Skip to main content
Disclosures

Siemens · SICAM SIAPP SDK

Server Stack Overflow via Oversized Input

5.1medium
SecMateSECMATE-2026-0008
VendorSiemens
ProductSICAM SIAPP SDK
VectorCVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H
Timeline
Reported
Jan 3, 2026
Acknowledged
Feb 18, 2026
Published
Mar 10, 2026
Summary

The SICAM SIAPP SDK server component does not enforce maximum length checks on certain variables before use. This could allow an attacker to send an oversized input that could trigger a stack overflow crashing the process and potentially causing denial of service.

What's hidden in yours?

Find out