This content is restricted.
Brief
Here is a short summary of the provided document:
Summary:
As of January 10, 2023, CISA will no longer update ICS security advisories for Siemens product vulnerabilities beyond the initial advisory. A vulnerability in Siemens' SINUMERIK MC and SINUMERIK ONE products has been identified, allowing an attacker to create a denial-of-service condition by sending specially crafted packets to port 102/tcp. Siemens recommends exposing port 102/tcp only to trusted networks, protecting network access with appropriate mechanisms, and configuring devices according to industrial security guidelines. CISA recommends minimizing network exposure, locating control systems behind firewalls, and using secure remote access methods. No public exploitation of this vulnerability has been reported at this time.
References:
CISA: Critical Infrastructure Sectors
Siemens: ProductCERT Security Advisories and industrial security webpage
* CISA's ICS webpage: Control systems security recommended practices and technical information papers
Highlights content goes here...
This content is restricted.
