CVE-2025-27395: Path Traversal
A vulnerability has been identified in SCALANCE LPE9403 (6GK5998-3GS00-2AC2) (All versions < V4.0). Affected devices do not properly limit the scope of files accessible through and the privileges of the SFTP functionality. This could allow an authenticated highly-privileged remote attacker to read and write arbitrary files.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
SCALANCE LPE9403 (6GK5998-3GS00-2AC2)to a version that resolves this vulnerability.Fixed in V4.0 - Compensating control
Apply a compensating control by restricting network access to the SFTP service so only authorized clients can connect (e.g., via firewall/ACL), since the vulnerability affects the scope and privileges of SFTP file access for authenticated highly-privileged remote attackers.
Event History
Frequently Asked Questions
What is the severity of CVE-2025-27395?
CVE-2025-27395 has been classified with a high severity due to its potential to allow unauthorized access to sensitive files.
How do I fix CVE-2025-27395?
To fix CVE-2025-27395, upgrade the SCALANCE LPE9403 firmware to version 4.0 or later.
What are the potential impacts of CVE-2025-27395?
CVE-2025-27395 may enable a highly-privileged authenticated remote attacker to read sensitive files through SFTP.
Who is affected by CVE-2025-27395?
CVE-2025-27395 affects all versions of Siemens SCALANCE LPE9403 devices that are below version 4.0.
Is authentication required to exploit CVE-2025-27395?
Yes, exploitation of CVE-2025-27395 requires the attacker to be an authenticated user with high privileges.