Skip to main content
Disclosures

Siemens · SICAM SIAPP SDK

Client Stack Overflow via Oversized Input

5.1medium
SecMateSECMATE-2026-0007
VendorSiemens
ProductSICAM SIAPP SDK
VectorCVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H
Timeline
Reported
Jan 3, 2026
Acknowledged
Feb 18, 2026
Published
Mar 10, 2026
Summary

The SICAM SIAPP SDK client component does not enforce maximum length checks on certain variables before use. This could allow an attacker to send an oversized input that could trigger a stack overflow crashing the process and potentially causing denial of service.

What's hidden in yours?

Find out