SSA-840188 V1.6 (Last Update: 2023-04-11): Multiple Vulnerabilities in SIMATIC WinCC Affecting Other SIMATIC Software Products

Affected Product and Versions Remediation OpenPCS 7 V8.2
All versions
only affected by CVE-2021-40359 Currently no fix is planned

The vulnerability is fixed if SIMATIC WinCC V7.4 SP1 Update 19 or later version is installed on the same system

See further recommendations from section Workarounds and Mitigations OpenPCS 7 V9.0
All versions < V9.0 Upd4
only affected by CVE-2021-40359

Update to V9.0 Upd4 or later version; V9.0 Upd4 is bundled in PCS 7 V9.0 SP3 UC04

https://support.industry.siemens.com/cs/ww/en/view/109780528/ See further recommendations from section Workarounds and Mitigations OpenPCS 7 V9.1
All versions
only affected by CVE-2021-40359

See remediation for SIMATIC PCS 7 V9.1

See further recommendations from section Workarounds and Mitigations SIMATIC BATCH V8.2
All versions
only affected by CVE-2021-40359 Currently no fix is planned

The vulnerability is fixed if SIMATIC WinCC V7.4 SP1 Update 19 or later version is installed on the same system

See further recommendations from section Workarounds and Mitigations SIMATIC BATCH V9.0
All versions
only affected by CVE-2021-40359 Currently no fix is planned

The vulnerability is fixed if SIMATIC WinCC V7.4 SP1

Read more

Explore the site

More from the blog

Latest News