CYBERSECURITYTRACKER
TRACKING7,811 stories in this site build1,697 vulnerability news stories in this site build
Permanent story citation

Siemens Desigo DXR and PXC Controllers

This page keeps the story as Cybersecurity Tracker first published it. If the tracker later corrects it, the correction appears below the original and never replaces it.

Back to newsStory 4389

As cited

Copy frozen at (site build).

vulnerabilities

Siemens Desigo DXR and PXC Controllers

Siemens has patched a denial-of-service vulnerability (CVE-2026-59693) affecting Desigo DXR and PXC controllers across multiple versions. An attacker sending malformed BACnet packets can cause the devices to stop responding, requiring a reset or reboot to restore function. Siemens recommends updating to the latest versions and securing network access to these building automation controllers.

Why it matters: Organizations operating Desigo DXR2, PXC3, PXC4, PXC5, or PXC7 controllers in commercial facilities, manufacturing, energy, healthcare, and transportation environments should prioritize updates to prevent attackers from disrupting critical building automation and process control systems.

Source published
First seen by Cybersecurity Tracker

Source attribution

Correction

Correction recorded as of .

vulnerabilities

Siemens Desigo DXR and PXC Controllers

Siemens has patched a denial-of-service vulnerability (CVE-2026-59693) affecting Desigo DXR and PXC controllers across multiple versions. An attacker sending malformed BACnet packets can cause the devices to stop responding, requiring a reset or reboot to restore function. Siemens recommends updating to the latest versions and securing network access to these building automation controllers.

Why it matters: Organizations operating Desigo DXR2, PXC3, PXC4, PXC5, or PXC7 controllers in commercial facilities, manufacturing, energy, healthcare, and transportation environments should prioritize updates to prevent attackers from disrupting critical building automation and process control systems.

Source published
First seen by Cybersecurity Tracker

Source attribution

Glossary