top of page
perceptive_background_267k.jpg

Siemens Interniche IP-Stack

Published:

18 december 2025 om 12:00:00

Alert date:

18 december 2025 om 18:04:12

Source:

cisa.gov

Click to open the original link from this advisory

Multiple Siemens industrial products are affected by CVE-2025-40820, a vulnerability in the InterNiche IP-Stack that allows unauthenticated remote attackers to interfere with TCP connection setup, potentially causing denial of service. The vulnerability affects TCP sequence number validation and impacts over 140 different Siemens products including SIMATIC S7 series, ET 200 series, and other industrial automation systems. Attacks require precise timing and spoofed IP packets. Siemens has released fixes for some products and recommends specific countermeasures for others.

Technical details

Mitigation steps:

Affected products:

Siemens InterNiche IP-Stack
SIMATIC S7-1200
SIMATIC S7-1500
SIMATIC S7-300
SIMATIC S7-400
SIMATIC ET 200
SIDOOR
SINUMERIK
SIWAREX

Related links:

Related CVE's:

Related threat actors:

IOC's:

This article was created with the assistance of AI technology by Perceptive.

© 2025 by Perceptive Security. All rights reserved.

email: info@perceptivesecurity.com

Deze website toont informatie afkomstig van externe bronnen; Perceptive aanvaardt geen verantwoordelijkheid voor de juistheid, volledigheid of actualiteit van deze informatie.

bottom of page