

įor more information on the vulnerability and more detailed mitigation instructions, please see Siemens Security Advisory SSA-686531 at the following location. įor further inquiries on security vulnerabilities in Siemens products, please contact the Siemens ProductCERT.
Siemens simatic s7 200 manuals#
Siemens recommends users configure their environment according to the Siemens Operational Guidelines for Industrial Security and follow the recommendations in the product manuals to operate the devices in a protected environment.Īdditional information on industrial security by Siemens can be found at. Siemens has identified the following specific workarounds and mitigations users can apply to reduce the risk:Īs a general security measure, Siemens strongly recommends protecting network access to devices with appropriate mechanisms.
Siemens simatic s7 200 update#
SIMATIC S7-200 SMART CPU CR60s (6ES7 288-1CR60-0AA0): Update to version >= v2.3.0 and the latest boot loader version (the firmware version currently remains at v2.3.0 only the boot loader updates).SIMATIC S7-200 SMART CPU CR40s (6ES7 288-1CR40-0AA0): Update to version >= v2.3.0 and the latest boot loader version (the firmware version currently remains at v2.3.0 only the boot loader updates).SIMATIC S7-200 SMART CPU CR30s (6ES7 288-1CR30-0AA0): Update to version >= v2.3.0 and the latest boot loader version (the firmware version currently remains at v2.3.0 only the boot loader updates).SIMATIC S7-200 SMART CPU CR20s (6ES7 288-1CR20-0AA0): Update to version >= v2.3.0 and the latest boot loader version (the firmware version currently remains at v2.3.0 only the boot loader updates).SIMATIC S7-200 SMART CPU CR60 (6ES7 288-1CR60-0AA0): Update to version >= v2.2.3 and the latest boot loader version.SIMATIC S7-200 SMART CPU CR40 (6ES7 288-1CR40-0AA0): Update to version >= v2.2.3 and the latest boot loader version.SIMATIC S7-200 SMART CPU SR60 (6ES7 288-1SR60-0AA0): Update to version >= v2.5.1 and the latest boot loader version.SIMATIC S7-200 SMART CPU SR40 (6ES7 288-1SR40-0AA0): Update to version >= v2.5.1 and the latest boot loader version.SIMATIC S7-200 SMART CPU SR30 (6ES7 288-1SR30-0AA0): Update to version >= v2.5.1 and the latest boot loader version.SIMATIC S7-200 SMART CPU SR20 (6ES7 288-1SR20-0AA0): Update to version >= v2.5.1 and the latest boot loader version.SIMATIC S7-200 SMART CPU ST60 (6ES7 288-1ST60-0AA0): Update to version >= v2.5.1 and the latest boot loader version.SIMATIC S7-200 SMART CPU ST40 (6ES7 288-1ST40-0AA0): Update to version >= v2.5.1 and the latest boot loader version.SIMATIC S7-200 SMART CPU ST30 (6ES7 288-1ST30-0AA0): Update to version >= v2.5.1 and the latest boot loader version.SIMATIC S7-200 SMART CPU ST20 (6ES7 288-1ST20-0AA0): Update to version >= v2.5.1 and the latest boot loader version.SIMATIC S7-1200 CPU family prior to v4.x (including SIPLUS variants): Firmware versions prior to v4.x cannot be updated for remediation see the workaround recommendations below.SIMATIC S7-1200 CPU family v4.x (including SIPLUS variants): all versions with Function State (FS) = 11.The following Siemens products are affected: Successful exploitation of this vulnerability could expose additional diagnostic functionality to an attacker with physical access to the UART interface during boot process.

This updated advisory is a follow-up to the advisory update titled-19-318-02 Siemens S7-1200 (Update A) that was published December 10, 2019, on the ICS webpage on.

