ICSA-21-222-07
·
Published 2022-06-14
·
View on CISA ICS-CERT ↗
Siemens SIMATIC CP (Update A)
CVSS 8.8
HIGH
CVEs (2)
Remediations
- Update to V3.0 or later version
- Update to V1.1 or later version
- Disable the embedded FTP server. The server is deactivated in the default configuration
- Limit access to port 21/tcp to trusted IP addresses
Affected Vendors
Siemens
Affected Products (2)
Siemens
·
SIMATIC CP 1543-1 (incl. SIPLUS variants)
<V3.0
Siemens
·
SIMATIC CP 1545-1
<V1.1
Affected Sectors
Multiple
Get alerted to advisories like this
OTWarden monitors CISA, BSI, Siemens, Rockwell and more — and emails you within 2 hours when your vendors are affected.
Start free trial Learn more