CVE-2026-25656 is a vulnerability affecting Siemens SINEC NMS (all versions) and User Management Component (UMC) versions prior to V2.15.2.1. A low-privileged user can improperly modify a configuration file, enabling the loading of malicious DLLs. This local attack, with low complexity, can lead to arbitrary code execution with SYSTEM privileges, posing a high risk (CVSS 7.8). There is no evidence of active exploitation, public exploit code, or Metasploit/Nuclei modules, though it has garnered some community discussion and media coverage.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
Range not provided by sourceCPE matchmatch criteria | cpe:2.3:a:siemens:sinec_nms:-:*:*:*:*:*:*:* | ||
< 2.15.2.1CPE matchmatch criteria | cpe:2.3:a:siemens:user_management_component:*:*:*:*:*:*:*:* |
CVSS version used by this source: 4.0
CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.2 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.