CVE-2026-22925
- EPSS 0.32%
- Veröffentlicht 12.05.2026 08:20:56
- Zuletzt bearbeitet 29.06.2026 14:05:43
A vulnerability has been identified in SIMATIC CN 4100 (All versions < V5.0). The affected application is susceptible to resource exhaustion when subjected to high volume of TCP SYN packets This could allow an attacker to render the service unavaila...
CVE-2026-22924
- EPSS 0.3%
- Veröffentlicht 12.05.2026 08:20:55
- Zuletzt bearbeitet 29.06.2026 14:06:00
A vulnerability has been identified in SIMATIC CN 4100 (All versions < V5.0). The affected application does not properly restrict unauthenticated connections and is susceptible to resource exhaustion conditions. This could allow an attacker to disru...
- EPSS 99.91%
- Veröffentlicht 22.04.2026 08:15:10
- Zuletzt bearbeitet 08.09.2026 15:13:07
In the Linux kernel, the following vulnerability has been resolved: crypto: algif_aead - Revert to operating out-of-place This mostly reverts commit 72548b093ee3 except for the copying of the associated data. There is no benefit in operating in-pl...
CVE-2026-2673
- EPSS 0.44%
- Veröffentlicht 13.03.2026 13:23:00
- Zuletzt bearbeitet 05.06.2026 19:48:51
Issue summary: An OpenSSL TLS 1.3 server may fail to negotiate the expected preferred key exchange group when its key exchange group configuration includes the default by using the 'DEFAULT' keyword. Impact summary: A less preferred key exchange may...
CVE-2025-40941
- EPSS 0.28%
- Veröffentlicht 09.12.2025 10:44:40
- Zuletzt bearbeitet 07.10.2026 20:10:01
A vulnerability has been identified in SIMATIC CN 4100 (All versions < V4.0.1). The affected devices exposes server information in its responses. This could allow an attacker with network access to gain useful information, increasing the likelihood ...
CVE-2025-40940
- EPSS 0.36%
- Veröffentlicht 09.12.2025 10:44:39
- Zuletzt bearbeitet 07.10.2026 20:10:01
A vulnerability has been identified in SIMATIC CN 4100 (All versions < V4.0.1). The affected application exhibits inconsistent SNMP behavior, such as unexpected service availability and unreliable configuration handling across protocol versions. This...
CVE-2025-40939
- EPSS 0.21%
- Veröffentlicht 09.12.2025 10:44:37
- Zuletzt bearbeitet 07.10.2026 20:10:01
A vulnerability has been identified in SIMATIC CN 4100 (All versions < V4.0.1). The affected device contains a USB port which allows unauthenticated connections. This could allow an attacker with physical access to the device to trigger reboot that c...
CVE-2025-40938
- EPSS 0.37%
- Veröffentlicht 09.12.2025 10:44:36
- Zuletzt bearbeitet 07.10.2026 20:10:01
A vulnerability has been identified in SIMATIC CN 4100 (All versions < V4.0.1). The affected device stores sensitive information in the firmware. This could allow an attacker to access and misuse this information, potentially impacting the device’s c...
CVE-2025-40937
- EPSS 0.57%
- Veröffentlicht 09.12.2025 10:44:35
- Zuletzt bearbeitet 07.10.2026 20:10:01
A vulnerability has been identified in SIMATIC CN 4100 (All versions < V4.0.1). The affected application do not properly validate input parameters in its REST API, resulting in improper handling of unexpected arguments. This could allow an authentic...
CVE-2025-39682
- EPSS 0.51%
- Veröffentlicht 05.09.2025 17:20:48
- Zuletzt bearbeitet 07.10.2026 18:17:13
In the Linux kernel, the following vulnerability has been resolved: tls: fix handling of zero-length records on the rx_list Each recvmsg() call must process either - only contiguous DATA records (any number of them) - one non-DATA record If the ...