Skip to content
  • Blog Home
  • Cyber Map
  • About Us – Contact
  • Disclaimer
  • Terms and Rules
  • Privacy Policy
Cyber Web Spider Blog – News

Cyber Web Spider Blog – News

Globe Threat Map provides a real-time, interactive 3D visualization of global cyber threats. Monitor DDoS attacks, malware, and hacking attempts with geo-located arcs on a rotating globe. Stay informed with live logs and archive stats.

  • Home
  • Cyber Map
  • Cyber Security News
  • Security Week News
  • The Hacker News
  • How To?
  • Toggle search form
Siemens, Schneider, and Others Address ICS Vulnerabilities

Siemens, Schneider, and Others Address ICS Vulnerabilities

Posted on February 11, 2026 By CWS

Major industrial corporations, including Siemens, Schneider Electric, Aveva, and Phoenix Contact, have issued advisories as part of Patch Tuesday, alerting their customers to vulnerabilities discovered in their industrial control systems (ICS) and operational technology (OT) products.

Siemens Releases Multiple Security Advisories

Siemens has been proactive, issuing eight new advisories that address high-severity vulnerabilities in various products such as Desigo CC, Sentron Powermanager, and others. The company has provided patches and mitigations to tackle issues that could lead to unauthorized access, cross-site scripting (XSS), denial-of-service (DoS) attacks, code execution, and privilege escalation. Additionally, a medium-severity issue was identified in Siveillance Video Management Servers.

Further, Siemens highlighted concerns regarding the Siport desktop client application, which lacks anti-tamper protections and modern exploit mitigation controls. This susceptibility could allow unauthorized modifications and potential misuse of the application.

Schneider Electric and Aveva Address Critical Flaws

Schneider Electric has issued two advisories. The first outlines high-severity vulnerabilities in EcoStruxure Building Operation Workstation and WebStation that could result in DoS, information disclosure, or code execution. The second advisory focuses on a critical flaw capable of causing DoS or code execution in SCADAPack RTUs.

Aveva has alerted customers to a high-severity DoS vulnerability in PI Data Archive and a medium-severity unauthorized access issue in PI to Connect Agent, emphasizing the need for timely updates to these systems.

Phoenix Contact and CISA Updates

Phoenix Contact has responded to a 2024 OpenSSL vulnerability, with Germany’s VDE CERT also acknowledging the issue and releasing an advisory for related Wago managed switch vulnerabilities. Meanwhile, CISA has published five new advisories detailing vulnerabilities in products from Yokogawa, Zlan, and Zoll, alongside the Aveva issues disclosed earlier.

In the days leading up to Patch Tuesday, Mitsubishi Electric and Moxa also released advisories for vulnerabilities affecting their products, including Freqship-mini for Windows and Melsec iQ-R.

These proactive measures underscore the ongoing efforts by industry leaders to secure ICS environments against potential threats, emphasizing the importance of regular security updates and vigilant monitoring to safeguard critical infrastructure.

Security Week News Tags:Aveva, CISA, Cybersecurity, ICS vulnerabilities, industrial control systems, Patch Tuesday, Phoenix Contact, Schneider Electric, security patches, Siemens

Post navigation

Previous Post: North Korea-Linked UNC1069 Targets Crypto with AI Attacks
Next Post: Socelars Malware Targets Windows for Data Theft

Related Posts

Aisuru Botnet Powers Record DDoS Attack Peaking at 29 Tbps Aisuru Botnet Powers Record DDoS Attack Peaking at 29 Tbps Security Week News
CitrixBleed 2: 100 Organizations Hacked, Thousands of Instances Still Vulnerable CitrixBleed 2: 100 Organizations Hacked, Thousands of Instances Still Vulnerable Security Week News
Access System Flaws Enabled Hackers to Unlock Doors at Major European Firms Access System Flaws Enabled Hackers to Unlock Doors at Major European Firms Security Week News
Over 1 Million Impacted by DaVita Data Breach Over 1 Million Impacted by DaVita Data Breach Security Week News
Critical Vulnerabilities Patched in Trend Micro Apex Central, Endpoint Encryption Critical Vulnerabilities Patched in Trend Micro Apex Central, Endpoint Encryption Security Week News
NordVPN Denies Breach After Hacker Leaks Data NordVPN Denies Breach After Hacker Leaks Data Security Week News

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Recent Posts

  • Microsoft Fixes 59 Security Flaws, Including Six Critical Zero-Days
  • Coinbase Cartel’s Data Theft Tactics Threaten High-Value Industries
  • Intel and AMD Patch Over 80 Vulnerabilities in February
  • Six New Microsoft Vulnerabilities Added to CISA’s KEV List
  • Fortinet Addresses Critical Security Flaws in Latest Update

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Archives

  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025

Recent Posts

  • Microsoft Fixes 59 Security Flaws, Including Six Critical Zero-Days
  • Coinbase Cartel’s Data Theft Tactics Threaten High-Value Industries
  • Intel and AMD Patch Over 80 Vulnerabilities in February
  • Six New Microsoft Vulnerabilities Added to CISA’s KEV List
  • Fortinet Addresses Critical Security Flaws in Latest Update

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Copyright © 2026 Cyber Web Spider Blog – News.

Powered by PressBook Masonry Dark