Siemens SIMATIC and TIM
A vulnerability in Siemens SIMATIC PLCs and TIM industrial gateways allows an unauthenticated attacker to read PLC variables and process data without proper authentication. Affected products include the S7-1200 and S7-1500 CPU families, SIMATIC Drive Controller, ET 200SP Open Controller, SIMATIC S7 PLCSIM Advanced, and TIM 1531 IRC. The attack requires network access to the PLC but no valid credentials. Siemens has released firmware updates for most products; however, SIMATIC S7 PLCSIM Advanced (versions >2, <4) has no fix available.
- Network access to the PLC on port 102 (S7 communication) or equivalent industrial protocol port
- PLC must be configured or in a state that allows variable access
- No credentials required
Patching may require device reboot — plan for process interruption
/api/v1/advisories/c56ee620-e69a-4798-94be-dcc025d6adf8Get OT security insights every Tuesday
Advisory breakdowns, a weekly summary, and incident analyses for the people actually defending OT environments. Free, no account required.