CISA

Siemens RUGGEDCOM APE1808

From Cybersecurity and Infrastructure Security Agency ↗

Fortinet has published information on vulnerabilities in FortiOS. This advisory lists the related Siemens Industrial products. Siemens recommends to contact customer support for additional information, and follow Fortinet advisory for workarounds and mitigation measures.

The following versions of Siemens RUGGEDCOM APE1808 are affected:

RUGGEDCOM APE1808 vers:all/* (CVE-2026-23573, CVE-2026-59839)

Vendor

Equipment

Siemens

Siemens RUGGEDCOM APE1808

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting'), Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')

Critical Infrastructure Sectors: Critical Manufacturing, Energy, Transportation Systems

Countries/Areas Deployed: Worldwide

Company Headquarters Location: Germany

An Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability [CWE-...