CVE-2023-25367: Siglent SDS1074X-E Firmware

Critical severity, CVSS 9.8. EPSS: 1.7% chance of exploitation in the next 30 days.

Siglent SDS 1104X-E SDS1xx4X-E_V6.1.37R9.ADS allows unfiltered user input resulting in Remote Code Execution (RCE) with SCPI interface or web server.

Affected products

  • Siglent SDS1074X-E Firmware: version 6.1.37r9.ads only
  • Siglent SDS1104X-E Firmware: version 6.1.37r9.ads only
  • Siglent SDS1204X-E Firmware: version 6.1.37r9.ads only

Published 2023-06-14. Last modified 2026-06-17.