Threat+Constellation
Live UTC
← Incidents
INCIDENT 114IntrusionLOW / UNDER REVIEWSourced

Siemens LOGO! Soft Comfort

<p><a href="https://github.com/cisagov/CSAF/blob/develop/csaf_files/OT/white/2026/icsa-26-225-13.json"><strong>View CSAF</strong></a></p> <h2>Summary</h2> <p><strong>Siemens LOGO! Soft Comfort contains multiple vulnerabilities in its project-file encryption and password handling mechanisms. A local attacker could exploit these vulnerabilities to extract the master key, allowing them to decrypt project data or remove project passwords. The lack of password salting enables offline dictionary or brute-force attacks against the password hashes. Successful exploitation could result in unauthorized…

Last evidence update
13 AUG 2026 · 12:00 UTC
Source count
1
Status
reported
GermanyManufacturingTransportationDefenseCVE-2026-57262CVE-2026-57263
Observation history

How this record has evolved as evidence accumulated.

18 AUG · 18:23 UTC
Initial report
Evidence