Siemens SIPLUS and SIMATIC Products Affected by "Copy Fail" Vulnerability Tracked as CVE-2026-31431
CISA and Siemens have disclosed that multiple SIMATIC and SIPLUS industrial automation products are vulnerable to a "Copy Fail" flaw tracked as CVE-2026-31431. The vulnerability affects a wide range of HMI and runtime platforms including SIMATIC AX Runtime Core Linux, SIMATIC CN 4100, and various MTP1000, MTP1200, MTP1500, and MTP1900 series devices running affected firmware versions prior to 21.0.2.1. Siemens has released updated versions and recommends immediate updating. No public exploitation has been confirmed, but the advisory notes that unauthenticated attackers may exploit the vulnerability to read sensitive information or cause denial of service. Users are advised to update affected products to the latest available versions or apply recommended countermeasures.