Vulnerabilità · 183 giorni fa

Vulnerabilità nel Firmware Siemens SICAM 8 Causano Denial of Service tramite Esaurimento delle Risorse

Diversi componenti dei prodotti Siemens SICAM 8 presentano vulnerabilità di denial-of-service (CVE-2026-27663, CVE-2026-27664) che causano esaurimento delle risorse quando esposti a volumi elevati di richieste. Queste vulnerabilità interessano il firmware dei dispositivi CPCI85 Central Processing/Communication, RTUM85 RTU Base e SICORE Base system, tutti utilizzati in settori critici della produzione e delle infrastrutture.

CVE-2026-27664

NVD KEV

CVSS 7.5 HIGH: a vulnerability has been identified in CPCI85 Central Processing/Communication (All versions < V26.10), SICORE Base system (All versions < V26.10.0). EPSS 0.5% (41º percentile).

CVE-2026-27663

NVD KEV

CVSS 6.5 MEDIUM: a vulnerability has been identified in CPCI85 Central Processing/Communication (All versions < V26.10), RTUM85 RTU Base (All versions < V26.10). EPSS 0.3% (19º percentile).

Cronologia

Fonti

1 fonte che coprono questa storia

Entità

Part of the PlainSec briefing for 2026-04-03

Editions

Storie correlate