https://cert-portal.siemens.com/productcert/html/ssa-019113.html
https://cert-portal.siemens.com/productcert/html/ssa-032379.html
https://support.industry.siemens.com/cs/ww/en/view/109814144/
Severity: Medium
ID: 505702
File Name: tenable_ot_siemens_CVE-2025-38725.nasl
Version: 1.2
Type: Remote
Family: Tenable.ot
Published: 7/27/2026
Updated: 7/28/2026
Supported Sensors: Tenable OT Security
Risk Factor: Low
Score: 3
Percentile: 23.15
Risk Factor: Medium
Base Score: 4.6
Temporal Score: 3.4
Vector: CVSS2#AV:L/AC:L/Au:S/C:N/I:N/A:C
CVSS Score Source: CVE-2025-38725
Risk Factor: Medium
Base Score: 5.5
Temporal Score: 4.8
Vector: CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Temporal Vector: CVSS:3.0/E:U/RL:O/RC:C
CPE: cpe:/o:siemens:simatic_s7-1500_cpu_firmware:3.1.6, cpe:/o:siemens:siplus_s7-1500_cpu_firmware
Required KB Items: Tenable.ot/Siemens
Exploit Ease: No known exploits are available
Patch Publication Date: 5/12/2026
Vulnerability Publication Date: 9/4/2025
CVE: CVE-2025-38725
CWE: 20