CVE-2020-25229: Siemens Logo! 8 Bm Firmware

High severity, CVSS 7.5. EPSS: 0.6% chance of exploitation in the next 30 days.

A vulnerability has been identified in LOGO! 8 BM (incl. SIPLUS variants) (All versions < V8.3). The implemented encryption for communication with affected devices is prone to replay attacks due to the usage of a static key. An attacker could change the password or change the configuration on any affected device if using prepared messages that were generated for another device.

Affected products

  • Siemens Logo! 8 Bm Firmware: before 8.3 (fixed in 8.3)

Published 2020-12-14. Last modified 2026-06-17.