Buffer Overflow Vulnerability in LOGO! Products by Siemens
CVE-2025-40815

8.6HIGH

Key Information:

Vendor

Siemens

Vendor
CVE Published:
11 November 2025

What is CVE-2025-40815?

A significant vulnerability has been identified in various Siemens LOGO! products due to improper validation of TCP packet structures. This flaw can lead to a buffer overflow condition, potentially allowing malicious actors to manipulate the execution flow of the software. By exploiting this vulnerability, an attacker may gain control of the instruction counter, enabling them to execute arbitrary code on the affected devices. Organizations using these products should take immediate precautions to mitigate potential risks.

Affected Version(s)

LOGO! 12/24RCE 0

LOGO! 12/24RCEo 0

LOGO! 230RCE 0

References

CVSS V4

Score:
8.6
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2025-40815 : Buffer Overflow Vulnerability in LOGO! Products by Siemens