CVE-2025-32855 | Siemens TeleControl Server Basic 3.1.2.1 UnlockOpcSettings sql injection (ssa-443402)
A vulnerability was found in Siemens TeleControl Server Basic 3.1.2.1. It has been rated as critical. Affected is the function UnlockOpcSettings. The manipulation leads to sql injection.
This vulnerability is traded as CVE-2025-32855. It is possible to initiate the attack remotely. There is no exploit available.
Upgrading the affected component is advised.