ICSA-13-169-03
·
Published 2025-06-06
·
View on CISA ICS-CERT ↗
Siemens COMOS Permissions, Privileges, and Access Controls
CVSS 4.6
MEDIUM
CVEs (1)
Remediations
- Siemens has produced software updates, 9.2.0.6.10 for Version 9.2 and 10.0.3.0.4 for Version 10.0, that resolve this vulnerability. Siemens recommends that asset owners and operators contact Siemens customer support to acquire the software updates.
- Siemens contact details for the customer support are available at: (http://support.automation.siemens.com/WW/view/en/16605032)
- Siemens security advisory is located here: (https://cert-portal.siemens.com/productcert/pdf/ssa-194865.pdf)
Affected Vendors
Siemens
Affected Products (2)
Siemens
·
COMOS 9.2
<v092_Upd06_Patch010_9.2.0.6.10
Siemens
·
COMOS 10.0
<V100_SP03_Patch004_10.0.3.0.4
Get alerted to advisories like this
OTWarden monitors CISA, BSI, Siemens, Rockwell and more — and emails you within 2 hours when your vendors are affected.
Start free trial Learn more