siemens
2,341 tracked vulnerabilities.
CVE-2025-40941
MEDIUM
SIMATIC CN 4100 < 4.0.1 - Information Exposure via Server Response Headers
Dec 09, 2025
CVSS 4.3
EPSS 0.00
CVE-2025-40940
MEDIUM
SIMATIC CN 4100 < 4.0.1 - Exposure of Sensitive Information via SNMP Inconsistencies
Dec 09, 2025
CVSS 4.9
EPSS 0.00
CVE-2025-40939
MEDIUM
SIMATIC CN 4100 < 4.0.1 - Unauthenticated Denial of Service via USB Port
Dec 09, 2025
CVSS 4.6
EPSS 0.00
CVE-2025-40938
HIGH
SIMATIC CN 4100 < 4.0.1 - Use of Hard-coded Credentials
Dec 09, 2025
CVSS 8.1
EPSS 0.00
CVE-2025-40937
HIGH
SIMATIC CN 4100 < 4.0.1 - Authenticated Command Injection via REST API
Dec 09, 2025
CVSS 8.3
EPSS 0.00
CVE-2025-40935
MEDIUM
RUGGEDCOM -<V5.10.1 - Info Disclosure
Dec 09, 2025
CVSS 4.3
EPSS 0.00
CVE-2025-40831
MEDIUM
SINEC Security Monitor < 4.10.0 - Authenticated Denial of Service via Report Generation Date Parameter
Dec 09, 2025
CVSS 6.5
EPSS 0.00
CVE-2025-40830
MEDIUM
SINEC Security Monitor < 4.10.0 - Authenticated Arbitrary File Read and Write via ssmctl-client File Transfer
Dec 09, 2025
CVSS 6.7
EPSS 0.00
CVE-2025-40820
HIGH
TCP Sequence Number Validation - DoS
Dec 09, 2025
CVSS 7.5
EPSS 0.00
CVE-2025-40819
MEDIUM
SINEMA Remote Connect Server < V3.2 SP4 - Incorrect Authorization via Database Table Modification
Dec 09, 2025
CVSS 4.3
EPSS 0.00
CVE-2025-40818
LOW
SINEMA Remote Connect Server < V3.2 SP4 - Authenticated Private Key Exposure via Improper Permission Assignment
Dec 09, 2025
CVSS 3.3
EPSS 0.00
CVE-2025-40807
MEDIUM
Gridscale X Prepay <V4.2.1 - Auth Bypass
Dec 09, 2025
CVSS 6.3
EPSS 0.00
CVE-2025-40806
MEDIUM
Gridscale X Prepay <V4.2.1 - Info Disclosure
Dec 09, 2025
CVSS 5.3
EPSS 0.00
CVE-2025-40801
HIGH
Siemens COMOS V10.6 < V10.6.1 - Improper Certificate Validation
Dec 09, 2025
CVSS 8.1
EPSS 0.00
CVE-2025-40800
HIGH
COMOS V10.6- Simcenter Femap - SSL/TLS Validation
Dec 09, 2025
CVSS 7.4
EPSS 0.00
CVE-2025-40936
HIGH
PS/IGES Parasolid Translator Component < V29.0.258 - Memory Corruption
Nov 17, 2025
CVSS 7.8
EPSS 0.00
CVE-2025-40834
MEDIUM
Mendix RichText 4.0.0-4.6.0 - Cross-Site Scripting
Nov 17, 2025
CVSS 5.7
EPSS 0.00
CVE-2025-40827
HIGH
Siemens Software Center, Solid Edge SE2025 <V3.5-V225.0 Update 10 -...
Nov 11, 2025
CVSS 7.8
EPSS 0.00
CVE-2025-40817
MEDIUM
Siemens LOGO! and SIPLUS LOGO! - Unauthenticated Time Manipulation
Nov 11, 2025
CVSS 6.5
EPSS 0.00
CVE-2025-40816
HIGH
Siemens LOGO! Devices - Unauthenticated IP Address Manipulation
Nov 11, 2025
CVSS 7.6
EPSS 0.00
CVE-2025-40815
HIGH
Siemens LOGO! and SIPLUS LOGO! - Buffer Overflow via TCP Packet Structure Validation
Nov 11, 2025
CVSS 7.2
EPSS 0.00
CVE-2025-40763
HIGH
Altair Grid Engine < V2026.0.0 - Code Injection
Nov 11, 2025
CVSS 7.8
EPSS 0.00
CVE-2025-40760
MEDIUM
Altair Grid Engine < V2026.0.0 - Info Disclosure
Nov 11, 2025
CVSS 5.5
EPSS 0.00
CVE-2025-40744
HIGH
Solid Edge SE2025 <V225.0 Update 11 - Man in the Middle
Nov 11, 2025
CVSS 7.5
EPSS 0.00
CVE-2025-40812
HIGH
Solid Edge SE2024 < V224.0 Update 14 and SE2025 < V225.0 Update 6 - Out-of-bounds Read via PRT File Parsing
Oct 14, 2025
CVSS 7.8
EPSS 0.00
Products
teamcenter_visualization 188
jt2go 166
tecnomatix_plant_simulation 85
simcenter_femap 77
telecontrol_server_basic 77
sinema_remote_connect_server 71
sinec_infrastructure_network_services 68
scalance_w1750d_firmware 62
parasolid 52
solid_edge 47
wincc 43
sinec_nms 42
sinec_ins 38
solid_edge_se2023 36
sppa-t3000_ms3000_migration_server 35
jt_utilities 32
comos 31
simatic_wincc 30
jt_open_toolkit 29
scalance_lpe9403_firmware 27
nucleus_net 25
nucleus_source_code 25
simatic_pcs7 25
simatic_pcs_7 25
scalance_s615_firmware 24
simatic_ipc427e_firmware 24
simatic_ipc477e_firmware 24
simatic_itp1000_firmware 24
simatic_pcs_neo 24
ruggedcom_rox_mx5000_firmware 23
Quick Filters