Siemens CADRA
Act NowCVSS 9.8ICS-CERT ICSA-26-202-06Jul 14, 2026
Siemens
Attack path
Attack VectorNetwork
Auth RequiredNone
ComplexityLow
User InteractionNone needed
Summary
Siemens CADRA is affected by multiple input validation and memory safety vulnerabilities in embedded zlib and Foxit libraries (CWE-20, CWE-787, CWE-120, CWE-190, CWE-843, CWE-1335). These vulnerabilities allow remote code execution over the network without authentication or user interaction. The vulnerabilities impact CADRA versions prior to 2511.
What this means
What could happen
An attacker with network access to CADRA could exploit multiple input validation and memory vulnerabilities to run arbitrary code on the system, potentially compromising process data, designs, or control logic stored in the application.
Who's at risk
Engineering teams and operators using Siemens CADRA for design automation and engineering. This includes manufacturing facilities, automotive suppliers, and industrial automation shops that rely on CADRA for process design, simulation, or component data management.
How it could be exploited
An attacker could send a malicious input or file over the network to CADRA that triggers one of the zlib or Foxit vulnerabilities. The application lacks proper input validation, allowing buffer overflow or integer overflow conditions that permit remote code execution without requiring authentication or user interaction.
Prerequisites
- Network access to CADRA application port
- No valid credentials required
remotely exploitableno authentication requiredlow complexityactively exploited (KEV)high EPSS score (52.1%)affects engineering systems with design and process data
Exploitability
Actively exploited — confirmed by CISA KEV
Public Proof-of-Concept (PoC) on GitHub (6 repositories)
Affected products (2)
1 with fix1 pending
ProductAffected VersionsFix Status
CADRA < V2511< 25112511
CADRAAll versionsNo fix yet
Remediation & Mitigation
0/3
Do now
0/2CADRA
HOTFIXUpdate CADRA to version 2511 or later
WORKAROUNDBlock network access from untrusted and external networks to CADRA systems using firewall rules
Long-term hardening
0/1CADRA
HARDENINGImplement network segmentation to isolate CADRA systems from general corporate networks and the internet
CVEs (11)
↑↓ Navigate · Esc Close
API:
/api/v1/advisories/2a63fdd9-4403-49cc-9870-d96f18c78610Get OT security insights every Tuesday
Advisory breakdowns, a weekly summary, and incident analyses for the people actually defending OT environments. Free, no account required.