CVE-2025-39202: High severity Siemens MicroSCADA X SYS600 vulnerability
A vulnerability exists in in the Monitor Pro interface of the MicroSCADA X SYS600 product. An authenticated user with low privileges can see and overwrite files causing information leak and data corruption.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-39202?
CVE-2025-39202 is considered to be of moderate severity due to its potential for information leakage and data corruption.
How do I fix CVE-2025-39202?
To mitigate CVE-2025-39202, ensure that user permissions are properly managed and restrict access to sensitive files.
What is the impact of CVE-2025-39202?
The impact of CVE-2025-39202 includes possible unauthorized access to sensitive files and the risk of overwriting critical data.
Who is affected by CVE-2025-39202?
CVE-2025-39202 affects users of the MicroSCADA X SYS600 product, particularly those with low privilege authentication.
Is there a patch available for CVE-2025-39202?
Currently, there is no specific patch released for CVE-2025-39202, but users should regularly check for updates from Siemens.