The NCCIC has published an advisory on a deserialization of untrusted data vulnerability in Siemens LOGO! Soft Comfort. All versions are affected. Successful exploitation of this vulnerability could allow an attacker to execute arbitrary code if the attacker tricks a legitimate user into opening a manipulated project. Siemens recommends a series of mitigations to address this vulnerability. The NCCIC has also provided a series of measures to address this vulnerability. Read the advisory at NCCIC/ICS-CERT.
You are here
Related Resources
Jan 21, 2025 in Cybersecurity, in OT-ICS Security, in Security Preparedness
Jan 21, 2025 in Cybersecurity, in OT-ICS Security, in Federal & State Resources
Jan 21, 2025 in Cybersecurity, in Security Preparedness