all InfoSec news
SSA-316383 V1.1 (Last Update: 2022-02-08): NumberJack Vulnerability in LOGO! CMR and SIMATIC RTU 3000 devices
Siemens ProductCERT Security Advisories cert-portal.siemens.com
A vulnerability has been identified in the underlying TCP/IP stack of LOGO! CMR and SIMATIC RTU 3000 devices. It could allow an attacker with network access to the LAN interface of an affected device to hijack an ongoing connection or spoof a new one. The WAN interface, however, is not affected.
Siemens has released updates for the affected products and recommends to update to the latest versions.
access attacker device devices hijack interface ip stack lan logo network network access rtu simatic spoof ssa stack tcp update vulnerability