JFYI, this vulnerability wide known for 7 years from May 2005. First time it published on Siemens forum and publicly disclosed in April 2008.
Link and screenshot for history: http://iadt.siemens.ru/forum/viewtopic.php?p=2974
So correct credits for advisory: Max Prilepsky & Cyber.
PS. Mikko - perfect Cyrillic screen for you slides!
PPS. AC/DC? No way!