CVE-2025-40757

6.3MEDIUM

What is CVE-2025-40757?

A vulnerability has been identified in APOGEE PXC Series (BACnet) (All versions), APOGEE PXC Series (P2 Ethernet) (All versions), TALON TC Series (BACnet) (All versions). Affected devices connected to the network allow unrestricted access to sensitive files, such as databases. This could allow an attacker to download encrypted .db file containing passwords.

Affected Version(s)

APOGEE PXC Series (BACnet) 0

APOGEE PXC Series (P2 Ethernet) 0

TALON TC Series (BACnet) 0

References

CVSS V4

Score:
6.3
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Attack Required:
Physical
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2025-40757 : Unrestricted Access Vulnerability in Siemens APOGEE and TALON TC Series Products