← Back to home
ICSA-20-070-02  ·  Published 2020-03-10  ·  View on CISA ICS-CERT ↗

Siemens SIMATIC S7-300 CPUs and SINUMERIK Controller over Profinet (Update A)

CVSS 7.5 HIGH

CVEs (1)

Remediations

  • Make sure that access to port 102/tcp is restricted e.g.'with an external firewall.
  • Update to V3.X.17
  • Update to V1.1.8
  • Update to V1.1.1
  • Update to V4.8.6
  • Update to V4.94

Affected Vendors

Siemens

Affected Products (5)

Siemens · SIMATIC S7-300 CPU family (incl.'related ET200 CPUs and SIPLUS variants) <V3.X.17
Siemens · SIMATIC TDC CP51M1 <V1.1.8
Siemens · SIMATIC TDC CPU555 <V1.1.1
Siemens · SINUMERIK 840D sl <V4.8.6
Siemens · SINUMERIK 840D sl <V4.94

Affected Sectors

Multiple

Get alerted to advisories like this

OTWarden monitors CISA, BSI, Siemens, Rockwell and more — and emails you within 2 hours when your vendors are affected.

Start free trial Learn more