Security Advisory

CVE-2025-40938

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2025-12-09 10:44:36
Last updated 2025-12-09 16:15:21
Assigner siemens
State PUBLISHED

Description

A vulnerability has been identified in SIMATIC CN 4100 (All versions < V4.0.1). The affected device stores sensitive information in the firmware. This could allow an attacker to access and misuse this information, potentially impacting the device’s confidentiality, integrity, and availability.