CVE-2026-25787Patch

LOWCVSS 9.3 · CRITICAL

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Patch affected systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

Affected devices do not properly validate and sanitize Technology Object (TO) name rendered on the "Motion Control Diagnostics" page of the web interface. This could allow an authenticated attacker who is authorized to download a TIA project into the product, to inject malicious scripts into the page. If a benign user with appropriate rights accesses the "Motion Control Diagnostics" parameters page, the malicious code would be executed in the scope of their web session.

0.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-79

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

AVAILABLE

Momentum

STABLE

Threat summary

  • Patch or workaround signal is available
  • 2 mentions across 2 observed days
  • Momentum state: stable

What's happening

  • Patch or workaround mentioned in 1 signal
  • Disclosure: 1 classified signal
  • Peaked 1d ago at 1 mentions (2026-05-13); latest day: 1
  • 2 total mentions across 2 days

Deep dive

Activity timeline2 mentions / 2d
00111Mentions · 2026-05-13: 1Mentions · 2026-05-19: 1Patch / Workaround · 2026-05-13: 105-1305-19
Signal classification2 categories
Patch
150.0%
Disclosure
150.0%
Referenced assets1 URL
By indicator
Classification over time
DateTotalLabels
2026-05-131
Patch1
2026-05-191
Disclosure1
Full discourse2 posts
  • CERT-PY@CERTpy
    Disclosure

    ⚠️ Vulnerabilidades en productos Siemens ❗ CVE-2026-25787 ❗ CVE-2026-25786 ❗ CVE-2025-40949 ➡️ Más info: https://www.cert.gov.py/vulnerabilidades-en-productos-siemens-6/ https://t.co/UF347jb2IS

    Post summary

    The post announces several new vulnerabilities affecting Siemens products, listing CVE-2026-25787, CVE-2026-25786, and CVE-2025-40949, and directs readers to external links for additional information.

    000001.2K
    6.7K followersView on X
  • Cyber Netsec IO@NetSecIO
    Patch

    Siemens drops 18 security advisories for ICS Patch Tuesday, fixing critical flaws in SIMATIC S7 PLCs and RUGGEDCOM devices. Key bugs (CVE-2026-25786, CVE-2026-25787) could lead to device takeover. 🏭 #ICSsecurity #OTsecurity #Siemens #PLC https://t.co/mDaB4b5JOR

    Post summary

    Siemens released 18 advisories to fix critical vulnerabilities (CVE‑2026‑25786, CVE‑2026‑25787) that could enable device takeover on SIMATIC S7 PLCs and RUGGEDCOM devices.

    0000077
    53 followersView on X

Explore more