ICSA-21-194-07: Siemens simatic hmi unified comfort panels vulnerability
Affected Software
6 affected componentsFixes available
: Siemens SIMATIC HMI Unified Comfort Panels<17
17
: Siemens SIMATIC NET CP 1542SP-1 (6GK7542-6UX00-0XE0)
: Siemens SIMATIC NET CP 1542SP-1 IRC (incl. SIPLUS variants) (6GK7243-8RX30-0XE0)
: Siemens SIMATIC NET CP 1543-1 (incl. SIPLUS variants)
: Siemens SIMATIC NET CP 1543SP-1 (incl. SIPLUS variants)
: Siemens SIMATIC NET CP 1545-1 (6GK7545-1GX00-0XE0)<1.1
1.1
Event History
Feb 24, 2025
Advisory Published
02:42 AM
Frequently Asked Questions
1
What is the severity of ICSA-21-194-07?
The severity of ICSA-21-194-07 is identified as critical due to potential exploitation that could lead to unauthorized access.
2
How do I fix ICSA-21-194-07?
To fix ICSA-21-194-07, apply the available security updates provided by Siemens for the affected products.
3
What products are affected by ICSA-21-194-07?
ICSA-21-194-07 affects several Siemens products, including various SIMATIC HMI Unified Comfort Panels and SIMATIC NET communication processors.
4
What vulnerabilities are associated with ICSA-21-194-07?
ICSA-21-194-07 is associated with vulnerabilities that could allow remote attackers to execute arbitrary code or cause a denial of service.
5
Is there a workaround for ICSA-21-194-07?
Currently, the recommended mitigation is to implement network segmentation and ensure that vulnerable products are not exposed to untrusted networks.