CVE-2025-40817
CVE-2025-40817
A vulnerability has been identified in LOGO! 12/24RCE (6ED1052-1MD08-0BA2) (All versions), LOGO! 12/24RCEo (6ED1052-2MD08-0BA2) (All versions), LOGO! 230RCE (6ED1052-1FB08-0BA2) (All versions), LOGO! 230RCEo (6ED1052-2FB08-0BA2) (All versions), LOGO! 24CE (6ED1052-1CC08-0BA2) (All versions), LOGO! 24CEo (6ED1052-2CC08-0BA2) (All versions), LOGO! 24RCE (6ED1052-1HB08-0BA2) (All versions), LOGO! 24RCEo (6ED1052-2HB08-0BA2) (All versions), SIPLUS LOGO! 12/24RCE (6AG1052-1MD08-7BA2) (All versions), SIPLUS LOGO! 12/24RCEo (6AG1052-2MD08-7BA2) (All versions), SIPLUS LOGO! 230RCE (6AG1052-1FB08-7BA2) (All versions), SIPLUS LOGO! 230RCEo (6AG1052-2FB08-7BA2) (All versions), SIPLUS LOGO! 24CE (6AG1052-1CC08-7BA2) (All versions), SIPLUS LOGO! 24CEo (6AG1052-2CC08-7BA2) (All versions), SIPLUS LOGO! 24RCE (6AG1052-1HB08-7BA2) (All versions), SIPLUS LOGO! 24RCEo (6AG1052-2HB08-7BA2) (All versions). Affected devices do not conduct certain validations when interacting with them. This could allow an unauthenticated remote attacker to change time of the device, which means the device could behave differently.
CVSS:4.0/AV:A/AC:L/AT:N/PR:N/UI:N/VC:N/VI:H/VA:N/SC:N/SI:N/SA:N
Produtos afetados
Siemens · LOGO! 12/24RCESiemens · LOGO! 12/24RCEoSiemens · LOGO! 230RCESiemens · LOGO! 230RCEoSiemens · LOGO! 24CESiemens · LOGO! 24CEoSiemens · LOGO! 24RCESiemens · LOGO! 24RCEoSiemens · SIPLUS LOGO! 12/24RCESiemens · SIPLUS LOGO! 12/24RCEoSiemens · SIPLUS LOGO! 230RCESiemens · SIPLUS LOGO! 230RCEoSiemens · SIPLUS LOGO! 24CESiemens · SIPLUS LOGO! 24CEoSiemens · SIPLUS LOGO! 24RCESiemens · SIPLUS LOGO! 24RCEoQuer saber se a sua infraestrutura está exposta a isto?
Falar com a TrueHacking →