Yesterday the CISA NCCIC-ICS published 14 updates to control
system security advisories for products from Siemens. I covered the eight new
control system security advisories that were
published yesterday in an earlier blog post.
PROFINET Update #1
This update
provides additional information on an advisory that was originally
published on May 9th, 2017 and most
recently updated On July 14th, 2020. The new information
includes:
• Note about successor product for
SIMATIC Teleservice adapters, and
Added
• SIMATIC ET200ecoPN product
variants (MLFB IDs) that are not affected
OPC UA Update
This update
provides additional information on an advisory that was originally
published on 8-31-17 and most
recently updated on February 5th, 2019. The new information
includes updated information on SIMATIC NET PC Software.
Industrial Products Update #1
This update
provides additional information on an advisory that was originally
published on December 5th, 2017 and most
recently updated on July 14th, 2020. The new information
includes a notice on SIMATIC ET200ecoPN product variants (MLFB IDs) that are
not affected.
SIMATIC Update #1
This update
provides additional information on an advisory that was originally
published on December 10th, 2019 and most
recently updated on June 9th, 2020. The new information
includes:
• Added update for SIMOCODE pro V
EIP, and
• Informed about successor product
for SIMATIC Teleservice adapters
Industrial Products Update #2
This update
provides additional information on an advisory that was originally
published on September 10th, 2019 and most recently updated on June
9th, 2020. The new information includes a note about successor
product for SIMATIC Teleservice adapters.
PROFINET Update #2
This update
provides additional information on an advisory that was originally
published on October 10th, 2019 and most
recently updated on July 14th, 2020. The new information
includes:
• Added solution for SIMATIC PN/PN
Coupler,
• Added SIMATIC ET200ecoPN product
variants (MLFB IDs) that are not affected
Industrial Real-Time Update
This update
provides additional information on an advisory that was originally
published on October 10th, 2019 and most
recently updated on March 10th, 2020. The new information
includes adding SIMATIC ET200ecoPN product variants (MLFB IDs) that are not
affected.
SCALANCE Update #1
This update
provides additional information on an advisory that was originally
published on February 11th, 2020. The new information includes
data about successor products for the SCALANCE S-600 family.
PROFINET-IO Update
This update
provides additional information on an advisory that was originally
published on February 11th, 2020 and most
recently updated on March 11th, 2020. The new information includes
adding SIMATIC ET200ecoPN product variants (MLFB IDs) that are not affected.
Industrial Products Update #3
This update
provides additional information on an advisory that was originally
published on February 11th, 2020 and most
recently updated on July 14th, 2020. The new information
included data about successor products for the SCALANCE S-600 family.
SCALANCE Update #2
This update
provides additional information on an advisory that was originally
published on April 14th, 2020. The new information included data
about successor products for the SCALANCE S-600 family.
SIMATIC Update #2
This update
provides additional information on an advisory that was originally
published on July 9th, 2020 and most
recently updated on July 14th, 2020. The new information
includes:
• Added solution for SIMATIC PCS
neo, and
• SIMATIC PCS 7 removed from affected
products
OPCENTER Update
This update
provides additional information on an advisory that was originally
published on July 14th, 2020. The new information included
reporting that CVE-2020-7576 was not yet fixed in Opcenter Execution Core V8.2.
UMC Stack Update
This update
provides additional information on an advisory that was was originally
published on July 14th, 2020. The new information included added
solution for SIMATIC PCS neo.
Another Siemens Update
There was one other advisory that Siemens
updated yesterday. I will discuss it on Saturday.
No comments:
Post a Comment