaining affected products, Siemens recommends specific countermeasures until fixes are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-689942.pdf</id>
    <title>SSA-689942 (Last Update: 2020-06-09): Denial-of-Service and DLL Hijacking Vulnerabilities in Multiple SIMATIC Software Products</title>
    <updated>2020-06-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-689942.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Multiple SIMATIC Software products are affected by two vulnerabilities that could allow an attacker to manipulate project files that may lead to Remote Code Execution or Denial-of-Service attacks.&lt;/p&gt;
&lt;p&gt;Siemens has released updates to some of the affected products and recommends that customers update to the latest version. Siemens is preparing further updates and recommends specific workarounds and mitigations until patches are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-817401.pdf</id>
    <title>SSA-817401 (Last Update: 2020-06-09): Missing Authentication Vulnerability in SIEMENS LOGO!</title>
    <updated>2020-06-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-817401.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A missing authentication vulnerability has been identified in SIEMENS LOGO!8 BM devices. The vulnerability could lead to an attacker reading and modifying the device configuration and obtain project files from the devices if the attacker has access to port 135/tcp.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-927095.pdf</id>
    <title>SSA-927095 (Last Update: 2020-06-09): UltraVNC Vulnerabilities in SINUMERIK Products</title>
    <updated>2020-06-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-927095.pdf" rel="alternate"/>
    <summary>&lt;p&gt;UltraVNC (V1.2.2.3 and below) vulnerabilities in the affected products could allow remote code execution, information disclosure and Denial-of-Service attacks under certain conditions.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends that customers update to the latest versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-352504.pdf</id>
    <title>SSA-352504 (Last Update: 2020-06-09): Urgent/11 TCP/IP Stack Vulnerabilities in Siemens Power Meters</title>
    <updated>2020-06-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-352504.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Siemens low &amp;amp; high voltage power meters are affected by multiple security vulnerabilities due to the underlying Wind River VxWorks network stack. This stack is affected by eleven vulnerabilities known as the &amp;quot;URGENT/11&amp;quot;.&lt;/p&gt;
&lt;p&gt;The vulnerability could allow an attacker to execute a variety of exploits for the purpose of Denial-of-Service (DoS), data extraction, RCE, etc. targeting both availability and confidentiality of the devices and data.&lt;/p&gt;
&lt;p&gt;Siemens is working on updates for the affected products, and recommends countermeasures until fixes are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-462066.pdf</id>
    <title>SSA-462066 (Last Update: 2020-06-09): Vulnerability known as TCP SACK PANIC in Industrial Products</title>
    <updated>2020-06-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-462066.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Multiple industrial products are affected by a vulnerability in the kernel known as TCP SACK PANIC. The vulnerability could allow a remote attacker to cause a denial of service condition.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, and recommends that customers update to the latest version. Siemens is preparing further updates and recommends specific countermeasures until updates are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-480230.pdf</id>
    <title>SSA-480230 (Last Update: 2020-06-09): Denial-of-Service in Webserver of Industrial Products</title>
    <updated>2020-06-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-480230.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in the affected devices could allow an unauthorized attacker with network access to the webserver of an affected device to perform a denial-of-service attack.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, and recommends that customers update to the new version. Siemens is preparing further updates and recommends specific countermeasures until patches are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-352504.pdf</id>
    <title>SSA-352504 (Last Update: 2020-05-12): Urgent/11 TCP/IP Stack Vulnerabilities in Siemens Power Meters</title>
    <updated>2020-05-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-352504.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Siemens low &amp;amp; high voltage power meters are affected by multiple security vulnerabilities due to the underlying Wind River VxWorks network stack. This stack is affected by eleven vulnerabilities known as the &amp;quot;URGENT/11&amp;quot;.&lt;/p&gt;
&lt;p&gt;The vulnerability could allow an attacker to execute a variety of exploits for the purpose of Denial-of-Service (DoS), data extraction, RCE, etc. targeting both availability and confidentiality of the devices and data.&lt;/p&gt;
&lt;p&gt;Siemens is working on updates for the affected products, and recommends countermeasures until fixes are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-270778.pdf</id>
    <title>SSA-270778 (Last Update: 2020-05-12): Denial-of-Service Vulnerability in SIMATIC PCS 7, SIMATIC WinCC and SIMATIC NET PC Software</title>
    <updated>2020-05-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-270778.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A Denial-of-Service vulnerability was found in SIMATIC PCS 7, SIMATIC WinCC and SIMATIC NET PC software when encrypted communication is enabled. The vulnerability could allow an attacker with network access to cause a Denial-of-Service condition under certain circumstances (versions prior to SIMATIC WinCC V7.3 or SIMATIC PCS 7 V8.1 are not affected as encrypted communication is not an option).&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends that customers update to the latest version(s). Siemens is preparing further updates and recommends specific countermeasures until patches are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-377115.pdf</id>
    <title>SSA-377115 (Last Update: 2020-05-12): SegmentSmack in Linux IP-Stack based Industrial Devices</title>
    <updated>2020-05-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-377115.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest updates for the affected products fix a vulnerability that could allow remote attackers to affect the availability of the devices under certain conditions.&lt;/p&gt;
&lt;p&gt;The underlying TCP stack can be forced to make very computation expensive calls for every incoming packet which can lead to a Denial-of-Service.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for some products, and is working on updates for the remaining affected products.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssb-439005.pdf</id>
    <title>SSB-439005 (Last Update: 2020-05-12): Vulnerabilities in the additional GNU/Linux subsystem of the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP</title>
    <updated>2020-05-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssb-439005.pdf" rel="alternate"/>
    <summary>
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-530931.pdf</id>
    <title>SSA-530931 (Last Update: 2020-05-12): Denial-of-Service in Webserver of Industrial Products</title>
    <updated>2020-05-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-530931.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in the affected products could allow an unauthorized attacker with network access to the webserver of an affected device to perform a denial-of-service attack.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, and recommends that customers update to the new version. Siemens is preparing further updates and recommends specific countermeasures until patches are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-593272.pdf</id>
    <title>SSA-593272 (Last Update: 2020-05-12): SegmentSmack in Interniche IP-Stack based Industrial Devices</title>
    <updated>2020-05-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-593272.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability exists in affected products that could allow remote attackers to affect the availability of the devices under certain conditions.&lt;/p&gt;
&lt;p&gt;The underlying TCP stack can be forced to make very computation expensive calls for every incoming packet which can lead to a Denial-of-Service.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-899560.pdf</id>
    <title>SSA-899560 (Last Update: 2020-05-12): Vulnerabilities in SIPROTEC 5 relays and DIGSI 5</title>
    <updated>2020-05-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-899560.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The SIPROTEC 5 relays and their corresponding engineering software DIGSI 5 are affected by two security vulnerabilities which could allow an attacker to upload or download files to the device or to conduct a Denial-of-Service attack over the network. Siemens has released updates for some affected products, is working on updates for the remaining affected products, and recommends specific countermeasures until fixes are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-102233.pdf</id>
    <title>SSA-102233 (Last Update: 2020-04-14): SegmentSmack in VxWorks-based Industrial Devices</title>
    <updated>2020-04-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-102233.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest updates for the affected products fix a vulnerability that could allow remote attackers to affect the availability of the devices under certain conditions. The underlying TCP stack can be forced to make very computation expensive calls for every incoming packet which can lead to a Denial-of-Service. Siemens is working on software updates for affected products.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-162506.pdf</id>
    <title>SSA-162506 (Last Update: 2020-04-14): DHCP Client Vulnerability in SIMOTICS CONNECT 400, Desigo PXC/PXM, APOGEE MEC/MBC/PXC, APOGEE PXC Series, and TALON TC Series</title>
    <updated>2020-04-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-162506.pdf" rel="alternate"/>
    <summary>&lt;p&gt;SIMOTICS CONNECT 400, Desigo (Power PC-based), APOGEE MEC/MBC/PXC and TALON TC products are affected by a DHCP Client vulnerability as initially reported in &lt;a href="https://cert-portal.siemens.com/productcert/pdf/ssa-434032.pdf"&gt;SSA-434032&lt;/a&gt; for the Mentor Nucleus Networking Module. Siemens has released updates for some products and is working on further updates. For the remaining affected products, Siemens recommends specific countermeasures until fixes are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-359303.pdf</id>
    <title>SSA-359303 (Last Update: 2020-04-14): Debug Port in TIM 3V-IE and 4R-IE Family Devices</title>
    <updated>2020-04-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-359303.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest update for TIM 3V-IE family devices and TIM 4R-IE family devices fixes a vulnerability that could allow an unauthenticated attacker with network access to port 17185/udp to gain full control over the device. The devices are only vulnerable if the IP address is configured to 192.168.1.2. Siemens has released updates for the affected products and recommends that customers update to the new version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-377115.pdf</id>
    <title>SSA-377115 (Last Update: 2020-04-14): SegmentSmack in Linux IP-Stack based Industrial Devices</title>
    <updated>2020-04-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-377115.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest updates for the affected products fix a vulnerability that could allow remote attackers to affect the availability of the devices under certain conditions. The underlying TCP stack can be forced to make very computation expensive calls for every incoming packet which can lead to a Denial-of-Service. Siemens has released updates for some products, and is working on updates for the remaining affected products.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-593272.pdf</id>
    <title>SSA-593272 (Last Update: 2020-04-14): SegmentSmack in Interniche IP-Stack based Industrial Devices</title>
    <updated>2020-04-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-593272.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability exists in affected products that could allow remote attackers to affect the availability of the devices under certain conditions. The underlying TCP stack can be forced to make very computation expensive calls for every incoming packet which can lead to a Denial-of-Service.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-886514.pdf</id>
    <title>SSA-886514 (Last Update: 2020-04-14): Persistent XSS Vulnerabilities in the Web Interface of Climatix POL908 and POL909 Modules</title>
    <updated>2020-04-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-886514.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The Climatix BACnet/IP (POL908) and AWM (POL909) modules contain two persistent cross-site scripting (XSS) vulnerabilities in the web interface that could allow a remote attacker to execute arbitrary JavaScript code in the context of other users' web sessions. Siemens recommends to update Climatix POL908 and POL909 to the latest version and recommends further countermeasures.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-270778.pdf</id>
    <title>SSA-270778 (Last Update: 2020-04-14): Denial-of-Service Vulnerability in SIMATIC PCS 7, SIMATIC WinCC and SIMATIC NET PC Software</title>
    <updated>2020-04-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-270778.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A Denial-of-Service vulnerability was found in SIMATIC PCS 7, SIMATIC WinCC and SIMATIC NET PC software when encrypted communication is enabled. The vulnerability could allow an attacker with network access to cause a Denial-of-Service condition under certain circumstances (versions prior to SIMATIC WinCC V7.3 or SIMATIC PCS 7 V8.1 are not affected as encrypted communication is not an option). Siemens has released updates for several affected products, and recommends that customers update to the latest version. Siemens is preparing further updates and recommends specific countermeasures until patches are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-398519.pdf</id>
    <title>SSA-398519 (Last Update: 2020-04-14): Vulnerabilities in Intel CPUs (November 2019)</title>
    <updated>2020-04-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-398519.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Intel has published information on vulnerabilities in Intel products in &lt;a href="https://blogs.intel.com/technology/2019/11/ipas-november-2019-intel-platform-update-ipu/#gs.jdy72s"&gt;November 2019&lt;/a&gt;. In this advisory Siemens only explicitly mentions the vulnerabilities from the &amp;quot;Intel&#174; CPU Security Advisory&amp;quot; and one vulnerability from &amp;quot;Intel&#174; CSME, Intel&#174; SPS, Intel&#174; TXE, Intel&#174; AMT, Intel&#174; PTT and Intel&#174; DAL Advisory&amp;quot; and lists the Siemens IPC related products that are affected by these vulnerabilities. For further information about BIOS updates related to Intel CPU vulnerabilities see: &lt;a href="https://support.industry.siemens.com/cs/ww/en/view/109747626" class="uri"&gt;https://support.industry.siemens.com/cs/ww/en/view/109747626&lt;/a&gt;. Several Siemens Industrial Products contain processors that are affected by the vulnerabilities. Siemens has released updates for several affected products and is currently working on BIOS updates that include chipset microcode updates for further products.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-431678.pdf</id>
    <title>SSA-431678 (Last Update: 2020-04-14): Denial-of-Service Vulnerability in SIMATIC S7 CPU Families</title>
    <updated>2020-04-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-431678.pdf" rel="alternate"/>
    <summary>&lt;p&gt;SIMATIC S7 CPU families are affected by a vulnerability that could allow remote attackers to perform a Denial-of-Service attack by sending a specially crafted HTTP request to the web server of an affected device. Siemens has released updates for several affected products, is working on updates for the remaining affected products and recommends specific countermeasures until fixes are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-462066.pdf</id>
    <title>SSA-462066 (Last Update: 2020-04-14): Vulnerability known as TCP SACK PANIC in Industrial Products</title>
    <updated>2020-04-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-462066.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Multiple industrial products are affected by a vulnerability in the kernel known as TCP SACK PANIC. The vulnerability could allow a remote attacker to cause a denial of service condition. Siemens has released updates for several affected products, and recommends that customers update to the latest version. Siemens is preparing further updates and recommends specific countermeasures until updates are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-473245.pdf</id>
    <title>SSA-473245 (Last Update: 2020-04-14): Denial-of-Service Vulnerability in Profinet Devices</title>
    <updated>2020-04-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-473245.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in affected devices could allow an attacker to perform a denial-of-service attack if a large amount of specially crafted UDP packets are sent to the device. Siemens has released updates for several affected products, and recommends that customers update to the new version. Siemens is preparing further updates and recommends specific countermeasures until patches are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-629512.pdf</id>
    <title>SSA-629512 (Last Update: 2020-04-14): Local Privilege Escalation Vulnerability in TIA Portal</title>
    <updated>2020-04-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-629512.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest updates for TIA Portal fix a vulnerability that could allow a local attacker to execute arbitrary code with SYSTEM privileges. Siemens has released updates for TIA Portal V15 and V16, and is working on updates for TIA Portal V14. Siemens recommends specific countermeasures as there are currently no fixes available for the latter.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssb-382508.pdf</id>
    <title>SSB-382508 (Last Update: 2020-04-14): ActiveX used in Industrial Products</title>
    <updated>2020-04-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssb-382508.pdf" rel="alternate"/>
    <summary>
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssb-439005.pdf</id>
    <title>SSB-439005 (Last Update: 2020-04-14): Vulnerabilities in the additional GNU/Linux subsystem of the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP</title>
    <updated>2020-04-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssb-439005.pdf" rel="alternate"/>
    <summary>
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-589272.pdf</id>
    <title>SSA-589272 (Last Update: 2020-04-13): Security vulnerability in SIMATIC S7-400 V6 PN CPUs</title>
    <updated>2020-04-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-589272.pdf" rel="alternate"/>
    <summary>&lt;p&gt;When receiving specially crafted ICMP network packets, SIMATIC S7-400 V6 PN CPU products may go into defect mode. This could allow attackers to perform a Denial-of-Service attack on the CPUs.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-617264.pdf</id>
    <title>SSA-617264 (Last Update: 2020-04-13): Multiple Security Vulnerabilities in SIMATIC S7-400 V5 PN CPUs</title>
    <updated>2020-04-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-617264.pdf" rel="alternate"/>
    <summary>&lt;p&gt;When receiving malformed network data, SIMATIC S7-400 V5 PN CPUs may go into defect mode. This would allow attackers to perform a Denial-of-Service attack on the CPUs.&lt;/p&gt;
&lt;p&gt;Siemens will not publish a fix for this vulnerability as this product version is discontinued since October 2011 [1]. Version V6 is not affected by these specific problems. [1] &lt;a href="https://support.industry.siemens.com/cs/ww/en/view/50252551" class="uri"&gt;https://support.industry.siemens.com/cs/ww/en/view/50252551&lt;/a&gt;&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-780073.pdf</id>
    <title>SSA-780073 (Last Update: 2020-03-12): Denial-of-Service Vulnerability in PROFINET Devices via DCE-RPC Packets</title>
    <updated>2020-03-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-780073.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Products that include the Siemens PROFINET-IO (PNIO) stack in versions prior V06.00 are potentially affected by a denial-of-service vulnerability when multiple legitimate diagnostic package requests are sent to the DCE-RPC interface.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, and recommends that customers update to the new version. Siemens is preparing further updates and recommends specific countermeasures until patches are available.&lt;/p&gt;
&lt;p&gt;Additionally, Siemens recommends other vendors of PROFINET devices to check if their products have incorporated a vulnerable version of the Siemens PNIO stack as part of the Siemens Development/Evaluation Kits.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-232418.pdf</id>
    <title>SSA-232418 (Last Update: 2020-03-12): Vulnerabilities in SIMATIC S7-1200 and SIMATIC S7-1500 CPU families</title>
    <updated>2020-03-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-232418.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Two vulnerabilities have been identified in the SIMATIC S7-1200 and S7-1500 CPU families. One vulnerability could allow an attacker with network access to affected devices to modify the user program stored on these devices such that the source code differs from the actual running code. The other vulnerability could allow an attacker in a Man-in-the-Middle position to modify network traffic exchanged on port 102/tcp.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, and recommends that customers update to the new version. Siemens is preparing further updates and recommends specific countermeasures until patches are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-844761.pdf</id>
    <title>SSA-844761 (Last Update: 2020-03-10): Multiple Vulnerabilities in CCS, FTP and Streaming Services of SiNVR Video Management Solution</title>
    <updated>2020-03-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-844761.pdf" rel="alternate"/>
    <summary>&lt;p&gt;SiNVR V3 contains several vulnerabilities in the components Central Control Server (CCS), as well as in the FTP and streaming services of the Video Server. The vulnerabilities involve path traversal (CVE-2019-19290, CVE-2019-19296, CVE-2019-19297), information disclosure (CVE-2019-19291, CVE-2019-19299), SQL injection (CVE-2019-19292), cross-site scripting (CVE-2019-19293, CVE-2019-19294), insufficient logging (CVE-2019-19295), and denial-of-service (CVE-2019-19298).&lt;/p&gt;
&lt;p&gt;Siemens recommends specific countermeasures until fixes are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-508982.pdf</id>
    <title>SSA-508982 (Last Update: 2020-03-10): Denial-of-Service Vulnerability in SIMATIC S7-300 CPUs and SINUMERIK Controller over Profinet</title>
    <updated>2020-03-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-508982.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest firmware update for the S7-300 CPUs fixes a vulnerability that could allow an unauthenticated attacker with network access to cause a denial-of-service condition. SINUMERIK 840D sl Controller, which contains a S7-300 CPU, is also affected.&lt;/p&gt;
&lt;p&gt;Siemens is preparing further updates and recommends specific countermeasures until patches are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-938930.pdf</id>
    <title>SSA-938930 (Last Update: 2020-03-10): Cross-Site Scripting Vulnerability in Spectrum Power&#8482; 5</title>
    <updated>2020-03-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-938930.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A Cross-Site Scripting (XSS) vulnerability was found in the Engineering User Interface of Spectrum Power&#8482; 5.&lt;/p&gt;
&lt;p&gt;A software update is available to address the issue and Siemens recommends installing the patch.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-270778.pdf</id>
    <title>SSA-270778 (Last Update: 2020-03-10): Denial-of-Service Vulnerability in SIMATIC PCS 7, SIMATIC WinCC and SIMATIC NET PC Software</title>
    <updated>2020-03-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-270778.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A Denial-of-Service vulnerability was found in SIMATIC PCS 7, SIMATIC WinCC and SIMATIC NET PC software when encrypted communication is enabled. The vulnerability could allow an attacker with network access to cause a Denial-of-Service condition under certain circumstances (versions prior to SIMATIC WinCC V7.3 or SIMATIC PCS 7 V8.1 are not affected as encrypted communication is not an option).&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, and recommends that customers update to the latest version. Siemens is preparing further updates and recommends specific countermeasures until patches are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-398519.pdf</id>
    <title>SSA-398519 (Last Update: 2020-03-10): Vulnerabilities in Intel CPUs (November 2019)</title>
    <updated>2020-03-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-398519.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Intel has published information on vulnerabilities in Intel products in &lt;a href="https://blogs.intel.com/technology/2019/11/ipas-november-2019-intel-platform-update-ipu/#gs.jdy72s"&gt;November 2019&lt;/a&gt;. In this advisory Siemens only explicitly mentions the vulnerabilities from the &amp;quot;Intel&#174; CPU Security Advisory&amp;quot; and one vulnerability from &amp;quot;Intel&#174; CSME, Intel&#174; SPS, Intel&#174; TXE, Intel&#174; AMT, Intel&#174; PTT and Intel&#174; DAL Advisory&amp;quot; and lists the Siemens IPC related products that are affected by these vulnerabilities. For further information about BIOS updates related to Intel CPU vulnerabilities see: &lt;a href="https://support.industry.siemens.com/cs/ww/en/view/109747626" class="uri"&gt;https://support.industry.siemens.com/cs/ww/en/view/109747626&lt;/a&gt;.&lt;/p&gt;
&lt;p&gt;Several Siemens Industrial Products contain processors that are affected by the vulnerabilities. Siemens has released updates for several affected products and is currently working on BIOS updates that include chipset microcode updates for further products.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-431678.pdf</id>
    <title>SSA-431678 (Last Update: 2020-03-10): Denial-of-Service Vulnerability in SIMATIC S7 CPU Families</title>
    <updated>2020-03-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-431678.pdf" rel="alternate"/>
    <summary>&lt;p&gt;S7-300/S7-400 and S7-1200 CPU families are affected by a vulnerability that could allow remote attackers to perform a Denial-of-Service attack by sending a specially crafted HTTP request to the web server of an affected device.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, is working on updates for the remaining affected products and recommends specific countermeasures until fixes are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-451445.pdf</id>
    <title>SSA-451445 (Last Update: 2020-03-10): Multiple Vulnerabilities in SPPA-T3000</title>
    <updated>2020-03-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-451445.pdf" rel="alternate"/>
    <summary>&lt;p&gt;SPPA-T3000 Application Server and MS3000 Migration Server are affected by multiple vulnerabilities. Some of the vulnerabilities can allow an attacker to execute arbitrary code on the server. Exploitation of the vulnerabilities described in this advisory requires access to either Application- or Automation Highway. Both highways should not be exposed if the environment has been set up according to the recommended system configuration in the Siemens SPPA-T3000 security manual.&lt;/p&gt;
&lt;p&gt;In this case Siemens considers the environmental score as CR:L/IR:L/AR:H/MAV:A for vulnerabilities related to the Application Server and CR:L/IR:L/AR:M/MAV:A for vulnerabilities related to the Migration Server.&lt;/p&gt;
&lt;p&gt;Siemens provides a service pack to fix vulnerabilities on the Application Server and recommends configurations to mitigate the vulnerabilities in the Migration Server. Detailed information will be available for SPPA-T3000 customers in the Siemens Energy Customer Portal.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-750824.pdf</id>
    <title>SSA-750824 (Last Update: 2020-03-10): Denial-of-Service Vulnerability in Profinet Devices</title>
    <updated>2020-03-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-750824.pdf" rel="alternate"/>
    <summary>&lt;p&gt;SIMATIC S7-1500 CPU family devices are affected by a vulnerability that could allow an attacker to perform a Denial-of-Service attack if specially crafted UDP packets are sent to the device.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and recommends that customers update to these new versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-780073.pdf</id>
    <title>SSA-780073 (Last Update: 2020-03-10): Denial-of-Service Vulnerability in PROFINET Devices via DCE-RPC Packets</title>
    <updated>2020-03-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-780073.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Products that include the Siemens PROFINET-IO (PNIO) stack in versions prior V06.00 are potentially affected by a denial-of-service vulnerability when multiple legitimate diagnostic package requests are sent to the DCE-RPC interface.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, and recommends that customers update to the new version. Siemens is preparing further updates and recommends specific countermeasures until patches are available.&lt;/p&gt;
&lt;p&gt;Additionally, Siemens recommends other vendors of PROFINET devices to check if their products have incorporated a vulnerable version of the Siemens PNIO stack as part of the Siemens Development/Evaluation Kits.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-232418.pdf</id>
    <title>SSA-232418 (Last Update: 2020-03-10): Vulnerabilities in SIMATIC S7-1200 and SIMATIC S7-1500 CPU families</title>
    <updated>2020-03-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-232418.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Two vulnerabilities have been identified in the SIMATIC S7-1200 and S7-1500 CPU families. One vulnerability could allow an attacker with network access to affected devices to modify the user program stored on these devices such that the source code differs from the actual running code. The other vulnerability could allow an attacker in a Man-in-the-Middle position to modify network traffic exchanged on port 102/tcp.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, and recommends that customers update to the new version. Siemens is preparing further updates and recommends specific countermeasures until patches are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-273799.pdf</id>
    <title>SSA-273799 (Last Update: 2020-03-10): Vulnerability in SIMATIC products</title>
    <updated>2020-03-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-273799.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability has been identified in several SIMATIC products. The vulnerability could allow an attacker in a Man-in-the-Middle position to modify network traffic exchanged on port 102/tcp to PLCs of the SIMATIC S7-1200, SIMATIC S7-1500 and SIMATIC SoftwareController CPU families.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, and recommends that customers update to the new version. Siemens is preparing further updates and recommends specific countermeasures until patches are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-349422.pdf</id>
    <title>SSA-349422 (Last Update: 2020-03-10): Denial-of-Service in Industrial Real-Time (IRT) Devices</title>
    <updated>2020-03-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-349422.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in the affected products could allow an unauthorized attacker with network access to perform a denial-of-service attack resulting in loss of real-time synchronization.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, and recommends that customers update to the new version. Siemens is preparing further updates and recommends specific countermeasures until updates are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-473245.pdf</id>
    <title>SSA-473245 (Last Update: 2020-03-10): Denial-of-Service Vulnerability in Profinet Devices</title>
    <updated>2020-03-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-473245.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in affected devices could allow an attacker to perform a denial-of-service attack if a large amount of specially crafted UDP packets are sent to the device.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, and recommends that customers update to the new version. Siemens is preparing further updates and recommends specific countermeasures until patches are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-462066.pdf</id>
    <title>SSA-462066 (Last Update: 2020-03-10): Vulnerability known as TCP SACK PANIC in Industrial Products</title>
    <updated>2020-03-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-462066.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Multiple industrial products are affected by a vulnerability in the kernel known as TCP SACK PANIC. The vulnerability could allow a remote attacker to cause a denial of service condition.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, and recommends that customers update to the new version. Siemens is preparing further updates and recommends specific countermeasures until updates are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-307392.pdf</id>
    <title>SSA-307392 (Last Update: 2020-03-10): Denial-of-Service in OPC UA in Industrial Products</title>
    <updated>2020-03-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-307392.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability has been identified in the OPC UA server of several industrial products. The vulnerability could cause a Denial-of-Service condition on the service or the device.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, and recommends that customers update to the new version. Siemens is preparing further updates and recommends specific countermeasures until patches are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-480230.pdf</id>
    <title>SSA-480230 (Last Update: 2020-03-10): Denial-of-Service in Webserver of Industrial Products</title>
    <updated>2020-03-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-480230.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in the affected devices could allow an unauthorized attacker with network access to the webserver of an affected device to perform a denial-of-service attack.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, and recommends that customers update to the new version. Siemens is preparing further updates and recommends specific countermeasures until patches are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-616472.pdf</id>
    <title>SSA-616472 (Last Update: 2020-03-10): ZombieLoad and Microarchitectural Data Sampling Vulnerabilities in Industrial Products</title>
    <updated>2020-03-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-616472.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Security researchers published information on vulnerabilities known as ZombieLoad and Microarchitectural Data Sampling (MDS). These vulnerabilities affect many modern processors from different vendors to a varying degree.&lt;/p&gt;
&lt;p&gt;Several Siemens Industrial Products contain processors that are affected by the vulnerabilities.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-731239.pdf</id>
    <title>SSA-731239 (Last Update: 2020-03-10): Vulnerabilities in SIMATIC S7-300 and S7-400 CPUs</title>
    <updated>2020-03-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-731239.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Two vulnerabilities have been identified in SIMATIC S7-300 and S7-400 CPU families. One vulnerability could lead to a Denial-of-Service, the other vulnerability could result in credential disclosure.&lt;/p&gt;
&lt;p&gt;Siemens recommends specific mitigations. Siemens will update this advisory when new information becomes available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-270778.pdf</id>
    <title>SSA-270778 (Last Update: 2020-02-11): Denial-of-Service Vulnerability in SIMATIC PCS 7, SIMATIC WinCC and SIMATIC NET PC Software</title>
    <updated>2020-02-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-270778.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A Denial-of-Service vulnerability was found in SIMATIC PCS 7, SIMATIC WinCC and SIMATIC NET PC software when encrypted communication is enabled. The vulnerability could allow an attacker with network access to cause a Denial-of-Service condition under certain circumstances (versions prior to SIMATIC WinCC V7.3 or SIMATIC PCS 7 V8.1 are not affected as encrypted communication is not an option).&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, and recommends that customers update to the latest version. Siemens is preparing further updates and recommends specific countermeasures until patches are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-273799.pdf</id>
    <title>SSA-273799 (Last Update: 2020-02-11): Vulnerability in SIMATIC products</title>
    <updated>2020-02-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-273799.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability has been identified in several SIMATIC products. The vulnerability could allow an attacker in a Man-in-the-Middle position to modify network traffic exchanged on port 102/tcp to PLCs of the SIMATIC S7-1200, SIMATIC S7-1500 and SIMATIC SoftwareController CPU families.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, and recommends that customers update to the new version. Siemens is preparing further updates and recommends specific countermeasures until patches are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-307392.pdf</id>
    <title>SSA-307392 (Last Update: 2020-02-11): Denial-of-Service in OPC UA in Industrial Products</title>
    <updated>2020-02-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-307392.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability has been identified in the OPC UA server of several industrial products. The vulnerability could cause a Denial-of-Service condition on the service or the device.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, and recommends that customers update to the new version. Siemens is preparing further updates and recommends specific countermeasures until patches are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-349422.pdf</id>
    <title>SSA-349422 (Last Update: 2020-02-11): Denial-of-Service in Industrial Real-Time (IRT) Devices</title>
    <updated>2020-02-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-349422.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in the affected products could allow an unauthorized attacker with network access to perform a denial-of-service attack resulting in loss of real-time synchronization.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, and recommends that customers update to the new version. Siemens is preparing further updates and recommends specific countermeasures until updates are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-398519.pdf</id>
    <title>SSA-398519 (Last Update: 2020-02-11): Vulnerabilities in Intel CPUs (November 2019)</title>
    <updated>2020-02-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-398519.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Intel has published information on vulnerabilities in Intel products in &lt;a href="https://blogs.intel.com/technology/2019/11/ipas-november-2019-intel-platform-update-ipu/#gs.jdy72s"&gt;November 2019&lt;/a&gt;. In this advisory Siemens only explicitly mentions the vulnerabilities from the &amp;quot;Intel&#174; CPU Security Advisory&amp;quot; and one vulnerability from &amp;quot;Intel&#174; CSME, Intel&#174; SPS, Intel&#174; TXE, Intel&#174; AMT, Intel&#174; PTT and Intel&#174; DAL Advisory&amp;quot; and lists the Siemens IPC related products that are affected by these vulnerabilites. For further information about BIOS updates related to Intel CPU vulnerabilites see: &lt;a href="https://support.industry.siemens.com/cs/ww/en/view/109747626" class="uri"&gt;https://support.industry.siemens.com/cs/ww/en/view/109747626&lt;/a&gt;.&lt;/p&gt;
&lt;p&gt;Several Siemens Industrial Products contain processors that are affected by the vulnerabilities and is currently working on BIOS updates that include chipset microcode updates.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-431678.pdf</id>
    <title>SSA-431678 (Last Update: 2020-02-11): Denial-of-Service Vulnerability in SIMATIC S7 CPU Families</title>
    <updated>2020-02-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-431678.pdf" rel="alternate"/>
    <summary>&lt;p&gt;S7-300/S7-400 and S7-1200 CPU families are affected by a vulnerability that could allow remote attackers to perform a Denial-of-Service attack by sending a specially crafted HTTP request to the web server of an affected device.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, is working on updates for the remaining affected products and recommends specific countermeasures until fixes are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-462066.pdf</id>
    <title>SSA-462066 (Last Update: 2020-02-11): Vulnerability known as TCP SACK PANIC in Industrial Products</title>
    <updated>2020-02-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-462066.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Multiple industrial products are affected by a vulnerability in the kernel known as TCP SACK PANIC. The vulnerability could allow a remote attacker to cause a denial of service condition.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, and recommends that customers update to the new version. Siemens is preparing further updates and recommends specific countermeasures until updates are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-473245.pdf</id>
    <title>SSA-473245 (Last Update: 2020-02-11): Denial-of-Service Vulnerability in Profinet Devices</title>
    <updated>2020-02-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-473245.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in affected devices could allow an attacker to perform a denial-of-service attack if a large amount of specially crafted UDP packets are sent to the device.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, and recommends that customers update to the new version. Siemens is preparing further updates and recommends specific countermeasures until patches are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-480230.pdf</id>
    <title>SSA-480230 (Last Update: 2020-02-11): Denial-of-Service in Webserver of Industrial Products</title>
    <updated>2020-02-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-480230.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in the affected devices could allow an unauthorized attacker with network access to the webserver of an affected device to perform a denial-of-service attack.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, and recommends that customers update to the new version. Siemens is preparing further updates and recommends specific countermeasures until patches are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-591405.pdf</id>
    <title>SSA-591405 (Last Update: 2020-02-11): Web Vulnerabilities in SCALANCE S-600 family</title>
    <updated>2020-02-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-591405.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The firmware for SCALANCE S-600 family devices contains multiple web vulnerabilities. The vulnerabilities could allow an remote attacker to conduct Denial-of-Service attacks or perform Cross-Site Scripting attacks.&lt;/p&gt;
&lt;p&gt;Siemens recommends to migrate to SCALANCE SC-600 Industrial Security Appliances.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-616472.pdf</id>
    <title>SSA-616472 (Last Update: 2020-02-11): ZombieLoad and Microarchitectural Data Sampling Vulnerabilities in Industrial Products</title>
    <updated>2020-02-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-616472.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Security researchers published information on vulnerabilities known as ZombieLoad and Microarchitectural Data Sampling (MDS). These vulnerabilities affect many modern processors from different vendors to a varying degree.&lt;/p&gt;
&lt;p&gt;Several Siemens Industrial Products contain processors that are affected by the vulnerabilities.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-750824.pdf</id>
    <title>SSA-750824 (Last Update: 2020-02-11): Denial-of-Service Vulnerability in Profinet Devices</title>
    <updated>2020-02-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-750824.pdf" rel="alternate"/>
    <summary>&lt;p&gt;SIMATIC S7-1500 CPU family devices are affected by a vulnerability that could allow an attacker to perform a Denial-of-Service attack if specially crafted UDP packets are sent to the device.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, is working on updates for the remaining affected products and recommends specific countermeasures until fixes are available&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-780073.pdf</id>
    <title>SSA-780073 (Last Update: 2020-02-11): Denial-of-Service Vulnerability in PROFINET Devices via DCE-RPC Packets</title>
    <updated>2020-02-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-780073.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Products that include the Siemens PROFINET-IO (PNIO) stack in versions prior V06.00 are potentially affected by a denial-of-service vulnerability when multiple legitimate diagnostic package requests are sent to the DCE-RPC interface.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, and recommends that customers update to the new version. Siemens is preparing further updates and recommends specific countermeasures until patches are available.&lt;/p&gt;
&lt;p&gt;Additionally, Siemens recommends other vendors of PROFINET devices to check if their products have incorporated a vulnerable version of the Siemens PNIO stack as part of the Siemens Development/Evaluation Kits.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-940889.pdf</id>
    <title>SSA-940889 (Last Update: 2020-02-11): Vulnerabilities in the embedded FTP server of SIMATIC CP 1543-1</title>
    <updated>2020-02-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-940889.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest update for SIMATIC CP 1543-1 contains two fixes for vulnerabilities within its embedded ProFTPD FTP server. The more severe of these vulnerabilities could allow for remote code execution and information disclosure without authentication.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for SIMATIC CP 1543-1 modules.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-951513.pdf</id>
    <title>SSA-951513 (Last Update: 2020-02-11): Clickjacking Vulnerability in SCALANCE X-300, X-200IRT, and X-200 Switch Families</title>
    <updated>2020-02-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-951513.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Several SCALANCE X switches contain a vulnerability that could allow an attacker to perform administrative actions if the victim is tricked into clicking on a website controlled by the attacker. The attack only works if the victim has an authenticated session on the administrative interface of the switch.&lt;/p&gt;
&lt;p&gt;Siemens has released updates (see below), which are recommended to be applied when possible. Additionally, specific countermeasures can also be found in this document.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-974843.pdf</id>
    <title>SSA-974843 (Last Update: 2020-02-11): Denial-of-Service Vulnerability in SIPROTEC 4 and SIPROTEC Compact Relay Families</title>
    <updated>2020-02-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-974843.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The SIPROTEC 4 and SIPROTEC Compact devices are affected by a security vulnerability which could allow an attacker to conduct a Denial-of-Service attack over the network when equipped with EN100 Ethernet communication modules. Siemens recommends specific countermeasures to mitigate the issue.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-978220.pdf</id>
    <title>SSA-978220 (Last Update: 2020-02-11): Denial-of-Service Vulnerability over SNMP in Multiple Industrial Products</title>
    <updated>2020-02-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-978220.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Several industrial products are affected by a vulnerability that could allow remote attackers to conduct a Denial-of-Service (DoS) attack by sending specially crafted packets to port 161/udp (SNMP).&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, and recommends that customers update to the new version. Siemens is preparing further updates and recommends specific countermeasures until patches are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-978558.pdf</id>
    <title>SSA-978558 (Last Update: 2020-02-11): Insufficient Logging Vulnerability in SIPORT MP</title>
    <updated>2020-02-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-978558.pdf" rel="alternate"/>
    <summary>&lt;p&gt;SIPORT MP version 3.1.4 fixes a vulnerability that allowed to create special accounts (&amp;quot;service users&amp;quot;) which could enable an authenticated attacker to perform actions that are invisible to other users of the system.&lt;/p&gt;
&lt;p&gt;Siemens recommends customers to apply the update. For older versions, a hotfix and a tool are available to mitigate the vulnerability.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-986695.pdf</id>
    <title>SSA-986695 (Last Update: 2020-02-11): Information Disclosure Vulnerability in the OZW Web Server</title>
    <updated>2020-02-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-986695.pdf" rel="alternate"/>
    <summary>&lt;p&gt;OZW672 and OZW772 Web Server versions &amp;lt; 10.00 contain a vulnerability that could allow unauthenticated users to access project files under certain conditions.&lt;/p&gt;
&lt;p&gt;Siemens has released Version 10.00 that fixes the vulnerability and recommends to update all web servers.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssb-439005.pdf</id>
    <title>SSB-439005 (Last Update: 2020-02-11): Vulnerabilities in the additional GNU/Linux subsystem of the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP</title>
    <updated>2020-02-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssb-439005.pdf" rel="alternate"/>
    <summary>
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-087240.pdf</id>
    <title>SSA-087240 (Last Update: 2020-02-10): Vulnerabilities in SIEMENS LOGO!</title>
    <updated>2020-02-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-087240.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Two vulnerabilities have been identified in SIEMENS LOGO!8 BM devices. The most severe vulnerability could allow an attacker to hijack existing web sessions.&lt;/p&gt;
&lt;p&gt;Siemens provides LOGO!8 BM FS-05 with firmware version V1.81.2, which fixes the first vulnerability, and recommends specific mitigations for the second vulnerability.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-100232.pdf</id>
    <title>SSA-100232 (Last Update: 2020-02-10): Denial-of-Service vulnerability in SCALANCE X switches</title>
    <updated>2020-02-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-100232.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in the affected devices could allow an unauthenticated attacker with network access to an affected device to perform a denial-of-service.&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends specific countermeasures until patches are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-110922.pdf</id>
    <title>SSA-110922 (Last Update: 2020-02-10): Web Vulnerability in TIM 1531 IRC</title>
    <updated>2020-02-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-110922.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest update for TIM 1531 IRC fixes a security vulnerability that could allow unauthorized remote attackers to perform administrative operations on the device.&lt;/p&gt;
&lt;p&gt;Siemens recommends updating as soon as possible.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-113131.pdf</id>
    <title>SSA-113131 (Last Update: 2020-02-10): Denial-of-Service Vulnerabilities in SIMATIC S7-400 CPUs</title>
    <updated>2020-02-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-113131.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Two vulnerabilities have been identified in the SIMATIC S7-400 CPU family that could allow an attacker to cause a Denial-of-Service condition. In order to exploit the vulnerability, an attacker must have access to the affected devices on port 102/tcp via Ethernet, PROFIBUS or Multi Point Interfaces (MPI).&lt;/p&gt;
&lt;p&gt;Siemens provides updates to address the vulnerability, and recommends specific mitigations.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-130874.pdf</id>
    <title>SSA-130874 (Last Update: 2020-02-10): Multiple Security Vulnerabilities in SCALANCE X Switches</title>
    <updated>2020-02-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-130874.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A denial of service vulnerability was found in several Siemens Scalance X switches. Siemens addresses the vulnerability by two firmware upgrades.&lt;/p&gt;
&lt;p&gt;The web server of the vulnerable switches is susceptible to a remote denial of service attack. If the attack is executed, it causes a reboot of the device and no data can be transferred over the device.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-134003.pdf</id>
    <title>SSA-134003 (Last Update: 2020-02-10): Web Vulnerability in SIMATIC S7-1200 Family</title>
    <updated>2020-02-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-134003.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest firmware update for SIMATIC S7-1200 CPUs fixes a vulnerability that could allow an attacker to perform a CSRF (Cross-Site Request Forgery) attack under certain conditions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-141614.pdf</id>
    <title>SSA-141614 (Last Update: 2020-02-10): Denial-of-Service in SIMOCODE pro V EIP</title>
    <updated>2020-02-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-141614.pdf" rel="alternate"/>
    <summary>&lt;p&gt;SIMOCODE pro V EIP is affected by a vulnerability that could allow remote attackers to conduct a Denial-of-Service (DoS) attack by sending specially crafted packets to port 161/udp (SNMP).&lt;/p&gt;
&lt;p&gt;Siemens has released an update for SIMOCODE pro V EIP and recommends that customers update to the new version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-168644.pdf</id>
    <title>SSA-168644 (Last Update: 2020-02-10): Spectre and Meltdown Vulnerabilities in Industrial Products</title>
    <updated>2020-02-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-168644.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Security researchers published information on vulnerabilities known as Spectre and Meltdown. These vulnerabilities affect many modern processors from different vendors to a varying degree.&lt;/p&gt;
&lt;p&gt;Several Industrial Products include affected processors and are affected by the vulnerabilities.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-176087.pdf</id>
    <title>SSA-176087 (Last Update: 2020-02-10): Unauthenticated Access to Critical Services in SCALANCE X-200 Switch Family</title>
    <updated>2020-02-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-176087.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A potential vulnerability was discovered in the web server authentication of SCALANCE X-200 and X-200IRT switches that might allow attackers to perform administrative operations over the network without authentication. This issue only applies to switches using older firmware versions and has been fixed from firmware V4.5.0 (non-IRT) and V5.1.0 (IRT) on.&lt;/p&gt;
&lt;p&gt;Siemens recommends upgrading to the current firmware versions V5.0.1 (non-IRT) and V5.1.2 (IRT).&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-179516.pdf</id>
    <title>SSA-179516 (Last Update: 2020-02-10): OpenSSL Vulnerability in Industrial Products</title>
    <updated>2020-02-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-179516.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in OpenSSL affects several Siemens industrial products. Siemens has released updates for some affected products and is working on updates for others.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-180635.pdf</id>
    <title>SSA-180635 (Last Update: 2020-02-10): Denial-of-Service Vulnerabilities in SIMATIC S7-1500 CPU Family</title>
    <updated>2020-02-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-180635.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Older versions of the S7-1500 CPU are affected by two Denial-of-Service vulnerabilities. Siemens has released updates for the currently supported hardware versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-233109.pdf</id>
    <title>SSA-233109 (Last Update: 2020-02-10): Web Vulnerabilities in SIMATIC Panels</title>
    <updated>2020-02-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-233109.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest update for SIMATIC Panel software and SIMATIC WinCC (TIA Portal) fixes two web vulnerabilities. The most severe is a vulnerability which could allow an attacker with network access to the integrated webserver to download arbitrary files.&lt;/p&gt;
&lt;p&gt;Siemens recommends to update to the newest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-234763.pdf</id>
    <title>SSA-234763 (Last Update: 2020-02-10): OpenSSL Vulnerabilities in Siemens Industrial Products</title>
    <updated>2020-02-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-234763.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Vulnerabilities in OpenSSL (see &lt;a href="https://www.openssl.org/news/secadv_20140605.txt" class="uri"&gt;https://www.openssl.org/news/secadv_20140605.txt&lt;/a&gt;) affect several Siemens industrial products. Siemens has released updates for all affected products.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-240718.pdf</id>
    <title>SSA-240718 (Last Update: 2020-02-10): Insecure storage of HTTPS CA certificate in SIMATIC S7-1200 V2.x</title>
    <updated>2020-02-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-240718.pdf" rel="alternate"/>
    <summary>&lt;p&gt;For the convenience of the customer, a Certificate Authority (CA) for HTTPS connections is installed on the Siemens SIMATIC S7-1200 PLC. The user has the option to trust this CA which if selected installs the certificate into the browser&#8217;s certificate store. Once the user completes this step, the browser will trust any other S7-1200 V2.x PLC on the network.&lt;/p&gt;
&lt;p&gt;A researcher has demonstrated the ability to obtain the private key of the S7-1200 CA (&amp;quot;SIMATIC CONTROLLER&amp;quot;). With this private key, an attacker is able to create his own certificate. Using this forged certificate, it is possible to spoof any SSL server certificate and conduct man-in-the-middle attacks on a user&#8217;s browser that is currently trusting this CA.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-253230.pdf</id>
    <title>SSA-253230 (Last Update: 2020-02-10): Vulnerabilities in SIMATIC S7-1500 CPU family</title>
    <updated>2020-02-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-253230.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Siemens has released a firmware update for the SIMATIC S7-1500 CPU family which fixes two vulnerabilities. The more severe of these vulnerabilities could allow attackers to cause a Denial-of-Service under certain conditions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-254686.pdf</id>
    <title>SSA-254686 (Last Update: 2020-02-10): Foreshadow / L1 Terminal Fault Vulnerabilities in Industrial Products</title>
    <updated>2020-02-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-254686.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Security researchers published information on vulnerabilities known as Foreshadow and L1 Terminal Fault (L1TF). These vulnerabilities affect many modern processors from different vendors to a varying degree.&lt;/p&gt;
&lt;p&gt;Several Siemens Industrial Products contain processors that are affected by the vulnerabilities.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-268644.pdf</id>
    <title>SSA-268644 (Last Update: 2020-02-10): Spectre-NG (Variants 3a and 4) Vulnerabilities in Industrial Products</title>
    <updated>2020-02-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-268644.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Security researchers published information on vulnerabilities known as Spectre-NG (Variants 3a and 4). These vulnerabilities affect many modern processors from different vendors to a varying degree.&lt;/p&gt;
&lt;p&gt;Several Industrial Products include affected processors and are affected by the vulnerabilities.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-279823.pdf</id>
    <title>SSA-279823 (Last Update: 2020-02-10): Cross-Site Scripting vulnerability in the SIMATIC S7-1200 CPU family</title>
    <updated>2020-02-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-279823.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Siemens SIMATIC S7-1200 CPUs, version 2 and higher, are capable of running an embedded web server. Web server functionality is disabled by default in the 1200 project configuration. However, if enabled, the web server is susceptible to Cross-Site Scripting (XSS). Siemens provides a firmware update which fixes this XSS vulnerability.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-293562.pdf</id>
    <title>SSA-293562 (Last Update: 2020-02-10): Vulnerabilities in Industrial Products</title>
    <updated>2020-02-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-293562.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Several industrial devices are affected by two vulnerabilities that could allow an attacker to cause a Denial-of-Service condition via PROFINET DCP network packets under certain circumstances. The precondition for this scenario is a direct layer 2 access to the affected products. PROFIBUS interfaces are not affected.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, is working on updates for the remaining affected products and recommends specific countermeasures until fixes are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-306710.pdf</id>
    <title>SSA-306710 (Last Update: 2020-02-10): Denial-of-Service Vulnerability in SIMATIC S7-300 CPU Family</title>
    <updated>2020-02-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-306710.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Siemens has released a firmware update for the S7-300 CPU family which fixes a vulnerability that could allow remote attackers to perform a Denial-of-Service attack.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-310688.pdf</id>
    <title>SSA-310688 (Last Update: 2020-02-10): Denial-of-Service Vulnerability in SIMATIC S7-1500 CPU</title>
    <updated>2020-02-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-310688.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest firmware update for the SIMATIC S7-1500 CPU family fixes a vulnerability which could allow an attacker to perform a Denial-of-Service attack under certain conditions. The attacker must have network access to the device to exploit this vulnerability.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-321046.pdf</id>
    <title>SSA-321046 (Last Update: 2020-02-10): Denial-of-Service Vulnerability in SCALANCE X-300/X408 Switch Family</title>
    <updated>2020-02-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-321046.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest firmware update for the Siemens SCALANCE X-300 switch family and SCALANCE X 408 fixes two vulnerabilities. The vulnerabilities could allow attackers to cause a device reboot under certain conditions. An attacker must have network access to the device to exploit this vulnerability.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-346262.pdf</id>
    <title>SSA-346262 (Last Update: 2020-02-10): Denial-of-Service in Industrial Products</title>
    <updated>2020-02-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-346262.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Several industrial products are affected by a vulnerability that could allow remote attackers to conduct a Denial-of-Service (DoS) attack by sending specially crafted packets to port 161/udp (SNMP).&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, and recommends that customers update to the new version. Siemens is preparing further updates and recommends specific countermeasures until patches are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-347726.pdf</id>
    <title>SSA-347726 (Last Update: 2020-02-10): Denial-of-Service Vulnerability in SIMATIC S7-1500, SIMATIC S7-1500 Software Controller and SIMATIC ET 200SP Open Controller</title>
    <updated>2020-02-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-347726.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Versions of SIMATIC S7-1500, SIMATIC S7-1500 Software Controller and SIMATIC ET200SP Open Controller are affected by a denial-of-service vulnerability. An attacker with network access to the PLC can cause a Denial-of-Service condition on the network stack.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-377318.pdf</id>
    <title>SSA-377318 (Last Update: 2020-02-10): Multiple vulnerabilities in Intel Active Management Technology (AMT) of SIMATIC IPCs</title>
    <updated>2020-02-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-377318.pdf" rel="alternate"/>
    <summary>&lt;p&gt;There are multiple vulnerabilities in the Intel Management Engine used in multiple SIMATIC IPC devices that may allow arbitrary code execution, a partial denial of service or information disclosure. For additional information see: &lt;a href="https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00141.html" class="uri"&gt;https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00141.html&lt;/a&gt;.&lt;/p&gt;
&lt;p&gt;Siemens provides updates for the affected devices.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-447396.pdf</id>
    <title>SSA-447396 (Last Update: 2020-02-10): Denial-of-Service in SCALANCE X-300, SCALANCE X408 and SCALANCE X414</title>
    <updated>2020-02-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-447396.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability has been identified in the integrated web server of SCALANCE X300, SCALANCE X408, and SCALANCE X414. The vulnerability could allow an attacker with network access to the device to cause a Denial-of-Service condition.&lt;/p&gt;
&lt;p&gt;The vulnerability can be triggered with publicly available tools, including vulnerability scanners.&lt;/p&gt;
&lt;p&gt;Siemens provides updates for SCALANCE X300, and SCALANCE X408, and provides mitigations for the SCALANCE X414.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-456423.pdf</id>
    <title>SSA-456423 (Last Update: 2020-02-10): Vulnerabilities in SIMATIC S7-1500 CPU family</title>
    <updated>2020-02-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-456423.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The new firmware update for the SIMATIC S7-1500 CPU firmware fixes several vulnerabilities, which may have been exploitable via network by Web application attacks or Denial-of-Service attacks with specially crafted network packets on different ports.&lt;/p&gt;
&lt;p&gt;Siemens addresses and fixes all of these issues by the new firmware update.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-470231.pdf</id>
    <title>SSA-470231 (Last Update: 2020-02-10): TPM Vulnerability in SIMATIC IPCs</title>
    <updated>2020-02-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-470231.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Several SIMATIC IPCs include a version of Infineon's Trusted Platform Module (TPM) firmware that mishandles RSA key generation. This makes it easier for attackers to conduct cryptographic attacks against the key material.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected Industrial PCs.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-487246.pdf</id>
    <title>SSA-487246 (Last Update: 2020-02-10): Vulnerabilities in SIMATIC HMI Devices</title>
    <updated>2020-02-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-487246.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest updates for the affected products fix three vulnerabilities. The most severe of these vulnerabilities could allow an attacker to perform a Denial-of-Service attack against HMI panels under certain conditions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-507847.pdf</id>
    <title>SSA-507847 (Last Update: 2020-02-10): Cross-Site Request Forgery Vulnerability in SIMATIC S7-1200 CPU Family Version 4</title>
    <updated>2020-02-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-507847.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest firmware update for S7-1200 CPU family version 4 fixes a Cross-Site Request Forgery vulnerability. Siemens recommends to update affected devices as soon as possible.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-542701.pdf</id>
    <title>SSA-542701 (Last Update: 2020-02-10): Vulnerabilities in SIEMENS LOGO!</title>
    <updated>2020-02-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-542701.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities have been identified in SIEMENS LOGO!8 BM devices. The most severe vulnerability could lead to an attacker reading and modifying the device configuration if the attacker has access to port 10005/tcp.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-546832.pdf</id>
    <title>SSA-546832 (Last Update: 2020-02-10): Vulnerabilities in Medium Voltage SINAMICS and SIMOTION Products</title>
    <updated>2020-02-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-546832.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest updates for medium voltage SINAMICS products fix two security vulnerabilities that could allow an attacker to cause a Denial-of-Service condition either via specially crafted PROFINET DCP broadcast packets or by sending specially crafted packets to port 161/udp (SNMP). Precondition for the PROFINET DCP scenario is a direct Layer 2 access to the affected products. PROFIBUS interfaces are not affected.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-584286.pdf</id>
    <title>SSA-584286 (Last Update: 2020-02-10): Denial-of-Service Vulnerability in SIMATIC S7-1200 CPU and SIMATIC S7-1500 CPU</title>
    <updated>2020-02-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-584286.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability was identified in SIMATIC S7-1200 and S7-1500 CPUs that could allow an attacker to cause a denial-of-service condition preventing HMI or engineering access to the PLC over port 102/tcp.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for the S7-1500 product and recommends that customers update to the new version. Siemens is preparing a further update for the S7-1200 product and recommends specific workarounds and mitigations until patches are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-592007.pdf</id>
    <title>SSA-592007 (Last Update: 2020-02-10): Denial-of-Service Vulnerability in Industrial Products</title>
    <updated>2020-02-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-592007.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Several industrial controllers are affected by a security vulnerability that could allow an attacker to cause a Denial-of-Service condition via PROFINET DCP network packets under certain circumstances. Precondition for this scenario is a direct OSI Layer 2 access to the affected products. PROFIBUS interfaces are not affected.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, is working on updates for the remaining affected products and recommends specific countermeasures until fixes are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-597212.pdf</id>
    <title>SSA-597212 (Last Update: 2020-02-10): Web Vulnerability in SIMATIC S7-1200 CPU Family</title>
    <updated>2020-02-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-597212.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest firmware version V4.1 of the SIMATIC S7-1200 CPU fixes one vulnerability. The vulnerability could allow an attacker to redirect users to untrusted sites under certain conditions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-623229.pdf</id>
    <title>SSA-623229 (Last Update: 2020-02-10): DROWN Vulnerability in Industrial Products</title>
    <updated>2020-02-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-623229.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The disclosed attack called DROWN (Decrypting RSA with Obsolete and Weakened eNcryption), also known as CVE-2016-0800, could potentially allow the decryption of SSL/TLS sessions of some Siemens industrial products under certain conditions.&lt;/p&gt;
&lt;p&gt;Siemens has released firmware updates and solutions to resolve the vulnerability&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-625789.pdf</id>
    <title>SSA-625789 (Last Update: 2020-02-10): Security Vulnerabilities in Siemens SIMATIC S7-1200 CPU</title>
    <updated>2020-02-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-625789.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Security experts have examined the SIMATIC S7-1200 Programmable Logic Controller (PLC). This research has revealed some weaknesses in the SIMATIC S71200 CPU communication and authentication functions. Once the automation network is compromised it is possible to demonstrate the following weaknesses using a remote exploit: - Trigger CPU functions by record and playback of legitimate network communication - Place CPU in stop/defect state by causing a communications error A remote exploit is a type of attack that can be launched from one computer against another computer across a network. For example, a PC with access to the automation network could be used to launch a remote exploit against a PLC.&lt;/p&gt;
&lt;p&gt;The weaknesses are closed with a firmware update V 2.0.3. For the second weakness (communications error), a temporary work-around is also available: if the Web server on the S7-1200 is disabled, the weakness cannot be exploited.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-635659.pdf</id>
    <title>SSA-635659 (Last Update: 2020-02-10): Heartbleed Vulnerability in Siemens Industrial Products</title>
    <updated>2020-02-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-635659.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The &amp;quot;Heartbleed&amp;quot; vulnerability in the OpenSSL cryptographic software library (CVE-2014-0160) affects several Siemens industrial products.&lt;/p&gt;
&lt;p&gt;Siemens has resolved the issue in all affected industrial products and provides updates which fix this vulnerability.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-654382.pdf</id>
    <title>SSA-654382 (Last Update: 2020-02-10): Vulnerabilities in SIMATIC S7-1200 CPU Familiy</title>
    <updated>2020-02-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-654382.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest product release of the SIMATIC S7-1200 CPU fixes several vulnerabilities. The most severe of these vulnerabilities could allow an attacker to take over an authenticated web session if the session token can be predicted. The attacker must have network access to the device to exploit this vulnerability.&lt;/p&gt;
&lt;p&gt;Further vulnerabilities resolved in this product release are discussed below.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-672373.pdf</id>
    <title>SSA-672373 (Last Update: 2020-02-10): Vulnerabilities in CP 1543-1</title>
    <updated>2020-02-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-672373.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest firmware update for SIMATIC CP 1543-1 devices fixes two vulnerabilities. One of these vulnerabilities could allow authorized users to escalate their privileges on the CP.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-724606.pdf</id>
    <title>SSA-724606 (Last Update: 2020-02-10): Denial-of-Service Vulnerabilities in SIMATIC S7-1200 CPU Family</title>
    <updated>2020-02-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-724606.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Siemens SIMATIC S7-1200 PLCs, version 2 and higher, allow device management over TCP port 102 (ISO-TSAP) and retrieving status information over UDP port 161 (SNMP). It is possible to cause the device to go into defect mode by sending specially crafted packets to these ports.&lt;/p&gt;
&lt;p&gt;Siemens addresses these issues with the newest product release.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-731239.pdf</id>
    <title>SSA-731239 (Last Update: 2020-02-10): Vulnerabilities in SIMATIC S7-300 and S7-400 CPUs</title>
    <updated>2020-02-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-731239.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Two vulnerabilities have been identified in SIMATIC S7-300 and S7-400 CPU families. One vulnerability could lead to a Denial-of-Service, the other vulnerability could result in credential disclosure.&lt;/p&gt;
&lt;p&gt;Siemens recommends specific mitigations. Siemens will update this advisory when new information becomes available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-742938.pdf</id>
    <title>SSA-742938 (Last Update: 2020-02-10): Open Ports in SINAMICS S/G Firmware</title>
    <updated>2020-02-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-742938.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A potential vulnerability was discovered in the SINAMICS S/G converter family which might allow attackers to access administrative functions on the device without authentication.&lt;/p&gt;
&lt;p&gt;Siemens addresses the issue by a firmware update.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-763427.pdf</id>
    <title>SSA-763427 (Last Update: 2020-02-10): Vulnerability in Communication Processor (CP) modules CP 343-1, TIM 3V-IE, TIM 4R-IE, and CP 443-1</title>
    <updated>2020-02-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-763427.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Siemens has released updates for Communication Processor (CP) module families CP 343-1/TIM 3V-IE/TIM 4R-IE/CP 443-1 to resolve an authentication bypass vulnerability that could allow unauthenticated users to perform administrative operations under certain conditions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-774850.pdf</id>
    <title>SSA-774850 (Last Update: 2020-02-10): Vulnerabilities in SIEMENS LOGO!8 devices</title>
    <updated>2020-02-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-774850.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Two vulnerabilities have been identified in SIEMENS LOGO!8 devices. The Session ID on the integrated webserver of LOGO!8 devices is not invalidated upon logout. The second vulnerability could allow an attacker with network access to port 10005/tcp to cause a Denial-of-Service condition by sending specifically crafted packages to the service.&lt;/p&gt;
&lt;p&gt;Siemens provides a firmware update for the latest version of LOGO!8 devices. For older versions, the device needs to be upgraded (see table below).&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-804486.pdf</id>
    <title>SSA-804486 (Last Update: 2020-02-10): Multiple Vulnerabilities in SIMATIC Panels and SIMATIC WinCC (TIA Portal)</title>
    <updated>2020-02-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-804486.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest update for SIMATIC Panel Software and SIMATIC WinCC (TIA Portal) fixes two vulnerabilities. The most severe is a vulnerability which could allow an attacker with network access to the integrated device to read and write variables via SNMP.&lt;/p&gt;
&lt;p&gt;Siemens recommends to update to the newest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-818183.pdf</id>
    <title>SSA-818183 (Last Update: 2020-02-10): Denial-of-Service Vulnerability in SIMATIC S7-300 CPU Family</title>
    <updated>2020-02-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-818183.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Siemens has released a firmware update for the SIMATIC S7-300 CPU family which fixes a vulnerability that could allow remote attackers to perform a Denial-of-Service attack under certain conditions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-833048.pdf</id>
    <title>SSA-833048 (Last Update: 2020-02-10): Vulnerability in SIMATIC S7-1200 CPU Family</title>
    <updated>2020-02-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-833048.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Siemens became aware that the discontinued products SIMATIC S7-1200 CPUs prior to version 4 could allow for the circumvention of user program block protection under certain conditions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-850708.pdf</id>
    <title>SSA-850708 (Last Update: 2020-02-10): Authentication Bypass in SCALANCE X-200 Switch Family</title>
    <updated>2020-02-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-850708.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A potential vulnerability was discovered in the web server&#8217;s authentication of SCALANCE X-200 switches that might allow attackers to hijack web sessions over the network without authentication. Siemens addresses the issue with a firmware update.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-874235.pdf</id>
    <title>SSA-874235 (Last Update: 2020-02-10): Intel Vulnerability in Siemens Industrial Products</title>
    <updated>2020-02-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-874235.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Several Intel chipsets for Intel Core i5, Intel Core i7 and Intel XEON are susceptible to remote code execution vulnerability (CVE-2017-5689) [1]. As several Siemens Industrial Products use Intel technology, they are also affected. Siemens has released updates for the affected Industrial PCs.&lt;/p&gt;
&lt;p&gt;[1] Intel Security Advisory &#8211; INTEL-SA-00075:&lt;a href="https://security-center.intel.com/advisory.aspx?intelid=INTEL-SA-00075&amp;amp;languageid=en-fr" class="uri"&gt;https://security-center.intel.com/advisory.aspx?intelid=INTEL-SA-00075&amp;amp;languageid=en-fr&lt;/a&gt;&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-892012.pdf</id>
    <title>SSA-892012 (Last Update: 2020-02-10): Web Vulnerabilities in SIMATIC S7-1200 CPU Family</title>
    <updated>2020-02-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-892012.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest product release of the SIMATIC S7-1200 CPU fixes two vulnerabilities. The more severe of these vulnerabilities could allow an attacker to inject HTTP headers if unsuspecting users are tricked to click on a malicious link.&lt;/p&gt;
&lt;p&gt;Another vulnerability resolved in this product release is discussed below.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-892715.pdf</id>
    <title>SSA-892715 (Last Update: 2020-02-10): ME, SPS and TXE Vulnerabilities in SIMATIC IPCs </title>
    <updated>2020-02-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-892715.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Intel has identified vulnerabilities in Intel Management Engine (ME), Intel Server Platform Services (SPS), and Intel Trusted Execution Engine (TXE). As several Siemens Industrial PCs use Intel technology, they are also affected.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected Industrial PCs.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-914382.pdf</id>
    <title>SSA-914382 (Last Update: 2020-02-10): Denial-of-Service Vulnerability in SIMATIC S7-400 CPU Family</title>
    <updated>2020-02-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-914382.pdf" rel="alternate"/>
    <summary>&lt;p&gt;SIMATIC S7-400 CPUs are affected by a security vulnerability which could lead to a Denial-of-Service condition of the PLC if specially crafted packets are received and processed.&lt;/p&gt;
&lt;p&gt;The affected SIMATIC S7-400 CPU hardware versions are in the product cancellation phase or already phased-out. Siemens recommends customers either upgrading to a new version or implementing specific countermeasures.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-944083.pdf</id>
    <title>SSA-944083 (Last Update: 2020-02-10): HTTP Header Injection in SIMATIC Panels and SIMATIC WinCC (TIA Portal)</title>
    <updated>2020-02-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-944083.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest update for SIMATIC Panel software and SIMATIC WinCC (TIA Portal) fixes a vulnerability that could allow an attacker with network access to the web server to perform a HTTP header injection attack.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-954136.pdf</id>
    <title>SSA-954136 (Last Update: 2020-02-10): User Impersonation Vulnerability in SCALANCE X-200IRT Switch Family</title>
    <updated>2020-02-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-954136.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest firmware update for the SCALANCE X-200IRT switch family fixes a vulnerability which could allow attackers to impersonate legitimate users of the web interface.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-982399.pdf</id>
    <title>SSA-982399 (Last Update: 2020-02-10): Missing Authentication in TIM 1531 IRC Modules</title>
    <updated>2020-02-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-982399.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest update for TIM 1531 IRC fixes a vulnerability. The device was missing proper authentication when connecting on port 102/tcp, although configured.&lt;/p&gt;
&lt;p&gt;An attacker needs to be able to connect to port 102/tcp of an affected device in order to exploit this vulnerability.&lt;/p&gt;
&lt;p&gt;The vulnerability could allow an attacker to perform administrative operations.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for TIM 1531 IRC modules.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-987029.pdf</id>
    <title>SSA-987029 (Last Update: 2020-02-10): Denial-of-Service Vulnerability in SIMATIC S7-300 CPU Family</title>
    <updated>2020-02-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-987029.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability could allow attackers to perform a Denial-of-Service attack over the network without prior authentication against S7-300 CPUs under certain conditions.&lt;/p&gt;
&lt;p&gt;Siemens recommends specific mitigations. Siemens will update this advisory when new information becomes available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-994726.pdf</id>
    <title>SSA-994726 (Last Update: 2020-02-10): GHOST Vulnerability in Siemens Industrial Products</title>
    <updated>2020-02-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-994726.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest updates for the affected products fix the &#8220;GHOST&#8221; [1] vulnerability identified in glibc library (CVE-2015-0235).&lt;/p&gt;
&lt;p&gt;Incorrect parsing within the glibc library functions &#8220;gethostbyname()&#8221; and &#8220;gethostbyname2()&#8221; could cause a Denial-of-Service of the targeted system.&lt;/p&gt;
&lt;p&gt;[1] https://nvd.nist.gov/vuln/detail/CVE-2015-0235&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-443566.pdf</id>
    <title>SSA-443566 (Last Update: 2020-01-14): Authentication Bypass in SCALANCE X Switches Families</title>
    <updated>2020-01-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-443566.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Several SCALANCE X switches are affected by an Authentication Bypass vulnerability. The vulnerability allows an unauthenticated attacker to violate access-control rules. The vulnerability can be exploited by sending a GET request to a specific uniform resource locator on the web configuration interface of the device.&lt;/p&gt;
&lt;p&gt;The security vulnerability could be exploited by an attacker with network access to the affected systems. An attacker could use the vulnerability to obtain sensitive information or change the device configuration.&lt;/p&gt;
&lt;p&gt;Siemens recommends to upgrade the SCALANCE X-300 and X408 switches to firmware version V4.1.3.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-629512.pdf</id>
    <title>SSA-629512 (Last Update: 2020-01-14): Local Privilege Escalation Vulnerability in TIA Portal</title>
    <updated>2020-01-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-629512.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest update for TIA Portal fixes a vulnerability that could allow a local attacker to execute arbitrary code with SYSTEM privileges.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for TIA Portal V15, is working on updates for other versions of TIA Portal and recommends specific mitigations for vulnerable versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-880233.pdf</id>
    <title>SSA-880233 (Last Update: 2020-01-14): Incorrect Session Validation Vulnerability in SINEMA Server</title>
    <updated>2020-01-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-880233.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest update for SINEMA Server fixes a vulnerability that could allow authenticated users with a low-privileged account to perform firmware updates (as well as other administrative operations) on connected devices. Therefore, Siemens recommends to update the affected products.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssb-382508.pdf</id>
    <title>SSB-382508 (Last Update: 2020-01-14): ActiveX used in Industrial Products</title>
    <updated>2020-01-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssb-382508.pdf" rel="alternate"/>
    <summary>
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-242353.pdf</id>
    <title>SSA-242353 (Last Update: 2020-01-14): Access Control Vulnerability in SINAMICS PERFECT HARMONY GH180</title>
    <updated>2020-01-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-242353.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A race condition in the restart behaviour of SINAMICS PERFECT HARMONY GH180 could allow an unauthorized attacker with physical access to the affected device to restart the HMI with disabled security controls, which could be used to launch further attacks against the affected device.&lt;/p&gt;
&lt;p&gt;Siemens recommends customers to apply a configuration change on affected devices to resolve the issue. Detailed instructions are available through customer support.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-181018.pdf</id>
    <title>SSA-181018 (Last Update: 2020-01-14): Heap Overflow Vulnerability in SCALANCE X switches, RUGGEDCOM Win, RFID 181-EIP, and SIMATIC RF182C</title>
    <updated>2020-01-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-181018.pdf" rel="alternate"/>
    <summary>&lt;p&gt;SCALANCE X switches, RUGGEDCOM Win, RFID 181-EIP, and SIMATIC RF182C are affected by a vulnerability that could allow an unprivileged attacker located in the same local network segment (OSI Layer 2) to gain system privileges by sending a specially crafted DHCP response to a client's DHCP request.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends that customers update to the new version. Siemens is preparing further updates and recommends specific countermeasures until patches are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-480829.pdf</id>
    <title>SSA-480829 (Last Update: 2020-01-14): Cross-Site-Scripting Vulnerabilities in SCALANCE X Switches</title>
    <updated>2020-01-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-480829.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Two cross-site-scripting (XSS) vulnerabilities were found in the web server of several SCALANCE X switches. Siemens recommends updating the firmware to the newest version as soon as possible.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-557804.pdf</id>
    <title>SSA-557804 (Last Update: 2020-01-14): Mirror Port Isolation Vulnerability in SCALANCE X Switches</title>
    <updated>2020-01-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-557804.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability was identified in several SCALANCE X switches that could allow an attacker to feed information into a network via the mirror port with the monitor barrier feature enabled.&lt;/p&gt;
&lt;p&gt;The monitor barrier implementation in several SCALANCE X switches does allow traffic to be directed back into the mirroring network. This might allow an attacker to feed back information into the network that is mirrored.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-307392.pdf</id>
    <title>SSA-307392 (Last Update: 2020-01-14): Denial-of-Service in OPC UA in Industrial Products</title>
    <updated>2020-01-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-307392.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability has been identified in the OPC UA server of several industrial products. The vulnerability could cause a Denial-of-Service condition on the service or the device.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, and recommends that customers update to the new version. Siemens is preparing further updates and recommends specific countermeasures until patches are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-480230.pdf</id>
    <title>SSA-480230 (Last Update: 2020-01-14): Denial-of-Service in Webserver of Industrial Products</title>
    <updated>2020-01-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-480230.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in the affected devices could allow an unauthorized attacker with network access to the webserver of an affected device to perform a denial-of-service attack.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, and recommends that customers update to the new version. Siemens is preparing further updates and recommends specific countermeasures until patches are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssb-439005.pdf</id>
    <title>SSB-439005 (Last Update: 2020-01-14): Vulnerabilities in the additional GNU/Linux subsystem of the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP</title>
    <updated>2020-01-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssb-439005.pdf" rel="alternate"/>
    <summary>
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-646841.pdf</id>
    <title>SSA-646841 (Last Update: 2020-01-14): Recoverable Password from Configuration Storage in SCALANCE X Switches</title>
    <updated>2020-01-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-646841.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability exists in several SCALANCE X switches that could allow external entities to reconstruct passwords for users of the affected devices if an attacker is able to obtain a backup of the device configuration.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for some of the affected devices and is working on updates for the remaining affected products and recommends specific countermeasures until fixes are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-473245.pdf</id>
    <title>SSA-473245 (Last Update: 2020-01-14): Denial-of-Service Vulnerability in Profinet Devices</title>
    <updated>2020-01-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-473245.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in affected devices could allow an attacker to perform a denial-of-service attack if a large amount of specially crafted UDP packets are sent to the device.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, and recommends that customers update to the new version. Siemens is preparing further updates and recommends specific countermeasures until patches are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-349422.pdf</id>
    <title>SSA-349422 (Last Update: 2020-01-14): Denial-of-Service in Industrial Real-Time (IRT) Devices</title>
    <updated>2020-01-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-349422.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in the affected products could allow an unauthorized attacker with network access to perform a denial-of-service attack resulting in loss of real-time synchronization.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, and recommends that customers update to the new version. Siemens is preparing further updates and recommends specific countermeasures until updates are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-878278.pdf</id>
    <title>SSA-878278 (Last Update: 2020-01-14): Denial-of-Service Vulnerability in SIMATIC WinAC RTX (F) 2010</title>
    <updated>2020-01-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-878278.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in SIMATIC WinAC RTX (F) 2010 controller software could allow an attacker to perform a denial-of-service attack if a large HTTP request is sent to the network port of the host where WinAC RTX is running.&lt;/p&gt;
&lt;p&gt;Siemens has released SIMATIC WinAC RTX (F) 2010 incl. SP3 Update 1 that fixes the vulnerability, and recommends that customers update to this new version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-632562.pdf</id>
    <title>SSA-632562 (Last Update: 2020-01-14): Vulnerabilities in SIPROTEC 5 Ethernet plug-in communication modules and devices</title>
    <updated>2020-01-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-632562.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The SIPROTEC 5 Ethernet plug-in communication modules and devices are affected by multiple security vulnerabilities. These vulnerabilities could allow an attacker to leverage various attacks, e.g. to execute arbitrary code over the network.&lt;/p&gt;
&lt;p&gt;The underlying Wind River VxWorks network stack is affected by eleven vulnerabilities known as 'URGENT/11'. Of these, two DHCP-related vulnerabilities (CVE-2019-12257 and CVE-2019-12264) do not apply to this advisory as the listed products use a different DHCP stack.&lt;/p&gt;
&lt;p&gt;One further vulnerability affects the boot process of the device under certain conditions.&lt;/p&gt;
&lt;p&gt;Siemens has released updates and recommends that customers update to the new versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-418979.pdf</id>
    <title>SSA-418979 (Last Update: 2020-01-14): Vulnerabilities in EN100 Ethernet Communication Module</title>
    <updated>2020-01-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-418979.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The EN100 Ethernet communication modules are affected by security vulnerabilities which could allow an attacker to disclose information. Siemens has released updates for several affected products, is working on updates for the remaining affected products, and recommends specific countermeasures until fixes are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-616199.pdf</id>
    <title>SSA-616199 (Last Update: 2020-01-14): BlueKeep Vulnerability Identified in RAPIDPoint&#174; 500 Operating on Windows XP</title>
    <updated>2020-01-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-616199.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Microsoft has released updates for several versions of Microsoft Windows, which fix a vulnerability in the Remote Desktop Service. The vulnerability could allow an unauthenticated remote attacker to execute arbitrary code on the target system if the system exposes the service to the network.&lt;/p&gt;
&lt;p&gt;RAPIDPoint&#174; 500 systems operating on Windows XP are affected by this vulnerability.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-451445.pdf</id>
    <title>SSA-451445 (Last Update: 2019-12-10): Multiple Vulnerabilities in SPPA-T3000</title>
    <updated>2019-12-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-451445.pdf" rel="alternate"/>
    <summary>&lt;p&gt;SPPA-T3000 Application Server and MS3000 Migration Server are affected by multiple vulnerabilities. Some of the vulnerabilities can allow an attacker to execute arbitrary code on the server. Exploitation of the vulnerabilities described in this advisory requires access to either Application- or Automation Highway. Both highways should not be exposed if the environment has been set up according to the recommended system configuration in the Siemens SPPA-T3000 security manual.&lt;/p&gt;
&lt;p&gt;In this case Siemens consideres the environmental score as CR:L/IR:L/AR:H/MAV:A for vulnerabilities related to the Application Server and CR:L/IR:L/AR:M/MAV:A for vulnerabilities related to the Migration Server.&lt;/p&gt;
&lt;p&gt;Siemens is working on updates and recommends specific countermeasures until fixes are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-273799.pdf</id>
    <title>SSA-273799 (Last Update: 2019-12-10): Vulnerability in SIMATIC products</title>
    <updated>2019-12-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-273799.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability has been identified in several SIMATIC products. The vulnerability could allow an attacker in a Man-in-the-Middle position to modify network traffic exchanged on port 102/tcp to PLCs of the SIMATIC S7-1200, SIMATIC S7-1500 and SIMATIC SoftwareController CPU families.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, and recommends that customers update to the new version. Siemens is preparing further updates and recommends specific countermeasures until patches are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-525454.pdf</id>
    <title>SSA-525454 (Last Update: 2019-12-10): Vulnerabilities in XHQ Operations Intelligence</title>
    <updated>2019-12-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-525454.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities have been identified in XHQ Operations Intelligence product line. These vulnerabilities could allow for data injection in XHQ's web interfaces.&lt;/p&gt;
&lt;p&gt;Siemens recommends to update XHQ Operations Intelligence product line to the newest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-418979.pdf</id>
    <title>SSA-418979 (Last Update: 2019-12-10): Vulnerabilities in EN100 Ethernet Communication Module</title>
    <updated>2019-12-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-418979.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The EN100 Ethernet communication modules are affected by security vulnerabilities which could allow an attacker to disclose information. Siemens has released updates for several affected products, is working on updates for the remaining affected products, and recommends specific countermeasures until fixes are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-761617.pdf</id>
    <title>SSA-761617 (Last Update: 2019-12-10): Multiple Vulnerabilities in SiNVR Video Management Solution</title>
    <updated>2019-12-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-761617.pdf" rel="alternate"/>
    <summary>&lt;p&gt;SiNVR V3 contains seven vulnerabilities in the components Video Server and Central Control Server (CCS), involving authentication bypass (CVE-2019-18337, CVE-2019-18339, CVE-2019-18341), information disclosure (CVE-2019-13947, CVE-2019-18340), path traversal (CVE-2019-18338), and privilege escalation (CVE-2019-18342). Siemens recommends specific countermeasures until fixes are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-344983.pdf</id>
    <title>SSA-344983 (Last Update: 2019-12-10): Vulnerability in WPA2 Key Handling affecting SCALANCE W700 and SCALANCE W1700 Devices</title>
    <updated>2019-12-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-344983.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest firmware updates for the SCALANCE W700 and W1700 wireless device families fix a vulnerability affecting WPA/WPA2 key handling. It might be possible to, by manipulating the EAPOL-Key frames, decrypt the Key Data field without the frame being authenticated.&lt;/p&gt;
&lt;p&gt;This has impact on WPA/WPA2 architectures using TKIP encryption. The attacker must be in the wireless range of the device to perform the attack.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-618620.pdf</id>
    <title>SSA-618620 (Last Update: 2019-12-10): Vulnerabilities in Boot Loader (U-Boot) of RUGGEDCOM ROS Devices</title>
    <updated>2019-12-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-618620.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The boot loader within RUGGEDCOM ROS contains two vulnerabilities in the loading process of the operating system kernel. The most severe of these vulnerabilities could allow an attacker with local access to the device to execute arbitrary code on an affected device.&lt;/p&gt;
&lt;p&gt;Siemens recommends specific countermeasures to mitigate this issue.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-530931.pdf</id>
    <title>SSA-530931 (Last Update: 2019-12-10): Denial-of-Service in Webserver of Industrial Products</title>
    <updated>2019-12-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-530931.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in the affected products could allow an unauthorized attacker with network access to the webserver of an affected device to perform a denial-of-service attack.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, and recommends that customers update to the new version. Siemens is preparing further updates and recommends specific countermeasures until patches are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-686531.pdf</id>
    <title>SSA-686531 (Last Update: 2019-12-10): Hardware based manufacturing access on S7-1200 and S7-200 SMART</title>
    <updated>2019-12-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-686531.pdf" rel="alternate"/>
    <summary>&lt;p&gt;There is an access mode used during manufacturing of SIMATIC S7-1200 and S7-200 SMART CPUs that allows additional diagnostic functionality. Using this functionality requires physical access to the UART interface during boot process.&lt;/p&gt;
&lt;p&gt;Siemens is working on a solution and recommends specific countermeasures until the solution is available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-232418.pdf</id>
    <title>SSA-232418 (Last Update: 2019-12-10): Vulnerabilities in SIMATIC S7-1200 and SIMATIC S7-1500 CPU families</title>
    <updated>2019-12-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-232418.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Two vulnerabilities have been identified in the SIMATIC S7-1200 and S7-1500 CPU families. One vulnerability could allow an attacker with network access to affected devices to modify the user program stored on these devices such that the source code differs from the actual running code. The other vulnerability could allow an attacker in a Man-in-the-Middle position to modify network traffic exchanged on port 102/tcp.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, and recommends that customers update to the new version. Siemens is preparing further updates and recommends specific countermeasures until patches are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-616472.pdf</id>
    <title>SSA-616472 (Last Update: 2019-12-10): ZombieLoad and Microarchitectural Data Sampling Vulnerabilities in Industrial Products</title>
    <updated>2019-12-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-616472.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Security researchers published information on vulnerabilities known as ZombieLoad and Microarchitectural Data Sampling (MDS). These vulnerabilities affect many modern processors from different vendors to a varying degree.&lt;/p&gt;
&lt;p&gt;Several Siemens Industrial Products contain processors that are affected by the vulnerabilities.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-462066.pdf</id>
    <title>SSA-462066 (Last Update: 2019-12-10): Vulnerability known as TCP SACK PANIC in Industrial Products</title>
    <updated>2019-12-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-462066.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Multiple industrial products are affected by a vulnerability in the kernel known as TCP SACK PANIC. The vulnerability could allow a remote attacker to cause a denial of service condition.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, and recommends that customers update to the new version. Siemens is preparing further updates and recommends specific countermeasures until updates are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-189842.pdf</id>
    <title>SSA-189842 (Last Update: 2019-12-10): TCP URGENT/11 Vulnerabilities in RUGGEDCOM Win</title>
    <updated>2019-12-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-189842.pdf" rel="alternate"/>
    <summary>&lt;p&gt;RUGGEDCOM Win is affected by multiple security vulnerabilities. These vulnerabilities could allow an attacker to leverage various attacks, e.g. to execute arbitrary code over the network.&lt;/p&gt;
&lt;p&gt;The vulnerabilities affect the underlying Wind River VxWorks network stack and were recently patched by Wind River.&lt;/p&gt;
&lt;p&gt;Siemens is working on updates for the affected products, and recommends specific countermeasures until fixes are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-170686.pdf</id>
    <title>SSA-170686 (Last Update: 2019-12-10): Vulnerabilities in SCALANCE X-200 and X-200IRT Switch Families</title>
    <updated>2019-12-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-170686.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Two vulnerabilities have been reported for the Siemens SCALANCE X-200 and X-200IRT switch families concerning a privilege escalation bug in the web interface and an authentication problem in the SNMPv3 implementation. Siemens has addressed both vulnerabilities by firmware upgrades.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-632562.pdf</id>
    <title>SSA-632562 (Last Update: 2019-12-10): Vulnerabilities in SIPROTEC 5 Ethernet plug-in communication modules and devices</title>
    <updated>2019-12-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-632562.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The SIPROTEC 5 Ethernet plug-in communication modules and devices are affected by multiple security vulnerabilities. These vulnerabilities could allow an attacker to leverage various attacks, e.g. to execute arbitrary code over the network.&lt;/p&gt;
&lt;p&gt;Eleven of these vulnerabilities affect the underlying Wind River VxWorks network stack and were recently patched by Wind River. One further vulnerability affects the boot process of the device under certain conditions.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for all vulnerabilities in some products, is working on updates for the remaining affected products, and recommends specific countermeasures until fixes are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-603476.pdf</id>
    <title>SSA-603476 (Last Update: 2019-12-10): Web Vulnerabilities in SIMATIC CP 343-1/CP 443-1 Modules and SIMATIC S7-300/S7-400 CPUs</title>
    <updated>2019-12-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-603476.pdf" rel="alternate"/>
    <summary>&lt;p&gt;SIMATIC CP 343-1 Advanced/CP-443-1 Advanced devices and SIMATIC S7-300/S7-400 CPUs are affected by two vulnerabilities. One of the vulnerabilities could allow remote attackers to perform operations as an authenticated user under certain conditions.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for SIMATIC CP 343-1 Advanced and SIMATIC CP 443-1 Advanced devices. Siemens recommends applying specific countermeasures for the remaining affected products. Siemens will update this advisory when new information becomes available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-899560.pdf</id>
    <title>SSA-899560 (Last Update: 2019-12-10): Vulnerabilities in SIPROTEC 5 relays and DIGSI 5</title>
    <updated>2019-12-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-899560.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The SIPROTEC 5 relays and their corresponding engineering software DIGSI 5 are affected by two security vulnerabilities which could allow an attacker to upload or download files to the device or to conduct a Denial-of-Service attack over the network. Siemens has released updates for some affected products, is working on updates for the remaining affected products, and recommends specific countermeasures until fixes are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-530931.pdf</id>
    <title>SSA-530931 (Last Update: 2019-11-12): Denial-of-Service in Webserver of Industrial Products</title>
    <updated>2019-11-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-530931.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in the affected products could allow an unauthorized attacker with network access to the webserver of an affected device to perform a denial-of-service attack.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, and recommends that customers update to the new version. Siemens is preparing further updates and recommends specific countermeasures until patches are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssb-439005.pdf</id>
    <title>SSB-439005 (Last Update: 2019-11-12): Vulnerabilities in the additional GNU/Linux subsystem of the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP</title>
    <updated>2019-11-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssb-439005.pdf" rel="alternate"/>
    <summary>
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-686531.pdf</id>
    <title>SSA-686531 (Last Update: 2019-11-12): Hardware based manufacturing access on S7-1200</title>
    <updated>2019-11-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-686531.pdf" rel="alternate"/>
    <summary>&lt;p&gt;There is an access mode used during manufacturing of S7-1200 CPUs that allows additional diagnostic functionality. Using this functionality requires physical access to the UART interface during boot process.&lt;/p&gt;
&lt;p&gt;Siemens is working on a solution and recommends specific countermeasures until the solution is available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-473245.pdf</id>
    <title>SSA-473245 (Last Update: 2019-11-12): Denial-of-Service Vulnerability in Profinet Devices</title>
    <updated>2019-11-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-473245.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in affected devices could allow an attacker to perform a denial-of-service attack if a large amount of specially crafted UDP packets are sent to the device.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, and recommends that customers update to the new version. Siemens is preparing further updates and recommends specific countermeasures until patches are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-616472.pdf</id>
    <title>SSA-616472 (Last Update: 2019-11-12): ZombieLoad and Microarchitectural Data Sampling Vulnerabilities in Industrial Products</title>
    <updated>2019-11-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-616472.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Security researchers published information on vulnerabilities known as ZombieLoad and Microarchitectural Data Sampling (MDS). These vulnerabilities affect many modern processors from different vendors to a varying degree.&lt;/p&gt;
&lt;p&gt;Several Siemens Industrial Products contain processors that are affected by the vulnerabilities.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-462066.pdf</id>
    <title>SSA-462066 (Last Update: 2019-11-12): Vulnerability known as TCP SACK PANIC in Industrial Products</title>
    <updated>2019-11-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-462066.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Multiple industrial products are affected by a vulnerability in the kernel known as TCP SACK PANIC. The vulnerability could allow a remote attacker to cause a denial of service condition.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, and recommends that customers update to the new version. Siemens is preparing further updates and recommends specific countermeasures until updates are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-898181.pdf</id>
    <title>SSA-898181 (Last Update: 2019-11-12): Desigo PX Web Remote Denial of Service Vulnerability</title>
    <updated>2019-11-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-898181.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest update for Desigo PXC devices fixes a vulnerability that could allow unauthenticated remote users to cause a denial of service condition on the PX Web interface (HTTP, port tcp/80) of a device. Devices where PX Web is not enabled are not affected by this vulnerability.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-434032.pdf</id>
    <title>SSA-434032 (Last Update: 2019-11-12): Vulnerability in Mentor Nucleus Networking Module</title>
    <updated>2019-11-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-434032.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Mentor Nucleus by Mentor, a Siemens Business, is affected by one vulnerability. This vulnerability could allow an attacker to affect the integrity and availability of the device.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-121293.pdf</id>
    <title>SSA-121293 (Last Update: 2019-10-08): Code Upload Vulnerability in SIMATIC WinCC and SIMATIC PCS 7</title>
    <updated>2019-10-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-121293.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest update for SIMATIC WinCC fixes a vulnerability in the SIMATIC WinCC DataMonitor web application of the affected products that allows to upload arbitrary ASPX code.&lt;/p&gt;
&lt;p&gt;An attacker has to be authenticated with a valid user account. The vulnerability is only relevant for scenarios where access via the web interface is feasible for an attacker while access to the directory structure is not.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, and recommends that customers update to the new version. Siemens is preparing further updates and recommends specific countermeasures until patches are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-275839.pdf</id>
    <title>SSA-275839 (Last Update: 2019-10-08): Denial-of-Service Vulnerability in Industrial Products</title>
    <updated>2019-10-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-275839.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Several industrial products are affected by a vulnerability that could allow an attacker to cause a Denial-of-Service condition via PROFINET DCP network packets under certain circumstances. Precondition for this scenario is a direct Layer 2 access to the affected products.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, is working on updates for the remaining affected products and recommends specific countermeasures until fixes are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-293562.pdf</id>
    <title>SSA-293562 (Last Update: 2019-10-08): Vulnerabilities in Industrial Products</title>
    <updated>2019-10-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-293562.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Several industrial devices are affected by two vulnerabilities that could allow an attacker to cause a Denial-of-Service condition via PROFINET DCP network packets under certain circumstances. The precondition for this scenario is a direct layer 2 access to the affected products. PROFIBUS interfaces are not affected.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, is working on updates for the remaining affected products and recommends specific countermeasures until fixes are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-346262.pdf</id>
    <title>SSA-346262 (Last Update: 2019-10-08): Denial-of-Service in Industrial Products</title>
    <updated>2019-10-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-346262.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Several industrial products are affected by a vulnerability that could allow remote attackers to conduct a Denial-of-Service (DoS) attack by sending specially crafted packets to port 161/udp (SNMP).&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, and recommends that customers update to the new version. Siemens is preparing further updates and recommends specific countermeasures until patches are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-349422.pdf</id>
    <title>SSA-349422 (Last Update: 2019-10-08): Denial-of-Service in Industrial Real-Time (IRT) Devices</title>
    <updated>2019-10-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-349422.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in the affected products could allow an unauthorized attacker with network access to perform a denial-of-service attack resulting in loss of real-time synchronization.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, and recommends that customers update to the new version. Siemens is preparing further updates and recommends specific countermeasures until updates are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-462066.pdf</id>
    <title>SSA-462066 (Last Update: 2019-10-08): Vulnerability known as TCP SACK PANIC in Industrial Products</title>
    <updated>2019-10-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-462066.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Multiple industrial products are affected by a vulnerability in the kernel known as TCP SACK PANIC. The vulnerability could allow a remote attacker to cause a denial of service condition.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, and recommends that customers update to the new version. Siemens is preparing further updates and recommends specific countermeasures until updates are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-473245.pdf</id>
    <title>SSA-473245 (Last Update: 2019-10-08): Denial-of-Service Vulnerability in Profinet Devices</title>
    <updated>2019-10-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-473245.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in affected devices could allow an attacker to perform a denial-of-service attack if a large amount of specially crafted UDP packets are sent to the device..&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, and recommends that customers update to the new version. Siemens is preparing further updates and recommends specific countermeasures until patches are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-480230.pdf</id>
    <title>SSA-480230 (Last Update: 2019-10-08): Denial-of-Service in Webserver of Industrial Products</title>
    <updated>2019-10-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-480230.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in the affected devices could allow an unauthorized attacker with network access to the webserver of an affected device to perform a denial-of-service attack.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, and recommends that customers update to the new version. Siemens is preparing further updates and recommends specific countermeasures until patches are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-592007.pdf</id>
    <title>SSA-592007 (Last Update: 2019-10-08): Denial-of-Service Vulnerability in Industrial Products</title>
    <updated>2019-10-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-592007.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Several industrial controllers are affected by a security vulnerability that could allow an attacker to cause a Denial-of-Service condition via PROFINET DCP network packets under certain circumstances. Precondition for this scenario is a direct OSI Layer 2 access to the affected products. PROFIBUS interfaces are not affected.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, is working on updates for the remaining affected products and recommends specific countermeasures until fixes are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-608355.pdf</id>
    <title>SSA-608355 (Last Update: 2019-10-08): Processor Vulnerabilities Affecting SIMATIC WinAC RTX (F) 2010</title>
    <updated>2019-10-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-608355.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Security researchers published information on vulnerabilities known as Spectre, Meltdown, Spectre-NG, Foreshadow, L1 Terminal Fault (L1TF), ZombieLoad, and Microarchitectural Data Sampling (MDS). These vulnerabilities affect many modern processors from different vendors to a varying degree.&lt;/p&gt;
&lt;p&gt;The latest release of SIMATIC WinAC RTX provides compatibility with the latest BIOS updates and operating system patches from Intel and Microsoft.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-697412.pdf</id>
    <title>SSA-697412 (Last Update: 2019-10-08): Multiple Vulnerabilities in SIMATIC WinCC, SIMATIC WinCC Runtime, SIMATIC PCS 7, SIMATIC TIA Portal</title>
    <updated>2019-10-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-697412.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest update for SIMATIC WinCC fixes multiple vulnerabilities. The most severe could allow an attacker to execute arbitrary commands on an affected system under certain conditions.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, and recommends that customers update to the new version. Siemens is preparing further updates and recommends specific countermeasures until patches are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-701708.pdf</id>
    <title>SSA-701708 (Last Update: 2019-10-08): Local Privilege Escalation in Industrial Products</title>
    <updated>2019-10-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-701708.pdf" rel="alternate"/>
    <summary>&lt;p&gt;In non-default configurations several industrial products are affected by a vulnerability that could allow local Microsoft Windows operating system users to escalate their privileges.&lt;/p&gt;
&lt;p&gt;Siemens provides updates for several products and a temporary fix for the remaining affected products. Siemens is working on new versions for the remaining affected products and will update this advisory when new information becomes available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-878278.pdf</id>
    <title>SSA-878278 (Last Update: 2019-10-08): Denial-of-Service Vulnerability in SIMATIC WinAC RTX (F) 2010</title>
    <updated>2019-10-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-878278.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in SIMATIC WinAC RTX (F) 2010 controller software could allow an attacker to perform a denial-of-service attack if a large HTTP request is sent to the network port of the host where WinAC RTX is running.&lt;/p&gt;
&lt;p&gt;Siemens recommends specific countermeasures to mitigate this issue.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-984700.pdf</id>
    <title>SSA-984700 (Last Update: 2019-10-08): Password Storage Vulnerability in SIMATIC IT UADM</title>
    <updated>2019-10-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-984700.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability has been identified in the SIMATIC IT Unified Architecture Discrete Manufacturing product that caused a password to be encrypted with a predicable encryption key. An authenticated attacker could potentially recover the password and gain access to the TeamCenter station connected to the instance.&lt;/p&gt;
&lt;p&gt;Siemens provides updates to address the vulnerability, and recommends specific mitigations.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssb-439005.pdf</id>
    <title>SSB-439005 (Last Update: 2019-10-08): Vulnerabilities in the additional GNU/Linux subsystem of the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP</title>
    <updated>2019-10-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssb-439005.pdf" rel="alternate"/>
    <summary>
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-121293.pdf</id>
    <title>SSA-121293 (Last Update: 2019-09-10): Code Upload Vulnerability in SIMATIC WinCC and SIMATIC PCS 7</title>
    <updated>2019-09-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-121293.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest update for SIMATIC WinCC fixes a vulnerability in the SIMATIC WinCC DataMonitor web application of the affected products that allows to upload arbitrary ASPX code.&lt;/p&gt;
&lt;p&gt;An attacker has to be authenticated with a valid user account. The vulnerability is only relevant for scenarios where access via the web interface is feasible for an attacker while access to the directory structure is not.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, and recommends that customers update to the new version. Siemens is preparing further updates and recommends specific countermeasures until patches are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-187667.pdf</id>
    <title>SSA-187667 (Last Update: 2019-09-10): DejaBlue Vulnerabilities - Siemens Healthineers Products</title>
    <updated>2019-09-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-187667.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Microsoft has released updates for several versions of Microsoft Windows, which fix vulnerabilities in the Remote Desktop Service that are discussed under the name DejaBlue. The vulnerabilities could allow an unauthenticated remote attacker to execute arbitrary code on the target system if the system exposes the service to the network.&lt;/p&gt;
&lt;p&gt;All Siemens Healthineers products from all business lines have been evaluated. Most Siemens Healthineers products are not affected by the vulnerabilities because they do not provide the option to activate the Remote Desktop Service, implement other controls that mitigate the vulnerabilities, use a version of Microsoft Windows that is not affected, or are not based on Microsoft Windows.&lt;/p&gt;
&lt;p&gt;This advisory provides a full list of affected products from Siemens Healthineers and provides recommendations to mitigate the vulnerabilities.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-189842.pdf</id>
    <title>SSA-189842 (Last Update: 2019-09-10): TCP URGENT/11 Vulnerabilities in RUGGEDCOM Win</title>
    <updated>2019-09-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-189842.pdf" rel="alternate"/>
    <summary>&lt;p&gt;RUGGEDCOM Win is affected by multiple security vulnerabilities. These vulnerabilities could allow an attacker to leverage various attacks, e.g. to execute arbitrary code over the network.&lt;/p&gt;
&lt;p&gt;The vulnerabilities affect the underlying Wind River VxWorks network stack and were recently patched by Wind River.&lt;/p&gt;
&lt;p&gt;Siemens is working on updates for the affected products, and recommends specific countermeasures until fixes are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-191683.pdf</id>
    <title>SSA-191683 (Last Update: 2019-09-10): Cross-Site Scripting Vulnerability in IE/WSN-PA Link WirelessHART Gateway</title>
    <updated>2019-09-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-191683.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The Siemens IE/WSN-PA Link WirelessHART Gateway is affected by a Cross-Site Scripting vulnerability.&lt;/p&gt;
&lt;p&gt;Siemens recommends specific countermeasures.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-250618.pdf</id>
    <title>SSA-250618 (Last Update: 2019-09-10): Denial-of-Service Vulnerability in SIMATIC TDC CP51M1</title>
    <updated>2019-09-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-250618.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability could allow an attacker to cause a Denial-of-Service condition on the UDP communication by sending a specially crafted UDP packet to the SIMATIC TDC CP51M1 module.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for SIMATIC TDC CP51M1 module and recommends that customers update to the new version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-462066.pdf</id>
    <title>SSA-462066 (Last Update: 2019-09-10): Vulnerability known as TCP SACK PANIC in Industrial Products</title>
    <updated>2019-09-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-462066.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Multiple industrial products are affected by a vulnerability in the kernel known as TCP SACK PANIC. The vulnerability could allow a remote attacker to cause a denial of service condition.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, and recommends that customers update to the new version. Siemens is preparing further updates and recommends specific countermeasures until updates are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-616472.pdf</id>
    <title>SSA-616472 (Last Update: 2019-09-10): ZombieLoad and Microarchitectural Data Sampling Vulnerabilities in Industrial Products</title>
    <updated>2019-09-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-616472.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Security researchers published information on vulnerabilities known as ZombieLoad and Microarchitectural Data Sampling (MDS). These vulnerabilities affect many modern processors from different vendors to a varying degree.&lt;/p&gt;
&lt;p&gt;Several Siemens Industrial Products contain processors that are affected by the vulnerabilities.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-697412.pdf</id>
    <title>SSA-697412 (Last Update: 2019-09-10): Multiple Vulnerabilities in SIMATIC WinCC, SIMATIC WinCC Runtime, SIMATIC PCS 7, SIMATIC TIA Portal</title>
    <updated>2019-09-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-697412.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest update for SIMATIC WinCC fixes multiple vulnerabilities. The most severe could allow an attacker to execute arbitrary commands on an affected system under certain conditions.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, and recommends that customers update to the new version. Siemens is preparing further updates and recommends specific countermeasures until patches are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-834884.pdf</id>
    <title>SSA-834884 (Last Update: 2019-09-10): Vulnerability in SINETPLAN</title>
    <updated>2019-09-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-834884.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability has been identified in SINETPLAN that could allow local users to execute arbitrary application commands without proper authentication.&lt;/p&gt;
&lt;p&gt;Siemens provides a solution that fixes the vulnerability and recommends that users apply the update.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-884497.pdf</id>
    <title>SSA-884497 (Last Update: 2019-09-10): Multiple Vulnerabilities in SINEMA Remote Connect Server</title>
    <updated>2019-09-10T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-884497.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest update for SINEMA Remote Connect Server fixes four vulnearbilities in the web interface. Two of the vulnerabilities are missing protection mechanisms for password guessing and for Cross Site Request Forgery attacks, the third one is a missing authentication check, and the fourth one could allow an attacker with administrative privileges to obtain a device password hash.&lt;/p&gt;
&lt;p&gt;Siemens has released updates and recommends to update to the newest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-100232.pdf</id>
    <title>SSA-100232 (Last Update: 2019-08-13): Denial-of-Service vulnerability in SCALANCE X switches</title>
    <updated>2019-08-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-100232.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in the affected devices could allow an unauthenticated attacker with network access to an affected device to perform a denial-of-service.&lt;/p&gt;
&lt;p&gt;Siemens is preparing updates and recommends specific countermeasures until patches are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-121293.pdf</id>
    <title>SSA-121293 (Last Update: 2019-08-13): Code Upload Vulnerability in SIMATIC WinCC and SIMATIC PCS 7</title>
    <updated>2019-08-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-121293.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest update for SIMATIC WinCC fixes a vulnerability in the SIMATIC WinCC DataMonitor web application of the affected products that allows to upload arbitrary ASPX code.&lt;/p&gt;
&lt;p&gt;An attacker has to be authenticated with a valid user account. The vulnerability is only relevant for scenarios where access via the web interface is feasible for an attacker while access to the directory structure is not.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, and recommends that customers update to the new version. Siemens is preparing further updates and recommends specific countermeasures until patches are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-232418.pdf</id>
    <title>SSA-232418 (Last Update: 2019-08-13): Vulnerabilities in SIMATIC S7-1200 and SIMATIC S7-1500 CPU families</title>
    <updated>2019-08-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-232418.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Two vulnerabilities have been identified in the SIMATIC S7-1200 and the SIMATIC S7-1500 CPU families. One vulnerability could allow an attacker with network access to affected devices to modify the user program stored on these devices such that the source code differs from the actual running code. The other vulnerability could allow an attacker in a Man-in-the-Middle position to modify network traffic exchanged on port 102/tcp.&lt;/p&gt;
&lt;p&gt;Siemens is working on updates and recommends that customers apply mitigations to reduce the risk until updates are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-530931.pdf</id>
    <title>SSA-530931 (Last Update: 2019-08-13): Denial-of-Service in Webserver of Industrial Products</title>
    <updated>2019-08-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-530931.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in the affected products could allow an unauthorized attacker with network access to the webserver of an affected device to perform a denial-of-service attack.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, and recommends that customers update to the new version. Siemens is preparing further updates and recommends specific countermeasures until patches are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-616472.pdf</id>
    <title>SSA-616472 (Last Update: 2019-08-13): ZombieLoad and Microarchitectural Data Sampling Vulnerabilities in Industrial Products</title>
    <updated>2019-08-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-616472.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Security researchers published information on vulnerabilities known as ZombieLoad and Microarchitectural Data Sampling (MDS). These vulnerabilities affect many modern processors from different vendors to a varying degree.&lt;/p&gt;
&lt;p&gt;Several Siemens Industrial Products contain processors that are affected by the vulnerabilities.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-671286.pdf</id>
    <title>SSA-671286 (Last Update: 2019-08-13): Multiple Vulnerabilities in SCALANCE Products</title>
    <updated>2019-08-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-671286.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest update for SCALANCE SC-600 fixes multiple vulnerabilities. The most severe could allow authenticated local users with physical access to the device to execute arbitrary commands on the device under certain conditions.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for SCALANCE SC-600 devices.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-697412.pdf</id>
    <title>SSA-697412 (Last Update: 2019-08-13): Multiple Vulnerabilities in SIMATIC WinCC, SIMATIC WinCC Runtime, SIMATIC PCS 7, SIMATIC TIA Portal</title>
    <updated>2019-08-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-697412.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest update for SIMATIC WinCC fixes multiple vulnerabilities. The most severe could allow an attacker to execute arbitrary commands on an affected system under certain conditions.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, and recommends that customers update to the new version. Siemens is preparing further updates and recommends specific countermeasures until patches are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-747162.pdf</id>
    <title>SSA-747162 (Last Update: 2019-08-13): Cross-Site Scripting Vulnerability in Spectrum Power&#8482;</title>
    <updated>2019-08-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-747162.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A Cross-Site Scripting (XSS) vulnerability was found in the WebSDK component of Spectrum Power&#8482; 3, 4, 5 and 7.&lt;/p&gt;
&lt;p&gt;A software update is available to address the issue and Siemens recommends installing the patch.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-899560.pdf</id>
    <title>SSA-899560 (Last Update: 2019-08-13): Vulnerabilities in SIPROTEC 5 relays and DIGSI 5</title>
    <updated>2019-08-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-899560.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The SIPROTEC 5 relays and their corresponding engineering software DIGSI 5 are affected by two security vulnerabilities which could allow an attacker to upload or download files to the device or to conduct a Denial-of-Service attack over the network. Siemens has released updates for some affected products, is working on updates for the remaining affected products, and recommends specific countermeasures until fixes are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssb-439005.pdf</id>
    <title>SSB-439005 (Last Update: 2019-08-13): Vulnerabilities in the additional GNU/Linux subsystem of the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP</title>
    <updated>2019-08-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssb-439005.pdf" rel="alternate"/>
    <summary>
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-632562.pdf</id>
    <title>SSA-632562 (Last Update: 2019-08-02): Vulnerabilities in SIPROTEC 5 Ethernet plug-in communication modules and devices</title>
    <updated>2019-08-02T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-632562.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The SIPROTEC 5 Ethernet plug-in communication modules and devices are affected by multiple security vulnerabilities. These vulnerabilities could allow an attacker to leverage various attacks, e.g. to execute arbitrary code over the network.&lt;/p&gt;
&lt;p&gt;Eleven of these vulnerabilities affect the underlying Wind River VxWorks network stack and were recently patched by Wind River. One further vulnerability affects the boot process of the device under certain conditions.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for all vulnerabilities in some products, is working on updates for the remaining affected products, and recommends specific countermeasures until fixes are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-121293.pdf</id>
    <title>SSA-121293 (Last Update: 2019-07-09): Code Upload Vulnerability in SIMATIC WinCC and SIMATIC PCS7</title>
    <updated>2019-07-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-121293.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest update for SIMATIC WinCC fixes a vulnerability in the SIMATIC WinCC DataMonitor web application of the affected products that allows to upload arbitrary ASPX code.&lt;/p&gt;
&lt;p&gt;An attacker has to be authenticated with a valid user account. The vulnerability is only relevant for scenarios where access via the web interface is feasible for an attacker while access to the directory structure is not.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, and recommends that customers update to the new version. Siemens is preparing further updates and recommends specific countermeasures until patches are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-166360.pdf</id>
    <title>SSA-166360 (Last Update: 2019-07-09): Vulnerability in Advanced Therapy Products from Siemens Healthineers</title>
    <updated>2019-07-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-166360.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Microsoft has released updates for several versions of Microsoft Windows, which fix a vulnerability in the Remote Desktop Service. The vulnerability could allow an unauthenticated remote attacker to execute arbitrary code on the target system if the system exposes the service to the network.&lt;/p&gt;
&lt;p&gt;Some Advanced Therapy products from Siemens Healthineers are affected by this vulnerability. The exploitability of the vulnerability depends on the actual configuration and deployment environment of each product.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-307392.pdf</id>
    <title>SSA-307392 (Last Update: 2019-07-09): Denial-of-Service in OPC UA in Industrial Products</title>
    <updated>2019-07-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-307392.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability has been identified in the OPC UA server of several industrial products. The vulnerability could cause a Denial-of-Service condition on the service or the device.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, and recommends that customers update to the new version. Siemens is preparing further updates and recommends specific countermeasures until patches are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-480230.pdf</id>
    <title>SSA-480230 (Last Update: 2019-07-09): Denial-of-Service in Webserver of Industrial Products</title>
    <updated>2019-07-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-480230.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in the affected devices could allow an unauthorized attacker with network access to the webserver of an affected device to perform a denial-of-service attack.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, and recommends that customers update to the new version. Siemens is preparing further updates and recommends specific countermeasures until patches are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-556833.pdf</id>
    <title>SSA-556833 (Last Update: 2019-07-09): TLS Vulnerabilities in SIMATIC RF6XXR</title>
    <updated>2019-07-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-556833.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest update for SIMATIC RF6XXR fixes multiple vulnerabilities related to outdated TLS versions that are still supported by the product.&lt;/p&gt;
&lt;p&gt;Siemens has released a fixed version for the SIMATIC RF6XXR and recommends updating.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-559174.pdf</id>
    <title>SSA-559174 (Last Update: 2019-07-09): Multiple Vulnerabilities in CP1604 and CP1616 devices</title>
    <updated>2019-07-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-559174.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities have been identified in SIEMENS CP1604 and CP1616 devices. The most severe of these vulnerabilities could allow an attacker to extract internal communication data or cause a Denial-of-Service condition.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-616199.pdf</id>
    <title>SSA-616199 (Last Update: 2019-07-09): BlueKeep Vulnerability Identified in RAPIDPoint&#174; 500 Operating on Windows XP</title>
    <updated>2019-07-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-616199.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Microsoft has released updates for several versions of Microsoft Windows, which fix a vulnerability in the Remote Desktop Service. The vulnerability could allow an unauthenticated remote attacker to execute arbitrary code on the target system if the system exposes the service to the network.&lt;/p&gt;
&lt;p&gt;RAPIDPoint&#174; 500 systems operating on Windows XP are affected by this vulnerability.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-616472.pdf</id>
    <title>SSA-616472 (Last Update: 2019-07-09): ZombieLoad and Microarchitectural Data Sampling Vulnerabilities in Industrial Products</title>
    <updated>2019-07-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-616472.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Security researchers published information on vulnerabilities known as ZombieLoad and Microarchitectural Data Sampling (MDS). These vulnerabilities affect many modern processors from different vendors to a varying degree.&lt;/p&gt;
&lt;p&gt;Several Siemens Industrial Products contain processors that are affected by the vulnerabilities.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-697412.pdf</id>
    <title>SSA-697412 (Last Update: 2019-07-09): Multiple Vulnerabilities in SIMATIC WinCC, SIMATIC WinCC Runtime, SIMATIC PCS 7, SIMATIC TIA Portal</title>
    <updated>2019-07-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-697412.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest update for SIMATIC WinCC fixes multiple vulnerabilities. The most severe could allow an attacker to execute arbitrary commands on an affected system under certain conditions.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, and recommends that customers update to the new version. Siemens is preparing further updates and recommends specific countermeasures until patches are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-721298.pdf</id>
    <title>SSA-721298 (Last Update: 2019-07-09): Missing Authentication Vulnerability in TIA Administrator (TIA Portal)</title>
    <updated>2019-07-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-721298.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest update for TIA Administrator (TIA Portal) fixes a vulnerability that could allow local users to execute arbitary application commands without proper authentication.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for the affected software and provides workarounds and mitigations until the update can be applied.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-747162.pdf</id>
    <title>SSA-747162 (Last Update: 2019-07-09): Cross-Site Scripting Vulnerability in Spectrum Power&#8482;</title>
    <updated>2019-07-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-747162.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A Cross-Site Scripting (XSS) vulnerability was found in the WebSDK component of Spectrum Power&#8482; 3, 4, 5 and 7.&lt;/p&gt;
&lt;p&gt;A software update is available to address the issue and Siemens recommends installing the patch.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-832947.pdf</id>
    <title>SSA-832947 (Last Update: 2019-07-09): Vulnerability in Laboratory Diagnostics Products from Siemens Healthineers</title>
    <updated>2019-07-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-832947.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Microsoft has released updates for several versions of Microsoft Windows, which fix a vulnerability in the Remote Desktop Service. The vulnerability could allow an unauthenticated remote attacker to execute arbitrary code on the target system if the system exposes the service to the network.&lt;/p&gt;
&lt;p&gt;The majority of Laboratory Diagnostic products are not affected by this vulnerability. However, some products are affected and listed below. The exploitability of the vulnerability depends on the actual configuration and deployment environment of each product.&lt;/p&gt;
&lt;p&gt;At the time of advisory publication no public exploitation of this security vulnerability was known.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-899560.pdf</id>
    <title>SSA-899560 (Last Update: 2019-07-09): Vulnerabilities in SIPROTEC 5 relays and DIGSI 5</title>
    <updated>2019-07-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-899560.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The SIPROTEC 5 relays and their corresponding engineering software DIGSI 5 are affected by two security vulnerabilities which could allow an attacker to upload or download files to the device or to conduct a Denial-of-Service attack over the network. Siemens has released updates for some affected products, is working on updates for the remaining affected products, and recommends specific countermeasures until fixes are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssb-439005.pdf</id>
    <title>SSB-439005 (Last Update: 2019-07-09): Vulnerabilities in the additional GNU/Linux subsystem of the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP</title>
    <updated>2019-07-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssb-439005.pdf" rel="alternate"/>
    <summary>
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-212009.pdf</id>
    <title>SSA-212009 (Last Update: 2019-06-11): Vulnerabilities in Siveillance VMS</title>
    <updated>2019-06-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-212009.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest update for the Siveillance VMS line fixes three security vulnerabilities that can cause remote privilege escalation. Siemens has released updates for the affected products and recommends to update affected devices as soon as possible.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-646841.pdf</id>
    <title>SSA-646841 (Last Update: 2019-06-11): Recoverable Password from Configuration Storage in SCALANCE X Switches</title>
    <updated>2019-06-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-646841.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability exists in the affected devices that could allow external entities to reconstruct passwords for users of the affected devices if an attacker is able to obtain a backup of the device configuration.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for some of the affected devices and is working on updates for the remaining affected products and recommends specific countermeasures until fixes are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-774850.pdf</id>
    <title>SSA-774850 (Last Update: 2019-06-11): Vulnerabilities in SIEMENS LOGO!8 devices</title>
    <updated>2019-06-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-774850.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Two vulnerabilities have been identified in SIEMENS LOGO!8 devices. The Session ID on the integrated webserver of LOGO!8 devices is not invalidated upon logout. The second vulnerability could allow an attacker with network access to port 10005/tcp to cause a Denial-of-Service condition by sending specifically crafted packages to the service.&lt;/p&gt;
&lt;p&gt;Siemens provides a firmware update for the latest version of LOGO!8 devices. For older versions, the device needs to be upgraded (see table below).&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-816980.pdf</id>
    <title>SSA-816980 (Last Update: 2019-06-11): Multiple Web Vulnerabilities in SIMATIC Ident MV420 and MV440 families</title>
    <updated>2019-06-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-816980.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The SIMATIC Ident MV420 and MV440 families are affected by two web vulnerabilities. The vulnerabilities could allow an authenticated user to escalate privileges, or might expose sensitive information to an attacker that is able to eavesdrop the communication.&lt;/p&gt;
&lt;p&gt;Siemens provides mitigations.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-181018.pdf</id>
    <title>SSA-181018 (Last Update: 2019-06-11): Heap Overflow Vulnerability in SCALANCE X switches, RUGGEDCOM Win, RFID 181-EIP, and SIMATIC RF182C</title>
    <updated>2019-06-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-181018.pdf" rel="alternate"/>
    <summary>&lt;p&gt;SCALANCE X switches, RUGGEDCOM Win, RFID 181-EIP, and SIMATIC RF182C are affected by a vulnerability that could allow an unprivileged attacker located in the same local network segment (OSI Layer 2) to gain system privileges by sending a specially crafted DHCP response to a client's DHCP request.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends that customers update to the new version. Siemens is preparing further updates and recommends specific countermeasures until patches are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-254686.pdf</id>
    <title>SSA-254686 (Last Update: 2019-06-11): Foreshadow / L1 Terminal Fault Vulnerabilities in Industrial Products</title>
    <updated>2019-06-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-254686.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Security researchers published information on vulnerabilities known as Foreshadow and L1 Terminal Fault (L1TF). These vulnerabilities affect many modern processors from different vendors to a varying degree.&lt;/p&gt;
&lt;p&gt;Several Siemens Industrial Products contain processors that are affected by the vulnerabilities.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-307392.pdf</id>
    <title>SSA-307392 (Last Update: 2019-06-11): Denial-of-Service in OPC UA in Industrial Products</title>
    <updated>2019-06-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-307392.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability has been identified in the OPC UA server of several industrial products. The vulnerability could cause a Denial-of-Service condition on the service or the device.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, and recommends that customers update to the new version. Siemens is preparing further updates and recommends specific countermeasures until patches are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-480230.pdf</id>
    <title>SSA-480230 (Last Update: 2019-06-11): Denial-of-Service in Webserver of Industrial Products</title>
    <updated>2019-06-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-480230.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in the affected devices could allow an unauthorized attacker with network access to the webserver of an affected device to perform a denial-of-service attack.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, and recommends that customers update to the new version. Siemens is preparing further updates and recommends specific countermeasures until patches are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-557804.pdf</id>
    <title>SSA-557804 (Last Update: 2019-06-11): Mirror Port Isolation Vulnerability in SCALANCE X switches</title>
    <updated>2019-06-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-557804.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability was identified in several SCALANCE X switches that could allow an attacker to feed information into a network via the mirror port with the monitor barrier feature enabled.&lt;/p&gt;
&lt;p&gt;The monitor barrier implementation in various SCALANCE products does allow traffic to be directed back into the mirroring network. This might allow an attacker to feed back information into the network that is mirrored.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssb-439005.pdf</id>
    <title>SSB-439005 (Last Update: 2019-06-11): Vulnerabilities in the additional GNU/Linux subsystem of the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP</title>
    <updated>2019-06-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssb-439005.pdf" rel="alternate"/>
    <summary>
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-166360.pdf</id>
    <title>SSA-166360 (Last Update: 2019-05-24): Vulnerability in Advanced Therapy  Products from Siemens Healthineers</title>
    <updated>2019-05-24T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-166360.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Microsoft has released updates for several versions of Microsoft Windows, which fix a vulnerability in the Remote Desktop Service. The vulnerability could allow an unauthenticated remote attacker to execute arbitrary code on the target system if the system exposes the service to the network.&lt;/p&gt;
&lt;p&gt;Some Advanced Therapy products from Siemens Healthineers are affected by this vulnerability. The exploitability of the vulnerability depends on the actual configuration and deployment environment of each product.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-406175.pdf</id>
    <title>SSA-406175 (Last Update: 2019-05-24): Vulnerability in Siemens Healthineers Software Products</title>
    <updated>2019-05-24T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-406175.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Microsoft has released updates for Windows XP, Windows 7, Windows Server 2008, and Windows Server 2008 R2 to fix a vulnerability in the Remote Desktop Service. The vulnerability could allow an unauthenticated remote attacker to execute arbitrary code in the target system if the system exposes the service to the network.&lt;/p&gt;
&lt;p&gt;Some Siemens Healthineers software products are affected by this vulnerability. The exploitability of the vulnerability depends on the specific configuration and deployment environment of each product.&lt;/p&gt;
&lt;p&gt;Siemens Healthineers recommends installing the appropriate security patches released by Microsoft. The compatibility of Microsoft security patches with products from Siemens Healthineers that are beyond their End of Support date cannot be guaranteed.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-433987.pdf</id>
    <title>SSA-433987 (Last Update: 2019-05-24): Vulnerability in  Radiation Oncology Products from Siemens Healthineers</title>
    <updated>2019-05-24T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-433987.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Microsoft has released updates for several versions of Microsoft Windows, which fix a vulnerability in the Remote Desktop Service. The vulnerability could allow an unauthenticated remote attacker to execute arbitrary code on the target system if the system exposes the service to the network.&lt;/p&gt;
&lt;p&gt;One Radiation Oncology product from Siemens Healthineers is affected by this vulnerability.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-832947.pdf</id>
    <title>SSA-832947 (Last Update: 2019-05-24): Vulnerability in Laboratory Diagnostics Products from Siemens Healthineers</title>
    <updated>2019-05-24T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-832947.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Microsoft has released updates for several versions of Microsoft Windows, which fix a vulnerability in the Remote Desktop Service. The vulnerability could allow an unauthenticated remote attacker to execute arbitrary code on the target system if the system exposes the service to the network.&lt;/p&gt;
&lt;p&gt;The majority of Laboratory Diagnostic products are not affected by this vulnerability. However, some products are affected and are listed below. The exploitability of the vulnerability depends on the actual configuration and deployment environment of each product.&lt;/p&gt;
&lt;p&gt;At the time of advisory publication no public exploitation of this security vulnerability was known.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-932041.pdf</id>
    <title>SSA-932041 (Last Update: 2019-05-24): Vulnerability in Radiography and Mobile X-ray Products from Siemens Healthineers</title>
    <updated>2019-05-24T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-932041.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Microsoft has released updates for several versions of Microsoft Windows, which fix a vulnerability in the Remote Desktop Service. The vulnerability could allow an unauthenticated remote attacker to execute arbitrary code on the target system if the system exposes the service to the network.&lt;/p&gt;
&lt;p&gt;Some Radiography and Mobile X-ray products from Siemens Healthineers are affected by this vulnerability. The exploitability of the vulnerability depends on the actual configuration and deployment environment of each product.&lt;/p&gt;
&lt;p&gt;Siemens Healthineers recommends contacting Siemens Healthineers service desk.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-616199.pdf</id>
    <title>SSA-616199 (Last Update: 2019-05-24): Vulnerability in Point of Care Diagnostics Products from Siemens Healthineers - Blood Gas</title>
    <updated>2019-05-24T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-616199.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Microsoft has released updates for several versions of Microsoft Windows, which fix a vulnerability in the Remote Desktop Service. The vulnerability could allow an unauthenticated remote attacker to execute arbitrary code on the target system if the system exposes the service to the network.&lt;/p&gt;
&lt;p&gt;Some Point-of-care products from Siemens Healthineers are affected by this vulnerability. The exploitability of the vulnerability depends on the actual configuration and deployment environment of each product.&lt;/p&gt;
&lt;p&gt;Siemens Healthineers recommends contacting Siemens Healthineers service desk.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssb-501863.pdf</id>
    <title>SSB-501863 (Last Update: 2019-05-22): Customer Information on Microsoft Windows RDP Vulnerability for Siemens Healthineers</title>
    <updated>2019-05-22T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssb-501863.pdf" rel="alternate"/>
    <summary>
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssb-501863.pdf</id>
    <title>SSB-501863 (Last Update: 2019-05-16): Customer Information on Microsoft Windows RDP Vulnerability for Siemens Healthineers</title>
    <updated>2019-05-16T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssb-501863.pdf" rel="alternate"/>
    <summary>
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-102144.pdf</id>
    <title>SSA-102144 (Last Update: 2019-05-14): Code Execution Vulnerability in LOGO! Soft Comfort</title>
    <updated>2019-05-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-102144.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability was identified in LOGO! Soft Comfort. The vulnerability could allow an attacker to execute arbitrary code if the attacker tricks a legitimate user to open a manipulated project.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-542701.pdf</id>
    <title>SSA-542701 (Last Update: 2019-05-14): Vulnerabilities in SIEMENS LOGO!</title>
    <updated>2019-05-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-542701.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities have been identified in SIEMENS LOGO!8 BM devices. The most severe vulnerability could lead to an attacker reading and modifying the device configuration if the attacker has access to port 10005/tcp.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-549547.pdf</id>
    <title>SSA-549547 (Last Update: 2019-05-14): Multiple Vulnerabilites in SCALANCE W1750D</title>
    <updated>2019-05-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-549547.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest update for SCALANCE W1750D fixes multiple vulnerabilities. The most severe could allow an unauthenticated attacker with access to the web interface of an affected device to execute arbitrary system commands within the underlying operating system.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected devices.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-606525.pdf</id>
    <title>SSA-606525 (Last Update: 2019-05-14): Denial-of-Service Vulnerability in SINAMICS PERFECT HARMONY GH180 Ethernet Modbus Interface (G28)</title>
    <updated>2019-05-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-606525.pdf" rel="alternate"/>
    <summary>&lt;p&gt;SINAMICS PERFECT HARMONY GH180 Drives NXG I and NXG II control contains a denial-of-service vulnerability within the Ethernet Modbus interface (G28). An attacker with access to the Ethernet Modbus Interface could cause a Denial-of-Service condition exceeding the number of available connections.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-697412.pdf</id>
    <title>SSA-697412 (Last Update: 2019-05-14): Multiple Vulnerabilities in SIMATIC WinCC, SIMATIC WinCC Runtime, SIMATIC PCS 7, SIMATIC TIA Portal</title>
    <updated>2019-05-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-697412.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest update for SIMATIC WinCC fixes multiple vulnerabilities. The most severe could allow an attacker to execute arbitrary commands on an affected system under certain conditions.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, and recommends that customers update to the new version. Siemens is preparing further updates and recommends specific countermeasures until patches are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-705517.pdf</id>
    <title>SSA-705517 (Last Update: 2019-05-14): Remote Code Execution Vulnerability in SIMATIC WinCC and SIMATIC PCS 7</title>
    <updated>2019-05-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-705517.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability was identified in SIMATIC WinCC and SIMATIC PCS 7, which could allow an unauthenticated attacker with access to the affected devices to execute arbitrary code. The vulnerability can be exploited if the affected systems do not have &amp;quot;Encrypted Communication&amp;quot; enabled.&lt;/p&gt;
&lt;p&gt;Siemens provides versions of SIMATIC WinCC and SIMATIC PCS 7, that allow to enable a mode called &amp;quot;Encrypted Communication&amp;quot;, which mitigates the vulnerability.&lt;/p&gt;
&lt;p&gt;&amp;quot;Encrypted communication&amp;quot; is enabled by default starting with SIMATIC WinCC V7.5.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-804486.pdf</id>
    <title>SSA-804486 (Last Update: 2019-05-14): Multiple Vulnerabilities in SIMATIC Panels and SIMATIC WinCC (TIA Portal)</title>
    <updated>2019-05-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-804486.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest update for SIMATIC Panel Software and SIMATIC WinCC (TIA Portal) fixes two vulnerabilities. The most severe is a vulnerability which could allow an attacker with network access to the integrated device to read and write variables via SNMP.&lt;/p&gt;
&lt;p&gt;Siemens recommends to update to the newest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-865156.pdf</id>
    <title>SSA-865156 (Last Update: 2019-05-14): Denial-of-Service Vulnerability in SINAMICS PERFECT HARMONY GH180 Fieldbus Network</title>
    <updated>2019-05-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-865156.pdf" rel="alternate"/>
    <summary>&lt;p&gt;SINAMICS PERFECT HARMONY GH180 Drives NXG I and NXG II control contains a denial-of-service vulnerability within the Parameter Read/Write over Fieldbus network functionality. An attacker with access to the field bus network could cause a Denial-of-Service condition by sending specially crafted packets. By default, Parameter Read/Write over Fieldbus network is disabled, and this functionality must be specifically enabled to expose this vulnerability.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-902727.pdf</id>
    <title>SSA-902727 (Last Update: 2019-05-14): Multiple Vulnerabilities in Licensing Software for SISHIP Automation Solutions</title>
    <updated>2019-05-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-902727.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities have been identified in the WibuKey Digital Rights Management (DRM) solution, which affect SISHIP Automation Solutions. Siemens recommends users to apply the updates to WibuKey Digital Rights Management (DRM) provided by WIBU SYSTEMS AG.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-113131.pdf</id>
    <title>SSA-113131 (Last Update: 2019-05-14): Denial-of-Service Vulnerabilities in S7-400 CPUs</title>
    <updated>2019-05-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-113131.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Two vulnerabilities have been identified in the SIMATIC S7-400 CPU family that could allow an attacker to cause a Denial-of-Service condition. In order to exploit the vulnerability, an attacker must have access to the affected devices on port 102/tcp via Ethernet, PROFIBUS or Multi Point Interfaces (MPI).&lt;/p&gt;
&lt;p&gt;Siemens provides updates to address the vulnerability, and recommends specific mitigations.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-307392.pdf</id>
    <title>SSA-307392 (Last Update: 2019-05-14): Denial-of-Service in OPC UA in Industrial Products</title>
    <updated>2019-05-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-307392.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability has been identified in the OPC UA server of several industrial products. The vulnerability could cause a Denial-of-Service condition on the service or the device.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, and recommends that customers update to the new version. Siemens is preparing further updates and recommends specific countermeasures until patches are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-480230.pdf</id>
    <title>SSA-480230 (Last Update: 2019-05-14): Denial-of-Service in Webserver of Industrial Products</title>
    <updated>2019-05-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-480230.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in the affected devices could allow an unauthorized attacker with network access to the webserver of an affected device to perform a denial-of-service attack.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, and recommends that customers update to the new version. Siemens is preparing further updates and recommends specific countermeasures until patches are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-592007.pdf</id>
    <title>SSA-592007 (Last Update: 2019-05-14): Denial-of-Service Vulnerability in Industrial Products</title>
    <updated>2019-05-14T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-592007.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Several industrial controllers are affected by a security vulnerability that could allow an attacker to cause a Denial-of-Service condition via PROFINET DCP network packets under certain circumstances. Precondition for this scenario is a direct OSI Layer 2 access to the affected products. PROFIBUS interfaces are not affected.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, is working on updates for the remaining affected products and recommends specific countermeasures until fixes are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-141614.pdf</id>
    <title>SSA-141614 (Last Update: 2019-04-09): Denial-of-Service in SIMOCODE pro V EIP</title>
    <updated>2019-04-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-141614.pdf" rel="alternate"/>
    <summary>&lt;p&gt;SIMOCODE pro V EIP is affected by a vulnerability that could allow remote attackers to conduct a Denial-of-Service (DoS) attack by sending specially crafted packets to port 161/udp (SNMP).&lt;/p&gt;
&lt;p&gt;Siemens has released an update for SIMOCODE pro V EIP and recommends that customers update to the new version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-307392.pdf</id>
    <title>SSA-307392 (Last Update: 2019-04-09): Denial-of-Service in OPC UA in Industrial Products</title>
    <updated>2019-04-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-307392.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability has been identified in the OPC UA server of several industrial products. The vulnerability could cause a Denial-of-Service condition on the service or the device.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, and recommends that customers update to the new version. Siemens is preparing further updates and recommends specific countermeasures until patches are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-324467.pdf</id>
    <title>SSA-324467 (Last Update: 2019-04-09): OS Command Injection in Spectrum Power 4.7</title>
    <updated>2019-04-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-324467.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Versions of Spectrum Power&#8482; 4, that use the customer specific project enhancement (PE) Web Office Portal (WOP) are affected by a possible OS Command Injection vulnerability. Siemens has released patches for the affected version and recommends to apply specific countermeasures until these patches can be applied.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-436177.pdf</id>
    <title>SSA-436177 (Last Update: 2019-04-09): Multiple Vulnerabilities in SINEMA Remote Connect</title>
    <updated>2019-04-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-436177.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest updates for SINEMA Remote Connect Client and Server fix multiple vulnerabilities. One of these vulnerabilities could allow an attacker to circumvent the authorization of the system for certain functionalities and to execute privileged functions.&lt;/p&gt;
&lt;p&gt;Siemens has released firmware updates for SINEMA Remote Connect Client and Server.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-451142.pdf</id>
    <title>SSA-451142 (Last Update: 2019-04-09): Multiple Vulnerabilities in RUGGEDCOM ROX II</title>
    <updated>2019-04-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-451142.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest update for RUGGEDCOM ROX II fixes multiple vulnerabilities in third party component software. The most severe vulnerability could allow an attacker to run arbitrary code on the device.&lt;/p&gt;
&lt;p&gt;Siemens has released firmware updates for RUGGEDCOM ROX II and recommends that customers update to the new version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-480230.pdf</id>
    <title>SSA-480230 (Last Update: 2019-04-09): Denial-of-Service in Webserver of Industrial Products</title>
    <updated>2019-04-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-480230.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in the affected devices could allow an unauthorized attacker with network access to the webserver of an affected device to perform a denial-of-service attack.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, and recommends that customers update to the new version. Siemens is preparing further updates and recommends specific countermeasures until patches are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-179516.pdf</id>
    <title>SSA-179516 (Last Update: 2019-04-09): OpenSSL Vulnerability in Industrial Products</title>
    <updated>2019-04-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-179516.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in OpenSSL affects several Siemens industrial products. Siemens has released updates for some affected products and is working on updates for others.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-268644.pdf</id>
    <title>SSA-268644 (Last Update: 2019-04-09): Spectre-NG (Variants 3a and 4) Vulnerabilities in Industrial Products</title>
    <updated>2019-04-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-268644.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Security researchers published information on vulnerabilities known as Spectre-NG (Variants 3a and 4). These vulnerabilities affect many modern processors from different vendors to a varying degree.&lt;/p&gt;
&lt;p&gt;Several Industrial Products include affected processors and are affected by the vulnerabilities.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-844562.pdf</id>
    <title>SSA-844562 (Last Update: 2019-04-09): Multiple Vulnerabilities in Licensing Software for WinCC OA</title>
    <updated>2019-04-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-844562.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities have been identified in the WibuKey Digital Rights Management (DRM) solution, which affect WinCC OA. Siemens recommends users to apply the updates to WibuKey Digital Rights Management (DRM) provided by WIBU SYSTEMS AG.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-901333.pdf</id>
    <title>SSA-901333 (Last Update: 2019-04-09): KRACK Attacks Vulnerabilities in Industrial Products</title>
    <updated>2019-04-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-901333.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities affecting WPA/WPA2 implementations were identified by a researcher and publicly disclosed under the term &amp;quot;Key Reinstallation Attacks&amp;quot; (KRACK). These vulnerabilities could potentially allow an attacker within the radio range of the wireless network to decrypt, replay or inject forged network packets into the wireless communication.&lt;/p&gt;
&lt;p&gt;Several Siemens Industrial products use WPA/WPA2 and are therefore affected by some of the vulnerabilities.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssb-439005.pdf</id>
    <title>SSB-439005 (Last Update: 2019-04-09): Vulnerabilities in the additional GNU/Linux subsystem of the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP</title>
    <updated>2019-04-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssb-439005.pdf" rel="alternate"/>
    <summary>
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-557804.pdf</id>
    <title>SSA-557804 (Last Update: 2019-03-12): Mirror Port Isolation Vulnerability in SCALANCE X switches</title>
    <updated>2019-03-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-557804.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability was identified in several SCALANCE X switches that could allow an attacker to feed information into a network via the mirror port with the monitor barrier feature enabled.&lt;/p&gt;
&lt;p&gt;The monitor barrier implementation in various SCALANCE products does allow traffic to be directed back into the mirroring network. This might allow an attacker to feed back information into the network that is mirrored.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-168644.pdf</id>
    <title>SSA-168644 (Last Update: 2019-03-12): Spectre and Meltdown Vulnerabilities in Industrial Products</title>
    <updated>2019-03-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-168644.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Security researchers published information on vulnerabilities known as Spectre and Meltdown. These vulnerabilities affect many modern processors from different vendors to a varying degree.&lt;/p&gt;
&lt;p&gt;Several Industrial Products include affected processors and are affected by the vulnerabilities.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-170881.pdf</id>
    <title>SSA-170881 (Last Update: 2019-03-12): Vulnerabilities in SINUMERIK Controllers</title>
    <updated>2019-03-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-170881.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest updates for SINUMERIK controllers fix multiple security vulnerabilities that could allow an attacker to cause Denial-of-Service conditions, escalate privileges, or to execute code from remote.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, is working on updates for the remaining affected products and recommends specific countermeasures until fixes are available. Siemens recommends to update affected devices as soon as possible.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-203306.pdf</id>
    <title>SSA-203306 (Last Update: 2019-03-12): Password Vulnerabilities in SIPROTEC 4 and SIPROTEC Compact Relay Families</title>
    <updated>2019-03-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-203306.pdf" rel="alternate"/>
    <summary>&lt;p&gt;SIPROTEC 4 and SIPROTEC Compact devices could allow access authorization passwords to be reconstructed or overwritten via engineering mechanisms that involve DIGSI 4 and EN100 Ethernet communication modules.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, and recommends specific countermeasures for the remaining products.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-254686.pdf</id>
    <title>SSA-254686 (Last Update: 2019-03-12): Foreshadow / L1 Terminal Fault Vulnerabilities in Industrial Products</title>
    <updated>2019-03-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-254686.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Security researchers published information on vulnerabilities known as Foreshadow and L1 Terminal Fault (L1TF). These vulnerabilities affect many modern processors from different vendors to a varying degree.&lt;/p&gt;
&lt;p&gt;Several Siemens Industrial Products contain processors that are affected by the vulnerabilities.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-346262.pdf</id>
    <title>SSA-346262 (Last Update: 2019-03-12): Denial-of-Service in Industrial Products</title>
    <updated>2019-03-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-346262.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Several industrial products are affected by a vulnerability that could allow remote attackers to conduct a Denial-of-Service (DoS) attack by sending specially crafted packets to port 161/udp (SNMP).&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, and recommends that customers update to the new version. Siemens is preparing further updates and recommends specific countermeasures until patches are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-348629.pdf</id>
    <title>SSA-348629 (Last Update: 2019-03-12): Denial-of-Service Vulnerability in SIMATIC PCS 7, SIMATIC WinCC, SIMATIC WinCC Runtime Professional and SIMATIC NET PC Software</title>
    <updated>2019-03-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-348629.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A Denial-of-Service vulnerability has been identified in SIMATIC PCS 7, SIMATIC WinCC, SIMATIC WinCC Runtime Professional and SIMATIC NET PC-Software.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends that customers update to the new version. Siemens is preparing further updates and recommends specific countermeasures until patches are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-584286.pdf</id>
    <title>SSA-584286 (Last Update: 2019-03-12): Denial-of-Service Vulnerability in SIMATIC S7-1200 CPU and SIMATIC S7-1500 CPU</title>
    <updated>2019-03-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-584286.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability was identified in SIMATIC S7-1200 and S7-1500 CPUs that could allow an attacker to cause a denial-of-service condition preventing HMI or engineering access to the PLC over port 102/tcp.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for the S7-1500 product and recommends that customers update to the new version. Siemens is preparing a further update for the S7-1200 product and recommends specific workarounds and mitigations until patches are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-824231.pdf</id>
    <title>SSA-824231 (Last Update: 2019-03-12): Unauthenticated Firmware Upload Vulnerability in Desigo PX Controllers</title>
    <updated>2019-03-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-824231.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest update for Desigo PXC devices fixes a vulnerability that could allow unauthenticated remote attackers to upload malicious firmware without prior authentication.&lt;/p&gt;
&lt;p&gt;Siemens recommends updating to the new version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssb-439005.pdf</id>
    <title>SSB-439005 (Last Update: 2019-03-12): Vulnerabilities in the additional GNU/Linux subsystem of the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP</title>
    <updated>2019-03-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssb-439005.pdf" rel="alternate"/>
    <summary>
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-844562.pdf</id>
    <title>SSA-844562 (Last Update: 2019-02-25): Multiple Vulnerabilities in Licensing Software for WinCC OA</title>
    <updated>2019-02-25T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-844562.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities have been identified in the WibuKey Digital Rights Management (DRM) solution, which affect WinCC OA. Siemens recommends users to apply the updates to WibuKey Digital Rights Management (DRM) provided by WIBU SYSTEMS AG.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-505225.pdf</id>
    <title>SSA-505225 (Last Update: 2019-02-12): Spectre Vulnerabilities in SIMATIC Industrial Thin Client V3</title>
    <updated>2019-02-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-505225.pdf" rel="alternate"/>
    <summary>&lt;p&gt;SIMATIC Industrial Thin Clients V3 contain a processor which is affected by vulnerabilities known under the name Spectre V1 and Spectre V4. Siemens has released updates for the affected products and recommends to update to the latest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-760124.pdf</id>
    <title>SSA-760124 (Last Update: 2019-02-12): Multiple Vulnerabilities in Licensing Software for SICAM 230</title>
    <updated>2019-02-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-760124.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities have been identified in the WibuKey Digital Rights Management (DRM) solution, which affect the SICAM 230 process control system.&lt;/p&gt;
&lt;p&gt;Siemens recommends users to apply the updates to WibuKey Digital Rights Management (DRM) provided by WIBU SYSTEMS AG.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-104088.pdf</id>
    <title>SSA-104088 (Last Update: 2019-02-12): Denial-of-Service Vulnerabilities in EN100 Ethernet Communication Module and SIPROTEC 5 relays</title>
    <updated>2019-02-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-104088.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The EN100 Ethernet communication module and SIPROTEC 5 relays are affected by a security vulnerability which could allow an attacker to conduct a Denial-of-Service attack over the network. Siemens has released updates for some affected products, is working on updates for the remaining affected products, and recommends specific countermeasures until fixes are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-275839.pdf</id>
    <title>SSA-275839 (Last Update: 2019-02-12): Denial-of-Service Vulnerability in Industrial Products</title>
    <updated>2019-02-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-275839.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Several industrial products are affected by a vulnerability that could allow an attacker to cause a Denial-of-Service condition via PROFINET DCP network packets under certain circumstances. Precondition for this scenario is a direct Layer 2 access to the affected products.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, is working on updates for the remaining affected products and recommends specific countermeasures until fixes are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-284673.pdf</id>
    <title>SSA-284673 (Last Update: 2019-02-12): Vulnerability in Industrial Products</title>
    <updated>2019-02-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-284673.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Several industrial devices are affected by a vulnerability that could allow an attacker to cause a Denial-of-Service condition via PROFINET DCP network packets under certain circumstances. Precondition for this scenario is a direct Layer 2 access to the affected products. PROFIBUS interfaces are not affected.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, is working on updates for the remaining affected products and recommends specific countermeasures until fixes are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-346262.pdf</id>
    <title>SSA-346262 (Last Update: 2019-02-12): Denial-of-Service in Industrial Products</title>
    <updated>2019-02-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-346262.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Several industrial products are affected by a vulnerability that could allow remote attackers to conduct a Denial-of-Service (DoS) attack by sending specially crafted packets to port 161/udp (SNMP).&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, and recommends that customers update to the new version. Siemens is preparing further updates and recommends specific countermeasures until patches are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-179516.pdf</id>
    <title>SSA-179516 (Last Update: 2019-02-12): OpenSSL Vulnerability in Industrial Products</title>
    <updated>2019-02-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-179516.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in OpenSSL affects several Siemens industrial products. Siemens has released updates for some affected products and is working on updates for others.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-168644.pdf</id>
    <title>SSA-168644 (Last Update: 2019-02-12): Spectre and Meltdown Vulnerabilities in Industrial Products</title>
    <updated>2019-02-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-168644.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Security researchers published information on vulnerabilities known as Spectre and Meltdown. These vulnerabilities affect many modern processors from different vendors to a varying degree.&lt;/p&gt;
&lt;p&gt;Several Industrial Products include affected processors and are affected by the vulnerabilities.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-268644.pdf</id>
    <title>SSA-268644 (Last Update: 2019-02-12): Spectre-NG (Variants 3a and 4) Vulnerabilities in Industrial Products</title>
    <updated>2019-02-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-268644.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Security researchers published information on vulnerabilities known as Spectre-NG (Variants 3a and 4). These vulnerabilities affect many modern processors from different vendors to a varying degree.&lt;/p&gt;
&lt;p&gt;Several Industrial Products include affected processors and are affected by the vulnerabilities.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-347726.pdf</id>
    <title>SSA-347726 (Last Update: 2019-02-12): Denial-of-Service Vulnerability in SIMATIC S7-1500, SIMATIC S7-1500 Software Controller and SIMATIC ET 200SP Open Controller</title>
    <updated>2019-02-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-347726.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Versions of SIMATIC S7-1500, SIMATIC S7-1500 Software Controller and SIMATIC ET 200 SP Open Controller are affected by a denial-of-service vulnerability. An attacker with network access to the PLC can cause a Denial-of-Service condition on the network stack.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssb-439005.pdf</id>
    <title>SSB-439005 (Last Update: 2019-02-12): Vulnerabilities in the additional GNU/Linux subsystem of the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP</title>
    <updated>2019-02-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssb-439005.pdf" rel="alternate"/>
    <summary>
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-377318.pdf</id>
    <title>SSA-377318 (Last Update: 2019-02-12): Multiple vulnerabilities in Intel Active Management Technology (AMT) of SIMATIC IPCs</title>
    <updated>2019-02-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-377318.pdf" rel="alternate"/>
    <summary>&lt;p&gt;There are multiple vulnerabilities in the Intel Management Engine used in multiple SIMATIC IPC devices that may allow arbitrary code execution, a partial denial of service or information disclosure. For additional information see: &lt;a href="https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00141.html" class="uri"&gt;https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00141.html&lt;/a&gt;.&lt;/p&gt;
&lt;p&gt;Siemens provides updates for the affected devices.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-579309.pdf</id>
    <title>SSA-579309 (Last Update: 2019-02-12): Denial-of-Service in SICAM A8000 Series</title>
    <updated>2019-02-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-579309.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The SICAM A8000 RTU series is affected by a security vulnerability that could allow unauthenticated remote users to cause a Denial-of-Service (DoS) condition of the web server of affected products.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for all product variants and recommends that customers update to the new versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-635129.pdf</id>
    <title>SSA-635129 (Last Update: 2019-02-12): Denial-of-Service Vulnerabilities in EN100 Ethernet Communication Module and SIPROTEC 5 relays</title>
    <updated>2019-02-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-635129.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The EN100 Ethernet communication module and SIPROTEC 5 relays are affected by security vulnerabilities which could allow an attacker to conduct a Denial-of-Service attack over the network.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, is working on updates for the remaining affected products, and recommends specific countermeasures until fixes are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-845879.pdf</id>
    <title>SSA-845879 (Last Update: 2019-02-12): Firmware Downgrade Vulnerability in EN100 Ethernet Communication Module for SIPROTEC 4, SIPROTEC Compact and Reyrolle</title>
    <updated>2019-02-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-845879.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The EN100 Ethernet communication module, which is an optional extension for SIPROTEC 4, SIPROTEC Compact and Reyrolle devices, allows an unauthenticated upload of firmware updates to the communication module in affected versions.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, is working on updates for the remaining affected products, and recommends specific countermeasures until fixes are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-254686.pdf</id>
    <title>SSA-254686 (Last Update: 2019-02-12): Foreshadow / L1 Terminal Fault Vulnerabilities in Industrial Products</title>
    <updated>2019-02-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-254686.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Security researchers published information on vulnerabilities known as Foreshadow and L1 Terminal Fault (L1TF). These vulnerabilities affect many modern processors from different vendors to a varying degree.&lt;/p&gt;
&lt;p&gt;Several Siemens Industrial Products contain processors that are affected by the vulnerabilities.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-180635.pdf</id>
    <title>SSA-180635 (Last Update: 2019-01-08): Denial-of-Service Vulnerabilities in S7-1500 CPU</title>
    <updated>2019-01-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-180635.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Older versions of the S7-1500 CPU are affected by two Denial-of-Service vulnerabilities. Siemens has released updates for the currently supported hardware versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-181018.pdf</id>
    <title>SSA-181018 (Last Update: 2019-01-08): Heap Overflow Vulnerability in SCALANCE X switches, RUGGEDCOM WiMAX, RFID 181-EIP, and SIMATIC RF182C</title>
    <updated>2019-01-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-181018.pdf" rel="alternate"/>
    <summary>&lt;p&gt;SCALANCE X switches, RUGGEDCOM WiMAX, RFID 181-EIP, and SIMATIC RF182C are affected by a vulnerability that could allow an unprivileged attacker located in the same local network segment (OSI Layer 2) to gain system privileges by sending a specially crafted DHCP response to a client's DHCP request.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends that customers update to the new version. Siemens is preparing further updates and recommends specific countermeasures until patches are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-293562.pdf</id>
    <title>SSA-293562 (Last Update: 2019-01-08): Vulnerabilities in Industrial Products</title>
    <updated>2019-01-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-293562.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Several industrial devices are affected by two vulnerabilities that could allow an attacker to cause a Denial-of-Service condition via PROFINET DCP network packets under certain circumstances. The precondition for this scenario is a direct layer 2 access to the affected products. PROFIBUS interfaces are not affected.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, is working on updates for the remaining affected products and recommends specific countermeasures until fixes are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-306710.pdf</id>
    <title>SSA-306710 (Last Update: 2019-01-08): Denial-of-Service Vulnerability in SIMATIC S7-300 CPU</title>
    <updated>2019-01-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-306710.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Siemens has released a firmware update for the SIMATIC S7-300 CPU family which fixes a vulnerability that could allow remote attackers to perform a Denial-of-Service attack.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-346262.pdf</id>
    <title>SSA-346262 (Last Update: 2019-01-08): Denial-of-Service in Industrial Products</title>
    <updated>2019-01-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-346262.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Several industrial products are affected by a vulnerability that could allow remote attackers to conduct a Denial-of-Service (DoS) attack by sending specially crafted packets to port 161/udp (SNMP).&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, and recommends that customers update to the new version. Siemens is preparing further updates and recommends specific countermeasures until patches are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-348629.pdf</id>
    <title>SSA-348629 (Last Update: 2019-01-08): Denial-of-Service Vulnerability in SIMATIC PCS 7, SIMATIC WinCC, SIMATIC WinCC Runtime Professional and SIMATIC NET PC Software</title>
    <updated>2019-01-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-348629.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A Denial-of-Service vulnerability has been identified in SIMATIC PCS 7, SIMATIC WinCC, SIMATIC WinCC Runtime Professional and SIMATIC NET PC-Software.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends that customers update to the new version. Siemens is preparing further updates and recommends specific countermeasures until patches are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-535640.pdf</id>
    <title>SSA-535640 (Last Update: 2019-01-08): Vulnerability in Industrial Products</title>
    <updated>2019-01-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-535640.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Various industrial products use the Discovery Service of the OPC UA protocol stack by the OPC foundation &lt;a href="https://github.com/OPCFoundation/UA-.NETStandard" class="uri"&gt;https://github.com/OPCFoundation/UA-.NETStandard&lt;/a&gt; and could therefore be affected by the remote resource consumption attacks (CVE-2017-12069).&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-559174.pdf</id>
    <title>SSA-559174 (Last Update: 2019-01-08): Multiple Vulnerabilities in CP1604 and CP1616 devices</title>
    <updated>2019-01-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-559174.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities have been identified in SIEMENS CP1604 and CP1616 devices. The most severe of these vulnerabilities could allow an attacker to extract internal communication data or cause a Denial-of-Service condition.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-592007.pdf</id>
    <title>SSA-592007 (Last Update: 2019-01-08): Denial-of-Service Vulnerability in Industrial Products</title>
    <updated>2019-01-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-592007.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Several industrial controllers are affected by a security vulnerability that could allow an attacker to cause a Denial-of-Service condition via PROFINET DCP network packets under certain circumstances. Precondition for this scenario is a direct OSI Layer 2 access to the affected products. PROFIBUS interfaces are not affected.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, is working on updates for the remaining affected products and recommends specific countermeasures until fixes are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssb-439005.pdf</id>
    <title>SSB-439005 (Last Update: 2019-01-08): Vulnerabilities in the additional GNU/Linux subsystem of the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP</title>
    <updated>2019-01-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssb-439005.pdf" rel="alternate"/>
    <summary>
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-579309.pdf</id>
    <title>SSA-579309 (Last Update: 2019-01-08): Denial-of-Service in SICAM A8000 Series</title>
    <updated>2019-01-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-579309.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The SICAM A8000 RTU series is affected by a security vulnerability that could allow unauthenticated remote users to cause a Denial-of-Service (DoS) condition of the web server of affected products.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for all product variants and recommends that customers update to the new versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-325546.pdf</id>
    <title>SSA-325546 (Last Update: 2019-01-08): Denial-of-Service Vulnerabilities in EN100 Ethernet Communication Module of SWT3000</title>
    <updated>2019-01-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-325546.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The firmware variant IEC 61850 of the EN100 Ethernet communication module for SWT 3000 is affected by security vulnerabilities which could allow an attacker to conduct a Denial-of-Service attack over the network.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, is working on updates for the remaining affected products, and recommends specific countermeasures until fixes are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-982399.pdf</id>
    <title>SSA-982399 (Last Update: 2018-12-17): Missing Authentication in TIM 1531 IRC Modules</title>
    <updated>2018-12-17T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-982399.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest update for TIM 1531 IRC fixes a vulnerability. The devices was missing proper authentication when connecting on port 102/tcp, although configured.&lt;/p&gt;
&lt;p&gt;An attacker needs to be able to connect to port 102/tcp of an affected device in order to exploit this vulnerability.&lt;/p&gt;
&lt;p&gt;The vulnerability could allow an attacker to perform administrative operations.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for TIM 1531 IRC modules.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-181018.pdf</id>
    <title>SSA-181018 (Last Update: 2018-12-13): Heap Overflow Vulnerability in SCALANCE X switches, RUGGEDCOM WiMAX, RFID 181-EIP, and SIMATIC RF182C</title>
    <updated>2018-12-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-181018.pdf" rel="alternate"/>
    <summary>&lt;p&gt;SCALANCE X switches, RUGGEDCOM WiMAX, RFID 181-EIP, and SIMATIC RF182C are affected by a vulnerability that could allow an unprivileged attacker located in the same local network segment (OSI Layer 2) to gain system privileges by sending a specially crafted DHCP response to a client's DHCP request.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends that customers update to the new version. Siemens is preparing further updates and recommends specific countermeasures until patches are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-293562.pdf</id>
    <title>SSA-293562 (Last Update: 2018-12-13): Vulnerabilities in Industrial Products</title>
    <updated>2018-12-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-293562.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Several industrial devices are affected by two vulnerabilities that could allow an attacker to cause a Denial-of-Service condition via PROFINET DCP network packets under certain circumstances. The precondition for this scenario is a direct layer 2 access to the affected products. PROFIBUS interfaces are not affected.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, is working on updates for the remaining affected products and recommends specific countermeasures until fixes are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-348629.pdf</id>
    <title>SSA-348629 (Last Update: 2018-12-13): Denial-of-Service Vulnerability in SIMATIC PCS 7, SIMATIC WinCC, SIMATIC WinCC Runtime Professional and SIMATIC NET PC Software</title>
    <updated>2018-12-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-348629.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A Denial-of-Service vulnerability has been identified in SIMATIC PCS 7, SIMATIC WinCC, SIMATIC WinCC Runtime Professional and SIMATIC NET PC-Software.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends that customers update to the new version. Siemens is preparing further updates and recommends specific countermeasures until patches are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-982399.pdf</id>
    <title>SSA-982399 (Last Update: 2018-12-13): Missing Authentication in TIM 1531 IRC Modules</title>
    <updated>2018-12-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-982399.pdf" rel="alternate"/>
    <summary>&lt;p&gt;TIM 1531 IRC is affected by a vulnerability. The devices are missing proper authentication when connecting on port 102/tcp, although configured.&lt;/p&gt;
&lt;p&gt;An attacker needs to be able to connect to port 102/tcp of an affected device in order to exploit this vulnerability.&lt;/p&gt;
&lt;p&gt;The vulnerability could allow an attacker to perform arbitrary administrative operations.&lt;/p&gt;
&lt;p&gt;Siemens is working on updates for TIM 1531 IRC modules.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-170881.pdf</id>
    <title>SSA-170881 (Last Update: 2018-12-11): Vulnerabilities in SINUMERIK Controllers</title>
    <updated>2018-12-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-170881.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest updates for SINUMERIK controllers fix multiple security vulnerabilities that could allow an attacker to cause Denial-of-Service conditions, escalate privileges, or to execute code from remote.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, is working on updates for the remaining affected products and recommends specific countermeasures until fixes are available. Siemens recommends to update affected devices as soon as possible.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-254686.pdf</id>
    <title>SSA-254686 (Last Update: 2018-12-11): Foreshadow / L1 Terminal Fault Vulnerabilities in Industrial Products</title>
    <updated>2018-12-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-254686.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Security researchers published information on vulnerabilities known as Foreshadow and L1 Terminal Fault (L1TF). These vulnerabilities affect many modern processors from different vendors to a varying degree.&lt;/p&gt;
&lt;p&gt;Several Siemens Industrial Products contain processors that are affected by the vulnerabilities.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-293562.pdf</id>
    <title>SSA-293562 (Last Update: 2018-12-11): Vulnerabilities in Industrial Products</title>
    <updated>2018-12-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-293562.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Several industrial devices are affected by two vulnerabilities that could allow an attacker to cause a Denial-of-Service condition via PROFINET DCP network packets under certain circumstances. Precondition for this scenario is a direct Layer 2 access to the affected products. PROFIBUS interfaces are not affected.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, is working on updates for the remaining affected products and recommends specific countermeasures until fixes are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-346262.pdf</id>
    <title>SSA-346262 (Last Update: 2018-12-11): Denial-of-Service in Industrial Products</title>
    <updated>2018-12-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-346262.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Several industrial products are affected by a vulnerability that could allow remote attackers to conduct a Denial-of-Service (DoS) attack by sending specially crafted packets to port 161/udp (SNMP).&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, and recommends that customers update to the new version. Siemens is preparing further updates and recommends specific countermeasures until patches are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssb-439005.pdf</id>
    <title>SSB-439005 (Last Update: 2018-12-11): Vulnerabilities in the additional GNU/Linux subsystem of the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP</title>
    <updated>2018-12-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssb-439005.pdf" rel="alternate"/>
    <summary>
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-635129.pdf</id>
    <title>SSA-635129 (Last Update: 2018-12-11): Denial-of-Service Vulnerabilities in EN100 Ethernet Communication Module and SIPROTEC 5 relays</title>
    <updated>2018-12-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-635129.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The EN100 Ethernet communication module and SIPROTEC 5 relays are affected by security vulnerabilities which could allow an attacker to conduct a Denial-of-Service attack over the network.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, is working on updates for the remaining affected products, and recommends specific countermeasures until fixes are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-674165.pdf</id>
    <title>SSA-674165 (Last Update: 2018-12-11): Vulnerability in McAfee MACC product for SINAMICS PERFECT HARMONY GH180 drives</title>
    <updated>2018-12-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-674165.pdf" rel="alternate"/>
    <summary>&lt;p&gt;McAfee has issued Security Bulletin SB10250 to address a vulnerabilty in McAfee Application and Change Control (MACC). SINAMICS PERFECT HARMONY GH180 Drives with HMIs produced between November 4th, 2015 and October 9th, 2018, use MACC as part of their software package, if option A30 was part of the order.&lt;/p&gt;
&lt;p&gt;Siemens has analyzed the vulnerability and has determined that this vulnerability applies to these HMIs.&lt;/p&gt;
&lt;p&gt;HMIs with this vulnerability can be compromised via local attack using removable USB storage devices to transfer malicious files. These file can be executed to compromise the HMI and by extension the drive system.&lt;/p&gt;
&lt;p&gt;For compatibility reasons, Siemens advises the installation of MACC 8.2.0 instead of version 8.0.0, hotfix 5 as mentioned in SB10250.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-268644.pdf</id>
    <title>SSA-268644 (Last Update: 2018-12-11): Spectre-NG (Variants 3a and 4) Vulnerabilities in Industrial Products</title>
    <updated>2018-12-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-268644.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Security researchers published information on vulnerabilities known as Spectre-NG (Variants 3a and 4). These vulnerabilities affect many modern processors from different vendors to a varying degree.&lt;/p&gt;
&lt;p&gt;Several Industrial Products include affected processors and are affected by the vulnerabilities.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-982399.pdf</id>
    <title>SSA-982399 (Last Update: 2018-12-11): Missing Authentication in TIM 1531 IRC Modules</title>
    <updated>2018-12-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-982399.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest update for TIM 1531 IRC fixes a vulnerability. The devices was missing proper authentication when connecting on port 102/tcp, although configured.&lt;/p&gt;
&lt;p&gt;An attacker needs to be able to connect to port 102/tcp of an affected device in order to exploit this vulnerability.&lt;/p&gt;
&lt;p&gt;The vulnerability could allow an attacker to perform arbitrary administrative operations.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for TIM 1531 IRC modules.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-181018.pdf</id>
    <title>SSA-181018 (Last Update: 2018-12-11): Heap Overflow Vulnerability in SCALANCE X switches, RUGGEDCOM WiMAX, RFID 181-EIP, and SIMATIC RF182C</title>
    <updated>2018-12-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-181018.pdf" rel="alternate"/>
    <summary>&lt;p&gt;SCALANCE X switches, RUGGEDCOM WiMAX, RFID 181-EIP, and SIMATIC RF182C are affected by a vulnerability that could allow an unprivileged attacker located in the same local network segment (OSI Layer 2) to gain system privileges by sending a specially crafted DHCP response to a client's DHCP request.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends that customers update to the new version. Siemens is preparing further updates and recommends specific countermeasures until patches are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-348629.pdf</id>
    <title>SSA-348629 (Last Update: 2018-12-11): Denial-of-Service Vulnerability in SIMATIC PCS 7, SIMATIC WinCC, SIMATIC WinCC Runtime Professional and SIMATIC NET PC Software</title>
    <updated>2018-12-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-348629.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A Denial-of-Service vulnerability has been identified in SIMATIC PCS 7, SIMATIC WinCC, SIMATIC WinCC Runtime Professional and SIMATIC NET PC-Software.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends that customers update to the new version. Siemens is preparing further updates and recommends specific countermeasures until patches are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssb-439005.pdf</id>
    <title>SSB-439005 (Last Update: 2018-11-27): Vulnerabilities in the additional GNU/Linux subsystem of the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP</title>
    <updated>2018-11-27T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssb-439005.pdf" rel="alternate"/>
    <summary>
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-113131.pdf</id>
    <title>SSA-113131 (Last Update: 2018-11-13): Denial-of-Service Vulnerabilities in S7-400 CPUs</title>
    <updated>2018-11-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-113131.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Two vulnerabilities have been identified in the SIMATIC S7-400 CPU family that could allow an attacker to cause a Denial-of-Service condition. In order to exploit the vulnerability, an attacker must have access to the affected devices on port 102/tcp via Ethernet, PROFIBUS or Multi Point Interfaces (MPI).&lt;/p&gt;
&lt;p&gt;Siemens provides updates to address the vulnerability, and recommends specific mitigations.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-233109.pdf</id>
    <title>SSA-233109 (Last Update: 2018-11-13): Web Vulnerabilities in SIMATIC Panels</title>
    <updated>2018-11-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-233109.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest update for SIMATIC Panel software and SIMATIC WinCC (TIA Portal) fixes two web vulnerabilities. The most severe is a vulnerability which could allow an attacker with network access to the integrated webserver to download arbitrary files.&lt;/p&gt;
&lt;p&gt;Siemens recommends to update to the newest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-242982.pdf</id>
    <title>SSA-242982 (Last Update: 2018-11-13): Cross-Site Scripting Vulnerability in SCALANCE S</title>
    <updated>2018-11-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-242982.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A Cross-Site Scripting (XSS) vulnerability was found in the web server of SCALANCE S firewalls. Siemens provides firmware version V4.0.1.1, which fixes the vulnerability and recommends to update to the newest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-584286.pdf</id>
    <title>SSA-584286 (Last Update: 2018-11-13): Denial-of-Service Vulnerability in SIMATIC S7-1200 CPU and SIMATIC S7-1500 CPU</title>
    <updated>2018-11-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-584286.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability was identified in SIMATIC S7-1200 and S7-1500 CPUs that could allow an attacker to cause a denial-of-service condition preventing HMI or engineering access to the PLC over port 102/tcp.&lt;/p&gt;
&lt;p&gt;Siemens has released an update for the S7-1500 product and recommends that customers update to the new version. Siemens is preparing a further update for the S7-1200 product and recommends specific workarounds and mitigations until patches are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-621493.pdf</id>
    <title>SSA-621493 (Last Update: 2018-11-13): Password Storage Vulnerability in SIMATIC STEP7 (TIA Portal)</title>
    <updated>2018-11-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-621493.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest update for SIMATIC STEP7 (TIA Portal) fixes a vulnerability that could allow an attacker with local access to a project file to reconstruct certain passwords stored in the project.&lt;/p&gt;
&lt;p&gt;Siemens recommends to update to the new version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-886615.pdf</id>
    <title>SSA-886615 (Last Update: 2018-11-13): Vulnerability in SIMATIC IT Production Suite</title>
    <updated>2018-11-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-886615.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest update for SIMATIC IT Production Suite fixes a vulnerability that could allow authorized users with knowledge of a valid user name and physical or network access to the affected system to bypass the application-level authentication.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-944083.pdf</id>
    <title>SSA-944083 (Last Update: 2018-11-13): HTTP Header Injection in SIMATIC Panels and SIMATIC WinCC (TIA Portal)</title>
    <updated>2018-11-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-944083.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest update for SIMATIC Panel software and SIMATIC WinCC (TIA Portal) fixes a vulnerability that could allow an attacker with network access to the web server to perform a HTTP header injection attack.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-168644.pdf</id>
    <title>SSA-168644 (Last Update: 2018-11-13): Spectre and Meltdown Vulnerabilities in Industrial Products</title>
    <updated>2018-11-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-168644.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Security researchers published information on vulnerabilities known as Spectre and Meltdown. These vulnerabilities affect many modern processors from different vendors to a varying degree.&lt;/p&gt;
&lt;p&gt;Several Industrial Products include affected processors and are affected by the vulnerabilities.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-179516.pdf</id>
    <title>SSA-179516 (Last Update: 2018-11-13): OpenSSL Vulnerability in Industrial Products</title>
    <updated>2018-11-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-179516.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in OpenSSL affects several Siemens industrial products. Siemens has released updates for some affected products and is working on updates for others.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-254686.pdf</id>
    <title>SSA-254686 (Last Update: 2018-11-13): Foreshadow / L1 Terminal Fault Vulnerabilities in Industrial Products</title>
    <updated>2018-11-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-254686.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Security researchers published information on vulnerabilities known as Foreshadow and L1 Terminal Fault (L1TF). These vulnerabilities affect many modern processors from different vendors to a varying degree.&lt;/p&gt;
&lt;p&gt;Several Siemens Industrial Products contain processors that are affected by the vulnerabilities.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-268644.pdf</id>
    <title>SSA-268644 (Last Update: 2018-11-13): Spectre-NG (Variants 3a and 4) Vulnerabilities in Industrial Products</title>
    <updated>2018-11-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-268644.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Security researchers published information on vulnerabilities known as Spectre-NG (Variants 3a and 4). These vulnerabilities affect many modern processors from different vendors to a varying degree.&lt;/p&gt;
&lt;p&gt;Several Industrial Products include affected processors and are affected by the vulnerabilities.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-293562.pdf</id>
    <title>SSA-293562 (Last Update: 2018-11-13): Vulnerabilities in Industrial Products</title>
    <updated>2018-11-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-293562.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Several industrial devices are affected by two vulnerabilities that could allow an attacker to cause a Denial-of-Service condition via PROFINET DCP network packets under certain circumstances. Precondition for this scenario is a direct Layer 2 access to the affected products. PROFIBUS interfaces are not affected.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, is working on updates for the remaining affected products and recommends specific countermeasures until fixes are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-346262.pdf</id>
    <title>SSA-346262 (Last Update: 2018-11-13): Denial-of-Service in Industrial Products</title>
    <updated>2018-11-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-346262.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Several industrial products are affected by a vulnerability that could allow remote attackers to conduct a Denial-of-Service (DoS) attack by sending specially crafted packets to port 161/udp (SNMP).&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, and recommends that customers update to the new version. Siemens is preparing further updates and recommends specific countermeasures until patches are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-348629.pdf</id>
    <title>SSA-348629 (Last Update: 2018-11-13): Denial-of-Service Vulnerability in SIMATIC PCS 7, SIMATIC WinCC, SIMATIC WinCC Runtime Professional and SIMATIC NET PC Software</title>
    <updated>2018-11-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-348629.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A Denial-of-Service vulnerability has been identified in SIMATIC PCS 7, SIMATIC WinCC, SIMATIC WinCC Runtime Professional and SIMATIC NET PC-Software.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends that customers update to the new version. Siemens is preparing further updates and recommends specific countermeasures until patches are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-901333.pdf</id>
    <title>SSA-901333 (Last Update: 2018-11-13): KRACK Attacks Vulnerabilities in Industrial Products</title>
    <updated>2018-11-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-901333.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities affecting WPA/WPA2 implementations were identified by a researcher and publicly disclosed under the term &amp;quot;Key Reinstallation Attacks&amp;quot; (KRACK). These vulnerabilities could potentially allow an attacker within the radio range of the wireless network to decrypt, replay or inject forged network packets into the wireless communication.&lt;/p&gt;
&lt;p&gt;Several Siemens Industrial products use WPA/WPA2 and are therefore affected by some of the vulnerabilities.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-159860.pdf</id>
    <title>SSA-159860 (Last Update: 2018-11-13): Access Control Vulnerability in IEC 61850 system configurator, DIGSI 5, DIGSI 4, SICAM PAS/PQS, SICAM PQ Analyzer, and SICAM SCC</title>
    <updated>2018-11-13T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-159860.pdf" rel="alternate"/>
    <summary>&lt;p&gt;IEC 61850 system configurator, DIGSI 5, DIGSI 4, SICAM PAS/PQS, SICAM PQ Analyzer, and SICAM SCC products are affected by a security vulnerability which could allow an attacker to either exfiltrate limited data from the system or to execute code with operating system user permissions.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, and recommends that customers update to the new version. Siemens is preparing further updates and recommends specific countermeasures until patches are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-507847.pdf</id>
    <title>SSA-507847 (Last Update: 2018-10-09): Cross-Site Request Forgery Vulnerability in SIMATIC S7-1200 CPU Family Version 4</title>
    <updated>2018-10-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-507847.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest firmware update for S7-1200 CPU family version 4 fixes a Cross-Site Request Forgery vulnerability. Siemens recommends to update affected devices as soon as possible.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-493830.pdf</id>
    <title>SSA-493830 (Last Update: 2018-10-09): Privilege Escalation in ROX II</title>
    <updated>2018-10-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-493830.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest update for ROX II fixes two vulnerabilities. One vulnerability could allow an attacker with a low-privileged user account to execute arbitrary commands. The other vulnerability could allow an attacker with a low-privileged user account to escalate his privileges.&lt;/p&gt;
&lt;p&gt;Siemens recommends to update to the new version as soon as possible.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-464260.pdf</id>
    <title>SSA-464260 (Last Update: 2018-10-09): TLS ROBOT vulnerability in SCALANCE W1750D</title>
    <updated>2018-10-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-464260.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest update for SCALANCE W1750D addresses a vulnerability known as &lt;em&gt;ROBOT Attack&lt;/em&gt;. The vulnerability could allow an attacker to decrypt TLS traffic.&lt;/p&gt;
&lt;p&gt;Siemens provides a firmware update and recommends users to update to the new version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-254686.pdf</id>
    <title>SSA-254686 (Last Update: 2018-10-09): Foreshadow / L1 Terminal Fault Vulnerabilities in Industrial Products</title>
    <updated>2018-10-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-254686.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Security researchers published information on vulnerabilities known as Foreshadow and L1 Terminal Fault (L1TF). These vulnerabilities affect many modern processors from different vendors to a varying degree.&lt;/p&gt;
&lt;p&gt;Several Siemens Industrial Products contain processors that are affected by the vulnerabilities.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-347726.pdf</id>
    <title>SSA-347726 (Last Update: 2018-10-09): Denial-of-Service Vulnerability in SIMATIC S7-1500, SIMATIC S7-1500 Software Controller and SIMATIC ET 200SP Open Controller</title>
    <updated>2018-10-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-347726.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Versions of SIMATIC S7-1500, SIMATIC S7-1500 Software Controller and SIMATIC ET 200 SP Open Controller are affected by a denial-of-service vulnerability. An attacker with network access to the PLC can cause a Denial-of-Service condition on the network stack.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-346262.pdf</id>
    <title>SSA-346262 (Last Update: 2018-10-09): Denial-of-Service in Industrial Products</title>
    <updated>2018-10-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-346262.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Several industrial products are affected by a vulnerability that could allow remote attackers to conduct a Denial-of-Service (DoS) attack by sending specially crafted packets to port 161/udp (SNMP).&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, and recommends that customers update to the new version. Siemens is preparing further updates and recommends specific countermeasures until patches are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-546832.pdf</id>
    <title>SSA-546832 (Last Update: 2018-10-09): Vulnerabilities in Medium Voltage SINAMICS Products</title>
    <updated>2018-10-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-546832.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest updates for medium voltage SINAMICS products fix two security vulnerabilities that could allow an attacker to cause a Denial-of-Service condition either via specially crafted PROFINET DCP broadcast packets or by sending specially crafted packets to port 161/udp (SNMP). Precondition for the PROFINET DCP scenario is a direct Layer 2 access to the affected products. PROFIBUS interfaces are not affected.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-348629.pdf</id>
    <title>SSA-348629 (Last Update: 2018-10-09): Denial-of-Service Vulnerability in SIMATIC PCS 7, SIMATIC WinCC, SIMATIC WinCC Runtime Professional and SIMATIC NET PC Software</title>
    <updated>2018-10-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-348629.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A Denial-of-Service vulnerability has been identified in SIMATIC PCS 7, SIMATIC WinCC, SIMATIC WinCC Runtime Professional and SIMATIC NET PC-Software.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends that customers update to the new version. Siemens is preparing further updates and recommends specific countermeasures until patches are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-179516.pdf</id>
    <title>SSA-179516 (Last Update: 2018-10-09): OpenSSL Vulnerability in Industrial Products</title>
    <updated>2018-10-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-179516.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in OpenSSL affects several Siemens industrial products. Siemens has released updates for some affected products and is working on updates for others.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-597741.pdf</id>
    <title>SSA-597741 (Last Update: 2018-10-09): Vulnerability in iOS App SIMATIC WinCC OA Operator</title>
    <updated>2018-10-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-597741.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The SIMATIC WinCC OA Operator iOS app is affected by a security vulnerability which could allow an attacker to read unencrypted data from the application&#8217;s directory. Precondition for this scenario is that an attacker has physical access to the mobile device.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-979106.pdf</id>
    <title>SSA-979106 (Last Update: 2018-10-09): Vulnerabilities in SIMATIC STEP 7 (TIA Portal) and SIMATIC WinCC (TIA Portal)</title>
    <updated>2018-10-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-979106.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest updates for SIMATIC STEP 7 (TIA Portal) and SIMATIC WinCC (TIA Portal) fix two vulnerabilities. These two vulnerabilities could either allow an attacker with local file write access to manipulate files and cause a Denial-of-service-condition, or execute code both on the manipulated installation and on devices that are configured using the manipulated installation.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-592007.pdf</id>
    <title>SSA-592007 (Last Update: 2018-10-09): Denial-of-Service Vulnerability in Industrial Products</title>
    <updated>2018-10-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-592007.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Several industrial controllers are affected by a security vulnerability that could allow an attacker to cause a Denial-of-Service condition via PROFINET DCP network packets under certain circumstances. Precondition for this scenario is a direct OSI Layer 2 access to the affected products. PROFIBUS interfaces are not affected.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, is working on updates for the remaining affected products and recommends specific countermeasures until fixes are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-268644.pdf</id>
    <title>SSA-268644 (Last Update: 2018-10-09): Spectre-NG (Variants 3a and 4) Vulnerabilities in Industrial Products</title>
    <updated>2018-10-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-268644.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Security researchers published information on vulnerabilities known as Spectre-NG (Variants 3a and 4). These vulnerabilities affect many modern processors from different vendors to a varying degree.&lt;/p&gt;
&lt;p&gt;Several Industrial Products include affected processors and are affected by the vulnerabilities.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-346262.pdf</id>
    <title>SSA-346262 (Last Update: 2018-09-11): Denial-of-Service in Industrial Products</title>
    <updated>2018-09-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-346262.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Several industrial products are affected by a vulnerability that could allow remote attackers to conduct a Denial-of-Service (DoS) attack by sending specially crafted packets to port 161/udp (SNMP).&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, and recommends that customers update to the new version. Siemens is preparing further updates and recommends specific countermeasures until patches are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-179516.pdf</id>
    <title>SSA-179516 (Last Update: 2018-09-11): OpenSSL Vulnerability in Industrial Products</title>
    <updated>2018-09-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-179516.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in OpenSSL affects several Siemens industrial products. Siemens has released updates for some affected products and is working on updates for others.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-168644.pdf</id>
    <title>SSA-168644 (Last Update: 2018-09-11): Spectre and Meltdown Vulnerabilities in Industrial Products</title>
    <updated>2018-09-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-168644.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Security researchers published information on vulnerabilities known as Spectre and Meltdown. These vulnerabilities affect many modern processors from different vendors to a varying degree.&lt;/p&gt;
&lt;p&gt;Several Industrial Products include affected processors and are affected by the vulnerabilities.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-268644.pdf</id>
    <title>SSA-268644 (Last Update: 2018-09-11): Spectre-NG (Variants 3a and 4) Vulnerabilities in Industrial Products</title>
    <updated>2018-09-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-268644.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Security researchers published information on vulnerabilities known as Spectre-NG (Variants 3a and 4). These vulnerabilities affect many modern processors from different vendors to a varying degree.&lt;/p&gt;
&lt;p&gt;Several Industrial Products include affected processors and are affected by the vulnerabilities.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-346256.pdf</id>
    <title>SSA-346256 (Last Update: 2018-09-11): Vulnerability in SIMATIC WinCC OA V3.14 and prior</title>
    <updated>2018-09-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-346256.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest update for SIMATIC WinCC OA V3.14 fixes a vulnerability that could allow an unauthenticated remote user to escalate its privileges in the context of SIMATIC WinCC OA V3.14.&lt;/p&gt;
&lt;p&gt;This vulnerability affects SIMATIC WinCC OA V3.14 and prior. SIMATIC WinCC OA V3.15 and V3.16 are not affected by this vulnerability.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-198330.pdf</id>
    <title>SSA-198330 (Last Update: 2018-09-11): Local Privilege Escalation in TD Keypad Designer</title>
    <updated>2018-09-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-198330.pdf" rel="alternate"/>
    <summary>&lt;p&gt;All versions of the TD Keypad Designer for printing customized lamination sheets for Text Display devices are affected by a DLL hijacking vulnerability that could allow a local low-privileged attacker to escalate his privileges.&lt;/p&gt;
&lt;p&gt;Text Display devices and TD Keypad Designer have been discontinued in 2012 and were replaced by KTP Basic with option Express Design.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-447396.pdf</id>
    <title>SSA-447396 (Last Update: 2018-09-11): Denial-of-Service in SCALANCE X300, SCALANCE X408 and SCALANCE X414</title>
    <updated>2018-09-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-447396.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability has been identified in the integrated web server of SCALANCE X300, SCALANCE X408, and SCALANCE X414. The vulnerability could allow an attacker with network access to the device to cause a Denial-of-Service condition.&lt;/p&gt;
&lt;p&gt;The vulnerability can be triggered with publicly available tools, including vulnerability scanners.&lt;/p&gt;
&lt;p&gt;Siemens provides updates for SCALANCE X300, and SCALANCE X408, and provides mitigations for the SCALANCE X414.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-914382.pdf</id>
    <title>SSA-914382 (Last Update: 2018-09-11): Denial-of-Service Vulnerability in SIMATIC S7-400</title>
    <updated>2018-09-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-914382.pdf" rel="alternate"/>
    <summary>&lt;p&gt;SIMATIC S7-400 CPUs are affected by a security vulnerability which could lead to a Denial-of-Service condition of the PLC if specially crafted packets are received and processed.&lt;/p&gt;
&lt;p&gt;The affected SIMATIC S7-400 CPU hardware versions are in the product cancellation phase or already phased-out. Siemens recommends customers either upgrading to a new version or implementing specific countermeasures.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssb-068644.pdf</id>
    <title>SSB-068644 (Last Update: 2018-08-17): General Customer Information for Speculative Side-Channel Vulnerabilities in Microprocessors</title>
    <updated>2018-08-17T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssb-068644.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Security researchers published information on vulnerabilities known as Spectre, Meltdown, Spectre-NG, Lazy FP State Restore, Spectre V1.1, and L1 Terminal Fault/Foreshadow. These vulnerabilities affect many modern processors from different vendors to a varying degree.&lt;/p&gt;
&lt;p&gt;Siemens is analyzing the impact of these vulnerabilities and of the mitigations released on its own products. If Siemens products are found to be affected, additional product-specific update information will be distributed either via the Siemens ProductCERT website or through Siemens&#8217; customer service organizations if applicable.&lt;/p&gt;
    </summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-168644.pdf</id>
    <title>SSA-168644 (Last Update: 2018-08-07): Spectre and Meltdown Vulnerabilities in Industrial Products</title>
    <updated>2018-08-07T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-168644.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Security researchers published information on vulnerabilities known as Spectre and Meltdown. These vulnerabilities affect many modern processors from different vendors to a varying degree.&lt;/p&gt;
&lt;p&gt;Several Industrial Products include affected processors and are affected by the vulnerabilities.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-179516.pdf</id>
    <title>SSA-179516 (Last Update: 2018-08-07): OpenSSL Vulnerability in Industrial Products</title>
    <updated>2018-08-07T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-179516.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A vulnerability in OpenSSL affects several Siemens industrial products. Siemens has released updates for some affected products and is working on updates for others.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-979106.pdf</id>
    <title>SSA-979106 (Last Update: 2018-08-07): Vulnerabilities in SIMATIC STEP 7 (TIA Portal) and SIMATIC WinCC (TIA Portal)</title>
    <updated>2018-08-07T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-979106.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest updates for SIMATIC STEP 7 (TIA Portal) and SIMATIC WinCC (TIA Portal) fix two vulnerabilities. These two vulnerabilities could either allow an attacker with local file write access to manipulate files and cause a Denial-of-service-condition, or execute code both on the manipulated installation and on devices that are configured using the manipulated installation.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-920962.pdf</id>
    <title>SSA-920962 (Last Update: 2018-08-07): Vulnerabilities in Automation License Manager</title>
    <updated>2018-08-07T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-920962.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest updates for Automation License Manager fix two vulnerabilities. One of them could allow an attacker to execute arbitrary code on the target device, the other one could allow an attacker to abuse the target system for basic network scanning.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-635129.pdf</id>
    <title>SSA-635129 (Last Update: 2018-07-11): Denial-of-Service Vulnerabilities in EN100 Ethernet Communication Module and SIPROTEC 5 relays</title>
    <updated>2018-07-11T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-635129.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The EN100 Ethernet communication module and SIPROTEC 5 relays are affected by security vulnerabilities which could allow an attacker to conduct a Denial-of-Service attack over the network.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, is working on updates for the remaining affected products, and recommends specific countermeasures until fixes are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-197012.pdf</id>
    <title>SSA-197012 (Last Update: 2018-07-03): Vulnerabilities in SICLOCK central plant clocks</title>
    <updated>2018-07-03T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-197012.pdf" rel="alternate"/>
    <summary>&lt;p&gt;SICLOCK TC devices are affected by multiple vulnerabilities that could allow an attacker to cause Denial-of-Service conditions, bypass the authentication, and modify the firmware of the device or the administrative client.&lt;/p&gt;
&lt;p&gt;SICLOCK TC devices are in a phase out process. Siemens recommends mitigations to reduce the risk.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-159860.pdf</id>
    <title>SSA-159860 (Last Update: 2018-06-26): Access Control Vulnerability in IEC 61850 system configurator, DIGSI 5, DIGSI 4, SICAM PAS/PQS, SICAM PQ Analyzer, and SICAM SCC</title>
    <updated>2018-06-26T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-159860.pdf" rel="alternate"/>
    <summary>&lt;p&gt;IEC 61850 system configurator, DIGSI 5, DIGSI 4, SICAM PAS/PQS, SICAM PQ Analyzer, and SICAM SCC products are affected by a security vulnerability which could allow an attacker to either exfiltrate limited data from the system or to execute code with operating system user permissions.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, and recommends that customers update to the new version. Siemens is preparing further updates and recommends specific countermeasures until patches are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-168644.pdf</id>
    <title>SSA-168644 (Last Update: 2018-06-26): Spectre and Meltdown Vulnerabilities in Industrial Products</title>
    <updated>2018-06-26T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-168644.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Security researchers published information on vulnerabilities known as Spectre and Meltdown. These vulnerabilities affect many modern processors from different vendors to a varying degree.&lt;/p&gt;
&lt;p&gt;Several Industrial Products include affected processors and are affected by the vulnerabilities.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-755010.pdf</id>
    <title>SSA-755010 (Last Update: 2018-06-26): Vulnerability in RAPIDLab 1200 and RAPIDPoint 400/500 Blood Gas Analyzers</title>
    <updated>2018-06-26T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-755010.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Siemens Healthineers has become aware of two potential cybersecurity vulnerabilities for the RAPIDLab&#174; 1200 Series and RAPIDPoint&#174; 400/405/500 Blood Gas Analyzers and recommends specific countermeasures to mitigate the risk.&lt;/p&gt;
&lt;p&gt;At the time of advisory publication, no public exploitation of this security vulnerability is known.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-966341.pdf</id>
    <title>SSA-966341 (Last Update: 2018-06-19): SMBv1 Vulnerabilities in Molecular Diagnostics Products from Siemens Healthineers</title>
    <updated>2018-06-19T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-966341.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Select Molecular Diagnostics products from Siemens Healthineers are affected by the Microsoft Windows SMBv1 vulnerabilities. The exploitability of the vulnerabilities depends on the actual configuration and deployment environment of each product.&lt;/p&gt;
&lt;p&gt;Siemens Healthineers has developed solutions for all affected products which are available via customer support. Siemens Healthineers also provides specific countermeasures for systems that have not yet been remediated.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-755010.pdf</id>
    <title>SSA-755010 (Last Update: 2018-06-12): Vulnerability in RAPIDLab 1200 and RAPIDPoint 400/500 Blood Gas Analyzers</title>
    <updated>2018-06-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-755010.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Siemens Healthineers has become aware of two potential cybersecurity vulnerabilities for the RAPIDLab&#174; 1200 Series and RAPIDPoint&#174; 400/405/500 Blood Gas Analyzers and recommends specific countermeasures to mitigate the risk.&lt;/p&gt;
&lt;p&gt;At the time of advisory publication, no public exploitation of this security vulnerability is known.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-323211.pdf</id>
    <title>SSA-323211 (Last Update: 2018-06-12): Vulnerabilities in SIPROTEC 4 and SIPROTEC Compact Devices</title>
    <updated>2018-06-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-323211.pdf" rel="alternate"/>
    <summary>&lt;p&gt;SIPROTEC 4 and SIPROTEC Compact devices are affected by several vulnerabilities. Two of the vulnerabilities could allow attackers to perform a denial-of-service attack under certain conditions.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected products and will update this advisory when new information becomes available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-181018.pdf</id>
    <title>SSA-181018 (Last Update: 2018-06-12): Heap Overflow Vulnerability in SCALANCE X switches, RUGGEDCOM WiMAX, RFID 181-EIP, and SIMATIC RF182C</title>
    <updated>2018-06-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-181018.pdf" rel="alternate"/>
    <summary>&lt;p&gt;SCALANCE X switches, RUGGEDCOM WiMAX, RFID 181-EIP, and SIMATIC RF182C are affected by a vulnerability that could allow an unprivileged attacker located in the same local network segment (OSI Layer 2) to gain system privileges by sending a specially crafted DHCP response to a client's DHCP request.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends that customers update to the new version. Siemens is preparing further updates and recommends specific countermeasures until patches are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-480829.pdf</id>
    <title>SSA-480829 (Last Update: 2018-06-12): Cross-Site-Scripting Vulnerabilities in SCALANCE X Switches</title>
    <updated>2018-06-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-480829.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Two cross-site-scripting (XSS) vulnerabilities were found in the web server of SCALANCE X switches. Siemens recommends updating the firmware to the newest version as soon as possible.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-977428.pdf</id>
    <title>SSA-977428 (Last Update: 2018-06-12): Vulnerabilities in SCALANCE M875</title>
    <updated>2018-06-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-977428.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities have been identified in the web interface of SCALANCE M875. The web interface of SCALANCE M875 could allow Cross-Site Request Forgery (CSRF), stored Cross-Site Scripting (XSS), or command injection attacks if an attacker is authenticated or tricks a legitimate authenticated user into accessing a malicious link.&lt;/p&gt;
&lt;p&gt;Siemens recommends customers to upgrade their hardware, and provides mitigations until hardware upgrades can be applied.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-701708.pdf</id>
    <title>SSA-701708 (Last Update: 2018-06-12): Local Privilege Escalation in Industrial Products</title>
    <updated>2018-06-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-701708.pdf" rel="alternate"/>
    <summary>&lt;p&gt;In non-default configurations several industrial products are affected by a vulnerability that could allow local Microsoft Windows operating system users to escalate their privileges.&lt;/p&gt;
&lt;p&gt;Siemens provides updates for several products and a temporary fix for the remaining affected products. Siemens is working on new versions for the remaining affected products and will update this advisory when new information becomes available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-275839.pdf</id>
    <title>SSA-275839 (Last Update: 2018-06-12): Denial-of-Service Vulnerability in Industrial Products</title>
    <updated>2018-06-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-275839.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Several industrial products are affected by a vulnerability that could allow an attacker to cause a Denial-of-Service condition via PROFINET DCP network packets under certain circumstances. Precondition for this scenario is a direct Layer 2 access to the affected products.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, is working on updates for the remaining affected products and recommends specific countermeasures until fixes are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-566773.pdf</id>
    <title>SSA-566773 (Last Update: 2018-06-12): Vulnerabilities in Building Technologies Products</title>
    <updated>2018-06-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-566773.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The License Management System (LMS), which is used by multiple Siemens' building automation products, includes a vulnerable version of Gemalto Sentinel LDK RTE. Gemalto Sentinel LDK RTE is affected by two vulnerabilities that could allow denial-of-service and a cross-site-scripting vulnerability.&lt;/p&gt;
&lt;p&gt;Siemens recommends updating the affected dongle driver.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-523365.pdf</id>
    <title>SSA-523365 (Last Update: 2018-06-12): Vulnerability in SIMATIC PCS 7</title>
    <updated>2018-06-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-523365.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest software update for SIMATIC PCS 7 fixes a vulnerability, which could allow an attacker to cause a Denial-of-Service (DoS) condition under certain circumstances.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-348629.pdf</id>
    <title>SSA-348629 (Last Update: 2018-06-12): Denial-of-Service Vulnerability in SIMATIC PCS 7, SIMATIC WinCC, SIMATIC WinCC Runtime Professional and SIMATIC NET PC Software</title>
    <updated>2018-06-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-348629.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A Denial-of-Service vulnerability has been identified in SIMATIC PCS 7, SIMATIC WinCC, SIMATIC WinCC Runtime Professional and SIMATIC NET PC-Software.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends that customers update to the new version. Siemens is preparing further updates and recommends specific countermeasures until patches are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-931064.pdf</id>
    <title>SSA-931064 (Last Update: 2018-06-12): Authentication Bypass in SIMATIC Logon</title>
    <updated>2018-06-12T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-931064.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest update for SIMATIC Logon fixes a security vulnerability that could allow attackers to circumvent user authentication under certain conditions.&lt;/p&gt;
&lt;p&gt;SIMATIC WinCC, SIMATIC PCS 7, SIMATIC PDM, and SIMATIC IT Production Suite provide SIMATIC Logon as component of the product. Installing the SIMATIC Logon update fixes the vulnerability for all products mentioned below.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-168644.pdf</id>
    <title>SSA-168644 (Last Update: 2018-05-29): Spectre and Meltdown Vulnerabilities in Industrial Products</title>
    <updated>2018-05-29T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-168644.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Security researchers published information on vulnerabilities known as Spectre and Meltdown. These vulnerabilities affect many modern processors from different vendors to a varying degree.&lt;/p&gt;
&lt;p&gt;Several Industrial Products include affected processors and are affected by the vulnerabilities.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-457058.pdf</id>
    <title>SSA-457058 (Last Update: 2018-05-23): .NET Security Vulnerability in Siveillance VMS</title>
    <updated>2018-05-23T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-457058.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Siemens has released software updates for Siveillance VMS which fix a security vulnerability with the .NET Remoting deserialization that could allow elevation of privileges and/or causing a Denial-of-Service, if affected ports are exposed.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-914382.pdf</id>
    <title>SSA-914382 (Last Update: 2018-05-15): Denial-of-Service Vulnerability in SIMATIC S7-400</title>
    <updated>2018-05-15T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-914382.pdf" rel="alternate"/>
    <summary>&lt;p&gt;SIMATIC S7-400 CPUs are affected by a security vulnerability which could lead to a Denial-of-Service condition of the PLC if specially crafted packets are received and processed.&lt;/p&gt;
&lt;p&gt;The affected SIMATIC S7-400 CPU hardware versions are in the product cancellation phase or already phased-out. Siemens recommends customers either upgrading to a new version or implementing specific countermeasures.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-346262.pdf</id>
    <title>SSA-346262 (Last Update: 2018-05-15): Denial-of-Service in Industrial Products</title>
    <updated>2018-05-15T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-346262.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Several industrial products are affected by a vulnerability that could allow remote attackers to conduct a Denial-of-Service (DoS) attack by sending specially crafted packets to port 161/udp (SNMP).&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, and recommends that customers update to the new version. Siemens is preparing further updates and recommends specific countermeasures until patches are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-203306.pdf</id>
    <title>SSA-203306 (Last Update: 2018-05-15): Password Vulnerabilities in SIPROTEC 4 and SIPROTEC Compact Relay Families</title>
    <updated>2018-05-15T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-203306.pdf" rel="alternate"/>
    <summary>&lt;p&gt;SIPROTEC 4 and SIPROTEC Compact devices could allow access authorization passwords to be reconstructed or overwritten via engineering mechanisms that involve DIGSI 4 and EN100 Ethernet communication modules.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, is working on updates for the remaining affected products, and recommends specific countermeasures until fixes are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-547990.pdf</id>
    <title>SSA-547990 (Last Update: 2018-05-15): Information Disclosure Vulnerabilities in SIPROTEC 4 and SIPROTEC Compact</title>
    <updated>2018-05-15T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-547990.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Information disclosure vulnerabilities in SIPROTEC 4 and SIPROTEC Compact devices could allow an attacker to extract sensitive device information under certain conditions.&lt;/p&gt;
&lt;p&gt;Siemens has released firmware updates for EN100 Ethernet module included in SIPROTEC 4 and SIPROTEC Compact devices. Siemens has also released a firmware update for SIPROTEC Compact 7SJ80 with Ethernet Service Interface on Port A. For remaining affected devices, countermeasures are recommended. Siemens will update this advisory when new information becomes available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-689071.pdf</id>
    <title>SSA-689071 (Last Update: 2018-05-09): DNSMasq Vulnerabilities in SCALANCE W1750D, SCALANCE M800 and SCALANCE S615</title>
    <updated>2018-05-09T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-689071.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities have been identified in SCALANCE W1750D, SCALANCE M800, and SCALANCE S615 devices. The highest scored vulnerability could allow a remote attacker to crash the DNS service or execute arbitrary code. The attacker must be able to craft malicious DNS responses and inject them into the network in order to exploit the vulnerability. Siemens is working on updates for the affected devices, and recommends specific countermeasures until patches are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-346262.pdf</id>
    <title>SSA-346262 (Last Update: 2018-05-03): Denial-of-Service in Industrial Products</title>
    <updated>2018-05-03T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-346262.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Several industrial products are affected by a vulnerability that could allow remote attackers to conduct a Denial-of-Service (DoS) attack by sending specially crafted packets to port 161/udp (SNMP).&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, and recommends that customers update to the new version. Siemens is preparing further updates and recommends specific countermeasures until patches are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-293562.pdf</id>
    <title>SSA-293562 (Last Update: 2018-05-03): Vulnerabilities in Industrial Products</title>
    <updated>2018-05-03T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-293562.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Several industrial devices are affected by two vulnerabilities that could allow an attacker to cause a Denial-of-Service condition via PROFINET DCP network packets under certain circumstances. Precondition for this scenario is a direct Layer 2 access to the affected products. PROFIBUS interfaces are not affected.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, is working on updates for the remaining affected products and recommends specific countermeasures until fixes are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-546832.pdf</id>
    <title>SSA-546832 (Last Update: 2018-05-03): Vulnerabilities in Medium Voltage SINAMICS Products</title>
    <updated>2018-05-03T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-546832.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest updates for medium voltage SINAMICS products fix two security vulnerabilities that could allow an attacker to cause a Denial-of-Service condition either via specially crafted PROFINET DCP broadcast packets or by sending specially crafted packets to port 161/udp (SNMP). Precondition for the PROFINET DCP scenario is a direct Layer 2 access to the affected products. PROFIBUS interfaces are not affected.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-468514.pdf</id>
    <title>SSA-468514 (Last Update: 2018-05-03): Improper Certificate Validation Vulnerability in Siveillance VMS Video Mobile App for Android and iOS</title>
    <updated>2018-05-03T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-468514.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest update for the Siveillance VMS Video mobile app for Android and iOS fixes a security vulnerability that could allow an attacker in a privileged network position to read data from and write data to the encrypted communication channel between the app and a server. Precondition for this scenario is that an attacker is able to intercept the communication channel between the affected app and a server, and is also able to generate a certificate that results for the validation algorithm in a checksum identical to a trusted certificate.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-457058.pdf</id>
    <title>SSA-457058 (Last Update: 2018-05-03): .NET Security Vulnerability in Siveillance VMS</title>
    <updated>2018-05-03T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-457058.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Siemens has released software updates for Siveillance VMS which fix a security vulnerability with the .NET Remoting deserialization that could allow elevation of privileges and/or causing a Denial-of-Service, if affected ports are exposed.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-892715.pdf</id>
    <title>SSA-892715 (Last Update: 2018-04-18): ME, SPS and TXE Vulnerabilities in SIMATIC IPCs </title>
    <updated>2018-04-18T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-892715.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Intel has identified vulnerabilities in Intel Management Engine (ME), Intel Server Platform Services (SPS), and Intel Trusted Execution Engine (TXE). As several Siemens Industrial PCs use Intel technology, they are also affected.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected Industrial PCs.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-597741.pdf</id>
    <title>SSA-597741 (Last Update: 2018-04-18): Vulnerability in iOS App SIMATIC WinCC OA Operator</title>
    <updated>2018-04-18T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-597741.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The SIMATIC WinCC OA Operator iOS app is affected by a security vulnerability which could allow an attacker to read unencrypted data from the application&#8217;s directory. Precondition for this scenario is that an attacker has physical access to the mobile device.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-348629.pdf</id>
    <title>SSA-348629 (Last Update: 2018-04-18): Denial-of-Service Vulnerability in SIMATIC PCS 7, SIMATIC WinCC, SIMATIC WinCC Runtime Professional and SIMATIC NET PC Software</title>
    <updated>2018-04-18T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-348629.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A Denial-of-Service vulnerability has been identified in SIMATIC PCS 7, SIMATIC WinCC, SIMATIC WinCC Runtime Professional and SIMATIC NET PC-Software.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends that customers update to the new version. Siemens is preparing further updates and recommends specific countermeasures until patches are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-168644.pdf</id>
    <title>SSA-168644 (Last Update: 2018-04-18): Spectre and Meltdown Vulnerabilities in Industrial Products</title>
    <updated>2018-04-18T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-168644.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Security researchers published information on vulnerabilities known as Spectre and Meltdown. These vulnerabilities affect many modern processors from different vendors to a varying degree.&lt;/p&gt;
&lt;p&gt;Several Industrial Products include affected processors and are affected by the vulnerabilities.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-845879.pdf</id>
    <title>SSA-845879 (Last Update: 2018-04-17): Firmware Downgrade Vulnerability in EN100 Ethernet Communication Module for SIPROTEC 4, SIPROTEC Compact and Reyrolle</title>
    <updated>2018-04-17T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-845879.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The EN100 Ethernet communication module, which is an optional extension for SIPROTEC 4, SIPROTEC Compact and Reyrolle devices, allows an unauthenticated upload of firmware updates to the communication module in affected versions.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, is working on updates for the remaining affected products, and recommends specific countermeasures until fixes are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-203306.pdf</id>
    <title>SSA-203306 (Last Update: 2018-04-17): Password Vulnerabilities in SIPROTEC 4 and SIPROTEC Compact Relay Families</title>
    <updated>2018-04-17T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-203306.pdf" rel="alternate"/>
    <summary>&lt;p&gt;SIPROTEC 4 and SIPROTEC Compact devices could allow access authorization passwords to be reconstructed or overwritten via engineering mechanisms that involve DIGSI 4 and EN100 Ethernet communication modules.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, is working on updates for the remaining affected products, and recommends specific countermeasures until fixes are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-901333.pdf</id>
    <title>SSA-901333 (Last Update: 2018-04-05): KRACK Attacks Vulnerabilities in Industrial Products</title>
    <updated>2018-04-05T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-901333.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities affecting WPA/WPA2 implementations were identified by a researcher and publicly disclosed under the term &amp;quot;Key Reinstallation Attacks&amp;quot; (KRACK). These vulnerabilities could potentially allow an attacker within the radio range of the wireless network to decrypt, replay or inject forged network packets into the wireless communication.&lt;/p&gt;
&lt;p&gt;Several Siemens Industrial products use WPA/WPA2 and are therefore affected by some of the vulnerabilities.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-689071.pdf</id>
    <title>SSA-689071 (Last Update: 2018-04-05): DNSMasq Vulnerabilities in SCALANCE W1750D, SCALANCE M800 and SCALANCE S615</title>
    <updated>2018-04-05T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-689071.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities have been identified in SCALANCE W1750D, SCALANCE M800, and SCALANCE S615 devices. The highest scored vulnerability could allow a remote attacker to crash the DNS service or execute arbitrary code. The attacker must be able to craft malicious DNS responses and inject them into the network in order to exploit the vulnerability. Siemens is working on updates for the affected devices, and recommends specific countermeasures until patches are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-727467.pdf</id>
    <title>SSA-727467 (Last Update: 2018-04-03): Vulnerabilities in Building Technologies Products</title>
    <updated>2018-04-03T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-727467.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The License Management System (LMS), which is used by multiple Siemens' building automation products, includes a vulnerable version of Gemalto Sentinel LDK RTE. Gemalto Sentinel LDK RTE is affected by multiple vulnerabilities that could allow remote code execution.&lt;/p&gt;
&lt;p&gt;Siemens recommends to update the License Management System used by these products to the newest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-727467.pdf</id>
    <title>SSA-727467 (Last Update: 2018-03-28): Vulnerabilities in Building Technologies Products</title>
    <updated>2018-03-28T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-727467.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The License Management System (LMS), which is used by multiple Siemens' building automation products, includes a vulnerable version of Gemalto Sentinel LDK RTE. Gemalto Sentinel LDK RTE is affected by multiple vulnerabilities that could allow remote code execution.&lt;/p&gt;
&lt;p&gt;Siemens recommends to update the License Management System used by these products to the newest version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-110922.pdf</id>
    <title>SSA-110922 (Last Update: 2018-03-27): Web Vulnerability in TIM 1531 IRC</title>
    <updated>2018-03-27T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-110922.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest update for TIM 1531 IRC fixes a security vulnerability that could allow unauthorized remote attackers to perform administrative operations on the device.&lt;/p&gt;
&lt;p&gt;Siemens recommends updating as soon as possible.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-592007.pdf</id>
    <title>SSA-592007 (Last Update: 2018-03-27): Denial-of-Service Vulnerability in Industrial Products</title>
    <updated>2018-03-27T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-592007.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Several industrial controllers are affected by a security vulnerability that could allow an attacker to cause a Denial-of-Service condition via PROFINET DCP network packets under certain circumstances. Precondition for this scenario is a direct OSI Layer 2 access to the affected products. PROFIBUS interfaces are not affected.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, is working on updates for the remaining affected products and recommends specific countermeasures until fixes are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-348629.pdf</id>
    <title>SSA-348629 (Last Update: 2018-03-27): Denial-of-Service Vulnerability in SIMATIC PCS 7, SIMATIC WinCC, SIMATIC WinCC Runtime Professional and SIMATIC NET PC Software</title>
    <updated>2018-03-27T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-348629.pdf" rel="alternate"/>
    <summary>&lt;p&gt;A Denial-of-Service vulnerability has been identified in SIMATIC PCS 7, SIMATIC WinCC, SIMATIC WinCC Runtime Professional and SIMATIC NET PC-Software.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products and recommends that customers update to the new version. Siemens is preparing further updates and recommends specific countermeasures until patches are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-592007.pdf</id>
    <title>SSA-592007 (Last Update: 2018-03-20): Denial-of-Service Vulnerability in Industrial Products</title>
    <updated>2018-03-20T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-592007.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Several industrial controllers are affected by a security vulnerability that could allow an attacker to cause a Denial-of-Service condition via PROFINET DCP network packets under certain circumstances. Precondition for this scenario is a direct OSI Layer 2 access to the affected products. PROFIBUS interfaces are not affected.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, is working on updates for the remaining affected products and recommends specific countermeasures until fixes are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-822928.pdf</id>
    <title>SSA-822928 (Last Update: 2018-03-20): Access Control Vulnerability in SIMATIC WinCC OA UI Mobile App for Android and iOS</title>
    <updated>2018-03-20T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-822928.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest update for the Android app and iOS app SIMATIC WinCC OA UI fix a security vulnerability which could allow read and write access from one HMI project cache folder to other HMI project cache folders within the app's sandbox on the same mobile device. This includes HMI project cache folders of other configured WinCC OA servers. Precondition for this scenario is that an attacker tricks an app user to connect to an attacker-controlled WinCC OA server.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-168644.pdf</id>
    <title>SSA-168644 (Last Update: 2018-03-20): Spectre and Meltdown Vulnerabilities in Industrial Products</title>
    <updated>2018-03-20T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-168644.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Security researchers published information on vulnerabilities known as Spectre and Meltdown. These vulnerabilities affect many modern processors from different vendors to a varying degree.&lt;/p&gt;
&lt;p&gt;Several Industrial Products include affected processors and are affected by the vulnerabilities.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-824231.pdf</id>
    <title>SSA-824231 (Last Update: 2018-03-20): Unauthenticated Firmware Upload Vulnerability in Desigo PX Controllers</title>
    <updated>2018-03-20T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-824231.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest update for Desigo PXC devices fixes a vulnerability that could allow unauthenticated remote attackers to upload malicious firmware without prior authentication.&lt;/p&gt;
&lt;p&gt;Siemens recommends updating to the new version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-168644.pdf</id>
    <title>SSA-168644 (Last Update: 2018-03-15): Spectre and Meltdown Vulnerabilities in Industrial Products</title>
    <updated>2018-03-15T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-168644.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Security researchers published information on vulnerabilities known as Spectre and Meltdown. These vulnerabilities affect many modern processors from different vendors to a varying degree.&lt;/p&gt;
&lt;p&gt;Several Industrial Products include affected processors and are affected by the vulnerabilities.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-470231.pdf</id>
    <title>SSA-470231 (Last Update: 2018-03-15): TPM Vulnerability in SIMATIC IPCs</title>
    <updated>2018-03-15T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-470231.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Several SIMATIC IPCs include a version of Infineon's Trusted Platform Module (TPM) firmware that mishandles RSA key generation. This makes it easier for attackers to conduct cryptographic attacks against the key material.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected Industrial PCs.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-323211.pdf</id>
    <title>SSA-323211 (Last Update: 2018-03-15): Vulnerabilities in SIPROTEC 4 and SIPROTEC Compact Devices</title>
    <updated>2018-03-15T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-323211.pdf" rel="alternate"/>
    <summary>&lt;p&gt;SIPROTEC 4 and SIPROTEC Compact devices are affected by several vulnerabilities. Two of the vulnerabilities could allow attackers to perform a denial-of-service attack under certain conditions.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, is working on updates for the remaining affected products, and recommends specific countermeasures until fixes are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-203306.pdf</id>
    <title>SSA-203306 (Last Update: 2018-03-08): Password Vulnerabilities in SIPROTEC 4 and SIPROTEC Compact Relay Families</title>
    <updated>2018-03-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-203306.pdf" rel="alternate"/>
    <summary>&lt;p&gt;SIPROTEC 4 and SIPROTEC Compact devices could allow access authorization passwords to be reconstructed or overwritten via engineering mechanisms that involve DIGSI 4 and EN100 Ethernet communication modules.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, is working on updates for the remaining affected products, and recommends specific countermeasures until fixes are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-845879.pdf</id>
    <title>SSA-845879 (Last Update: 2018-03-08): Firmware Downgrade Vulnerability in EN100 Ethernet Communication Module for SIPROTEC 4, SIPROTEC Compact and Reyrolle</title>
    <updated>2018-03-08T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-845879.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The EN100 Ethernet communication module, which is an optional extension for SIPROTEC 4, SIPROTEC Compact and Reyrolle devices, allows an unauthenticated upload of firmware updates to the communication module in affected versions.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, is working on updates for the remaining affected products, and recommends specific countermeasures until fixes are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-293562.pdf</id>
    <title>SSA-293562 (Last Update: 2018-03-06): Vulnerabilities in Industrial Products</title>
    <updated>2018-03-06T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-293562.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Several industrial devices are affected by two vulnerabilities that could allow an attacker to cause a Denial-of-Service condition via PROFINET DCP network packets under certain circumstances. Precondition for this scenario is a direct Layer 2 access to the affected products. PROFIBUS interfaces are not affected.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, is working on updates for the remaining affected products and recommends specific countermeasures until fixes are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-892715.pdf</id>
    <title>SSA-892715 (Last Update: 2018-02-22): ME, SPS and TXE Vulnerabilities in SIMATIC IPCs </title>
    <updated>2018-02-22T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-892715.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Intel has identified vulnerabilities in Intel Management Engine (ME), Intel Server Platform Services (SPS), and Intel Trusted Execution Engine (TXE). As several Siemens Industrial PCs use Intel technology, they are also affected.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected Industrial PCs.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-275839.pdf</id>
    <title>SSA-275839 (Last Update: 2018-02-22): Denial-of-Service Vulnerability in Industrial Products</title>
    <updated>2018-02-22T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-275839.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Several industrial products are affected by a vulnerability that could allow an attacker to cause a Denial-of-Service condition via PROFINET DCP network packets under certain circumstances. Precondition for this scenario is a direct Layer 2 access to the affected products.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, is working on updates for the remaining affected products and recommends specific countermeasures until fixes are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-701903.pdf</id>
    <title>SSA-701903 (Last Update: 2018-02-22): SMBv1 Vulnerabilities in Ultrasound Products from Siemens Healthineers</title>
    <updated>2018-02-22T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-701903.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Select Ultrasound products from Siemens Healthineers are affected by the Microsoft Windows SMBv1 vulnerabilities. The exploitability of the vulnerabilities depends on the actual configuration and deployment environment of each product.&lt;/p&gt;
&lt;p&gt;Siemens Healthineers provides updates for the affected products, and recommends specific countermeasures until patches can be applied.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-127490.pdf</id>
    <title>SSA-127490 (Last Update: 2018-02-22): Vulnerabilities in SIMATIC WinCC Add-Ons</title>
    <updated>2018-02-22T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-127490.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Multiple SIMATIC WinCC Add-Ons released in 2015 and earlier include a vulnerable version of Gemalto Sentinel LDK RTE. Gemalto Sentinel LDK RTE is affected by a vulnerability that could allow remote code execution. Siemens recommends to update the affected software component Gemalto Sentinel LDK RTE.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-346262.pdf</id>
    <title>SSA-346262 (Last Update: 2018-02-22): Denial-of-Service in Industrial Products</title>
    <updated>2018-02-22T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-346262.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Several industrial products are affected by a vulnerability that could allow remote attackers to conduct a Denial-of-Service (DoS) attack by sending specially crafted packets to port 161/udp (SNMP).&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, and recommends that customers update to the new version. Siemens is preparing further updates and recommends specific countermeasures until patches are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-168644.pdf</id>
    <title>SSA-168644 (Last Update: 2018-02-22): Spectre and Meltdown Vulnerabilities in Industrial Products</title>
    <updated>2018-02-22T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-168644.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Security researchers published information on vulnerabilities known as Spectre and Meltdown. These vulnerabilities affect many modern processors from different vendors to a varying degree.&lt;/p&gt;
&lt;p&gt;Several Industrial Products include affected processors and are affected by the vulnerabilities.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-470231.pdf</id>
    <title>SSA-470231 (Last Update: 2018-02-22): TPM Vulnerability in SIMATIC IPCs</title>
    <updated>2018-02-22T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-470231.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Several SIMATIC IPCs include a version of Infineon's Trusted Platform Module (TPM) firmware that mishandles RSA key generation. This makes it easier for attackers to conduct cryptographic attacks against the key material.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for the affected Industrial PCs.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-856721.pdf</id>
    <title>SSA-856721 (Last Update: 2018-02-22): Vulnerability in RUGGEDCOM Discovery Protocol (RCDP) of Industrial Communication Devices</title>
    <updated>2018-02-22T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-856721.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The RUGGEDCOM RCDP protocol is not properly configured after commissioning of RUGGEDCOM ROS based devices and some SCALANCE X switch models and could allow unauthenticated remote users to perform administrative operations. An attacker must be in the same adjacent network and the RCDP daemon must be enabled in order to exploit the vulnerability.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for all affected products and recommends that customers update to the new versions.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-824231.pdf</id>
    <title>SSA-824231 (Last Update: 2018-02-05): Unauthenticated Firmware Upload Vulnerability in Desigo PXC</title>
    <updated>2018-02-05T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-824231.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest update for Desigo PXC devices fixes a vulnerability that could allow unauthenticated remote attackers to upload malicious firmware without prior authentication.&lt;/p&gt;
&lt;p&gt;Siemens recommends updating to the new version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-651454.pdf</id>
    <title>SSA-651454 (Last Update: 2018-01-25): Vulnerabilities in TeleControl Server Basic</title>
    <updated>2018-01-25T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-651454.pdf" rel="alternate"/>
    <summary>&lt;p&gt;The latest update for TeleControl Server Basic resolves three vulnerabilities. One of these vulnerabilities could allow an authenticated attacker with network access to escalate his privileges and perform administrative actions.&lt;/p&gt;
&lt;p&gt;Siemens recommends updating to the new version.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-731239.pdf</id>
    <title>SSA-731239 (Last Update: 2018-01-24): Vulnerabilities in SIMATIC S7-300 and S7-400 CPUs</title>
    <updated>2018-01-24T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-731239.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Two vulnerabilities have been identified in SIMATIC S7-300 and S7-400 CPU families. One vulnerability could lead to a Denial-of-Service, the other vulnerability could result in credential disclosure.&lt;/p&gt;
&lt;p&gt;Siemens recommends specific mitigations. Siemens will update this advisory when new information becomes available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-901333.pdf</id>
    <title>SSA-901333 (Last Update: 2018-01-24): KRACK Attacks Vulnerabilities in Industrial Products</title>
    <updated>2018-01-24T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-901333.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Multiple vulnerabilities affecting WPA/WPA2 implementations were identified by a researcher and publicly disclosed under the term &amp;quot;Key Reinstallation Attacks&amp;quot; (KRACK). These vulnerabilities could potentially allow an attacker within the radio range of the wireless network to decrypt, replay or inject forged network packets into the wireless communication.&lt;/p&gt;
&lt;p&gt;Several Siemens Industrial products use WPA/WPA2 and are therefore affected by some of the vulnerabilities.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-284673.pdf</id>
    <title>SSA-284673 (Last Update: 2018-01-18): Vulnerability in Industrial Products</title>
    <updated>2018-01-18T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-284673.pdf" rel="alternate"/>
    <summary>&lt;p&gt;Several industrial devices are affected by a vulnerability that could allow an attacker to cause a Denial-of-Service condition via PROFINET DCP network packets under certain circumstances. Precondition for this scenario is a direct Layer 2 access to the affected products. PROFIBUS interfaces are not affected.&lt;/p&gt;
&lt;p&gt;Siemens has released updates for several affected products, is working on updates for the remaining affected products and recommends specific countermeasures until fixes are available.&lt;/p&gt;
</summary>
  </entry>
  <entry>
    <id>https://cert-portal.siemens.com/productcert/pdf/ssa-701708.pdf</id>
    <title>SSA-701708 (Last Update: 2018-01-18): Local Privilege Escalation in Industrial Products</title>
    <updated>2018-01-18T00:00:00+00:00</updated>
    <link href="https://cert-portal.siemens.com/productcert/pdf/ssa-701708.pdf" rel="alternate"/>
    <summary>&lt;p&gt;In non-default configurations several industrial products are affected by a vulnerability that could allow local Microsoft Windows operating system users to escalate their privileges.&lt;/p&gt;
&lt;p&gt;Siemens provides updates for several products and a temporary fix for the remaining affected products. Siemens is working on new versions for the remaining affected products and will update this advisory when new information becomes available.&lt;/p&gt;
</summary>
  </entry>
</feed>