siemens

2,341 tracked vulnerabilities.

CVE-2021-37201 HIGH
SINEC NMS < 1.0 SP1 - Cross-Site Request Forgery
Sep 14, 2021
CVSS 8.8
EPSS 0.00
CVE-2021-37200 HIGH
SINEC NMS < 1.0 SP1 - Path Traversal via Crafted HTTP Request
Sep 14, 2021
CVSS 7.7
EPSS 0.02
CVE-2021-37193 MEDIUM
SINEMA Remote Connect Server <V3.0 SP2 - Auth Bypass
Sep 14, 2021
CVSS 4.3
EPSS 0.00
CVE-2021-37192 MEDIUM
SINEMA Remote Connect Server < V3.0 SP2 - Unauthorized Exposure of Managed Network Devices
Sep 14, 2021
CVSS 4.3
EPSS 0.00
CVE-2021-37191 MEDIUM
SINEMA Remote Connect Server <V3.0 SP2 - Info Disclosure
Sep 14, 2021
CVSS 4.3
EPSS 0.00
CVE-2021-37190 MEDIUM
SINEMA Remote Connect Server < 3.0 SP2 - Unauthorized VPN Connection Information Disclosure
Sep 14, 2021
CVSS 4.3
EPSS 0.00
CVE-2021-37186 MEDIUM
Siemens LOGO! CMR2020/CMR2040 < 2.2 & SIMATIC RTU3010C/RTU3030C/RTU3031C/RTU3041C < 4.0.9 - Predictable TCP ISN
Sep 14, 2021
CVSS 5.4
EPSS 0.00
CVE-2021-37184 CRITICAL
Industrial Edge Management < 1.3 - Unauthenticated Password Change via User Impersonation
Sep 14, 2021
CVSS 9.8
EPSS 0.01
CVE-2021-37183 MEDIUM
SINEMA Remote Connect Server < 3.0 SP2 - Unauthenticated Denial of Service via Send-to-Sleep Notifications
Sep 14, 2021
CVSS 6.5
EPSS 0.00
CVE-2021-37181 CRITICAL
Siemens Cerberus DMS and Desigo CC - Unauthenticated Remote Code Execution via Untrusted Data Deserialization
Sep 14, 2021
CVSS 10.0
EPSS 0.01
CVE-2021-37177 MEDIUM
SINEMA Remote Connect Server <V3.0 SP2 - Info Disclosure
Sep 14, 2021
CVSS 6.5
EPSS 0.00
CVE-2021-37176 LOW
Simcenter Femap V2020.2 and V2021.1 - Out-of-bounds Read in modfem File Parser
Sep 14, 2021
CVSS 3.3
EPSS 0.00
CVE-2021-37175 MEDIUM
Siemens RUGGEDCOM ROX Firmware < 2.14.1 - Unauthenticated Directory Traversal
Sep 14, 2021
CVSS 5.3
EPSS 0.00
CVE-2021-37174 HIGH
Siemens RUGGEDCOM ROX Firmware < 2.14.1 - Privilege Escalation to Root
Sep 14, 2021
CVSS 8.8
EPSS 0.01
CVE-2021-37173 HIGH
Siemens RUGGEDCOM ROX Firmware < 2.14.1 - Privilege Escalation via File Operation Restrictions
Sep 14, 2021
CVSS 8.8
EPSS 0.02
CVE-2021-33737 HIGH
SIMATIC CP 343-1 and CP 443-1 - Denial of Service via Crafted Packet to Port 102/tcp
Sep 14, 2021
CVSS 7.5
EPSS 0.00
CVE-2021-33720 HIGH
SIPROTEC 5 with CPU variants CP050, CP100, CP300 < 8.80 - Denial of Service via Crafted Packets to Port 4443
Sep 14, 2021
CVSS 7.5
EPSS 0.00
CVE-2021-33719 CRITICAL
SIPROTEC 5 - DoS/Remote Code Execution
Sep 14, 2021
CVSS 9.8
EPSS 0.01
CVE-2021-33716 MEDIUM
SIMATIC CP 1543-1, SIPLUS - Info Disclosure
Sep 14, 2021
CVSS 6.5
EPSS 0.00
CVE-2021-31891 CRITICAL
Siemens Desigo CC - OS Command Injection
Sep 14, 2021
CVSS 10.0
EPSS 0.05
CVE-2021-27391 CRITICAL
APOGEE MBC/MEC/PXC/TALON TC - Info Disclosure
Sep 14, 2021
CVSS 9.8
EPSS 0.03
CVE-2021-25665 HIGH
Simcenter STAR-CCM+ < 2021.2.1 - Out-of-bounds Write in Scene File Parser
Sep 14, 2021
CVSS 7.8
EPSS 0.00
CVE-2021-37733 MEDIUM
Aruba SD-WAN 2.2.0.0-2.2.0.3 and ArubaOS 8.3.0.0-8.3.0.15 - Path Traversal
Sep 07, 2021
CVSS 4.9
EPSS 0.00
CVE-2021-37731 MEDIUM
Aruba SD-WAN 2.2.0.0-2.2.0.3 and ArubaOS 8.3.0.0-8.3.0.14 - Path Traversal
Sep 07, 2021
CVSS 6.2
EPSS 0.00
CVE-2021-37729 MEDIUM
Aruba SD-WAN < 2.2.0.4 and ArubaOS < 6.4.4.25 - Path Traversal
Sep 07, 2021
CVSS 6.5
EPSS 0.01