May 10, 2022, midnight |

Siemens ProductCERT Security Advisories cert-portal.siemens.com

The latest updates for TIA Portal fix a vulnerability that could allow a local attacker to execute arbitrary code with SYSTEM privileges.


Update: The previously provided fixes only correctly set the permissions on English Windows versions.


Siemens is preparing updates and recommends specific countermeasures for products where updates are not, or not yet available.

arbitrary code attacker code countermeasures escalation fix fixes latest local local privilege escalation permissions portal privilege privilege escalation privileges products siemens ssa system system privileges tia tia portal update updates vulnerability windows

More from cert-portal.siemens.com / Siemens ProductCERT Security Advisories

SOC 2 Manager, Audit and Certification

@ Deloitte | US and CA Multiple Locations

Digital Trust Cyber Transformation Senior

@ KPMG India | Mumbai, Maharashtra, India

Security Consultant, Assessment Services - SOC 2 | Remote US

@ Coalfire | United States

Sr. Systems Security Engineer

@ Effectual | Washington, DC

Cyber Network Engineer

@ SonicWall | Woodbridge, Virginia, United States

Security Architect

@ Nokia | Belgium