As a technology development and services company, at Q2BSTUDIO we focus on staying updated with the latest vulnerabilities in products such as Siemens License Server. It is important to note that as of January 10, 2023, CISA will stop updating security advisories for vulnerabilities in Siemens products beyond the initial advisory.
For the most up-to-date information on vulnerabilities in this product, we recommend consulting the Siemens ProductCERT Security Advisories.
Additionally, it is crucial to highlight that Siemens has reported the existence of vulnerabilities such as Improper Privilege Management and Improper Certificate Validation in its License Server product. These vulnerabilities could allow a low-privilege local user to escalate privileges or execute arbitrary code.
In response to this situation, Siemens has released a new version for Siemens License Server (SLS) and recommends updating to the latest available version. It also advises protecting network access to devices with appropriate mechanisms and configuring the environment according to Siemens industrial security operational guidelines.
At Q2BSTUDIO, we are committed to staying informed about the latest security updates and implementing best practices to ensure the protection of our clients' assets.




