Our takeSiemens fixed a DoS in WTV676 and WTV776 that forces the devices into protection mode and kills Web Access. Update to the latest versions.Cyber Resilience desk
Sources (1)
- cisa_ics · cisa_ics
What this means for you — Security leader:Update affected Siemens WTV676 and WTV776 devices to the latest firmware immediately. The DoS vulnerability can force them into protection mode, disabling remote web access and requiring physical intervention.
What this means for you — Lean IT orgs:If you use Siemens WTV676 or WTV776 controllers, update them to the newest version as soon as possible. The flaw lets an attacker knock the device offline and disable remote access until you can reset it in person.
What this means for you — MSP:Check client environments for Siemens WTV676 and WTV776 and schedule immediate firmware updates. The vulnerability allows remote denial-of-service that disables web connectivity and forces a manual reset.
What this means for you — Researcher:Review the Siemens advisory and CSAF for technical details on the protection-mode trigger and fixed versions.