← Back to home
ICSA-23-075-04  ·  Published 2024-04-09  ·  View on CISA ICS-CERT ↗

Siemens SCALANCE W1750D Devices

CVSS 7.4 HIGH

Remediations

  • CVE-2022-4304: Disable the use of RSA ciphers in the web server configuration; note that RSA ciphers are disabled by default
  • Update to V8.10.0.9 or later version The update is available upon request from customer support
  • CVE-2022-4450: Do not import or configure certificate files in PEM format from untrusted sources
  • CVE-2023-0286: Disable CRL (certification revocation list) checking, if possible

Affected Vendors

Siemens

Affected Products (3)

Siemens · SCALANCE W1750D (JP) (6GK5750-2HX01-1AD0) <V8.10.0.9
Siemens · SCALANCE W1750D (ROW) (6GK5750-2HX01-1AA0) <V8.10.0.9
Siemens · SCALANCE W1750D (USA) (6GK5750-2HX01-1AB0) <V8.10.0.9

Affected Sectors

Multiple

Get alerted to advisories like this

OTWarden monitors CISA, BSI, Siemens, Rockwell and more — and emails you within 2 hours when your vendors are affected.

Start free trial Learn more