ICSA-20-042-12
·
Published 2020-02-11
·
View on CISA ICS-CERT ↗
Siemens SIPROTEC 4 and SIPROTEC Compact
CVSS 7.5
HIGH
CVEs (1)
Remediations
- For relays equipped with EN100 Ethernet communication modules having IEC 61850 firmware version V4.30 and higher, activate DTLS-secured communication in DIGSI 4 and in the EN100 module, and set a connection password in the EN100 module to permit only authenticated users to access the relay over the network.
- Limit access to port 50000/UDP.
Affected Vendors
Siemens
Affected Products (1)
Siemens
·
SIPROTEC 4 and SIPROTEC Compact relays equipped with EN100 Ethernet communication modules
vers:all/*
Affected Sectors
Multiple
Get alerted to advisories like this
OTWarden monitors CISA, BSI, Siemens, Rockwell and more — and emails you within 2 hours when your vendors are affected.
Start free trial Learn more