news.mlab.sh
Back to the feed
threat-intel

Multiples vulnérabilités dans les produits Siemens (08 septembre 2026)

HighCVSS 8.2
Summary

Multiple vulnerabilities have been discovered in Siemens products, potentially allowing an attacker to execute arbitrary code and elevate privileges. These vulnerabilities affect a wide range of industrial automation equipment, including HMIs, controllers, and edge devices. Siemens has released security bulletins detailing the affected products and providing instructions for applying the necessary updates. The vulnerabilities are related to CVE-2026-31431 and CVE-2026-34223.

Multiple vulnerabilities have been discovered in Siemens products, potentially allowing an attacker to execute arbitrary code and elevate privileges. These vulnerabilities affect a wide range of industrial automation equipment, including HMIs, controllers, and edge devices. Siemens has released security bulletins detailing the affected products and providing instructions for applying the necessary updates. The vulnerabilities are related to CVE-2026-31431 and CVE-2026-34223.

Systems affected include:

  • Desigo CC all versions for vulnerability CVE-2026-34223
  • SIMATIC AX Runtime Core Linux Common Debian arm64 all versions for vulnerability CVE-2026-31431
  • SIMATIC AX Runtime Core Linux Common Debian all versions for vulnerability CVE-2026-31431
  • SIMATIC AX Runtime Core Linux Platform Container Common Debian Development all versions for vulnerability CVE-2026-31431
  • SIMATIC AX Runtime Core Linux VMWare Development all versions for vulnerability CVE-2026-31431
  • SIMATIC CN 4100 versions prior to 6.0
  • SIMATIC HMI MTP1000 Unified Basic (6AV2123-3KB32-0AW0) versions prior to 21.0.2.1
  • SIMATIC HMI MTP1000 Unified Comfort Panel (6AV2128-3KB06-0AX1) versions prior to 21.0.2.1
  • SIMATIC HMI MTP1000 Unified Comfort Panel hygienic (6AV2128-3KB40-0AX0) versions prior to 21.0.2.1
  • SIMATIC HMI MTP1000 Unified Comfort Panel hygienic neutral design (6AV2128-3KB70-0AX0) versions prior to 21.0.2.1
  • SIMATIC HMI MTP1000, Unified Comfort Panel neutral (6AV2128-3KB36-0AX1) versions prior to 21.0.2.1
  • SIMATIC HMI MTP1200 Comfort Pro for stand (expandable, flange at the bottom) (6AV2128-3MB27-1BX0) versions prior to 21.0.2.1
  • SIMATIC HMI MTP1200 Comfort Pro for support arm (expandable, round tube) and extension unit (6AV2128-3MB27-0BX0) versions prior to 21.0.2.1
  • SIMATIC HMI MTP1200 Comfort Pro for support arm (not extendable, flange on top) (6AV2128-3MB27-0AX0) versions prior to 21.0.2.1
  • SIMATIC HMI MTP1200 Comfort Pro neutral design for stand (expandable, flange at the bottom) (6AV2128-3MB57-1BX0) versions prior to 21.0.2.1
  • SIMATIC HMI MTP1200 Comfort Pro neutral design for support arm (expandable, round tube) and extension (6AV2128-3QB57-0BX0) versions prior to 21.0.2.1
  • SIMATIC HMI MTP1200 Comfort Pro neutral design for support arm (not extendable, flange on top) (6AV2128-3QB57-0AX0) versions prior to 21.0.2.1
  • SIMATIC HMI MTP1200 Unified Basic (6AV2123-3DB32-0AW0) versions prior to 21.0.2.1
  • SIMATIC HMI MTP700 Unified Basic (6AV2123-3GB32-0AW0) versions prior to 21.0.2.1
  • SIMATIC HMI MTP700 Unified Comfort Panel (6AV2128-3GB06-0AX1) versions prior to 21.0.2.1
  • SIMATIC HMI MTP700 Unified Comfort Panel hygienic neutral design (6AV2128-3GB40-0AX0) versions prior to 21.0.2.1
  • SIMATIC HMI MTP700 Unified Comfort Panel hygienic neutral design (6AV2128-3GB70-0AX0) versions prior to 21.0.2.1
  • SIMATIC HMI MTP700, Unified Comfort Panel neutral design (6AV2128-3GB36-0AX1) versions prior to 21.0.2.1
  • SIMATIC IoT2050 Advanced (6ES7647-0BA00-1YA2) all versions for vulnerability CVE-2026-31431
  • SIMATIC IPC Industrial Edge Device OS (IED-OS) all versions for vulnerability CVE-2026-31431
  • SIMATIC S7-1500 TM MFP (6ES7558-1AA00-0AB0) all versions for vulnerability CVE-2026-31431

Solutions: Refer to the vendor's security bulletin for details on how to obtain and apply the necessary updates (cf. Documentation).

Documentation:

  • Siemens Security Bulletin SSA-328642 dated September 08, 2026: https://cert-portal.siemens.com/productcert/html/ssa-328642.html
  • Siemens Security Bulletin SSA-330084 dated September 08, 2026: https://cert-portal.siemens.com/productcert/html/ssa-330084.html
  • CVE Record: CVE-2026-31431: https://www.cve.org/CVERecord?id=CVE-2026-31431
  • CVE Record: CVE-2026-34223: https://www.cve.org/CVERecord?id=CVE-2026-34223
Read the full article at CERT-FR