{"description":"Trending threats, MITRE ATT\u0026CK coverage, and detection metadata. Fed continuously.","favicon":"https://feed.craftedsignal.io/favicon-32x32.png","feed_url":"https://feed.craftedsignal.io/products/desigo-pxc5.e003/feed.json","home_page_url":"https://feed.craftedsignal.io/","icon":"https://feed.craftedsignal.io/apple-touch-icon.png","items":[{"_cs_actors":[],"_cs_cpes":[],"_cs_cves":[{"cvss":4.3,"id":"CVE-2026-59693"}],"_cs_exploited":false,"_cs_has_poc":false,"_cs_poc_references":[],"_cs_products":["Desigo DXR2","Desigo PXC3","Desigo PXC4","Desigo PXC5.E003","Desigo PXC5.E24","Desigo PXC7"],"_cs_severities":["low"],"_cs_tags":[],"_cs_type":"advisory","_cs_vendors":["Siemens"],"content_html":"\u003cp\u003eSiemens has disclosed a security vulnerability affecting various models of its Desigo DXR and PXC building automation controllers. The vulnerability, tracked as CVE-2026-59693, stems from an improper check for unusual or exceptional conditions within the device's BACnet protocol implementation. An unauthenticated attacker with network access to the controller can send a specifically crafted, malformed BACnet packet that causes the device to cease responding to legitimate network queries. This results in a denial-of-service (DoS) condition, impacting building management functions. Restoration of services requires a manual hardware reset or power cycle of the affected device. Siemens has released firmware updates for the impacted product lines and strongly recommends that operators transition to the patched versions to eliminate the risk. The vulnerability is rated with a CVSS 3.1 base score of 4.3 (Medium), reflecting the requirement for adjacent network access and the need for manual intervention to recover.\u003c/p\u003e\n\u003ch2 id=\"impact\"\u003eImpact\u003c/h2\u003e\n\u003cp\u003eThe vulnerability affects critical infrastructure sectors including energy, healthcare, public health, commercial facilities, and manufacturing. Successful exploitation leads to a loss of availability for the targeted Desigo controllers, potentially disrupting facility environmental and automation controls. Because these devices are typically managed via local industrial networks, the impact is primarily felt by organizations operating in the physical security and facility management domains. There is no evidence of remote code execution or data exfiltration associated with this vulnerability.\u003c/p\u003e\n\u003ch2 id=\"recommendation\"\u003eRecommendation\u003c/h2\u003e\n\u003cp\u003ePrioritize patching of all identified Desigo DXR and PXC controllers listed in the affected products section. Given the requirement for manual intervention to restore service, operators should conduct a risk assessment before deployment to account for potential downtime during the maintenance cycle. Implement strict network segmentation to restrict BACnet traffic to authorized devices only and ensure controllers are not accessible from the public internet. Monitor industrial networks for anomalous BACnet traffic patterns that deviate from standard operational baselines.\u003c/p\u003e\n","date_modified":"2026-08-13T16:51:58Z","date_published":"2026-08-13T16:51:58Z","id":"https://feed.craftedsignal.io/briefs/2026-08-siemens-desigo-dos/","summary":"Siemens Desigo DXR and PXC controllers are vulnerable to a denial-of-service condition (CVE-2026-59693) triggered by malformed BACnet packets, requiring a manual device reboot.","title":"Denial of Service Vulnerability in Siemens Desigo DXR and PXC Controllers","url":"https://feed.craftedsignal.io/briefs/2026-08-siemens-desigo-dos/"}],"language":"en","title":"CraftedSignal Threat Feed - Desigo PXC5.E003","version":"https://jsonfeed.org/version/1.1"}