ICSA-18-018-01A
·
Published 2018-02-22
·
View on CISA ICS-CERT ↗
ICSA-18-018-01A Siemens SIMATIC WinCC Add-On (Update A)
CVSS 9.8
CRITICAL
CVEs (8)
Remediations
- Update License Manager software - Download: https://supportportal.gemalto.com/csm/?id=kb_article&sys_id=a459d328dba207c8fe0aff3dbf9619ce
- Siemens has identified the following specific workarounds and mitigations thatcustomers can apply to reduce the risk:guidelines (seein order to run the devices in a protected IT environment. It is advised to configure the environment according to our operational https://www.siemens.com/cert/operational-guidelines-industrial-security)
Affected Vendors
Siemens
Affected Products (16)
Siemens
·
SIMATIC WinCC Add-On Historian CONNECT ALARM
<=V5.x
Siemens
·
SIMATIC WinCC Add-On PI CONNECT ALARM
<=V2.x
Siemens
·
SIMATIC WinCC Add-On PI CONNECT AUDIT TRAIL
<=V1.x
Siemens
·
SIMATIC WinCC Add-On PM-AGENT
<=V5.x
Siemens
·
SIMATIC WinCC Add-On PM-ANALYZE
<=V7.x
Siemens
·
SIMATIC WinCC Add-On PM-CONTROL
<=V10.x
Siemens
·
SIMATIC WinCC Add-On PM-MAINT
<=V9.x
Siemens
·
SIMATIC WinCC Add-On PM-OPEN EXPORT
<=V7.x
Siemens
·
SIMATIC WinCC Add-On PM-OPEN HOST-S
<=V7.x
Siemens
·
SIMATIC WinCC Add-On PM-OPEN IMPORT
<=V6.x
Siemens
·
SIMATIC WinCC Add-On PM-OPEN PI
<=V7.x
Siemens
·
SIMATIC WinCC Add-On PM-OPEN PV02
<=V1.x
Siemens
·
SIMATIC WinCC Add-On PM-OPEN TCP/IP
<=V8.x
Siemens
·
SIMATIC WinCC Add-On PM-QUALITY
<=V9.x
Siemens
·
SIMATIC WinCC Add-On SICEMENT IT MIS
<=V7.x
Siemens
·
SIMATIC WinCC Add-On SIPAPER IT MIS
<=V7.x
Affected Sectors
Multiple
Get alerted to advisories like this
OTWarden monitors CISA, BSI, Siemens, Rockwell and more — and emails you within 2 hours when your vendors are affected.
Start free trial Learn more