VDB

SSA-634640

SSA-634640 PUBLISHED CVSS 9.800000190734863 CRITICAL

Siemens Industrial Edge Devices contain a weak authentication vulnerability that could facilitate an unauthenticated remote attacker to circumvent authentication and impersonate a legitimate user. Siemens has released new versions for the affected products and recommends to update to the latest versions.

Risk Scores

CVSS v3.1
9.800000190734863
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Affected Products

VendorProductVersions
SIMATIC IPC BX-59A Industrial Edge Device
SIMATIC IPC427E Industrial Edge Device
Industrial Edge Own Device (IEOD)
SIMATIC IPC BX-39A Industrial Edge Device
SIMATIC IPC227E Industrial Edge Device
SIMATIC IPC127E Industrial Edge Device
SCALANCE LPE9413 (6GK5998-3GS01-2AC2)
Industrial Edge Virtual Device
SIMATIC IPC847E Industrial Edge Device

Timeline

  • Apr 8, 2025 CVE Published
  • Jul 8, 2025 CVE Updated
Open in Interactive Console →
$ Console Community · 100/wk Open console ›