DEV Community

Cover image for Siemens Patches Critical RCE Flaws in Industrial IoT, Networking and Video Management Systems
BeyondMachines for BeyondMachines

Posted on Originally published at beyondmachines.net

Siemens Patches Critical RCE Flaws in Industrial IoT, Networking and Video Management Systems

Summary

Siemens addressed multiple critical vulnerabilities, including a CVSS 10.0 flaw in SIMATIC IoT2050 devices and a CVSS 9.1 flaw in Siveillance Video Management Servers.

Take Action:

If you run Siemens SIMATIC IoT2050, Siveillance Video Management Servers, or RUGGEDCOM APE1808, first make sure these devices are isolated from the internet and reachable only from trusted networks. Then update each one to the latest Siemens version right away - especially the IoT2050 with Node-RED, where anyone on the network can currently take full control without a password.


Read the full article on BeyondMachines


This article was originally published on BeyondMachines

Top comments (0)