ICSA-20-252-07
·
Published 2025-05-06
·
View on CISA ICS-CERT ↗
Siemens Industrial Products (Update F)
CVSS 5.5
MEDIUM
CVEs (1)
Remediations
- Currently no remediation is planned
- Update BIOS to V22.01.08
- Update BIOS to V26.01.07
- Update BIOS to V21.01.14
- Update BIOS to V1.4.0
- Update BIOS to R1.28.0
- Update BIOS to V25.02.06
- Update BIOS to V1.B or later version
- Update BIOS to V23.01.08
- As a prerequisite for an attack, an attacker must be able to run untrusted code on affected systems. Siemens recommends limiting the possibilities to run untrusted code if possible.
- Applying a Defense-in-Depth concept can help to reduce the probability that untrusted code is run on the system. Siemens recommends to apply the Defense-in-Depth concept: https://www.siemens.com/industrialsecurity
Affected Vendors
Siemens
Affected Products (25)
Siemens
·
SIMATIC Field PG M4
vers:all/*
Siemens
·
SIMATIC Field PG M5
<BIOS_V22.01.08
Siemens
·
SIMATIC Field PG M6
<BIOS_V26.01.07
Siemens
·
SIMATIC IPC347E
vers:all/*
Siemens
·
SIMATIC IPC427D (incl. SIPLUS variants)
vers:all/*
Siemens
·
SIMATIC IPC427E (incl. SIPLUS variants)
<BIOS_V21.01.14
Siemens
·
SIMATIC IPC477D
vers:all/*
Siemens
·
SIMATIC IPC477E
<BIOS_V21.01.14
Siemens
·
SIMATIC IPC477E Pro
<BIOS_V21.01.14
Siemens
·
SIMATIC IPC527G
<BIOS_V1.4.0
Siemens
·
SIMATIC IPC547E
vers:all/*
Siemens
·
SIMATIC IPC547G
<BIOS_R1.28.0
Siemens
·
SIMATIC IPC627D
vers:all/*
Siemens
·
SIMATIC IPC627E
<BIOS_V25.02.06
Siemens
·
SIMATIC IPC647D
vers:all/*
Siemens
·
SIMATIC IPC647E
<BIOS_V25.02.06
Siemens
·
SIMATIC IPC677D
vers:all/*
Siemens
·
SIMATIC IPC677E
<BIOS_V25.02.06
Siemens
·
SIMATIC IPC827D
vers:all/*
Siemens
·
SIMATIC IPC847D
vers:all/*
Siemens
·
SIMATIC IPC847E
<BIOS_V25.02.06
Siemens
·
SIMATIC IPC3000 SMART V2
<V1.B
Siemens
·
SIMATIC ITP1000
<BIOS_V23.01.08
Siemens
·
SIMOTION P320-4E
vers:all/*
Siemens
·
SIMOTION P320-4S
vers:all/*
Affected Sectors
Multiple
Get alerted to advisories like this
OTWarden monitors CISA, BSI, Siemens, Rockwell and more — and emails you within 2 hours when your vendors are affected.
Start free trial Learn more