CNNVD-202512-1523 Information

CNNVD ID

CNNVD-202512-1523

CVE-2025-40820

  • CNNVD Published: 2025-12-09

Description (Chinese)

Siemens SIDOOR ATD430W等都是德国Siemens公司的一个自动门驱动系统。 Siemens多款产品存在安全漏洞,该漏洞源于TCP序列号验证不足,可能导致拒绝服务攻击。以下产品受到影响:SIDOOR ATD430W、SIDOOR ATE530G COATED、SIDOOR ATE530S COATED、SIMATIC CFU DIQ、SIMATIC CFU PA、SIMATIC ET 200AL IM 157-1 PN、SIMATIC PN/MF Coupler、SIMOCODE pro V PROFINET和SIWAREX WP251。

Description (English)

Siemens SIDOR ATD430W, among others, is an automatic door-driven system for Siemens, Germany. There is a safety gap in multiple Siemens products, which stems from insufficient TCP serial number verification and may lead to denial of service attacks. The following products were affected: SIDOR ATD430W, SIDOR ATE530G COATED, SIDOR ATE530S COATED, SIMATIC CFU DIQ, SIMATIC CFU PA, SIMATIC ET 200AL IM 157-1 PN, SIMATIC PN/MF Coupler, SIMOCODE pro V PROFINET and SIWALEX WP251.

Hazard Level

Medium

Vulnerability Type

其他

Affected Vendor

西门子

Published

2025-12-09

Last Modified

2026-02-24

References

https://cert-portal.siemens.com/productcert/html/ssa-915282.html https://vigilance.fr/vulnerability/Siemens-SIMATIC-denial-of-service-via-TCP-Sequence-Number-Validation-49026

Patch

https://cert-portal.siemens.com/productcert/html/ssa-915282.html

Share on: