CVE-2025-23397
CVSS 3.1 Score 7.8 of 10 (high)
Details
Published Mar 11, 2025
CWE ID 119
Summary
CVE-2024-56336 is a vulnerability affecting SINAMICS S200 devices with serial numbers beginning with SZVS8, SZVS9, SZVS0, or SZVSN and FS number 02. The issue stems from an unlocked bootloader, which creates a significant security risk. This oversight enables attackers to introduce malicious code or install untrusted firmware, bypassing the device's security mechanisms designed to safeguard against data manipulation and unauthorized access.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.