PT-2025-49846 · Siemens · Simatic Cn 4100

Published

2025-12-09

·

Updated

2025-12-09

·

CVE-2025-40941

CVSS v3.1

4.3

Medium

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions SIMATIC CN 4100 versions prior to 4.0.1
Description The SIMATIC CN 4100 device exposes server information in its responses. This could allow an attacker with network access to gain useful information, potentially increasing the likelihood of targeted attacks.
Recommendations Update to version 4.0.1 or later.

Fix

Information Disclosure

Weakness Enumeration

Related Identifiers

BDU:2026-00144
CVE-2025-40941

Affected Products

Simatic Cn 4100