Siemens SIMATIC Virtualization as a Service Insecure File Share Vulnerability

Vulnerability

A vulnerability exists in all versions of Siemens SIMATIC Virtualization as a Service (SIVaaS), where a network share is exposed without authentication. This flaw could enable an attacker to access or modify sensitive data without proper authorization.

Impact

Exploitation of this vulnerability could lead to unauthorized access to or modification of sensitive data.

Remediation

Siemens recommends contacting technical support for assistance. General security guidelines suggest protecting network access to devices and following Siemens' operational recommendations for Industrial Security.

Added: Sep 9, 2025, 9:23 AM
Updated: Sep 9, 2025, 5:03 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
5.0
exploitability
7.4
remediation
0.0
relevance
0.5
threat
0.0
urgency
2.9
incentive
5.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.