CNNVD-202508-1032 Information

CNNVD ID

CNNVD-202508-1032

CVE-2025-40570

  • CNNVD Published: 2025-08-12

Description (Chinese)

Siemens SIPROTEC 5 6MD84等都是德国西门子(Siemens)公司的一款继电器设备。 Siemens多款产品存在安全漏洞,该漏洞源于未限制本地USB端口带宽,可能导致拒绝服务攻击。以下产品及版本受到影响:SIPROTEC 5 6MD84、SIPROTEC 5 6MD85、SIPROTEC 5 6MD86、SIPROTEC 5 6MD89、SIPROTEC 5 6MU85、SIPROTEC 5 7KE85、SIPROTEC 5 7SA82、SIPROTEC 5 7SA86、SIPROTEC 5 7SA87、SIPROTEC 5 7SD82、SIPROTEC 5 7SD86、SIPROTEC 5 7SD87、SIPROTEC 5 7SJ81、SIPROTEC 5 7SJ82、SIPROTEC 5 7SJ85、SIPROTEC 5 7SJ86、SIPROTEC 5 7SK82、SIPROTEC 5 7SK85、SIPROTEC 5 7SL82、SIPROTEC 5 7SL86、SIPROTEC 5 7SL87、SIPROTEC 5 7SS85、SIPROTEC 5 7ST85、SIPROTEC 5 7ST86、SIPROTEC 5 7SX82、SIPROTEC 5 7SX85、SIPROTEC 5 7SY82、SIPROTEC 5 7UM85、SIPROTEC 5 7UT82、SIPROTEC 5 7UT85、SIPROTEC 5 7UT86、SIPROTEC 5 7UT87、SIPROTEC 5 7VE85、SIPROTEC 5 7VK87、SIPROTEC 5 7VU85和SIPROTEC 5 Compact 7SX800 V10.0之前版本。

Description (English)

Siemens SIPROTEC 5,6MD84 and others are all relays to Siemens, Germany. There is a safety loophole in Siemens ’ multiple products, which stems from the fact that local USB port bandwidth is not restricted and may lead to a denial of service attack. The following products and versions have been affected: SIPROTEC 5 6MD84, SIPROTEC 5 6MD85, SIPROTEC 5 MTEC 5 6MD89, SIPROTEC 5 6MU85, SIPROTEC 5 7S82, SIPROTEC 5 7SA86, SIPROTEC 5 7SA87, SIPROTEC 7S 7S 7, SIPPORT 5 IPBES 7

Hazard Level

Critical

Vulnerability Type

其他

Affected Vendor

西门子

Published

2025-08-12

Last Modified

2026-02-24

References

https://cert-portal.siemens.com/productcert/html/ssa-894058.html

Patch

https://cert-portal.siemens.com/productcert/html/ssa-894058.html

Share on: