PT-2025-46541 · Siemens · Siplus Logo! 24Ce+6
Published
2025-11-11
·
Updated
2025-11-11
·
CVE-2025-40815
CVSS v2.0
9.0
High
| Vector | AV:N/AC:L/Au:S/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
LOGO! 12/24RCE (6ED1052-1MD08-0BA2) (affected versions not specified)
LOGO! 12/24RCEo (6ED1052-2MD08-0BA2) (affected versions not specified)
LOGO! 230RCE (6ED1052-1FB08-0BA2) (affected versions not specified)
LOGO! 230RCEo (6ED1052-2FB08-0BA2) (affected versions not specified)
LOGO! 24CE (6ED1052-1CC08-0BA2) (affected versions not specified)
LOGO! 24CEo (6ED1052-2CC08-0BA2) (affected versions not specified)
LOGO! 24RCE (6ED1052-1HB08-0BA2) (affected versions not specified)
LOGO! 24RCEo (6ED1052-2HB08-0BA2) (affected versions not specified)
SIPLUS LOGO! 12/24RCE (6AG1052-1MD08-7BA2) (affected versions not specified)
SIPLUS LOGO! 12/24RCEo (6AG1052-2MD08-7BA2) (affected versions not specified)
SIPLUS LOGO! 230RCE (6AG1052-1FB08-7BA2) (affected versions not specified)
SIPLUS LOGO! 230RCEo (6AG1052-2FB08-7BA2) (affected versions not specified)
SIPLUS LOGO! 24CE (6AG1052-1CC08-7BA2) (affected versions not specified)
SIPLUS LOGO! 24CEo (6AG1052-2CC08-7BA2) (affected versions not specified)
SIPLUS LOGO! 24RCE (6AG1052-1HB08-7BA2) (affected versions not specified)
SIPLUS LOGO! 24RCEo (6AG1052-2HB08-7BA2) (affected versions not specified)
Description
The affected devices do not properly validate the structure of TCP packets in several methods. This can allow an attacker to cause buffer overflows, potentially gaining control over the instruction counter and executing custom code.
Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Missing Authentication
Buffer Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Logo! 12/24Rce
Logo! 230Rce
Logo! 24Ce
Logo! 24Ceo
Siplus Logo! 12/24Rce
Siplus Logo! 230Rce
Siplus Logo! 24Ce