CVE-2025-30034 is a denial-of-service vulnerability affecting all versions of Siemens SIMATIC RTLS Locating Manager prior to V3.3. An unauthenticated local attacker can exploit improper input validation on the local loopback interface to disrupt service. Rated Medium severity (CVSS 5.5), this vulnerability requires local access but is low complexity to exploit, leading to high availability impact. There is currently no public exploit code, evidence of active exploitation, or significant community discussion surrounding this CVE.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
< 3.3CPE matchmatch criteria | cpe:2.3:a:siemens:simatic_rtls_locating_manager:*:*:*:*:*:*:*:* | ||
>= 0, < V3.3CPE match | cpe:2.3:a:siemens:simatic_rtls_locating_manager:*:*:*:*:*:*:*:* |
CVSS version used by this source: 4.0
CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.