📦 Simatic Cn 4100 Firmware

by Siemens

🔍 What is Simatic Cn 4100 Firmware?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2024-32740

CRITICAL CVSS 9.8 May 14, 2024

This vulnerability involves undocumented users with hardcoded credentials in SIMATIC CN 4100 devices. Attackers can use these credentials to gain unauthorized access to affected devices, potentially l...

CVE-2023-29130

CRITICAL CVSS 9.9 Jul 11, 2023

CVE-2023-29130 is a critical privilege escalation vulnerability in Siemens SIMATIC CN 4100 devices where improper access controls in configuration files allow attackers to gain administrative access. ...

CVE-2025-40937

HIGH CVSS 8.3 Dec 9, 2025

This vulnerability in SIMATIC CN 4100 allows authenticated attackers to execute arbitrary code with limited privileges due to improper input validation in the REST API. It affects all versions before ...

CVE-2025-40938

HIGH CVSS 8.1 Dec 9, 2025

This vulnerability in SIMATIC CN 4100 devices involves sensitive information being stored in firmware, allowing attackers to extract and misuse this data. All versions before V4.0.1 are affected, pote...

CVE-2024-32742

HIGH CVSS 7.6 May 14, 2024

This vulnerability affects SIMATIC CN 4100 devices with unrestricted USB ports, allowing attackers with physical access to boot alternative operating systems and gain full filesystem access. It impact...

CVE-2025-40939

MEDIUM CVSS 4.6 Dec 9, 2025

A vulnerability in SIMATIC CN 4100 devices allows attackers with physical access to trigger a denial-of-service reboot via the USB port. This affects all versions before V4.0.1 of Siemens' SIMATIC CN ...

CVE-2025-40940

MEDIUM CVSS 4.9 Dec 9, 2025

A vulnerability in SIMATIC CN 4100 industrial communication devices allows attackers to exploit inconsistent SNMP behavior to access sensitive data, potentially breaching confidentiality. This affects...

CVE-2025-40941

MEDIUM CVSS 4.3 Dec 9, 2025

SIMATIC CN 4100 devices expose server information in responses, allowing attackers with network access to gather reconnaissance data. This information disclosure vulnerability affects all versions bef...

CVE-2025-40593

MEDIUM CVSS 6.5 Jul 8, 2025

This vulnerability in Siemens SIMATIC CN 4100 allows attackers to store arbitrary files in the device's SFTP folder, potentially causing denial of service. All versions before V4.0 are affected. This ...