Remote Code Execution Vulnerability in Siemens LOGO! Products
CVE-2025-40817

7.1HIGH

Key Information:

Vendor

Siemens

Vendor
CVE Published:
11 November 2025

What is CVE-2025-40817?

A vulnerability in various Siemens LOGO! products allows an unauthenticated remote attacker to bypass essential validations during device interactions. This flaw could enable attackers to manipulate the device's time settings, potentially leading to unpredictable device behavior. Users of affected devices should assess their systems and consider applying security measures promptly.

Affected Version(s)

LOGO! 12/24RCE 0

LOGO! 12/24RCEo 0

LOGO! 230RCE 0

References

CVSS V4

Score:
7.1
Severity:
HIGH
Confidentiality:
None
Integrity:
High
Availability:
None
Attack Vector:
Adjacent Network
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2025-40817 : Remote Code Execution Vulnerability in Siemens LOGO! Products