Siemens LOGO! Soft Comfort
LOGO! Soft Comfort versions prior to V9 contain a hardcoded AES master key that can be extracted by a local attacker. Additionally, project password hashes lack salt protection, enabling offline dictionary or brute-force attacks. An attacker with local access to an engineering workstation can extract the master key to decrypt project files, remove password protection, or view and modify sensitive automation logic. The vulnerability is present in both the software and controllers running in compatibility mode with older hardware versions.
- Local access to the engineering workstation running LOGO! Soft Comfort < V9
- No credentials required to extract the master key from the application
- Project file (.lgo or similar) must be accessible on the workstation
Patching may require device reboot — plan for process interruption
/api/v1/advisories/b0eb042b-21fe-4f2d-878f-507932cac6acGet OT security insights every Tuesday
Advisory breakdowns, a weekly summary, and incident analyses for the people actually defending OT environments. Free, no account required.