0
Siemens SIMATIC IoT2050 Advanced Missing Authentication Vulnerability
Siemens has disclosed a critical missing authentication vulnerability (CVE-2026-58115) in SIMATIC IoT2050 Advanced devices running Industrial OS with Node-RED installed. An unauthenticated remote attacker could exploit this to execute arbitrary code with maximum privileges. Siemens has released a fix in version V4.3.4.1.