siemens

2,341 tracked vulnerabilities.

CVE-2022-23312 MEDIUM
Spectrum Power 4 < V4.70 SP9 Security Patch 1 - Cross-Site Scripting in Online Help
Feb 09, 2022
CVSS 6.1
EPSS 0.00
CVE-2022-23102 MEDIUM NUCLEI
SINEMA Remote Connect Server < 2.0 - Open Redirect
Feb 09, 2022
CVSS 6.1
EPSS 0.05
CVE-2022-23990 HIGH
libexpat < 2.4.4 - Integer Overflow in doProlog Function
Jan 26, 2022
CVSS 7.5
EPSS 0.04
CVE-2022-23852 CRITICAL
libexpat < 2.4.4 - Integer Overflow in XML_GetBuffer
Jan 24, 2022
CVSS 9.8
EPSS 0.02
CVE-2022-0235 MEDIUM
node-fetch < 2.6.7 and >=3.0.0 <3.1.1 - Open Redirect via URL Validation Bypass
Jan 16, 2022
CVSS 6.1
EPSS 0.00
CVE-2022-0155 MEDIUM
follow-redirects < 1.14.7 - Exposure of Private Personal Information to an Unauthorized Actor
Jan 10, 2022
CVSS 6.5
EPSS 0.01
CVE-2022-22827 HIGH
libexpat < 2.4.3 - Integer Overflow in storeAtts
Jan 10, 2022
CVSS 8.8
EPSS 0.00
CVE-2022-22826 HIGH
libexpat < 2.4.3 - Integer Overflow in nextScaffoldPart
Jan 10, 2022
CVSS 8.8
EPSS 0.00
CVE-2022-22825 HIGH
libexpat < 2.4.3 - Integer Overflow in xmlparse.c Lookup
Jan 10, 2022
CVSS 8.8
EPSS 0.00
CVE-2022-22824 CRITICAL
libexpat < 2.4.3 - Integer Overflow in defineAttribute
Jan 10, 2022
CVSS 9.8
EPSS 0.00
CVE-2022-22823 CRITICAL
libexpat < 2.4.3 - Integer Overflow in build_model Function
Jan 10, 2022
CVSS 9.8
EPSS 0.00
CVE-2022-22822 CRITICAL
libexpat < 2.4.3 - Integer Overflow in addBinding
Jan 10, 2022
CVSS 9.8
EPSS 0.01
CVE-2021-38405 HIGH
Datalogics APDFL - Memory Corruption
Nov 21, 2023
CVSS 7.8
EPSS 0.00
CVE-2021-41544 HIGH
Siemens Software Center < 3.0 - DLL Hijacking via Uncontrolled Search Path
Aug 08, 2023
CVSS 7.8
EPSS 0.00
CVE-2021-44695 MEDIUM
SIMATIC S7-1200 CPU and S7-PLCSIM Advanced Firmware - Denial of Service via Crafted Packets to Port 102/tcp
Dec 13, 2022
CVSS 4.9
EPSS 0.00
CVE-2021-44694 MEDIUM
SIMATIC S7-1200 CPU and S7-PLCSIM Advanced Firmware - Denial of Service via Crafted Packets to Port 102/tcp
Dec 13, 2022
CVSS 5.5
EPSS 0.00
CVE-2021-44693 MEDIUM
SIMATIC S7-1200 CPU and S7-PLCSIM Advanced Firmware - Denial of Service via Crafted Packets to Port 102/tcp
Dec 13, 2022
CVSS 4.9
EPSS 0.00
CVE-2021-40365 HIGH
Siemens SIMATIC S7-1200 and ET 200 SP Open Controller - Denial of Service via Crafted Packets
Dec 13, 2022
CVSS 7.5
EPSS 0.00
CVE-2021-46304 HIGH
CP-8000/8021/8022 - Info Disclosure
Aug 10, 2022
CVSS 7.5
EPSS 0.00
CVE-2021-44222 CRITICAL
SIMATIC eaSie Core Package < 22.00 - Unauthenticated MQTT Service Request Injection
Jul 12, 2022
CVSS 9.1
EPSS 0.00
CVE-2021-44221 HIGH
SIMATIC eaSie Core Package < 22.00 - Denial of Service via Message Passing Framework
Jul 12, 2022
CVSS 7.5
EPSS 0.01
CVE-2021-37182 HIGH
Siemens SCALANCE XM408-4C/XM408-8C/XM416-4C/XR524-8C/XR526-8C <6.5 - Information Disclosure
Jun 14, 2022
CVSS 7.5
EPSS 0.00
CVE-2021-41545 HIGH
Desigo DXR2-PXC5 < V01.21.142.5-22 - DoS
May 10, 2022
CVSS 7.5
EPSS 0.00
CVE-2021-42029 HIGH
SIMATIC STEP 7 V15, V16 < Update 5, V17 < Update 2 - Privilege Escalation via Web Server Access
Apr 12, 2022
CVSS 7.8
EPSS 0.00
CVE-2021-40368 HIGH
SIMATIC S7-400 - Privilege Escalation
Apr 12, 2022
CVSS 7.5
EPSS 0.00