Siemens Desigo DXR and PXC Controllers
Summary
A denial-of-service vulnerability has been identified in Siemens Desigo DXR and PXC controllers that allows attackers to disrupt device functionality by sending malformed BACnet packets. Siemens has released updated versions to address this issue, and users are advised to update their systems.
IFF Assessment
FOE
This vulnerability allows attackers to cause denial-of-service conditions, disrupting critical infrastructure operations and posing a risk to defenders.
Severity
4.3
Medium
Defender Context
This vulnerability impacts critical infrastructure sectors like energy and transportation, highlighting the ongoing threat to industrial control systems. Defenders should prioritize patching affected Siemens Desigo controllers and monitor network traffic for unusual BACnet packet activity.