siemens
2,341 tracked vulnerabilities.
CVE-2026-42177
MEDIUM
linux-entra-sso: PRT SSO cookie can leak to attacker-controlled hosts when broad host permissions are granted
May 12, 2026
CVSS 5.3
EPSS 0.00
CVE-2026-44412
HIGH
Siemens Solid Edge SE2026 < V226.0 Update 5 - Stack-based Buffer Overflow in PAR File Parser
May 12, 2026
CVSS 7.8
EPSS 0.00
CVE-2026-44411
HIGH
Solid Edge SE2026 < V226.0 Update 5 - Remote Code Execution via Crafted PAR File Parsing
May 12, 2026
CVSS 7.8
EPSS 0.00
CVE-2026-41551
CRITICAL
Siemens ROS# < V2.2.2 - Path Traversal via Unsanitized User Input
May 12, 2026
CVSS 9.1
EPSS 0.00
CVE-2026-41125
MEDIUM
Siemens Blueplanet 100 NX3 M8 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
May 12, 2026
CVSS 6.0
EPSS 0.00
CVE-2026-33893
HIGH
Siemens Teamcenter Hard-coded Credentials Vulnerability
May 12, 2026
CVSS 7.5
EPSS 0.00
CVE-2026-33862
HIGH
Siemens Teamcenter V2312 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
May 12, 2026
CVSS 7.3
EPSS 0.00
CVE-2026-27662
HIGH
Siemens Simatic Hmi MTP1000 Unified Comfort Panel - Initialization of a Resource with an Insecure Default
May 12, 2026
CVSS 7.7
EPSS 0.00
CVE-2026-25789
HIGH
Siemens Simatic Drive Controller Cpu 1504D TF - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
May 12, 2026
CVSS 7.1
EPSS 0.00
CVE-2026-25787
CRITICAL
Siemens Simatic Drive Controller Cpu 1504D TF - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
May 12, 2026
CVSS 9.1
EPSS 0.00
CVE-2026-25786
CRITICAL
Siemens Simatic Drive Controller Cpu 1504D TF - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
May 12, 2026
CVSS 9.1
EPSS 0.00
CVE-2026-22925
HIGH
Siemens Simatic CN 4100 < V5.0 - Allocation of Resources Without Limits or Throttling
May 12, 2026
CVSS 7.5
EPSS 0.00
CVE-2026-22924
CRITICAL
SIMATIC CN 4100 < V5.0 - Unauthenticated Resource Exhaustion
May 12, 2026
CVSS 9.1
EPSS 0.00
CVE-2026-0300
CRITICAL
KEV
Palo Alto PAN-OS User-ID Authentication Portal - Unauthenticated Root RCE
May 06, 2026
CVSS 9.8
EPSS 0.04
CVE-2026-31431
HIGH
KEV
crypto: algif_aead - Revert to operating out-of-place
Apr 22, 2026
CVSS 7.8
EPSS 0.03
CVE-2026-33892
HIGH
Siemens Industrial Edge Management Pro V1 <V1.15.17 - Auth Bypass
Apr 14, 2026
CVSS 7.1
EPSS 0.00
CVE-2026-27668
HIGH
Siemens RUGGEDCOM CROSSBOW SAM-P <V5.8 - Privilege Escalation
Apr 14, 2026
CVSS 8.8
EPSS 0.00
CVE-2026-25654
HIGH
Siemens SINEC NMS <V4.0 SP3 - Auth Bypass
Apr 14, 2026
CVSS 8.8
EPSS 0.00
CVE-2026-24032
HIGH
Siemens SINEC NMS <V4.0 SP3 - Auth Bypass
Apr 14, 2026
CVSS 7.3
EPSS 0.00
CVE-2026-27664
HIGH
Siemens CPCI85/SICORE < V26.10 - DoS via XML Parsing
Mar 26, 2026
CVSS 7.5
EPSS 0.00
CVE-2026-27663
MEDIUM
Siemens CPCI85 and RTUM85 < V26.10 - Denial of Service via Remote Operation Mode
Mar 26, 2026
CVSS 6.5
EPSS 0.00
CVE-2026-27661
MEDIUM
SINEC Security Monitor <V4.9.0 - Info Disclosure
Mar 10, 2026
CVSS 4.3
EPSS 0.00
CVE-2026-25605
MEDIUM
SICAM SIAPP SDK <V2.1.7 - Path Traversal
Mar 10, 2026
CVSS 6.7
EPSS 0.00
CVE-2026-25573
HIGH
SICAM SIAPP SDK <V2.1.7 - Command Injection
Mar 10, 2026
CVSS 7.4
EPSS 0.00
CVE-2026-25572
MEDIUM
SICAM SIAPP SDK <V2.1.7 - Buffer Overflow
Mar 10, 2026
CVSS 5.1
EPSS 0.00
Products
teamcenter_visualization 188
jt2go 166
tecnomatix_plant_simulation 85
simcenter_femap 77
telecontrol_server_basic 77
sinema_remote_connect_server 71
sinec_infrastructure_network_services 68
scalance_w1750d_firmware 62
parasolid 52
solid_edge 47
wincc 43
sinec_nms 42
sinec_ins 38
solid_edge_se2023 36
sppa-t3000_ms3000_migration_server 35
jt_utilities 32
comos 31
simatic_wincc 30
jt_open_toolkit 29
scalance_lpe9403_firmware 27
nucleus_net 25
nucleus_source_code 25
simatic_pcs7 25
simatic_pcs_7 25
scalance_s615_firmware 24
simatic_ipc427e_firmware 24
simatic_ipc477e_firmware 24
simatic_itp1000_firmware 24
simatic_pcs_neo 24
ruggedcom_rox_mx5000_firmware 23
Quick Filters