siemens

2,341 tracked vulnerabilities.

CVE-2022-39143 HIGH
Siemens Simcenter Femap < 2022.1.3 and Parasolid < 33.1.263 - Out-of-Bounds Write via X_T File Parsing
Sep 13, 2022
CVSS 7.8
EPSS 0.00
CVE-2022-39142 HIGH
Siemens Simcenter Femap < 2022.1.3 and 2022.2 < 2022.2.2 - Out-of-bounds Write via X_T File Parsing
Sep 13, 2022
CVSS 7.8
EPSS 0.00
CVE-2022-39141 HIGH
Siemens Simcenter Femap < 2022.1.3 and < 2022.2.2 - Out-of-Bounds Read via X_T File Parsing
Sep 13, 2022
CVSS 7.8
EPSS 0.00
CVE-2022-39140 HIGH
Siemens Simcenter Femap < 2022.1.3 and < 2022.2.2 - Out-of-Bounds Write via X_T File Parsing
Sep 13, 2022
CVSS 7.8
EPSS 0.00
CVE-2022-39139 HIGH
Siemens Simcenter Femap < 2022.1.3 and < 2022.2.2 - Out-of-Bounds Write via X_T File Parsing
Sep 13, 2022
CVSS 7.8
EPSS 0.00
CVE-2022-39138 HIGH
Siemens Simcenter Femap < 2022.1.3 and < 2022.2.2 - Out-of-Bounds Write via X_T File Parsing
Sep 13, 2022
CVSS 7.8
EPSS 0.00
CVE-2022-39137 HIGH
Siemens Simcenter Femap < 2022.1.3 and Parasolid < 33.1.262 - Out-of-Bounds Read in X_T File Parser
Sep 13, 2022
CVSS 7.8
EPSS 0.00
CVE-2022-38466 HIGH
CoreShield OWG <V2.2 - Privilege Escalation
Sep 13, 2022
CVSS 7.8
EPSS 0.00
CVE-2022-36325 MEDIUM
Siemens SCALANCE - DOM-based XSS via Web Interface
Aug 10, 2022
CVSS 6.8
EPSS 0.00
CVE-2022-36324 HIGH
Siemens SCALANCE Devices - Denial of Service via SSL/TLS Renegotiation
Aug 10, 2022
CVSS 7.5
EPSS 0.02
CVE-2022-36323 CRITICAL
Affected Device - Command Injection
Aug 10, 2022
CVSS 9.1
EPSS 0.01
CVE-2022-34661 HIGH
Siemens Teamcenter DoS via File Server Cache Service Infinite Loop
Aug 10, 2022
CVSS 7.5
EPSS 0.00
CVE-2022-34660 CRITICAL
Siemens Teamcenter < 12.4.0.15 - Command Injection
Aug 10, 2022
CVSS 9.8
EPSS 0.01
CVE-2022-34659 HIGH
Simcenter STAR-CCM+ Viewer - Unauthorized Exposure of User and Host Information via Power-on-Demand License Server
Aug 10, 2022
CVSS 7.5
EPSS 0.00
CVE-2022-32222 MEDIUM
Node.js 18.x < 18.40.0 - Cryptographic Configuration Path Vulnerability
Jul 14, 2022
CVSS 5.3
EPSS 0.01
CVE-2022-32215 MEDIUM
llhttp <14.20.1, <16.17.1, <18.9.1 - HTTP Request Smuggling via Multi-line Transfer-Encoding Header
Jul 14, 2022
CVSS 6.5
EPSS 0.86
CVE-2022-32213 MEDIUM
llhttp < 2.1.5 - HTTP Request Smuggling via Transfer-Encoding Header
Jul 14, 2022
CVSS 6.5
EPSS 0.86
CVE-2022-32212 HIGH
Node.js <14.20.0, <16.20.0, <18.5.0 - OS Command Injection via IsAllowedHost Bypass
Jul 14, 2022
CVSS 8.1
EPSS 0.00
CVE-2022-34821 HIGH
SIMATIC CP 1242-7 V2 Firmware and related products - Remote Code Execution via OpenVPN Configuration Injection
Jul 12, 2022
CVSS 7.6
EPSS 0.01
CVE-2022-34820 HIGH
SIMATIC and SIPLUS CP Firmware - Remote Code Execution via Authentication Field Injection
Jul 12, 2022
CVSS 8.4
EPSS 0.01
CVE-2022-34819 CRITICAL
SIMATIC and SIPLUS CP Firmware - Heap-based Buffer Overflow via Message Parsing
Jul 12, 2022
CVSS 10.0
EPSS 0.01
CVE-2022-34748 HIGH
Simcenter Femap < 2022.2 - Out-of-Bounds Write via X_T File Parsing
Jul 12, 2022
CVSS 7.8
EPSS 0.00
CVE-2022-34663 HIGH
Siemens RUGGEDCOM ROS - Remote Code Execution via Web Console
Jul 12, 2022
CVSS 8.0
EPSS 0.00
CVE-2022-34465 HIGH
Parasolid & Simcenter Femap Out-of-bounds Read in NEU File Parser
Jul 12, 2022
CVSS 7.8
EPSS 0.00
CVE-2022-34464 MEDIUM
SICAM GridEdge (Classic) < V2.7.3 - Code Injection
Jul 12, 2022
CVSS 6.3
EPSS 0.00