Rewterz
Rewterz Threat Alert – SNAKE Ransomware – Active IOCs
November 15, 2021
Rewterz
Rewterz Threat Advisory – CVE-2021-34979 – NETGEAR routers Vulnerability
November 16, 2021

Rewterz Threat Advisory – ICS: Siemens Climatix POL909 (AWM module)

Severity

High

Analysis Summary

CVE-2021-40366

Siemens Climatix POL909 (AWM module) could allow a remote attacker to obtain sensitive information, caused by transmitting data without TLS encryption. By using a man-in-the-middle technique, an attacker could exploit this vulnerability to obtain sensitive information.

Impact

  • Information Disclosure

Affected Vendors

  • Siemens

Affected Products

  • Siemens Climatix POL909 (AWM module)

Remediation

Refer to Siemens Security Advisory for patch, upgrade, or suggested workaround information.

https://cert-portal.siemens.com/productcert/txt/ssa-703715.txt