CVE-2025-15467
View CSAF Summary OpenSSL has published a stack based buffer overflow vulnerability that allows a remote attacker to cause a denial of service (DoS) or potentially allow for remote code execution. ...
Affects 1 product across 3 vendors.
Software writes data past buffer boundaries, corrupting memory and potentially enabling code execution.
ABB AC500 V3 is vulnerable to a stack buffer overflow in the Cryptographic Message Syntax, which could lead to a crash, denial-of-service, or remote code execution.
BSID: BS-2026-GLOBAL-296613-H • Model: /workspace/models/qwen2.5-coder-32b-instruct-bf16 • Confidence: HIGH
Is this CVE in your environment?
BreachSpider monitors your ICS/OT environment for vulnerabilities like this one. No agents or network access required. Free to start.
Check My Environment →What is CVE-2025-15467?
What is the CVSS score for CVE-2025-15467?
Is CVE-2025-15467 actively exploited?
How do I remediate CVE-2025-15467?
What systems are affected by CVE-2025-15467?
| CVE ID | CVE-2025-15467 |
|---|---|
| BSID | BS-2026-GLOBAL-296613-H BreachSpider Global ID |
| CVSS Vector | CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H |
| Published | 2026-07-28 |
| Last Modified | 2026-07-28 |
| ICS Relevance | 70% |
| Weakness (CWE) | |
| Domains | |
| Source | NVD |
View CSAF Summary OpenSSL has published a stack based buffer overflow vulnerability that allows a remote attacker to cause a denial of service (DoS) or potentially allow for remote code execution. Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends countermeasures for products where fixes are not, or not yet available. The following versions of Siemens Desigo CC are affected: Des
Source: NIST NVD / MITRE CVE Database
The vulnerability is exploited through a malformed cryptographic message syntax input, which causes a buffer overflow in the affected software.
Exploitation Likelihood: HIGH
| CISA KEV | Not in KEV catalog |
|---|---|
| Public Exploit | Not confirmed |
| PoC Code | Not confirmed |
SAGE Enrichment Record — provenance & audit hash
| Model | /workspace/models/qwen2.5-coder-32b-instruct-bf16 |
|---|---|
| Confidence | HIGH |
| Enriched At | 2026-05-24 |
| SHA-512 Audit Hash | c2fd957fa34239a0e73c110240e3ade6071dea78a715730f2048cb96eea5d1f4619b2f8ed99aa1f4fb4635b57641cd6e0d170ca67876cdf3d1b3666edd06dc9d |
ICS/OT Vulnerability Intelligence for Your Environment
BreachSpider monitors 353,228 CVEs across ICS/OT vendors. SAGE-enriched alerts with virtual patches, NERC-CIP mapping, and PSIRT contacts delivered to your SIEM in minutes.
Join free →