SIEMENS-SSA-734261
·
Published 2025-12-09
·
View on Siemens ProductCERT ↗
SSA-734261 V1.0: Authentication Bypass Vulnerability in Energy Services Using Elspec G5DFR
CVSS N/A
MEDIUM
Risk Summary
<p>Energy Services from Siemens (previously known as Managed Applications and Services), sell solutions using Elspec G5 devices that allows a person with physical access to the device to reset the Admin password by inserting a USB drive (containing a publicly documented reset string) into a USB port.</p>
Remediations
- Refer to Siemens ProductCERT advisory for patch and remediation guidance.
Affected Vendors
Siemens
Affected Products (1)
Siemens
·
SSA-734261 V1.0: Authentication Bypass Vulnerability in Energy Services Using Elspec G5DFR
See advisory
Get alerted to advisories like this
OTWarden monitors CISA, BSI, Siemens, Rockwell and more — and emails you within 2 hours when your vendors are affected.
Start free trial Learn more