ICSA-22-104-11
·
Published 2025-05-06
·
View on CISA ICS-CERT ↗
Siemens SIMATIC Energy Manager
CVSS 10.0
CRITICAL
CVEs (3)
Remediations
- Update to V7.3 Update 1 or later version
- Restrict access to the affected systems, especially to port 4444/tcp, to trusted IP addresses only
- Enable encryption in the SIMATIC Energy Manager configuration
Affected Vendors
Siemens
Affected Products (2)
Siemens
·
SIMATIC Energy Manager Basic
<V7.3_Update_1
Siemens
·
SIMATIC Energy Manager PRO
<V7.3_Update_1
Affected Sectors
Multiple
Get alerted to advisories like this
OTWarden monitors CISA, BSI, Siemens, Rockwell and more — and emails you within 2 hours when your vendors are affected.
Start free trial Learn more