๐Ÿ” CVE Alert

CVE-2026-25571

MEDIUM 5.1
CVSS Score
5.1
EPSS Score
0.0%
EPSS Percentile
0th

A vulnerability has been identified in SICAM SIAPP SDK (All versions < V2.1.7). The SICAM SIAPP SDK client component does not enforce maximum length checks on certain variables before use. This could allow an attacker to send an oversized input that could trigger a stack overflow crashing the process and potentially causing denial of service.

CWE CWE-130
Vendor siemens
Product sicam siapp sdk
Ecosystems
Industries
IndustrialManufacturing
Published Mar 10, 2026
Last Updated Mar 10, 2026
Stay Ahead of the Next One

Get instant alerts for siemens sicam siapp sdk

Be the first to know when new medium vulnerabilities affecting siemens sicam siapp sdk are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

CVSS v3 Breakdown

CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality
Integrity
Availability

Affected Versions

Siemens / SICAM SIAPP SDK
0 < V2.1.7

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
cert-portal.siemens.com: https://cert-portal.siemens.com/productcert/html/ssa-903736.html