Security Advisory

CVE-2025-40746

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2025-08-12 11:17:05
Last updated 2025-08-13 20:18:41
Assigner siemens
State PUBLISHED

Description

A vulnerability has been identified in SIMATIC RTLS Locating Manager (All versions < V3.2). Affected products do not properly validate input for a backup script. This could allow an authenticated remote attacker with high privileges in the application to execute arbitrary code with NT Authority/SYSTEM privileges.