Vulnerabilities in siemens
1,679 resultsVexday analysis
Siemens apresenta footprint reduzido com apenas 2 CVEs na base, nenhuma sob ataque ativo confirmado. Uma vulnerabilidade foi publicada nos últimos 90 dias, identificada como validação inadequada de entrada (CWE-20), o que sugere risco moderado em cenários de interação com dados não confiáveis, mas sem indicadores de exploração em massa no momento.
CVE-2021-33722—A vulnerability has been identified in SINEC NMS (All versions < V1.0 SP2 Update 1). The affected system has a Path Traversal vulnerability EPSS 0.9%CVE-2021-37202—A vulnerability has been identified in NX 1980 Series (All versions < V1984), Solid Edge SE2021 (All versions < SE2021MP8). The IFC adapter EPSS 0.9%CVE-2021-33727—A vulnerability has been identified in SINEC NMS (All versions < V1.0 SP2 Update 1). An authenticated attacker could download the user profiEPSS 0.9%CVE-2022-29882HIGHA vulnerability has been identified in SICAM T (All versions < V3.0). Affected devices do not handle uploaded files correctly. An unauthentiEPSS 0.9%CVE-2025-24499HIGHA vulnerability has been identified in SCALANCE WAB762-1 (6GK5762-1AJ00-6AA0) (All versions < V3.0.0), SCALANCE WAM763-1 (6GK5763-1AL00-7DA0EPSS 0.9%CVE-2023-43504CRITICALA vulnerability has been identified in COMOS (All versions < V10.4.4). Ptmcast executable used for testing cache validation service in affecEPSS 0.9%CVE-2022-29876HIGHA vulnerability has been identified in SICAM T (All versions < V3.0). Affected devices do not properly handle the input of a GET request parEPSS 0.8%CVE-2021-37194—A vulnerability has been identified in COMOS V10.2 (All versions only if web components are used), COMOS V10.3 (All versions < V10.3.3.3 onlEPSS 0.8%CVE-2022-29879MEDIUMA vulnerability has been identified in SICAM T (All versions < V3.0). The web based management interface of affected devices does not employEPSS 0.8%CVE-2024-47553CRITICALA vulnerability has been identified in SINEC Security Monitor (All versions < V4.9.0). The affected application does not properly validate uEPSS 0.8%CVE-2022-40227HIGHA vulnerability has been identified in SIMATIC HMI Comfort Panels (incl. SIPLUS variants) (All versions < V17 Update 4), SIMATIC HMI KTP MobEPSS 0.8%CVE-2022-24040—A vulnerability has been identified in Desigo DXR2 (All versions < V01.21.142.5-22), Desigo PXC3 (All versions < V01.21.142.4-18), Desigo PXEPSS 0.8%CVE-2022-32257CRITICALA vulnerability has been identified in SINEMA Remote Connect Server (All versions < V3.2). The affected application consists of a web servicEPSS 0.8%CVE-2022-33137—A vulnerability has been identified in SIMATIC MV540 H (All versions < V3.3), SIMATIC MV540 S (All versions < V3.3), SIMATIC MV550 H (All veEPSS 0.8%CVE-2024-30207CRITICALA vulnerability has been identified in SIMATIC RTLS Locating Manager (6GT2780-0DA00) (All versions < V3.0.1.1), SIMATIC RTLS Locating ManageEPSS 0.8%CVE-2024-22040HIGHA vulnerability has been identified in Cerberus PRO EN Engineering Tool (All versions), Cerberus PRO EN Fire Panel FC72x IP6 (All versions),EPSS 0.8%CVE-2019-10941—A vulnerability has been identified in SINEMA Server (All versions < V14 SP3). Missing authentication for functionality that requires adminiEPSS 0.8%CVE-2018-4842—A vulnerability has been identified in SCALANCE X-200IRT switch family (incl. SIPLUS NET variants) (All versions < V5.4.1), SCALANCE X-200RNEPSS 0.8%CVE-2022-32254MEDIUMA vulnerability has been identified in SINEMA Remote Connect Server (All versions < V3.1). A customized HTTP POST request could force the apEPSS 0.8%CVE-2021-45460—A vulnerability has been identified in SICAM PQ Analyzer (All versions < V3.18). A service is started by an unquoted registry entry. As therEPSS 0.8%