High severity7.2NVD Advisory· Published Jul 9, 2026· Updated Jul 9, 2026
CVE-2026-54801
CVE-2026-54801
Description
A vulnerability has been identified in CPCI85 Central Processing/Communication (All versions < V26.20), SICORE Base system (All versions < V26.20.0). The affected application contains insufficient validation of authentication credentials when processing administrative account modifications through the web API. This could allow an authenticated attacker to bypass security controls and gain unauthorized elevated privileges.
Patches
Vulnerability mechanics
References
1News mentions
1- Siemens SICAM 8CISA ICS Advisories