← Back to home
SIEMENS-SSA-388239  ·  Published 2022-06-14  ·  View on Siemens ProductCERT ↗

SSA-388239 V1.0: Default Password Leakage affecting the Component Shared HIS used in Spectrum Power Systems

CVSS N/A MEDIUM

Risk Summary

<p>Siemens has been made aware of a default password leakage in the internet affecting the component Shared HIS (SHHIS) used in Spectrum Power systems.</p> <p>The products listed below are affected by this default password leakage. This could allow an attacker to access the component Shared HIS of those products with administrative privileges by using an account with default credentials.</p> <p>Siemens offers configuration recommendations for the affected products in order to mitigate the issue.</p>

Remediations

  • Refer to Siemens ProductCERT advisory for patch and remediation guidance.

Affected Vendors

Siemens

Affected Products (1)

Siemens · SSA-388239 V1.0: Default Password Leakage affecting the Component Shared HIS used in Spectrum Power Systems See advisory

Get alerted to advisories like this

OTWarden monitors CISA, BSI, Siemens, Rockwell and more — and emails you within 2 hours when your vendors are affected.

Start free trial Learn more