CVE-2025-40583: Medium severity siemens scalance lpe9403 firmware vulnerability
A vulnerability has been identified in SCALANCE LPE9403 (6GK5998-3GS00-2AC2) (All versions with SINEMA Remote Connect Edge Client installed). Affected devices do transmit sensitive information in cleartext. This could allow a privileged local attacker to retrieve this sensitive information.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-40583?
CVE-2025-40583 has been classified as a high severity vulnerability due to the transmission of sensitive information in cleartext.
How do I fix CVE-2025-40583?
To mitigate CVE-2025-40583, ensure that sensitive information is transmitted using secure protocols and consider updating to the latest firmware provided by Siemens.
What types of devices are affected by CVE-2025-40583?
CVE-2025-40583 affects all versions of the Siemens SCALANCE LPE9403 device with the SINEMA Remote Connect Edge Client installed.
What kind of information is exposed in CVE-2025-40583?
CVE-2025-40583 allows a privileged local attacker to retrieve sensitive information that is transmitted in cleartext.
Who should be concerned about CVE-2025-40583?
Organizations using affected Siemens SCALANCE LPE9403 devices should be concerned about CVE-2025-40583 and take immediate action to protect sensitive data.