CVE-2025-30034 PUBLISHED

Assigner: siemens
Reserved: 14.03.2025 Published: 12.08.2025 Updated: 12.08.2025

A vulnerability has been identified in SIMATIC RTLS Locating Manager (All versions < V3.3). Affected devices do not properly validate input sent to its listening port on the local loopback interface. This could allow an unauthenticated local attacker to cause a denial of service condition.

Metrics

CVSS Vector: CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N
CVSS Score: 6.9

Product Status

Vendor Siemens
Product SIMATIC RTLS Locating Manager
Versions Default: unknown
  • affected from 0 to V3.3 (excl.)

References

Problem Types

  • CWE-617: Reachable Assertion CWE