CyberICT

CVE-2026-57262

Siemens · Published August 11, 2026

CVSS v3.1

MEDIUM

Description

A vulnerability has been identified in LOGO! Soft Comfort (All versions < V9). Affected products use a static, hardcoded AES master key to encrypt project files. This could allow a local attacker to extract the master key from the application files or memory and use it to decrypt project files or remove project passwords entirely without knowing the actual user-defined password.

Affected Products

    CVSS Vector

    CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:N