Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2025-40943

32
FAUCET Score

CVE-2025-40943 is a critical code injection vulnerability affecting devices that improperly sanitize trace file contents, potentially impacting Siemens SIMATIC products. Rated 9.6 Critical, it requires an attacker to social engineer an authorized user with "Read diagnostics" rights into importing a specially crafted, malicious trace file. Successful exploitation allows for the execution of malicious code within the client's browser session, leading to high impact on confidentiality, integrity, and availability, including the ability to trigger authorized PLC operations. There is currently no public exploit code available, nor is it listed on CISA's KEV catalog, indicating no active exploitation, despite minimal community discussion and media coverage.

Impacted Technologies

VendorProductVersion(s)CPE
SiemensSIMATIC Drive Controller CPU 1504D TF
>= 0, < V3.1.6CNA affecteddefault unknown
SiemensSIMATIC Drive Controller CPU 1507D TF
>= 0, < V3.1.6CNA affecteddefault unknown
SiemensSIMATIC ET 200SP CPU 1510SP F-1 PN
>= 0, < V2.9.9CNA affecteddefault unknown
SiemensSIMATIC ET 200SP CPU 1510SP F-1 PN
>= 0, < V4.1.2CNA affecteddefault unknown
SiemensSIMATIC ET 200SP CPU 1510SP-1 PN
>= 0, < V2.9.9CNA affecteddefault unknown

CVSS Data

CVSS version used by this source: 4.0

9.4CRITICAL

CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:P/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X

Attack Vector
NETWORK
Attack Complexity
LOW
Attack Requirements
NONE
Privileges Required
NONE
User Interaction
PASSIVE
VS Confidentiality
HIGH
VS Integrity
HIGH
VS Availability
HIGH
SS Confidentiality
HIGH
SS Integrity
HIGH
SS Availability
HIGH
Exploit Maturity
NOT_DEFINED
CvssVersion
4.0

Exploit Intelligence

EPSS Score
0.46%
Probability of exploitation in next 30 days
EPSS Percentile
37.3%
Percentile rank of EPSS score among Peer Group
As of 2026-07-27
Model: v2026.06.15
This CVE's current EPSS score of 0.0046 is in the 41st percentile among its peer group of 836 CVEs.

Social Chatter

The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.8 Bluesky, 0.5 Mastodon, and 1.2 GitHub mentions.

Media Mentions

The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.1 Security Researcher mentions.

Remediation

Remediation records are not available for this CVE.

References

cert-portal.siemens.com / productcert/html/ssa-452276.html