{"api_version":"1","generated_at":"2026-05-13T00:20:57+00:00","cve":"CVE-2025-40742","urls":{"html":"https://cve.report/CVE-2025-40742","api":"https://cve.report/api/cve/CVE-2025-40742.json","docs":"https://cve.report/api","cve_org":"https://www.cve.org/CVERecord?id=CVE-2025-40742","nvd":"https://nvd.nist.gov/vuln/detail/CVE-2025-40742"},"summary":{"title":"CVE-2025-40742","description":"A vulnerability has been identified in SIPROTEC 5 6MD84 (CP300) (All versions < V11.0), SIPROTEC 5 6MD85 (CP200) (All versions), SIPROTEC 5 6MD85 (CP300) (All versions < V11.0), SIPROTEC 5 6MD86 (CP200) (All versions), SIPROTEC 5 6MD86 (CP300) (All versions < V11.0), SIPROTEC 5 6MD89 (CP300) (All versions < V11.0), SIPROTEC 5 6MD89 (CP300) V9.6x (All versions < V11.0), SIPROTEC 5 6MU85 (CP300) (All versions < V11.0), SIPROTEC 5 7KE85 (CP200) (All versions), SIPROTEC 5 7KE85 (CP300) (All versions < V11.0), SIPROTEC 5 7SA82 (CP100) (All versions), SIPROTEC 5 7SA82 (CP150) (All versions < V11.0), SIPROTEC 5 7SA84 (CP200) (All versions), SIPROTEC 5 7SA86 (CP200) (All versions), SIPROTEC 5 7SA86 (CP300) (All versions < V11.0), SIPROTEC 5 7SA87 (CP200) (All versions), SIPROTEC 5 7SA87 (CP300) (All versions < V11.0), SIPROTEC 5 7SD82 (CP100) (All versions), SIPROTEC 5 7SD82 (CP150) (All versions < V11.0), SIPROTEC 5 7SD84 (CP200) (All versions), SIPROTEC 5 7SD86 (CP200) (All versions), SIPROTEC 5 7SD86 (CP300) (All versions < V11.0), SIPROTEC 5 7SD87 (CP200) (All versions), SIPROTEC 5 7SD87 (CP300) (All versions < V11.0), SIPROTEC 5 7SJ81 (CP100) (All versions), SIPROTEC 5 7SJ81 (CP150) (All versions < V11.0), SIPROTEC 5 7SJ82 (CP100) (All versions), SIPROTEC 5 7SJ82 (CP150) (All versions < V11.0), SIPROTEC 5 7SJ85 (CP200) (All versions), SIPROTEC 5 7SJ85 (CP300) (All versions < V11.0), SIPROTEC 5 7SJ86 (CP200) (All versions), SIPROTEC 5 7SJ86 (CP300) (All versions < V11.0), SIPROTEC 5 7SK82 (CP100) (All versions), SIPROTEC 5 7SK82 (CP150) (All versions < V11.0), SIPROTEC 5 7SK85 (CP200) (All versions), SIPROTEC 5 7SK85 (CP300) (All versions < V11.0), SIPROTEC 5 7SL82 (CP100) (All versions), SIPROTEC 5 7SL82 (CP150) (All versions < V11.0), SIPROTEC 5 7SL86 (CP200) (All versions), SIPROTEC 5 7SL86 (CP300) (All versions < V11.0), SIPROTEC 5 7SL87 (CP200) (All versions), SIPROTEC 5 7SL87 (CP300) (All versions < V11.0), SIPROTEC 5 7SS85 (CP200) (All versions), SIPROTEC 5 7SS85 (CP300) (All versions < V11.0), SIPROTEC 5 7ST85 (CP200) (All versions), SIPROTEC 5 7ST85 (CP300) (All versions < V11.0), SIPROTEC 5 7ST86 (CP300) (All versions < V11.0), SIPROTEC 5 7SX82 (CP150) (All versions < V11.0), SIPROTEC 5 7SX85 (CP300) (All versions < V11.0), SIPROTEC 5 7SY82 (CP150) (All versions < V11.0), SIPROTEC 5 7UM85 (CP300) (All versions < V11.0), SIPROTEC 5 7UT82 (CP100) (All versions), SIPROTEC 5 7UT82 (CP150) (All versions < V11.0), SIPROTEC 5 7UT85 (CP200) (All versions), SIPROTEC 5 7UT85 (CP300) (All versions < V11.0), SIPROTEC 5 7UT86 (CP200) (All versions), SIPROTEC 5 7UT86 (CP300) (All versions < V11.0), SIPROTEC 5 7UT87 (CP200) (All versions), SIPROTEC 5 7UT87 (CP300) (All versions < V11.0), SIPROTEC 5 7VE85 (CP300) (All versions < V11.0), SIPROTEC 5 7VK87 (CP200) (All versions), SIPROTEC 5 7VK87 (CP300) (All versions < V11.0), SIPROTEC 5 7VU85 (CP300) (All versions < V11.0), SIPROTEC 5 Compact 7SX800 (CP050) (All versions < V11.0). The affected devices include session identifiers in URL requests for certain functionalities. This could allow an attacker to retrieve sensitive session data from browser history, logs, or other storage mechanisms, potentially leading to unauthorized access.","state":"PUBLISHED","assigner":"siemens","published_at":"2025-07-08 11:15:30","updated_at":"2026-05-12 10:16:41"},"problem_types":["CWE-598","CWE-598 CWE-598: Use of GET Request Method With Sensitive Query Strings"],"metrics":[{"version":"4.0","source":"productcert@siemens.com","type":"Secondary","score":"6","severity":"MEDIUM","vector":"CVSS:4.0/AV:N/AC:H/AT:N/PR:N/UI:P/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X","data":{"version":"4.0","vectorString":"CVSS:4.0/AV:N/AC:H/AT:N/PR:N/UI:P/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X","baseScore":6,"baseSeverity":"MEDIUM","attackVector":"NETWORK","attackComplexity":"HIGH","attackRequirements":"NONE","privilegesRequired":"NONE","userInteraction":"PASSIVE","vulnConfidentialityImpact":"HIGH","vulnIntegrityImpact":"NONE","vulnAvailabilityImpact":"NONE","subConfidentialityImpact":"NONE","subIntegrityImpact":"NONE","subAvailabilityImpact":"NONE","exploitMaturity":"NOT_DEFINED","confidentialityRequirement":"NOT_DEFINED","integrityRequirement":"NOT_DEFINED","availabilityRequirement":"NOT_DEFINED","modifiedAttackVector":"NOT_DEFINED","modifiedAttackComplexity":"NOT_DEFINED","modifiedAttackRequirements":"NOT_DEFINED","modifiedPrivilegesRequired":"NOT_DEFINED","modifiedUserInteraction":"NOT_DEFINED","modifiedVulnConfidentialityImpact":"NOT_DEFINED","modifiedVulnIntegrityImpact":"NOT_DEFINED","modifiedVulnAvailabilityImpact":"NOT_DEFINED","modifiedSubConfidentialityImpact":"NOT_DEFINED","modifiedSubIntegrityImpact":"NOT_DEFINED","modifiedSubAvailabilityImpact":"NOT_DEFINED","Safety":"NOT_DEFINED","Automatable":"NOT_DEFINED","Recovery":"NOT_DEFINED","valueDensity":"NOT_DEFINED","vulnerabilityResponseEffort":"NOT_DEFINED","providerUrgency":"NOT_DEFINED"}},{"version":"4.0","source":"CNA","type":"DECLARED","score":"6","severity":"MEDIUM","vector":"CVSS:4.0/AV:N/AC:H/AT:N/PR:N/UI:P/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N","data":{"baseScore":6,"baseSeverity":"MEDIUM","vectorString":"CVSS:4.0/AV:N/AC:H/AT:N/PR:N/UI:P/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N","version":"4.0"}},{"version":"3.1","source":"productcert@siemens.com","type":"Secondary","score":"5.3","severity":"MEDIUM","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:N/A:N","data":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:N/A:N","baseScore":5.3,"baseSeverity":"MEDIUM","attackVector":"NETWORK","attackComplexity":"HIGH","privilegesRequired":"NONE","userInteraction":"REQUIRED","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"NONE","availabilityImpact":"NONE"}},{"version":"3.1","source":"CNA","type":"DECLARED","score":"5.3","severity":"MEDIUM","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:N/A:N","data":{"baseScore":5.3,"baseSeverity":"MEDIUM","vectorString":"CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:N/A:N","version":"3.1"}}],"references":[{"url":"https://cert-portal.siemens.com/productcert/html/ssa-904646.html","name":"https://cert-portal.siemens.com/productcert/html/ssa-904646.html","refsource":"productcert@siemens.com","tags":[],"title":"","mime":"","httpstatus":"","archivestatus":"0"},{"url":"https://www.cve.org/CVERecord?id=CVE-2025-40742","name":"CVE Program record","refsource":"CVE.ORG","tags":["canonical"]},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2025-40742","name":"NVD vulnerability detail","refsource":"NVD","tags":["canonical","analysis"]}],"affected":[{"source":"CNA","vendor":"Siemens","product":"SIPROTEC 5 6MD84 (CP300)","version":"affected V11.0 custom","platforms":[]},{"source":"CNA","vendor":"Siemens","product":"SIPROTEC 5 6MD85 (CP200)","version":"unaffected * custom","platforms":[]},{"source":"CNA","vendor":"Siemens","product":"SIPROTEC 5 6MD85 (CP300)","version":"affected V11.0 custom","platforms":[]},{"source":"CNA","vendor":"Siemens","product":"SIPROTEC 5 6MD86 (CP200)","version":"unaffected * custom","platforms":[]},{"source":"CNA","vendor":"Siemens","product":"SIPROTEC 5 6MD86 (CP300)","version":"affected V11.0 custom","platforms":[]},{"source":"CNA","vendor":"Siemens","product":"SIPROTEC 5 6MD89 (CP300)","version":"affected V11.0 custom","platforms":[]},{"source":"CNA","vendor":"Siemens","product":"SIPROTEC 5 6MD89 (CP300) V9.6x","version":"affected V11.0 custom","platforms":[]},{"source":"CNA","vendor":"Siemens","product":"SIPROTEC 5 6MU85 (CP300)","version":"affected V11.0 custom","platforms":[]},{"source":"CNA","vendor":"Siemens","product":"SIPROTEC 5 7KE85 (CP200)","version":"unaffected * custom","platforms":[]},{"source":"CNA","vendor":"Siemens","product":"SIPROTEC 5 7KE85 (CP300)","version":"affected V11.0 custom","platforms":[]},{"source":"CNA","vendor":"Siemens","product":"SIPROTEC 5 7SA82 (CP100)","version":"affected * custom","platforms":[]},{"source":"CNA","vendor":"Siemens","product":"SIPROTEC 5 7SA82 (CP150)","version":"affected V11.0 custom","platforms":[]},{"source":"CNA","vendor":"Siemens","product":"SIPROTEC 5 7SA84 (CP200)","version":"unaffected * custom","platforms":[]},{"source":"CNA","vendor":"Siemens","product":"SIPROTEC 5 7SA86 (CP200)","version":"unaffected * custom","platforms":[]},{"source":"CNA","vendor":"Siemens","product":"SIPROTEC 5 7SA86 (CP300)","version":"affected V11.0 custom","platforms":[]},{"source":"CNA","vendor":"Siemens","product":"SIPROTEC 5 7SA87 (CP200)","version":"unaffected * custom","platforms":[]},{"source":"CNA","vendor":"Siemens","product":"SIPROTEC 5 7SA87 (CP300)","version":"affected V11.0 custom","platforms":[]},{"source":"CNA","vendor":"Siemens","product":"SIPROTEC 5 7SD82 (CP100)","version":"affected * custom","platforms":[]},{"source":"CNA","vendor":"Siemens","product":"SIPROTEC 5 7SD82 (CP150)","version":"affected V11.0 custom","platforms":[]},{"source":"CNA","vendor":"Siemens","product":"SIPROTEC 5 7SD84 (CP200)","version":"unaffected * custom","platforms":[]},{"source":"CNA","vendor":"Siemens","product":"SIPROTEC 5 7SD86 (CP200)","version":"unaffected * custom","platforms":[]},{"source":"CNA","vendor":"Siemens","product":"SIPROTEC 5 7SD86 (CP300)","version":"affected V11.0 custom","platforms":[]},{"source":"CNA","vendor":"Siemens","product":"SIPROTEC 5 7SD87 (CP200)","version":"unaffected * custom","platforms":[]},{"source":"CNA","vendor":"Siemens","product":"SIPROTEC 5 7SD87 (CP300)","version":"affected V11.0 custom","platforms":[]},{"source":"CNA","vendor":"Siemens","product":"SIPROTEC 5 7SJ81 (CP100)","version":"affected * custom","platforms":[]},{"source":"CNA","vendor":"Siemens","product":"SIPROTEC 5 7SJ81 (CP150)","version":"affected V11.0 custom","platforms":[]},{"source":"CNA","vendor":"Siemens","product":"SIPROTEC 5 7SJ82 (CP100)","version":"affected * custom","platforms":[]},{"source":"CNA","vendor":"Siemens","product":"SIPROTEC 5 7SJ82 (CP150)","version":"affected V11.0 custom","platforms":[]},{"source":"CNA","vendor":"Siemens","product":"SIPROTEC 5 7SJ85 (CP200)","version":"unaffected * custom","platforms":[]},{"source":"CNA","vendor":"Siemens","product":"SIPROTEC 5 7SJ85 (CP300)","version":"affected V11.0 custom","platforms":[]},{"source":"CNA","vendor":"Siemens","product":"SIPROTEC 5 7SJ86 (CP200)","version":"unaffected * custom","platforms":[]},{"source":"CNA","vendor":"Siemens","product":"SIPROTEC 5 7SJ86 (CP300)","version":"affected V11.0 custom","platforms":[]},{"source":"CNA","vendor":"Siemens","product":"SIPROTEC 5 7SK82 (CP100)","version":"affected * custom","platforms":[]},{"source":"CNA","vendor":"Siemens","product":"SIPROTEC 5 7SK82 (CP150)","version":"affected V11.0 custom","platforms":[]},{"source":"CNA","vendor":"Siemens","product":"SIPROTEC 5 7SK85 (CP200)","version":"unaffected * custom","platforms":[]},{"source":"CNA","vendor":"Siemens","product":"SIPROTEC 5 7SK85 (CP300)","version":"affected V11.0 custom","platforms":[]},{"source":"CNA","vendor":"Siemens","product":"SIPROTEC 5 7SL82 (CP100)","version":"affected * custom","platforms":[]},{"source":"CNA","vendor":"Siemens","product":"SIPROTEC 5 7SL82 (CP150)","version":"affected V11.0 custom","platforms":[]},{"source":"CNA","vendor":"Siemens","product":"SIPROTEC 5 7SL86 (CP200)","version":"unaffected * custom","platforms":[]},{"source":"CNA","vendor":"Siemens","product":"SIPROTEC 5 7SL86 (CP300)","version":"affected V11.0 custom","platforms":[]},{"source":"CNA","vendor":"Siemens","product":"SIPROTEC 5 7SL87 (CP200)","version":"unaffected * custom","platforms":[]},{"source":"CNA","vendor":"Siemens","product":"SIPROTEC 5 7SL87 (CP300)","version":"affected V11.0 custom","platforms":[]},{"source":"CNA","vendor":"Siemens","product":"SIPROTEC 5 7SS85 (CP200)","version":"unaffected * custom","platforms":[]},{"source":"CNA","vendor":"Siemens","product":"SIPROTEC 5 7SS85 (CP300)","version":"affected V11.0 custom","platforms":[]},{"source":"CNA","vendor":"Siemens","product":"SIPROTEC 5 7ST85 (CP200)","version":"unaffected * custom","platforms":[]},{"source":"CNA","vendor":"Siemens","product":"SIPROTEC 5 7ST85 (CP300)","version":"affected V11.0 custom","platforms":[]},{"source":"CNA","vendor":"Siemens","product":"SIPROTEC 5 7ST86 (CP300)","version":"affected V11.0 custom","platforms":[]},{"source":"CNA","vendor":"Siemens","product":"SIPROTEC 5 7SX82 (CP150)","version":"affected V11.0 custom","platforms":[]},{"source":"CNA","vendor":"Siemens","product":"SIPROTEC 5 7SX85 (CP300)","version":"affected V11.0 custom","platforms":[]},{"source":"CNA","vendor":"Siemens","product":"SIPROTEC 5 7SY82 (CP150)","version":"affected V11.0 custom","platforms":[]},{"source":"CNA","vendor":"Siemens","product":"SIPROTEC 5 7UM85 (CP300)","version":"affected V11.0 custom","platforms":[]},{"source":"CNA","vendor":"Siemens","product":"SIPROTEC 5 7UT82 (CP100)","version":"affected * custom","platforms":[]},{"source":"CNA","vendor":"Siemens","product":"SIPROTEC 5 7UT82 (CP150)","version":"affected V11.0 custom","platforms":[]},{"source":"CNA","vendor":"Siemens","product":"SIPROTEC 5 7UT85 (CP200)","version":"unaffected * custom","platforms":[]},{"source":"CNA","vendor":"Siemens","product":"SIPROTEC 5 7UT85 (CP300)","version":"affected V11.0 custom","platforms":[]},{"source":"CNA","vendor":"Siemens","product":"SIPROTEC 5 7UT86 (CP200)","version":"unaffected * custom","platforms":[]},{"source":"CNA","vendor":"Siemens","product":"SIPROTEC 5 7UT86 (CP300)","version":"affected V11.0 custom","platforms":[]},{"source":"CNA","vendor":"Siemens","product":"SIPROTEC 5 7UT87 (CP200)","version":"unaffected * custom","platforms":[]},{"source":"CNA","vendor":"Siemens","product":"SIPROTEC 5 7UT87 (CP300)","version":"affected V11.0 custom","platforms":[]},{"source":"CNA","vendor":"Siemens","product":"SIPROTEC 5 7VE85 (CP300)","version":"affected V11.0 custom","platforms":[]},{"source":"CNA","vendor":"Siemens","product":"SIPROTEC 5 7VK87 (CP200)","version":"unaffected * custom","platforms":[]},{"source":"CNA","vendor":"Siemens","product":"SIPROTEC 5 7VK87 (CP300)","version":"affected V11.0 custom","platforms":[]},{"source":"CNA","vendor":"Siemens","product":"SIPROTEC 5 7VU85 (CP300)","version":"affected V11.0 custom","platforms":[]},{"source":"CNA","vendor":"Siemens","product":"SIPROTEC 5 Compact 7SX800 (CP050)","version":"affected V11.0 custom","platforms":[]}],"timeline":[],"solutions":[],"workarounds":[],"exploits":[],"credits":[],"nvd_cpes":[],"vendor_comments":[],"enrichments":{"kev":null,"epss":{"cve_year":"2025","cve_id":"40742","cve":"CVE-2025-40742","epss":"0.002740000","percentile":"0.508770000","score_date":"2026-05-12","updated_at":"2026-05-13 00:11:53"},"legacy_qids":[]},"source_records":{"cve_program":{"containers":{"adp":[{"metrics":[{"other":{"content":{"id":"CVE-2025-40742","options":[{"Exploitation":"none"},{"Automatable":"no"},{"Technical Impact":"partial"}],"role":"CISA Coordinator","timestamp":"2025-07-08T20:32:17.016526Z","version":"2.0.3"},"type":"ssvc"}}],"providerMetadata":{"dateUpdated":"2025-07-08T20:32:25.319Z","orgId":"134c704f-9b21-4f2e-91b3-4a467353bcc0","shortName":"CISA-ADP"},"title":"CISA ADP Vulnrichment"}],"cna":{"affected":[{"defaultStatus":"unknown","product":"SIPROTEC 5 6MD84 (CP300)","vendor":"Siemens","versions":[{"lessThan":"V11.0","status":"affected","version":"0","versionType":"custom"}]},{"defaultStatus":"unknown","product":"SIPROTEC 5 6MD85 (CP200)","vendor":"Siemens","versions":[{"lessThan":"*","status":"unaffected","version":"0","versionType":"custom"}]},{"defaultStatus":"unknown","product":"SIPROTEC 5 6MD85 (CP300)","vendor":"Siemens","versions":[{"lessThan":"V11.0","status":"affected","version":"0","versionType":"custom"}]},{"defaultStatus":"unknown","product":"SIPROTEC 5 6MD86 (CP200)","vendor":"Siemens","versions":[{"lessThan":"*","status":"unaffected","version":"0","versionType":"custom"}]},{"defaultStatus":"unknown","product":"SIPROTEC 5 6MD86 (CP300)","vendor":"Siemens","versions":[{"lessThan":"V11.0","status":"affected","version":"0","versionType":"custom"}]},{"defaultStatus":"unknown","product":"SIPROTEC 5 6MD89 (CP300)","vendor":"Siemens","versions":[{"lessThan":"V11.0","status":"affected","version":"0","versionType":"custom"}]},{"defaultStatus":"unknown","product":"SIPROTEC 5 6MD89 (CP300) V9.6x","vendor":"Siemens","versions":[{"lessThan":"V11.0","status":"affected","version":"0","versionType":"custom"}]},{"defaultStatus":"unknown","product":"SIPROTEC 5 6MU85 (CP300)","vendor":"Siemens","versions":[{"lessThan":"V11.0","status":"affected","version":"0","versionType":"custom"}]},{"defaultStatus":"unknown","product":"SIPROTEC 5 7KE85 (CP200)","vendor":"Siemens","versions":[{"lessThan":"*","status":"unaffected","version":"0","versionType":"custom"}]},{"defaultStatus":"unknown","product":"SIPROTEC 5 7KE85 (CP300)","vendor":"Siemens","versions":[{"lessThan":"V11.0","status":"affected","version":"0","versionType":"custom"}]},{"defaultStatus":"unknown","product":"SIPROTEC 5 7SA82 (CP100)","vendor":"Siemens","versions":[{"lessThan":"*","status":"affected","version":"0","versionType":"custom"}]},{"defaultStatus":"unknown","product":"SIPROTEC 5 7SA82 (CP150)","vendor":"Siemens","versions":[{"lessThan":"V11.0","status":"affected","version":"0","versionType":"custom"}]},{"defaultStatus":"unknown","product":"SIPROTEC 5 7SA84 (CP200)","vendor":"Siemens","versions":[{"lessThan":"*","status":"unaffected","version":"0","versionType":"custom"}]},{"defaultStatus":"unknown","product":"SIPROTEC 5 7SA86 (CP200)","vendor":"Siemens","versions":[{"lessThan":"*","status":"unaffected","version":"0","versionType":"custom"}]},{"defaultStatus":"unknown","product":"SIPROTEC 5 7SA86 (CP300)","vendor":"Siemens","versions":[{"lessThan":"V11.0","status":"affected","version":"0","versionType":"custom"}]},{"defaultStatus":"unknown","product":"SIPROTEC 5 7SA87 (CP200)","vendor":"Siemens","versions":[{"lessThan":"*","status":"unaffected","version":"0","versionType":"custom"}]},{"defaultStatus":"unknown","product":"SIPROTEC 5 7SA87 (CP300)","vendor":"Siemens","versions":[{"lessThan":"V11.0","status":"affected","version":"0","versionType":"custom"}]},{"defaultStatus":"unknown","product":"SIPROTEC 5 7SD82 (CP100)","vendor":"Siemens","versions":[{"lessThan":"*","status":"affected","version":"0","versionType":"custom"}]},{"defaultStatus":"unknown","product":"SIPROTEC 5 7SD82 (CP150)","vendor":"Siemens","versions":[{"lessThan":"V11.0","status":"affected","version":"0","versionType":"custom"}]},{"defaultStatus":"unknown","product":"SIPROTEC 5 7SD84 (CP200)","vendor":"Siemens","versions":[{"lessThan":"*","status":"unaffected","version":"0","versionType":"custom"}]},{"defaultStatus":"unknown","product":"SIPROTEC 5 7SD86 (CP200)","vendor":"Siemens","versions":[{"lessThan":"*","status":"unaffected","version":"0","versionType":"custom"}]},{"defaultStatus":"unknown","product":"SIPROTEC 5 7SD86 (CP300)","vendor":"Siemens","versions":[{"lessThan":"V11.0","status":"affected","version":"0","versionType":"custom"}]},{"defaultStatus":"unknown","product":"SIPROTEC 5 7SD87 (CP200)","vendor":"Siemens","versions":[{"lessThan":"*","status":"unaffected","version":"0","versionType":"custom"}]},{"defaultStatus":"unknown","product":"SIPROTEC 5 7SD87 (CP300)","vendor":"Siemens","versions":[{"lessThan":"V11.0","status":"affected","version":"0","versionType":"custom"}]},{"defaultStatus":"unknown","product":"SIPROTEC 5 7SJ81 (CP100)","vendor":"Siemens","versions":[{"lessThan":"*","status":"affected","version":"0","versionType":"custom"}]},{"defaultStatus":"unknown","product":"SIPROTEC 5 7SJ81 (CP150)","vendor":"Siemens","versions":[{"lessThan":"V11.0","status":"affected","version":"0","versionType":"custom"}]},{"defaultStatus":"unknown","product":"SIPROTEC 5 7SJ82 (CP100)","vendor":"Siemens","versions":[{"lessThan":"*","status":"affected","version":"0","versionType":"custom"}]},{"defaultStatus":"unknown","product":"SIPROTEC 5 7SJ82 (CP150)","vendor":"Siemens","versions":[{"lessThan":"V11.0","status":"affected","version":"0","versionType":"custom"}]},{"defaultStatus":"unknown","product":"SIPROTEC 5 7SJ85 (CP200)","vendor":"Siemens","versions":[{"lessThan":"*","status":"unaffected","version":"0","versionType":"custom"}]},{"defaultStatus":"unknown","product":"SIPROTEC 5 7SJ85 (CP300)","vendor":"Siemens","versions":[{"lessThan":"V11.0","status":"affected","version":"0","versionType":"custom"}]},{"defaultStatus":"unknown","product":"SIPROTEC 5 7SJ86 (CP200)","vendor":"Siemens","versions":[{"lessThan":"*","status":"unaffected","version":"0","versionType":"custom"}]},{"defaultStatus":"unknown","product":"SIPROTEC 5 7SJ86 (CP300)","vendor":"Siemens","versions":[{"lessThan":"V11.0","status":"affected","version":"0","versionType":"custom"}]},{"defaultStatus":"unknown","product":"SIPROTEC 5 7SK82 (CP100)","vendor":"Siemens","versions":[{"lessThan":"*","status":"affected","version":"0","versionType":"custom"}]},{"defaultStatus":"unknown","product":"SIPROTEC 5 7SK82 (CP150)","vendor":"Siemens","versions":[{"lessThan":"V11.0","status":"affected","version":"0","versionType":"custom"}]},{"defaultStatus":"unknown","product":"SIPROTEC 5 7SK85 (CP200)","vendor":"Siemens","versions":[{"lessThan":"*","status":"unaffected","version":"0","versionType":"custom"}]},{"defaultStatus":"unknown","product":"SIPROTEC 5 7SK85 (CP300)","vendor":"Siemens","versions":[{"lessThan":"V11.0","status":"affected","version":"0","versionType":"custom"}]},{"defaultStatus":"unknown","product":"SIPROTEC 5 7SL82 (CP100)","vendor":"Siemens","versions":[{"lessThan":"*","status":"affected","version":"0","versionType":"custom"}]},{"defaultStatus":"unknown","product":"SIPROTEC 5 7SL82 (CP150)","vendor":"Siemens","versions":[{"lessThan":"V11.0","status":"affected","version":"0","versionType":"custom"}]},{"defaultStatus":"unknown","product":"SIPROTEC 5 7SL86 (CP200)","vendor":"Siemens","versions":[{"lessThan":"*","status":"unaffected","version":"0","versionType":"custom"}]},{"defaultStatus":"unknown","product":"SIPROTEC 5 7SL86 (CP300)","vendor":"Siemens","versions":[{"lessThan":"V11.0","status":"affected","version":"0","versionType":"custom"}]},{"defaultStatus":"unknown","product":"SIPROTEC 5 7SL87 (CP200)","vendor":"Siemens","versions":[{"lessThan":"*","status":"unaffected","version":"0","versionType":"custom"}]},{"defaultStatus":"unknown","product":"SIPROTEC 5 7SL87 (CP300)","vendor":"Siemens","versions":[{"lessThan":"V11.0","status":"affected","version":"0","versionType":"custom"}]},{"defaultStatus":"unknown","product":"SIPROTEC 5 7SS85 (CP200)","vendor":"Siemens","versions":[{"lessThan":"*","status":"unaffected","version":"0","versionType":"custom"}]},{"defaultStatus":"unknown","product":"SIPROTEC 5 7SS85 (CP300)","vendor":"Siemens","versions":[{"lessThan":"V11.0","status":"affected","version":"0","versionType":"custom"}]},{"defaultStatus":"unknown","product":"SIPROTEC 5 7ST85 (CP200)","vendor":"Siemens","versions":[{"lessThan":"*","status":"unaffected","version":"0","versionType":"custom"}]},{"defaultStatus":"unknown","product":"SIPROTEC 5 7ST85 (CP300)","vendor":"Siemens","versions":[{"lessThan":"V11.0","status":"affected","version":"0","versionType":"custom"}]},{"defaultStatus":"unknown","product":"SIPROTEC 5 7ST86 (CP300)","vendor":"Siemens","versions":[{"lessThan":"V11.0","status":"affected","version":"0","versionType":"custom"}]},{"defaultStatus":"unknown","product":"SIPROTEC 5 7SX82 (CP150)","vendor":"Siemens","versions":[{"lessThan":"V11.0","status":"affected","version":"0","versionType":"custom"}]},{"defaultStatus":"unknown","product":"SIPROTEC 5 7SX85 (CP300)","vendor":"Siemens","versions":[{"lessThan":"V11.0","status":"affected","version":"0","versionType":"custom"}]},{"defaultStatus":"unknown","product":"SIPROTEC 5 7SY82 (CP150)","vendor":"Siemens","versions":[{"lessThan":"V11.0","status":"affected","version":"0","versionType":"custom"}]},{"defaultStatus":"unknown","product":"SIPROTEC 5 7UM85 (CP300)","vendor":"Siemens","versions":[{"lessThan":"V11.0","status":"affected","version":"0","versionType":"custom"}]},{"defaultStatus":"unknown","product":"SIPROTEC 5 7UT82 (CP100)","vendor":"Siemens","versions":[{"lessThan":"*","status":"affected","version":"0","versionType":"custom"}]},{"defaultStatus":"unknown","product":"SIPROTEC 5 7UT82 (CP150)","vendor":"Siemens","versions":[{"lessThan":"V11.0","status":"affected","version":"0","versionType":"custom"}]},{"defaultStatus":"unknown","product":"SIPROTEC 5 7UT85 (CP200)","vendor":"Siemens","versions":[{"lessThan":"*","status":"unaffected","version":"0","versionType":"custom"}]},{"defaultStatus":"unknown","product":"SIPROTEC 5 7UT85 (CP300)","vendor":"Siemens","versions":[{"lessThan":"V11.0","status":"affected","version":"0","versionType":"custom"}]},{"defaultStatus":"unknown","product":"SIPROTEC 5 7UT86 (CP200)","vendor":"Siemens","versions":[{"lessThan":"*","status":"unaffected","version":"0","versionType":"custom"}]},{"defaultStatus":"unknown","product":"SIPROTEC 5 7UT86 (CP300)","vendor":"Siemens","versions":[{"lessThan":"V11.0","status":"affected","version":"0","versionType":"custom"}]},{"defaultStatus":"unknown","product":"SIPROTEC 5 7UT87 (CP200)","vendor":"Siemens","versions":[{"lessThan":"*","status":"unaffected","version":"0","versionType":"custom"}]},{"defaultStatus":"unknown","product":"SIPROTEC 5 7UT87 (CP300)","vendor":"Siemens","versions":[{"lessThan":"V11.0","status":"affected","version":"0","versionType":"custom"}]},{"defaultStatus":"unknown","product":"SIPROTEC 5 7VE85 (CP300)","vendor":"Siemens","versions":[{"lessThan":"V11.0","status":"affected","version":"0","versionType":"custom"}]},{"defaultStatus":"unknown","product":"SIPROTEC 5 7VK87 (CP200)","vendor":"Siemens","versions":[{"lessThan":"*","status":"unaffected","version":"0","versionType":"custom"}]},{"defaultStatus":"unknown","product":"SIPROTEC 5 7VK87 (CP300)","vendor":"Siemens","versions":[{"lessThan":"V11.0","status":"affected","version":"0","versionType":"custom"}]},{"defaultStatus":"unknown","product":"SIPROTEC 5 7VU85 (CP300)","vendor":"Siemens","versions":[{"lessThan":"V11.0","status":"affected","version":"0","versionType":"custom"}]},{"defaultStatus":"unknown","product":"SIPROTEC 5 Compact 7SX800 (CP050)","vendor":"Siemens","versions":[{"lessThan":"V11.0","status":"affected","version":"0","versionType":"custom"}]}],"descriptions":[{"lang":"en","value":"A vulnerability has been identified in SIPROTEC 5 6MD84 (CP300) (All versions < V11.0), SIPROTEC 5 6MD85 (CP200) (All versions), SIPROTEC 5 6MD85 (CP300) (All versions < V11.0), SIPROTEC 5 6MD86 (CP200) (All versions), SIPROTEC 5 6MD86 (CP300) (All versions < V11.0), SIPROTEC 5 6MD89 (CP300) (All versions < V11.0), SIPROTEC 5 6MD89 (CP300) V9.6x (All versions < V11.0), SIPROTEC 5 6MU85 (CP300) (All versions < V11.0), SIPROTEC 5 7KE85 (CP200) (All versions), SIPROTEC 5 7KE85 (CP300) (All versions < V11.0), SIPROTEC 5 7SA82 (CP100) (All versions), SIPROTEC 5 7SA82 (CP150) (All versions < V11.0), SIPROTEC 5 7SA84 (CP200) (All versions), SIPROTEC 5 7SA86 (CP200) (All versions), SIPROTEC 5 7SA86 (CP300) (All versions < V11.0), SIPROTEC 5 7SA87 (CP200) (All versions), SIPROTEC 5 7SA87 (CP300) (All versions < V11.0), SIPROTEC 5 7SD82 (CP100) (All versions), SIPROTEC 5 7SD82 (CP150) (All versions < V11.0), SIPROTEC 5 7SD84 (CP200) (All versions), SIPROTEC 5 7SD86 (CP200) (All versions), SIPROTEC 5 7SD86 (CP300) (All versions < V11.0), SIPROTEC 5 7SD87 (CP200) (All versions), SIPROTEC 5 7SD87 (CP300) (All versions < V11.0), SIPROTEC 5 7SJ81 (CP100) (All versions), SIPROTEC 5 7SJ81 (CP150) (All versions < V11.0), SIPROTEC 5 7SJ82 (CP100) (All versions), SIPROTEC 5 7SJ82 (CP150) (All versions < V11.0), SIPROTEC 5 7SJ85 (CP200) (All versions), SIPROTEC 5 7SJ85 (CP300) (All versions < V11.0), SIPROTEC 5 7SJ86 (CP200) (All versions), SIPROTEC 5 7SJ86 (CP300) (All versions < V11.0), SIPROTEC 5 7SK82 (CP100) (All versions), SIPROTEC 5 7SK82 (CP150) (All versions < V11.0), SIPROTEC 5 7SK85 (CP200) (All versions), SIPROTEC 5 7SK85 (CP300) (All versions < V11.0), SIPROTEC 5 7SL82 (CP100) (All versions), SIPROTEC 5 7SL82 (CP150) (All versions < V11.0), SIPROTEC 5 7SL86 (CP200) (All versions), SIPROTEC 5 7SL86 (CP300) (All versions < V11.0), SIPROTEC 5 7SL87 (CP200) (All versions), SIPROTEC 5 7SL87 (CP300) (All versions < V11.0), SIPROTEC 5 7SS85 (CP200) (All versions), SIPROTEC 5 7SS85 (CP300) (All versions < V11.0), SIPROTEC 5 7ST85 (CP200) (All versions), SIPROTEC 5 7ST85 (CP300) (All versions < V11.0), SIPROTEC 5 7ST86 (CP300) (All versions < V11.0), SIPROTEC 5 7SX82 (CP150) (All versions < V11.0), SIPROTEC 5 7SX85 (CP300) (All versions < V11.0), SIPROTEC 5 7SY82 (CP150) (All versions < V11.0), SIPROTEC 5 7UM85 (CP300) (All versions < V11.0), SIPROTEC 5 7UT82 (CP100) (All versions), SIPROTEC 5 7UT82 (CP150) (All versions < V11.0), SIPROTEC 5 7UT85 (CP200) (All versions), SIPROTEC 5 7UT85 (CP300) (All versions < V11.0), SIPROTEC 5 7UT86 (CP200) (All versions), SIPROTEC 5 7UT86 (CP300) (All versions < V11.0), SIPROTEC 5 7UT87 (CP200) (All versions), SIPROTEC 5 7UT87 (CP300) (All versions < V11.0), SIPROTEC 5 7VE85 (CP300) (All versions < V11.0), SIPROTEC 5 7VK87 (CP200) (All versions), SIPROTEC 5 7VK87 (CP300) (All versions < V11.0), SIPROTEC 5 7VU85 (CP300) (All versions < V11.0), SIPROTEC 5 Compact 7SX800 (CP050) (All versions < V11.0). The affected devices include session identifiers in URL requests for certain functionalities. This could allow an attacker to retrieve sensitive session data from browser history, logs, or other storage mechanisms, potentially leading to unauthorized access."}],"metrics":[{"cvssV3_1":{"baseScore":5.3,"baseSeverity":"MEDIUM","vectorString":"CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:N/A:N","version":"3.1"}},{"cvssV4_0":{"baseScore":6,"baseSeverity":"MEDIUM","vectorString":"CVSS:4.0/AV:N/AC:H/AT:N/PR:N/UI:P/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N","version":"4.0"}}],"problemTypes":[{"descriptions":[{"cweId":"CWE-598","description":"CWE-598: Use of GET Request Method With Sensitive Query Strings","lang":"en","type":"CWE"}]}],"providerMetadata":{"dateUpdated":"2026-05-12T08:20:43.164Z","orgId":"cec7a2ec-15b4-4faf-bd53-b40f371f3a77","shortName":"siemens"},"references":[{"url":"https://cert-portal.siemens.com/productcert/html/ssa-904646.html"}]}},"cveMetadata":{"assignerOrgId":"cec7a2ec-15b4-4faf-bd53-b40f371f3a77","assignerShortName":"siemens","cveId":"CVE-2025-40742","datePublished":"2025-07-08T10:35:02.095Z","dateReserved":"2025-04-16T08:39:30.029Z","dateUpdated":"2026-05-12T08:20:43.164Z","state":"PUBLISHED"},"dataType":"CVE_RECORD","dataVersion":"5.2"},"nvd":{"publishedDate":"2025-07-08 11:15:30","lastModifiedDate":"2026-05-12 10:16:41","problem_types":["CWE-598","CWE-598 CWE-598: Use of GET Request Method With Sensitive Query Strings"],"metrics":{"cvssMetricV40":[{"source":"productcert@siemens.com","type":"Secondary","cvssData":{"version":"4.0","vectorString":"CVSS:4.0/AV:N/AC:H/AT:N/PR:N/UI:P/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X","baseScore":6,"baseSeverity":"MEDIUM","attackVector":"NETWORK","attackComplexity":"HIGH","attackRequirements":"NONE","privilegesRequired":"NONE","userInteraction":"PASSIVE","vulnConfidentialityImpact":"HIGH","vulnIntegrityImpact":"NONE","vulnAvailabilityImpact":"NONE","subConfidentialityImpact":"NONE","subIntegrityImpact":"NONE","subAvailabilityImpact":"NONE","exploitMaturity":"NOT_DEFINED","confidentialityRequirement":"NOT_DEFINED","integrityRequirement":"NOT_DEFINED","availabilityRequirement":"NOT_DEFINED","modifiedAttackVector":"NOT_DEFINED","modifiedAttackComplexity":"NOT_DEFINED","modifiedAttackRequirements":"NOT_DEFINED","modifiedPrivilegesRequired":"NOT_DEFINED","modifiedUserInteraction":"NOT_DEFINED","modifiedVulnConfidentialityImpact":"NOT_DEFINED","modifiedVulnIntegrityImpact":"NOT_DEFINED","modifiedVulnAvailabilityImpact":"NOT_DEFINED","modifiedSubConfidentialityImpact":"NOT_DEFINED","modifiedSubIntegrityImpact":"NOT_DEFINED","modifiedSubAvailabilityImpact":"NOT_DEFINED","Safety":"NOT_DEFINED","Automatable":"NOT_DEFINED","Recovery":"NOT_DEFINED","valueDensity":"NOT_DEFINED","vulnerabilityResponseEffort":"NOT_DEFINED","providerUrgency":"NOT_DEFINED"}}],"cvssMetricV31":[{"source":"productcert@siemens.com","type":"Secondary","cvssData":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:N/A:N","baseScore":5.3,"baseSeverity":"MEDIUM","attackVector":"NETWORK","attackComplexity":"HIGH","privilegesRequired":"NONE","userInteraction":"REQUIRED","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"NONE","availabilityImpact":"NONE"},"exploitabilityScore":1.6,"impactScore":3.6}]},"configurations":[]},"legacy_mitre":{"record":{"CveYear":"2025","CveId":"40742","Ordinal":"1","Title":"CVE-2025-40742","CVE":"CVE-2025-40742","Year":"2025"},"notes":[{"CveYear":"2025","CveId":"40742","Ordinal":"1","NoteData":"A vulnerability has been identified in SIPROTEC 5 6MD84 (CP300) (All versions < V11.0), SIPROTEC 5 6MD85 (CP200) (All versions), SIPROTEC 5 6MD85 (CP300) (All versions < V11.0), SIPROTEC 5 6MD86 (CP200) (All versions), SIPROTEC 5 6MD86 (CP300) (All versions < V11.0), SIPROTEC 5 6MD89 (CP300) (All versions < V11.0), SIPROTEC 5 6MD89 (CP300) V9.6x (All versions < V11.0), SIPROTEC 5 6MU85 (CP300) (All versions < V11.0), SIPROTEC 5 7KE85 (CP200) (All versions), SIPROTEC 5 7KE85 (CP300) (All versions < V11.0), SIPROTEC 5 7SA82 (CP100) (All versions), SIPROTEC 5 7SA82 (CP150) (All versions < V11.0), SIPROTEC 5 7SA84 (CP200) (All versions), SIPROTEC 5 7SA86 (CP200) (All versions), SIPROTEC 5 7SA86 (CP300) (All versions < V11.0), SIPROTEC 5 7SA87 (CP200) (All versions), SIPROTEC 5 7SA87 (CP300) (All versions < V11.0), SIPROTEC 5 7SD82 (CP100) (All versions), SIPROTEC 5 7SD82 (CP150) (All versions < V11.0), SIPROTEC 5 7SD84 (CP200) (All versions), SIPROTEC 5 7SD86 (CP200) (All versions), SIPROTEC 5 7SD86 (CP300) (All versions < V11.0), SIPROTEC 5 7SD87 (CP200) (All versions), SIPROTEC 5 7SD87 (CP300) (All versions < V11.0), SIPROTEC 5 7SJ81 (CP100) (All versions), SIPROTEC 5 7SJ81 (CP150) (All versions < V11.0), SIPROTEC 5 7SJ82 (CP100) (All versions), SIPROTEC 5 7SJ82 (CP150) (All versions < V11.0), SIPROTEC 5 7SJ85 (CP200) (All versions), SIPROTEC 5 7SJ85 (CP300) (All versions < V11.0), SIPROTEC 5 7SJ86 (CP200) (All versions), SIPROTEC 5 7SJ86 (CP300) (All versions < V11.0), SIPROTEC 5 7SK82 (CP100) (All versions), SIPROTEC 5 7SK82 (CP150) (All versions < V11.0), SIPROTEC 5 7SK85 (CP200) (All versions), SIPROTEC 5 7SK85 (CP300) (All versions < V11.0), SIPROTEC 5 7SL82 (CP100) (All versions), SIPROTEC 5 7SL82 (CP150) (All versions < V11.0), SIPROTEC 5 7SL86 (CP200) (All versions), SIPROTEC 5 7SL86 (CP300) (All versions < V11.0), SIPROTEC 5 7SL87 (CP200) (All versions), SIPROTEC 5 7SL87 (CP300) (All versions < V11.0), SIPROTEC 5 7SS85 (CP200) (All versions), SIPROTEC 5 7SS85 (CP300) (All versions < V11.0), SIPROTEC 5 7ST85 (CP200) (All versions), SIPROTEC 5 7ST85 (CP300) (All versions < V11.0), SIPROTEC 5 7ST86 (CP300) (All versions < V11.0), SIPROTEC 5 7SX82 (CP150) (All versions < V11.0), SIPROTEC 5 7SX85 (CP300) (All versions < V11.0), SIPROTEC 5 7SY82 (CP150) (All versions < V11.0), SIPROTEC 5 7UM85 (CP300) (All versions < V11.0), SIPROTEC 5 7UT82 (CP100) (All versions), SIPROTEC 5 7UT82 (CP150) (All versions < V11.0), SIPROTEC 5 7UT85 (CP200) (All versions), SIPROTEC 5 7UT85 (CP300) (All versions < V11.0), SIPROTEC 5 7UT86 (CP200) (All versions), SIPROTEC 5 7UT86 (CP300) (All versions < V11.0), SIPROTEC 5 7UT87 (CP200) (All versions), SIPROTEC 5 7UT87 (CP300) (All versions < V11.0), SIPROTEC 5 7VE85 (CP300) (All versions < V11.0), SIPROTEC 5 7VK87 (CP200) (All versions), SIPROTEC 5 7VK87 (CP300) (All versions < V11.0), SIPROTEC 5 7VU85 (CP300) (All versions < V11.0), SIPROTEC 5 Compact 7SX800 (CP050) (All versions < V11.0). The affected devices include session identifiers in URL requests for certain functionalities. This could allow an attacker to retrieve sensitive session data from browser history, logs, or other storage mechanisms, potentially leading to unauthorized access.","Type":"Description","Title":"CVE-2025-40742"}]}}}