Weak Encryption Vulnerability in APOGEE PXC and TALON TC Series by Siemens
CVE-2024-54089
Key Information:
- Vendor
Siemens
- Vendor
- CVE Published:
- 11 February 2025
What is CVE-2024-54089?
A critical vulnerability exists in various models of Siemens APOGEE PXC and TALON TC Series devices due to a weak encryption scheme relying on a hard-coded key. This vulnerability enables attackers to potentially deduce or decrypt sensitive passwords from intercepted cyphertext, thereby compromising the security of affected systems. Organizations using these devices should assess their infrastructure and implement necessary safeguards to mitigate potential threats stemming from this weakness.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
APOGEE PXC Series (BACnet) 0
APOGEE PXC Series (P2 Ethernet) 0
TALON TC Series (BACnet) 0
References
CVSS V4
Timeline
Vulnerability published
Vulnerability Reserved