CVE-2025-40943 is a critical code injection vulnerability affecting devices that improperly sanitize trace file contents, potentially impacting Siemens SIMATIC products. Rated 9.6 Critical, it requires an attacker to social engineer an authorized user with "Read diagnostics" rights into importing a specially crafted, malicious trace file. Successful exploitation allows for the execution of malicious code within the client's browser session, leading to high impact on confidentiality, integrity, and availability, including the ability to trigger authorized PLC operations. There is currently no public exploit code available, nor is it listed on CISA's KEV catalog, indicating no active exploitation, despite minimal community discussion and media coverage.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
| Siemens | SIMATIC Drive Controller CPU 1504D TF | >= 0, < V3.1.6CNA affecteddefault unknown | |
| Siemens | SIMATIC Drive Controller CPU 1507D TF | >= 0, < V3.1.6CNA affecteddefault unknown | |
| Siemens | SIMATIC ET 200SP CPU 1510SP F-1 PN | >= 0, < V2.9.9CNA affecteddefault unknown | |
| Siemens | SIMATIC ET 200SP CPU 1510SP F-1 PN | >= 0, < V4.1.2CNA affecteddefault unknown | |
| Siemens | SIMATIC ET 200SP CPU 1510SP-1 PN | >= 0, < V2.9.9CNA affecteddefault unknown |
CVSS version used by this source: 4.0
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:P/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.8 Bluesky, 0.5 Mastodon, and 1.2 GitHub mentions.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.1 Security Researcher mentions.
Remediation records are not available for this CVE.