| CVE ID | CVSS Score | Severity | Description |
|---|---|---|---|
| CVE-2025-40575 | 4.3 | medium |
CVE-2025-40575. Affected devices do not properly validate incoming Profinet packets.
An unauthenticated remote attacker can exploit this flaw by sending a specially crafted malicious packet, which leads to a crash of the dcpd
process.
|
| CVE-2025-40576 | 4.3 | medium |
CVE-2025-40576. Affected devices do not properly validate incoming Profinet packets.
An unauthenticated remote attacker can exploit this flaw by sending a specially crafted malicious packet, which leads to a crash of the dcpd process.
|
| CVE-2025-40580 | 6.7 | medium |
CVE-2025-40580. Affected devices are vulnerable to a stack-based buffer overflow.
This could allow a non-privileged local attacker to execute arbitrary code on the device or to cause a denial of service condition.
|
| CVE-2025-40582 | 7.8 | high |
CVE-2025-40582. Affected devices do not properly sanitize configuration parameters.
This could allow a non-privileged local attacker to execute root commands on the device.
|
| CVE-2025-40572 | 5.5 | medium |
CVE-2025-40572. Affected devices do not properly assign permissions to critical ressources.
This could allow a non-privileged local attacker to access sensitive information stored on the device.
|
| CVE-2025-40583 | 4.4 | medium |
CVE-2025-40583. Affected devices do transmit sensitive information in cleartext.
This could allow a privileged local attacker to retrieve this sensitive information.
|
| CVE-2025-40574 | 7.8 | high |
CVE-2025-40574. Affected devices do not properly assign permissions to critical ressources.
This could allow a non-privileged local attacker to interact with the backupmanager service.
|
| CVE-2025-40573 | 4.4 | medium |
CVE-2025-40573. Affected devices are vulnerable to path traversal attacks.
This could allow a privileged local attacker to restore backups that are outside the backup folder.
|
| CVE-2025-40579 | 6.7 | medium |
CVE-2025-40579. Affected devices are vulnerable to a stack-based buffer overflow.
This could allow a non-privileged local attacker to execute arbitrary code on the device or to cause a denial of service condition.
|
| CVE-2025-40577 | 4.3 | medium |
CVE-2025-40577. Affected devices do not properly validate incoming Profinet packets.
An unauthenticated remote attacker can exploit this flaw by sending a specially crafted malicious packet, which leads to a crash of the dcpd process.
|
| CVE-2025-40578 | 4.3 | medium |
CVE-2025-40578. Affected devices do not properly handle multiple incoming Profinet packets received in rapid succession.
An unauthenticated remote attacker can exploit this flaw by sending multiple packets in a very short time frame, which leads to a crash of the dcpd process.
|
| CVE-2025-40581 | 7.1 | high |
CVE-2025-40581. Affected devices are vulnerable to an authentication bypass.
This could allow a non-privileged local attacker to bypass the authentication of the SINEMA Remote Connect Edge Client, and to read and modify the configuration parameters.
|
| Vendor | Product | Asset Type | Purdue Level | Firmware |
|---|---|---|---|---|
| Siemens | Unknown | network_device | -- | -- |