CVE-2020-25232: Siemens Logo! 8 Bm Firmware

High severity, CVSS 7.5. EPSS: 0.8% chance of exploitation in the next 30 days.

A vulnerability has been identified in LOGO! 8 BM (incl. SIPLUS variants) (All versions < V8.3). Due to the usage of an insecure random number generation function and a deprecated cryptographic function, an attacker could extract the key that is used when communicating with an affected device on port 8080/tcp.

Affected products

  • Siemens Logo! 8 Bm Firmware: before 8.3 (fixed in 8.3)

Published 2020-12-14. Last modified 2026-06-17.