Skip to main content
A shield with a lock symbol and a key in the center, surrounded by a blue border.

Siemens ProductCERT and Siemens CERT

Siemens ProductCERT is a team of security experts managing security issues (receipt, investigation, coordination, reporting) for Siemens products, solutions and services. ProductCERT builds global relationships to enhance product security.

Siemens’ ProductCERT team publishes security advisories on validated vulnerabilities

Siemens ProductCERT

Siemens ProductCERT investigates reported security issues and publishes Security Advisories for confirmed vulnerabilities in Siemens products

Siemens Security Advisories

Increasing Vulnerability Transparency with Supplier-ADP

2026-04-14

Since 2024, the Cybersecurity and Infrastructure Security Agency (CISA) has implemented the “Vulnrichment” program to enrich CVE data with additional information. The goal is to give additional context and help defenders in assessing the specific risk of these vulnerabilities. Each CVE from cve.org or github has an Authorized Data Publisher (ADP) container where this data is stored.

As a next level, Siemens PSIRT was advocating a further extension of this: The Supplier-ADP (SADP), which was piloted in the last months and finally introduced in April 2026. The SADP comes handy if a supplier like Siemens wants to add information to a vulnerability, which originates in an upstream dependency.

Read the full News article

Siemens Security Advisories

Siemens ProductCERT investigates all reports of security issues and publishes Security Advisories for validated security vulnerabilities that directly involve Siemens products and require applying an update, performing an upgrade or other customer action. As part of the ongoing effort to help operators manage security risks and help keep systems protected, Siemens ProductCERT discloses the required information necessary for operators to assess the impact of a security vulnerability.

Loading application...

Subscribe to Security Advisories

To stay up to date with Siemens security advisories, you can register to our mailing list, subscribe to our RSS feed or ingest our CSAF feed. If you register to our mailing list, we will notify you via email on newly released or updated security advisories.

If you prefer CSAF or RSS to stay up-to-date, subscribe to one of our feeds:

To register to our mailing list, please send us an email to productcert@siemens.com with the subject line “[Advisory Mailing List] Subscribe".

In case you did not intend to subscribe or want to unsubscribe from the advisory mailing list, please send a mail to productcert@siemens.com with subject "[Advisory Mailing List] Unsubscribe" and as sender the email address to unsubscribe.

Get In Touch with Siemens ProductCERT or Siemens CERT

For Siemens portfolio/infrastructure security questions or to report potential issues, please contact us. We accept English or German emails; encrypted communication is preferred. Expect a response by the next business day in Germany (Munich).

Siemens ProductCERT - contact for products, solutions and services

PGP Public Key and Fingerprint: 580D 38DA 2285 55EB 2A39 9A81 18BA BD55 427E CF78

Email productcert@siemens.com

Siemens CERT - contact for infrastructure

PGP Public Key and Fingerprint: A3D1 8E40 D104 DEAD A112 3FF6 B485 0E2E 1AA2 2CD8

Email cert@siemens.com