You are using an out of date browser. It may not display this or other websites correctly. You should upgrade or use an alternative browser.
cve-2025-40570
About this tag
CVE-2025-40570 is a vulnerability affecting Siemens SIPROTEC 5 relays, which are digital protection devices used in power transmission, distribution, and critical manufacturing. The flaw allows an attacker with physical access to the device's local USB port to exhaust system memory, causing a temporary denial of service (DoS) that results in loss of network responsiveness. Siemens has released patches and mitigations for a wide range of SIPROTEC 5 models and communication-processor variants. Discussions on WindowsForum cover the vulnerability details, affected models, and steps to apply vendor-supplied fixes to secure these industrial control systems.
Siemens’ SIPROTEC 5 family has resurfaced in industry advisories after researchers and the vendor disclosed a vulnerability that allows attackers with physical access to exhaust a device’s memory via its local USB port, causing temporary loss of network responsiveness; the issue is tracked as...