CVE-2025-29999: Siemens License Server Sls
Medium severity, CVSS 6.7. EPSS: 0.2% chance of exploitation in the next 30 days.
A vulnerability has been identified in Siemens License Server (SLS) (All versions < V4.3). The affected application searches for executable files in the application folder without proper validation. This could allow an attacker to execute arbitrary code with administrative privileges by placing a malicious executable in the same directory.
Affected products
- Siemens Siemens License Server Sls: before V4.3 (fixed in V4.3)
Published 2025-04-08. Last modified 2026-06-17.