CVE-2025-39203: High severity Siemens MicroSCADA X SYS600 vulnerability
Published Jun 24, 2025
·Updated
A vulnerability exists in the IEC 61850 of the MicroSCADA X SYS600 product. An IEC 61850-8 crafted message content from IED or remote system can cause a denial of service resulting in disconnection loop.
Affected Software
2 affected components
Siemens MicroSCADA X SYS600
hitachienergy MicroSCADA X SYS600>=10.5<10.7
Event History
Jun 24, 2025
CVE Published
via MITRE·11:57 AM
Data Sourced
via MITRE·11:57 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·12:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-39203?
CVE-2025-39203 has been classified with a severity that indicates it could lead to significant operational disruptions.
2
How do I fix CVE-2025-39203?
To fix CVE-2025-39203, it is recommended to apply vendor patches and follow best practices for network segmentation.
3
What type of vulnerability is CVE-2025-39203?
CVE-2025-39203 is a denial of service vulnerability affecting the IEC 61850 implementation in Siemens MicroSCADA X SYS600.
4
What systems are affected by CVE-2025-39203?
CVE-2025-39203 specifically affects the Siemens MicroSCADA X SYS600 product.
5
How does CVE-2025-39203 impact system operations?
CVE-2025-39203 can result in a disconnection loop, causing interruptions in service and operational delays.