← Back to home
ICSA-18-081-01  ·  Published 2018-03-20  ·  View on CISA ICS-CERT ↗

ICSA-18-081-01 Siemens SIMATIC WinCC OA UI Mobile App

CVSS 5.1 MEDIUM

CVEs (1)

Remediations

  • Update to V3.15.10 - Download: https://play.google.com/store/apps/details?id=com.siemens.winccoaui
  • Update to V3.15.10 - Download: https://itunes.apple.com/us/app/simatic-wincc-oa-ui/id1073943068
  • Siemens has identified the following specific workarounds and mitigations thatcustomers can apply to reduce the risk:for maintaining a secured SIMATIC WinCC OA environment. Only connect to trusted WinCC OA Server
  • Siemens has identified the following specific workarounds and mitigations thatcustomers can apply to reduce the risk:for maintaining a secured SIMATIC WinCC OA environment. Follow the SIMATIC WinCC OA Security Guideline (available at https://portal.etm.at/index.php?option=com_phocadownload&view=category&id=52:security&Itemid=81)

Affected Vendors

Siemens

Affected Products (2)

Siemens · SIMATIC WinCC OA UI for Android <V3.15.10
Siemens · SIMATIC WinCC OA UI for iOS <V3.15.10

Affected Sectors

Multiple

Get alerted to advisories like this

OTWarden monitors CISA, BSI, Siemens, Rockwell and more — and emails you within 2 hours when your vendors are affected.

Start free trial Learn more