Our takeSiemens fixed a remote code execution flaw in Siveillance Video Management Servers. Updates are available; apply them now if you run these OT systems.Cyber Resilience desk
Sources (1)
- cisa_ics · cisa_ics
What this means for you — Security leader:Update Siveillance Video servers to the latest versions immediately if you run any of the affected releases (V2023 R3 and below). This is a confirmed remote code execution vulnerability covered in CISA advisory ICSA-26-225-09.
What this means for you — Lean IT orgs:If your organization runs Siemens Siveillance Video for camera or building monitoring, update it to the newest version right away. Most teams without this system can ignore this.
What this means for you — MSP:Check client environments for any Siemens Siveillance Video V2023 R3 or earlier deployments and push the vendor's latest versions. This is a remote code execution flaw per the CISA advisory.
What this means for you — Researcher:Siemens published fixes for a remote code execution vulnerability in Siveillance Video Management Servers (CVE-2026-3014). Full details are in CISA ICSA-26-225-09.