ICS/OT

ICS Patch Tuesday: Vulnerabilities Fixed by Siemens, Schneider, Phoenix Contact

In addition, Rockwell Automation announced some enhancements to its SecureOT cybersecurity solution for OT.

ICS Patch Tuesday

ICS Patch Tuesday advisories were published this month by Siemens, Schneider Electric, and Phoenix Contact.

Siemens published only four new advisories. In Sinec INS, the industrial giant fixed authenticated command execution, information disclosure, privilege escalation, and password exposure flaws.

The company also addressed a DoS and potential code execution issue in Siprotec 5, and a sensitive information exposure weakness in WinCC Certificate Manager.

Siemens also patched CVE-2025-15467, an OpenSSL vulnerability allowing remote code execution, in Scalance, Simatic, Sinamics, Sinec, and other products.

Schneider Electric published three new advisories. They cover DoS and command execution vulnerabilities in PowerLogic P7, credential exposure issues in EasyLogic T150 and Saitel DP Remote Terminal Unit & Controller, and an information disclosure issue in EcoStruxure IT Data Center Expert.

Phoenix Contact published one new advisory to inform customers about an unauthenticated log download vulnerability in the firmware of CHARX SEC-3xxx charging controllers.

CISA and Germany’s VDE CERT have also published some vendor advisories. CISA informed organizations about previously disclosed Schneider and Siemens flaws, while VDE CERT released advisories for LabX Standard and MBS security holes.

Advertisement. Scroll to continue reading.

Rockwell Automation did not issue any new security advisories on Tuesday, but it announced enhancements to its SecureOT solution suite, including the OT Cybersecurity Assessment Suite, SecureOT Platform Managed Services, and Managed Secure Remote Access (MSRA).

ABB and Mitsubishi Electric have each published a couple of new advisories over the past month. 

Related: Real-World ICS Security Tales From the Trenches

Related: Critical Vulnerability Exposes Industrial Robot Fleets to Hacking

Related: ICS Patch Tuesday: New Security Advisories From Siemens, Schneider, CISA

Related Content

Mobile & Wireless

The security updates resolve critical flaws across Android’s Framework, System, and Kernel components.

ICS/OT

AVEVA and Rockwell Automation also released patches for vulnerabilities affecting industrial control system products.

Vulnerabilities

The StyleSmuggler zero-day allows attackers to execute code and deploy a stealthy backdoor on Adobe Commerce and Magento stores.

Vulnerabilities

The high-severity SQL injection flaw (CVE-2026-19949) could allow unauthenticated attackers to achieve remote code execution.

ICS/OT

The industrial giant has released advisories for its RSLinx Classic, ArmorStart, ControlFLASH, FactoryTalk, and other products.

Vulnerabilities

The security defect allows remote attackers to bypass authentication through argument bearer manipulation.

Vulnerabilities

The browser refreshes fix multiple use-after-free, sandbox escape, and privilege escalation bugs.

Vulnerabilities

The vulnerabilities CVE-2026-83549 and CVE-2026-83548 can be chained for unauthenticated remote code execution.

Copyright © 2026 SecurityWeek ®, a Wired Business Media Publication. All Rights Reserved.

Exit mobile version