Siemens Alert
2379Warning Date
Severity Level
Warning Number
Target Sector
9 May, 2023
● Critical
2023-5579
All
Siemens has released security updates to address multiple vulnerabilities in the following products:
- SCALANCE LPE9403
- SCALANCE W1750D
- SIMATIC Cloud Connect 7
- Siveillance Video 2020
- Siveillance Video 2021
- Siveillance Video 2022
- Siveillance Video 2023
- Solid Edge SE2023
An attacker could exploit these vulnerabilities and achieve the following:
- Command Injection
- Heap-based Buffer Overflow
- Path Traversal
- Improper Input Validation
- Deserialization of Untrusted Data
The CERT team encourages users to update affected products and review Siemens security advisory:
- https://cert-portal.siemens.com/productcert/html/ssa-325383.html
- https://cert-portal.siemens.com/productcert/html/ssa-516174.html
- https://cert-portal.siemens.com/productcert/html/ssa-555292.html
- https://cert-portal.siemens.com/productcert/html/ssa-789345.html
- https://cert-portal.siemens.com/productcert/html/ssa-932528.html