type: incident ยท created: 2026-08-13 ยท updated: 2026-08-18 ยท tags: [incident, cisa, ics, siemens, johnson-controls, industrial-control, buildling-automation] ยท confidence: high ยท affected_sectors: [energy, utilities, industrial-control, critical-infrastructure] ยท au_impact: false
CISA Issues Multiple Siemens and Johnson Controls ICS Advisories
CISA published a batch of ICS advisories covering vulnerabilities in Siemens products โ LOGO! Soft Comfort, Solid Edge, Simcenter Femap, Parasolid, Siveillance Video, Desigo DXR and PXC controllers, License Server (SLS) and RUGGEDCOM APE1808 โ and the Johnson Controls Metasys building-management platform.
Summary
The advisories highlight continued risk in industrial control and building-automation systems across energy and industrial environments. Patching these OT/ICS surfaces is prioritised given their critical-infrastructure exposure.
Impact
- Vulnerabilities across a wide range of Siemens ICS products and the Johnson Controls Metasys platform
- Continued risk to energy, industrial and building-automation environments
- Patches and CISA guidance should be applied to exposed OT/ICS infrastructure
Sector
Energy & Utilities
Sources
- CISA โ ICS Advisories
- raw/digests/Cyber-Digest-2026-08-14