Vulnerability Details CVE-2025-40942
A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.4). Affected application contains a local privilege escalation vulnerability that could allow an attacker to run arbitrary code with elevated privileges.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.0
EPSS Ranking 2.1%
CVSS Severity
CVSS v3 Score 8.8
Products affected by CVE-2025-40942
-
cpe:2.3:a:siemens:telecontrol_server_basic:3.0
-
cpe:2.3:a:siemens:telecontrol_server_basic:3.1
-
cpe:2.3:a:siemens:telecontrol_server_basic:3.1.0.1
-
cpe:2.3:a:siemens:telecontrol_server_basic:3.1.2
-
cpe:2.3:a:siemens:telecontrol_server_basic:3.1.2.1