A vulnerability has been identified in Opcenter Quality (All versions < V12.2), QMS Automotive (All versions < V12.30). A private sign key is shipped with the product without adequate protection.
https://cert-portal.siemens.com/productcert/pdf/ssa-788287.pdf