PT-2025-20878 · Siemens · Scalance Lpe9403+1

Published

2025-05-13

·

Updated

2025-05-30

·

CVE-2025-40583

CVSS v2.0

4.6

Medium

VectorAV:L/AC:L/Au:S/C:C/I:N/A:N
Name of the Vulnerable Software and Affected Versions SCALANCE LPE9403 versions with SINEMA Remote Connect Edge Client installed
Description A vulnerability has been identified in SCALANCE LPE9403, where affected devices transmit sensitive information in cleartext. This could allow a privileged local attacker to retrieve this sensitive information.
Recommendations As a temporary workaround, consider restricting access to the SINEMA Remote Connect Edge Client until a patch is available. Avoid using the SCALANCE LPE9403 with SINEMA Remote Connect Edge Client installed until the issue is resolved. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

LPE

Cleartext Transmission of Sensitive Information

Weakness Enumeration

Related Identifiers

BDU:2025-06093
CVE-2025-40583

Affected Products

Scalance Lpe9403
Sinema Remote Connect Client