CVE-2025-40803

A vulnerability has been identified in RUGGEDCOM RST2428P (6GK6242-6PA00) (All versions). The affected device exposes certain non-critical information from the device. This could allow an unauthenticated attacker to access sensitive data, potentially leading to a breach of confidentiality.
References
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:siemens:ruggedcom_rst2428p_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:siemens:ruggedcom_rst2428p:*:*:*:*:*:*:*:*

History

03 Oct 2025, 19:36

Type Values Removed Values Added
First Time Siemens
Siemens ruggedcom Rst2428p
Siemens ruggedcom Rst2428p Firmware
References () https://cert-portal.siemens.com/productcert/html/ssa-494539.html - () https://cert-portal.siemens.com/productcert/html/ssa-494539.html - Vendor Advisory
CPE cpe:2.3:h:siemens:ruggedcom_rst2428p:*:*:*:*:*:*:*:*
cpe:2.3:o:siemens:ruggedcom_rst2428p_firmware:*:*:*:*:*:*:*:*

09 Sep 2025, 09:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-09-09 09:15

Updated : 2025-10-03 19:36


NVD link : CVE-2025-40803

Mitre link : CVE-2025-40803

CVE.ORG link : CVE-2025-40803


JSON object : View

Products Affected

siemens

  • ruggedcom_rst2428p_firmware
  • ruggedcom_rst2428p
CWE
CWE-200

Exposure of Sensitive Information to an Unauthorized Actor