Siemens SiPass Integrated

As of January 10, 2023, CISA will no longer be updating ICS security advisories for Siemens product vulnerabilities beyond the initial advisory. For the most up-to-date information on vulnerabilities in this advisory, please see Siemens’ ProductCERT Security Advisories (CERT Services | Services | Siemens Global).

View CSAF

1. EXECUTIVE SUMMARY

  • CVSS v4 8.7
  • ATTENTION: Exploitable remotely/low attack complexity
  • Vendor: Siemens
  • Equipment: SiPass integrated
  • Vulnerability: Out-of-bounds Read

2. RISK EVALUATION

Successful exploitation of this vulnerability could allow an unauthenticated remote attacker to cause a denial-of-service condition.

3. TECHNICAL DETAILS

3.1 AFFECTED PRODUCTS

Siemens reports that the following products are affected:

  • SiPass integrated: Versions prior to V2.95.3.18

3.2 VULNERABILITY OVERVIEW

3.2.1 OUT-OF-BOUNDS READ CWE-125

Affected server applications contain an out of bounds read past the end of an allocated buffer while checking the integrity of incoming packets. This could allow an unauthenticated remote attacker to create a denial of service condition.

CVE-2022-31812 has been assigned to this vulnerability. A CVSS v3.1 base score of 7.5 has been calculated; the CVSS vector string is (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H).

A CVSS v4 score has also been calculated for CVE-2022-31812. A base score of 8.7 has been calculated; the CVSS vector string is (CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N).

3.3 BACKGROUND

  • CRITICAL INFRASTRUCTURE SECTORS: Commercial Facilities
  • COUNTRIES/AREAS DEPLOYED: Worldwide
  • COMPANY HEADQUARTERS LOCATION: Germany

3.4 RESEARCHER

Airbus Security reported this vulnerability to Siemens.
Siemens reported this vulnerability to CISA.

4. MITIGATIONS

Siemens has identified the following specific workarounds and mitigations users can apply to reduce risk:

As a general security measure, Siemens recommends protecting network access to devices with appropriate mechanisms. To operate the devices in a protected IT environment, Siemens recommends configuring the environment according to Siemens’ operational guidelines for industrial security and following recommendations in the product manuals.

Additional information on industrial security by Siemens can be found on the Siemens industrial security webpage

For more information see the associated Siemens security advisory SSA-041082 in HTML and CSAF.

CISA recommends users take defensive measures to minimize the risk of exploitation of this vulnerability, such as:

  • Minimize network exposure for all control system devices and/or systems, ensuring they are not accessible from the internet.
  • Locate control system networks and remote devices behind firewalls and isolating them from business networks.
  • When remote access is required, use more secure methods, such as Virtual Private Networks (VPNs). Recognize VPNs may have vulnerabilities, should be updated to the most recent version available, and are only as secure as the connected devices.

CISA reminds organizations to perform proper impact analysis and risk assessment prior to deploying defensive measures.

CISA also provides a section for control systems security recommended practices on the ICS webpage on cisa.gov. Several CISA products detailing cyber defense best practices are available for reading and download, including Improving Industrial Control Systems Cybersecurity with Defense-in-Depth Strategies.

CISA encourages organizations to implement recommended cybersecurity strategies for proactive defense of ICS assets.

Additional mitigation guidance and recommended practices are publicly available on the ICS webpage at cisa.gov in the technical information paper, ICS-TIP-12-146-01B–Targeted Cyber Intrusion Detection and Mitigation Strategies.

Organizations observing suspected malicious activity should follow established internal procedures and report findings to CISA for tracking and correlation against other incidents.

CISA also recommends users take the following measures to protect themselves from social engineering attacks:

No known public exploitation specifically targeting this vulnerability has been reported to CISA at this time.

5. UPDATE HISTORY

  • May 29, 2025: Initial Republication of Siemens Security Advisory SSA-041082

Consilium Safety CS5000 Fire Panel

View CSAF

1. EXECUTIVE SUMMARY

  • CVSS v4 9.3
  • ATTENTION: Exploitable remotely/low attack complexity
  • Vendor: Consilium Safety
  • Equipment: CS5000 Fire Panel
  • Vulnerabilities: Initialization of a Resource with an Insecure Default, Use of Hard-coded Credentials

2. RISK EVALUATION

Successful exploitation of these vulnerabilities could allow an attacker to gain high-level access to and remotely operate the device, potentially putting it into a non-functional state.

3. TECHNICAL DETAILS

3.1 AFFECTED PRODUCTS

The following Consilium Safety product is affected:

  • CS5000 Fire Panel: All versions

3.2 VULNERABILITY OVERVIEW

3.2.1 INITIALIZATION OF A RESOURCE WITH AN INSECURE DEFAULT CWE-1188

The CS5000 Fire Panel is vulnerable due to a default account that exists on the panel. Even though it is possible to change this by SSHing into the device, it has remained unchanged on every installed system observed. This account is not root but holds high-level permissions that could severely impact the device’s operation if exploited.

CVE-2025-41438 has been assigned to this vulnerability. A CVSS v3.1 base score of 9.8 has been calculated; the CVSS vector string is (AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H).

A CVSS v4 score has also been calculated for CVE-2025-41438. A base score of 9.3 has been calculated; the CVSS vector string is (AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N).

3.2.2 USE OF HARD-CODED CREDENTIALS CWE-798

The CS5000 Fire Panel is vulnerable due to a hard-coded password that runs on a VNC server and is visible as a string in the binary responsible for running VNC. This password cannot be altered, allowing anyone with knowledge of it to gain remote access to the panel. Such access could enable an attacker to operate the panel remotely, potentially putting the fire panel into a non-functional state and causing serious safety issues.

CVE-2025-46352 has been assigned to this vulnerability. A CVSS v3.1 base score of 9.8 has been calculated; the CVSS vector string is (AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H).

A CVSS v4 score has also been calculated for CVE-2025-46352. A base score of 9.3 has been calculated; the CVSS vector string is (AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N).

3.3 BACKGROUND

  • CRITICAL INFRASTRUCTURE SECTORS: Commercial Facilities, Energy, Government Services and Facilities, Healthcare and Public Health, Transportation Systems
  • COUNTRIES/AREAS DEPLOYED: Worldwide
  • COMPANY HEADQUARTERS LOCATION: Sweden

3.4 RESEARCHER

Andrew Tierney of Pen Test Partners reported these vulnerabilities to CISA.

4. MITIGATIONS

Consilium Safety is aware of these vulnerabilities. Currently, no fixes are planned for the CS5000 Fire Panel.

Users wanting enhanced security features are advised to upgrade to Consilium Safety’s newer line of fire panels. Specifically, products manufactured after July 1, 2024, incorporate more secure-by-design principles.

Users of the CS5000 Fire Panel are recommended to implement compensating countermeasures, such as physical security and access control restrictions for dedicated personnel.

More product safety information can be found on Consilium Safety’s support webpage.

CISA recommends users take defensive measures to minimize the risk of exploitation of these vulnerabilities, such as:

  • Minimize network exposure for all control system devices and/or systems, ensuring they are not accessible from the internet.
  • Locate control system networks and remote devices behind firewalls and isolating them from business networks.
  • When remote access is required, use more secure methods, such as Virtual Private Networks (VPNs), recognizing VPNs may have vulnerabilities and should be updated to the most current version available. Also recognize VPN is only as secure as the connected devices.

CISA reminds organizations to perform proper impact analysis and risk assessment prior to deploying defensive measures.

CISA also provides a section for control systems security recommended practices on the ICS webpage on cisa.gov/ics. Several CISA products detailing cyber defense best practices are available for reading and download, including Improving Industrial Control Systems Cybersecurity with Defense-in-Depth Strategies.

CISA encourages organizations to implement recommended cybersecurity strategies for proactive defense of ICS assets.

Additional mitigation guidance and recommended practices are publicly available on the ICS webpage at cisa.gov/ics in the technical information paper, ICS-TIP-12-146-01B–Targeted Cyber Intrusion Detection and Mitigation Strategies.

Organizations observing suspected malicious activity should follow established internal procedures and report findings to CISA for tracking and correlation against other incidents.

No known public exploitation specifically targeting these vulnerabilities has been reported to CISA at this time.

5. UPDATE HISTORY

  • May 29, 2025: Initial Publication

Instantel Micromate

View CSAF

1. EXECUTIVE SUMMARY

  • CVSS v4 9.3
  • ATTENTION: Exploitable remotely/low attack complexity
  • Vendor: Instantel
  • Equipment: Micromate
  • Vulnerability: Missing Authentication for Critical Function

2. RISK EVALUATION

Successful exploitation of this vulnerability could allow an unauthenticated attacker to access the device’s configuration port and execute commands.

3. TECHNICAL DETAILS

3.1 AFFECTED PRODUCTS

The following versions of Micromate are affected:

  • Micromate: All versions

3.2 VULNERABILITY OVERVIEW

3.2.1 MISSING AUTHENTICATION FOR CRITICAL FUNCTION CWE-306

Instantel Micromate lacks authentication on a configuration port which could allow an attacker to execute commands if connected.

CVE-2025-1907 has been assigned to this vulnerability. A CVSS v3.1 base score of 9.8 has been calculated; the CVSS vector string is (AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H).

A CVSS v4 score has also been calculated for CVE-2025-1907. A base score of 9.3 has been calculated; the CVSS vector string is (AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N).

3.3 BACKGROUND

  • CRITICAL INFRASTRUCTURE SECTORS: Critical Manufacturing
  • COUNTRIES/AREAS DEPLOYED: Worldwide
  • COMPANY HEADQUARTERS LOCATION: Canada

3.4 RESEARCHER

Souvik Kandar of MicroSec (microsec.io) reported this vulnerability to CISA.

4. MITIGATIONS

Instantel is actively working on a firmware update to address this vulnerability. In the meantime, Micromate users are advised to implement the following workaround measures:

  • Establish and maintain a list of approved IP addresses that are allowed to access the modem. This measure will help prevent unauthorized access.

For more information, please contact Instantel technical support.

CISA recommends users take defensive measures to minimize the risk of exploitation of this vulnerability, such as:

  • Minimize network exposure for all control system devices and/or systems, ensuring they are not accessible from the internet.
  • Locate control system networks and remote devices behind firewalls and isolating them from business networks.
  • When remote access is required, use more secure methods, such as Virtual Private Networks (VPNs), recognizing VPNs may have vulnerabilities and should be updated to the most current version available. Also recognize VPN is only as secure as the connected devices.

CISA reminds organizations to perform proper impact analysis and risk assessment prior to deploying defensive measures.

CISA also provides a section for control systems security recommended practices on the ICS webpage on cisa.gov/ics. Several CISA products detailing cyber defense best practices are available for reading and download, including Improving Industrial Control Systems Cybersecurity with Defense-in-Depth Strategies.

CISA encourages organizations to implement recommended cybersecurity strategies for proactive defense of ICS assets.

Additional mitigation guidance and recommended practices are publicly available on the ICS webpage at cisa.gov/ics in the technical information paper, ICS-TIP-12-146-01B–Targeted Cyber Intrusion Detection and Mitigation Strategies.

Organizations observing suspected malicious activity should follow established internal procedures and report findings to CISA for tracking and correlation against other incidents.

No known public exploitation specifically targeting this vulnerability has been reported to CISA at this time.

5. UPDATE HISTORY

  • May 29, 2025: Initial Publication

Australian Coalition reunite after one week

Thursday, May 29, 2025

The Liberal-National Coalition of Australia, for decades the dominant centre-right party, has reunited after a separation that lasted a week. On the 28th of May, at a joint press conference, the two parties’ leaders, Sussan Ley and David Littleproud, announced that the parties would be reuniting; with the Coalition being the Opposition, the two politicians also announced the new shadow cabinet at the same Wednesday’s press conference.

The two parties had previously split recently following the 2025 federal election, in which both the Liberals and the Nationals were defeated by their rivals, leading to disagreements between the two parties over policy differences even as Peter Dutton, the leader of the Liberals and the Coalition, lost his seat in the Parliament, necessitating a change in leadership. On the 20th of May, Nationals leader David Littleproud announced that the party was cutting ties with the Liberal party, insisting that the Nationals cannot give up their policy demands even as Sussan Ley, the new leader of the Liberals, was looking forward to a sweeping and thorough review of the party’s policies in the wake of the significant loss in the federal election.

At the time of the reunion, the Liberals agreed to four policy demands issued by the Nationals, relating to nuclear power, a Regional Australia Future Fund, remote mobile data coverage, and changes to the supermarket sector. The split has reportedly caused infighting amongst the party, but Littleproud has stated that he would stand by the policies he demanded. The party has also undergone a shadow cabinet reshuffle following the reunification.

Back together, Liberal leader Sussan Ley has stated that she looked forward to the two parties working together in the future.

At first, the split of the two parties caused doubts about whether either party would ever gain a majority enough to challenge the incumbent Labor government. There have been splits in the past, the most recent being in 1987, but neither parties could have formed majority government without the other.

It should be noted that in regards to nuclear power plants, the Coalition’s policy has changed: it will no longer pursue their previous commitment to building seven of them, but will instead continue to push against the existing national moratorium on nuclear power.


Sources

[edit]


Timberwolves vs. Thunder: Whether OKC is a little early or right on time, it is going to be one fierce Finals foe

OKLAHOMA CITY — Forty minutes of hell was supposed to be a college basketball mantra, and long gone — but the Oklahoma City Thunder have remixed it.

Sometimes it’s five minutes, maybe 10. Just a stretch in which they turn the opponents into stumbling, bumbling, inept strangers. They can barely get a shot up, let alone an entry pass.

And with the franchise smelling opportunity, a chance at clinching a berth in the NBA Finals, dribbling became an obstacle course. And that five- or 10-minute stretch lasted for an entire half.

The Oklahoma City Thunder finished the dismantling of the Western Conference with a definitive Game 5 whipping of the Minnesota Timberwolves, a 124-94 win at Paycom Center on Wednesday night.

The NBA Finals begin next Thursday in Oklahoma City, where the Thunder will take on the winner of the New York Knicks-Indiana Pacers series.

If it’s the Pacers, it’ll be a beautiful contrast in styles, as Indiana’s fast pace has worn down every team in its path. If it’s the Knicks, they’ll come in battered and bruised because it means they’ve performed a miracle in coming back from a 3-1 deficit.

Thunder players and coaches celebrate after Game 5 of their Western Conference finals victory over the Minnesota Timberwolves on Wednesday, May 28, 2025, in Oklahoma City. (AP Photo/Nate Billings)
ASSOCIATED PRESS

Either way, the Thunder are massive favorites to win the first championship in OKC history, even if it came sooner than most expected.

But they showed a seriousness, a business-like approach to these playoffs, the lone slip-up in the West finals being Game 3 in Minneapolis. The Timberwolves had issues all night in Game 5, as they had in the first two games of this series, which were also blowouts.

League Most Valuable Player Shai Gilgeous-Alexander added another MVP to his trophy case with the Magic Johnson Trophy for Western Conference finals MVP with 34 points, 8 assists and 7 rebounds.

He scored or assisted on the game’s first 13 points as the outcome was never in doubt beyond the first few minutes.

“I didn’t want to go back to Minnesota, travel-wise. And then I wanted the fans to be able to enjoy the moment with us,” said Gilgeous-Alexander, who’s averaged 31.4 points, 8.2 assists and 1.8 steals in the playoffs. “To see it from their eyes, celebrate tonight in our building. Go home, get drunk or whatever.”

There was always a tone of “in two years they’re gonna be hell to deal with” — kicking the can down the road because OKC’s players were so young and inexperienced, and Thunder executive vice president Sam Presti has a treasure trove of future draft picks at his disposal to fortify the roster.

Perhaps the plan would’ve been to use those picks and package players for superstars if ownership didn’t have the stomach to go into the luxury tax — which, to be fair, there have been no indications that’s the case.

The Thunder’s offseason additions weren’t massive, but adding Alex Caruso in a Josh Giddey swap and signing Isaiah Hartenstein in free agency tied up the loose ends for a team that was more than ready to compete. The Thunder were ready to dominate.

Timberwolves star Anthony Edwards said Caruso functions almost like Draymond Green did in the early days of the Warriors dynasty, being able to hound and defend bigger players. Caruso was stuck to Julius Randle early and disrupted the entire Timberwolves offense, helping lead to 21 turnovers.

“It’s felt like they’ve been here forever,” Thunder coach Mark Daigneault said of the new additions. “They’re not deferential, but they’re respectful of the team, and they understood that this team had success prior to them being here, and they just, they hopped on a moving train and did so seamlessly.”

And so, that train is only gaining momentum. Even the straight-laced Presti couldn’t help but crack a smile as Jalen Williams summoned for more noise from the Paycom Center crowd as the Thunder regulars were removed with five minutes left and holding a 34-point lead.

It marks their fourth 30-point win in these playoffs, a record. It’s added to their 68-win season and record amount of double-digit wins, but they weren’t really sure they were as good as they looked until the games got real.

“The playoffs,” said Williams, who scored 19 with 8 rebounds and 5 assists. “Our last series against Denver, put up against adversity you don’t have in the regular season. I think that’s where we kind of grew up as a team. A lot of us, that was our first Game 7, getting over the hump of the second round. I think that was big for us.”

That was a seven-game slugfest that could turn out to be the Thunder’s biggest hurdle by the end of June. That Game 7 was never in doubt either, and it was likely their graduation moment.

“More experience, more games under our belt,” Williams said. “Just looking back at the last year, just a lot of us have never been in that situation, except for maybe, like two of us. So just have more experience.

“Most importantly, been able to grow through the experiences and not get stagnant. And I think that’s why we’re getting a lot of the great results that we are right now.”

For Minnesota, it is its second straight trip to the West finals and second straight five-game loss, both in similar fashion. It’s something Edwards will have to wear going into the summer, and unlike last year, when he claimed he easily let go of his team’s five-game loss to Dallas, this won’t be so easy.

It’s the second straight year the decisive game was essentially over in the first few minutes, as the Wolves had more turnovers at the half (14) than buckets (12). Last season, Luka Dončić took their hearts on their home floor in Game 5 to clinch a trip to the Finals.

Timberwolves head coach Chris Finch was confident his team would show up, that they weren’t discouraged at the deficit, that there was no panic.

He didn’t know it at the time, but it was resignation.

There comes a point in every hotly contested playoff series when both teams know, even subconsciously, who the better team is — and the series begins taking shape.

That came in Game 4, when the Timberwolves threw everything they had at their opponent. They beat the Thunder in every metric except for the scoreboard, and when you deliver your best shot on your home floor only to come up short, it becomes a fait accompli.

“They came to play, we didn’t,” Edwards said. “When you lose a game like this, it’s not really too much to break down. They just did what they were supposed to do.”

Nine years ago to the day, the Thunder had a chance to clinch a trip to the Finals against Stephen Curry and the Warriors in a Game 6.

Then Klay Thompson happened, and OKC underwent changes — some forced, some by choice — that took it on this winding road, leading back to the same place.

And even though that Kevin Durant-Russell Westbrook team had more experience under its belt, this one feels better and more complete, even if Gilgeous-Alexander doesn’t feel there’s any comparison between the two, that it’s just coincidental.

But this team didn’t mess around and give its opponent any hope, and now it’s four wins to go and more hell to unleash.

Angels manager Ron Washington erupts with laughter after Aaron Judge’s hat-tip following back-to-back intentional walks

Ron Washington wasn’t going to let Aaron Judge get a hit early on Wednesday night.

Judge, though, didn’t seem too bothered by the Los Angeles Angels manager’s strategy.

Washington opted to have Judge intentionally walked twice in the first two innings of the New York Yankees’ 1-0 win over the Angels on Monday night in Anaheim. 

As the second walk, which loaded the bases, was called, Judge couldn’t help but tip his cap toward Washington — who absolutely loved it and erupted in laughter.

The strategy worked for the Angels as Cody Bellinger flied out with two outs. 

Judge returned to the plate in the fifth inning and flied out to right. He then struck out looking in the seventh inning, which was his final at-bat of the game. 

The Yankees jumped up in the first inning after Anthony Volpe plated Paul Goldschmidt on a bases loaded sacrifice fly. That ended up being enough to get the job done. The Yankees held on the rest of the way to grab the one-run win and complete the series sweep. The win, their ninth in the past 10 games, pushed the Yanks to 35-20 on the season. The Angels have lost five straight and sit at 25-30.

It makes sense why Washington wouldn’t want to let Judge up to the plate. Judge entered Wednesday holding a league-best .395 batting average with 18 home runs and 47 RBI. He also has 81 hits and a .488 on-base percentage, both of which are the best in MLB. Stopping Judge isn’t really much of an option.

Judge had a hit in Tuesday’s 3-2 win over the Angels, and he had a hit and scored twice in Monday’s 5-1 win.

So for the final game of the series, Washington decided to try and avoid Judge altogether. That may not be a permanent solution, but it limited the potential damage and gave him a good laugh Wednesday. That’s at least something.

NBA Finals odds: OKC Thunder are absolutely massive favorites against either the Pacers or Knicks

The Oklahoma City Thunder are a staggeringly large favorite to win the NBA Finals.

After securing a 124-94 win over the Minnesota Timberwolves in Game 5 of their Western Conference finals matchup, the Thunder are -625 at BetMGM to beat either the Indiana Pacers or New York Knicks in the Finals. If you bet $10 on the Thunder to win the Finals, you’d net $1.60 in profit if they were to win the title.

Oklahoma City has been the best team in the NBA this season by a wide margin. The Thunder went 68-14 to secure the top seed in the West for a second straight year and had a historically good point differential. The Thunder outscored opponents by 12.9 points per game during the regular season.

That was more than half a point better than the previous record set by the Los Angeles Lakers in the 1971-72 season when Los Angeles outscored opponents by 12.3 points per game. Oklahoma City also finished at least 16 games ahead of every other team in the Western Conference as Shai Gilgeous-Alexander won his first MVP award.

Gilgeous-Alexander scored 34 points in Game 5 on Wednesday night and led the league with 32.7 points per game while also averaging 6.4 assists and 5 rebounds.

OKC’s incredible regular season was bolstered by its dominance of the Eastern Conference. And that assuredly plays a big role in the team’s status as a huge Finals favorite. Oklahoma City went 29-1 against teams from the East.

The Thunder’s only loss to an East team came on Jan. 8 when they fell 129-122 on the road to the Cleveland Cavaliers. Eight days later, the Thunder promptly beat the Cavs by 20 at home.

Oklahoma City beat the Pacers 120-114 on the road on Dec. 26 and 132-111 at home on March 29. The Thunder beat the Knicks 117-107 at home on Jan. 3 and then by 25 a week later in a 126-101 win at Madison Square Garden.

At the moment, the Pacers are the more likely Finals opponent as Indiana has a 3-1 lead over the Knicks ahead of Game 5 in New York. The Pacers are currently +550 to win the Finals ahead of Game 5 and the Knicks are +3000.