QID 590691
Date Published: 2022-06-03
QID 590691: Siemens APOGEE and TALON Vulnerability (ICSA-21-257-07)
AFFECTED PRODUCTS
The following products are affected:
APOGEE MBC (PPC) (P2 Ethernet): v2.6.3 and newer
APOGEE MEC (PPC) (P2 Ethernet): v2.6.3 and newer
APOGEE PXC Compact (BACnet): All versions prior to v3.5.3
APOGEE PXC Compact (P2 Ethernet): v2.8 and newer
APOGEE PXC Modular (BACnet): All versions prior to v3.5.3
APOGEE PXC Modular (P2 Ethernet): v2.8 and newer
TALON TC Compact (BACnet): All versions prior to v3.5.3
TALON TC Modular (BACnet): All versions prior to v3.5.3
QID Detection Logic (Authenticated):
QID checks for the Vulnerable version of using passive scanning
Successful exploitation of this vulnerability could allow an attacker to execute arbitrary code on the device with root privileges.
Customers are advised to refer to CERT MITIGATIONS section ICSA-21-257-07 for affected packages and patching details.
- ICSA-21-257-07 -
www.us-cert.gov/ics/advisories/ICSA-21-257-07
CVEs related to QID 590691
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| ICSA-21-257-07 |
|