siemens

2,341 tracked vulnerabilities.

CVE-2024-42345 MEDIUM
SINEMA Remote Connect Server <V3.2 SP2 - Auth Bypass
Sep 10, 2024
CVSS 4.3
EPSS 0.00
CVE-2024-42344 MEDIUM
SINEMA Remote Connect Client < 3.2 SP2 - Sensitive Information Disclosure in Log File
Sep 10, 2024
CVSS 4.4
EPSS 0.00
CVE-2024-41171 HIGH
SINUMERIK 828D V4, 828D V5 < V5.24, 840D sl V4, ONE < V6.24 - Authenticated Privilege Escalation via Script Access
Sep 10, 2024
CVSS 8.8
EPSS 0.00
CVE-2024-41170 HIGH
Tecnomatix Plant Simulation <V2302.0015, <V2404.0004 - Buffer Overflow
Sep 10, 2024
CVSS 7.8
EPSS 0.00
CVE-2024-37995 LOW
SIMATIC RF360R < 2.2 - Information Disclosure via Faulty Certificate Upload
Sep 10, 2024
CVSS 2.7
EPSS 0.00
CVE-2024-37994 MEDIUM
SIMATIC RF360R < 2.2 - Hidden Debug Configuration Exposure
Sep 10, 2024
CVSS 4.3
EPSS 0.00
CVE-2024-37993 MEDIUM
SIMATIC RF360R < 2.2 - Unauthenticated Denial of Service via Ajax2App Instance Creation
Sep 10, 2024
CVSS 5.3
EPSS 0.00
CVE-2024-37992 MEDIUM
SIMATIC RF360R < 2.2 - Denial of Service via SNMP Character Limit Handling
Sep 10, 2024
CVSS 4.9
EPSS 0.00
CVE-2024-37991 MEDIUM
SIMATIC RF360R < 2.2 - Unauthenticated Sensitive Information Exposure via Service Log Files
Sep 10, 2024
CVSS 5.3
EPSS 0.00
CVE-2024-37990 MEDIUM
SIMATIC RF360R < 2.2 - Hidden Functionality via Configuration File Modification
Sep 10, 2024
CVSS 6.5
EPSS 0.00
CVE-2024-35783 CRITICAL
SIMATIC BATCH V9.1, SIMATIC Information Server 2020 <V2020 SP2 Upda...
Sep 10, 2024
CVSS 9.1
EPSS 0.00
CVE-2024-33698 CRITICAL
Opcenter Quality <V2406, Opcenter RDnL <V2410, SIMATIC PCS neo V4.0...
Sep 10, 2024
CVSS 9.8
EPSS 0.03
CVE-2024-32006 MEDIUM
SINEMA Remote Connect Client <V3.2 SP2 - Auth Bypass
Sep 10, 2024
CVSS 4.3
EPSS 0.00
CVE-2024-41978 MEDIUM
Siemens SCALANCE and RUGGEDCOM Firmware < 8.1 - Authenticated Sensitive Information Exposure in Log Files
Aug 13, 2024
CVSS 6.5
EPSS 0.00
CVE-2024-41977 HIGH
RUGGEDCOM RM1224 LTE(4G) EU, RUGGEDCOM RM1224 LTE(4G) NAM, SCALANCE...
Aug 13, 2024
CVSS 7.1
EPSS 0.01
CVE-2024-41976 HIGH
Siemens SCALANCE and RUGGEDCOM Firmware < 8.1 - Authenticated Remote Code Execution via VPN Configuration Input
Aug 13, 2024
CVSS 7.2
EPSS 0.01
CVE-2024-41941 MEDIUM
SINEC NMS < 3.0 - Authenticated Authorization Bypass
Aug 13, 2024
CVSS 4.3
EPSS 0.00
CVE-2024-41940 CRITICAL
SINEC NMS < 3.0 - Authenticated OS Command Injection via Privileged Command Queue
Aug 13, 2024
CVSS 9.1
EPSS 0.01
CVE-2024-41939 HIGH
SINEC NMS < 3.0 - Authenticated Privilege Escalation via Improper Authorization
Aug 13, 2024
CVSS 8.8
EPSS 0.00
CVE-2024-41938 MEDIUM
SINEC NMS < 3.0 - Authenticated Path Traversal via ImportCertificate Function
Aug 13, 2024
CVSS 5.5
EPSS 0.00
CVE-2024-41908 HIGH
Siemens NX < V2406.3000 - Out-of-bounds Read via PRT File Parsing
Aug 13, 2024
CVSS 7.8
EPSS 0.00
CVE-2024-41907 MEDIUM
SINEC Traffic Analyzer <V2.0 - Info Disclosure
Aug 13, 2024
CVSS 4.2
EPSS 0.01
CVE-2024-41906 MEDIUM
SINEC Traffic Analyzer <V2.0 - Info Disclosure
Aug 13, 2024
CVSS 4.8
EPSS 0.00
CVE-2024-41905 MEDIUM
SINEC Traffic Analyzer < 2.0 - Authenticated Sensitive Information Exposure via Improper Access Control
Aug 13, 2024
CVSS 6.8
EPSS 0.00
CVE-2024-41904 HIGH
SINEC Traffic Analyzer < 2.0 - Unauthenticated Excessive Authentication Attempts
Aug 13, 2024
CVSS 7.5
EPSS 0.01