<?xml version='1.0' encoding='utf-8'?>
<rss version="2.0"><channel><title>Cybersecurity Tracker: Siemens Watch</title><link>https://cybersecuritytracker.ai/?stack=1</link><description>Stories and vulnerabilities involving Siemens.</description><lastBuildDate>Sun, 26 Jul 2026 22:32:53 GMT</lastBuildDate><item><title>Siemens Opcenter X</title><link>https://cisa.gov/news-events/ics-advisories/icsa-26-202-03</link><guid isPermaLink="false">cst-2939</guid><description>Siemens Opcenter X versions prior to V2604 contain a critical authentication bypass vulnerability (CVE-2026-56451) in JSON Web Token (JWT) validation that allows unauthenticated attackers to forge tokens and impersonate any user, including administrators. Siemens has released version V2604 with a fix and recommends immediate updates for affected deployments worldwide. The vulnerability carries a CVSS base score of 10.0 and affects critical manufacturing infrastructure.</description><pubDate>Tue, 21 Jul 2026 12:00:00 GMT</pubDate></item><item><title>Siemens IAM Client</title><link>https://cisa.gov/news-events/ics-advisories/icsa-26-202-05</link><guid isPermaLink="false">cst-2932</guid><description>An unquoted search path vulnerability in Siemens IAM Client (CVE-2025-40945) affects multiple Siemens products including COMOS, Solid Edge, Teamcenter Visualization, Simcenter, and Tecnomatix. An authenticated local attacker with high privileges could exploit this flaw to escalate privileges. Siemens has released patches for most affected products and recommends immediate updates to the latest versions.</description><pubDate>Tue, 21 Jul 2026 12:00:00 GMT</pubDate></item><item><title>Siemens SICAM 8</title><link>https://cisa.gov/news-events/ics-advisories/icsa-26-197-05</link><guid isPermaLink="false">cst-2703</guid><description>Siemens released a security advisory for multiple SICAM 8 products affected by four vulnerabilities, including active debug code exposure, firmware signature validation flaws, insecure default configurations, and unverified password changes. The vulnerabilities range from CVSS 6.5 to 7.2 and could enable denial of service, malicious firmware installation, and unauthorized system access. Siemens recommends updating to firmware version 26.20 or later.</description><pubDate>Thu, 16 Jul 2026 12:00:00 GMT</pubDate></item></channel></rss>