← Back to home
ICSA-20-042-07  ·  Published 2022-12-13  ·  View on CISA ICS-CERT ↗

Siemens SCALANCE X Switches (Update B)

CVSS 4.2 MEDIUM

CVEs (1)

Remediations

  • Only access links from trusted sources in the browser you use to configure the SCALANCE X switches.
  • Upgrade hardware to successor product from SCALANCE SC-600 family ( https://support.industry.siemens.com/cs/document/109756957) and apply patches when available, or follow recommendations from section Workarounds and Mitigations
  • Update to V4.1.3 or later version
  • Update to V5.2.4 or later version
  • Update to V5.5.0 or later version
  • Update to V4.1 or later version Update is only available via Siemens Support contact
  • Update to V3.2.7 or later version

Affected Vendors

Siemens

Affected Products (8)

Siemens · SCALANCE S602 <V4.1
Siemens · SCALANCE S612 <V4.1
Siemens · SCALANCE S623 <V4.1
Siemens · SCALANCE S627-2M <V4.1
Siemens · SCALANCE X-200 switch family (incl. SIPLUS NET variants) <5.2.4
Siemens · SCALANCE X-200IRT switch family (incl. SIPLUS NET variants) <V5.5.0
Siemens · SCALANCE X-200RNA switch family <V3.2.7
Siemens · SCALANCE X-300 switch family (incl. X408 and SIPLUS NET variants) <4.1.3

Affected Sectors

Multiple

Get alerted to advisories like this

OTWarden monitors CISA, BSI, Siemens, Rockwell and more — and emails you within 2 hours when your vendors are affected.

Start free trial Learn more