CVE-2025-40808 PUBLISHED

Assigner: siemens
Reserved: 16.04.2025 Published: 09.06.2026 Updated: 09.06.2026

A vulnerability has been identified in SIPROTEC 5 6MD84 (CP300) (All versions), SIPROTEC 5 6MD85 (CP200) (All versions), SIPROTEC 5 6MD85 (CP300) (All versions), SIPROTEC 5 6MD86 (CP200) (All versions), SIPROTEC 5 6MD86 (CP300) (All versions), SIPROTEC 5 6MD89 (CP300) (All versions), SIPROTEC 5 6MU85 (CP300) (All versions), SIPROTEC 5 7KE85 (CP200) (All versions), SIPROTEC 5 7KE85 (CP300) (All versions), SIPROTEC 5 7SA82 (CP100) (All versions), SIPROTEC 5 7SA82 (CP150) (All versions), SIPROTEC 5 7SA86 (CP200) (All versions), SIPROTEC 5 7SA86 (CP300) (All versions), SIPROTEC 5 7SA87 (CP200) (All versions), SIPROTEC 5 7SA87 (CP300) (All versions), SIPROTEC 5 7SD82 (CP100) (All versions), SIPROTEC 5 7SD82 (CP150) (All versions), SIPROTEC 5 7SD86 (CP200) (All versions), SIPROTEC 5 7SD86 (CP300) (All versions), SIPROTEC 5 7SD87 (CP200) (All versions), SIPROTEC 5 7SD87 (CP300) (All versions), SIPROTEC 5 7SJ81 (CP100) (All versions), SIPROTEC 5 7SJ81 (CP150) (All versions), SIPROTEC 5 7SJ82 (CP100) (All versions), SIPROTEC 5 7SJ82 (CP150) (All versions), SIPROTEC 5 7SJ85 (CP200) (All versions), SIPROTEC 5 7SJ85 (CP300) (All versions), SIPROTEC 5 7SJ86 (CP200) (All versions), SIPROTEC 5 7SJ86 (CP300) (All versions), SIPROTEC 5 7SK82 (CP100) (All versions), SIPROTEC 5 7SK82 (CP150) (All versions), SIPROTEC 5 7SK85 (CP200) (All versions), SIPROTEC 5 7SK85 (CP300) (All versions), SIPROTEC 5 7SL82 (CP100) (All versions), SIPROTEC 5 7SL82 (CP150) (All versions), SIPROTEC 5 7SL86 (CP200) (All versions), SIPROTEC 5 7SL86 (CP300) (All versions), SIPROTEC 5 7SL87 (CP200) (All versions), SIPROTEC 5 7SL87 (CP300) (All versions), SIPROTEC 5 7SS85 (CP200) (All versions), SIPROTEC 5 7SS85 (CP300) (All versions), SIPROTEC 5 7ST85 (CP200) (All versions), SIPROTEC 5 7ST85 (CP300) (All versions), SIPROTEC 5 7ST86 (CP300) (All versions), SIPROTEC 5 7SX82 (CP150) (All versions), SIPROTEC 5 7SX85 (CP300) (All versions), SIPROTEC 5 7SY82 (CP150) (All versions), SIPROTEC 5 7UM85 (CP300) (All versions), SIPROTEC 5 7UT82 (CP100) (All versions), SIPROTEC 5 7UT82 (CP150) (All versions), SIPROTEC 5 7UT85 (CP200) (All versions), SIPROTEC 5 7UT85 (CP300) (All versions), SIPROTEC 5 7UT86 (CP200) (All versions), SIPROTEC 5 7UT86 (CP300) (All versions), SIPROTEC 5 7UT87 (CP200) (All versions), SIPROTEC 5 7UT87 (CP300) (All versions), SIPROTEC 5 7VE85 (CP300) (All versions), SIPROTEC 5 7VK87 (CP200) (All versions), SIPROTEC 5 7VK87 (CP300) (All versions), SIPROTEC 5 7VU85 (CP300) (All versions), SIPROTEC 5 Compact 7SX800 (CP050) (All versions). The affected application allows authenticated users to upload arbitrary files using DIGSI 5 protocol. This could allow an attacker to upload malicious configuration files, that could cause denial of service condition and potentially lead to code execution.

Metrics

CVSS Vector: CVSS:4.0/AV:A/AC:L/AT:N/PR:H/UI:N/VC:N/VI:H/VA:H/SC:N/SI:N/SA:N
CVSS Score: 6.9

Product Status

Vendor Siemens
Product SIPROTEC 5 6MD84 (CP300)
Versions Default: unknown
  • affected from 0 to * (excl.)
Vendor Siemens
Product SIPROTEC 5 6MD85 (CP200)
Versions Default: unknown
  • affected from 0 to * (excl.)
Vendor Siemens
Product SIPROTEC 5 6MD85 (CP300)
Versions Default: unknown
  • affected from 0 to * (excl.)
Vendor Siemens
Product SIPROTEC 5 6MD86 (CP200)
Versions Default: unknown
  • affected from 0 to * (excl.)
Vendor Siemens
Product SIPROTEC 5 6MD86 (CP300)
Versions Default: unknown
  • affected from 0 to * (excl.)
Vendor Siemens
Product SIPROTEC 5 6MD89 (CP300)
Versions Default: unknown
  • affected from 0 to * (excl.)
Vendor Siemens
Product SIPROTEC 5 6MU85 (CP300)
Versions Default: unknown
  • affected from 0 to * (excl.)
Vendor Siemens
Product SIPROTEC 5 7KE85 (CP200)
Versions Default: unknown
  • affected from 0 to * (excl.)
Vendor Siemens
Product SIPROTEC 5 7KE85 (CP300)
Versions Default: unknown
  • affected from 0 to * (excl.)
Vendor Siemens
Product SIPROTEC 5 7SA82 (CP100)
Versions Default: unknown
  • affected from 0 to * (excl.)
Vendor Siemens
Product SIPROTEC 5 7SA82 (CP150)
Versions Default: unknown
  • affected from 0 to * (excl.)
Vendor Siemens
Product SIPROTEC 5 7SA86 (CP200)
Versions Default: unknown
  • affected from 0 to * (excl.)
Vendor Siemens
Product SIPROTEC 5 7SA86 (CP300)
Versions Default: unknown
  • affected from 0 to * (excl.)
Vendor Siemens
Product SIPROTEC 5 7SA87 (CP200)
Versions Default: unknown
  • affected from 0 to * (excl.)
Vendor Siemens
Product SIPROTEC 5 7SA87 (CP300)
Versions Default: unknown
  • affected from 0 to * (excl.)
Vendor Siemens
Product SIPROTEC 5 7SD82 (CP100)
Versions Default: unknown
  • affected from 0 to * (excl.)
Vendor Siemens
Product SIPROTEC 5 7SD82 (CP150)
Versions Default: unknown
  • affected from 0 to * (excl.)
Vendor Siemens
Product SIPROTEC 5 7SD86 (CP200)
Versions Default: unknown
  • affected from 0 to * (excl.)
Vendor Siemens
Product SIPROTEC 5 7SD86 (CP300)
Versions Default: unknown
  • affected from 0 to * (excl.)
Vendor Siemens
Product SIPROTEC 5 7SD87 (CP200)
Versions Default: unknown
  • affected from 0 to * (excl.)
Vendor Siemens
Product SIPROTEC 5 7SD87 (CP300)
Versions Default: unknown
  • affected from 0 to * (excl.)
Vendor Siemens
Product SIPROTEC 5 7SJ81 (CP100)
Versions Default: unknown
  • affected from 0 to * (excl.)
Vendor Siemens
Product SIPROTEC 5 7SJ81 (CP150)
Versions Default: unknown
  • affected from 0 to * (excl.)
Vendor Siemens
Product SIPROTEC 5 7SJ82 (CP100)
Versions Default: unknown
  • affected from 0 to * (excl.)
Vendor Siemens
Product SIPROTEC 5 7SJ82 (CP150)
Versions Default: unknown
  • affected from 0 to * (excl.)
Vendor Siemens
Product SIPROTEC 5 7SJ85 (CP200)
Versions Default: unknown
  • affected from 0 to * (excl.)
Vendor Siemens
Product SIPROTEC 5 7SJ85 (CP300)
Versions Default: unknown
  • affected from 0 to * (excl.)
Vendor Siemens
Product SIPROTEC 5 7SJ86 (CP200)
Versions Default: unknown
  • affected from 0 to * (excl.)
Vendor Siemens
Product SIPROTEC 5 7SJ86 (CP300)
Versions Default: unknown
  • affected from 0 to * (excl.)
Vendor Siemens
Product SIPROTEC 5 7SK82 (CP100)
Versions Default: unknown
  • affected from 0 to * (excl.)
Vendor Siemens
Product SIPROTEC 5 7SK82 (CP150)
Versions Default: unknown
  • affected from 0 to * (excl.)
Vendor Siemens
Product SIPROTEC 5 7SK85 (CP200)
Versions Default: unknown
  • affected from 0 to * (excl.)
Vendor Siemens
Product SIPROTEC 5 7SK85 (CP300)
Versions Default: unknown
  • affected from 0 to * (excl.)
Vendor Siemens
Product SIPROTEC 5 7SL82 (CP100)
Versions Default: unknown
  • affected from 0 to * (excl.)
Vendor Siemens
Product SIPROTEC 5 7SL82 (CP150)
Versions Default: unknown
  • affected from 0 to * (excl.)
Vendor Siemens
Product SIPROTEC 5 7SL86 (CP200)
Versions Default: unknown
  • affected from 0 to * (excl.)
Vendor Siemens
Product SIPROTEC 5 7SL86 (CP300)
Versions Default: unknown
  • affected from 0 to * (excl.)
Vendor Siemens
Product SIPROTEC 5 7SL87 (CP200)
Versions Default: unknown
  • affected from 0 to * (excl.)
Vendor Siemens
Product SIPROTEC 5 7SL87 (CP300)
Versions Default: unknown
  • affected from 0 to * (excl.)
Vendor Siemens
Product SIPROTEC 5 7SS85 (CP200)
Versions Default: unknown
  • affected from 0 to * (excl.)
Vendor Siemens
Product SIPROTEC 5 7SS85 (CP300)
Versions Default: unknown
  • affected from 0 to * (excl.)
Vendor Siemens
Product SIPROTEC 5 7ST85 (CP200)
Versions Default: unknown
  • affected from 0 to * (excl.)
Vendor Siemens
Product SIPROTEC 5 7ST85 (CP300)
Versions Default: unknown
  • affected from 0 to * (excl.)
Vendor Siemens
Product SIPROTEC 5 7ST86 (CP300)
Versions Default: unknown
  • affected from 0 to * (excl.)
Vendor Siemens
Product SIPROTEC 5 7SX82 (CP150)
Versions Default: unknown
  • affected from 0 to * (excl.)
Vendor Siemens
Product SIPROTEC 5 7SX85 (CP300)
Versions Default: unknown
  • affected from 0 to * (excl.)
Vendor Siemens
Product SIPROTEC 5 7SY82 (CP150)
Versions Default: unknown
  • affected from 0 to * (excl.)
Vendor Siemens
Product SIPROTEC 5 7UM85 (CP300)
Versions Default: unknown
  • affected from 0 to * (excl.)
Vendor Siemens
Product SIPROTEC 5 7UT82 (CP100)
Versions Default: unknown
  • affected from 0 to * (excl.)
Vendor Siemens
Product SIPROTEC 5 7UT82 (CP150)
Versions Default: unknown
  • affected from 0 to * (excl.)
Vendor Siemens
Product SIPROTEC 5 7UT85 (CP200)
Versions Default: unknown
  • affected from 0 to * (excl.)
Vendor Siemens
Product SIPROTEC 5 7UT85 (CP300)
Versions Default: unknown
  • affected from 0 to * (excl.)
Vendor Siemens
Product SIPROTEC 5 7UT86 (CP200)
Versions Default: unknown
  • affected from 0 to * (excl.)
Vendor Siemens
Product SIPROTEC 5 7UT86 (CP300)
Versions Default: unknown
  • affected from 0 to * (excl.)
Vendor Siemens
Product SIPROTEC 5 7UT87 (CP200)
Versions Default: unknown
  • affected from 0 to * (excl.)
Vendor Siemens
Product SIPROTEC 5 7UT87 (CP300)
Versions Default: unknown
  • affected from 0 to * (excl.)
Vendor Siemens
Product SIPROTEC 5 7VE85 (CP300)
Versions Default: unknown
  • affected from 0 to * (excl.)
Vendor Siemens
Product SIPROTEC 5 7VK87 (CP200)
Versions Default: unknown
  • affected from 0 to * (excl.)
Vendor Siemens
Product SIPROTEC 5 7VK87 (CP300)
Versions Default: unknown
  • affected from 0 to * (excl.)
Vendor Siemens
Product SIPROTEC 5 7VU85 (CP300)
Versions Default: unknown
  • affected from 0 to * (excl.)
Vendor Siemens
Product SIPROTEC 5 Compact 7SX800 (CP050)
Versions Default: unknown
  • affected from 0 to * (excl.)

References

Problem Types

  • CWE-434: Unrestricted Upload of File with Dangerous Type CWE