CVE-2025-23397

CVSS 3.1 Score 7.8 of 10 (high)

Details

Published Mar 11, 2025
CWE ID 119

Summary

CVE-2024-56336 is a vulnerability affecting SINAMICS S200 devices with serial numbers beginning with SZVS8, SZVS9, SZVS0, or SZVSN and FS number 02. The issue stems from an unlocked bootloader, which creates a significant security risk. This oversight enables attackers to introduce malicious code or install untrusted firmware, bypassing the device's security mechanisms designed to safeguard against data manipulation and unauthorized access.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share