CISA Advisories

Today

  • Siemens Parasolid

    CISA AdvisoriesCISA Advisories

    View CSAF Summary Parasolid is affected by an out of bounds read vulnerability that could be triggered when the application reads files in X_T format. This could allow an attacker to crash the applica...

  • Siemens License Server (SLS)

    CISA AdvisoriesCISA Advisories

    View CSAF Summary Siemens License Server is affected by multiple vulnerabilities which could allow an attacker to elevate its privileges and read arbitrary files on the system. Siemens has released a...

  • Siemens Desigo DXR and PXC Controllers

    CISA AdvisoriesCISA Advisories

    View CSAF Summary A vulnerability in Desigo DXR and PXC controllers has been identified that could allow an attacker to cause denial of service conditions by sending malformed BACnet packets. Recovery...

  • Johnson Controls Inc. Airwall

    CISA AdvisoriesCISA Advisories

    View CSAF Summary Successful exploitation of these vulnerabilities could allow an attacker to decrypt sensitive data, bypass authentication controls, gaining unauthorized access to read arbitrary file...

  • Johnson Controls Metasys

    CISA AdvisoriesCISA Advisories

    View CSAF Summary Successful exploitation of this vulnerability could allow a low-privilege user or attacker to inject a persistent malicious payload via a crafted URL that executes in the context of...

  • Siemens Siveillance Video

    CISA AdvisoriesCISA Advisories

    View CSAF Summary Siveillance Video Management Servers contains a vulnerability that could allow a Remote Code Execution attack. Siemens has released new versions for the affected products and recomme...

  • Flow Neuroscience FL-100

    CISA AdvisoriesCISA Advisories

    View CSAF Summary Successful exploitation of this vulnerability could allow an attacker within Bluetooth range to manipulate brain stimulation parameters and override safety limits. The following vers...

  • Siemens LOGO! Soft Comfort

    CISA AdvisoriesCISA Advisories

    View CSAF Summary Siemens LOGO! Soft Comfort contains multiple vulnerabilities in its project-file encryption and password handling mechanisms. A local attacker could exploit these vulnerabilities to...

  • ANDRITZ HIPASE-250 and 250 SCALA

    CISA AdvisoriesCISA Advisories

    View CSAF Summary Successful exploitation of these vulnerabilities could allow an attacker to read data from the device or gain access to affected workstations. The following versions of ANDRITZ HIPAS...

  • Siemens Solid Edge

    CISA AdvisoriesCISA Advisories

    View CSAF Summary Solid Edge is affected by multiple file parsing vulnerabilities that could be triggered when the application reads specially crafted files in PAR, PSM or DFT format. This could allow...

  • Siemens Simcenter Femap

    CISA AdvisoriesCISA Advisories

    View CSAF Summary Simcenter Femap contains two file parsing vulnerabilities that could be triggered when the application reads files in BMP file format. If a user is tricked to open a malicious file w...

  • Haiwell IoT Cloud HMI Gateway

    CISA AdvisoriesCISA Advisories

    View CSAF Summary Successful exploitation of this vulnerability may allow an attacker to inject and execute arbitrary OS commands with root privileges. The following versions of Haiwell IoT Cloud HMI...

  • AVEVA Enterprise SCADA

    CISA AdvisoriesCISA Advisories

    View CSAF Summary Successful exploitation of this vulnerability could allow an attacker to tamper with serialized data, potentially resulting in code execution during deserialization. The following ve...

  • Hitachi Energy APM Edge Product

    CISA AdvisoriesCISA Advisories

    View CSAF Summary Hitachi Energy is aware of Dirty Frag vulnerabilities that affect APM Edge product versions listed in this document. Successful exploitation of these vulnerabilities could result in...

Yesterday

  • Siemens RUGGEDCOM APE1808

    CISA AdvisoriesCISA Advisories

    View CSAF Summary Fortinet has published information on vulnerabilities in FortiOS. This advisory lists the related Siemens Industrial products. Siemens recommends to contact customer support for addi...

2026-08-11

2026-08-10

  • #StopRansomware: Gunra Ransomware

    CISA AdvisoriesCISA Advisories

    Advisory at a Glance Title #StopRansomware: Gunra Ransomware Original Publication August 10, 2026 Executive Summary Gunra is a ransomware-as-a-service (RaaS) used by affiliates to target govern...

2026-08-07

  • CPDLC over ATN-B1 Vulnerabilities

    CISA AdvisoriesCISA Advisories

    View CSAF Summary ATN-B1 CPDLC relies on legacy clear text unauthenticated radio frequency links. Research demonstrates that these characteristics allow unauthorized message injection, denial-of-servi...

2026-08-06

  • Medixant RadiAnt DICOM

    CISA AdvisoriesCISA Advisories

    View CSAF Summary Successful exploitation of this vulnerability could allow an attacker to cause the application to crash if a maliciously crafted DICOM file is opened. The following versions of Medix...

  • ABB Ability Zenon

    CISA AdvisoriesCISA Advisories

    View CSAF Summary Successful exploitation of these vulnerabilities could allow attackers to bypass security, crash systems, execute unauthorized actions, or compromise data. The following versions of...

  • Johnson Controls Inc. TL280

    CISA AdvisoriesCISA Advisories

    View CSAF Summary Successful exploitation of this vulnerability could allow an attacker to access sensitive information on the device. The following versions of Johnson Controls Inc. TL280 are affecte...

2026-08-05

2026-08-04

2026-08-03