The NCCIC has published an advisory on improper privilege management and cleartext transmission of sensitive information vulnerabilities in Siemens SIMATIC Ident MV420 and MV440 Families. All versions of both products are affected. Successful exploitation of these vulnerabilities could allow a remote attacker to escalate privileges and view data transmitted between the device and the user. Siemens has identified specific workarounds and mitigations to reduce the risk. The NCCIC also advised on a series of mitigating measures for the vulnerabilities. Read the advisory at NCCIC/ICS-CERT.
You are here
Related Resources
Jan 09, 2025 in Cybersecurity, in OT-ICS Security, in Federal & State Resources
Jan 09, 2025 in Cybersecurity, in OT-ICS Security, in Security Preparedness
Jan 09, 2025 in Cybersecurity, in Federal & State Resources, in Security Preparedness