ICSA-21-012-05
·
Published 2025-05-06
·
View on CISA ICS-CERT ↗
Siemens SCALANCE X Products (Update B)
CVSS 9.8
CRITICAL
CVEs (3)
Remediations
- Update to V5.2.5 or later version
- Update to V5.5.0 or later version
- Limit network traffic of web servers of Scalance X switches to trusted connections by firewall rules (port 443/tcp).
- Update to V4.1.0 or later version
Affected Vendors
Siemens
Affected Products (3)
Siemens
·
SCALANCE X-200 switch family (incl. SIPLUS NET variants)
<V5.2.5
Siemens
·
SCALANCE X-200IRT switch family (incl. SIPLUS NET variants)
<V5.5.0
Siemens
·
SCALANCE X-300 switch family (incl. X408 and SIPLUS NET variants)
<V4.1.0
Affected Sectors
Multiple
Get alerted to advisories like this
OTWarden monitors CISA, BSI, Siemens, Rockwell and more — and emails you within 2 hours when your vendors are affected.
Start free trial Learn more