Sept. 13, 2022, midnight |

Siemens ProductCERT Security Advisories cert-portal.siemens.com

RUGGEDCOM ROS-based devices are vulnerable to a denial of service attack (Slowloris). By sending partial HTTP requests nonstop, with none completed, the affected web servers will be waiting for the completion of each request, occupying all available HTTP connections. The web server recovers by itself once the attack ends.


Siemens has released updates for the affected products and recommends to update to the latest versions.

attack connections denial of service denial of service attack devices http http requests partial request requests ros ruggedcom server servers service slowloris ssa the web vulnerability vulnerable web web server web servers

More from cert-portal.siemens.com / Siemens ProductCERT Security Advisories

Red Team Operator

@ JPMorgan Chase & Co. | LONDON, United Kingdom

SOC Analyst

@ Resillion | Bengaluru, India

Director of Cyber Security

@ Revinate | San Francisco Bay Area

Jr. Security Incident Response Analyst

@ Kaseya | Miami, Florida, United States

Infrastructure Vulnerability Consultant - (Cloud Security , CSPM)

@ Blue Yonder | Hyderabad

Product Security Lead

@ Lely | Maassluis, Netherlands