siemens

2,341 tracked vulnerabilities.

CVE-2024-23816 CRITICAL
Siemens Location Intelligence < 4.3 - Unauthenticated Administrative Access via Hard-coded Secret
Feb 13, 2024
CVSS 9.8
EPSS 0.02
CVE-2024-23813 HIGH
Polarion ALM < 2404.0 - Unauthenticated Remote Code Execution via REST API Endpoints
Feb 13, 2024
CVSS 7.3
EPSS 0.00
CVE-2024-23812 HIGH
SINEC NMS < V2.0 SP1 - OS Command Injection via Report Creation
Feb 13, 2024
CVSS 8.0
EPSS 0.01
CVE-2024-23811 HIGH
SINEC NMS < V2.0 SP1 - Unrestricted Upload of File with Dangerous Type via TFTP
Feb 13, 2024
CVSS 8.8
EPSS 0.02
CVE-2024-23810 HIGH
SINEC NMS < 2.0 SP1 - Unauthenticated SQL Injection
Feb 13, 2024
CVSS 8.8
EPSS 0.01
CVE-2024-23804 HIGH
Siemens Tecnomatix Plant Simulation < 2201.0012 - Stack-based Buffer Overflow via PSOBJ File Parsing
Feb 13, 2024
CVSS 7.8
EPSS 0.00
CVE-2024-23803 HIGH
Siemens Tecnomatix Plant Simulation V2201 and V2302 < V2302.0007 - Out-of-bounds Write via SPP File Parsing
Feb 13, 2024
CVSS 7.8
EPSS 0.00
CVE-2024-23802 HIGH
Siemens Tecnomatix Plant Simulation < 2201.0012 - Out-of-Bounds Read via SPP File Parsing
Feb 13, 2024
CVSS 7.8
EPSS 0.00
CVE-2024-23801 LOW
Tecnomatix Plant Simulation V2201 and V2302 < V2302.0007 - Denial of Service via SPP File Parsing
Feb 13, 2024
CVSS 3.3
EPSS 0.00
CVE-2024-23800 LOW
Siemens Tecnomatix Plant Simulation V2201 and V2302 < V2302.0007 - Denial of Service via SPP File Parsing
Feb 13, 2024
CVSS 3.3
EPSS 0.00
CVE-2024-23799 LOW
Tecnomatix Plant Simulation V2201 and V2302 < V2302.0007 - Denial of Service via SPP File Parsing
Feb 13, 2024
CVSS 3.3
EPSS 0.00
CVE-2024-23798 HIGH
Siemens Tecnomatix Plant Simulation < 2201.0012 - Stack-based Buffer Overflow via WRL File Parsing
Feb 13, 2024
CVSS 7.8
EPSS 0.00
CVE-2024-23797 HIGH
Siemens Tecnomatix Plant Simulation < 2201.0012 - Stack-based Buffer Overflow via WRL File Parsing
Feb 13, 2024
CVSS 7.8
EPSS 0.00
CVE-2024-23796 HIGH
Siemens Tecnomatix Plant Simulation < 2201.0012 and < 2302.0006 - Heap-based Buffer Overflow via WRL File Parsing
Feb 13, 2024
CVSS 7.8
EPSS 0.00
CVE-2024-23795 HIGH
Siemens Tecnomatix Plant Simulation < 2201.0012 - Out-of-bounds Write via WRL File Parsing
Feb 13, 2024
CVSS 7.8
EPSS 0.00
CVE-2024-22043 LOW
Parasolid <V35.0.251-V35.1.170 - DoS
Feb 13, 2024
CVSS 3.3
EPSS 0.00
CVE-2024-22042 HIGH
Siemens Unicam FX - Local Privilege Escalation via Windows Installer Agent
Feb 13, 2024
CVSS 7.8
EPSS 0.00
CVE-2023-52236 HIGH
RUGGEDCOM Various - Info Disclosure
Jul 08, 2025
CVSS 7.0
EPSS 0.00
CVE-2023-37482 MEDIUM
SIMATIC Drive Controller CPU 1504D TF 3.1.0-3.1.1 - Unauthenticated Username Enumeration via Login Timing Side Channel
Feb 11, 2025
CVSS 5.3
EPSS 0.00
CVE-2023-32736 HIGH
SIMATIC S7-PLCSIM V16 and V17 - Remote Code Execution via Deserialization of Untrusted Data
Nov 12, 2024
CVSS 7.3
EPSS 0.00
CVE-2023-52952 HIGH
HiMed Cockpit <11.6.2 - Desktop Environment Escape
Oct 08, 2024
CVSS 8.5
EPSS 0.00
CVE-2023-49069 MEDIUM
Mendix Runtime <10.17.0, 10.12.<11, 10.6.<19 - Auth Bypass
Sep 10, 2024
CVSS 5.3
EPSS 0.00
CVE-2023-30756 MEDIUM
SIMATIC CP 1242-7 V2 and CP 1243 Series < V3.5.20 - Unauthenticated Denial of Service via Expect HTTP Header
Sep 10, 2024
CVSS 5.9
EPSS 0.00
CVE-2023-30755 MEDIUM
SIMATIC CP 1242-7 V2 and CP 1243 Series < V3.5.20 - Denial of Service via Web Server Shutdown Request
Sep 10, 2024
CVSS 4.4
EPSS 0.00
CVE-2023-28827 MEDIUM
SIMATIC CP 1242-7 V2 and CP 1243 Series < V3.5.20 - Denial of Service via Web Server Request Handling
Sep 10, 2024
CVSS 5.9
EPSS 0.00