THREAT OPS › Threat News › Siemens SIDIS Secured SmartPlug
Siemens SIDIS Secured SmartPlug
<p><a href="https://github.com/cisagov/CSAF/blob/develop/csaf_files/OT/white/2026/icsa-26-202-04.json"><strong>View CSAF</strong></a></p> <h2>Summary</h2> <p><strong>SIDIS Secured SmartPlug before V7.26.0310 is affected by multiple vulnerabilities in the components OpenSSL, OpenSSH, and several other packages as described below. Siemens has released a new version of SIDIS Secured SmartPlug and rec
MITRE ATT&CK techniques
- VulnerabilitiesT1588.006
Indicators of compromise
- CVE-2022-23303cve
- CVE-2019-9494cve
- CVE-2022-23304cve
- CVE-2019-9495cve
- CVE-2022-37660cve
- CVE-2022-48174cve
- CVE-2025-5222cve
- CVE-2025-5914cve
- CVE-2025-9230cve
- CVE-2025-9231cve
- CVE-2025-9232cve
- CVE-2025-26465cve
- CVE-2025-32462cve
- CVE-2026-5121cve
- https://www.cve.org/CVERecord?id=CVE-2022-23303url
- https://www.first.org/cvss/calculator/3.1#CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:Hurl
- https://www.cve.org/CVERecord?id=CVE-2022-23304url
- https://www.first.org/cvss/calculator/3.1#CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:Hurl
- https://www.cve.org/CVERecord?id=CVE-2022-37660url
- https://www.first.org/cvss/calculator/3.1#CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:Nurl
- https://www.cve.org/CVERecord?id=CVE-2022-48174url
- https://www.first.org/cvss/calculator/3.1#CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:Hurl
- https://www.cve.org/CVERecord?id=CVE-2025-5222url
- https://www.first.org/cvss/calculator/3.1#CVSS:3.1/AV:L/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:Hurl
- https://www.cve.org/CVERecord?id=CVE-2025-5914url
- https://www.cve.org/CVERecord?id=CVE-2025-9230url
- https://www.first.org/cvss/calculator/3.1#CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:Hurl
- https://www.cve.org/CVERecord?id=CVE-2025-9231url
- https://www.first.org/cvss/calculator/3.1#CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:Lurl
- https://www.cve.org/CVERecord?id=CVE-2025-9232url
- https://www.first.org/cvss/calculator/3.1#CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:Hurl
- https://www.cve.org/CVERecord?id=CVE-2025-26465url
- https://www.first.org/cvss/calculator/3.1#CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:Nurl
- https://www.cve.org/CVERecord?id=CVE-2025-32462url
- https://www.first.org/cvss/calculator/3.1#CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:N/I:L/A:Nurl
- https://www.cve.org/CVERecord?id=CVE-2026-5121url
- https://www.first.org/cvss/calculator/3.1#CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:Nurl
- https://www.siemens.com/cert/operational-guidelines-industrial-securityurl
- https://www.siemens.com/industrialsecurityurl
- https://www.siemens.com/cert/advisoriesurl
Original source: https://www.cisa.gov/news-events/ics-advisories/icsa-26-202-04
Same event, other sources
- Siemens SIDIS Secured SmartPlugcisa_advisories · 2026-07-21