8.7
HIGH CVSS 4.0
CVE-2025-40833
Aruba Networks IPv4 Request Denial of Service
Description

The affected devices contain a null pointer dereference vulnerability while processing specially crafted IPv4 requests. This could allow an attacker to cause denial of service condition. A manual restart is required to recover the system.

INFO

Published Date :

May 12, 2026, 10:16 a.m.

Last Modified :

May 12, 2026, 2:19 p.m.

Remotely Exploit :

Yes !
Affected Products

The following products are affected by CVE-2025-40833 vulnerability. Even if cvefeed.io is aware of the exact versions of the products that are affected, the information is not represented in the table below.

ID Vendor Product Action
1 Siemens simatic_s7-1500_cpu_1511-1_pn_firmware
2 Siemens simatic_s7-1500_cpu_1511f-1_pn_firmware
3 Siemens simatic_s7-1500_cpu_1513-1_pn_firmware
4 Siemens simatic_s7-1500_cpu_1515-2_pn_firmware
5 Siemens simatic_s7-1500_cpu_1515f-2_pn_firmware
6 Siemens simatic_s7-1500_cpu_1516-3_pn\/dp_firmware
7 Siemens simatic_s7-1500_cpu_1516f-3_pn\/dp_firmware
8 Siemens scalance_xm408-4c_firmware
9 Siemens scalance_xm408-8c_firmware
10 Siemens scalance_xm416-4c_firmware
11 Siemens scalance_xr528-6m_firmware
12 Siemens scalance_xr552-12m_firmware
13 Siemens scalance_sc632-2c_firmware
14 Siemens scalance_sc636-2c_firmware
15 Siemens scalance_sc642-2c_firmware
16 Siemens scalance_sc646-2c_firmware
17 Siemens scalance_sc622-2c_firmware
18 Siemens scalance_x204-2_firmware
19 Siemens scalance_x204-2fm_firmware
20 Siemens scalance_x204-2ld_firmware
21 Siemens scalance_x204-2ld_ts_firmware
22 Siemens scalance_x204-2ts_firmware
23 Siemens scalance_x206-1_firmware
24 Siemens scalance_x206-1ld_firmware
25 Siemens scalance_x208_firmware
26 Siemens scalance_x212-2_firmware
27 Siemens scalance_x212-2ld_firmware
28 Siemens scalance_x216_firmware
29 Siemens scalance_x224_firmware
30 Siemens scalance_xf204_firmware
31 Siemens scalance_xf204-2_firmware
32 Siemens scalance_xf206-1_firmware
33 Siemens scalance_xf208_firmware
34 Siemens sinamics_g130_firmware
35 Siemens sinamics_g150_firmware
36 Siemens sinumerik_840d_sl_firmware
37 Siemens scalance_x208pro_firmware
38 Siemens scalance_x304-2fe_firmware
39 Siemens scalance_x307-3_firmware
40 Siemens scalance_x307-3ld_firmware
41 Siemens scalance_x308-2_firmware
42 Siemens scalance_x308-2ld_firmware
43 Siemens scalance_x308-2lh_firmware
44 Siemens scalance_x308-2lh\+_firmware
45 Siemens scalance_x308-2m_firmware
46 Siemens scalance_x308-2m_poe_firmware
47 Siemens scalance_x308-2m_ts_firmware
48 Siemens scalance_x310_firmware
49 Siemens scalance_x310fe_firmware
50 Siemens simatic_cfu_pa_firmware
51 Siemens scalance_m804pb_firmware
52 Siemens scalance_m874-2_firmware
53 Siemens scalance_m874-3_firmware
54 Siemens scalance_m876-3_firmware
55 Siemens scalance_m876-4_firmware
56 Siemens siplus_s7-300_cpu_315-2_pn\/dp_firmware
57 Siemens siplus_s7-300_cpu_317-2_pn\/dp_firmware
58 Siemens ruggedcom_rm1224_lte\(4g\)_eu_firmware
59 Siemens ruggedcom_rm1224_lte\(4g\)_nam_firmware
60 Siemens scalance_m812-1_adsl-router_firmware
61 Siemens scalance_m816-1_adsl-router_firmware
62 Siemens scalance_m826-2_shdsl-router_firmware
63 Siemens scalance_sc626-2c_firmware
64 Siemens scalance_w721-1_rj45_firmware
65 Siemens scalance_w722-1_rj45_firmware
66 Siemens scalance_w734-1_rj45_firmware
67 Siemens scalance_w738-1_m12_firmware
68 Siemens scalance_w748-1_m12_firmware
69 Siemens scalance_w761-1_rj45_firmware
70 Siemens scalance_w774-1_m12_eec_firmware
71 Siemens scalance_w774-1_rj45_firmware
72 Siemens scalance_w778-1_m12_firmware
73 Siemens scalance_w778-1_m12_eec_firmware
74 Siemens scalance_w786-1_rj45_firmware
75 Siemens scalance_w786-2_rj45_firmware
76 Siemens scalance_w786-2_sfp_firmware
77 Siemens scalance_w786-2ia_rj45_firmware
78 Siemens scalance_w788-1_m12_firmware
79 Siemens scalance_w788-1_rj45_firmware
80 Siemens scalance_w788-2_m12_firmware
81 Siemens scalance_w788-2_m12_eec_firmware
82 Siemens scalance_w1748-1_m12_firmware
83 Siemens scalance_w1788-1_m12_firmware
84 Siemens scalance_w1788-2_eec_m12_firmware
85 Siemens scalance_w1788-2_m12_firmware
86 Siemens scalance_w1788-2ia_m12_firmware
87 Siemens scalance_wam763-1_firmware
88 Siemens scalance_wam766-1_firmware
89 Siemens scalance_wum763-1_firmware
90 Siemens scalance_wum766-1_firmware
91 Siemens simatic_s7-300_cpu_319-3_pn\/dp_firmware
92 Siemens simatic_s7-300_cpu_315-2_pn\/dp_firmware
93 Siemens simatic_s7-300_cpu_317-2_pn\/dp_firmware
94 Siemens sinamics_s150_firmware
95 Siemens scalance_x408-2_firmware
96 Siemens simatic_cfu_diq_firmware
97 Siemens scalance_m874-3_3g-router_\(cn\)_firmware
98 Siemens scalance_m876-3_\(rok\)_firmware
99 Siemens scalance_m876-4_\(eu\)_firmware
100 Siemens scalance_m876-4_\(nam\)_firmware
101 Siemens scalance_mum853-1_\(a1\)_firmware
102 Siemens scalance_mum853-1_\(b1\)_firmware
103 Siemens scalance_mum853-1_\(eu\)_firmware
104 Siemens scalance_mum856-1_\(a1\)_firmware
105 Siemens scalance_mum856-1_\(b1\)_firmware
106 Siemens scalance_mum856-1_\(cn\)_firmware
107 Siemens scalance_mum856-1_\(eu\)_firmware
108 Siemens scalance_mum856-1_\(row\)_firmware
109 Siemens scalance_s615_eec_lan-router_firmware
110 Siemens scalance_s615_lan-router_firmware
CVSS Scores
The Common Vulnerability Scoring System is a standardized framework for assessing the severity of vulnerabilities in software and systems. We collect and displays CVSS scores from various sources for each CVE.
Score Version Severity Vector Exploitability Score Impact Score Source
CVSS 3.1 HIGH [email protected]
CVSS 3.1 HIGH MITRE-CVE
CVSS 4.0 HIGH [email protected]
Solution
Address null pointer dereference in IPv4 processing to prevent denial of service.
  • Update device firmware to the latest version.
  • Restart affected devices manually.
  • Apply vendor patches when available.
References to Advisories, Solutions, and Tools

Here, you will find a curated list of external links that provide in-depth information, practical solutions, and valuable tools related to CVE-2025-40833.

URL Resource
https://cert-portal.siemens.com/productcert/html/ssa-392349.html
CWE - Common Weakness Enumeration

While CVE identifies specific instances of vulnerabilities, CWE categorizes the common flaws or weaknesses that can lead to vulnerabilities. CVE-2025-40833 is associated with the following CWEs:

Common Attack Pattern Enumeration and Classification (CAPEC)

Common Attack Pattern Enumeration and Classification (CAPEC) stores attack patterns, which are descriptions of the common attributes and approaches employed by adversaries to exploit the CVE-2025-40833 weaknesses.

We scan GitHub repositories to detect new proof-of-concept exploits. Following list is a collection of public exploits and proof-of-concepts, which have been published on GitHub (sorted by the most recently updated).

Results are limited to the first 15 repositories due to potential performance issues.

The following list is the news that have been mention CVE-2025-40833 vulnerability anywhere in the article.

The following table lists the changes that have been made to the CVE-2025-40833 vulnerability over time.

Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability's severity, exploitability, or other characteristics.

  • New CVE Received by [email protected]

    May. 12, 2026

    Action Type Old Value New Value
    Added Description The affected devices contain a null pointer dereference vulnerability while processing specially crafted IPv4 requests. This could allow an attacker to cause denial of service condition. A manual restart is required to recover the system.
    Added CVSS V4.0 AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
    Added CVSS V3.1 AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
    Added CWE CWE-476
    Added Reference https://cert-portal.siemens.com/productcert/html/ssa-392349.html
EPSS is a daily estimate of the probability of exploitation activity being observed over the next 30 days. Following chart shows the EPSS score history of the vulnerability.