Siemens has released patches / workarounds for critical memory protection bypass vulnerabilities in S7-1200 and S7-1500 products.

Vendor recommended mitigations as follows:

  • Password protect S7 comms
  • Disallow client connections
  • Restrict access from the S7-1500 display
  • Apply physical security, network zoning etc.
  • Update to TIA v17 and enable TLS