ICSA-22-167-06
·
Published 2022-10-11
·
View on CISA ICS-CERT ↗
Siemens Apache HTTP Server
CVSS 9.8
CRITICAL
CISA KEV — Known Exploited
CVEs (3)
Remediations
- Restrict access to the affected systems, especially to port 443/tcp, to trusted IP addresses only
- Currently no fix is planned
- Update to V1.0.3 or later version
- Update to V3.1 or later version
Affected Vendors
Siemens
Affected Products (4)
Siemens
·
RUGGEDCOM NMS
All_versions_when_using_the_device_firmware_upgrade_mechanism
Siemens
·
SINEC NMS
<V1.0.3
Siemens
·
SINEMA Remote Connect Server
<V3.1
Siemens
·
SINEMA Server V14
vers:all/*
Affected Sectors
Multiple
Get alerted to advisories like this
OTWarden monitors CISA, BSI, Siemens, Rockwell and more — and emails you within 2 hours when your vendors are affected.
Start free trial Learn more