CVE-2026-27662

HIGH

View CSAF Summary SIMATIC HMI Unified Comfort Panels before V21.0 are affected by a vulnerability that allows an unauthenticated attacker to access the web browser via the help link. This vulnerabi...

Affects 0 products across 2 vendors.

BCS5.32
CVSS 3.17.7
CVSS v47.0
EPSS0.1%
Percentile2th
PatchUnknown
CVSS Vector — Plain English Requires local access, low complexity, no authentication required, no user interaction needed, impact contained to the vulnerable component, no confidentiality impact, full integrity impact, full availability impact.
CWE Weakness Definitions
CWE-1188: CWE-1188
Related Attack Patterns (CAPEC)
CAPEC-665 Exploitation of Thunderbolt Protection Flaws
via CWE-1188

Mapping is CWE-to-CAPEC per MITRE CAPEC 3.9.

◆ SAGE Intelligence — CITED Relevance Research Team

The vulnerability in Siemens SIMATIC HMI Unified Comfort Panels prior to V21.0 allows an unauthenticated attacker to access the web browser through the Control Panel, potentially leading to misconfigurations and backdoor discovery. Siemens has released updated versions to mitigate this issue.

BSID: BS-2026-GLOBAL-076338-H • Model: Qwen/Qwen2.5-72B-Instruct-AWQ • Confidence: MEDIUM

Is this CVE in your environment?

BreachSpider monitors your ICS/OT environment for vulnerabilities like this one. No agents or network access required. Free to start.

Check My Environment →
Frequently Asked Questions
What is CVE-2026-27662?
The vulnerability in Siemens SIMATIC HMI Unified Comfort Panels prior to V21.0 allows an unauthenticated attacker to access the web browser through the Control Panel, potentially leading to misconfigurations and backdoor discovery. Siemens has released updated versions to mitigate this issue.
What is the CVSS score for CVE-2026-27662?
CVE-2026-27662 has CVSS 7.7 (High). Vector: CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:H. EPSS: 0.1%.
Is CVE-2026-27662 actively exploited?
No confirmed active exploitation of CVE-2026-27662 as of 2026-05-30.
How do I remediate CVE-2026-27662?
Priority: MEDIUM.
What systems are affected by CVE-2026-27662?
CVE-2026-27662 affects: Fujitsu-Siemens, Siemens.
What NERC-CIP standard applies to CVE-2026-27662?
NERC CIP CIP-007 CIP-007-R2: This vulnerability could allow unauthorized access to the control system, violating the requirement for securing electronic access to BES Cyber Systems.
What IEC 62443 requirement maps to CVE-2026-27662?
IEC 62443 SR 7.6: This vulnerability impacts the secure access to the control system, which is a critical aspect of the security requirements for industrial automation and control systems.
Vulnerability Details
CVE IDCVE-2026-27662
BSIDBS-2026-GLOBAL-076338-H BreachSpider Global ID
CVSS VectorCVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:H
Published2026-05-14
Last Modified2026-05-14
ICS Relevance65%
Weakness (CWE)
Verticals
ICS-OT
SourceNVD
Official Description

View CSAF Summary SIMATIC HMI Unified Comfort Panels before V21.0 are affected by a vulnerability that allows an unauthenticated attacker to access the web browser via the help link. This vulnerability allows an attacker to access the web browser through the Control Panel if it is not protected by the corresponding security mechanisms. This opens the possibility for the attacker to find backdoors, which might lead to unwanted misconfigurations. Siemens has released new versions for the affected

Source: NIST NVD / MITRE CVE Database

Attack Vector Analysis — CITED Relevance

An unauthenticated attacker can exploit this vulnerability by accessing the web browser via the help link on the Control Panel. This can lead to the discovery of backdoors and potential misconfigurations, compromising the integrity and availability of the system.

Exploitation Likelihood: LOW

Affected Products
VendorProductFixed Version
Fujitsu-Siemens —
Siemens —
Remediation

No patch URL on record. Monitor vendor security advisories directly.

Threat Intelligence
● Threat Intelligence Validated: July 2026 | Threat Age: 72 Days
CISA KEVNot in KEV catalog
Public ExploitNot confirmed
PoC CodeNot confirmed
● Virtual Patch — CITED Relevance SAGE Engine MEDIUM CONFIDENCE

Implement network segmentation to isolate the affected HMI panels from the general network, and apply strict access controls to the Control Panel.

SURICATA RULE
alert http $HOME_NET any -> $EXTERNAL_NET any (msg:"Siemens SIMATIC HMI Unified Comfort Panels - Unauthenticated Web Browser Access Attempt"; flow:established,to_server; content:"/help"; http_uri; sid:9100651; rev:1;)
NERC CIP: CIP-007 CIP-007-R2
This vulnerability could allow unauthorized access to the control system, violating the requirement for securing electronic access to BES Cyber Systems.
IEC 62443: SR 7.6
This vulnerability impacts the secure access to the control system, which is a critical aspect of the security requirements for industrial automation and control systems.

Virtual patch generated by CITED Relevance SAGE. Validate in isolated environment before production deployment. Compensating control only - does not replace vendor patch.

SAGE Enrichment Record — provenance & audit hash
ModelQwen/Qwen2.5-72B-Instruct-AWQ
ConfidenceMEDIUM
Enriched At2026-05-24
SHA-512 Audit Hashf58098dc5c71849edb9dfc224156b3b72850b1f43cdb201b717800c4dded79667149cce869b3fd254c5d606c514e44d8b84525a1edc47a03c2b4fea888c6e54f
Related CVEs affecting Fujitsu-Siemens
CVE-2024-32741 10.0 A vulnerability has been identified in SIMATIC CN 4100 (All versions < V3.0).... CVE-2024-44102 10.0 A vulnerability has been identified in PP TeleControl Server Basic 1000 to 50... CVE-2008-5810 10.0 WBPublish (aka WBPublish.exe) in Fujitsu-Siemens WebTransactions 7.0, 7.1, an... CVE-2024-30207 10.0 A vulnerability has been identified in SIMATIC RTLS Locating Manager (6GT2780... CVE-2025-32433 10.0 Erlang/OTP is a set of libraries for the Erlang programming language. Prior t...
View all Fujitsu-Siemens CVEs →

ICS/OT Vulnerability Intelligence for Your Environment

BreachSpider monitors 353,228 CVEs across ICS/OT vendors. SAGE-enriched alerts with virtual patches, NERC-CIP mapping, and PSIRT contacts delivered to your SIEM in minutes.

Join free →