Authentication Bypass Vulnerability in SCALANCE LPE9403 by Siemens
CVE-2025-40581
8.4HIGH
What is CVE-2025-40581?
A vulnerability exists in Siemens' SCALANCE LPE9403 devices that permits a non-privileged local attacker to bypass authentication in the SINEMA Remote Connect Edge Client. This issue enables the attacker to read and potentially modify sensitive configuration parameters, posing a risk to the integrity and security of the affected systems.
Affected Version(s)
SCALANCE LPE9403 0
References
CVSS V4
Score:
8.4
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
None
Attack Vector:
Local
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None
Timeline
Vulnerability published
Vulnerability Reserved