Siemens SIMATIC CN 4100 SNMP Vulnerability Allowing Access to Sensitive Data

Vulnerability

A vulnerability exists in Siemens SIMATIC CN 4100, all versions prior to 4.0.1, due to inconsistent Simple Network Management Protocol (SNMP) behavior. The application demonstrates unexpected service availability and unreliable configuration management across different protocol versions. This inconsistency could enable an attacker to access sensitive information, potentially compromising confidentiality.

Impact

Exploitation of this vulnerability could lead to unauthorized access to sensitive data, with a risk of breaching confidentiality.

Remediation

Users are advised to update to version 4.0.1 or later. Additional information can be found on the Siemens Support page.

Added: Dec 9, 2025, 8:04 PM
Updated: Dec 9, 2025, 8:04 PM

Vulnerability Rating

Custom Algorithm
spread
0.3
impact
2.5
exploitability
4.4
remediation
7.7
relevance
1.3
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.