ICSA-24-256-09
·
Published 2025-05-06
·
View on CISA ICS-CERT ↗
Siemens SIMATIC, SIPLUS, and TIM
CVSS 5.9
MEDIUM
CVEs (3)
Remediations
- Currently no fix is planned
- Update to V2.4.8 or later version
- Update to V3.5.20 or later version
- Disable the web server of the affected system
Affected Vendors
Siemens
Affected Products (12)
Siemens
·
SIMATIC CP 1242-7 V2 (incl. SIPLUS variants)
<V3.5.20
Siemens
·
SIMATIC CP 1243-1 (incl. SIPLUS variants)
<V3.5.20
Siemens
·
SIMATIC CP 1243-1 DNP3 (incl. SIPLUS variants)
<V3.5.20
Siemens
·
SIMATIC CP 1243-1 IEC (incl. SIPLUS variants)
<V3.5.20
Siemens
·
SIMATIC CP 1243-7 LTE
<V3.5.20
Siemens
·
SIMATIC CP 1243-8 IRC (6GK7243-8RX30-0XE0)
<V3.5.20
Siemens
·
SIMATIC HMI Comfort Panels (incl. SIPLUS variants)
vers:all/*
Siemens
·
SIMATIC IPC DiagBase
vers:all/*
Siemens
·
SIMATIC IPC DiagMonitor
vers:all/*
Siemens
·
SIMATIC WinCC Runtime Advanced
vers:all/*
Siemens
·
SIPLUS TIM 1531 IRC (6AG1543-1MX00-7XE0)
<V2.4.8
Siemens
·
TIM 1531 IRC (6GK7543-1MX00-0XE0)
<V2.4.8
Affected Sectors
Multiple
Get alerted to advisories like this
OTWarden monitors CISA, BSI, Siemens, Rockwell and more — and emails you within 2 hours when your vendors are affected.
Start free trial Learn more