siemens

2,341 tracked vulnerabilities.

CVE-2018-20748 CRITICAL
LibVNC < 0.9.12 - Heap Out-of-Bounds Write in rfbproto.c
Jan 30, 2019
CVSS 9.8
EPSS 0.11
CVE-2018-20685 MEDIUM
OpenSSH < 7.9 - Incorrect Authorization via SCP Filename Manipulation
Jan 10, 2019
CVSS 5.3
EPSS 0.03
CVE-2018-20019 CRITICAL
LibVNC <a83439b9fbe0f03c48eb94ed05729cb016f8b72f - RCE
Dec 19, 2018
CVSS 9.8
EPSS 0.17
CVE-2018-16557 HIGH
SIMATIC S7-400 and S7-410 Firmware - Denial of Service via Crafted Packets to Port 102/tcp
Dec 13, 2018
CVSS 8.2
EPSS 0.00
CVE-2018-16556 HIGH
SIMATIC S7-400 CPU family - Denial of Service via Crafted Packets to Port 102/tcp
Dec 13, 2018
CVSS 7.5
EPSS 0.00
CVE-2018-16555 MEDIUM
SCALANCE S602, S612, S623, S627-2M < V4.0.1.1 - Authenticated Stored Cross-Site Scripting
Dec 13, 2018
CVSS 5.4
EPSS 0.00
CVE-2018-13815 HIGH
SIMATIC S7-1200 and S7-1500 < V2.6 - Unauthenticated Denial of Service via TCP Port 102 Connection Exhaustion
Dec 13, 2018
CVSS 7.5
EPSS 0.00
CVE-2018-13814 HIGH
SIMATIC HMI and WinCC < V14 - HTTP Header Injection via Integrated Web Server
Dec 13, 2018
CVSS 8.8
EPSS 0.00
CVE-2018-13813 HIGH
SIMATIC HMI and WinCC < V15 Update 4 - Authenticated Open Redirect
Dec 13, 2018
CVSS 8.1
EPSS 0.00
CVE-2018-13812 HIGH
SIMATIC HMI Panels & WinCC < V15 Update 4 - Unauthenticated Path Traversal
Dec 13, 2018
CVSS 7.5
EPSS 0.08
CVE-2018-13811 MEDIUM
SIMATIC STEP 7 (TIA Portal) < V15.1 - Sensitive Information Exposure via Weak Password Hash
Dec 13, 2018
CVSS 5.5
EPSS 0.00
CVE-2018-13804 HIGH
SIMATIC IT LMS and Production Suite - Improper Authentication
Dec 13, 2018
CVSS 8.1
EPSS 0.03
CVE-2018-13816 CRITICAL
TIM 1531 IRC Firmware < 2.0 - Unauthenticated Improper Access Control on Port 102/tcp
Dec 12, 2018
CVSS 10.0
EPSS 0.03
CVE-2018-11466 CRITICAL
SINUMERIK 808D V4.7/V4.8, 828D V4.7, 840D sl V4.7/V4.8 - RCE or DoS via ISO-TSAP Port 102
Dec 12, 2018
CVSS 9.8
EPSS 0.02
CVE-2018-11465 HIGH
SINUMERIK 808D V4.7/V4.8, 828D < V4.7 SP6 HF1, 840D sl < V4.7 SP6 HF5/< V4.8 SP3 - Out-of-bounds Read via ioctl
Dec 12, 2018
CVSS 7.8
EPSS 0.00
CVE-2018-11464 LOW
SINUMERIK <4.7 SP6 HF1, <4.7 SP6 HF5, <4.8 SP3 - DoS
Dec 12, 2018
CVSS 3.7
EPSS 0.00
CVE-2018-11463 HIGH
SINUMERIK 808D V4.7/V4.8, 828D < V4.7 SP6 HF1, 840D sl < V4.7 SP6 HF5/< V4.8 SP3 - Authenticated Buffer Overflow
Dec 12, 2018
CVSS 7.8
EPSS 0.00
CVE-2018-11462 CRITICAL
SINUMERIK 808D V4.7/V4.8, 828D < V4.7 SP6 HF1, 840D sl < V4.7 SP6 HF5/V4.8 SP3 - Unauthenticated Privilege Escalation
Dec 12, 2018
CVSS 9.8
EPSS 0.11
CVE-2018-11461 MEDIUM
SINUMERIK 808D V4.7/V4.8, 828D < V4.7 SP6 HF1, 840D sl < V4.7 SP6 HF5/V4.8 SP3 - Privilege Escalation
Dec 12, 2018
CVSS 6.6
EPSS 0.00
CVE-2018-11460 HIGH
SINUMERIK < V4.7 SP6 HF1, < V4.8 SP3 - Local Privilege Escalation
Dec 12, 2018
CVSS 7.8
EPSS 0.00
CVE-2018-11459 HIGH
SINUMERIK - Privilege Escalation
Dec 12, 2018
CVSS 7.8
EPSS 0.00
CVE-2018-11458 HIGH
SINUMERIK 828D/840D sl V4.7/V4.8 < SP6 HF1/SP6 HF5/SP3 - Unauthenticated RCE via VNC
Dec 12, 2018
CVSS 8.1
EPSS 0.01
CVE-2018-11457 HIGH
SINUMERIK 828D/840D sl < V4.7 SP6 HF1/V4.8 SP3 - RCE via Port 4842/tcp
Dec 12, 2018
CVSS 8.1
EPSS 0.01
CVE-2018-13805 HIGH
Siemens Simatic ET 200sp Firmware < 2.5 - Denial of Service
Oct 10, 2018
CVSS 7.5
EPSS 0.00
CVE-2018-13802 HIGH
Siemens ROX II < 2.12.1 - Authenticated OS Command Execution via SSH
Oct 10, 2018
CVSS 7.2
EPSS 0.01