cbcvebase.

Siemens Simatic Cn 4100 Firmware vulnerabilities

18 known vulnerabilities affecting siemens/simatic_cn_4100_firmware.

Total CVEs
18
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL7HIGH6MEDIUM5

Vulnerabilities

Page 1 of 1
CVE-2024-32741P2CRITICALCVSS 10.0fixed in 3.02024-05-14
CVE-2024-32741 [CRITICAL] CWE-259 CVE-2024-32741: A vulnerability has been identified in SIMATIC CN 4100 (All versions < V3.0). The affected device co A vulnerability has been identified in SIMATIC CN 4100 (All versions < V3.0). The affected device contains hard coded password which is used for the privileged system user `root` and for the boot loader `GRUB` by default . An attacker who manages to crack the password hash gains root access to the device.
nvd
CVE-2023-29131P2CRITICALCVSS 10.0fixed in 2.52023-07-11
CVE-2023-29131 [CRITICAL] CWE-276 CVE-2023-29131: A vulnerability has been identified in SIMATIC CN 4100 (All versions < V2.5). Affected device consis A vulnerability has been identified in SIMATIC CN 4100 (All versions < V2.5). Affected device consists of an incorrect default value in the SSH configuration. This could allow an attacker to bypass network isolation.
nvd
CVE-2023-29130P2CRITICALCVSS 10.0fixed in 2.52023-07-11
CVE-2023-29130 [CRITICAL] CWE-284 CVE-2023-29130: A vulnerability has been identified in SIMATIC CN 4100 (All versions < V2.5). Affected device consis A vulnerability has been identified in SIMATIC CN 4100 (All versions < V2.5). Affected device consists of improper access controls in the configuration files that leads to privilege escalation. An attacker could gain admin access with this vulnerability leading to complete device control.
nvd
CVE-2025-40937P2HIGHCVSS 8.8fixed in 4.0.12025-12-09
CVE-2025-40937 [HIGH] CWE-77 CVE-2025-40937: A vulnerability has been identified in SIMATIC CN 4100 (All versions < V4.0.1). The affected applica A vulnerability has been identified in SIMATIC CN 4100 (All versions < V4.0.1). The affected application do not properly validate input parameters in its REST API, resulting in improper handling of unexpected arguments. This could allow an authenticated attacker to execute arbitrary code with limited privileges.
nvd
CVE-2024-32740P2CRITICALCVSS 9.8fixed in 3.02024-05-14
CVE-2024-32740 [CRITICAL] CWE-798 CVE-2024-32740: A vulnerability has been identified in SIMATIC CN 4100 (All versions < V3.0). The affected device co A vulnerability has been identified in SIMATIC CN 4100 (All versions < V3.0). The affected device contains undocumented users and credentials. An attacker could misuse the credentials to compromise the device locally or over the network.
nvd
CVE-2023-49621P2CRITICALCVSS 9.8fixed in 2.72024-01-09
CVE-2023-49621 [CRITICAL] CWE-1392 CVE-2023-49621: A vulnerability has been identified in SIMATIC CN 4100 (All versions < V2.7). The "intermediate inst A vulnerability has been identified in SIMATIC CN 4100 (All versions < V2.7). The "intermediate installation" system state of the affected application uses default credential with admin privileges. An attacker could use the credentials to gain complete control of the affected device.
nvd
CVE-2025-40938P3CRITICALCVSS 9.8fixed in 4.0.12025-12-09
CVE-2025-40938 [CRITICAL] CWE-798 CVE-2025-40938: A vulnerability has been identified in SIMATIC CN 4100 (All versions < V4.0.1). The affected device A vulnerability has been identified in SIMATIC CN 4100 (All versions < V4.0.1). The affected device stores sensitive information in the firmware. This could allow an attacker to access and misuse this information, potentially impacting the device’s confidentiality, integrity, and availability.
nvd
CVE-2026-22924P3CRITICALCVSS 9.1fixed in 5.02026-05-12
CVE-2026-22924 [CRITICAL] CWE-306 CVE-2026-22924: A vulnerability has been identified in SIMATIC CN 4100 (All versions < V5.0). The affected applicati A vulnerability has been identified in SIMATIC CN 4100 (All versions < V5.0). The affected application does not properly restrict unauthenticated connections and is susceptible to resource exhaustion conditions. This could allow an attacker to disrupt normal operations or perform unauthorized actions, potentially impacting system availability and
nvd
CVE-2023-49251P3HIGHCVSS 8.8fixed in 2.72024-01-09
CVE-2023-49251 [HIGH] CWE-639 CVE-2023-49251: A vulnerability has been identified in SIMATIC CN 4100 (All versions < V2.7). The "intermediate inst A vulnerability has been identified in SIMATIC CN 4100 (All versions < V2.7). The "intermediate installation" system state of the affected application allows an attacker to add their own login credentials to the device. This allows an attacker to remotely login as root and take control of the device even after the affected device is fully set up.
nvd
CVE-2026-22925P3HIGHCVSS 7.5fixed in 5.02026-05-12
CVE-2026-22925 [HIGH] CWE-770 CVE-2026-22925: A vulnerability has been identified in SIMATIC CN 4100 (All versions < V5.0). The affected applicati A vulnerability has been identified in SIMATIC CN 4100 (All versions < V5.0). The affected application is susceptible to resource exhaustion when subjected to high volume of TCP SYN packets This could allow an attacker to render the service unavailable and cause denial-of-service conditions by overwhelming system resources.
nvd
CVE-2023-49252P3HIGHCVSS 7.5fixed in 2.72024-01-09
CVE-2023-49252 [HIGH] CWE-20 CVE-2023-49252: A vulnerability has been identified in SIMATIC CN 4100 (All versions < V2.7). The affected applicati A vulnerability has been identified in SIMATIC CN 4100 (All versions < V2.7). The affected application allows IP configuration change without authentication to the device. This could allow an attacker to cause denial of service condition.
nvd
CVE-2024-32742P3HIGHCVSS 7.6fixed in 3.02024-05-14
CVE-2024-32742 [HIGH] CWE-1326 CVE-2024-32742: A vulnerability has been identified in SIMATIC CN 4100 (All versions < V3.0). The affected device co A vulnerability has been identified in SIMATIC CN 4100 (All versions < V3.0). The affected device contains an unrestricted USB port. An attacker with local access to the device could potentially misuse the port for booting another operating system and gain complete read/write access to the filesystem.
nvd
CVE-2026-2673P3MEDIUMCVSS 6.5fixed in 5.02026-03-13
CVE-2026-2673 [MEDIUM] CWE-757 CVE-2026-2673: Issue summary: An OpenSSL TLS 1.3 server may fail to negotiate the expected preferred key exchange g Issue summary: An OpenSSL TLS 1.3 server may fail to negotiate the expected preferred key exchange group when its key exchange group configuration includes the default by using the 'DEFAULT' keyword. Impact summary: A less preferred key exchange may be used even when a more preferred group is supported by both client and server, if the group was not
nvd
CVE-2025-40593P3MEDIUMCVSS 6.5fixed in 4.02025-07-08
CVE-2025-40593 [MEDIUM] CWE-20 CVE-2025-40593: A vulnerability has been identified in SIMATIC CN 4100 (All versions < V4.0). The affected applicati A vulnerability has been identified in SIMATIC CN 4100 (All versions < V4.0). The affected application allows to control the device by storing arbitrary files in the SFTP folder of the device. This could allow an attacker to cause a denial of service condition.
nvd
CVE-2025-38502P4HIGHCVSS 7.1fixed in 5.02025-08-16
CVE-2025-38502 [HIGH] CWE-125 CVE-2025-38502: In the Linux kernel, the following vulnerability has been resolved: bpf: Fix oob access in cgroup l In the Linux kernel, the following vulnerability has been resolved: bpf: Fix oob access in cgroup local storage Lonial reported that an out-of-bounds access in cgroup local storage can be crafted via tail calls. Given two programs each utilizing a cgroup local storage with a different value size, and one program doing a tail call into the other. The
nvd
CVE-2025-40940P4MEDIUMCVSS 4.9fixed in 4.0.12025-12-09
CVE-2025-40940 [MEDIUM] CWE-200 CVE-2025-40940: A vulnerability has been identified in SIMATIC CN 4100 (All versions < V4.0.1). The affected applica A vulnerability has been identified in SIMATIC CN 4100 (All versions < V4.0.1). The affected application exhibits inconsistent SNMP behavior, such as unexpected service availability and unreliable configuration handling across protocol versions. This could allow an attacker to access sensitive data, potentially leading to a breach of confidentiality
nvd
CVE-2025-40941P4MEDIUMCVSS 4.3fixed in 4.0.12025-12-09
CVE-2025-40941 [MEDIUM] CWE-200 CVE-2025-40941: A vulnerability has been identified in SIMATIC CN 4100 (All versions < V4.0.1). The affected devices A vulnerability has been identified in SIMATIC CN 4100 (All versions < V4.0.1). The affected devices exposes server information in its responses. This could allow an attacker with network access to gain useful information, increasing the likelihood of targeted attacks.
nvd
CVE-2025-40939P4MEDIUMCVSS 4.6fixed in 4.0.12025-12-09
CVE-2025-40939 [MEDIUM] CWE-284 CVE-2025-40939: A vulnerability has been identified in SIMATIC CN 4100 (All versions < V4.0.1). The affected device A vulnerability has been identified in SIMATIC CN 4100 (All versions < V4.0.1). The affected device contains a USB port which allows unauthenticated connections. This could allow an attacker with physical access to the device to trigger reboot that could cause denial of service condition.
nvd
Siemens Simatic Cn 4100 Firmware vulnerabilities | cvebase