siemens
2,341 tracked vulnerabilities.
CVE-2025-40811
HIGH
Solid Edge SE2024 < V224.0 Update 14 and SE2025 < V225.0 Update 6 - Out-of-bounds Read via PRT File Parsing
Oct 14, 2025
CVSS 7.8
EPSS 0.00
CVE-2025-40810
HIGH
Solid Edge SE2024 < V224.0 Update 14 and SE2025 < V225.0 Update 6 - Out-of-bounds Write via PRT File Parsing
Oct 14, 2025
CVSS 7.8
EPSS 0.00
CVE-2025-40809
HIGH
Solid Edge SE2024 < V224.0 Update 14 and SE2025 < V225.0 Update 6 - Out-of-bounds Write via PRT File Parsing
Oct 14, 2025
CVSS 7.8
EPSS 0.00
CVE-2025-40774
MEDIUM
SiPass integrated < V3.0 - Info Disclosure
Oct 14, 2025
CVSS 4.4
EPSS 0.00
CVE-2025-40773
LOW
SiPass integrated < 3.00 - Authorization Bypass via Insufficient Server-Side Checks
Oct 14, 2025
CVSS 3.5
EPSS 0.00
CVE-2025-40772
HIGH
SiPass integrated < 3.00 - Stored Cross-Site Scripting
Oct 14, 2025
CVSS 7.4
EPSS 0.00
CVE-2025-40771
CRITICAL
SIMATIC CP 1542SP-1, CP 1543SP-1 < V2.4.24 - Unauthenticated Configuration Data Access
Oct 14, 2025
CVSS 9.8
EPSS 0.00
CVE-2025-40765
CRITICAL
TeleControl Server Basic V3.1 >= 3.1.2.2 < 3.1.2.3 - Unauthenticated Information Disclosure
Oct 14, 2025
CVSS 9.8
EPSS 0.00
CVE-2025-40755
HIGH
SINEC NMS < 4.0 SP1 - Authenticated SQL Injection via getTotalAndFilterCounts Endpoint
Oct 14, 2025
CVSS 8.8
EPSS 0.00
CVE-2025-40804
CRITICAL
SIMATIC Virtualization as a Service - Info Disclosure
Sep 09, 2025
CVSS 9.1
EPSS 0.00
CVE-2025-40803
LOW
RUGGEDCOM RST2428P 6GK6242-6PA00 - Unauthenticated Exposure of Sensitive Information
Sep 09, 2025
CVSS 3.1
EPSS 0.00
CVE-2025-40802
LOW
RUGGEDCOM RST2428P - Denial of Service via High Volume Query Requests
Sep 09, 2025
CVSS 3.1
EPSS 0.00
CVE-2025-40798
HIGH
SIMATIC PCS neo and User Management Component < 2.15.1.3 - Unauthenticated Out-of-bounds Read
Sep 09, 2025
CVSS 7.5
EPSS 0.00
CVE-2025-40797
HIGH
SIMATIC PCS neo and User Management Component < 2.15.1.3 - Unauthenticated Denial of Service via Out-of-bounds Read
Sep 09, 2025
CVSS 7.5
EPSS 0.00
CVE-2025-40796
HIGH
SIMATIC PCS neo and User Management Component < 2.15.1.3 - Unauthenticated Out-of-Bounds Read
Sep 09, 2025
CVSS 7.5
EPSS 0.00
CVE-2025-40795
CRITICAL
SIMATIC PCS neo and User Management Component < 2.15.1.3 - Unauthenticated Stack-based Buffer Overflow
Sep 09, 2025
CVSS 9.8
EPSS 0.00
CVE-2025-40757
MEDIUM
APOGEE PXC Series - Info Disclosure
Sep 09, 2025
CVSS 5.3
EPSS 0.00
CVE-2025-40594
MEDIUM
SINAMICS G220/S200/S210 V6.4 < HF2/7/2 - Unauthenticated Privilege Escalation via Factory Reset
Sep 09, 2025
CVSS 6.3
EPSS 0.00
CVE-2025-40758
HIGH
Mendix SAML Module - Signature Validation Account Hijacking
Aug 14, 2025
CVSS 8.7
EPSS 0.00
CVE-2025-40770
HIGH
SINEC Traffic Analyzer - Man-in-the-Middle
Aug 12, 2025
CVSS 7.4
EPSS 0.00
CVE-2025-40769
HIGH
SINEC Traffic Analyzer < V3.0 - Cross-Site Scripting via Unsafe Content Security Policy
Aug 12, 2025
CVSS 7.4
EPSS 0.00
CVE-2025-40768
HIGH
SINEC Traffic Analyzer < 3.0 - Unauthorized Access via Exposed Internal Service Port
Aug 12, 2025
CVSS 7.3
EPSS 0.00
CVE-2025-40767
HIGH
SINEC Traffic Analyzer <V3.0 - Privilege Escalation
Aug 12, 2025
CVSS 7.8
EPSS 0.00
CVE-2025-40766
MEDIUM
SINEC Traffic Analyzer < 3.0 - Denial of Service via Uncontrolled Docker Resource Consumption
Aug 12, 2025
CVSS 5.5
EPSS 0.00
CVE-2025-40764
HIGH
Simcenter Femap V2406 < 2406.0003 and V2412 < 2412.0002 - Out-of-bounds Read via BMP File Parsing
Aug 12, 2025
CVSS 7.8
EPSS 0.00
Products
teamcenter_visualization 188
jt2go 166
tecnomatix_plant_simulation 85
simcenter_femap 77
telecontrol_server_basic 77
sinema_remote_connect_server 71
sinec_infrastructure_network_services 68
scalance_w1750d_firmware 62
parasolid 52
solid_edge 47
wincc 43
sinec_nms 42
sinec_ins 38
solid_edge_se2023 36
sppa-t3000_ms3000_migration_server 35
jt_utilities 32
comos 31
simatic_wincc 30
jt_open_toolkit 29
scalance_lpe9403_firmware 27
nucleus_net 25
nucleus_source_code 25
simatic_pcs7 25
simatic_pcs_7 25
scalance_s615_firmware 24
simatic_ipc427e_firmware 24
simatic_ipc477e_firmware 24
simatic_itp1000_firmware 24
simatic_pcs_neo 24
ruggedcom_rox_mx5000_firmware 23
Quick Filters