THREAT OPS › Threat News › Siemens Desigo DXR and PXC Controllers
Siemens Desigo DXR and PXC Controllers
<p><a href="https://github.com/cisagov/CSAF/blob/develop/csaf_files/OT/white/2026/icsa-26-225-08.json"><strong>View CSAF</strong></a></p> <h2>Summary</h2> <p><strong>A vulnerability in Desigo DXR and PXC controllers has been identified that could allow an attacker to cause denial of service conditions by sending malformed BACnet packets. Recovery requires a device reset or reboot to restore normal
MITRE ATT&CK techniques
- VulnerabilitiesT1588.006
Indicators of compromise
- CVE-2026-59693cve
- https://www.cve.org/CVERecord?id=CVE-2026-59693url
- https://www.first.org/cvss/calculator/3.1#CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:Lurl
- https://www.siemens.com/cert/operational-guidelines-industrial-securityurl
- https://www.siemens.com/industrialsecurityurl
- https://www.siemens.com/cert/advisoriesurl
- https://www.siemens.com/productcert/terms-of-useurl
- 01.21.233.16ipv4
- 02.21.194.36ipv4
Original source: https://www.cisa.gov/news-events/ics-advisories/icsa-26-225-08
Same event, other sources
- Siemens Desigo DXR and PXC Controllerscisa_advisories · 2026-08-13