Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2025-40753

CVSS 6.2 · Medium EPSS 0.01% · P3
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2025-40753

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
A vulnerability has been identified in POWER METER SICAM Q100 (7KG9501-0AA01-0AA1) (All versions >= V2.60 < V2.62), POWER METER SICAM Q100 (7KG9501-0AA01-2AA1) (All versions >= V2.60 < V2.62), POWER METER SICAM Q100 (7KG9501-0AA31-0AA1) (All versions >= V2.60 < V2.62), POWER METER SICAM Q100 (7KG9501-0AA31-2AA1) (All versions >= V2.60 < V2.62), POWER METER SICAM Q200 family (All versions >= V2.70 < V2.80). Affected devices export the password for the SMTP account as plain text in the Configuration File. This could allow an authenticated local attacker to extract it and use the configured SMTP service for arbitrary purposes.
Source: NVD (National Vulnerability Database)
CVSS Information
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Source: NVD (National Vulnerability Database)
Vulnerability Type
敏感数据的明文存储
Source: NVD (National Vulnerability Database)
Vulnerability Title
Siemens POWER METER SICAM Q100和Siemens POWER METER SICAM Q200 安全漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Siemens POWER METER SICAM Q100和Siemens POWER METER SICAM Q200都是德国西门子(Siemens)公司的一款多功能电能质量记录仪。 Siemens POWER METER SICAM Q100和Siemens POWER METER SICAM Q200 V2.62之前版本存在安全漏洞,该漏洞源于SMTP密码明文导出,可能导致凭据泄露。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
SiemensPOWER METER SICAM Q100 V2.60 ~ V2.62 -
SiemensPOWER METER SICAM Q100 V2.60 ~ V2.62 -
SiemensPOWER METER SICAM Q100 V2.60 ~ V2.62 -
SiemensPOWER METER SICAM Q100 V2.60 ~ V2.62 -
SiemensPOWER METER SICAM Q200 family V2.70 ~ V2.80 -

II. Public POCs for CVE-2025-40753

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2025-40753

登录查看更多情报信息。

Same Patch Batch · Siemens · 2025-08-12 · 28 CVEs total

CVE-2025-407469.1 CRITICALSiemens SIMATIC RTLS Locating Manager 输入验证错误漏洞
CVE-2025-407438.3 HIGHSiemens多款产品 安全漏洞
CVE-2024-546788.2 HIGHSiemens多款产品 代码问题漏洞
CVE-2025-407677.8 HIGHSiemens SINEC Traffic Analyzer 安全漏洞
CVE-2025-407647.8 HIGHSiemens Simcenter Femap 缓冲区错误漏洞
CVE-2025-407627.8 HIGHSiemens Simcenter Femap 缓冲区错误漏洞
CVE-2025-407597.8 HIGHSiemens多款产品 代码问题漏洞
CVE-2025-300337.8 HIGHSiemens多款产品 代码问题漏洞
CVE-2025-407617.6 HIGHSiemens多款产品 安全漏洞
CVE-2024-525047.5 HIGHSiemens多款产品 代码问题漏洞
CVE-2025-407697.4 HIGHSiemens SINEC Traffic Analyzer 安全漏洞
CVE-2025-407707.4 HIGHSiemens SINEC Traffic Analyzer 安全漏洞
CVE-2025-407687.3 HIGHSiemens SINEC Traffic Analyzer 信息泄露漏洞
CVE-2024-419797.1 HIGHSiemens多款产品 安全漏洞
CVE-2024-419866.4 MEDIUMSiemens多款产品 加密问题漏洞
CVE-2025-407516.3 MEDIUMSiemens SIMATIC RTLS Locating Manager 安全漏洞
CVE-2025-300346.2 MEDIUMSiemens SIMATIC RTLS Locating Manager 安全漏洞
CVE-2025-407526.2 MEDIUMSiemens POWER METER SICAM Q100和Siemens POWER METER SICAM Q200 安全漏洞
CVE-2025-405845.5 MEDIUMSiemens多款产品 代码问题漏洞
CVE-2025-407665.5 MEDIUMSiemens SINEC Traffic Analyzer 资源管理错误漏洞

Showing top 20 of 28 CVEs. View all on vendor page &rarr; →

IV. Related Vulnerabilities

V. Comments for CVE-2025-40753

No comments yet


Leave a comment