
🔴 Siemens SIMOVE Fleetmanager, SIPLANT path traversal flaw exposes credentials Siemens released patches for path traversal vulnerability (CVE-2026-67367) affecting SIMOVE Fleetmanager versions 3.1–4.0 and SIPLANT versions 1.7–3.1. Unauthenticated remote attackers can read arbitrary files from the operating system, potentially exposing credential stores, private keys, and configuration secrets. • SIMOVE Fleetmanager V3.1 < 3.1.13, V3.2 < 3.2.4, V3.3 < 3.3.2, V4.0 < 4.0.1 • SIPLANT V1.7, V2.2, V3.0, and V3.1 < 3.1.4 • Deployed worldwide in critical manufacturing infrastructure

