CVE-2025-40742 | Siemens SIPROTEC 5 Compact 7SX800 get request method with sensitive query strings (ssa-904646)

SecurityVulns

A vulnerability was found in Siemens SIPROTEC 5 6MD84, SIPROTEC 5 6MD85, SIPROTEC 5 6MD86, SIPROTEC 5 6MD89, SIPROTEC 5 6MD89 V9.6, SIPROTEC 5 6MU85, SIPROTEC 5 7KE85, SIPROTEC 5 7SA82, SIPROTEC 5 7SA86, SIPROTEC 5 7SA87, SIPROTEC 5 7SD82, SIPROTEC 5 7SD86, SIPROTEC 5 7SD87, SIPROTEC 5 7SJ81, SIPROTEC 5 7SJ82, SIPROTEC 5 7SJ85, SIPROTEC 5 7SJ86, SIPROTEC 5 7SK82, SIPROTEC 5 7SK85, SIPROTEC 5 7SL82, SIPROTEC 5 7SL86, SIPROTEC 5 7SL87, SIPROTEC 5 7SS85, SIPROTEC 5 7ST85, SIPROTEC 5 7ST86, SIPROTEC 5 7SX82, SIPROTEC 5 7SX85, SIPROTEC 5 7SY82, SIPROTEC 5 7UM85, SIPROTEC 5 7UT82, SIPROTEC 5 7UT85, SIPROTEC 5 7UT86, SIPROTEC 5 7UT87, SIPROTEC 5 7VE85, SIPROTEC 5 7VK87, SIPROTEC 5 7VU85 and SIPROTEC 5 Compact 7SX800. It has been declared as problematic. This vulnerability affects unknown code. The manipulation leads to use of get request method with sensitive query strings.

This vulnerability was named CVE-2025-40742. The attack can be initiated remotely. There is no exploit available.VulDB Recent EntriesRead More