CVE-2024-31486: Siemens OPUPI0 Amqp/mqtt

Medium severity, CVSS 5.3. EPSS: 0.5% chance of exploitation in the next 30 days.

A vulnerability has been identified in OPUPI0 AMQP/MQTT (All versions < V5.30). The affected devices stores MQTT client passwords without sufficient protection on the devices. An attacker with remote shell access or physical access could retrieve the credentials leading to confidentiality loss.

Affected products

  • Siemens OPUPI0 Amqp/mqtt: before V5.30 (fixed in V5.30)

Published 2024-05-14. Last modified 2026-06-17.