THREAT OPS › Threat News › Siemens Desigo CC
Siemens Desigo CC
<p><a href="https://github.com/cisagov/CSAF/blob/develop/csaf_files/OT/white/2026/icsa-26-209-01.json"><strong>View CSAF</strong></a></p> <h2>Summary</h2> <p><strong>OpenSSL has published a stack based buffer overflow vulnerability that allows a remote attacker to cause a denial of service (DoS) or potentially allow for remote code execution. Siemens has released new versions for several affected
MITRE ATT&CK techniques
- VulnerabilitiesT1588.006
Indicators of compromise
- CVE-2025-15467cve
- https://www.cve.org/CVERecord?id=CVE-2025-15467url
- https://support.industry.siemens.com/cs/ww/en/view/110002555/url
- https://support.industry.siemens.com/cs/ww/en/view/109989041/url
- https://www.first.org/cvss/calculator/3.1#CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:Hurl
- https://www.siemens.com/gridsecurityurl
- https://www.siemens.com/cert/advisoriesurl
- https://www.siemens.com/productcert/terms-of-useurl
Original source: https://www.cisa.gov/news-events/ics-advisories/icsa-26-209-01
Same event, other sources
- Siemens Desigo CCcisa_advisories · 2026-07-28