Siemens Siveillance Video

2026-08-13T19:23:18Z3b3465408ee145351873542ad49451498d413bcf8afe3ae6fe5c0f3cd9ce6f65
CVE-2026-19188CVE-2026-3014CVE-2026-34491CVE-2026-59693CVE-2026-59700CVE-2026-59701CVE-2026-65309CVE-2026-65310CVE-2026-65311CVE-2026-65313CVE-2026-69108CVE-2026-69109ANDRITZCISA-ICS-advisoryHaiwellICSJohnson-ControlsOTSiemenscommand-injectioncredential-exposurecritical-infrastructurecross-site-scriptingdenial-of-servicehard-coded-credentialsindustrial-control-systemsmissing-authenticationout-of-bounds-readpath-traversalprivilege-escalationremote-code-execution

What happened

CISA ICS advisories published August 13, 2026 cover multiple industrial control, building automation, engineering, energy, and infrastructure products. Reported issues include critical OS command injection enabling root-level execution in Haiwell IoT Cloud HMI Gateway, remote code execution in Siemens Siveillance Video, credential exposure and authentication weaknesses in ANDRITZ HIPASE-250/250 SCALA, privilege escalation and arbitrary file access in Siemens License Server, memory-safety issues in Siemens Simcenter Femap, denial of service in Siemens Desigo controllers, and persistent cross放?

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
cisa_ics_advisories
Record identifier
3b3465408ee145351873542ad49451498d413bcf8afe3ae6fe5c0f3cd9ce6f65
Enrichment time
2026-08-13T19:23:18Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.

Record · Siemens Siveillance Video · Baitaphish