Known vulnerabilities in SCALANCE LPE9403

Vendor: Siemens
Software CPE: cpe:2.3:h:siemens:scalance_lpe9403:*:*:*:*:*:*:*:*
Total vulnerabilities: 35
Public exploits: 10
Known exploited (KEV): 2
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting SCALANCE LPE9403 SCALANCE LPE9403 is affected by 35 known vulnerabilities: 1 high, 7 medium, 27 low Critical High Medium Low

Vulnerabilities (35)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU109478 - Cleartext Transmission of Sensitive Information
CVE-2025-40583
CWE-319 Low
No
No
- 20.05.2025 SB2025052046
#VU109477 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2025-40582
CWE-78 Low
No
No
- 20.05.2025 SB2025052046
#VU109476 - Authentication Bypass Using an Alternate Path or Channel
CVE-2025-40581
CWE-288 Low
No
No
- 20.05.2025 SB2025052046
#VU109475 - Stack-based buffer overflow
CVE-2025-40580
CWE-121 Low
No
No
- 20.05.2025 SB2025052046
#VU109474 - Stack-based buffer overflow
CVE-2025-40579
CWE-121 Low
No
No
- 20.05.2025 SB2025052046
#VU109472 - Out-of-bounds read
CVE-2025-40578
CWE-125 Low
No
No
- 20.05.2025 SB2025052046
#VU109468 - Out-of-bounds read
CVE-2025-40577
CWE-125 Low
No
No
- 20.05.2025 SB2025052046
#VU109466 - NULL Pointer Dereference
CVE-2025-40576
CWE-476 Low
No
No
- 20.05.2025 SB2025052046
#VU109463 - Use of Uninitialized Variable
CVE-2025-40575
CWE-457 Low
No
No
- 20.05.2025 SB2025052046
#VU109461 - Incorrect Permission Assignment for Critical Resource
CVE-2025-40574
CWE-732 Low
No
No
- 20.05.2025 SB2025052046
#VU109460 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2025-40573
CWE-22 Low
No
No
- 20.05.2025 SB2025052046
#VU109459 - Incorrect Permission Assignment for Critical Resource
CVE-2025-40572
CWE-732 Low
No
No
- 20.05.2025 SB2025052046
#VU105649 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2025-27398
CWE-78 Low
Available
No
4.0 12.03.2025 SB2025031241
#VU105648 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2025-27397
CWE-22 Low
Available
No
4.0 12.03.2025 SB2025031241
#VU105647 - Improper Check for Dropped Privileges
CVE-2025-27396
CWE-273 Medium
Available
No
4.0 12.03.2025 SB2025031241
#VU105646 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2025-27395
CWE-22 Low
Available
No
4.0 12.03.2025 SB2025031241
#VU105645 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2025-27394
CWE-78 Low
Available
No
4.0 12.03.2025 SB2025031241
#VU105638 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2025-27393
CWE-78 Low
Available
No
4.0 12.03.2025 SB2025031241
#VU105637 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2025-27392
CWE-78 Low
No
No
4.0 12.03.2025 SB2025031241
#VU75974 - Creation of Temporary File With Insecure Permissions
CVE-2023-27408
CWE-378 Low
No
No
2.1 10.05.2023 SB2023051024


Showing elements 1 - 20 out of 35