CNNVD-202507-930 Information

CNNVD ID

CNNVD-202507-930

CVE-2025-40742

  • CNNVD Published: 2025-07-08

Description (Chinese)

Siemens SIPROTEC 5 6MD84等都是德国西门子(Siemens)公司的一款继电器设备。 Siemens多款产品存在安全漏洞,该漏洞源于URL请求中包含会话标识符,可能导致未授权访问。以下产品受到影响:SIPROTEC 5 6MD84和SIPROTEC 5 6MD85和SIPROTEC 5 6MD86和SIPROTEC 5 6MD89和SIPROTEC 5 6MD89 V9.6和SIPROTEC 5 6MU85和SIPROTEC 5 7KE85和SIPROTEC 5 7SA82和SIPROTEC 5 7SA86和SIPROTEC 5 7SA87和SIPROTEC 5 7SD82和SIPROTEC 5 7SD86和SIPROTEC 5 7SD87和SIPROTEC 5 7SJ81和SIPROTEC 5 7SJ82和SIPROTEC 5 7SJ85和SIPROTEC 5 7SJ86和SIPROTEC 5 7SK82和SIPROTEC 5 7SK85和SIPROTEC 5 7SL82和SIPROTEC 5 7SL86和SIPROTEC 5 7SL87和SIPROTEC 5 7SS85和SIPROTEC 5 7ST85和SIPROTEC 5 7ST86和SIPROTEC 5 7SX82和SIPROTEC 5 7SX85和SIPROTEC 5 7SY82和SIPROTEC 5 7UM85和SIPROTEC 5 7UT82和SIPROTEC 5 7UT85和SIPROTEC 5 7UT86和SIPROTEC 5 7UT87和SIPROTEC 5 7VE85和SIPROTEC 5 7VK87和SIPROTEC 5 7VU85和SIPROTEC 5 Compact 7SX800。

Description (English)

Siemens SIPROTEC 5,6MD84 and others are all relays to Siemens, Germany. There is a safety gap in the Siemens multi-products, which stems from the inclusion of a session identifier in the URL request, which may lead to unauthorized access. The following products were affected: SIPROTEC 5 6MD84 and SIPROTEC 5 6MD85 and SIPPRODUCT 7 7 and SIPPORT5 PRODUCT 7 PRODUCT 7 PORT5 PRODUCT 5 PORT5 PORT5 PORT5 PORT5 PRODUCT8 and PORT5 PORT5 PORT75 PORT5 PORT5 PORT5 PRODUCT8 and PRODUCT5 PORT75 PORT5 PORT5 PORT8 and PORTEC5 PORT5 PORT5 PRODUCT5 PORT75 PORT75 PORT5 PORT5 PORT5 PORT75 PORT5 PORT5 PORT8 and PRODUCT5 PRODUCT5 PORT75 PORT75 PORT75 PORT75 PORT5 PORT8 and SIPTEC7 PORT5 PORT75 PORT5 PORT75 PORT8 and SPT75 PORT75 PORT5 PORT75 and SIPTEC5 PORT75 PORT5 PRODUCT5 PRODUCT5 and S and SIPEC7 PORT7 PORT7 PORT5 PORT5

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

西门子

Published

2025-07-08

Last Modified

2026-02-24

References

https://cert-portal.siemens.com/productcert/html/ssa-904646.html

Share on: