← Back to home
ICSA-18-018-01A  ·  Published 2018-02-22  ·  View on CISA ICS-CERT ↗

ICSA-18-018-01A Siemens SIMATIC WinCC Add-On (Update A)

CVSS 9.8 CRITICAL

Remediations

  • Update License Manager software - Download: https://supportportal.gemalto.com/csm/?id=kb_article&sys_id=a459d328dba207c8fe0aff3dbf9619ce
  • Siemens has identified the following specific workarounds and mitigations thatcustomers can apply to reduce the risk:guidelines (seein order to run the devices in a protected IT environment. It is advised to configure the environment according to our operational https://www.siemens.com/cert/operational-guidelines-industrial-security)

Affected Vendors

Siemens

Affected Products (16)

Siemens · SIMATIC WinCC Add-On Historian CONNECT ALARM <=V5.x
Siemens · SIMATIC WinCC Add-On PI CONNECT ALARM <=V2.x
Siemens · SIMATIC WinCC Add-On PI CONNECT AUDIT TRAIL <=V1.x
Siemens · SIMATIC WinCC Add-On PM-AGENT <=V5.x
Siemens · SIMATIC WinCC Add-On PM-ANALYZE <=V7.x
Siemens · SIMATIC WinCC Add-On PM-CONTROL <=V10.x
Siemens · SIMATIC WinCC Add-On PM-MAINT <=V9.x
Siemens · SIMATIC WinCC Add-On PM-OPEN EXPORT <=V7.x
Siemens · SIMATIC WinCC Add-On PM-OPEN HOST-S <=V7.x
Siemens · SIMATIC WinCC Add-On PM-OPEN IMPORT <=V6.x
Siemens · SIMATIC WinCC Add-On PM-OPEN PI <=V7.x
Siemens · SIMATIC WinCC Add-On PM-OPEN PV02 <=V1.x
Siemens · SIMATIC WinCC Add-On PM-OPEN TCP/IP <=V8.x
Siemens · SIMATIC WinCC Add-On PM-QUALITY <=V9.x
Siemens · SIMATIC WinCC Add-On SICEMENT IT MIS <=V7.x
Siemens · SIMATIC WinCC Add-On SIPAPER IT MIS <=V7.x

Affected Sectors

Multiple

Get alerted to advisories like this

OTWarden monitors CISA, BSI, Siemens, Rockwell and more — and emails you within 2 hours when your vendors are affected.

Start free trial Learn more