CVE Tools

Simatic Cn 4100 Firmware

19 CVEs tracked. 1 of them are in CISA KEV.

This hub aggregates every CVE we track for Simatic Cn 4100 Firmware, a product in the ics ot iot space. Use it to gauge the current risk picture and drill into individual advisories.

Simatic Cn 4100 Firmware CVEs per month

Oct 2024 to Sep 2026. Point at a month, or focus the strip and use the arrow keys.
Simatic Cn 4100 Firmware CVEs per month
MonthCVEs
2024-100
2024-110
2024-120
2025-010
2025-020
2025-030
2025-040
2025-050
2025-060
2025-071
2025-081
2025-090
2025-100
2025-110
2025-125
2026-010
2026-020
2026-031
2026-041
2026-052
2026-060
2026-070
2026-080
2026-090

Severity

How the 19 CVEs score on CVSS. Severity is not exploitation: KEV is counted above.

  • Critical526%
  • High947%
  • Medium526%

Latest CVEs

The 15 most recently published vulnerabilities affecting Simatic Cn 4100 Firmware.

  1. CVE-2026-22925A vulnerability has been identified in SIMATIC CN 4100 (All versions < V5.0). The affected application is susceptible to resource exhaustion when subjected to high volume of TCP SYN packets This c...7.5
  2. CVE-2026-22924A vulnerability has been identified in SIMATIC CN 4100 (All versions < V5.0). The affected application does not properly restrict unauthenticated connections and is susceptible to resource exhausti...9.1
  3. CVE-2026-31431crypto: algif_aead - Revert to operating out-of-place7.8
  4. CVE-2026-2673OpenSSL TLS 1.3 server may choose unexpected key agreement group6.5
  5. CVE-2025-40941A vulnerability has been identified in SIMATIC CN 4100 (All versions < V4.0.1). The affected devices exposes server information in its responses. This could allow an attacker with network access t...4.3
  6. CVE-2025-40940A vulnerability has been identified in SIMATIC CN 4100 (All versions < V4.0.1). The affected application exhibits inconsistent SNMP behavior, such as unexpected service availability and unreliable ...4.9
  7. CVE-2025-40939A vulnerability has been identified in SIMATIC CN 4100 (All versions < V4.0.1). The affected device contains a USB port which allows unauthenticated connections. This could allow an attacker with p...4.6
  8. CVE-2025-40938A vulnerability has been identified in SIMATIC CN 4100 (All versions < V4.0.1). The affected device stores sensitive information in the firmware. This could allow an attacker to access and misuse t...8.1
  9. CVE-2025-40937A vulnerability has been identified in SIMATIC CN 4100 (All versions < V4.0.1). The affected application do not properly validate input parameters in its REST API, resulting in improper handling of...8.3
  10. CVE-2025-38502bpf: Fix oob access in cgroup local storage7.8
  11. CVE-2025-40593A vulnerability has been identified in SIMATIC CN 4100 (All versions < V4.0). The affected application allows to control the device by storing arbitrary files in the SFTP folder of the device. This...6.5
  12. CVE-2024-32742A vulnerability has been identified in SIMATIC CN 4100 (All versions < V3.0). The affected device contains an unrestricted USB port. An attacker with local access to the device could potentially mi...7.6
  13. CVE-2024-32741A vulnerability has been identified in SIMATIC CN 4100 (All versions < V3.0). The affected device contains hard coded password which is used for the privileged system user `root` and for the boot l...10.0
  14. CVE-2024-32740A vulnerability has been identified in SIMATIC CN 4100 (All versions < V3.0). The affected device contains undocumented users and credentials. An attacker could misuse the credentials to compromise...9.8
  15. CVE-2023-49621A vulnerability has been identified in SIMATIC CN 4100 (All versions < V2.7). The "intermediate installation" system state of the affected application uses default credential with admin privileges....9.8

Product grouping is registry-driven, with AI assist and human review. How it works

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store