A vulnerability has been identified in SIMATIC CN 4100 (All versions < V5.0). The affected application does not properly restrict unauthenticated connections and is susceptible to resource exhaustion conditions.
This could allow an attacker to disrupt normal operations or perform unauthorized actions, potentially impacting system availability and integrity.
References
| Link | Resource |
|---|---|
| https://cert-portal.siemens.com/productcert/html/ssa-032379.html | Mitigation Vendor Advisory |
Configurations
Configuration 1 (hide)
| AND |
|
History
29 Jun 2026, 14:06
| Type | Values Removed | Values Added |
|---|---|---|
| First Time |
Siemens
Siemens simatic Cn 4100 Siemens simatic Cn 4100 Firmware |
|
| CPE | cpe:2.3:h:siemens:simatic_cn_4100:-:*:*:*:*:*:*:* cpe:2.3:o:siemens:simatic_cn_4100_firmware:*:*:*:*:*:*:*:* |
|
| References | () https://cert-portal.siemens.com/productcert/html/ssa-032379.html - Mitigation, Vendor Advisory |
12 May 2026, 10:16
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2026-05-12 10:16
Updated : 2026-06-29 14:06
NVD link : CVE-2026-22924
Mitre link : CVE-2026-22924
CVE.ORG link : CVE-2026-22924
JSON object : View
Products Affected
siemens
- simatic_cn_4100
- simatic_cn_4100_firmware
CWE
CWE-306
Missing Authentication for Critical Function
