siemens

2,341 tracked vulnerabilities.

CVE-2025-40941 MEDIUM
SIMATIC CN 4100 < 4.0.1 - Information Exposure via Server Response Headers
Dec 09, 2025
CVSS 4.3
EPSS 0.00
CVE-2025-40940 MEDIUM
SIMATIC CN 4100 < 4.0.1 - Exposure of Sensitive Information via SNMP Inconsistencies
Dec 09, 2025
CVSS 4.9
EPSS 0.00
CVE-2025-40939 MEDIUM
SIMATIC CN 4100 < 4.0.1 - Unauthenticated Denial of Service via USB Port
Dec 09, 2025
CVSS 4.6
EPSS 0.00
CVE-2025-40938 HIGH
SIMATIC CN 4100 < 4.0.1 - Use of Hard-coded Credentials
Dec 09, 2025
CVSS 8.1
EPSS 0.00
CVE-2025-40937 HIGH
SIMATIC CN 4100 < 4.0.1 - Authenticated Command Injection via REST API
Dec 09, 2025
CVSS 8.3
EPSS 0.00
CVE-2025-40935 MEDIUM
RUGGEDCOM -<V5.10.1 - Info Disclosure
Dec 09, 2025
CVSS 4.3
EPSS 0.00
CVE-2025-40831 MEDIUM
SINEC Security Monitor < 4.10.0 - Authenticated Denial of Service via Report Generation Date Parameter
Dec 09, 2025
CVSS 6.5
EPSS 0.00
CVE-2025-40830 MEDIUM
SINEC Security Monitor < 4.10.0 - Authenticated Arbitrary File Read and Write via ssmctl-client File Transfer
Dec 09, 2025
CVSS 6.7
EPSS 0.00
CVE-2025-40820 HIGH
TCP Sequence Number Validation - DoS
Dec 09, 2025
CVSS 7.5
EPSS 0.00
CVE-2025-40819 MEDIUM
SINEMA Remote Connect Server < V3.2 SP4 - Incorrect Authorization via Database Table Modification
Dec 09, 2025
CVSS 4.3
EPSS 0.00
CVE-2025-40818 LOW
SINEMA Remote Connect Server < V3.2 SP4 - Authenticated Private Key Exposure via Improper Permission Assignment
Dec 09, 2025
CVSS 3.3
EPSS 0.00
CVE-2025-40807 MEDIUM
Gridscale X Prepay <V4.2.1 - Auth Bypass
Dec 09, 2025
CVSS 6.3
EPSS 0.00
CVE-2025-40806 MEDIUM
Gridscale X Prepay <V4.2.1 - Info Disclosure
Dec 09, 2025
CVSS 5.3
EPSS 0.00
CVE-2025-40801 HIGH
Siemens COMOS V10.6 < V10.6.1 - Improper Certificate Validation
Dec 09, 2025
CVSS 8.1
EPSS 0.00
CVE-2025-40800 HIGH
COMOS V10.6- Simcenter Femap - SSL/TLS Validation
Dec 09, 2025
CVSS 7.4
EPSS 0.00
CVE-2025-40936 HIGH
PS/IGES Parasolid Translator Component < V29.0.258 - Memory Corruption
Nov 17, 2025
CVSS 7.8
EPSS 0.00
CVE-2025-40834 MEDIUM
Mendix RichText 4.0.0-4.6.0 - Cross-Site Scripting
Nov 17, 2025
CVSS 5.7
EPSS 0.00
CVE-2025-40827 HIGH
Siemens Software Center, Solid Edge SE2025 <V3.5-V225.0 Update 10 -...
Nov 11, 2025
CVSS 7.8
EPSS 0.00
CVE-2025-40817 MEDIUM
Siemens LOGO! and SIPLUS LOGO! - Unauthenticated Time Manipulation
Nov 11, 2025
CVSS 6.5
EPSS 0.00
CVE-2025-40816 HIGH
Siemens LOGO! Devices - Unauthenticated IP Address Manipulation
Nov 11, 2025
CVSS 7.6
EPSS 0.00
CVE-2025-40815 HIGH
Siemens LOGO! and SIPLUS LOGO! - Buffer Overflow via TCP Packet Structure Validation
Nov 11, 2025
CVSS 7.2
EPSS 0.00
CVE-2025-40763 HIGH
Altair Grid Engine < V2026.0.0 - Code Injection
Nov 11, 2025
CVSS 7.8
EPSS 0.00
CVE-2025-40760 MEDIUM
Altair Grid Engine < V2026.0.0 - Info Disclosure
Nov 11, 2025
CVSS 5.5
EPSS 0.00
CVE-2025-40744 HIGH
Solid Edge SE2025 <V225.0 Update 11 - Man in the Middle
Nov 11, 2025
CVSS 7.5
EPSS 0.00
CVE-2025-40812 HIGH
Solid Edge SE2024 < V224.0 Update 14 and SE2025 < V225.0 Update 6 - Out-of-bounds Read via PRT File Parsing
Oct 14, 2025
CVSS 7.8
EPSS 0.00