CVE-2025-40566 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

A vulnerability has been identified in SIMATIC PCS neo V4.1 (All versions < V4.1 Update 3), SIMATIC PCS neo V5.0 (All versions < V5.0 Update 1). Affected produc…
High CVSS: 8.7

CVE-2025-40566

A vulnerability has been identified in SIMATIC PCS neo V4.1 (All versions < V4.1 Update 3), SIMATIC PCS neo V5.0 (All versions < V5.0 Update 1). Affected products do not correctly invalidate user sessions upon user logout. This could allow a remote unauthenticated attacker, who has obtained the session token by other means, to re-use a legitimate user's session even after logout.
Vendor
Siemens
Product
Simatic Pcs Neo
CWE
CWE-613
Yayın Tarihi
2025-05-13 10:15:26
Güncelleme
2025-08-22 20:28:42
Source Identifier
productcert@siemens.com
KEV Date Added
-

Kategoriler

Referanslar