siemens

2,341 tracked vulnerabilities.

CVE-2026-42177 MEDIUM
linux-entra-sso: PRT SSO cookie can leak to attacker-controlled hosts when broad host permissions are granted
May 12, 2026
CVSS 5.3
EPSS 0.00
CVE-2026-44412 HIGH
Siemens Solid Edge SE2026 < V226.0 Update 5 - Stack-based Buffer Overflow in PAR File Parser
May 12, 2026
CVSS 7.8
EPSS 0.00
CVE-2026-44411 HIGH
Solid Edge SE2026 < V226.0 Update 5 - Remote Code Execution via Crafted PAR File Parsing
May 12, 2026
CVSS 7.8
EPSS 0.00
CVE-2026-41551 CRITICAL
Siemens ROS# < V2.2.2 - Path Traversal via Unsanitized User Input
May 12, 2026
CVSS 9.1
EPSS 0.00
CVE-2026-41125 MEDIUM
Siemens Blueplanet 100 NX3 M8 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
May 12, 2026
CVSS 6.0
EPSS 0.00
CVE-2026-33893 HIGH
Siemens Teamcenter Hard-coded Credentials Vulnerability
May 12, 2026
CVSS 7.5
EPSS 0.00
CVE-2026-33862 HIGH
Siemens Teamcenter V2312 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
May 12, 2026
CVSS 7.3
EPSS 0.00
CVE-2026-27662 HIGH
Siemens Simatic Hmi MTP1000 Unified Comfort Panel - Initialization of a Resource with an Insecure Default
May 12, 2026
CVSS 7.7
EPSS 0.00
CVE-2026-25789 HIGH
Siemens Simatic Drive Controller Cpu 1504D TF - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
May 12, 2026
CVSS 7.1
EPSS 0.00
CVE-2026-25787 CRITICAL
Siemens Simatic Drive Controller Cpu 1504D TF - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
May 12, 2026
CVSS 9.1
EPSS 0.00
CVE-2026-25786 CRITICAL
Siemens Simatic Drive Controller Cpu 1504D TF - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
May 12, 2026
CVSS 9.1
EPSS 0.00
CVE-2026-22925 HIGH
Siemens Simatic CN 4100 < V5.0 - Allocation of Resources Without Limits or Throttling
May 12, 2026
CVSS 7.5
EPSS 0.00
CVE-2026-22924 CRITICAL
SIMATIC CN 4100 < V5.0 - Unauthenticated Resource Exhaustion
May 12, 2026
CVSS 9.1
EPSS 0.00
CVE-2026-0300 CRITICAL KEV
Palo Alto PAN-OS User-ID Authentication Portal - Unauthenticated Root RCE
May 06, 2026
CVSS 9.8
EPSS 0.04
CVE-2026-31431 HIGH KEV
crypto: algif_aead - Revert to operating out-of-place
Apr 22, 2026
CVSS 7.8
EPSS 0.03
CVE-2026-33892 HIGH
Siemens Industrial Edge Management Pro V1 <V1.15.17 - Auth Bypass
Apr 14, 2026
CVSS 7.1
EPSS 0.00
CVE-2026-27668 HIGH
Siemens RUGGEDCOM CROSSBOW SAM-P <V5.8 - Privilege Escalation
Apr 14, 2026
CVSS 8.8
EPSS 0.00
CVE-2026-25654 HIGH
Siemens SINEC NMS <V4.0 SP3 - Auth Bypass
Apr 14, 2026
CVSS 8.8
EPSS 0.00
CVE-2026-24032 HIGH
Siemens SINEC NMS <V4.0 SP3 - Auth Bypass
Apr 14, 2026
CVSS 7.3
EPSS 0.00
CVE-2026-27664 HIGH
Siemens CPCI85/SICORE < V26.10 - DoS via XML Parsing
Mar 26, 2026
CVSS 7.5
EPSS 0.00
CVE-2026-27663 MEDIUM
Siemens CPCI85 and RTUM85 < V26.10 - Denial of Service via Remote Operation Mode
Mar 26, 2026
CVSS 6.5
EPSS 0.00
CVE-2026-27661 MEDIUM
SINEC Security Monitor <V4.9.0 - Info Disclosure
Mar 10, 2026
CVSS 4.3
EPSS 0.00
CVE-2026-25605 MEDIUM
SICAM SIAPP SDK <V2.1.7 - Path Traversal
Mar 10, 2026
CVSS 6.7
EPSS 0.00
CVE-2026-25573 HIGH
SICAM SIAPP SDK <V2.1.7 - Command Injection
Mar 10, 2026
CVSS 7.4
EPSS 0.00
CVE-2026-25572 MEDIUM
SICAM SIAPP SDK <V2.1.7 - Buffer Overflow
Mar 10, 2026
CVSS 5.1
EPSS 0.00