siemens

2,341 tracked vulnerabilities.

CVE-2025-40811 HIGH
Solid Edge SE2024 < V224.0 Update 14 and SE2025 < V225.0 Update 6 - Out-of-bounds Read via PRT File Parsing
Oct 14, 2025
CVSS 7.8
EPSS 0.00
CVE-2025-40810 HIGH
Solid Edge SE2024 < V224.0 Update 14 and SE2025 < V225.0 Update 6 - Out-of-bounds Write via PRT File Parsing
Oct 14, 2025
CVSS 7.8
EPSS 0.00
CVE-2025-40809 HIGH
Solid Edge SE2024 < V224.0 Update 14 and SE2025 < V225.0 Update 6 - Out-of-bounds Write via PRT File Parsing
Oct 14, 2025
CVSS 7.8
EPSS 0.00
CVE-2025-40774 MEDIUM
SiPass integrated < V3.0 - Info Disclosure
Oct 14, 2025
CVSS 4.4
EPSS 0.00
CVE-2025-40773 LOW
SiPass integrated < 3.00 - Authorization Bypass via Insufficient Server-Side Checks
Oct 14, 2025
CVSS 3.5
EPSS 0.00
CVE-2025-40772 HIGH
SiPass integrated < 3.00 - Stored Cross-Site Scripting
Oct 14, 2025
CVSS 7.4
EPSS 0.00
CVE-2025-40771 CRITICAL
SIMATIC CP 1542SP-1, CP 1543SP-1 < V2.4.24 - Unauthenticated Configuration Data Access
Oct 14, 2025
CVSS 9.8
EPSS 0.00
CVE-2025-40765 CRITICAL
TeleControl Server Basic V3.1 >= 3.1.2.2 < 3.1.2.3 - Unauthenticated Information Disclosure
Oct 14, 2025
CVSS 9.8
EPSS 0.00
CVE-2025-40755 HIGH
SINEC NMS < 4.0 SP1 - Authenticated SQL Injection via getTotalAndFilterCounts Endpoint
Oct 14, 2025
CVSS 8.8
EPSS 0.00
CVE-2025-40804 CRITICAL
SIMATIC Virtualization as a Service - Info Disclosure
Sep 09, 2025
CVSS 9.1
EPSS 0.00
CVE-2025-40803 LOW
RUGGEDCOM RST2428P 6GK6242-6PA00 - Unauthenticated Exposure of Sensitive Information
Sep 09, 2025
CVSS 3.1
EPSS 0.00
CVE-2025-40802 LOW
RUGGEDCOM RST2428P - Denial of Service via High Volume Query Requests
Sep 09, 2025
CVSS 3.1
EPSS 0.00
CVE-2025-40798 HIGH
SIMATIC PCS neo and User Management Component < 2.15.1.3 - Unauthenticated Out-of-bounds Read
Sep 09, 2025
CVSS 7.5
EPSS 0.00
CVE-2025-40797 HIGH
SIMATIC PCS neo and User Management Component < 2.15.1.3 - Unauthenticated Denial of Service via Out-of-bounds Read
Sep 09, 2025
CVSS 7.5
EPSS 0.00
CVE-2025-40796 HIGH
SIMATIC PCS neo and User Management Component < 2.15.1.3 - Unauthenticated Out-of-Bounds Read
Sep 09, 2025
CVSS 7.5
EPSS 0.00
CVE-2025-40795 CRITICAL
SIMATIC PCS neo and User Management Component < 2.15.1.3 - Unauthenticated Stack-based Buffer Overflow
Sep 09, 2025
CVSS 9.8
EPSS 0.00
CVE-2025-40757 MEDIUM
APOGEE PXC Series - Info Disclosure
Sep 09, 2025
CVSS 5.3
EPSS 0.00
CVE-2025-40594 MEDIUM
SINAMICS G220/S200/S210 V6.4 < HF2/7/2 - Unauthenticated Privilege Escalation via Factory Reset
Sep 09, 2025
CVSS 6.3
EPSS 0.00
CVE-2025-40758 HIGH
Mendix SAML Module - Signature Validation Account Hijacking
Aug 14, 2025
CVSS 8.7
EPSS 0.00
CVE-2025-40770 HIGH
SINEC Traffic Analyzer - Man-in-the-Middle
Aug 12, 2025
CVSS 7.4
EPSS 0.00
CVE-2025-40769 HIGH
SINEC Traffic Analyzer < V3.0 - Cross-Site Scripting via Unsafe Content Security Policy
Aug 12, 2025
CVSS 7.4
EPSS 0.00
CVE-2025-40768 HIGH
SINEC Traffic Analyzer < 3.0 - Unauthorized Access via Exposed Internal Service Port
Aug 12, 2025
CVSS 7.3
EPSS 0.00
CVE-2025-40767 HIGH
SINEC Traffic Analyzer <V3.0 - Privilege Escalation
Aug 12, 2025
CVSS 7.8
EPSS 0.00
CVE-2025-40766 MEDIUM
SINEC Traffic Analyzer < 3.0 - Denial of Service via Uncontrolled Docker Resource Consumption
Aug 12, 2025
CVSS 5.5
EPSS 0.00
CVE-2025-40764 HIGH
Simcenter Femap V2406 < 2406.0003 and V2412 < 2412.0002 - Out-of-bounds Read via BMP File Parsing
Aug 12, 2025
CVSS 7.8
EPSS 0.00