Remote Code Execution Vulnerability in SCALANCE LPE9403 by Siemens
CVE-2025-27398
2.1LOW
What is CVE-2025-27398?
A security vulnerability has been discovered in SCALANCE LPE9403 devices, specifically affecting all versions prior to V4.0. This issue arises from improper neutralization of special characters when processing user-controlled log paths. As a result, an authenticated remote attacker with elevated privileges could exploit this flaw to execute a limited set of existing binaries on the filesystem. Addressing this vulnerability is crucial for maintaining device integrity and safeguarding against potential security breaches.
Affected Version(s)
SCALANCE LPE9403 0