CYBERSECURITYTRACKER
TRACKING6,506 stories in this site build1,309 vulnerability news stories in this site build
Permanent story citation

Siemens SIMATIC S7-PLCSIM Advanced

This page keeps the story as Cybersecurity Tracker first published it. If the tracker later corrects it, the correction appears below the original and never replaces it.

Back to newsStory 3374

As cited

Copy frozen at (site build).

vulnerabilities

Siemens SIMATIC S7-PLCSIM Advanced

Siemens SIMATIC S7-PLCSIM Advanced contains a denial of service vulnerability (CVE-2026-54429) with a CVSS score of 7.4 that allows unauthenticated attackers on the local network to exhaust memory by sending high-volume multicast traffic, rendering the affected application inaccessible until manual restart. No fix is currently available, but Siemens recommends disabling the virtual switch binding, restricting multicast traffic on the network segment, or using the default Softbus network mode as mitigations.

Why it matters: Organizations running SIMATIC S7-PLCSIM Advanced in environments exposed to untrusted local networks need immediate mitigation steps to prevent operational disruption of critical manufacturing simulation and control system testing infrastructure.

Source published
First seen by Cybersecurity Tracker

Source attribution

Correction

Correction recorded as of .

vulnerabilities

Siemens SIMATIC S7-PLCSIM Advanced

Siemens SIMATIC S7-PLCSIM Advanced contains a denial of service vulnerability (CVE-2026-54429) with a CVSS score of 7.4 that allows unauthenticated attackers on the local network to exhaust memory by sending high-volume multicast traffic, rendering the affected application inaccessible until manual restart. No fix is currently available, but Siemens recommends disabling the virtual switch binding, restricting multicast traffic on the network segment, or using the default Softbus network mode as mitigations.

Why it matters: Organizations running SIMATIC S7-PLCSIM Advanced in environments exposed to untrusted local networks need immediate mitigation steps to prevent operational disruption of critical manufacturing simulation and control system testing infrastructure.

Source published
First seen by Cybersecurity Tracker

Source attribution

Glossary