CVE-2023-43503: Siemens Comos

High severity, CVSS 7.5. EPSS: 0.3% chance of exploitation in the next 30 days.

A vulnerability has been identified in COMOS (All versions < V10.4.4). Caching system in the affected application leaks sensitive information such as user and project information in cleartext via UDP.

Affected products

  • Siemens Comos: before 10.4.4 (fixed in 10.4.4)

Published 2023-11-14. Last modified 2026-06-17.