CVE-2026-22925: Siemens SIMATIC Cn 4100 Firmware

High severity, CVSS 7.5. EPSS: 0.3% chance of exploitation in the next 30 days.

A vulnerability has been identified in SIMATIC CN 4100 (All versions < V5.0). The affected application is susceptible to resource exhaustion when subjected to high volume of TCP SYN packets This could allow an attacker to render the service unavailable and cause denial-of-service conditions by overwhelming system resources.

Affected products

  • Siemens SIMATIC Cn 4100 Firmware: before 5.0 (fixed in 5.0)

Published 2026-05-12. Last modified 2026-06-29.