CVE-2025-40577
A vulnerability has been identified in SCALANCE LPE9403 (6GK5998-3GS00-2AC2) (All versions < V4.0 HF0). Affected devices do not properly validate incoming Profinet packets.
An unauthenticated remote attacker can exploit this flaw by sending a specially crafted malicious packet, which leads to a crash of the dcpd process.
An unauthenticated remote attacker can exploit this flaw by sending a specially crafted malicious packet, which leads to a crash of the dcpd process.
Vendor
Product
CWE
Yayın Tarihi
2025-05-13 10:15:27
Güncelleme
2025-07-08 11:15:28
Source Identifier
productcert@siemens.com
KEV Date Added
-