Description
A vulnerability has been identified in SCALANCE LPE9403 (6GK5998-3GS00-2AC2) (All versions < V4.0). Affected devices do not properly neutralize special characters when interpreting user controlled log paths. This could allow an authenticated highly-privileged remote attacker to execute a limited set of binaries that are already present on the filesystem.
INFO
Published Date :
2025-03-11T09:48:30.045Z
Last Modified :
2025-03-11T13:30:28.112Z
Source :
siemens
AFFECTED PRODUCTS
The following products are affected by CVE-2025-27398 vulnerability.
| Vendors | Products |
|---|---|
| Siemens |
|
REFERENCES
Here, you will find a curated list of external links that provide in-depth information to CVE-2025-27398.
CVSS Vulnerability Scoring System
Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Attack Requirements
Privileges Required
User Interaction
VS Confidentiality
VS Integrity
VS Availability
SS Confidentiality
SS Integrity
SS Availability
Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact