SSA-232418 (Last Update: 2019-08-13): Vulnerabilities in SIMATIC S7-1200 and SIMATIC S7-1500 CPU families


2019-08-13 00:00:00 UTC


Two vulnerabilities have been identified in the SIMATIC S7-1200 and the SIMATIC S7-1500 CPU families. One vulnerability could allow an attacker with network access to affected devices to modify the user program stored on these devices such that the source code differs from the actual running code. The other vulnerability could allow an attacker in a Man-in-the-Middle position to modify network traffic exchanged on port 102/tcp.

Siemens is working on updates and recommends that customers apply mitigations to reduce the risk until updates are available.