{"id":59516,"date":"2025-09-26T10:49:01","date_gmt":"2025-09-26T10:49:01","guid":{"rendered":"https:\/\/becolve.com\/blog\/serious-vulnerability-in-siemens-plc\/"},"modified":"2025-09-26T10:49:35","modified_gmt":"2025-09-26T10:49:35","slug":"serious-vulnerability-in-siemens-plc","status":"publish","type":"blog","link":"https:\/\/becolve.com\/en\/blog\/serious-vulnerability-in-siemens-plc\/","title":{"rendered":"Serious Vulnerability in Siemens PLC."},"content":{"rendered":"<p>[et_pb_section fb_built=&#8221;1&#8243; _builder_version=&#8221;3.22&#8243;][et_pb_row _builder_version=&#8221;3.25&#8243; background_size=&#8221;initial&#8221; background_position=&#8221;top_left&#8221; background_repeat=&#8221;repeat&#8221;][et_pb_column type=&#8221;4_4&#8243; _builder_version=&#8221;3.25&#8243; custom_padding=&#8221;|||&#8221; custom_padding__hover=&#8221;|||&#8221;][et_pb_text _builder_version=&#8221;4.8.1&#8243; background_size=&#8221;initial&#8221; background_position=&#8221;top_left&#8221; background_repeat=&#8221;repeat&#8221;]<\/p>\n<p>A very serious <strong>new vulnerability<\/strong> has been discovered that allows code to be executed remotely and without authentication.<\/p>\n<p>The vulnerability is <strong><a href=\"https:\/\/cert-portal.siemens.com\/productcert\/pdf\/ssa-434534.pdf\" target=\"_blank\" rel=\"noopener\">CVE-2020-15782<\/a><\/strong> and affects the <strong>SIMATIC S7-1200 and S7-1500 CPUs<\/strong> and could allow bypassing the memory protections of these devices to write or read arbitrary data in restricted memory areas and, with this, develop more sophisticated attacks by having full access to the device&#8217;s memory.<\/p>\n<p>Cybersecurity engineers at Claroty have identified this vulnerability and show <strong>how an attacker could exploit it<\/strong>, simply <strong>by having access to TCP port 102 of the PLC,<\/strong> and write a shellcode directly into the operating system structure and, in this way, give the ability to execute remote code and\/or add hidden malicious features.<\/p>\n<p>The following entry in the <a href=\"https:\/\/claroty.com\/2021\/05\/28\/blog-research-race-to-native-code-execution-in-plcs\/\" target=\"_blank\" rel=\"noopener\"><strong>Claroty blog<\/strong><\/a> explains in detail how to bypass the sandbox of these PLCs.<\/p>\n<blockquote>\n<p>A successful attack of this vulnerability <strong>can be very difficult to detect<\/strong> since the PLC itself would execute the malicious actions directly to the process.<\/p>\n<\/blockquote>\n<p>As always, <strong>the solution involves keeping systems updated<\/strong> and being aware of how industrial networks really work thanks to <strong>deep monitoring<\/strong> solutions.<\/p>\n<p>&nbsp;<\/p>\n<p>[\/et_pb_text][et_pb_button button_url=&#8221;https:\/\/logitek.es\/industrial-cybersecurity-awareness\/&#8221; url_new_window=&#8221;on&#8221; button_text=&#8221;Access our monitoring solutions&#8221; button_alignment=&#8221;center&#8221; _builder_version=&#8221;4.8.1&#8243; _module_preset=&#8221;default&#8221; hover_enabled=&#8221;0&#8243; custom_button=&#8221;on&#8221; button_text_color=&#8221;#1ca821&#8243; sticky_enabled=&#8221;0&#8243; button_bg_color=&#8221;#FFFFFF&#8221; button_bg_enable_color=&#8221;on&#8221; button_border_color=&#8221;#1ca821&#8243;][\/et_pb_button][\/et_pb_column][\/et_pb_row][\/et_pb_section]<\/p>\n","protected":false},"excerpt":{"rendered":"<p>A new, very serious vulnerability has been discovered that allows code to be executed remotely and without authentication.<\/p>\n","protected":false},"author":31,"featured_media":59522,"menu_order":0,"template":"","categories":[1371],"tags":[],"arquitectura":[1839],"area":[],"sector":[],"experto":[1396],"weborigen":[157],"productos-tax":[166],"soluciones-tax":[1365],"marcas-tax":[],"coauthors":[],"class_list":["post-59516","blog","type-blog","status-publish","has-post-thumbnail","hentry","category-cybersecurity","arquitectura-industrial-cybersecurity","experto-industrial-cybersecurity-total-availability","weborigen-ciberseguridadlogitek-com","productos-tax-isid","soluciones-tax-network-monitoring-and-analysis"],"acf":[],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v28.2 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>Cybersecurity: Serious vulnerability in Siemens PLC<\/title>\n<meta name=\"description\" content=\"New, very serious vulnerability in Siemens PLC that allows code to be executed remotely and without authentication.\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/becolve.com\/en\/blog\/serious-vulnerability-in-siemens-plc\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Cybersecurity: Serious vulnerability in Siemens PLC\" \/>\n<meta property=\"og:description\" content=\"New, very serious vulnerability in Siemens PLC that allows code to be executed remotely and without authentication.\" \/>\n<meta property=\"og:url\" content=\"https:\/\/becolve.com\/en\/blog\/serious-vulnerability-in-siemens-plc\/\" \/>\n<meta property=\"og:site_name\" content=\"Becolve Digital\" \/>\n<meta property=\"article:modified_time\" content=\"2025-09-26T10:49:35+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/becolve.com\/wp-content\/uploads\/2023\/04\/ataque.jpg\" \/>\n\t<meta property=\"og:image:width\" content=\"800\" \/>\n\t<meta property=\"og:image:height\" content=\"400\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/jpeg\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:site\" content=\"@Logitek_es\" \/>\n<meta name=\"twitter:label1\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data1\" content=\"2 minutes\" \/>\n\t<meta name=\"twitter:label2\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data2\" content=\"Becolve Digital\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/becolve.com\\\/en\\\/blog\\\/serious-vulnerability-in-siemens-plc\\\/\",\"url\":\"https:\\\/\\\/becolve.com\\\/en\\\/blog\\\/serious-vulnerability-in-siemens-plc\\\/\",\"name\":\"Cybersecurity: Serious vulnerability in Siemens PLC\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/becolve.com\\\/en\\\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\\\/\\\/becolve.com\\\/en\\\/blog\\\/serious-vulnerability-in-siemens-plc\\\/#primaryimage\"},\"image\":{\"@id\":\"https:\\\/\\\/becolve.com\\\/en\\\/blog\\\/serious-vulnerability-in-siemens-plc\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/becolve.com\\\/wp-content\\\/uploads\\\/2023\\\/04\\\/ataque.jpg\",\"datePublished\":\"2025-09-26T10:49:01+00:00\",\"dateModified\":\"2025-09-26T10:49:35+00:00\",\"description\":\"New, very serious vulnerability in Siemens PLC that allows code to be executed remotely and without authentication.\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/becolve.com\\\/en\\\/blog\\\/serious-vulnerability-in-siemens-plc\\\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/becolve.com\\\/en\\\/blog\\\/serious-vulnerability-in-siemens-plc\\\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/becolve.com\\\/en\\\/blog\\\/serious-vulnerability-in-siemens-plc\\\/#primaryimage\",\"url\":\"https:\\\/\\\/becolve.com\\\/wp-content\\\/uploads\\\/2023\\\/04\\\/ataque.jpg\",\"contentUrl\":\"https:\\\/\\\/becolve.com\\\/wp-content\\\/uploads\\\/2023\\\/04\\\/ataque.jpg\",\"width\":800,\"height\":400},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/becolve.com\\\/en\\\/blog\\\/serious-vulnerability-in-siemens-plc\\\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\\\/\\\/becolve.com\\\/en\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Blog Items\",\"item\":\"https:\\\/\\\/becolve.com\\\/en\\\/blog\\\/\"},{\"@type\":\"ListItem\",\"position\":3,\"name\":\"Serious Vulnerability in Siemens PLC.\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/becolve.com\\\/en\\\/#website\",\"url\":\"https:\\\/\\\/becolve.com\\\/en\\\/\",\"name\":\"Becolve Digital\",\"description\":\"Transformaci\u00f3n digital en industria e infraestructuras\",\"publisher\":{\"@id\":\"https:\\\/\\\/becolve.com\\\/en\\\/#organization\"},\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/becolve.com\\\/en\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Organization\",\"@id\":\"https:\\\/\\\/becolve.com\\\/en\\\/#organization\",\"name\":\"Becolve Digital\",\"url\":\"https:\\\/\\\/becolve.com\\\/en\\\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/becolve.com\\\/en\\\/#\\\/schema\\\/logo\\\/image\\\/\",\"url\":\"https:\\\/\\\/becolve.com\\\/wp-content\\\/uploads\\\/2023\\\/04\\\/becolve-logo-h-black_200.png\",\"contentUrl\":\"https:\\\/\\\/becolve.com\\\/wp-content\\\/uploads\\\/2023\\\/04\\\/becolve-logo-h-black_200.png\",\"width\":200,\"height\":64,\"caption\":\"Becolve Digital\"},\"image\":{\"@id\":\"https:\\\/\\\/becolve.com\\\/en\\\/#\\\/schema\\\/logo\\\/image\\\/\"},\"sameAs\":[\"https:\\\/\\\/x.com\\\/Logitek_es\",\"https:\\\/\\\/www.linkedin.com\\\/company\\\/becolve-digital\\\/\"]}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"Cybersecurity: Serious vulnerability in Siemens PLC","description":"New, very serious vulnerability in Siemens PLC that allows code to be executed remotely and without authentication.","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/becolve.com\/en\/blog\/serious-vulnerability-in-siemens-plc\/","og_locale":"en_US","og_type":"article","og_title":"Cybersecurity: Serious vulnerability in Siemens PLC","og_description":"New, very serious vulnerability in Siemens PLC that allows code to be executed remotely and without authentication.","og_url":"https:\/\/becolve.com\/en\/blog\/serious-vulnerability-in-siemens-plc\/","og_site_name":"Becolve Digital","article_modified_time":"2025-09-26T10:49:35+00:00","og_image":[{"width":800,"height":400,"url":"https:\/\/becolve.com\/wp-content\/uploads\/2023\/04\/ataque.jpg","type":"image\/jpeg"}],"twitter_card":"summary_large_image","twitter_site":"@Logitek_es","twitter_misc":{"Est. reading time":"2 minutes","Written by":"Becolve Digital"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"WebPage","@id":"https:\/\/becolve.com\/en\/blog\/serious-vulnerability-in-siemens-plc\/","url":"https:\/\/becolve.com\/en\/blog\/serious-vulnerability-in-siemens-plc\/","name":"Cybersecurity: Serious vulnerability in Siemens PLC","isPartOf":{"@id":"https:\/\/becolve.com\/en\/#website"},"primaryImageOfPage":{"@id":"https:\/\/becolve.com\/en\/blog\/serious-vulnerability-in-siemens-plc\/#primaryimage"},"image":{"@id":"https:\/\/becolve.com\/en\/blog\/serious-vulnerability-in-siemens-plc\/#primaryimage"},"thumbnailUrl":"https:\/\/becolve.com\/wp-content\/uploads\/2023\/04\/ataque.jpg","datePublished":"2025-09-26T10:49:01+00:00","dateModified":"2025-09-26T10:49:35+00:00","description":"New, very serious vulnerability in Siemens PLC that allows code to be executed remotely and without authentication.","breadcrumb":{"@id":"https:\/\/becolve.com\/en\/blog\/serious-vulnerability-in-siemens-plc\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/becolve.com\/en\/blog\/serious-vulnerability-in-siemens-plc\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/becolve.com\/en\/blog\/serious-vulnerability-in-siemens-plc\/#primaryimage","url":"https:\/\/becolve.com\/wp-content\/uploads\/2023\/04\/ataque.jpg","contentUrl":"https:\/\/becolve.com\/wp-content\/uploads\/2023\/04\/ataque.jpg","width":800,"height":400},{"@type":"BreadcrumbList","@id":"https:\/\/becolve.com\/en\/blog\/serious-vulnerability-in-siemens-plc\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/becolve.com\/en\/"},{"@type":"ListItem","position":2,"name":"Blog Items","item":"https:\/\/becolve.com\/en\/blog\/"},{"@type":"ListItem","position":3,"name":"Serious Vulnerability in Siemens PLC."}]},{"@type":"WebSite","@id":"https:\/\/becolve.com\/en\/#website","url":"https:\/\/becolve.com\/en\/","name":"Becolve Digital","description":"Transformaci\u00f3n digital en industria e infraestructuras","publisher":{"@id":"https:\/\/becolve.com\/en\/#organization"},"potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/becolve.com\/en\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Organization","@id":"https:\/\/becolve.com\/en\/#organization","name":"Becolve Digital","url":"https:\/\/becolve.com\/en\/","logo":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/becolve.com\/en\/#\/schema\/logo\/image\/","url":"https:\/\/becolve.com\/wp-content\/uploads\/2023\/04\/becolve-logo-h-black_200.png","contentUrl":"https:\/\/becolve.com\/wp-content\/uploads\/2023\/04\/becolve-logo-h-black_200.png","width":200,"height":64,"caption":"Becolve Digital"},"image":{"@id":"https:\/\/becolve.com\/en\/#\/schema\/logo\/image\/"},"sameAs":["https:\/\/x.com\/Logitek_es","https:\/\/www.linkedin.com\/company\/becolve-digital\/"]}]}},"_links":{"self":[{"href":"https:\/\/becolve.com\/en\/wp-json\/wp\/v2\/blog\/59516","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/becolve.com\/en\/wp-json\/wp\/v2\/blog"}],"about":[{"href":"https:\/\/becolve.com\/en\/wp-json\/wp\/v2\/types\/blog"}],"author":[{"embeddable":true,"href":"https:\/\/becolve.com\/en\/wp-json\/wp\/v2\/users\/31"}],"version-history":[{"count":0,"href":"https:\/\/becolve.com\/en\/wp-json\/wp\/v2\/blog\/59516\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/becolve.com\/en\/wp-json\/wp\/v2\/media\/59522"}],"wp:attachment":[{"href":"https:\/\/becolve.com\/en\/wp-json\/wp\/v2\/media?parent=59516"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/becolve.com\/en\/wp-json\/wp\/v2\/categories?post=59516"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/becolve.com\/en\/wp-json\/wp\/v2\/tags?post=59516"},{"taxonomy":"arquitectura","embeddable":true,"href":"https:\/\/becolve.com\/en\/wp-json\/wp\/v2\/arquitectura?post=59516"},{"taxonomy":"area","embeddable":true,"href":"https:\/\/becolve.com\/en\/wp-json\/wp\/v2\/area?post=59516"},{"taxonomy":"sector","embeddable":true,"href":"https:\/\/becolve.com\/en\/wp-json\/wp\/v2\/sector?post=59516"},{"taxonomy":"experto","embeddable":true,"href":"https:\/\/becolve.com\/en\/wp-json\/wp\/v2\/experto?post=59516"},{"taxonomy":"weborigen","embeddable":true,"href":"https:\/\/becolve.com\/en\/wp-json\/wp\/v2\/weborigen?post=59516"},{"taxonomy":"productos-tax","embeddable":true,"href":"https:\/\/becolve.com\/en\/wp-json\/wp\/v2\/productos-tax?post=59516"},{"taxonomy":"soluciones-tax","embeddable":true,"href":"https:\/\/becolve.com\/en\/wp-json\/wp\/v2\/soluciones-tax?post=59516"},{"taxonomy":"marcas-tax","embeddable":true,"href":"https:\/\/becolve.com\/en\/wp-json\/wp\/v2\/marcas-tax?post=59516"},{"taxonomy":"author","embeddable":true,"href":"https:\/\/becolve.com\/en\/wp-json\/wp\/v2\/coauthors?post=59516"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}