← Back to home
ICSA-26-202-06  ·  Published 2026-07-21  ·  View on CISA ICS-CERT ↗

Siemens CADRA

CVSS 9.8 CRITICAL

Risk Summary

CADRA is affected by multiple zlib and Foxit vulnerabilities. Siemens has released a new version for CADRA and recommends to update to the latest version. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.

Remediations

  • Update to V2511 or later version
  • Block access to untrusted or external web content from sensitive systems
  • Currently no fix is available

Affected Vendors

Siemens

Affected Products (2)

Siemens · CADRA vers:intdot/<2511
Siemens · CADRA vers:all/*

Affected Sectors

Chemical, Commercial Facilities, Communications, Energy

Get alerted to advisories like this

OTWarden monitors CISA, BSI, Siemens, Rockwell and more — and emails you within 2 hours when your vendors are affected.

Start free trial Learn more