CNNVD-202510-2040 Information

CNNVD ID

CNNVD-202510-2040

CVE-2025-40771

  • CNNVD Published: 2025-10-14

Description (Chinese)

Siemens SIMATIC CP Series是德国西门子(Siemens)公司的一系列通信处理器。 Siemens SIMATIC CP Series存在访问控制错误漏洞,该漏洞源于未正确验证配置连接,可能导致未经身份验证的远程攻击者访问配置数据。

Description (English)

Siemens SIMATIC CP Series is a series of communications processors from Siemens, Germany. Siemens SIMATIC CP Series had access control bugs, which stemmed from incorrect authentication of configuration connections, which could lead to uncertified remote assailant access to configuration data.

Hazard Level

Low

Vulnerability Type

访问控制错误

Affected Vendor

西门子

Published

2025-10-14

Last Modified

2026-02-24

References

https://cert-portal.siemens.com/productcert/html/ssa-486936.html

Patch

https://www.siemens.com/global/en/products/services/cert.html#SiemensSecurityAdvisories

Share on: