Siemens Siveillance Video
2026-08-13T19:23:18Z•3b3465408ee145351873542ad49451498d413bcf8afe3ae6fe5c0f3cd9ce6f65
CVE-2026-19188CVE-2026-3014CVE-2026-34491CVE-2026-59693CVE-2026-59700CVE-2026-59701CVE-2026-65309CVE-2026-65310CVE-2026-65311CVE-2026-65313CVE-2026-69108CVE-2026-69109ANDRITZCISA-ICS-advisoryHaiwellICSJohnson-ControlsOTSiemenscommand-injectioncredential-exposurecritical-infrastructurecross-site-scriptingdenial-of-servicehard-coded-credentialsindustrial-control-systemsmissing-authenticationout-of-bounds-readpath-traversalprivilege-escalationremote-code-execution
What happened
CISA ICS advisories published August 13, 2026 cover multiple industrial control, building automation, engineering, energy, and infrastructure products. Reported issues include critical OS command injection enabling root-level execution in Haiwell IoT Cloud HMI Gateway, remote code execution in Siemens Siveillance Video, credential exposure and authentication weaknesses in ANDRITZ HIPASE-250/250 SCALA, privilege escalation and arbitrary file access in Siemens License Server, memory-safety issues in Siemens Simcenter Femap, denial of service in Siemens Desigo controllers, and persistent cross放?
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- cisa_ics_advisories
- Record identifier
- 3b3465408ee145351873542ad49451498d413bcf8afe3ae6fe5c0f3cd9ce6f65
- Enrichment time
- 2026-08-13T19:23:18Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.