Skip to main content
Disclosures

Siemens · SICAM SIAPP SDK

Arbitrary File Deletion via Unvalidated Path

6.7medium
SecMateSECMATE-2026-0010
VendorSiemens
ProductSICAM SIAPP SDK
VectorCVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:N/I:H/A:H
Timeline
Reported
Jan 3, 2026
Acknowledged
Feb 18, 2026
Published
Mar 10, 2026
Summary

The affected application performs file deletion without properly validating the file path or target. An attacker could delete files or sockets that the affected process has permission to remove, potentially resulting in denial of service or service disruption.

What's hidden in yours?

Find out