CVE-2025-23365

7.8

Siemens · TIA Administrator

A vulnerability in Siemens TIA Administrator allows low privileged users to achieve privilege escalation and arbitrary code execution by manipulating cache files and the download path.

Executive summary

A critical privilege escalation vulnerability in Siemens TIA Administrator allows low privileged users to execute arbitrary code, posing a severe risk to system integrity.

Vulnerability

This vulnerability is an improper access control flaw (CWE-284) that allows a low privileged, authenticated user to overwrite cache files and modify the application download path to trigger unauthorized installations.

Business impact

The ability to execute arbitrary code with elevated privileges grants an attacker full control over the affected system. Given the CVSS score of 7.8, this represents a high severity risk that could lead to complete system compromise, the installation of malicious software, or unauthorized access to sensitive operational technology data.

Remediation

Immediate Action: Update Siemens TIA Administrator to version V3.0.6 or later immediately to resolve the access control flaw.

Proactive Monitoring: Review system logs for unauthorized file modifications or unexpected software installation events initiated by standard user accounts.

Compensating Controls: Restrict local access to the server hosting TIA Administrator to authorized personnel only to limit the ability of low privileged users to interact with sensitive cache directories.

Exploitation status

Public Exploit Available: No (exploit_available: false)

Analyst recommendation

Organizations utilizing Siemens TIA Administrator must prioritize patching to version V3.0.6 to eliminate this critical privilege escalation vector. Failure to update the software leaves systems vulnerable to local attackers who could gain unauthorized administrative control, potentially impacting the reliability and safety of the industrial environment.

More Siemens CVEs

Sources