VDB
ICSA-23-320-12
ICSA-23-320-12
PUBLISHED
CVSS 5.5 MEDIUM
SINEC PNI before V2.0 is affected by multiple vulnerabilities. Siemens has released an update for SINEC PNI and recommends to update to the latest version.
Risk Scores
CVSS 3.1
5.5
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N/E:P/RL:O/RC:C
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| SINEC PNI |
Timeline
- Nov 14, 2023 CVE Published
References
- https://cert-portal.siemens.com/productcert/csaf/ssa-150063.json advisory
- https://raw.githubusercontent.com/cisagov/CSAF/develop/csaf_files/OT/white/2023/icsa-23-320-12.json advisory
- https://www.cisa.gov/topics/industrial-control-systems url
- https://www.cisa.gov/news-events/ics-advisories/icsa-23-320-12 advisory
- https://us-cert.cisa.gov/sites/default/files/recommended_practices/NCCIC_ICS-CERT_Defense_in_Depth_2016_S508C.pdf url
- https://www.cisa.gov/uscert/ics/alerts/ICS-ALERT-10-301-01 url
- https://cert-portal.siemens.com/productcert/txt/ssa-150063.txt advisory
- https://www.cisa.gov/sites/default/files/publications/Cybersecurity_Best_Practices_for_Industrial_Control_Systems.pdf url
- https://www.cisa.gov/resources-tools/resources/ics-recommended-practices url
- https://cert-portal.siemens.com/productcert/pdf/ssa-150063.pdf advisory
- https://support.industry.siemens.com/cs/ww/en/view/109825079/ fix
- https://cert-portal.siemens.com/productcert/html/ssa-150063.html advisory
- https://www.cisa.gov/uscert/ics/tips/ICS-TIP-12-146-01B url