#InterNICHE
Am Freitag 1.3.24 ladet InterNICHE zur Online-Premiere des Films "Surgery and the SynDaver Canine film premiere" ein! Der SynDaver Canine ist ein realistisches Hunde-Modell, das seit Jahren erfolgreich den Einsatz von Hunden in der Ausbildung von Veterinärchirurg*innen ersetzt.

1/2
InterNICHE presents: Surgery and the SynDaver Canine film premiere - LSCV
On Friday 1 March 2024, the InterNICHE film on humane innovations in veterinary education, Surgery and the SynDaver Canine, will be launched. You are cordially invited to the premiere, a live screenin...
www.lscv.ch
February 28, 2024 at 9:22 AM
Continuing our One Medicine Network Business Directory member spotlights, this week we're introducing InterNICHE, who champion high-quality, humane education and training in medicine, veterinary medicine and the biological sciences.

humanimaltrust.org.uk/interniche/

Contact us to join!
July 30, 2026 at 7:48 AM
Register for this upcoming #webinar on humane, human‑relevant education.

@kathrinherrmann.bsky.social will focus on how hidden curricula shape veterinary & biomedical training, & why animal use persists despite effective teaching tools & research methods.

🕐 May 19, 1 pm EST

📍 Zoom
April 28, 2026 at 12:09 PM
Die LSCV ist seit Jahrzehnten Teil von InterNICHE und konnte so bereits Millionen Tiere davor bewahren, in der veterinärmedizinischen Ausbildung gequält zu werden.

2/2
February 28, 2024 at 9:22 AM
✨International Conference on Alternatives and Simulation in Education ✨

📍 Riocentro Exhibition & Convention Center, Rio de Janeiro
📅 August 30th, 2025 from 9:00 am - 5:00 pm.
🗣️ Organisation: CAAT, InterNICHE & CPBT

For more information: www.eventbrite.com/e/internatio...
July 28, 2025 at 1:23 PM
Heute sprach Nick Jukes von InterNICHE am Universitätsspital Basel über "Humane innovation and replacement in education" im Rahmen des Seminars "Contemporary Debates in Biomedical Ethics".

1/2
March 4, 2024 at 3:18 PM
trouble with tse ip
I am currently facing a problem where I read two PHY IDs on one PHY, which caused my chip's self negotiation to fail why? why?why? i am crazy I'm confused log is here: InterNiche Portable TCP/IP, v3.1 Copyright 1996-2008 by InterNiche Technologies. All rights reserved. altera_eth_tse_init 0 prep_tse_mac 0 Can't read the MAC address from your board. We will assign you a MAC address. Your Ethernet MAC address is 00:07:ed:ff:50:ce Static IP Address is 192.168.80.206 prepped 1 interface, initializing... tse_mac_init 0 List of PHY profiles supported (Total profiles = 5)... Profile No. 0 : PHY Name : Marvell 88E1111 PHY OUI : 0x005043 PHY Model Num. : 0x0c PHY Rev. Num. : 0x02 Status Register : 0x11 Speed Bit : 14 Duplex Bit : 13 Link Bit : 10 Profile No. 1 : PHY Name : Marvell Quad PHY 88E1145 PHY OUI : 0x005043 PHY Model Num. : 0x0d PHY Rev. Num. : 0x02 Status Register : 0x11 Speed Bit : 14 Duplex Bit : 13 Link Bit : 10 Profile No. 2 : PHY Name : National DP83865 PHY OUI : 0x080017 PHY Model Num. : 0x07 PHY Rev. Num. : 0x0a Status Register : 0x11 Speed Bit : 3 Duplex Bit : 1 Link Bit : 2 Profile No. 3 : PHY Name : National DP83848C PHY OUI : 0x080017 PHY Model Num. : 0x09 PHY Rev. Num. : 0x00 Status Register : 0x00 Speed Bit : 0 Duplex Bit : 0 Link Bit : 0 Profile No. 4 : PHY Name : Intel PEF7071 PHY OUI : 0x355969 PHY Model Num. : 0x00 PHY Rev. Num. : 0x01 Status Register : 0x00 Speed Bit : 0 Duplex Bit : 0 Link Bit : 0 INFO : TSE MAC 0 found at address 0x42005000 INFO : Multi Channel = No INFO : MDIO Shared = No INFO : MAC Type = 10/100/1000 Ethernet MAC INFO : MAC Address = 0x42005000 INFO : MAC Device = tse_mac_device[0] WARNING : Unknown PHY found at PHY address 0x00 of MAC Group[0] WARNING : Please add PHY information to PHY profile INFO : PHY OUI = 0x000732 INFO : PHY Model Number = 0x11 INFO : PHY Revision Number = 0x5 INFO : PHY[0.0] - Explicitly mapped to tse_mac_device[0] INFO : PHY[0.0] - Advertisement of 1000 Base-T Full Duplex set to 1 Created "Inet main" task (Prio: 2) INFO : PHY[0.0] - Advertisement of 1000 Base-T Half Duplex set to 1 INFO : PHY[0.0] - Advertisement of 100 Base-T4 set to 0 INFO : PHY[0.0] - Advertisement of 100 Base-TX Full Duplex set to 1 INFO : PHY[0.0] - Advertisement of 100 Base-TX Half Duplex set to 1 INFO : PHY[0.0] - Advertisement of 10 Base-TX Full Duplex set to 1 INFO : PHY[0.0] - Advertisement of 10 Base-TX Half Duplex set to 1 INFO : PHY[0.0] - Restart Auto-Negotiation, checking PHY link... Created "clock tick" task (Prio: 3) INFO : PHY[0.0] - Auto-Negotiation PASSED INFO : Applying additional user PHY configuration MARVELL : Mode changed to RGMII/Modified MII to Copper mode MARVELL : Enable RGMII Timing Control MARVELL : PHY reset **WARNING : Unknown PHY found at PHY address 0x01 of MAC Group[0]** **WARNING : Please add PHY information to PHY profile** **INFO : PHY OUI = 0x000732** **INFO : PHY Model Number = 0x11** **INFO : PHY Revision Number = 0x5** **WARNING : PHY[0.X] - Mapping of PHY to MAC failed! Make sure the PHY address is defined correctly in tse_mac_device[] structure, and number of PHYs connected is equivalent to number of channel** WARNING : MAC Group[0] - Number of PHY connected is not equal to the number of channel, Number of PHY : 2, Channel : 1 INFO : PHY[0.0] - Checking link... INFO : PHY[0.0] - Link established WARNING : PHY[0.0] - PHY not found in PHY profile INFO : PHY[0.0] - Speed = 100, Duplex = Full TSEMAC SW reset bit never cleared! OK, x=10002, CMD_CONFIG=0x00002000 MAC post-initialization: CMD_CONFIG=0x04000200 [tse_msgdma_read_init] RX descriptor chain desc (9 depth) created mctest init called IP address of et1 : 192.168.80.206 Simple Socket Server starting up [sss_task] Simple Socket Server listening on port 30 Created "simple socket server" task (Prio: 4)
community.intel.com
April 7, 2025 at 8:03 AM
ICSパッチ火曜日:シーメンス、ロックウェル、シュナイダーによる脆弱性修正

シーメンスは14件の新たなアドバイザリを公開しました。Comos、Sicam T、Ruggedcom ROX製品に影響を及ぼすサードパーティ製コンポーネントの脆弱性数十件をカバーする3件のアドバイザリには、全体的な深刻度評価が「重大」に設定されました。

Siemens Advanced Licensing (SALT) Toolkit、IAM Client (複数の製品)、Simatic CN 4100、Ruggedcom ROX、Interniche IP-Stack (複数の製品)、および Sinec ...
ICS Patch Tuesday: Vulnerabilities Fixed by Siemens, Rockwell, Schneider
Siemens, Rockwell Automation, Schneider Electric, and Phoenix Contact have published Patch Tuesday advisories.
www.securityweek.com
December 14, 2025 at 12:55 AM
Join us for the second webinar in our Alternatives and Simulation in Education series. We are pleased to welcome @crystalheathdvm.bsky.social , Executive Director of Our Honor.

Free registration: jh.zoom.us/webinar/regi...

#InterNICHE #CAAT #Ombion #OurHonor #VeterinaryEthics
#HumaneTraining
December 5, 2025 at 7:40 AM
ICS パッチチューズデー:Siemens、Rockwell、Schneider による脆弱性修正

産業大手の Siemens、Rockwell Automation、Schneider Electric、および Phoenix Contact は、ICS/OT 製品で発見された脆弱性について顧客に通知するパッチチューズデーのアドバイザリを公開しました。 Siemens は新たに 14 件のアドバイザリを公開しました。Comos、Sicam T、Ruggedcom ROX 製品に影響するサードパーティコンポーネントの多数の脆弱性を対象とした 3…
ICS パッチチューズデー:Siemens、Rockwell、Schneider による脆弱性修正
産業大手の Siemens、Rockwell Automation、Schneider Electric、および Phoenix Contact は、ICS/OT 製品で発見された脆弱性について顧客に通知するパッチチューズデーのアドバイザリを公開しました。 Siemens は新たに 14 件のアドバイザリを公開しました。Comos、Sicam T、Ruggedcom ROX 製品に影響するサードパーティコンポーネントの多数の脆弱性を対象とした 3 件のアドバイザリには、全体として「クリティカル」の深刻度レーティングが割り当てられています。 Siemens Advanced Licensing (SALT) Toolkit、IAM Client(複数製品)、Simatic CN 4100、Ruggedcom ROX、Interniche IP-Stack(複数製品)、および Sinec Security Monitor で見つかった脆弱性には、「高」深刻度レーティングが割り当てられています。 中程度の深刻度の問題は、Energy Services、Building X-Security Manager Edge Controller、Gridscale X Prepay、Ruggedcom ROS、および Sinema Remote Connect Server 製品で対処されています。 これらの脆弱性は、任意コード実行、サービス拒否(DoS)、不正アクセス、中間者(MitM)攻撃、および機密情報の取得に悪用される可能性があります。 Schneider Electric は新たに 2 件のアドバイザリを公開しました。そのうち 1 件は、産業大手の EcoStruxure Foxboro DCS 製品に対する、悪用された Windows Server Update Services (WSUS) の脆弱性の影響について説明しています。2 件目のアドバイザリは、同じ EcoStruxure 製品に対する古い ZombieLoad 脆弱性の影響を扱っています。 …
blackhatnews.tokyo
December 10, 2025 at 9:57 AM
Latest post from CISA
Siemens Interniche IP-Stack
View CSAF Summary Multiple Industrial products are affected by a vulnerability in the Interniche IP-Stack. The affected products do not properly enforce TCP sequence number validation in specific scenarios but accept values within a broad range. This could allow an unauthenticated remote attacker e.g. to interfere with connection setup, potentially leading to a denial of service. The attack succeeds only if an attacker can inject IP packets with spoofed addresses at precisely timed moments, and it affects only TCP-based services. Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available. The following versions of Siemens Interniche IP-Stack are affected: SIDOOR ATD430W (CVE-2025-40820) SIDOOR ATE530G COATED (6FB1221-5SM10-7BP0) (CVE-2025-40820) SIDOOR ATE530S COATED (CVE-2025-40820) SIMATIC CFU DIQ (6ES7655-5PX31-1XX0) (CVE-2025-40820) SIMATIC CFU PA (6ES7655-5PX11-0XX0) (CVE-2025-40820) SIMATIC CFU PA (6ES7655-5PX11-1XX0) (CVE-2025-40820) SIMATIC ET 200AL IM 157-1 PN (6ES7157-1AB00-0AB0) (CVE-2025-40820) SIMATIC ET 200clean, CM 8x IO-Link (6ES7148-7JH00-0BB0) (CVE-2025-40820) SIMATIC ET 200clean, DI 16x24VDC (6ES7141-7BH00-0BB0) (CVE-2025-40820) SIMATIC ET 200clean, DIQ 16x24VDC/0,5A (6ES7143-7BH00-0BB0) (CVE-2025-40820) SIMATIC ET 200eco PN, AI 8xRTD/TC, M12-L (6ES7144-6JF00-0BB0) (CVE-2025-40820) SIMATIC ET 200eco PN, CM 4x IO-Link, M12-L (6ES7148-6JE00-0BB0) (CVE-2025-40820) SIMATIC ET 200eco PN, CM 8x IO-Link, M12-L (6ES7148-6JG00-0BB0) (CVE-2025-40820) SIMATIC ET 200eco PN, CM 8x IO-Link, M12-L (6ES7148-6JJ00-0BB0) (CVE-2025-40820) SIMATIC ET 200eco PN, DI 16x24VDC, M12-L (6ES7141-6BH00-0BB0) (CVE-2025-40820) SIMATIC ET 200eco PN, DI 8x24VDC, M12-L (6ES7141-6BG00-0BB0) (CVE-2025-40820) SIMATIC ET 200eco PN, DIQ 16x24VDC/2A, M12-L (6ES7143-6BH00-0BB0) (CVE-2025-40820) SIMATIC ET 200eco PN, DQ 8x24VDC/0,5A, M12-L (6ES7142-6BG00-0BB0) (CVE-2025-40820) SIMATIC ET 200eco PN, DQ 8x24VDC/2A, M12-L (6ES7142-6BR00-0BB0) (CVE-2025-40820) SIMATIC ET 200MP IM 155-5 PN HF (6ES7155-5AA00-0AC0) (CVE-2025-40820) SIMATIC ET 200pro IM 154-8 PN/DP CPU (6ES7154-8AB01-0AB0) (CVE-2025-40820) SIMATIC ET 200pro IM 154-8F PN/DP CPU (6ES7154-8FB01-0AB0) (CVE-2025-40820) SIMATIC ET 200pro IM 154-8FX PN/DP CPU (6ES7154-8FX00-0AB0) (CVE-2025-40820) SIMATIC ET 200S IM 151-8 PN/DP CPU (6ES7151-8AB01-0AB0) (CVE-2025-40820) SIMATIC ET 200S IM 151-8F PN/DP CPU (6ES7151-8FB01-0AB0) (CVE-2025-40820) SIMATIC ET 200SP CPU 1510SP F-1 PN (6ES7510-1SJ00-0AB0) (CVE-2025-40820) SIMATIC ET 200SP CPU 1510SP-1 PN (6ES7510-1DJ00-0AB0) (CVE-2025-40820) SIMATIC ET 200SP CPU 1512SP F-1 PN (6ES7512-1SK00-0AB0) (CVE-2025-40820) SIMATIC ET 200SP CPU 1512SP-1 PN (6ES7512-1DK00-0AB0) (CVE-2025-40820) SIMATIC ET 200SP IM 155-6 MF HF (6ES7155-6MU00-0CN0) (CVE-2025-40820) SIMATIC ET 200SP IM 155-6 PN HA (incl. SIPLUS variants) (CVE-2025-40820) SIMATIC ET 200SP IM 155-6 PN HF (6ES7155-6AU00-0CN0) (CVE-2025-40820) SIMATIC ET 200SP IM 155-6 PN/2 HF (6ES7155-6AU01-0CN0) (CVE-2025-40820) SIMATIC ET 200SP IM 155-6 PN/3 HF (6ES7155-6AU30-0CN0) (CVE-2025-40820) SIMATIC PN/MF Coupler (6ES7158-3MU10-0XA0) (CVE-2025-40820) SIMATIC PN/PN Coupler (6ES7158-3AD10-0XA0) (CVE-2025-40820) SIMATIC Power Line Booster PLB, Base Module (6ES7972-5AA10-0AB0) (CVE-2025-40820) SIMATIC Power Line Booster PLB, Modem Module ST (6ES7972-5AA51-0AB0) (CVE-2025-40820) SIMATIC S7-1200 CPU 1211C AC/DC/Rly (6ES7211-1BE40-0XB0) (CVE-2025-40820) SIMATIC S7-1200 CPU 1211C DC/DC/DC (6ES7211-1AE40-0XB0) (CVE-2025-40820) SIMATIC S7-1200 CPU 1211C DC/DC/Rly (6ES7211-1HE40-0XB0) (CVE-2025-40820) SIMATIC S7-1200 CPU 1212C AC/DC/Rly (6ES7212-1BE40-0XB0) (CVE-2025-40820) SIMATIC S7-1200 CPU 1212C DC/DC/DC (6ES7212-1AE40-0XB0) (CVE-2025-40820) SIMATIC S7-1200 CPU 1212C DC/DC/Rly (6ES7212-1HE40-0XB0) (CVE-2025-40820) SIMATIC S7-1200 CPU 1212FC DC/DC/DC (6ES7212-1AF40-0XB0) (CVE-2025-40820) SIMATIC S7-1200 CPU 1212FC DC/DC/Rly (6ES7212-1HF40-0XB0) (CVE-2025-40820) SIMATIC S7-1200 CPU 1214C AC/DC/Rly (6ES7214-1BG40-0XB0) (CVE-2025-40820) SIMATIC S7-1200 CPU 1214C DC/DC/DC (6ES7214-1AG40-0XB0) (CVE-2025-40820) SIMATIC S7-1200 CPU 1214C DC/DC/Rly (6ES7214-1HG40-0XB0) (CVE-2025-40820) SIMATIC S7-1200 CPU 1214FC DC/DC/DC (6ES7214-1AF40-0XB0) (CVE-2025-40820) SIMATIC S7-1200 CPU 1214FC DC/DC/Rly (6ES7214-1HF40-0XB0) (CVE-2025-40820) SIMATIC S7-1200 CPU 1215C AC/DC/Rly (6ES7215-1BG40-0XB0) (CVE-2025-40820) SIMATIC S7-1200 CPU 1215C DC/DC/DC (6ES7215-1AG40-0XB0) (CVE-2025-40820) SIMATIC S7-1200 CPU 1215C DC/DC/Rly (6ES7215-1HG40-0XB0) (CVE-2025-40820) SIMATIC S7-1200 CPU 1215FC DC/DC/DC (6ES7215-1AF40-0XB0) (CVE-2025-40820) SIMATIC S7-1200 CPU 1215FC DC/DC/Rly (6ES7215-1HF40-0XB0) (CVE-2025-40820) SIMATIC S7-1200 CPU 1217C DC/DC/DC (6ES7217-1AG40-0XB0) (CVE-2025-40820) SIMATIC S7-1500 CPU 1511-1 PN (6ES7511-1AK00-0AB0) (CVE-2025-40820) SIMATIC S7-1500 CPU 1511F-1 PN (6ES7511-1FK00-0AB0) (CVE-2025-40820) SIMATIC S7-1500 CPU 1513-1 PN (6ES7513-1AL00-0AB0) (CVE-2025-40820) SIMATIC S7-1500 CPU 1513F-1 PN (6ES7513-1FL00-0AB0) (CVE-2025-40820) SIMATIC S7-1500 CPU 1515-2 PN (6ES7515-2AM00-0AB0) (CVE-2025-40820) SIMATIC S7-1500 CPU 1515F-2 PN (6ES7515-2FM00-0AB0) (CVE-2025-40820) SIMATIC S7-1500 CPU 1516-3 PN/DP (6ES7516-3AN00-0AB0) (CVE-2025-40820) SIMATIC S7-1500 CPU 1516F-3 PN/DP (6ES7516-3FN00-0AB0) (CVE-2025-40820) SIMATIC S7-200 SMART CPU CR40 (6ES7288-1CR40-0AA0) (CVE-2025-40820) SIMATIC S7-200 SMART CPU CR60 (6ES7288-1CR60-0AA0) (CVE-2025-40820) SIMATIC S7-200 SMART CPU SR20 (6ES7288-1SR20-0AA0) (CVE-2025-40820) SIMATIC S7-200 SMART CPU SR20 (6ES7288-1SR20-0AA1) (CVE-2025-40820) SIMATIC S7-200 SMART CPU SR30 (6ES7288-1SR30-0AA0) (CVE-2025-40820) SIMATIC S7-200 SMART CPU SR30 (6ES7288-1SR30-0AA1) (CVE-2025-40820) SIMATIC S7-200 SMART CPU SR40 (6ES7288-1SR40-0AA0) (CVE-2025-40820) SIMATIC S7-200 SMART CPU SR40 (6ES7288-1SR40-0AA1) (CVE-2025-40820) SIMATIC S7-200 SMART CPU SR60 (6ES7288-1SR60-0AA0) (CVE-2025-40820) SIMATIC S7-200 SMART CPU SR60 (6ES7288-1SR60-0AA1) (CVE-2025-40820) SIMATIC S7-200 SMART CPU ST20 (6ES7288-1ST20-0AA0) (CVE-2025-40820) SIMATIC S7-200 SMART CPU ST20 (6ES7288-1ST20-0AA1) (CVE-2025-40820) SIMATIC S7-200 SMART CPU ST30 (6ES7288-1ST30-0AA0) (CVE-2025-40820) SIMATIC S7-200 SMART CPU ST30 (6ES7288-1ST30-0AA1) (CVE-2025-40820) SIMATIC S7-200 SMART CPU ST40 (6ES7288-1ST40-0AA0) (CVE-2025-40820) SIMATIC S7-200 SMART CPU ST40 (6ES7288-1ST40-0AA1) (CVE-2025-40820) SIMATIC S7-200 SMART CPU ST60 (6ES7288-1ST60-0AA0) (CVE-2025-40820) SIMATIC S7-200 SMART CPU ST60 (6ES7288-1ST60-0AA1) (CVE-2025-40820) SIMATIC S7-300 CPU 314C-2 PN/DP (6ES7314-6EH04-0AB0) (CVE-2025-40820) SIMATIC S7-300 CPU 315-2 PN/DP (6ES7315-2EH14-0AB0) (CVE-2025-40820) SIMATIC S7-300 CPU 315F-2 PN/DP (6ES7315-2FJ14-0AB0) (CVE-2025-40820) SIMATIC S7-300 CPU 315T-3 PN/DP (6ES7315-7TJ10-0AB0) (CVE-2025-40820) SIMATIC S7-300 CPU 317-2 PN/DP (6ES7317-2EK14-0AB0) (CVE-2025-40820) SIMATIC S7-300 CPU 317F-2 PN/DP (6ES7317-2FK14-0AB0) (CVE-2025-40820) SIMATIC S7-300 CPU 317T-3 PN/DP (6ES7317-7TK10-0AB0) (CVE-2025-40820) SIMATIC S7-300 CPU 317TF-3 PN/DP (6ES7317-7UL10-0AB0) (CVE-2025-40820) SIMATIC S7-300 CPU 319-3 PN/DP (6ES7318-3EL01-0AB0) (CVE-2025-40820) SIMATIC S7-300 CPU 319F-3 PN/DP (6ES7318-3FL01-0AB0) (CVE-2025-40820) SIMATIC S7-400 CPU 412-2 PN V7 (6ES7412-2EK07-0AB0) (CVE-2025-40820) SIMATIC S7-400 CPU 414-3 PN/DP V7 (6ES7414-3EM07-0AB0) (CVE-2025-40820) SIMATIC S7-400 CPU 414F-3 PN/DP V7 (6ES7414-3FM07-0AB0) (CVE-2025-40820) SIMATIC S7-400 CPU 416-3 PN/DP V7 (6ES7416-3ES07-0AB0) (CVE-2025-40820) SIMATIC S7-400 CPU 416F-3 PN/DP V7 (6ES7416-3FS07-0AB0) (CVE-2025-40820) SIMATIC S7-400 H V6 CPU family (incl. SIPLUS variants) (CVE-2025-40820) SIMATIC S7-410 V10 CPU family (incl. SIPLUS variants) (CVE-2025-40820) SIMATIC S7-410 V8 CPU family (incl. SIPLUS variants) (CVE-2025-40820) SIMATIC TDC CP51M1 (CVE-2025-40820) SIMATIC TDC CPU555 (CVE-2025-40820) SIMOCODE pro V Ethernet/IP (incl. SIPLUS variants) (CVE-2025-40820) SIMOCODE pro V PROFINET (CVE-2025-40820) SINUMERIK 840D sl (CVE-2025-40820) SIPLUS ET 200MP IM 155-5 PN HF (6AG1155-5AA00-2AC0) (CVE-2025-40820) SIPLUS ET 200MP IM 155-5 PN HF (6AG1155-5AA00-7AC0) (CVE-2025-40820) SIPLUS ET 200MP IM 155-5 PN HF T1 RAIL (6AG2155-5AA00-1AC0) (CVE-2025-40820) SIPLUS ET 200S IM 151-8 PN/DP CPU (6AG1151-8AB01-7AB0) (CVE-2025-40820) SIPLUS ET 200S IM 151-8F PN/DP CPU (6AG1151-8FB01-2AB0) (CVE-2025-40820) SIPLUS ET 200SP CPU 1512SP F-1 PN (6AG1512-1SK00-2AB0) (CVE-2025-40820) SIPLUS ET 200SP IM 155-6 PN HF (6AG1155-6AU00-2CN0) (CVE-2025-40820) SIPLUS ET 200SP IM 155-6 PN HF (6AG1155-6AU00-4CN0) (CVE-2025-40820) SIPLUS ET 200SP IM 155-6 PN HF (6AG1155-6AU01-2CN0) (CVE-2025-40820) SIPLUS ET 200SP IM 155-6 PN HF (6AG1155-6AU01-7CN0) (CVE-2025-40820) SIPLUS ET 200SP IM 155-6 PN HF T1 RAIL (6AG2155-6AU00-1CN0) (CVE-2025-40820) SIPLUS ET 200SP IM 155-6 PN HF T1 RAIL (6AG2155-6AU01-1CN0) (CVE-2025-40820) SIPLUS ET 200SP IM 155-6 PN HF TX RAIL (6AG2155-6AU01-4CN0) (CVE-2025-40820) SIPLUS HCS4200 CIM4210 (6BK1942-1AA00-0AA0) (CVE-2025-40820) SIPLUS HCS4200 CIM4210C (6BK1942-1AA00-0AA1) (CVE-2025-40820) SIPLUS HCS4300 CIM4310 (6BK1943-1AA00-0AA0) (CVE-2025-40820) SIPLUS NET PN/PN Coupler (6AG2158-3AD10-4XA0) (CVE-2025-40820) SIPLUS S7-1200 CPU 1212 AC/DC/RLY (6AG1212-1BE40-4XB0) (CVE-2025-40820) SIPLUS S7-1200 CPU 1212 DC/DC/RLY (6AG1212-1HE40-2XB0) (CVE-2025-40820) SIPLUS S7-1200 CPU 1212 DC/DC/RLY (6AG1212-1HE40-4XB0) (CVE-2025-40820) SIPLUS S7-1200 CPU 1212C AC/DC/RLY (6AG1212-1BE40-2XB0) (CVE-2025-40820) SIPLUS S7-1200 CPU 1212C DC/DC/DC (6AG1212-1AE40-2XB0) (CVE-2025-40820) SIPLUS S7-1200 CPU 1212C DC/DC/DC (6AG1212-1AE40-4XB0) (CVE-2025-40820) SIPLUS S7-1200 CPU 1212C DC/DC/DC RAIL (6AG2212-1AE40-1XB0) (CVE-2025-40820) SIPLUS S7-1200 CPU 1214 AC/DC/RLY (6AG1214-1BG40-5XB0) (CVE-2025-40820) SIPLUS S7-1200 CPU 1214 DC/DC/RLY (6AG1214-1HG40-2XB0) (CVE-2025-40820) SIPLUS S7-1200 CPU 1214C AC/DC/RLY (6AG1214-1BG40-2XB0) (CVE-2025-40820) SIPLUS S7-1200 CPU 1214C AC/DC/RLY (6AG1214-1BG40-4XB0) (CVE-2025-40820) SIPLUS S7-1200 CPU 1214C DC/DC/DC (6AG1214-1AG40-2XB0) (CVE-2025-40820) SIPLUS S7-1200 CPU 1214C DC/DC/DC (6AG1214-1AG40-4XB0) (CVE-2025-40820) SIPLUS S7-1200 CPU 1214C DC/DC/DC (6AG1214-1AG40-5XB0) (CVE-2025-40820) SIPLUS S7-1200 CPU 1214C DC/DC/DC RAIL (6AG2214-1AG40-1XB0) (CVE-2025-40820) SIPLUS S7-1200 CPU 1214C DC/DC/RLY (6AG1214-1HG40-4XB0) (CVE-2025-40820) SIPLUS S7-1200 CPU 1214C DC/DC/RLY (6AG1214-1HG40-5XB0) (CVE-2025-40820) SIPLUS S7-1200 CPU 1214FC DC/DC/DC (6AG1214-1AF40-5XB0) (CVE-2025-40820) SIPLUS S7-1200 CPU 1214FC DC/DC/RLY (6AG1214-1HF40-5XB0) (CVE-2025-40820) SIPLUS S7-1200 CPU 1215 AC/DC/RLY (6AG1215-1BG40-4XB0) (CVE-2025-40820) SIPLUS S7-1200 CPU 1215 AC/DC/RLY (6AG1215-1BG40-5XB0) (CVE-2025-40820) SIPLUS S7-1200 CPU 1215 DC/DC/DC (6AG1215-1AG40-2XB0) (CVE-2025-40820) SIPLUS S7-1200 CPU 1215 DC/DC/DC (6AG1215-1AG40-4XB0) (CVE-2025-40820) SIPLUS S7-1200 CPU 1215 DC/DC/RLY (6AG1215-1HG40-2XB0) (CVE-2025-40820) SIPLUS S7-1200 CPU 1215 DC/DC/RLY (6AG1215-1HG40-4XB0) (CVE-2025-40820) SIPLUS S7-1200 CPU 1215 DC/DC/RLY (6AG1215-1HG40-5XB0) (CVE-2025-40820) SIPLUS S7-1200 CPU 1215C AC/DC/RLY (6AG1215-1BG40-2XB0) (CVE-2025-40820) SIPLUS S7-1200 CPU 1215C DC/DC/DC (6AG1215-1AG40-5XB0) (CVE-2025-40820) SIPLUS S7-1200 CPU 1215FC DC/DC/DC (6AG1215-1AF40-5XB0) (CVE-2025-40820) SIPLUS S7-1500 CPU 1511-1 PN (6AG1511-1AK00-2AB0) (CVE-2025-40820) SIPLUS S7-1500 CPU 1511F-1 PN (6AG1511-1FK00-2AB0) (CVE-2025-40820) SIPLUS S7-1500 CPU 1513-1 PN (6AG1513-1AL00-2AB0) (CVE-2025-40820) SIPLUS S7-1500 CPU 1513F-1 PN (6AG1513-1FL00-2AB0) (CVE-2025-40820) SIPLUS S7-1500 CPU 1516-3 PN/DP (6AG1516-3AN00-2AB0) (CVE-2025-40820) SIPLUS S7-1500 CPU 1516-3 PN/DP (6AG1516-3AN00-7AB0) (CVE-2025-40820) SIPLUS S7-1500 CPU 1516F-3 PN/DP (6AG1516-3FN00-2AB0) (CVE-2025-40820) SIPLUS S7-300 CPU 314C-2 PN/DP (6AG1314-6EH04-7AB0) (CVE-2025-40820) SIPLUS S7-300 CPU 315-2 PN/DP (6AG1315-2EH14-7AB0) (CVE-2025-40820) SIPLUS S7-300 CPU 315F-2 PN/DP (6AG1315-2FJ14-2AB0) (CVE-2025-40820) SIPLUS S7-300 CPU 317-2 PN/DP (6AG1317-2EK14-7AB0) (CVE-2025-40820) SIPLUS S7-300 CPU 317F-2 PN/DP (6AG1317-2FK14-2AB0) (CVE-2025-40820) SIPLUS S7-400 CPU 414-3 PN/DP V7 (6AG1414-3EM07-7AB0) (CVE-2025-40820) SIPLUS S7-400 CPU 416-3 PN/DP V7 (6AG1416-3ES07-7AB0) (CVE-2025-40820) SIWAREX WP231 (7MH4960-2AA01) (CVE-2025-40820) SIWAREX WP241 (7MH4960-4AA01) (CVE-2025-40820) SIWAREX WP251 (7MH4960-6AA01) (CVE-2025-40820) SIWAREX WP521 ST (7MH4980-1AA01) (CVE-2025-40820) SIWAREX WP522 ST (7MH4980-2AA01) (CVE-2025-40820) CVSS Vendor Equipment Vulnerabilities v3 7.5 Siemens Siemens Interniche IP-Stack Improper Verification of Source of a Communication Channel Background Critical Infrastructure Sectors: Critical Manufacturing Countries/Areas Deployed: Worldwide Company Headquarters Location: Germany Vulnerabilities Expand All + CVE-2025-40820 Affected products do not properly enforce TCP sequence number validation in specific scenarios but accept values within a broad range. This could allow an unauthenticated remote attacker e.g. to interfere with connection setup, potentially leading to a denial of service. The attack succeeds only if an attacker can inject IP packets with spoofed addresses at precisely timed moments, and it affects only TCP-based services. View CVE Details Affected Products Siemens Interniche IP-Stack Vendor: Siemens Product Version: SIDOOR ATD430W, SIDOOR ATE530G COATED (6FB1221-5SM10-7BP0), SIDOOR ATE530S COATED, SIMATIC CFU DIQ (6ES7655-5PX31-1XX0), SIMATIC CFU PA (6ES7655-5PX11-0XX0), SIMATIC CFU PA (6ES7655-5PX11-1XX0), SIMATIC ET 200AL IM 157-1 PN (6ES7157-1AB00-0AB0), SIMATIC ET 200clean, CM 8x IO-Link (6ES7148-7JH00-0BB0), SIMATIC ET 200clean, DI 16x24VDC (6ES7141-7BH00-0BB0), SIMATIC ET 200clean, DIQ 16x24VDC/0,5A (6ES7143-7BH00-0BB0), SIMATIC ET 200eco PN, AI 8xRTD/TC, M12-L (6ES7144-6JF00-0BB0), SIMATIC ET 200eco PN, CM 4x IO-Link, M12-L (6ES7148-6JE00-0BB0), SIMATIC ET 200eco PN, CM 8x IO-Link, M12-L (6ES7148-6JG00-0BB0), SIMATIC ET 200eco PN, CM 8x IO-Link, M12-L (6ES7148-6JJ00-0BB0), SIMATIC ET 200eco PN, DI 16x24VDC, M12-L (6ES7141-6BH00-0BB0), SIMATIC ET 200eco PN, DI 8x24VDC, M12-L (6ES7141-6BG00-0BB0), SIMATIC ET 200eco PN, DIQ 16x24VDC/2A, M12-L (6ES7143-6BH00-0BB0), SIMATIC ET 200eco PN, DQ 8x24VDC/0,5A, M12-L (6ES7142-6BG00-0BB0), SIMATIC ET 200eco PN, DQ 8x24VDC/2A, M12-L (6ES7142-6BR00-0BB0), SIMATIC ET 200MP IM 155-5 PN HF (6ES7155-5AA00-0AC0), SIMATIC ET 200pro IM 154-8 PN/DP CPU (6ES7154-8AB01-0AB0), SIMATIC ET 200pro IM 154-8F PN/DP CPU (6ES7154-8FB01-0AB0), SIMATIC ET 200pro IM 154-8FX PN/DP CPU (6ES7154-8FX00-0AB0), SIMATIC ET 200S IM 151-8 PN/DP CPU (6ES7151-8AB01-0AB0), SIMATIC ET 200S IM 151-8F PN/DP CPU (6ES7151-8FB01-0AB0), SIMATIC ET 200SP CPU 1510SP F-1 PN (6ES7510-1SJ00-0AB0), SIMATIC ET 200SP CPU 1510SP-1 PN (6ES7510-1DJ00-0AB0), SIMATIC ET 200SP CPU 1512SP F-1 PN (6ES7512-1SK00-0AB0), SIMATIC ET 200SP CPU 1512SP-1 PN (6ES7512-1DK00-0AB0), SIMATIC ET 200SP IM 155-6 MF HF (6ES7155-6MU00-0CN0), SIMATIC ET 200SP IM 155-6 PN HA (incl. SIPLUS variants), SIMATIC ET 200SP IM 155-6 PN HF (6ES7155-6AU00-0CN0), SIMATIC ET 200SP IM 155-6 PN/2 HF (6ES7155-6AU01-0CN0), SIMATIC ET 200SP IM 155-6 PN/3 HF (6ES7155-6AU30-0CN0), SIMATIC PN/MF Coupler (6ES7158-3MU10-0XA0), SIMATIC PN/PN Coupler (6ES7158-3AD10-0XA0), SIMATIC Power Line Booster PLB, Base Module (6ES7972-5AA10-0AB0), SIMATIC Power Line Booster PLB, Modem Module ST (6ES7972-5AA51-0AB0), SIMATIC S7-1200 CPU 1211C AC/DC/Rly (6ES7211-1BE40-0XB0), SIMATIC S7-1200 CPU 1211C DC/DC/DC (6ES7211-1AE40-0XB0), SIMATIC S7-1200 CPU 1211C DC/DC/Rly (6ES7211-1HE40-0XB0), SIMATIC S7-1200 CPU 1212C AC/DC/Rly (6ES7212-1BE40-0XB0), SIMATIC S7-1200 CPU 1212C DC/DC/DC (6ES7212-1AE40-0XB0), SIMATIC S7-1200 CPU 1212C DC/DC/Rly (6ES7212-1HE40-0XB0), SIMATIC S7-1200 CPU 1212FC DC/DC/DC (6ES7212-1AF40-0XB0), SIMATIC S7-1200 CPU 1212FC DC/DC/Rly (6ES7212-1HF40-0XB0), SIMATIC S7-1200 CPU 1214C AC/DC/Rly (6ES7214-1BG40-0XB0), SIMATIC S7-1200 CPU 1214C DC/DC/DC (6ES7214-1AG40-0XB0), SIMATIC S7-1200 CPU 1214C DC/DC/Rly (6ES7214-1HG40-0XB0), SIMATIC S7-1200 CPU 1214FC DC/DC/DC (6ES7214-1AF40-0XB0), SIMATIC S7-1200 CPU 1214FC DC/DC/Rly (6ES7214-1HF40-0XB0), SIMATIC S7-1200 CPU 1215C AC/DC/Rly (6ES7215-1BG40-0XB0), SIMATIC S7-1200 CPU 1215C DC/DC/DC (6ES7215-1AG40-0XB0), SIMATIC S7-1200 CPU 1215C DC/DC/Rly (6ES7215-1HG40-0XB0), SIMATIC S7-1200 CPU 1215FC DC/DC/DC (6ES7215-1AF40-0XB0), SIMATIC S7-1200 CPU 1215FC DC/DC/Rly (6ES7215-1HF40-0XB0), SIMATIC S7-1200 CPU 1217C DC/DC/DC (6ES7217-1AG40-0XB0), SIMATIC S7-1500 CPU 1511-1 PN (6ES7511-1AK00-0AB0), SIMATIC S7-1500 CPU 1511F-1 PN (6ES7511-1FK00-0AB0), SIMATIC S7-1500 CPU 1513-1 PN (6ES7513-1AL00-0AB0), SIMATIC S7-1500 CPU 1513F-1 PN (6ES7513-1FL00-0AB0), SIMATIC S7-1500 CPU 1515-2 PN (6ES7515-2AM00-0AB0), SIMATIC S7-1500 CPU 1515F-2 PN (6ES7515-2FM00-0AB0), SIMATIC S7-1500 CPU 1516-3 PN/DP (6ES7516-3AN00-0AB0), SIMATIC S7-1500 CPU 1516F-3 PN/DP (6ES7516-3FN00-0AB0), SIMATIC S7-200 SMART CPU CR40 (6ES7288-1CR40-0AA0), SIMATIC S7-200 SMART CPU CR60 (6ES7288-1CR60-0AA0), SIMATIC S7-200 SMART CPU SR20 (6ES7288-1SR20-0AA0), SIMATIC S7-200 SMART CPU SR20 (6ES7288-1SR20-0AA1), SIMATIC S7-200 SMART CPU SR30 (6ES7288-1SR30-0AA0), SIMATIC S7-200 SMART CPU SR30 (6ES7288-1SR30-0AA1), SIMATIC S7-200 SMART CPU SR40 (6ES7288-1SR40-0AA0), SIMATIC S7-200 SMART CPU SR40 (6ES7288-1SR40-0AA1), SIMATIC S7-200 SMART CPU SR60 (6ES7288-1SR60-0AA0), SIMATIC S7-200 SMART CPU SR60 (6ES7288-1SR60-0AA1), SIMATIC S7-200 SMART CPU ST20 (6ES7288-1ST20-0AA0), SIMATIC S7-200 SMART CPU ST20 (6ES7288-1ST20-0AA1), SIMATIC S7-200 SMART CPU ST30 (6ES7288-1ST30-0AA0), SIMATIC S7-200 SMART CPU ST30 (6ES7288-1ST30-0AA1), SIMATIC S7-200 SMART CPU ST40 (6ES7288-1ST40-0AA0), SIMATIC S7-200 SMART CPU ST40 (6ES7288-1ST40-0AA1), SIMATIC S7-200 SMART CPU ST60 (6ES7288-1ST60-0AA0), SIMATIC S7-200 SMART CPU ST60 (6ES7288-1ST60-0AA1), SIMATIC S7-300 CPU 314C-2 PN/DP (6ES7314-6EH04-0AB0), SIMATIC S7-300 CPU 315-2 PN/DP (6ES7315-2EH14-0AB0), SIMATIC S7-300 CPU 315F-2 PN/DP (6ES7315-2FJ14-0AB0), SIMATIC S7-300 CPU 315T-3 PN/DP (6ES7315-7TJ10-0AB0), SIMATIC S7-300 CPU 317-2 PN/DP (6ES7317-2EK14-0AB0), SIMATIC S7-300 CPU 317F-2 PN/DP (6ES7317-2FK14-0AB0), SIMATIC S7-300 CPU 317T-3 PN/DP (6ES7317-7TK10-0AB0), SIMATIC S7-300 CPU 317TF-3 PN/DP (6ES7317-7UL10-0AB0), SIMATIC S7-300 CPU 319-3 PN/DP (6ES7318-3EL01-0AB0), SIMATIC S7-300 CPU 319F-3 PN/DP (6ES7318-3FL01-0AB0), SIMATIC S7-400 CPU 412-2 PN V7 (6ES7412-2EK07-0AB0), SIMATIC S7-400 CPU 414-3 PN/DP V7 (6ES7414-3EM07-0AB0), SIMATIC S7-400 CPU 414F-3 PN/DP V7 (6ES7414-3FM07-0AB0), SIMATIC S7-400 CPU 416-3 PN/DP V7 (6ES7416-3ES07-0AB0), SIMATIC S7-400 CPU 416F-3 PN/DP V7 (6ES7416-3FS07-0AB0), SIMATIC S7-400 H V6 CPU family (incl. SIPLUS variants), SIMATIC S7-410 V10 CPU family (incl. SIPLUS variants), SIMATIC S7-410 V8 CPU family (incl. SIPLUS variants), SIMATIC TDC CP51M1, SIMATIC TDC CPU555, SIMOCODE pro V Ethernet/IP (incl. SIPLUS variants), SIMOCODE pro V PROFINET, SINUMERIK 840D sl, SIPLUS ET 200MP IM 155-5 PN HF (6AG1155-5AA00-2AC0), SIPLUS ET 200MP IM 155-5 PN HF (6AG1155-5AA00-7AC0), SIPLUS ET 200MP IM 155-5 PN HF T1 RAIL (6AG2155-5AA00-1AC0), SIPLUS ET 200S IM 151-8 PN/DP CPU (6AG1151-8AB01-7AB0), SIPLUS ET 200S IM 151-8F PN/DP CPU (6AG1151-8FB01-2AB0), SIPLUS ET 200SP CPU 1512SP F-1 PN (6AG1512-1SK00-2AB0), SIPLUS ET 200SP IM 155-6 PN HF (6AG1155-6AU00-2CN0), SIPLUS ET 200SP IM 155-6 PN HF (6AG1155-6AU00-4CN0), SIPLUS ET 200SP IM 155-6 PN HF (6AG1155-6AU01-2CN0), SIPLUS ET 200SP IM 155-6 PN HF (6AG1155-6AU01-7CN0), SIPLUS ET 200SP IM 155-6 PN HF T1 RAIL (6AG2155-6AU00-1CN0), SIPLUS ET 200SP IM 155-6 PN HF T1 RAIL (6AG2155-6AU01-1CN0), SIPLUS ET 200SP IM 155-6 PN HF TX RAIL (6AG2155-6AU01-4CN0), SIPLUS HCS4200 CIM4210 (6BK1942-1AA00-0AA0), SIPLUS HCS4200 CIM4210C (6BK1942-1AA00-0AA1), SIPLUS HCS4300 CIM4310 (6BK1943-1AA00-0AA0), SIPLUS NET PN/PN Coupler (6AG2158-3AD10-4XA0), SIPLUS S7-1200 CPU 1212 AC/DC/RLY (6AG1212-1BE40-4XB0), SIPLUS S7-1200 CPU 1212 DC/DC/RLY (6AG1212-1HE40-2XB0), SIPLUS S7-1200 CPU 1212 DC/DC/RLY (6AG1212-1HE40-4XB0), SIPLUS S7-1200 CPU 1212C AC/DC/RLY (6AG1212-1BE40-2XB0), SIPLUS S7-1200 CPU 1212C DC/DC/DC (6AG1212-1AE40-2XB0), SIPLUS S7-1200 CPU 1212C DC/DC/DC (6AG1212-1AE40-4XB0), SIPLUS S7-1200 CPU 1212C DC/DC/DC RAIL (6AG2212-1AE40-1XB0), SIPLUS S7-1200 CPU 1214 AC/DC/RLY (6AG1214-1BG40-5XB0), SIPLUS S7-1200 CPU 1214 DC/DC/RLY (6AG1214-1HG40-2XB0), SIPLUS S7-1200 CPU 1214C AC/DC/RLY (6AG1214-1BG40-2XB0), SIPLUS S7-1200 CPU 1214C AC/DC/RLY (6AG1214-1BG40-4XB0), SIPLUS S7-1200 CPU 1214C DC/DC/DC (6AG1214-1AG40-2XB0), SIPLUS S7-1200 CPU 1214C DC/DC/DC (6AG1214-1AG40-4XB0), SIPLUS S7-1200 CPU 1214C DC/DC/DC (6AG1214-1AG40-5XB0), SIPLUS S7-1200 CPU 1214C DC/DC/DC RAIL (6AG2214-1AG40-1XB0), SIPLUS S7-1200 CPU 1214C DC/DC/RLY (6AG1214-1HG40-4XB0), SIPLUS S7-1200 CPU 1214C DC/DC/RLY (6AG1214-1HG40-5XB0), SIPLUS S7-1200 CPU 1214FC DC/DC/DC (6AG1214-1AF40-5XB0), SIPLUS S7-1200 CPU 1214FC DC/DC/RLY (6AG1214-1HF40-5XB0), SIPLUS S7-1200 CPU 1215 AC/DC/RLY (6AG1215-1BG40-4XB0), SIPLUS S7-1200 CPU 1215 AC/DC/RLY (6AG1215-1BG40-5XB0), SIPLUS S7-1200 CPU 1215 DC/DC/DC (6AG1215-1AG40-2XB0), SIPLUS S7-1200 CPU 1215 DC/DC/DC (6AG1215-1AG40-4XB0), SIPLUS S7-1200 CPU 1215 DC/DC/RLY (6AG1215-1HG40-2XB0), SIPLUS S7-1200 CPU 1215 DC/DC/RLY (6AG1215-1HG40-4XB0), SIPLUS S7-1200 CPU 1215 DC/DC/RLY (6AG1215-1HG40-5XB0), SIPLUS S7-1200 CPU 1215C AC/DC/RLY (6AG1215-1BG40-2XB0), SIPLUS S7-1200 CPU 1215C DC/DC/DC (6AG1215-1AG40-5XB0), SIPLUS S7-1200 CPU 1215FC DC/DC/DC (6AG1215-1AF40-5XB0), SIPLUS S7-1500 CPU 1511-1 PN (6AG1511-1AK00-2AB0), SIPLUS S7-1500 CPU 1511F-1 PN (6AG1511-1FK00-2AB0), SIPLUS S7-1500 CPU 1513-1 PN (6AG1513-1AL00-2AB0), SIPLUS S7-1500 CPU 1513F-1 PN (6AG1513-1FL00-2AB0), SIPLUS S7-1500 CPU 1516-3 PN/DP (6AG1516-3AN00-2AB0), SIPLUS S7-1500 CPU 1516-3 PN/DP (6AG1516-3AN00-7AB0), SIPLUS S7-1500 CPU 1516F-3 PN/DP (6AG1516-3FN00-2AB0), SIPLUS S7-300 CPU 314C-2 PN/DP (6AG1314-6EH04-7AB0), SIPLUS S7-300 CPU 315-2 PN/DP (6AG1315-2EH14-7AB0), SIPLUS S7-300 CPU 315F-2 PN/DP (6AG1315-2FJ14-2AB0), SIPLUS S7-300 CPU 317-2 PN/DP (6AG1317-2EK14-7AB0), SIPLUS S7-300 CPU 317F-2 PN/DP (6AG1317-2FK14-2AB0), SIPLUS S7-400 CPU 414-3 PN/DP V7 (6AG1414-3EM07-7AB0), SIPLUS S7-400 CPU 416-3 PN/DP V7 (6AG1416-3ES07-7AB0), SIWAREX WP231 (7MH4960-2AA01), SIWAREX WP241 (7MH4960-4AA01), SIWAREX WP251 (7MH4960-6AA01), SIWAREX WP521 ST (7MH4980-1AA01), SIWAREX WP522 ST (7MH4980-2AA01) Product Status: known_affected Remediations Mitigation As a mitigation, disable the ethernet ports on the CPU and use a communication module (like CP) for communication instead No fix planned Currently no fix is planned None available Currently no fix is available Vendor fix Update to V1.3 or later version Vendor fix Update to V10.2 or later version Vendor fix Update to V2.0.0 or later version Vendor fix Update to V2.0.0 or later version Vendor fix Update to V4.4.0 or later version Vendor fix Update to V6.0.0 or later version Vendor fix Update to V8.3 or later version Workaround Limit TCP accessibility to trusted IP address Relevant CWE: CWE-940 Improper Verification of Source of a Communication Channel Metrics CVSS Version Base Score Base Severity Vector String 3.1 7.5 HIGH CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H Acknowledgments Siemens ProductCERT reported this vulnerability to CISA. Qian Zou, Xuewei Feng, Ke Xu, Qi Li, Xueying Li, and Gang Jin of Zhongguancun Laboratory reported this vulnerability to Siemens Qian Zou, Xuewei Feng, Ke Xu, Qi Li, Xueying Li, and Gang Jin of Tsinghua University reported this vulnerability to Siemens General Recommendations As a general security measure, Siemens strongly recommends to protect network access to devices with appropriate mechanisms. In order to operate the devices in a protected IT environment, Siemens recommends to configure the environment according to Siemens' operational guidelines for Industrial Security (Download: https://www.siemens.com/cert/operational-guidelines-industrial-security), and to follow the recommendations in the product manuals. Additional information on Industrial Security by Siemens can be found at: https://www.siemens.com/industrialsecurity Additional Resources For further inquiries on security vulnerabilities in Siemens products and solutions, please contact the Siemens ProductCERT: https://www.siemens.com/cert/advisories Terms of Use The use of Siemens Security Advisories is subject to the terms and conditions listed on: https://www.siemens.com/productcert/terms-of-use. Legal Notice and Terms of Use This product is provided subject to this Notification (https://www.cisa.gov/notification) and this Privacy & Use policy (https://www.cisa.gov/privacy-policy). Recommended Practices CISA recommends users take defensive measures to minimize the exploitation risk of these vulnerabilities. Minimize network exposure for all control system devices and/or systems, and ensure they are not accessible from the internet. Locate control system networks and remote devices behind firewalls and isolate them from business networks. When remote access is required, use more secure methods, such as Virtual Private Networks (VPNs), recognizing VPNs may have vulnerabilities and should be updated to the most recent version available. Also recognize VPN is only as secure as its connected devices. CISA reminds organizations to perform proper impact analysis and risk assessment prior to deploying defensive measures. CISA also provides a section for control systems security recommended practices on the ICS webpage on cisa.gov. Several CISA products detailing cyber defense best practices are available for reading and download, including Improving Industrial Control Systems Cybersecurity with Defense-in-Depth Strategies. CISA encourages organizations to implement recommended cybersecurity strategies for proactive defense of ICS assets. Additional mitigation guidance and recommended practices are publicly available on the ICS webpage at cisa.gov in the technical information paper, ICS-TIP-12-146-01B--Targeted Cyber Intrusion Detection and Mitigation Strategies. Organizations observing suspected malicious activity should follow established internal procedures and report findings to CISA for tracking and correlation against other incidents. Advisory Conversion Disclaimer This ICSA is a verbatim republication of Siemens ProductCERT SSA-915282 from a direct conversion of the vendor's Common Security Advisory Framework (CSAF) advisory. This is republished to CISA's website as a means of increasing visibility and is provided "as-is" for informational purposes only. CISA is not responsible for the editorial or technical accuracy of republished advisories and provides no warranties of any kind regarding any information contained within this advisory. Further, CISA does not endorse any commercial product or service. Please contact Siemens ProductCERT directly for any questions regarding this advisory. Revision History Initial Release Date: 2025-12-18 Date Revision Summary 2025-12-18 1 Initial Republication Legal Notice and Terms of Use
www.cisa.gov
December 18, 2025 at 5:19 PM