SPPA-T3000 APC UPS with NMC card AP9630 or AP9631:
All versions only affected by
CVE-2020-11896
APS UPS systems are affected by multiple Ripple20 vulnerabilities, including CVE-2020-11896 and 14 more.
The T3000 specific CVSS Environmental Score is 3.6 (Severity: low).
Please contact your Siemens Energy service management organisation how to mitigate the Ripple20 vulnerabilities in T3000 solutions.
See further recommendations from section Workarounds and Mitigations
SPPA-T3000 Application Server:
All versions only affected by
CVE-2020-0545
When running on a HP ProLiant DL360 Gen10 server, the SPPA-T3000 Application Server is affected in the Intel Server Platform Services (SPS) included in the server hardware.
The T3000 specific CVSS Environmental Score is 3.6 (Severity: low).
Please contact your Siemens Energy service management organisation how to obtain the patch for the Intel SPS system of the server hardware.
See further recommendations from section Workarounds and Mitigations
SPPA-T3000 Terminal Server:
All versions only affected by
CVE-2020-0545
When running on a HP ProLiant DL360 Gen10 server, the SPPA-T3000 Terminal Server is affected in the Intel Server Platform Services (SPS) included in the server hardware.
The T3000 specific CVSS Environmental Score is 3.6 (Severity: low).
Please contact your Siemens Energy service management organisation how to obtain the patch for the Intel SPS system of the server hardware.
See further recommendations from section Workarounds and Mitigations
Implement mitigations described in the SPPA-T3000 security manual
Restrict access to the Application Highway using the SPPA-T3000 Firewall
External components should be connected only to the SPPA-T3000 DMZ; no bridging of an external network to either the Application- or Automation highways is allowed
Perform regular updates of the SPPA-T3000 (e.g. by using the Security Server if available)
Implement mitigations provided in the customer information letter distributed via the customer service portal
Please contact your local Siemens Energy representative if you need help at securing your SPPA-T3000 installation