{"schema_version":1,"title":"Siemens SCALANCE XR-500 vulnerabilities","summary":"Junglewise Threat Intelligence has tracked 4 vulnerabilities in Siemens SCALANCE XR-500: 0 in the last 7 days and 0 in the last 90 days, 1 of them critical and 0 exploited in the wild. The most recent, CVE-2025-39864, was published on 19 September 2025.","url":"https://junglewise.ai/threats/technologies/scalance-xr-500","json_url":"https://junglewise.ai/threats/technologies/scalance-xr-500.json","publisher":"Junglewise Threat Intelligence","license":"CC-BY-4.0","license_url":"https://creativecommons.org/licenses/by/4.0/","attribution":"Junglewise Threat Intelligence, https://junglewise.ai/threats/technologies/scalance-xr-500","sources":"NVD, GitHub Security Advisories, OSV, the CISA Known Exploited Vulnerabilities catalog, FIRST EPSS and vendor advisories","kind":"technology","counts":{"high":3,"all_time":4,"critical":1,"exploited":0,"last_7_days":0,"last_30_days":0,"last_90_days":0,"last_365_days":0},"latest":[{"cve":"CVE-2025-39864","cvss":8.8,"epss":0.0015,"slug":"cve-2025-39864-linux-kernel-use-after-free-in-cfg80211-wi-fi-bss-update","title":"Linux Kernel use-after-free in cfg80211 Wi-Fi BSS update","severity":"high","exploited":false,"published_at":"2025-09-19T16:15:45.42+00:00","url":"https://junglewise.ai/threats/cve-2025-39864-linux-kernel-use-after-free-in-cfg80211-wi-fi-bss-update"},{"cve":"CVE-2025-39841","cvss":9.8,"epss":0.0017,"slug":"cve-2025-39841-linux-kernel-lpfc-use-after-free-in-deferred-receive-path","title":"Linux Kernel lpfc use-after-free in deferred receive path","severity":"critical","exploited":false,"published_at":"2025-09-19T16:15:42.813+00:00","url":"https://junglewise.ai/threats/cve-2025-39841-linux-kernel-lpfc-use-after-free-in-deferred-receive-path"},{"cve":"CVE-2025-39839","cvss":8.8,"epss":0.0016,"slug":"cve-2025-39839-linux-kernel-batman-adv-oob-read-write-in-network-coding-decode","title":"Linux Kernel batman-adv OOB read/write in network-coding decode","severity":"high","exploited":false,"published_at":"2025-09-19T16:15:42.57+00:00","url":"https://junglewise.ai/threats/cve-2025-39839-linux-kernel-batman-adv-oob-read-write-in-network-coding-decode"},{"cve":"CVE-2024-41996","cvss":7.5,"slug":"cve-2024-41996-openssl-and-siemens-dhe-resource-exhaustion-in-public-key","title":"OpenSSL and Siemens DHE resource exhaustion in public key validation","severity":"high","exploited":false,"published_at":"2024-08-26T06:15:04.603+00:00","url":"https://junglewise.ai/threats/cve-2024-41996-openssl-and-siemens-dhe-resource-exhaustion-in-public-key"}],"weekly":[{"week":"2026-06-29","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-06","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-13","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-20","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-27","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-03","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-10","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-17","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-24","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-31","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-09-07","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-09-14","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-09-21","critical":0,"exploited":0,"vulnerabilities":0}],"related":[{"name":"Siemens SIMATIC S7-1500 CPU 1518-4 PN/DP MFP","slug":"simatic-s7-1500-cpu-1518-4-pn-dp-mfp","vulnerabilities":204,"url":"https://junglewise.ai/threats/technologies/simatic-s7-1500-cpu-1518-4-pn-dp-mfp"},{"name":"Siemens SIMATIC S7-1500 CPU 1518F-4 PN/DP MFP","slug":"simatic-s7-1500-cpu-1518f-4-pn-dp-mfp","vulnerabilities":83,"url":"https://junglewise.ai/threats/technologies/simatic-s7-1500-cpu-1518f-4-pn-dp-mfp"},{"name":"Siemens SIMATIC CN 4100","slug":"simatic-cn-4100","vulnerabilities":74,"url":"https://junglewise.ai/threats/technologies/simatic-cn-4100"},{"name":"Siemens SIPLUS S7-1500 CPU 1518-4 PN/DP MFP","slug":"siplus-s7-1500-cpu-1518-4-pn-dp-mfp","vulnerabilities":70,"url":"https://junglewise.ai/threats/technologies/siplus-s7-1500-cpu-1518-4-pn-dp-mfp"},{"name":"Siemens RUGGEDCOM APE1808","slug":"ruggedcom-ape1808","vulnerabilities":26,"url":"https://junglewise.ai/threats/technologies/ruggedcom-ape1808"},{"name":"Siemens RUGGEDCOM RST2428P","slug":"ruggedcom-rst2428p","vulnerabilities":16,"url":"https://junglewise.ai/threats/technologies/ruggedcom-rst2428p"},{"name":"Siemens ROX II","slug":"rox-ii","vulnerabilities":14,"url":"https://junglewise.ai/threats/technologies/rox-ii"},{"name":"Siemens SINEC OS","slug":"sinec-os","vulnerabilities":12,"url":"https://junglewise.ai/threats/technologies/sinec-os"},{"name":"Siemens Solid Edge","slug":"solid-edge","vulnerabilities":12,"url":"https://junglewise.ai/threats/technologies/solid-edge"},{"name":"Siemens SIMATIC S7-1500 TM MFP GNU/Linux subsystem","slug":"simatic-s7-1500-tm-mfp-gnu-linux-subsystem","vulnerabilities":11,"url":"https://junglewise.ai/threats/technologies/simatic-s7-1500-tm-mfp-gnu-linux-subsystem"},{"name":"Siemens Ruggedcom Rox II","slug":"ruggedcom-rox-ii","vulnerabilities":10,"url":"https://junglewise.ai/threats/technologies/ruggedcom-rox-ii"},{"name":"Siemens Reyrolle 7SR5","slug":"reyrolle-7sr5","vulnerabilities":9,"url":"https://junglewise.ai/threats/technologies/reyrolle-7sr5"}],"technology":{"hub":true,"name":"Siemens SCALANCE XR-500","slug":"scalance-xr-500","vendor":{"name":"Siemens","slug":"siemens","url":"https://junglewise.ai/threats/vendors/siemens"},"aliases":["scalance-xr-500-family"],"category":"firmware","homepage":"https://www.siemens.com/scalance","description":"Firmware for the SCALANCE XR-500 series of industrial managed Ethernet switches.","url":"https://junglewise.ai/threats/technologies/scalance-xr-500"},"most_severe":[{"cve":"CVE-2025-39841","cvss":9.8,"epss":0.0017,"slug":"cve-2025-39841-linux-kernel-lpfc-use-after-free-in-deferred-receive-path","title":"Linux Kernel lpfc use-after-free in deferred receive path","severity":"critical","exploited":false,"published_at":"2025-09-19T16:15:42.813+00:00","url":"https://junglewise.ai/threats/cve-2025-39841-linux-kernel-lpfc-use-after-free-in-deferred-receive-path"},{"cve":"CVE-2025-39839","cvss":8.8,"epss":0.0016,"slug":"cve-2025-39839-linux-kernel-batman-adv-oob-read-write-in-network-coding-decode","title":"Linux Kernel batman-adv OOB read/write in network-coding decode","severity":"high","exploited":false,"published_at":"2025-09-19T16:15:42.57+00:00","url":"https://junglewise.ai/threats/cve-2025-39839-linux-kernel-batman-adv-oob-read-write-in-network-coding-decode"},{"cve":"CVE-2025-39864","cvss":8.8,"epss":0.0015,"slug":"cve-2025-39864-linux-kernel-use-after-free-in-cfg80211-wi-fi-bss-update","title":"Linux Kernel use-after-free in cfg80211 Wi-Fi BSS update","severity":"high","exploited":false,"published_at":"2025-09-19T16:15:45.42+00:00","url":"https://junglewise.ai/threats/cve-2025-39864-linux-kernel-use-after-free-in-cfg80211-wi-fi-bss-update"},{"cve":"CVE-2024-41996","cvss":7.5,"slug":"cve-2024-41996-openssl-and-siemens-dhe-resource-exhaustion-in-public-key","title":"OpenSSL and Siemens DHE resource exhaustion in public key validation","severity":"high","exploited":false,"published_at":"2024-08-26T06:15:04.603+00:00","url":"https://junglewise.ai/threats/cve-2024-41996-openssl-and-siemens-dhe-resource-exhaustion-in-public-key"}],"generated_at":"2026-09-26T09:11:00.170868+00:00"}