Siemens SIPROTEC 5 Devices
An information disclosure vulnerability in SIPROTEC 5 protection relays allows unauthenticated attackers on the local network to read device information. Affected devices include 6MD85, 6MD86, 6MD89, 6MU85, 7KE85, 7SA82, 7SA86, 7SA87, 7SD82, 7SD86, 7SD87, 7SJ81, 7SJ82, 7SJ85, 7SJ86, 7SK82, 7SK85, 7SL82, 7SL86, 7SL87, 7SS85, 7ST85, 7SX85, 7SX800, 7UM85, 7UT82, 7UT85, 7UT86, 7UT87, 7VE85, and 7VK87 with CP050, CP100, or CP300 CPU variants running firmware versions below 8.83. The vulnerability results from improper input validation (CWE-20). Siemens has released firmware updates to address this issue.
- Network access to the affected SIPROTEC 5 device
- Device running firmware version earlier than 8.83
- Device using CPU variant CP050, CP100, or CP300
Patching may require device reboot — plan for process interruption
/api/v1/advisories/dc9d9ff7-6375-4161-80b1-5487fe8ab92fGet OT security insights every Tuesday
Advisory breakdowns, a weekly summary, and incident analyses for the people actually defending OT environments. Free, no account required.