IM
IronMonkey Threat Research
‹ Back to ICS Advisories

SSA-751328: Recoverable Hardcoded AES Master Key in Siemens LOGO! Soft Comfort

MEDIUM
CVSS 6.8
Date 2026-08-11T00:00:00+00:00
Source siemens-productcert
Published by Siemens ProductCERT

// Description

Siemens LOGO! Soft Comfort contains multiple vulnerabilities in its project-file encryption and password handling mechanisms. A local attacker could exploit these vulnerabilities to extract the master key, allowing them to decrypt project data or remove project passwords. The lack of password salting enables offline dictionary or brute-force attacks against the password hashes. Successful exploitation could result in unauthorized access to, or modification of, sensitive project logic and configurations. Siemens has released a new version for LOGO! Soft Comfort and recommends to update to the latest version.

// Vulnerabilities (2)

CVE ID CVSS Score Severity Description
CVE-2026-57263 6.8 medium
CVE-2026-57263. The project password feature in the affected products stores the password as an unsalted SHA-256 hash. This could allow an attacker who has obtained the project file to perform efficient offline dictionary or brute-force attacks against the unsalted hash.
CVE-2026-57262 6.8 medium
CVE-2026-57262. Affected products use a static, hardcoded AES master key to encrypt project files. This could allow a local attacker to extract the master key from the application files or memory and use it to decrypt project files or remove project passwords entirely without knowing the actual user-defined password.

// Remediations (1)

Patch: Update to V9 or later version Note: A hardware upgrade to LOGO! V9 BM or later is also required to a
Update to V9 or later version Note: A hardware upgrade to LOGO! V9 BM or later is also required to avoid compatibility mode, in which the vulnerabilities addressed by this advisory remain present.

// References