CVE-2023-45853

CRITICAL

View CSAF Summary CADRA is affected by multiple zlib and Foxit vulnerabilities. Siemens has released a new version for CADRA and recommends to update to the latest version. Siemens is preparing fur...

Affects 2 products across 3 vendors.

BCS7.99
CVSS 3.19.8
EPSS3.2%
Percentile87th
PatchUnknown
CVSS Vector — Plain English Remotely exploitable over the network, low complexity, no authentication required, no user interaction needed, impact contained to the vulnerable component, full confidentiality impact, full integrity impact, full availability impact.
CWE Weakness Definitions
CWE-190: Integer Overflow or Wraparound

Arithmetic operation exceeds the maximum integer value, wrapping around and often leading to undersized allocations.

Related Attack Patterns (CAPEC)
CAPEC-92 Forced Integer Overflow
via CWE-190

Mapping is CWE-to-CAPEC per MITRE CAPEC 3.9.

◆ SAGE Intelligence — CITED Relevance Research Team

CVE-2023-45853 affects MiniZip in zlib versions up to 1.3, leading to an integer overflow and heap-based buffer overflow when handling long filenames, comments, or extra fields. This vulnerability has a CVSS score of 9.8, indicating a critical severity level. Affected vendors include Fujitsu-Siemens, Siemens, Smihica, and Zlib. No public proof of concept or known exploits exist, and the EPSS score is low, suggesting a minimal likelihood of exploitation in the wild. However, due to the critical nature of the vulnerability, immediate action is recommended to mitigate potential risks in ICS/OT environments.

BSID: BS-2023-GLOBAL-055283-C • Model: Qwen/Qwen2.5-72B-Instruct-AWQ • Confidence: MEDIUM

Is this CVE in your environment?

BreachSpider monitors your ICS/OT environment for vulnerabilities like this one. No agents or network access required. Free to start.

Check My Environment →
Frequently Asked Questions
What is CVE-2023-45853?
CVE-2023-45853 affects MiniZip in zlib versions up to 1.3, leading to an integer overflow and heap-based buffer overflow when handling long filenames, comments, or extra fields. This vulnerability has a CVSS score of 9.8, indicating a critical severity level. Affected vendors include Fujitsu-Siemens, Siemens, Smihica, and Zlib. No public proof of concept or known exploits exist, and the EPSS score is low, suggesting a minimal likelihood of exploitation in the wild. However, due to the critical n
What is the CVSS score for CVE-2023-45853?
CVE-2023-45853 has CVSS 9.8 (Critical). Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H. EPSS: 3.2%.
Is CVE-2023-45853 actively exploited?
No confirmed active exploitation of CVE-2023-45853 as of 2026-07-22.
How do I remediate CVE-2023-45853?
Priority: MEDIUM. Advisory: https://chromium.googlesource.com/chromium/src/+/d709fb23806858847131027da95ef4c548813356
What systems are affected by CVE-2023-45853?
CVE-2023-45853 affects: Siemens, Smihica, Zlib.
What NERC-CIP standard applies to CVE-2023-45853?
NERC CIP CIP-007 CIP-007-R2: This CVE violates CIP-007-R2 because it allows unauthorized access to and control of electronic security perimeters, which can compromise the security of critical cyber assets.
What IEC 62443 requirement maps to CVE-2023-45853?
IEC 62443 SR 7.6: This CVE maps to SR 7.6 because it involves a vulnerability that can be exploited to cause a denial of service or unauthorized access, which can impact the availability and integrity of industrial control systems.
Vulnerability Details
CVE IDCVE-2023-45853
BSIDBS-2023-GLOBAL-055283-C BreachSpider Global ID
CVSS VectorCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Published2026-07-21
Last Modified2026-07-21
ICS Relevance55%
Weakness (CWE)
Verticals
ICS-OT
SourceNVD
Official Description

View CSAF Summary CADRA is affected by multiple zlib and Foxit vulnerabilities. Siemens has released a new version for CADRA and recommends to update to the latest version. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available. The following versions of Siemens CADRA are affected: CADRA vers:intdot/<2511, vers:all/* CVSS Vendor Equipment Vulnerabilities v3 9.8 Siemens Siemens CADRA Improper Input Validation, Incor

Source: NIST NVD / MITRE CVE Database

Attack Vector Analysis — CITED Relevance

The vulnerability can be exploited remotely without authentication, requiring only network access to the affected system. An attacker can trigger the integer overflow and heap-based buffer overflow by providing a specially crafted long filename, comment, or extra field during the creation of a new file in a ZIP archive. This can lead to arbitrary code execution, potentially allowing the attacker to gain control of the affected system.

Exploitation Likelihood: MINIMAL

Affected Products
VendorProductFixed Version
Siemens &mdash;
Smihica Pyminizip
Zlib Zlib
Remediation
View Vendor Advisory →

Remediation Priority: MEDIUM

Threat Intelligence
● Threat Intelligence Validated: August 2026 | Threat Age: 26 Days
CISA KEVNot in KEV catalog
Public ExploitNot confirmed
PoC CodeNot confirmed
● Virtual Patch — CITED Relevance SAGE Engine MEDIUM CONFIDENCE

Implement network segmentation and access controls to limit exposure to untrusted sources. Monitor network traffic for suspicious activity related to ZIP file creation and manipulation.

No reliable network detection signature exists for this vulnerability class — apply the compensating controls above and the vendor patch. SAGE only publishes a network rule when a concrete on-the-wire signature can be grounded in the advisory.

NERC CIP: CIP-007 CIP-007-R2
This CVE violates CIP-007-R2 because it allows unauthorized access to and control of electronic security perimeters, which can compromise the security of critical cyber assets.
IEC 62443: SR 7.6
This CVE maps to SR 7.6 because it involves a vulnerability that can be exploited to cause a denial of service or unauthorized access, which can impact the availability and integrity of industrial control systems.

Virtual patch generated by CITED Relevance SAGE. Validate in isolated environment before production deployment. Compensating control only - does not replace vendor patch.

SAGE Enrichment Record — provenance & audit hash
ModelQwen/Qwen2.5-72B-Instruct-AWQ
ConfidenceMEDIUM
Enriched At2026-05-24
SHA-512 Audit Hash47a2a0e925d08ff12461f7e6a40b2f4033769bb424d9fdee39f5f693d610f3f5a845c1d55b2ece81413c3a71decd9da65bb44cc30f20f3b187a2cd3862134be5
Related CVEs affecting Siemens
CVE-2024-45032 10.0 A vulnerability has been identified in Industrial Edge Management Pro (All ve... CVE-2000-0964 10.0 Buffer overflow in the web administration service for the HiNet LP5100 IP-pho... CVE-2007-1917 10.0 Buffer overflow in the SYSTEM_CREATE_INSTANCE function in the SAP RFC Library... CVE-2007-1916 10.0 Buffer overflow in the RFC_START_GUI function in the SAP RFC Library 6.40 and... CVE-2012-1799 10.0 The web server on the Siemens Scalance S Security Module firewall S602 V2, S6...
View all Siemens CVEs →

Critical Severity - Know Your Exposure

A CVSS 9.8 vulnerability in your ICS environment cannot wait. BreachSpider maps critical CVEs to your specific assets and tells you what to fix first.

Check Your Assets Free →