The vendor explicitly identifies these products as affected by this CVE.
- LOGO! 8 BM (incl. SIPLUS variants)
- Summary
- Affected devices load firmware updates without checking the authenticity. Furthermore the integrity of the unencrypted firmware is only verified by a non-cryptographic method. This could allow an attacker to manipulate a firmware update and flash it to the device.
- Remediation
- Update to V8.3 or later version. Note that in order to update, a new hardware version is required
