Siemens ICS Security Advisories
1950 CISA ICS-CERT advisories published for Siemens industrial control system products. Data updated every 2 hours.
248
Critical
518
High
1158
Medium
26
Low
| Severity | CVSS | Advisory | Products | Published |
|---|---|---|---|---|
| HIGH | 7.5 |
Siemens SICAM 8 Products
ICSA-26-092-01 · 2 CVEs
|
CPCI85 Central Processing/Communication,
RTUM85 RTU Base,
SICORE Base system
|
2026-04-02 |
| MEDIUM | 0 |
SSA-246443 V1.0: Multiple Vulnerabilities in SICAM 8 Products
SIEMENS-SSA-246443
|
SSA-246443 V1.0: Multiple Vulnerabilities in SICAM 8 Products
|
2026-03-26 |
| MEDIUM | 0 |
SSA-452276 V1.2 (Last Update: 2026-03-19): Eval Injection Vulnerability in SIMATIC S7-1500
SIEMENS-SSA-452276
|
SSA-452276 V1.2 (Last Update: 2026-03-19): Eval Injection Vulnerability in SIMATIC S7-1500
|
2026-03-19 |
| HIGH | 7.4 |
Siemens SICAM SIAPP SDK
ICSA-26-076-04 · 6 CVEs
|
SICAM SIAPP SDK
|
2026-03-17 |
| CRITICAL | 9.9 |
Siemens SINEC Security Monitor
ICSA-24-284-06 · 5 CVEs
|
SINEC Security Monitor
|
2026-03-12 |
| CRITICAL | 9.8 |
Siemens RUGGEDCOM APE1808
ICSA-25-044-06 · 30 CVEs
|
RUGGEDCOM APE1808,
RUGGEDCOM APE1808,
RUGGEDCOM APE1808
+1 more
|
2026-03-12 |
| HIGH | 7.5 |
Siemens RUGGEDCOM APE1808
ICSA-25-162-02 · 8 CVEs
|
RUGGEDCOM APE1808,
RUGGEDCOM APE1808,
RUGGEDCOM APE1808
+1 more
|
2026-03-12 |
| CRITICAL | 9.8 |
Siemens SIMATIC S7-1500 CPU Family
ICSA-25-162-05 · 148 CVEs
|
SIMATIC S7-1500 CPU 1518-4 PN/DP MFP (6ES7518-4AX00-1AB0),
SIMATIC S7-1500 CPU 1518-4 PN/DP MFP (6ES7518-4AX00-1AC0),
SIMATIC S7-1500 CPU 1518F-4 PN/DP MFP (6ES7518-4FX00-1AB0)
+2 more
|
2026-03-12 |
| HIGH | 7.8 |
Siemens Web Installer
ICSA-25-226-22 · 1 CVE
|
Automation License Manager V6.0,
Automation License Manager V6.2,
CEMAT V10.0
+136 more
|
2026-03-12 |
| HIGH | 8.2 |
Siemens Mendix SAML Module
ICSA-25-231-02 · 1 CVE
|
Desigo CC family V5.0,
Desigo CC family V5.1,
Desigo CC family V6
+6 more
|
2026-03-12 |
| MEDIUM | 6.3 |
Siemens SINAMICS Drives
ICSA-25-254-03 · 1 CVE
|
SINAMICS G220 V6.4,
SINAMICS S200 V6.4,
SINAMICS S210 V6.4
|
2026-03-12 |
| HIGH | 7.4 |
Siemens IAM Client
ICSA-25-345-04 · 1 CVE
|
COMOS V10.6,
NX V2412,
NX V2506
+4 more
|
2026-03-12 |
| HIGH | 8.1 |
Siemens Advanced Licensing (SALT) Toolkit
ICSA-25-345-05 · 1 CVE
|
COMOS V10.6,
JT Bi-Directional Translator for STEP,
NX V2412
+6 more
|
2026-03-12 |
| CRITICAL | 10.0 |
Siemens COMOS
ICSA-26-043-03 · 6 CVEs
|
COMOS V10.4,
COMOS V10.4,
COMOS V10.4.5
+3 more
|
2026-03-12 |
| HIGH | 7.8 |
Siemens NX
ICSA-26-043-08 · 1 CVE
|
NX,
NX (Managed Mode)
|
2026-03-12 |
| CRITICAL | 9.8 |
Siemens RUGGEDCOM APE1808 Devices
ICSA-26-071-02 · 4 CVEs
|
RUGGEDCOM APE1808,
RUGGEDCOM APE1808
|
2026-03-12 |
| HIGH | 8.7 |
Siemens SIDIS Prime
ICSA-26-071-03 · 23 CVEs
|
SIDIS Prime
|
2026-03-12 |
| CRITICAL | 9.6 |
Siemens SIMATIC
ICSA-26-071-04 · 1 CVE
|
SIMATIC Drive Controller CPU 1504D TF (6ES7615-4DF10-0AB0),
SIMATIC Drive Controller CPU 1507D TF (6ES7615-7DF10-0AB0),
SIMATIC ET 200SP CPU 1510SP F-1 PN (6ES7510-1SJ01-0AB0)
+168 more
|
2026-03-12 |
| LOW | 2.6 |
Siemens Heliox EV Chargers
ICSA-26-071-05 · 1 CVE
|
Heliox Flex 180 kW EV Charging Station,
Heliox Mobile DC 40 kW EV Charging Station
|
2026-03-12 |
| MEDIUM | 0 |
SSA-975644 V1.0: Multiple Vulnerabilities in Fortigate NGFW on RUGGEDCOM APE1808 Devices
SIEMENS-SSA-975644
|
SSA-975644 V1.0: Multiple Vulnerabilities in Fortigate NGFW on RUGGEDCOM APE1808 Devices
|
2026-03-10 |
| MEDIUM | 0 |
SSA-903736 V1.0: Multiple vulnerabilities in SICAM SIAPP SDK before V2.1.7
SIEMENS-SSA-903736
|
SSA-903736 V1.0: Multiple vulnerabilities in SICAM SIAPP SDK before V2.1.7
|
2026-03-10 |
| MEDIUM | 0 |
SSA-868571 V1.1 (Last Update: 2026-03-10): Missing Server Certificate Validation in IAM Client
SIEMENS-SSA-868571
|
SSA-868571 V1.1 (Last Update: 2026-03-10): Missing Server Certificate Validation in IAM Client
|
2026-03-10 |
| MEDIUM | 0 |
SSA-770770 V1.8 (Last Update: 2026-03-10): Multiple Vulnerabilities in Fortigate NGFW Before V7.4.7 on RUGGEDCOM APE1808 Devices
SIEMENS-SSA-770770
|
SSA-770770 V1.8 (Last Update: 2026-03-10): Multiple Vulnerabilities in Fortigate NGFW Before V7.4.7 on RUGGEDCOM APE1808 Devices
|
2026-03-10 |
| MEDIUM | 0 |
SSA-710408 V1.1 (Last Update: 2026-03-10): Missing Server Certificate Validation in Siemens Advanced Licensing (SALT) Toolkit
SIEMENS-SSA-710408
|
SSA-710408 V1.1 (Last Update: 2026-03-10): Missing Server Certificate Validation in Siemens Advanced Licensing (SALT) Toolkit
|
2026-03-10 |
| MEDIUM | 0 |
SSA-535115 V1.1 (Last Update: 2026-03-10): Data Validation Vulnerability in NX Before V2512
SIEMENS-SSA-535115
|
SSA-535115 V1.1 (Last Update: 2026-03-10): Data Validation Vulnerability in NX Before V2512
|
2026-03-10 |
| MEDIUM | 0 |
SSA-513708 V1.4 (Last Update: 2026-03-10): Multiple Vulnerabilities in Palo Alto Networks Virtual NGFW on RUGGEDCOM APE1808 Devices
SIEMENS-SSA-513708
|
SSA-513708 V1.4 (Last Update: 2026-03-10): Multiple Vulnerabilities in Palo Alto Networks Virtual NGFW on RUGGEDCOM APE1808 Devices
|
2026-03-10 |
| MEDIUM | 0 |
SSA-485750 V1.0: Multiple Vulnerabilities in SIDIS Prime Before V4.0.800
SIEMENS-SSA-485750
|
SSA-485750 V1.0: Multiple Vulnerabilities in SIDIS Prime Before V4.0.800
|
2026-03-10 |
| MEDIUM | 0 |
SSA-430425 V1.1 (Last Update: 2026-03-10): Multiple Vulnerabilities in SINEC Security Monitor before V4.9.0
SIEMENS-SSA-430425
|
SSA-430425 V1.1 (Last Update: 2026-03-10): Multiple Vulnerabilities in SINEC Security Monitor before V4.9.0
|
2026-03-10 |
| MEDIUM | 0 |
SSA-282044 V1.7 (Last Update: 2026-03-10): DLL Hijacking Vulnerability in Siemens Web Installer used by the Online Software Delivery
SIEMENS-SSA-282044
|
SSA-282044 V1.7 (Last Update: 2026-03-10): DLL Hijacking Vulnerability in Siemens Web Installer used by the Online Software Delivery
|
2026-03-10 |
| MEDIUM | 0 |
SSA-212953 V1.3 (Last Update: 2026-03-10): Multiple Vulnerabilities in COMOS
SIEMENS-SSA-212953
|
SSA-212953 V1.3 (Last Update: 2026-03-10): Multiple Vulnerabilities in COMOS
|
2026-03-10 |
| MEDIUM | 0 |
SSA-201595 V1.3 (Last Update: 2026-03-10): Privilege Escalation Vulnerability in WIBU CodeMeter Runtime Affecting the Desigo CC Product Family and SENTRON Powermanager
SIEMENS-SSA-201595
|
SSA-201595 V1.3 (Last Update: 2026-03-10): Privilege Escalation Vulnerability in WIBU CodeMeter Runtime Affecting the Desigo CC Product Family and SENTRON Powermanager
|
2026-03-10 |
| MEDIUM | 0 |
SSA-126399 V1.0: Improper Access Control Vulnerability in Heliox EV Chargers
SIEMENS-SSA-126399
|
SSA-126399 V1.0: Improper Access Control Vulnerability in Heliox EV Chargers
|
2026-03-10 |
| MEDIUM | 0 |
SSA-082556 V1.4 (Last Update: 2026-03-10): Vulnerabilities in the additional GNU/Linux subsystem of the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP V3.1.5
SIEMENS-SSA-082556
|
SSA-082556 V1.4 (Last Update: 2026-03-10): Vulnerabilities in the additional GNU/Linux subsystem of the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP V3.1.5
|
2026-03-10 |
| MEDIUM | 0 |
SSA-027652 V1.1 (Last Update: 2026-03-10): Privilege Escalation Vulnerability in SINAMICS Drives
SIEMENS-SSA-027652
|
SSA-027652 V1.1 (Last Update: 2026-03-10): Privilege Escalation Vulnerability in SINAMICS Drives
|
2026-03-10 |
| MEDIUM | 0 |
SSB-751527 V1.0: Misconfiguration in Mendix Applications
SIEMENS-SSB-751527
|
SSB-751527 V1.0: Misconfiguration in Mendix Applications
|
2026-03-10 |
| CRITICAL | 9.1 |
Siemens Third-Party Components in SINEC OS
ICSA-25-226-07 · 486 CVEs
|
RUGGEDCOM RST2428P (6GK6242-6PA00),
RUGGEDCOM RST2428P (6GK6242-6PA00),
SCALANCE XC-300/XR-300/XC-400/XR-500WG/XR-500 family
+3 more
|
2026-02-25 |
| CRITICAL | 9.8 |
Siemens SINEC OS
ICSA-25-226-15 · 381 CVEs
|
RUGGEDCOM RST2428P (6GK6242-6PA00),
RUGGEDCOM RST2428P (6GK6242-6PA00),
SCALANCE XC-300/XR-300/XC-400/XR-500WG/XR-500 family
+2 more
|
2026-02-25 |
| CRITICAL | 10.0 |
Siemens SINEC OS
ICSA-26-043-06 · 51 CVEs
|
RUGGEDCOM RST2428P (6GK6242-6PA00),
SCALANCE XC-300/XR-300/XC-400/XR-500WG/XR-500 family,
SCALANCE XCH328 (6GK5328-4TS01-2EC2)
+13 more
|
2026-02-25 |
| MEDIUM | 0 |
SSA-613116 V1.2 (Last Update: 2026-02-24): Multiple Vulnerabilities in Third-Party Components in SINEC OS before V3.1
SIEMENS-SSA-613116
|
SSA-613116 V1.2 (Last Update: 2026-02-24): Multiple Vulnerabilities in Third-Party Components in SINEC OS before V3.1
|
2026-02-24 |
| MEDIUM | 0 |
SSA-355557 V1.2 (Last Update: 2026-02-24): Multiple Vulnerabilities in Third-Party Components in SINEC OS before V3.2
SIEMENS-SSA-355557
|
SSA-355557 V1.2 (Last Update: 2026-02-24): Multiple Vulnerabilities in Third-Party Components in SINEC OS before V3.2
|
2026-02-24 |
| MEDIUM | 0 |
SSA-089022 V1.1 (Last Update: 2026-02-24): Multiple Vulnerabilities in Third-Party Components in SINEC OS before V3.3
SIEMENS-SSA-089022
|
SSA-089022 V1.1 (Last Update: 2026-02-24): Multiple Vulnerabilities in Third-Party Components in SINEC OS before V3.3
|
2026-02-24 |
| HIGH | 7.8 |
Siemens Simcenter Femap and Nastran
ICSA-26-048-01 · 6 CVEs
|
Simcenter Femap,
Simcenter Nastran
|
2026-02-17 |
| HIGH | 8.6 |
Siemens Automation License Manager Uncontrolled Resource Consumption
ICSA-12-349-01 · 1 CVE
|
Automation License Manager
|
2026-02-12 |
| CRITICAL | 9.1 |
Siemens SIMATIC S7-1500
ICSA-24-102-01 · 452 CVEs
|
SIMATIC S7-1500 TM MFP - GNU/Linux subsystem
|
2026-02-12 |
| HIGH | 8.2 |
Siemens SIMATIC IPC Family, ITP1000, and Field PGs
ICSA-25-072-11 · 2 CVEs
|
SIMATIC Field PG M5,
SIMATIC Field PG M6,
SIMATIC IPC BX-21A
+29 more
|
2026-02-12 |
| CRITICAL | 9.8 |
Siemens RUGGEDCOM APE1808 Devices
ICSA-25-135-01 · 21 CVEs
|
RUGGEDCOM APE1808,
RUGGEDCOM APE1808
|
2026-02-12 |
| HIGH | 8.8 |
Siemens SiPass Integrated
ICSA-25-289-06 · 4 CVEs
|
SiPass integrated,
SiPass integrated V2.95
|
2026-02-12 |
| HIGH | 7.5 |
Siemens SIMATIC and SIPLUS products
ICSA-26-015-04 · 1 CVE
|
SIMATIC ET 200AL IM 157-1 PN (6ES7157-1AB00-0AB0),
SIMATIC ET 200MP IM 155-5 PN HF (6ES7155-5AA00-0AC0),
SIMATIC ET 200SP IM 155-6 MF HF (6ES7155-6MU00-0CN0)
+14 more
|
2026-02-12 |
| HIGH | 7.8 |
Siemens SINEC NMS
ICSA-26-043-01 · 2 CVEs
|
SINEC NMS,
SINEC NMS,
User Management Component (UMC)
|
2026-02-12 |
| HIGH | 7.6 |
Siemens Polarion
ICSA-26-043-02 · 1 CVE
|
Polarion V2404,
Polarion V2410
|
2026-02-12 |
| HIGH | 8.8 |
Siemens Desigo CC Product Family and SENTRON Powermanager
ICSA-26-043-04 · 1 CVE
|
Desigo CC family V6,
Desigo CC family V7,
Desigo CC family V8
+5 more
|
2026-02-12 |
| HIGH | 7.8 |
Siemens Solid Edge
ICSA-26-043-05 · 1 CVE
|
Solid Edge
|
2026-02-12 |
| MEDIUM | 6.3 |
Siemens Siveillance Video Management Servers
ICSA-26-043-07 · 1 CVE
|
Siveillance Video V2022 R3,
Siveillance Video V2023 R1,
Siveillance Video V2023 R2
+3 more
|
2026-02-12 |
| MEDIUM | 0 |
SSA-965753 V1.0: Multiple File Parsing Vulnerabilities in Simcenter Femap and Nastran Before V2512
SIEMENS-SSA-965753
|
SSA-965753 V1.0: Multiple File Parsing Vulnerabilities in Simcenter Femap and Nastran Before V2512
|
2026-02-10 |
| MEDIUM | 0 |
SSA-864900 V1.7 (Last Update: 2026-02-10): Multiple Vulnerabilities in Fortigate NGFW on RUGGEDCOM APE1808 Devices
SIEMENS-SSA-864900
|
SSA-864900 V1.7 (Last Update: 2026-02-10): Multiple Vulnerabilities in Fortigate NGFW on RUGGEDCOM APE1808 Devices
|
2026-02-10 |
| MEDIUM | 0 |
SSA-783261 V1.1 (Last Update: 2026-02-10): Denial of Service Vulnerability in Automation License Manager (ALM) Before V5.2
SIEMENS-SSA-783261
|
SSA-783261 V1.1 (Last Update: 2026-02-10): Denial of Service Vulnerability in Automation License Manager (ALM) Before V5.2
|
2026-02-10 |
| MEDIUM | 0 |
SSA-674753 V1.1 (Last Update: 2026-02-10): Denial-of-Service Vulnerability in ET 200 Devices
SIEMENS-SSA-674753
|
SSA-674753 V1.1 (Last Update: 2026-02-10): Denial-of-Service Vulnerability in ET 200 Devices
|
2026-02-10 |
| MEDIUM | 0 |
SSA-625934 V1.0: Improper Access Control Vulnerability in the Webhooks Implementation of Siveillance Video Management Servers
SIEMENS-SSA-625934
|
SSA-625934 V1.0: Improper Access Control Vulnerability in the Webhooks Implementation of Siveillance Video Management Servers
|
2026-02-10 |
| MEDIUM | 0 |
SSA-599451 V1.1 (Last Update: 2026-02-10): Multiple Vulnerabilities in SiPass integrated
SIEMENS-SSA-599451
|
SSA-599451 V1.1 (Last Update: 2026-02-10): Multiple Vulnerabilities in SiPass integrated
|
2026-02-10 |
| MEDIUM | 0 |
SSA-507364 V1.0: Heap Based Buffer Overflow Vulnerability in WIBU CodeMeter Runtime Affecting the Desigo CC Product Family and SENTRON Powermanager
SIEMENS-SSA-507364
|
SSA-507364 V1.0: Heap Based Buffer Overflow Vulnerability in WIBU CodeMeter Runtime Affecting the Desigo CC Product Family and SENTRON Powermanager
|
2026-02-10 |
| MEDIUM | 0 |
SSA-445819 V1.0: Out of Bounds Read in PS/IGES Parasolid Translator Component in Solid Edge
SIEMENS-SSA-445819
|
SSA-445819 V1.0: Out of Bounds Read in PS/IGES Parasolid Translator Component in Solid Edge
|
2026-02-10 |
| MEDIUM | 0 |
SSA-311973 V1.0: Multiple Local Privilege Escalation Vulnerabilities in SINEC NMS and User Management Component (UMC)
SIEMENS-SSA-311973
|
SSA-311973 V1.0: Multiple Local Privilege Escalation Vulnerabilities in SINEC NMS and User Management Component (UMC)
|
2026-02-10 |
| MEDIUM | 0 |
SSA-265688 V2.1 (Last Update: 2026-02-10): Vulnerabilities in the additional GNU/Linux subsystem of the SIMATIC S7-1500 TM MFP V1.1
SIEMENS-SSA-265688
|
SSA-265688 V2.1 (Last Update: 2026-02-10): Vulnerabilities in the additional GNU/Linux subsystem of the SIMATIC S7-1500 TM MFP V1.1
|
2026-02-10 |
| MEDIUM | 0 |
SSA-216014 V1.3 (Last Update: 2026-02-10): Vulnerabilities in EFI variable of SIMATIC IPCs, SIMATIC Tablet PCs, and SIMATIC Field PGs
SIEMENS-SSA-216014
|
SSA-216014 V1.3 (Last Update: 2026-02-10): Vulnerabilities in EFI variable of SIMATIC IPCs, SIMATIC Tablet PCs, and SIMATIC Field PGs
|
2026-02-10 |
| MEDIUM | 0 |
SSA-130874 V1.4 (Last Update: 2026-02-10): Buffer Overflow Vulnerability in SCALANCE X Switches
SIEMENS-SSA-130874
|
SSA-130874 V1.4 (Last Update: 2026-02-10): Buffer Overflow Vulnerability in SCALANCE X Switches
|
2026-02-10 |
| MEDIUM | 0 |
SSA-035571 V1.0: Cross Site Scripting Vulnerability in Polarion Before V2506
SIEMENS-SSA-035571
|
SSA-035571 V1.0: Cross Site Scripting Vulnerability in Polarion Before V2506
|
2026-02-10 |
| MEDIUM | 0 |
SSB-491780 V1.0: Missing anti-tamper protection in SIPORT Desktop Client Application
SIEMENS-SSB-491780
|
SSB-491780 V1.0: Missing anti-tamper protection in SIPORT Desktop Client Application
|
2026-02-10 |
| CRITICAL | 10.0 |
Siemens Industrial Edge Devices
ICSA-26-015-08 · 1 CVE
|
Industrial Edge Cloud Device (IECD),
Industrial Edge Own Device (IEOD),
Industrial Edge Virtual Device (IEVD)
+63 more
|
2026-01-14 |
| MEDIUM | 6.7 |
Siemens SINEC Security Monitor
ICSA-26-015-06 · 2 CVEs
|
SINEC Security Monitor
|
2026-01-14 |
| HIGH | 8.9 |
Siemens RUGGEDCOM APE1808 Devices
ICSA-26-015-07 · 4 CVEs
|
RUGGEDCOM APE1808
|
2026-01-14 |
| MEDIUM | 4.3 |
Siemens RUGGEDCOM ROS
ICSA-26-015-05 · 1 CVE
|
RUGGEDCOM RMC8388 V5.X,
RUGGEDCOM RS416Pv2 V5.X,
RUGGEDCOM RS416v2 V5.X
+18 more
|
2026-01-14 |
| HIGH | 8.8 |
Siemens TeleControl Server Basic
ICSA-26-015-03 · 1 CVE
|
TeleControl Server Basic
|
2026-01-14 |
| HIGH | 8.1 |
Siemens RUGGEDCOM APE1808
ICSA-25-226-09 · 11 CVEs
|
RUGGEDCOM APE1808
|
2026-01-14 |
| CRITICAL | 9.8 |
Siemens User Management Component
ICSA-24-354-04 · 1 CVE
|
Desigo ABT,
Opcenter Execution Foundation,
Opcenter Intelligence
+10 more
|
2026-01-14 |
| CRITICAL | 9.1 |
Siemens OPC UA
ICSA-25-072-09 · 2 CVEs
|
Industrial Edge for Machine Tools (formerly known as "SINUMERIK Edge"),
SIMATIC BRAUMAT,
SIMATIC Energy Manager PRO V7.2
+9 more
|
2026-01-14 |
| MEDIUM | 6.5 |
Siemens SCALANCE and RUGGEDCOM
ICSA-25-162-04 · 3 CVEs
|
RUGGEDCOM RST2428P (6GK6242-6PA00),
SCALANCE XC316-8 (6GK5324-8TS00-2AC2),
SCALANCE XC324-4 (6GK5328-4TS00-2AC2)
+38 more
|
2026-01-14 |
| HIGH | 8.1 |
Siemens HyperLynx and Industrial Edge App Publisher
ICSA-25-289-10 · 1 CVE
|
HyperLynx,
Industrial Edge App Publisher
|
2026-01-14 |
| CRITICAL | 9.8 |
Siemens RUGGEDCOM APE1808
ICSA-24-074-05 · 30 CVEs
|
RUGGEDCOM APE1808,
RUGGEDCOM APE1808
|
2026-01-14 |
| HIGH | 7.5 |
Siemens RUGGEDCOM APE 1808
ICSA-24-193-02 · 14 CVEs
|
RUGGEDCOM APE1808
|
2026-01-14 |
| CRITICAL | 9.8 |
Siemens RUGGEDCOM APE1808 with Fortigate NGFW Devices
ICSA-24-074-11 · 43 CVEs
|
RUGGEDCOM APE1808
|
2026-01-14 |
| CRITICAL | 9.1 |
Siemens RUGGEDCOM APE 1808
ICSA-24-193-11 · 9 CVEs
|
RUGGEDCOM APE1808,
RUGGEDCOM APE1808,
RUGGEDCOM APE1808
+1 more
|
2026-01-14 |
| CRITICAL | 10.0 |
Siemens Industrial Edge Device Kit
ICSA-26-015-09 · 1 CVE
|
Industrial Edge Device Kit - arm64 V1.10,
Industrial Edge Device Kit - arm64 V1.11,
Industrial Edge Device Kit - arm64 V1.12
+39 more
|
2026-01-14 |
| MEDIUM | 0 |
SSA-978177 V1.3 (Last Update: 2026-01-13): Vulnerability in Nozomi Guardian/CMC Before 25.4.0 on RUGGEDCOM APE1808 Devices
SIEMENS-SSA-978177
|
SSA-978177 V1.3 (Last Update: 2026-01-13): Vulnerability in Nozomi Guardian/CMC Before 25.4.0 on RUGGEDCOM APE1808 Devices
|
2026-01-13 |
| MEDIUM | 0 |
SSA-928984 V1.4 (Last Update: 2026-01-13): Heap-based Buffer Overflow Vulnerability in User Management Component (UMC)
SIEMENS-SSA-928984
|
SSA-928984 V1.4 (Last Update: 2026-01-13): Heap-based Buffer Overflow Vulnerability in User Management Component (UMC)
|
2026-01-13 |
| MEDIUM | 0 |
SSA-912274 V1.1 (Last Update: 2026-01-13): Multiple Vulnerabilities in RUGGEDCOM ROX Before V2.17
SIEMENS-SSA-912274
|
SSA-912274 V1.1 (Last Update: 2026-01-13): Multiple Vulnerabilities in RUGGEDCOM ROX Before V2.17
|
2026-01-13 |
| MEDIUM | 0 |
SSA-858251 V1.2 (Last Update: 2026-01-13): Authentication Bypass Vulnerabilities in OPC UA
SIEMENS-SSA-858251
|
SSA-858251 V1.2 (Last Update: 2026-01-13): Authentication Bypass Vulnerabilities in OPC UA
|
2026-01-13 |
| MEDIUM | 0 |
SSA-832273 V2.1 (Last Update: 2026-01-13): Multiple Vulnerabilities in Fortigate NGFW Before V7.4.3 on RUGGEDCOM APE1808 Devices
SIEMENS-SSA-832273
|
SSA-832273 V2.1 (Last Update: 2026-01-13): Multiple Vulnerabilities in Fortigate NGFW Before V7.4.3 on RUGGEDCOM APE1808 Devices
|
2026-01-13 |
| MEDIUM | 0 |
SSA-827968 V1.0: Vulnerability in Nozomi Guardian/CMC on RUGGEDCOM APE1808 Devices
SIEMENS-SSA-827968
|
SSA-827968 V1.0: Vulnerability in Nozomi Guardian/CMC on RUGGEDCOM APE1808 Devices
|
2026-01-13 |
| MEDIUM | 0 |
SSA-698820 V2.0 (Last Update: 2026-01-13): Multiple Vulnerabilities in Fortigate NGFW Before V7.4.4 on RUGGEDCOM APE1808 Devices
SIEMENS-SSA-698820
|
SSA-698820 V2.0 (Last Update: 2026-01-13): Multiple Vulnerabilities in Fortigate NGFW Before V7.4.4 on RUGGEDCOM APE1808 Devices
|
2026-01-13 |
| MEDIUM | 0 |
SSA-693776 V1.1 (Last Update: 2026-01-13): Multiple Vulnerabilities in Industrial Communication Devices based on SINEC OS before V3.2
SIEMENS-SSA-693776
|
SSA-693776 V1.1 (Last Update: 2026-01-13): Multiple Vulnerabilities in Industrial Communication Devices based on SINEC OS before V3.2
|
2026-01-13 |
| MEDIUM | 0 |
SSA-366067 V1.7 (Last Update: 2026-01-13): Multiple Vulnerabilities in Fortigate NGFW Before V7.4.1 on RUGGEDCOM APE1808 Devices
SIEMENS-SSA-366067
|
SSA-366067 V1.7 (Last Update: 2026-01-13): Multiple Vulnerabilities in Fortigate NGFW Before V7.4.1 on RUGGEDCOM APE1808 Devices
|
2026-01-13 |
| MEDIUM | 0 |
SSA-365200 V1.1 (Last Update: 2026-01-13): Google Chrome Type Confusion Vulnerability in Siemens Products
SIEMENS-SSA-365200
|
SSA-365200 V1.1 (Last Update: 2026-01-13): Google Chrome Type Confusion Vulnerability in Siemens Products
|
2026-01-13 |
| MEDIUM | 0 |
SSA-364175 V1.7 (Last Update: 2026-01-13): Multiple Vulnerabilities in Palo Alto Networks Virtual NGFW on RUGGEDCOM APE1808 Devices Before V11.1.4-h1
SIEMENS-SSA-364175
|
SSA-364175 V1.7 (Last Update: 2026-01-13): Multiple Vulnerabilities in Palo Alto Networks Virtual NGFW on RUGGEDCOM APE1808 Devices Before V11.1.4-h1
|
2026-01-13 |
| MEDIUM | 0 |
SSA-192617 V1.0: Local Privilege Escalation Vulnerability in TeleControl Server Basic Before V3.1.2.4
SIEMENS-SSA-192617
|
SSA-192617 V1.0: Local Privilege Escalation Vulnerability in TeleControl Server Basic Before V3.1.2.4
|
2026-01-13 |
| MEDIUM | 0 |
SSA-014678 V1.0: Authorization Bypass Vulnerability in Industrial Edge Device Kit
SIEMENS-SSA-014678
|
SSA-014678 V1.0: Authorization Bypass Vulnerability in Industrial Edge Device Kit
|
2026-01-13 |
| MEDIUM | 0 |
SSA-001536 V1.0: Authorization Bypass Vulnerability in Siemens Industrial Edge Devices
SIEMENS-SSA-001536
|
SSA-001536 V1.0: Authorization Bypass Vulnerability in Siemens Industrial Edge Devices
|
2026-01-13 |
| HIGH | 7.5 |
Siemens Interniche IP-Stack
ICSA-25-352-05 · 1 CVE
|
SIDOOR ATD430W,
SIDOOR ATE530G COATED (6FB1221-5SM10-7BP0),
SIDOOR ATE530S COATED
+168 more
|
2025-12-18 |
| MEDIUM | 0 |
SSA-512988 V1.0: File Parsing Vulnerability in Simcenter Femap Before V2512
SIEMENS-SSA-512988
|
SSA-512988 V1.0: File Parsing Vulnerability in Simcenter Femap Before V2512
|
2025-12-12 |
| HIGH | 7.5 |
Siemens OpenSSL 3.0 Affecting Products
ICSA-22-349-09 · 2 CVEs
|
Calibre ICE,
Mcenter,
SCALANCE X-200RNA family
+2 more
|
2025-12-09 |
| CRITICAL | 9.0 |
Siemens SCALANCE, RUGGEDCOM
ICSA-24-193-05 · 1 CVE
|
RUGGEDCOM CROSSBOW,
RUGGEDCOM i800,
RUGGEDCOM i800NC
+494 more
|
2025-12-09 |
| HIGH | 8.2 |
Siemens Third-Party Component in SICAM and SITIPE Products
ICSA-24-256-16 · 1 CVE
|
ET85 Ethernet Interface IEC61850 Ed.2,
ETI5 Ethernet Int. 1x100TX IEC61850,
SICAM SCC
+1 more
|
2025-12-09 |
| HIGH | 7.3 |
Siemens Engineering Platforms
ICSA-24-347-02 · 1 CVE
|
SIMATIC S7-PLCSIM V17,
SIMATIC S7-PLCSIM V18,
SIMATIC STEP 7 Safety V17
+31 more
|
2025-12-09 |
| HIGH | 8.2 |
Siemens SIMATIC S7-PLCSIM
ICSA-25-226-03 · 1 CVE
|
SIMATIC PCS neo V4.1,
SIMATIC PCS neo V5.0,
SIMATIC PCS neo V6.0
+34 more
|
2025-12-09 |
| HIGH | 7.8 |
Siemens SIMATIC S7-PLCSIM
ICSA-25-226-11 · 1 CVE
|
SIMATIC S7-PLCSIM V17,
SIMATIC STEP 7 V17,
SIMATIC STEP 7 V18
+30 more
|
2025-12-09 |
| MEDIUM | 4.3 |
Siemens SINEMA Remote Connect Server
ICSA-25-345-06 · 2 CVEs
|
SINEMA Remote Connect Server
|
2025-12-09 |
| MEDIUM | 6.2 |
Siemens Building X - Security Manager Edge Controller
ICSA-25-345-07 · 1 CVE
|
Building X - Security Manager Edge Controller (ACC-AP)
|
2025-12-09 |
| MEDIUM | 6.8 |
Siemens Energy Services
ICSA-25-345-08 · 1 CVE
|
Energy Services
|
2025-12-09 |
| MEDIUM | 6.3 |
Siemens Gridscale X Prepay
ICSA-25-345-09 · 2 CVEs
|
Gridscale X Prepay
|
2025-12-09 |
| HIGH | 8.8 |
Siemens RUGGEDCOM ROX II
ICSA-26-015-11 · 6 CVEs
|
RUGGEDCOM ROX II family
|
2025-12-09 |
| HIGH | 8.3 |
Siemens SIMATIC CN 4100
ICSA-26-015-12 · 5 CVEs
|
SIMATIC CN 4100
|
2025-12-09 |
| MEDIUM | 0 |
SSA-915282 V1.0: Denial of service Vulnerability in Interniche IP-Stack based Industrial Devices
SIEMENS-SSA-915282
|
SSA-915282 V1.0: Denial of service Vulnerability in Interniche IP-Stack based Industrial Devices
|
2025-12-09 |
| MEDIUM | 0 |
SSA-882673 V1.0: Multiple Vulnerabilities in SINEC Security Monitor before V4.10.0
SIEMENS-SSA-882673
|
SSA-882673 V1.0: Multiple Vulnerabilities in SINEC Security Monitor before V4.10.0
|
2025-12-09 |
| HIGH | 8.4 |
SSA-800126 V1.2 (Last Update: 2025-12-09): Deserialization Vulnerability in Siemens Engineering Platforms before V20
SIEMENS-SSA-800126 · 1 CVE
|
SSA-800126 V1.2 (Last Update: 2025-12-09): Deserialization Vulnerability in Siemens Engineering Platforms before V20
|
2025-12-09 |
| MEDIUM | 0 |
SSA-763474 V1.0: Denial of Service Vulnerability in Ruggedcom ROS devices before V5.10.1
SIEMENS-SSA-763474
|
SSA-763474 V1.0: Denial of Service Vulnerability in Ruggedcom ROS devices before V5.10.1
|
2025-12-09 |
| MEDIUM | 0 |
SSA-734261 V1.0: Authentication Bypass Vulnerability in Energy Services Using Elspec G5DFR
SIEMENS-SSA-734261
|
SSA-734261 V1.0: Authentication Bypass Vulnerability in Energy Services Using Elspec G5DFR
|
2025-12-09 |
| CRITICAL | 9.0 |
SSA-723487 V1.8 (Last Update: 2025-12-09): RADIUS Protocol Susceptible to Forgery Attacks (CVE-2024-3596) - Impact to SCALANCE, RUGGEDCOM and Related Products
SIEMENS-SSA-723487 · 1 CVE
|
SSA-723487 V1.8 (Last Update: 2025-12-09): RADIUS Protocol Susceptible to Forgery Attacks (CVE-2024-3596) - Impact to SCALANCE, RUGGEDCOM and Related Products
|
2025-12-09 |
| MEDIUM | 0 |
SSA-693808 V1.2 (Last Update: 2025-12-09): Deserialization Vulnerability in Siemens Engineering Platforms
SIEMENS-SSA-693808
|
SSA-693808 V1.2 (Last Update: 2025-12-09): Deserialization Vulnerability in Siemens Engineering Platforms
|
2025-12-09 |
| MEDIUM | 0 |
SSA-673996 V1.3 (Last Update: 2025-12-09): Buffer Overflow Vulnerability in Third-Party Component in SICAM and SITIPE Products
SIEMENS-SSA-673996
|
SSA-673996 V1.3 (Last Update: 2025-12-09): Buffer Overflow Vulnerability in Third-Party Component in SICAM and SITIPE Products
|
2025-12-09 |
| MEDIUM | 0 |
SSA-626856 V1.0: Multiple Vulnerabilities in SINEMA Remote Connect Sever Before V3.2 SP4
SIEMENS-SSA-626856
|
SSA-626856 V1.0: Multiple Vulnerabilities in SINEMA Remote Connect Sever Before V3.2 SP4
|
2025-12-09 |
| MEDIUM | 0 |
SSA-493396 V1.2 (Last Update: 2025-12-09): Deserialization Vulnerability in Siemens Engineering Platforms
SIEMENS-SSA-493396
|
SSA-493396 V1.2 (Last Update: 2025-12-09): Deserialization Vulnerability in Siemens Engineering Platforms
|
2025-12-09 |
| MEDIUM | 0 |
SSA-471761 V1.0: Multiple Vulnerabilities in SICAM T Before V3.0
SIEMENS-SSA-471761
|
SSA-471761 V1.0: Multiple Vulnerabilities in SICAM T Before V3.0
|
2025-12-09 |
| MEDIUM | 0 |
SSA-420375 V1.0: Improper Integrity Check of Firmware Updates in Building X - Security Manager Edge Controller (ACC-AP)
SIEMENS-SSA-420375
|
SSA-420375 V1.0: Improper Integrity Check of Firmware Updates in Building X - Security Manager Edge Controller (ACC-AP)
|
2025-12-09 |
| MEDIUM | 0 |
SSA-416652 V1.0: Multiple Vulnerabilities in SIMATIC CN 4100 Before V4.0.1
SIEMENS-SSA-416652
|
SSA-416652 V1.0: Multiple Vulnerabilities in SIMATIC CN 4100 Before V4.0.1
|
2025-12-09 |
| HIGH | 7.5 |
SSA-408105 V1.3 (Last Update: 2025-12-09): Buffer Overflow Vulnerabilities in OpenSSL 3.0 Affecting Siemens Products
SIEMENS-SSA-408105 · 2 CVEs
|
SSA-408105 V1.3 (Last Update: 2025-12-09): Buffer Overflow Vulnerabilities in OpenSSL 3.0 Affecting Siemens Products
|
2025-12-09 |
| HIGH | 7.0 |
SSA-392859 V1.2 (Last Update: 2025-12-09): Local Arbitrary Code Execution Vulnerability in Siemens Engineering Platforms before V20
SIEMENS-SSA-392859 · 1 CVE
|
SSA-392859 V1.2 (Last Update: 2025-12-09): Local Arbitrary Code Execution Vulnerability in Siemens Engineering Platforms before V20
|
2025-12-09 |
| MEDIUM | 0 |
SSA-356310 V1.0: Multiple Vulnerabilities in Gridscale X Prepay
SIEMENS-SSA-356310
|
SSA-356310 V1.0: Multiple Vulnerabilities in Gridscale X Prepay
|
2025-12-09 |
| MEDIUM | 0 |
SSA-202008 V1.0: Multiple Vulnerabilities in Ruggedcom Rox Before V2.17.0
SIEMENS-SSA-202008
|
SSA-202008 V1.0: Multiple Vulnerabilities in Ruggedcom Rox Before V2.17.0
|
2025-12-09 |
| MEDIUM | 0 |
SSA-241605 V1.0: Out of Bounds Read in PS/IGES Parasolid Translator Component Before V29.0.258
SIEMENS-SSA-241605
|
SSA-241605 V1.0: Out of Bounds Read in PS/IGES Parasolid Translator Component Before V29.0.258
|
2025-11-17 |
| MEDIUM | 0 |
SSA-190588 V1.0: Cross-Site Scripting Vulnerability in Mendix Rich Text Widget
SIEMENS-SSA-190588
|
SSA-190588 V1.0: Cross-Site Scripting Vulnerability in Mendix Rich Text Widget
|
2025-11-17 |
| MEDIUM | 5.5 |
Siemens SICAM P850 family and SICAM P855 family
ICSA-25-317-11 · 2 CVEs
|
SICAM P850 (7KG8500-0AA00-0AA0),
SICAM P850 (7KG8501-0AA02-2AA0),
SICAM P850 (7KG8501-0AA11-0AA0)
+33 more
|
2025-11-13 |
| HIGH | 8.8 |
Siemens Spectrum Power 4
ICSA-25-317-12 · 5 CVEs
|
Spectrum Power 4
|
2025-11-13 |
| CRITICAL | 9.8 |
Siemens SICAM GridEdge
ICSA-22-167-08 · 4 CVEs
|
SICAM GridEdge (Classic)
|
2025-11-11 |
| MEDIUM | 6.3 |
Siemens SICAM GridEdge
ICSA-22-195-02 · 1 CVE
|
SICAM GridEdge (Classic)
|
2025-11-11 |
| MEDIUM | 5.3 |
Siemens SIPROTEC 5 Devices
ICSA-22-349-11 · 1 CVE
|
SIPROTEC 5 6MD84 (CP300),
SIPROTEC 5 6MD85 (CP200),
SIPROTEC 5 6MD85 (CP300)
+66 more
|
2025-11-11 |
| HIGH | 7.5 |
Siemens SIPROTEC 5 Devices
ICSA-23-103-06 · 1 CVE
|
SIPROTEC 5 6MD85 (CP300),
SIPROTEC 5 6MD86 (CP300),
SIPROTEC 5 6MD89 (CP300)
+43 more
|
2025-11-11 |
| HIGH | 7.5 |
Siemens SIMATIC, SIPLUS Products
ICSA-23-257-01 · 1 CVE
|
SIMATIC BRAUMAT,
SIMATIC Cloud Connect 7 CC712 (6GK1411-1AC00),
SIMATIC Cloud Connect 7 CC716 (6GK1411-5AC00)
+143 more
|
2025-11-11 |
| MEDIUM | 5.9 |
Siemens SIPROTEC
ICSA-24-193-14 · 1 CVE
|
SIPROTEC 5 6MD84 (CP300),
SIPROTEC 5 6MD85 (CP200),
SIPROTEC 5 6MD85 (CP300)
+66 more
|
2025-11-11 |
| MEDIUM | 6.5 |
Siemens SIPROTEC 5 Products
ICSA-25-016-04 · 1 CVE
|
SIPROTEC 5 6MD84 (CP300),
SIPROTEC 5 6MD85 (CP300),
SIPROTEC 5 6MD86 (CP300)
+40 more
|
2025-11-11 |
| MEDIUM | 6.8 |
Siemens SIPROTEC 5
ICSA-25-044-04 · 1 CVE
|
SIPROTEC 5 6MD84 (CP300),
SIPROTEC 5 6MD85 (CP200),
SIPROTEC 5 6MD85 (CP300)
+58 more
|
2025-11-11 |
| CRITICAL | 9.0 |
Siemens SIPROTEC and SICAM
ICSA-25-135-05 · 1 CVE
|
CPC80 Central Processing/Communication,
CPCI85 Central Processing/Communication,
POWER METER SICAM Q100 family
+56 more
|
2025-11-11 |
| LOW | 2.2 |
Siemens Mendix OIDC SSO
ICSA-25-135-15 · 1 CVE
|
Mendix OIDC SSO (Mendix 10 compatible),
Mendix OIDC SSO (Mendix 10.12 compatible),
Mendix OIDC SSO (Mendix 9 compatible)
|
2025-11-11 |
| CRITICAL | 9.9 |
Siemens RUGGEDCOM ROX II
ICSA-25-135-17 · 4 CVEs
|
RUGGEDCOM ROX MX5000,
RUGGEDCOM ROX MX5000RE,
RUGGEDCOM ROX RX1400
+8 more
|
2025-11-11 |
| HIGH | 7.6 |
Siemens LOGO! 8 BM Devices
ICSA-25-317-13 · 3 CVEs
|
LOGO! 12/24RCE (6ED1052-1MD08-0BA2),
LOGO! 12/24RCEo (6ED1052-2MD08-0BA2),
LOGO! 230RCE (6ED1052-1FB08-0BA2)
+13 more
|
2025-11-11 |
| HIGH | 7.5 |
Siemens Solid Edge
ICSA-25-317-14 · 1 CVE
|
Solid Edge SE2025
|
2025-11-11 |
| CRITICAL | 9.3 |
Siemens COMOS
ICSA-25-317-15 · 2 CVEs
|
COMOS,
COMOS
|
2025-11-11 |
| HIGH | 7.8 |
Siemens Altair Grid Engine
ICSA-25-317-16 · 2 CVEs
|
Altair Grid Engine
|
2025-11-11 |
| HIGH | 7.8 |
Siemens Software Center and Solid Edge
ICSA-25-317-17 · 1 CVE
|
Siemens Software Center,
Solid Edge SE2025
|
2025-11-11 |
| CRITICAL | 9.0 |
SSA-794185 V1.2 (Last Update: 2025-11-11): RADIUS Protocol Susceptible to Forgery Attacks (CVE-2024-3596) - Impact to SIPROTEC, SICAM and Related Products
SIEMENS-SSA-794185 · 1 CVE
|
SSA-794185 V1.2 (Last Update: 2025-11-11): RADIUS Protocol Susceptible to Forgery Attacks (CVE-2024-3596) - Impact to SIPROTEC, SICAM and Related Products
|
2025-11-11 |
| MEDIUM | 0 |
SSA-750499 V1.2 (Last Update: 2025-11-11): Weak Encryption Vulnerability in SIPROTEC 5 Devices
SIEMENS-SSA-750499
|
SSA-750499 V1.2 (Last Update: 2025-11-11): Weak Encryption Vulnerability in SIPROTEC 5 Devices
|
2025-11-11 |
| MEDIUM | 0 |
SSA-726617 V1.3 (Last Update: 2025-11-11): Incorrect Privilege Assignment Vulnerability in Mendix OIDC SSO Module
SIEMENS-SSA-726617
|
SSA-726617 V1.3 (Last Update: 2025-11-11): Incorrect Privilege Assignment Vulnerability in Mendix OIDC SSO Module
|
2025-11-11 |
| MEDIUM | 0 |
SSA-711309 V2.5 (Last Update: 2025-11-11): Denial of Service Vulnerability in the OPC UA Implementations of SIMATIC Products
SIEMENS-SSA-711309
|
SSA-711309 V2.5 (Last Update: 2025-11-11): Denial of Service Vulnerability in the OPC UA Implementations of SIMATIC Products
|
2025-11-11 |
| MEDIUM | 0 |
SSA-687955 V1.2 (Last Update: 2025-11-11): Accessible Development Shell via Physical Interface in SIPROTEC 5
SIEMENS-SSA-687955
|
SSA-687955 V1.2 (Last Update: 2025-11-11): Accessible Development Shell via Physical Interface in SIPROTEC 5
|
2025-11-11 |
| MEDIUM | 0 |
SSA-682326 V1.0: Multiple Vulnerabilities in COMOS before V10.4.5
SIEMENS-SSA-682326
|
SSA-682326 V1.0: Multiple Vulnerabilities in COMOS before V10.4.5
|
2025-11-11 |
| MEDIUM | 0 |
SSA-631336 V1.1 (Last Update: 2025-11-11): Multiple Web Server Vulnerabilities in SICAM GridEdge Before V2.6.6
SIEMENS-SSA-631336
|
SSA-631336 V1.1 (Last Update: 2025-11-11): Multiple Web Server Vulnerabilities in SICAM GridEdge Before V2.6.6
|
2025-11-11 |
| MEDIUM | 0 |
SSA-552874 V1.5 (Last Update: 2025-11-11): Denial of Service Vulnerability in SIPROTEC 5 Devices
SIEMENS-SSA-552874
|
SSA-552874 V1.5 (Last Update: 2025-11-11): Denial of Service Vulnerability in SIPROTEC 5 Devices
|
2025-11-11 |
| MEDIUM | 0 |
SSA-522291 V1.0: Improper Certificate Validation Vulnerability in Solid Edge
SIEMENS-SSA-522291
|
SSA-522291 V1.0: Improper Certificate Validation Vulnerability in Solid Edge
|
2025-11-11 |
| MEDIUM | 0 |
SSA-514895 V1.0: Multiple Vulnerabilities in Altair Grid Engine V2025.1.0
SIEMENS-SSA-514895
|
SSA-514895 V1.0: Multiple Vulnerabilities in Altair Grid Engine V2025.1.0
|
2025-11-11 |
| MEDIUM | 0 |
SSA-365596 V1.0: DLL Hijacking Vulnerability in Siemens Software Center and Solid Edge
SIEMENS-SSA-365596
|
SSA-365596 V1.0: DLL Hijacking Vulnerability in Siemens Software Center and Solid Edge
|
2025-11-11 |
| MEDIUM | 0 |
SSA-339694 V1.0: Multiple Vulnerabilities in Spectrum Power 4 Before v4.70 SP12 Security Patch 2
SIEMENS-SSA-339694
|
SSA-339694 V1.0: Multiple Vulnerabilities in Spectrum Power 4 Before v4.70 SP12 Security Patch 2
|
2025-11-11 |
| MEDIUM | 0 |
SSA-322980 V1.5 (Last Update: 2025-11-11): Denial of Service Vulnerability in SIPROTEC 5 Devices
SIEMENS-SSA-322980
|
SSA-322980 V1.5 (Last Update: 2025-11-11): Denial of Service Vulnerability in SIPROTEC 5 Devices
|
2025-11-11 |
| MEDIUM | 0 |
SSA-301229 V1.2 (Last Update: 2025-11-11): Client-Side Enforcement of Server-Side Security Vulnerabilities in RUGGEDCOM ROX II
SIEMENS-SSA-301229
|
SSA-301229 V1.2 (Last Update: 2025-11-11): Client-Side Enforcement of Server-Side Security Vulnerabilities in RUGGEDCOM ROX II
|
2025-11-11 |
| MEDIUM | 0 |
SSA-267056 V1.0: Multiple Vulnerabilities in LOGO! 8 BM Devices
SIEMENS-SSA-267056
|
SSA-267056 V1.0: Multiple Vulnerabilities in LOGO! 8 BM Devices
|
2025-11-11 |
| MEDIUM | 0 |
SSA-225578 V1.1 (Last Update: 2025-11-11): Improper Access Control Vulnerability in SICAM GridEdge Before V2.7.3
SIEMENS-SSA-225578
|
SSA-225578 V1.1 (Last Update: 2025-11-11): Improper Access Control Vulnerability in SICAM GridEdge Before V2.7.3
|
2025-11-11 |
| MEDIUM | 0 |
SSA-201498 V1.0: Multiple Vulnerabilities in the Web Server of SICAM P850 and SICAM P855 Devices Before V3.11
SIEMENS-SSA-201498
|
SSA-201498 V1.0: Multiple Vulnerabilities in the Web Server of SICAM P850 and SICAM P855 Devices Before V3.11
|
2025-11-11 |
| MEDIUM | 0 |
SSA-194557 V1.3 (Last Update: 2025-11-11): Improper Limitation of Filesystem Access through Web Server Vulnerability in SIPROTEC 5
SIEMENS-SSA-194557
|
SSA-194557 V1.3 (Last Update: 2025-11-11): Improper Limitation of Filesystem Access through Web Server Vulnerability in SIPROTEC 5
|
2025-11-11 |
| CRITICAL | 9.8 |
Siemens User Management Component (UMC)
ICSA-24-256-03 · 1 CVE
|
Opcenter Quality,
Opcenter RDnL,
SIMATIC PCS neo V4.0
+8 more
|
2025-10-14 |
| MEDIUM | 4.7 |
Siemens SIMATIC S7-1500 and S7-1200 CPUs
ICSA-24-284-01 · 1 CVE
|
SIMATIC Drive Controller CPU 1504D TF (6ES7615-4DF10-0AB0),
SIMATIC Drive Controller CPU 1507D TF (6ES7615-7DF10-0AB0),
SIMATIC ET 200SP CPU 1510SP F-1 PN (6ES7510-1SJ01-0AB0)
+186 more
|
2025-10-14 |
| MEDIUM | 5.3 |
Siemens SIMATIC S7-1500 CPUs
ICSA-24-284-10 · 1 CVE
|
SIMATIC Drive Controller CPU 1504D TF (6ES7615-4DF10-0AB0),
SIMATIC Drive Controller CPU 1507D TF (6ES7615-7DF10-0AB0),
SIMATIC ET 200SP CPU 1510SP F-1 PN (6ES7510-1SJ01-0AB0)
+137 more
|
2025-10-14 |
| HIGH | 7.5 |
Siemens User Management Component (UMC)
ICSA-25-135-09 · 3 CVEs
|
SIMATIC PCS neo V4.1,
SIMATIC PCS neo V5.0,
SINEC NMS
+6 more
|
2025-10-14 |
| MEDIUM | 6.2 |
Siemens SiPass
ICSA-25-148-01 · 1 CVE
|
SiPass integrated AC5102 (ACC-G2),
SiPass integrated ACC-AP
|
2025-10-14 |
| MEDIUM | 5.5 |
Siemens SIMOTION SCOUT, SIMOTION SCOUT TIA, and SINAMICS STARTER
ICSA-25-226-18 · 1 CVE
|
SIMOTION SCOUT TIA V5.4,
SIMOTION SCOUT TIA V5.5,
SIMOTION SCOUT TIA V5.6
+8 more
|
2025-10-14 |
| CRITICAL | 9.8 |
Siemens User Management Component (UMC)
ICSA-25-254-07 · 4 CVEs
|
SIMATIC PCS neo V4.1,
SIMATIC PCS neo V5.0,
SIMATIC PCS neo V6.0
+1 more
|
2025-10-14 |
| HIGH | 7.8 |
Siemens Solid Edge
ICSA-25-289-05 · 4 CVEs
|
Solid Edge SE2024,
Solid Edge SE2025
|
2025-10-14 |
| CRITICAL | 9.8 |
Siemens SIMATIC ET 200SP Communication Processors
ICSA-25-289-07 · 1 CVE
|
SIMATIC CP 1542SP-1 (6GK7542-6UX00-0XE0),
SIMATIC CP 1542SP-1 IRC (6GK7542-6VX00-0XE0),
SIMATIC CP 1543SP-1 (6GK7543-6WX00-0XE0)
+3 more
|
2025-10-14 |
| HIGH | 8.8 |
Siemens SINEC NMS
ICSA-25-289-08 · 1 CVE
|
SINEC NMS
|
2025-10-14 |
| CRITICAL | 9.8 |
Siemens TeleControl Server Basic
ICSA-25-289-09 · 1 CVE
|
TeleControl Server Basic V3.1
|
2025-10-14 |
| HIGH | 7.5 |
Siemens SIMATIC S7-1200 CPU V1/V2 Devices
ICSA-25-294-03 · 2 CVEs
|
SIMATIC S7-1200 CPU V1 family (incl. SIPLUS variants),
SIMATIC S7-1200 CPU V1 family (incl. SIPLUS variants),
SIMATIC S7-1200 CPU V2 family (incl. SIPLUS variants)
+1 more
|
2025-10-14 |
| HIGH | 8.8 |
Siemens RUGGEDCOM ROS Devices
ICSA-25-294-04 · 4 CVEs
|
RUGGEDCOM i800,
RUGGEDCOM i801,
RUGGEDCOM i802
+87 more
|
2025-10-14 |
| MEDIUM | 0 |
SSA-876787 V1.9 (Last Update: 2025-10-14): Open Redirect Vulnerability in SIMATIC S7-1500 and S7-1200 CPUs
SIEMENS-SSA-876787
|
SSA-876787 V1.9 (Last Update: 2025-10-14): Open Redirect Vulnerability in SIMATIC S7-1500 and S7-1200 CPUs
|
2025-10-14 |
| MEDIUM | 0 |
SSA-722410 V1.1 (Last Update: 2025-10-14): Multiple Vulnerabilities in User Management Component (UMC)
SIEMENS-SSA-722410
|
SSA-722410 V1.1 (Last Update: 2025-10-14): Multiple Vulnerabilities in User Management Component (UMC)
|
2025-10-14 |
| MEDIUM | 0 |
SSA-625789 V1.4 (Last Update: 2025-10-14): Multiple Vulnerabilities in SIMATIC S7-1200 CPU V1/V2 Devices
SIEMENS-SSA-625789
|
SSA-625789 V1.4 (Last Update: 2025-10-14): Multiple Vulnerabilities in SIMATIC S7-1200 CPU V1/V2 Devices
|
2025-10-14 |
| MEDIUM | 0 |
SSA-614723 V1.2 (Last Update: 2025-10-14): Denial of Service Vulnerabilities in User Management Component (UMC)
SIEMENS-SSA-614723
|
SSA-614723 V1.2 (Last Update: 2025-10-14): Denial of Service Vulnerabilities in User Management Component (UMC)
|
2025-10-14 |
| MEDIUM | 0 |
SSA-541582 V1.0: Multiple File Parsing Vulnerabilities in Solid Edge
SIEMENS-SSA-541582
|
SSA-541582 V1.0: Multiple File Parsing Vulnerabilities in Solid Edge
|
2025-10-14 |
| MEDIUM | 0 |
SSA-486936 V1.0: Authentication Vulnerability in SIMATIC ET 200SP Communication Processors
SIEMENS-SSA-486936
|
SSA-486936 V1.0: Authentication Vulnerability in SIMATIC ET 200SP Communication Processors
|
2025-10-14 |
| MEDIUM | 0 |
SSA-373591 V1.2 (Last Update: 2025-10-14): Buffer Overflow Vulnerability in RUGGEDCOM ROS Devices
SIEMENS-SSA-373591
|
SSA-373591 V1.2 (Last Update: 2025-10-14): Buffer Overflow Vulnerability in RUGGEDCOM ROS Devices
|
2025-10-14 |
| MEDIUM | 0 |
SSA-367714 V1.1 (Last Update: 2025-10-14): Improper Integrity Check of Firmware Updates in SiPass integrated AC5102 / ACC-G2 and ACC-AP
SIEMENS-SSA-367714
|
SSA-367714 V1.1 (Last Update: 2025-10-14): Improper Integrity Check of Firmware Updates in SiPass integrated AC5102 / ACC-G2 and ACC-AP
|
2025-10-14 |
| MEDIUM | 0 |
SSA-318832 V1.0: SQL Injection Vulnerability in SINEC NMS
SIEMENS-SSA-318832
|
SSA-318832 V1.0: SQL Injection Vulnerability in SINEC NMS
|
2025-10-14 |
| MEDIUM | 0 |
SSA-279823 V1.2 (Last Update: 2025-10-14): Cross-Site Scripting Vulnerability in SIMATIC S7-1200 CPU V2/V3 Before V3.0.2
SIEMENS-SSA-279823
|
SSA-279823 V1.2 (Last Update: 2025-10-14): Cross-Site Scripting Vulnerability in SIMATIC S7-1200 CPU V2/V3 Before V3.0.2
|
2025-10-14 |
| MEDIUM | 0 |
SSA-240718 V1.2 (Last Update: 2025-10-14): Insecure Storage of HTTPS CA Certificate in SIMATIC S7-1200 CPU V2
SIEMENS-SSA-240718
|
SSA-240718 V1.2 (Last Update: 2025-10-14): Insecure Storage of HTTPS CA Certificate in SIMATIC S7-1200 CPU V2
|
2025-10-14 |
| MEDIUM | 0 |
SSA-186293 V1.1 (Last Update: 2025-10-14): XML External Entity (XXE) Injection Vulnerability in SIMOTION SCOUT, SIMOTION SCOUT TIA and SINAMICS STARTER
SIEMENS-SSA-186293
|
SSA-186293 V1.1 (Last Update: 2025-10-14): XML External Entity (XXE) Injection Vulnerability in SIMOTION SCOUT, SIMOTION SCOUT TIA and SINAMICS STARTER
|
2025-10-14 |
| MEDIUM | 0 |
SSA-083019 V1.1 (Last Update: 2025-10-14): Multiple Vulnerabilities in RUGGEDCOM ROS Devices
SIEMENS-SSA-083019
|
SSA-083019 V1.1 (Last Update: 2025-10-14): Multiple Vulnerabilities in RUGGEDCOM ROS Devices
|
2025-10-14 |
| MEDIUM | 0 |
SSA-062309 V1.0: Information Disclosure Vulnerability in TeleControl Server Basic V3.1
SIEMENS-SSA-062309
|
SSA-062309 V1.0: Information Disclosure Vulnerability in TeleControl Server Basic V3.1
|
2025-10-14 |
| MEDIUM | 0 |
SSA-054046 V1.7 (Last Update: 2025-10-14): Unauthenticated Information Disclosure in Web Server of SIMATIC S7-1500 CPUs
SIEMENS-SSA-054046
|
SSA-054046 V1.7 (Last Update: 2025-10-14): Unauthenticated Information Disclosure in Web Server of SIMATIC S7-1500 CPUs
|
2025-10-14 |
| MEDIUM | 0 |
SSA-039007 V1.6 (Last Update: 2025-10-14): Heap-based Buffer Overflow Vulnerability in User Management Component (UMC)
SIEMENS-SSA-039007
|
SSA-039007 V1.6 (Last Update: 2025-10-14): Heap-based Buffer Overflow Vulnerability in User Management Component (UMC)
|
2025-10-14 |
| HIGH | 8.1 |
End-of-Train and Head-of-Train Remote Linking Protocol (Update C)
ICSA-25-191-10 · 1 CVE
|
Trainguard HOT,
Trainguard EOT
|
2025-09-18 |
| HIGH | 7.5 |
Siemens SIMATIC NET CP, SINEMA and SCALANCE
ICSA-25-259-03 · 2 CVEs
|
Siemens RUGGEDCOM RM1224 LTE(4G) EU (6GK6108-4AM00-2BA2),
Siemens SCALANCE M874-3 (6GK5874-3AA00-2AA2),
Siemens SCALANCE M876-3 (EVDO) (6GK5876-3AA02-2BA2)
+38 more
|
2025-09-16 |
| HIGH | 7.4 |
Siemens OpenSSL Vulnerability in Industrial Products
ICSA-25-259-05 · 1 CVE
|
Siemens Industrial Edge - Machine Insight App,
Siemens RUGGEDCOM ROX RX1510,
Siemens SCALANCE X201-3P IRT PRO (6GK5201-3JR00-2BA6)
+221 more
|
2025-09-16 |
| HIGH | 7.8 |
Siemens OPC Foundation Local Discovery Server Affecting Siemens Products
ICSA-24-102-08 · 1 CVE
|
OpenPCS 7 V9.1,
SIMATIC NET PC Software V14,
SIMATIC NET PC Software V15
+9 more
|
2025-09-09 |
| HIGH | 7.8 |
Siemens SIMATIC S7-1500 TM MFP
ICSA-25-072-03 · 19 CVEs
|
SIMATIC S7-1500 TM MFP - BIOS
|
2025-09-09 |
| HIGH | 8.2 |
Siemens WIBU CodeMeter Runtime
ICSA-25-226-05 · 1 CVE
|
SIMATIC PDM Maintenance Station V5.0,
SIMATIC WinCC OA V3.18,
SIMATIC WinCC OA V3.19
+1 more
|
2025-09-09 |
| HIGH | 8.1 |
Siemens SIMOTION Tools
ICSA-25-254-01 · 1 CVE
|
SIMATIC Technology Package TPCamGen (6ES7823-0FE30-1AA0),
SIMOTION OA MIIF (6AU1820-3DA20-0AB0),
SIMOTION OACAMGEN (6AU1820-3EA20-0AB0)
+2 more
|
2025-09-09 |
| CRITICAL | 9.1 |
Siemens SIMATIC Virtualization as a Service (SIVaaS)
ICSA-25-254-02 · 1 CVE
|
SIMATIC Virtualization as a Service (SIVaaS)
|
2025-09-09 |
| LOW | 3.1 |
Siemens SINEC OS
ICSA-25-254-04 · 2 CVEs
|
RUGGEDCOM RST2428P (6GK6242-6PA00)
|
2025-09-09 |
| MEDIUM | 5.3 |
Siemens Apogee PXC and Talon TC Devices
ICSA-25-254-05 · 1 CVE
|
APOGEE PXC Series (BACnet),
APOGEE PXC Series (P2 Ethernet),
TALON TC Series (BACnet)
|
2025-09-09 |
| HIGH | 7.5 |
Siemens Industrial Edge Management
ICSA-25-254-06 · 1 CVE
|
Industrial Edge Management OS (IEM-OS)
|
2025-09-09 |
| MEDIUM | 0 |
SSA-916339 V1.0: Information Disclosure Vulnerability in Apogee PXC and Talon TC Devices
SIEMENS-SSA-916339
|
SSA-916339 V1.0: Information Disclosure Vulnerability in Apogee PXC and Talon TC Devices
|
2025-09-09 |
| HIGH | 7.5 |
SSA-712929 V3.0 (Last Update: 2025-09-09): Denial of Service Vulnerability in OpenSSL (CVE-2022-0778) Affecting Industrial Products
SIEMENS-SSA-712929 · 1 CVE
|
SSA-712929 V3.0 (Last Update: 2025-09-09): Denial of Service Vulnerability in OpenSSL (CVE-2022-0778) Affecting Industrial Products
|
2025-09-09 |
| MEDIUM | 0 |
SSA-691715 V1.7 (Last Update: 2025-09-09): Vulnerability in OPC Foundation Local Discovery Server Affecting Siemens Products
SIEMENS-SSA-691715
|
SSA-691715 V1.7 (Last Update: 2025-09-09): Vulnerability in OPC Foundation Local Discovery Server Affecting Siemens Products
|
2025-09-09 |
| MEDIUM | 0 |
SSA-640476 V1.0: Denial of Service Vulnerability in Industrial Edge Management
SIEMENS-SSA-640476
|
SSA-640476 V1.0: Denial of Service Vulnerability in Industrial Edge Management
|
2025-09-09 |
| MEDIUM | 0 |
SSA-563922 V1.0: Local Privilege Escalation Vulnerability in SIMOTION Tools
SIEMENS-SSA-563922
|
SSA-563922 V1.0: Local Privilege Escalation Vulnerability in SIMOTION Tools
|
2025-09-09 |
| MEDIUM | 0 |
SSA-534283 V1.0: Insecure File Share Vulnerability in SIMATIC Virtualization as a Service (SIVaaS)
SIEMENS-SSA-534283
|
SSA-534283 V1.0: Insecure File Share Vulnerability in SIMATIC Virtualization as a Service (SIVaaS)
|
2025-09-09 |
| MEDIUM | 0 |
SSA-503939 V1.2 (Last Update: 2025-09-09): Vulnerabilities in the BIOS of the SIMATIC S7-1500 TM MFP
SIEMENS-SSA-503939
|
SSA-503939 V1.2 (Last Update: 2025-09-09): Vulnerabilities in the BIOS of the SIMATIC S7-1500 TM MFP
|
2025-09-09 |
| MEDIUM | 0 |
SSA-494539 V1.0: Multiple Vulnerabilities in SINEC OS
SIEMENS-SSA-494539
|
SSA-494539 V1.0: Multiple Vulnerabilities in SINEC OS
|
2025-09-09 |
| MEDIUM | 0 |
SSA-331739 V1.1 (Last Update: 2025-09-09): Privilege Escalation Vulnerability in WIBU CodeMeter Runtime Affecting Siemens Products
SIEMENS-SSA-331739
|
SSA-331739 V1.1 (Last Update: 2025-09-09): Privilege Escalation Vulnerability in WIBU CodeMeter Runtime Affecting Siemens Products
|
2025-09-09 |
| MEDIUM | 0 |
SSA-707630 V1.1 (Last Update: 2025-08-26): Multiple Vulnerabilities in SIMATIC RTLS Locating Manager Before V3.3
SIEMENS-SSA-707630
|
SSA-707630 V1.1 (Last Update: 2025-08-26): Multiple Vulnerabilities in SIMATIC RTLS Locating Manager Before V3.3
|
2025-08-26 |
| HIGH | 8.2 |
Siemens Desigo CC Product Family and SENTRON Powermanager
ICSA-25-231-01 · 1 CVE
|
Desigo CC family V5.0,
Desigo CC family V5.1,
Desigo CC family V6
+6 more
|
2025-08-14 |
| MEDIUM | 0 |
SSA-395458 V1.0: Account Hijacking Vulnerability in Mendix SAML Module
SIEMENS-SSA-395458
|
SSA-395458 V1.0: Account Hijacking Vulnerability in Mendix SAML Module
|
2025-08-14 |
| MEDIUM | 0 |
SSA-028723 V1.1 (Last Update: 2025-08-13): Multiple OpenSSL Vulnerabilities in BFCClient Before V2.17
SIEMENS-SSA-028723
|
SSA-028723 V1.1 (Last Update: 2025-08-13): Multiple OpenSSL Vulnerabilities in BFCClient Before V2.17
|
2025-08-13 |
| HIGH | 8.8 |
Siemens Ruggedcom ROS, SCALANCE
ICSA-17-271-01B · 1 CVE
|
RUGGEDCOM i800,
RUGGEDCOM i800NC,
RUGGEDCOM i801
+250 more
|
2025-08-12 |
| MEDIUM | 6.7 |
Siemens RUGGEDCOM Devices
ICSA-22-069-01 · 1 CVE
|
RUGGEDCOM i800,
RUGGEDCOM i801,
RUGGEDCOM i802
+71 more
|
2025-08-12 |
| CRITICAL | 9.6 |
Siemens RUGGEDCOM ROS
ICSA-22-069-12 · 6 CVEs
|
RUGGEDCOM i800,
RUGGEDCOM i800NC,
RUGGEDCOM i801
+149 more
|
2025-08-12 |
| HIGH | 8.0 |
Siemens RUGGEDCOM ROS Code Injection
ICSA-22-195-18 · 1 CVE
|
RUGGEDCOM i800,
RUGGEDCOM i800NC,
RUGGEDCOM i801
+149 more
|
2025-08-12 |
| MEDIUM | 5.3 |
Siemens RUGGEDCOM ROS
ICSA-22-314-05 · 1 CVE
|
RUGGEDCOM i800,
RUGGEDCOM i800NC,
RUGGEDCOM i801
+149 more
|
2025-08-12 |
| HIGH | 7.5 |
Siemens RUGGEDCOM ROS Devices
ICSA-23-222-08 · 1 CVE
|
RUGGEDCOM i800,
RUGGEDCOM i800NC,
RUGGEDCOM i801
+149 more
|
2025-08-12 |
| CRITICAL | 9.1 |
Siemens RUGGEDCOM ROS
ICSA-23-222-12 · 1 CVE
|
RUGGEDCOM i800,
RUGGEDCOM i800NC,
RUGGEDCOM i801
+153 more
|
2025-08-12 |
| CRITICAL | 9.8 |
Siemens SIMATIC S7-1500
ICSA-23-348-10 · 544 CVEs
|
SIMATIC S7-1500 CPU 1518-4 PN/DP MFP (6ES7518-4AX00-1AB0),
SIMATIC S7-1500 CPU 1518-4 PN/DP MFP (6ES7518-4AX00-1AC0),
SIMATIC S7-1500 CPU 1518F-4 PN/DP MFP (6ES7518-4FX00-1AB0)
+2 more
|
2025-08-12 |
| MEDIUM | 4.9 |
Siemens SCALANCE XB-200 / XC-200 / XP-200 / XF-200BA / XR-300WG Family
ICSA-24-074-08 · 2 CVEs
|
SCALANCE XB205-3 (SC, PN) (6GK5205-3BB00-2AB2),
SCALANCE XB205-3 (SC, PN) (6GK5205-3BB00-2AB2),
SCALANCE XB205-3 (ST, E/IP) (6GK5205-3BB00-2TB2)
+179 more
|
2025-08-12 |
| HIGH | 8.8 |
Siemens RUGGEDCOM
ICSA-24-193-06 · 4 CVEs
|
RUGGEDCOM i800,
RUGGEDCOM i800NC,
RUGGEDCOM i801
+133 more
|
2025-08-12 |
| MEDIUM | 5.3 |
Siemens Mendix Runtime
ICSA-24-256-05 · 1 CVE
|
Mendix Runtime V8,
Mendix Runtime V9,
Mendix Runtime V10
+2 more
|
2025-08-12 |
| MEDIUM | 5.3 |
Siemens Mendix Runtime
ICSA-24-319-12 · 1 CVE
|
Mendix Runtime V8,
Mendix Runtime V9,
Mendix Runtime V10
+2 more
|
2025-08-12 |
| HIGH | 7.8 |
Siemens Siemens Engineering Platforms
ICSA-24-347-05 · 1 CVE
|
SIMATIC S7-PLCSIM V16,
SIMATIC S7-PLCSIM V17,
SIMATIC STEP 7 Safety V16
+36 more
|
2025-08-12 |
| HIGH | 7.5 |
Siemens SIPROTEC 5 Devices
ICSA-25-044-05 · 1 CVE
|
SIPROTEC 5 6MD84 (CP300),
SIPROTEC 5 6MD85 (CP300),
SIPROTEC 5 6MD86 (CP300)
+45 more
|
2025-08-12 |
| CRITICAL | 10.0 |
Siemens SIMATIC IPC RS-828A
ICSA-25-135-07 · 1 CVE
|
SIMATIC IPC RS-828A - BMC firmware
|
2025-08-12 |
| MEDIUM | 4.3 |
Siemens TIA Project-Server and TIA Portal
ICSA-25-191-05 · 1 CVE
|
TIA Project-Server,
TIA Project-Server V17,
Totally Integrated Automation Portal (TIA Portal) V17
+3 more
|
2025-08-12 |
| MEDIUM | 6.3 |
Siemens SIMATIC RTLS Locating Manager
ICSA-25-226-01 · 2 CVEs
|
SIMATIC RTLS Locating Manager
|
2025-08-12 |
| HIGH | 8.2 |
Siemens COMOS
ICSA-25-226-02 · 1 CVE
|
COMOS
|
2025-08-12 |
| HIGH | 7.8 |
Siemens Simcenter Femap
ICSA-25-226-04 · 2 CVEs
|
Simcenter Femap V2406,
Simcenter Femap V2412
|
2025-08-12 |
| HIGH | 7.1 |
Siemens Opcenter Quality
ICSA-25-226-06 · 7 CVEs
|
SmartClient modules Opcenter QL Home (SC),
SOA Audit,
SOA Cockpit
|
2025-08-12 |
| HIGH | 8.3 |
Siemens RUGGEDCOM CROSSBOW Station Access Controller
ICSA-25-226-08 · 3 CVEs
|
RUGGEDCOM CROSSBOW Station Access Controller (SAC)
|
2025-08-12 |
| LOW | 2.4 |
Siemens SIPROTEC 5
ICSA-25-226-10 · 1 CVE
|
SIPROTEC 5 6MD84 (CP300),
SIPROTEC 5 6MD85 (CP300),
SIPROTEC 5 6MD86 (CP300)
+33 more
|
2025-08-12 |
| HIGH | 7.5 |
Siemens SIPROTEC 4 and SIPROTEC 4 Compact
ICSA-25-226-12 · 1 CVE
|
SIPROTEC 4 6MD61,
SIPROTEC 4 6MD63,
SIPROTEC 4 6MD66
+26 more
|
2025-08-12 |
| CRITICAL | 9.1 |
Siemens SIMATIC RTLS Locating Manager
ICSA-25-226-13 · 1 CVE
|
SIMATIC RTLS Locating Manager
|
2025-08-12 |
| MEDIUM | 4.1 |
Siemens RUGGEDCOM ROX II
ICSA-25-226-14 · 1 CVE
|
RUGGEDCOM ROX MX5000,
RUGGEDCOM ROX MX5000RE,
RUGGEDCOM ROX RX1400
+8 more
|
2025-08-12 |
| MEDIUM | 6.2 |
Siemens SICAM Q100/Q200
ICSA-25-226-16 · 2 CVEs
|
POWER METER SICAM Q100 (7KG9501-0AA01-0AA1),
POWER METER SICAM Q100 (7KG9501-0AA01-2AA1),
POWER METER SICAM Q100 (7KG9501-0AA31-0AA1)
+2 more
|
2025-08-12 |
| HIGH | 7.8 |
Siemens SINEC Traffic Analyzer
ICSA-25-226-17 · 7 CVEs
|
SINEC Traffic Analyzer (6GK8822-1BG01-0BA0),
SINEC Traffic Analyzer (6GK8822-1BG01-0BA0)
|
2025-08-12 |
| HIGH | 8.3 |
Siemens SINUMERIK
ICSA-25-226-19 · 1 CVE
|
SINUMERIK 828D PPU.4,
SINUMERIK 828D PPU.5,
SINUMERIK 840D sl
+4 more
|
2025-08-12 |
| HIGH | 7.6 |
Siemens RUGGEDCOM ROX II
ICSA-25-226-20 · 1 CVE
|
RUGGEDCOM ROX MX5000,
RUGGEDCOM ROX MX5000RE,
RUGGEDCOM ROX RX1400
+8 more
|
2025-08-12 |
| CRITICAL | 9.8 |
Siemens BFCClient
ICSA-25-226-21 · 5 CVEs
|
BFCClient
|
2025-08-12 |
| MEDIUM | 0 |
SSA-994087 V1.0: Multiple SQLite Vulnerabilities in RUGGEDCOM CROSSBOW Station Access Controller Before V5.7
SIEMENS-SSA-994087
|
SSA-994087 V1.0: Multiple SQLite Vulnerabilities in RUGGEDCOM CROSSBOW Station Access Controller Before V5.7
|
2025-08-12 |
| MEDIUM | 0 |
SSA-914892 V1.1 (Last Update: 2025-08-12): Race Condition Vulnerability in Basic Authentication Implementation of Mendix Runtime
SIEMENS-SSA-914892
|
SSA-914892 V1.1 (Last Update: 2025-08-12): Race Condition Vulnerability in Basic Authentication Implementation of Mendix Runtime
|
2025-08-12 |
| MEDIUM | 0 |
SSA-908185 V1.2 (Last Update: 2025-08-12): Mirror Port Isolation Vulnerability in RUGGEDCOM ROS Devices
SIEMENS-SSA-908185
|
SSA-908185 V1.2 (Last Update: 2025-08-12): Mirror Port Isolation Vulnerability in RUGGEDCOM ROS Devices
|
2025-08-12 |
| MEDIUM | 0 |
SSA-894058 V1.0: Improper Bandwidth Limitation of Network Packets Over Local USB Port Vulnerability in SIPROTEC 5
SIEMENS-SSA-894058
|
SSA-894058 V1.0: Improper Bandwidth Limitation of Network Packets Over Local USB Port Vulnerability in SIPROTEC 5
|
2025-08-12 |
| MEDIUM | 0 |
SSA-856721 V1.3 (Last Update: 2025-08-12): Vulnerability in RUGGEDCOM Discovery Protocol (RCDP) of Industrial Communication Devices
SIEMENS-SSA-856721
|
SSA-856721 V1.3 (Last Update: 2025-08-12): Vulnerability in RUGGEDCOM Discovery Protocol (RCDP) of Industrial Communication Devices
|
2025-08-12 |
| MEDIUM | 0 |
SSA-840800 V1.5 (Last Update: 2025-08-12): Code Injection Vulnerability in RUGGEDCOM ROS
SIEMENS-SSA-840800
|
SSA-840800 V1.5 (Last Update: 2025-08-12): Code Injection Vulnerability in RUGGEDCOM ROS
|
2025-08-12 |
| MEDIUM | 0 |
SSA-787941 V1.5 (Last Update: 2025-08-12): Denial of Service Vulnerability in RUGGEDCOM ROS devices
SIEMENS-SSA-787941
|
SSA-787941 V1.5 (Last Update: 2025-08-12): Denial of Service Vulnerability in RUGGEDCOM ROS devices
|
2025-08-12 |
| MEDIUM | 0 |
SSA-770902 V1.2 (Last Update: 2025-08-12): Denial of Service Vulnerability in the Web Server of RUGGEDCOM ROS Devices
SIEMENS-SSA-770902
|
SSA-770902 V1.2 (Last Update: 2025-08-12): Denial of Service Vulnerability in the Web Server of RUGGEDCOM ROS Devices
|
2025-08-12 |
| MEDIUM | 0 |
SSA-769791 V1.0: Local Arbitrary Code Execution Vulnerability in COMOS Before V10.6
SIEMENS-SSA-769791
|
SSA-769791 V1.0: Local Arbitrary Code Execution Vulnerability in COMOS Before V10.6
|
2025-08-12 |
| MEDIUM | 0 |
SSA-767615 V1.4 (Last Update: 2025-08-12): Information Disclosure Vulnerability in SIPROTEC 5 Devices
SIEMENS-SSA-767615
|
SSA-767615 V1.4 (Last Update: 2025-08-12): Information Disclosure Vulnerability in SIPROTEC 5 Devices
|
2025-08-12 |
| MEDIUM | 0 |
SSA-764417 V1.9 (Last Update: 2025-08-12): Weak Encryption Vulnerability in RUGGEDCOM ROS Devices
SIEMENS-SSA-764417
|
SSA-764417 V1.9 (Last Update: 2025-08-12): Weak Encryption Vulnerability in RUGGEDCOM ROS Devices
|
2025-08-12 |
| MEDIUM | 0 |
SSA-674084 V1.0: File Parsing Vulnerabilities in Simcenter Femap Before V2506
SIEMENS-SSA-674084
|
SSA-674084 V1.0: File Parsing Vulnerabilities in Simcenter Femap Before V2506
|
2025-08-12 |
| MEDIUM | 0 |
SSA-665108 V1.0: Arbitrary File Upload Vulnerability in RUGGEDCOM ROX II
SIEMENS-SSA-665108
|
SSA-665108 V1.0: Arbitrary File Upload Vulnerability in RUGGEDCOM ROX II
|
2025-08-12 |
| MEDIUM | 0 |
SSA-529291 V1.0: Information Disclosure Vulnerabilities in SICAM Q100/Q200
SIEMENS-SSA-529291
|
SSA-529291 V1.0: Information Disclosure Vulnerabilities in SICAM Q100/Q200
|
2025-08-12 |
| MEDIUM | 0 |
SSA-517338 V1.0: Multiple Vulnerabilities in SINEC Traffic Analyzer Before V3.0
SIEMENS-SSA-517338
|
SSA-517338 V1.0: Multiple Vulnerabilities in SINEC Traffic Analyzer Before V3.0
|
2025-08-12 |
| MEDIUM | 0 |
SSA-493787 V1.0: Arbitrary Code Execution Vulnerability in SIMATIC RTLS Locating Manager Before V3.2
SIEMENS-SSA-493787
|
SSA-493787 V1.0: Arbitrary Code Execution Vulnerability in SIMATIC RTLS Locating Manager Before V3.2
|
2025-08-12 |
| MEDIUM | 0 |
SSA-460466 V1.1 (Last Update: 2025-08-12): Denial of Service Vulnerability in TIA Project-Server and TIA Portal
SIEMENS-SSA-460466
|
SSA-460466 V1.1 (Last Update: 2025-08-12): Denial of Service Vulnerability in TIA Project-Server and TIA Portal
|
2025-08-12 |
| CRITICAL | 10.0 |
SSA-446307 V1.1 (Last Update: 2025-08-12): Authentication Bypass Vulnerability in BMC (CVE-2024-54085) affects SIMATIC IPC RS-828A
SIEMENS-SSA-446307 · 1 CVE
|
SSA-446307 V1.1 (Last Update: 2025-08-12): Authentication Bypass Vulnerability in BMC (CVE-2024-54085) affects SIMATIC IPC RS-828A
|
2025-08-12 |
| MEDIUM | 0 |
SSA-400089 V1.0: Denial of Service Vulnerability in SIPROTEC 4 and SIPROTEC 4 Compact
SIEMENS-SSA-400089
|
SSA-400089 V1.0: Denial of Service Vulnerability in SIPROTEC 4 and SIPROTEC 4 Compact
|
2025-08-12 |
| MEDIUM | 0 |
SSA-398330 V2.7 (Last Update: 2025-08-12): Vulnerabilities in the additional GNU/Linux subsystem of the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP >= V3.1.0 and < V3.1.5
SIEMENS-SSA-398330
|
SSA-398330 V2.7 (Last Update: 2025-08-12): Vulnerabilities in the additional GNU/Linux subsystem of the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP >= V3.1.0 and < V3.1.5
|
2025-08-12 |
| MEDIUM | 0 |
SSA-382999 V1.0: Multiple Vulnerabilities in Opcenter Quality Before V2506
SIEMENS-SSA-382999
|
SSA-382999 V1.0: Multiple Vulnerabilities in Opcenter Quality Before V2506
|
2025-08-12 |
| MEDIUM | 6.9 |
SSA-353002 V1.2 (Last Update: 2025-08-12): Multiple Vulnerabilities in SCALANCE XB-200 / XC-200 / XP-200 / XF-200BA / XR-300WG Family
SIEMENS-SSA-353002 · 2 CVEs
|
SSA-353002 V1.2 (Last Update: 2025-08-12): Multiple Vulnerabilities in SCALANCE XB-200 / XC-200 / XP-200 / XF-200BA / XR-300WG Family
|
2025-08-12 |
| MEDIUM | 0 |
SSA-256353 V1.6 (Last Update: 2025-08-12): Third-Party Component Vulnerabilities in RUGGEDCOM ROS
SIEMENS-SSA-256353
|
SSA-256353 V1.6 (Last Update: 2025-08-12): Third-Party Component Vulnerabilities in RUGGEDCOM ROS
|
2025-08-12 |
| MEDIUM | 0 |
SSA-177847 V1.0: Improper VNC Password Check Vulnerability in SINUMERIK Controllers
SIEMENS-SSA-177847
|
SSA-177847 V1.0: Improper VNC Password Check Vulnerability in SINUMERIK Controllers
|
2025-08-12 |
| MEDIUM | 0 |
SSA-170375 V1.1 (Last Update: 2025-08-12): Multiple Vulnerabilities in RUGGEDCOM ROS Before V5.9
SIEMENS-SSA-170375
|
SSA-170375 V1.1 (Last Update: 2025-08-12): Multiple Vulnerabilities in RUGGEDCOM ROS Before V5.9
|
2025-08-12 |
| MEDIUM | 0 |
SSA-097435 V1.9 (Last Update: 2025-08-12): Usernames Disclosure Vulnerability in Mendix Runtime
SIEMENS-SSA-097435
|
SSA-097435 V1.9 (Last Update: 2025-08-12): Usernames Disclosure Vulnerability in Mendix Runtime
|
2025-08-12 |
| MEDIUM | 0 |
SSA-094954 V1.0: Authentication Bypass Vulnerability in BIST mode of RUGGEDCOM ROX II
SIEMENS-SSA-094954
|
SSA-094954 V1.0: Authentication Bypass Vulnerability in BIST mode of RUGGEDCOM ROX II
|
2025-08-12 |
| MEDIUM | 0 |
SSA-725549 V1.3 (Last Update: 2025-07-21): Denial of Service of ICMP in Industrial Devices
SIEMENS-SSA-725549
|
SSA-725549 V1.3 (Last Update: 2025-07-21): Denial of Service of ICMP in Industrial Devices
|
2025-07-21 |
| MEDIUM | 0 |
SSA-183963 V1.1 (Last Update: 2025-07-18): Certificate Validation Vulnerabilities in SICAM TOOLBOX II Before V07.11
SIEMENS-SSA-183963
|
SSA-183963 V1.1 (Last Update: 2025-07-18): Certificate Validation Vulnerabilities in SICAM TOOLBOX II Before V07.11
|
2025-07-18 |
| MEDIUM | 5.3 |
Siemens SIMOCODE, SIMATIC, SIPLUS, SIDOOR, SIWAREX
ICSA-25-105-03 · 1 CVE
|
SIDOOR ATD430W,
SIDOOR ATE530G COATED (6FB1221-5SM10-7BP0),
SIDOOR ATE530S COATED
+164 more
|
2025-07-10 |
| CRITICAL | 9.8 |
Siemens SIMATIC Communication Processor Vulnerability (Update C)
ICSA-15-335-03 · 1 CVE
|
SIMATIC CP 342-5 (6GK7342-5DA02-0XE0),
SIMATIC CP 342-5 (6GK7342-5DA03-0XE0),
SIMATIC CP 342-5 FO (6GK7342-5DF00-0XE0)
+25 more
|
2025-07-08 |
| HIGH | 7.5 |
Siemens KTK, SIDOOR, SIMATIC, and SINAMICS (Update D)
ICSA-20-105-08 · 1 CVE
|
Development/Evaluation Kits for PROFINET IO: EK-ERTEC 200,
Development/Evaluation Kits for PROFINET IO: EK-ERTEC 200P,
KTK ATE530S
+69 more
|
2025-07-08 |
| HIGH | 8.1 |
Siemens Industrial Products
ICSA-24-256-15 · 1 CVE
|
Industrial Edge Management OS (IEM-OS),
SINAMICS IIoT module,
SINEMA Remote Connect Server
+1 more
|
2025-07-08 |
| MEDIUM | 6.1 |
Siemens Mendix Studio Pro
ICSA-25-168-01 · 1 CVE
|
Mendix Studio Pro 8,
Mendix Studio Pro 9,
Mendix Studio Pro 10
+4 more
|
2025-07-08 |
| CRITICAL | 9.8 |
Siemens SINEC NMS
ICSA-25-191-01 · 4 CVEs
|
SINEC NMS
|
2025-07-08 |
| HIGH | 7.8 |
Siemens Solid Edge
ICSA-25-191-02 · 3 CVEs
|
Solid Edge SE2025
|
2025-07-08 |
| HIGH | 7.8 |
Siemens TIA Administrator
ICSA-25-191-03 · 2 CVEs
|
TIA Administrator
|
2025-07-08 |
| MEDIUM | 6.5 |
Siemens SIMATIC CN 4100
ICSA-25-191-04 · 1 CVE
|
SIMATIC CN 4100
|
2025-07-08 |
| MEDIUM | 5.3 |
Siemens SIPROTEC 5
ICSA-25-191-06 · 1 CVE
|
SIPROTEC 5 6MD84 (CP300),
SIPROTEC 5 6MD85 (CP300),
SIPROTEC 5 6MD86 (CP300)
+41 more
|
2025-07-08 |
| MEDIUM | 0 |
SSA-938066 V1.0: Remote Code Execution Vulnerability in SENTRON Powermanager and Desigo CC
SIEMENS-SSA-938066
|
SSA-938066 V1.0: Remote Code Execution Vulnerability in SENTRON Powermanager and Desigo CC
|
2025-07-08 |
| MEDIUM | 0 |
SSA-904646 V1.0: Sensitive Data Exposure Vulnerability in SIPROTEC 5 Devices
SIEMENS-SSA-904646
|
SSA-904646 V1.0: Sensitive Data Exposure Vulnerability in SIPROTEC 5 Devices
|
2025-07-08 |
| MEDIUM | 0 |
SSA-763427 V1.6 (Last Update: 2025-07-08): Authentication Bypass Vulnerability in SIMATIC CP and TIM Devices
SIEMENS-SSA-763427
|
SSA-763427 V1.6 (Last Update: 2025-07-08): Authentication Bypass Vulnerability in SIMATIC CP and TIM Devices
|
2025-07-08 |
| MEDIUM | 0 |
SSA-634640 V1.1 (Last Update: 2025-07-08): Weak Authentication Vulnerability in Siemens Industrial Edge Devices
SIEMENS-SSA-634640
|
SSA-634640 V1.1 (Last Update: 2025-07-08): Weak Authentication Vulnerability in Siemens Industrial Edge Devices
|
2025-07-08 |
| MEDIUM | 0 |
SSA-627195 V1.1 (Last Update: 2025-07-08): Zip Path Traversal Vulnerability in Mendix Studio Pro's Module Installation Process
SIEMENS-SSA-627195
|
SSA-627195 V1.1 (Last Update: 2025-07-08): Zip Path Traversal Vulnerability in Mendix Studio Pro's Module Installation Process
|
2025-07-08 |
| MEDIUM | 0 |
SSA-626991 V1.0: Denial of Service Vulnerability in SIMATIC CN 4100 before V4.0
SIEMENS-SSA-626991
|
SSA-626991 V1.0: Denial of Service Vulnerability in SIMATIC CN 4100 before V4.0
|
2025-07-08 |
| MEDIUM | 0 |
SSA-593272 V2.5 (Last Update: 2025-07-08): SegmentSmack in Interniche IP-Stack based Industrial Devices
SIEMENS-SSA-593272
|
SSA-593272 V2.5 (Last Update: 2025-07-08): SegmentSmack in Interniche IP-Stack based Industrial Devices
|
2025-07-08 |
| MEDIUM | 0 |
SSA-573669 V1.0: Multiple Vulnerabilities in TIA Administrator Before V3.0.6
SIEMENS-SSA-573669
|
SSA-573669 V1.0: Multiple Vulnerabilities in TIA Administrator Before V3.0.6
|
2025-07-08 |
| HIGH | 8.1 |
SSA-446545 V1.1 (Last Update: 2025-07-08): Impact of RegreSSHion (CVE-2024-6387) in Siemens Industrial Products
SIEMENS-SSA-446545 · 1 CVE
|
SSA-446545 V1.1 (Last Update: 2025-07-08): Impact of RegreSSHion (CVE-2024-6387) in Siemens Industrial Products
|
2025-07-08 |
| MEDIUM | 0 |
SSA-327438 V1.1 (Last Update: 2025-07-08): Multiple Vulnerabilities in SCALANCE LPE9403
SIEMENS-SSA-327438
|
SSA-327438 V1.1 (Last Update: 2025-07-08): Multiple Vulnerabilities in SCALANCE LPE9403
|
2025-07-08 |
| MEDIUM | 0 |
SSA-091753 V1.0: Multiple Vulnerabilities in Solid Edge Before SE2025 Update 5
SIEMENS-SSA-091753
|
SSA-091753 V1.0: Multiple Vulnerabilities in Solid Edge Before SE2025 Update 5
|
2025-07-08 |
| MEDIUM | 0 |
SSA-078892 V1.0: Multiple Vulnerabilities in SINEC NMS Before V4.0
SIEMENS-SSA-078892
|
SSA-078892 V1.0: Multiple Vulnerabilities in SINEC NMS Before V4.0
|
2025-07-08 |
| LOW | 2.1 |
Siemens Sm@rtClient Password Storage Vulnerability
ICSA-15-202-02 · 1 CVE
|
SIMATIC WinCC Sm@rtClient for Android,
SIMATIC WinCC Sm@rtClient Lite for Android
|
2025-06-25 |
| HIGH | 7.8 |
Siemens SIPROTEC Denial-of-Service Vulnerability
ICSA-15-202-01 · 1 CVE
|
SIPROTEC 4 and SIPROTEC Compact product families,
EN100 Ethernet module
|
2025-06-25 |
| HIGH | 8.3 |
Siemens SCALANCE X-200 Web Hijack Vulnerability
ICSA-13-254-01 · 1 CVE
|
SCALANCE X-200 switch Machine-Readable Product Designation (MLFB),
SCALANCE X-200 switch Machine-Readable Product Designation (MLFB),
SCALANCE X-200 switch Machine-Readable Product Designation (MLFB)
+13 more
|
2025-06-25 |
| HIGH | 7.5 |
Siemens WinCC WebNavigator Multiple Vulnerabilities
ICSA-12-256-01 · 5 CVEs
|
WebNavigator component of WinCC
|
2025-06-25 |
| CRITICAL | 9.8 |
Siemens SIMATIC WinCC, PCS 7, and WinCC Runtime Professional Vulnerabilities (Update C)
ICSA-16-208-01C · 2 CVEs
|
SIMATIC WinCC 7.0 SP2,
SIMATIC WinCC 7.0 SP3,
SIMATIC WinCC 7.2
+7 more
|
2025-06-25 |
| MEDIUM | 6.8 |
Siemens SCALANCE X-200IRT Switch Family User Impersonation Vulnerability
ICSA-15-034-01 · 1 CVE
|
SCALANCE X-200IRT switch family
|
2025-06-18 |
| MEDIUM | 4.3 |
Ruggedcom ROS Hard-Coded RSA SSL Private Key
ICSA-12-354-01A · 1 CVE
|
Rugged OS,
ROX I OS firmware used by RX1000 and RX1100 series products. ROX I,
ROX II OS firmware used by RX5000 and RX1500 series products. ROX II
+1 more
|
2025-06-18 |
| MEDIUM | 6.8 |
Siemens SIMATIC HMI Devices Vulnerabilities (Update E)
ICSA-15-099-01E · 1 CVE
|
SIMATIC HMI Basic Panels 2nd Generation V13,
SIMATIC HMI Comfort Panels V12,
SIMATIC HMI Comfort Panels V13
+14 more
|
2025-06-18 |
| HIGH | 8.5 |
RuggedCom Weak Cryptography for Password Vulnerability
ICSA-12-146-01A · 1 CVE
|
ROS,
ROS
|
2025-06-17 |
| MEDIUM | 0 |
SSA-426509 V1.1 (Last Update: 2025-06-17): Multiple Local Code Execution Vulnerabilities in Questa and ModelSim
SIEMENS-SSA-426509
|
SSA-426509 V1.1 (Last Update: 2025-06-17): Multiple Local Code Execution Vulnerabilities in Questa and ModelSim
|
2025-06-17 |
| MEDIUM | 0 |
SSA-345750 V1.1 (Last Update: 2025-06-16): Default Credentials in Energy Services Using Elspec G5DFR
SIEMENS-SSA-345750
|
SSA-345750 V1.1 (Last Update: 2025-06-16): Default Credentials in Energy Services Using Elspec G5DFR
|
2025-06-16 |
| MEDIUM | 6.8 |
Siemens SIMATIC WinCC Vulnerabilities (Update A)
ICSA-14-205-02A · 5 CVEs
|
SIMATIC WinCC,
SIMATIC PCS7 (as WinCC is incorporated)
|
2025-06-12 |
| HIGH | 7.1 |
Siemens SIMOTICS, Desigo, APOGEE, and TALON
ICSA-20-105-06 · 1 CVE
|
APOGEE MEC/MBC/PXC (P2),
APOGEE PXC Compact (BACnet),
APOGEE PXC Compact (P2 Ethernet)
+18 more
|
2025-06-10 |
| CRITICAL | 9.8 |
Siemens TIM 4R-IE Devices
ICSA-21-103-11 · 14 CVEs
|
SIPLUS NET TIM 4R-IE (6AG1800-4BA00-7AA0),
SIPLUS NET TIM 4R-IE DNP3 (6AG1803-4BA00-7AA0),
TIM 4R-IE (6NH7800-4BA00)
+1 more
|
2025-06-10 |
| HIGH | 7.5 |
Siemens Sentron Powercenter 1000
ICSA-24-284-12 · 1 CVE
|
SIRIUS 3RV2921-5M
|
2025-06-10 |
| CRITICAL | 10.0 |
Siemens RUGGEDCOM APE1808
ICSA-24-338-02 · 18 CVEs
|
RUGGEDCOM APE1808,
RUGGEDCOM APE1808,
RUGGEDCOM APE1808
+4 more
|
2025-06-10 |
| MEDIUM | 6.5 |
Siemens SENTRON Powercenter 1000
ICSA-24-347-10 · 1 CVE
|
SENTRON Powercenter 1000 (7KN1110-0MC00),
SENTRON Powercenter 1100 (7KN1111-0MC00)
|
2025-06-10 |
| HIGH | 7.4 |
Siemens Teamcenter
ICSA-25-044-07 · 1 CVE
|
Teamcenter V14.1,
Teamcenter V14.2,
Teamcenter V14.3
+3 more
|
2025-06-10 |
| MEDIUM | 5.3 |
Siemens Mendix Runtime
ICSA-25-105-01 · 1 CVE
|
Mendix Runtime V8,
Mendix Runtime V9,
Mendix Runtime V10
+3 more
|
2025-06-10 |
| HIGH | 7.8 |
Siemens Tecnomatix Plant Simulation
ICSA-25-162-01 · 1 CVE
|
Tecnomatix Plant Simulation V2404
|
2025-06-10 |
| MEDIUM | 4.3 |
Siemens SCALANCE and RUGGEDCOM
ICSA-25-162-03 · 1 CVE
|
RUGGEDCOM RST2428P (6GK6242-6PA00),
SCALANCE XC316-8 (6GK5324-8TS00-2AC2),
SCALANCE XC324-4 (6GK5328-4TS00-2AC2)
+38 more
|
2025-06-10 |
| CRITICAL | 9.9 |
Siemens Energy Services
ICSA-25-162-06 · 1 CVE
|
Energy Services
|
2025-06-10 |
| MEDIUM | 0 |
SSA-874353 V1.3 (Last Update: 2025-06-10): Entity Enumeration Vulnerability in Mendix Runtime
SIEMENS-SSA-874353
|
SSA-874353 V1.3 (Last Update: 2025-06-10): Entity Enumeration Vulnerability in Mendix Runtime
|
2025-06-10 |
| MEDIUM | 0 |
SSA-656895 V1.3 (Last Update: 2025-06-10): Open Redirect Vulnerability in Teamcenter
SIEMENS-SSA-656895
|
SSA-656895 V1.3 (Last Update: 2025-06-10): Open Redirect Vulnerability in Teamcenter
|
2025-06-10 |
| MEDIUM | 0 |
SSA-633269 V1.0: Incorrect Authorization Check Vulnerability in Industrial Communication Devices based on SINEC OS before V3.1
SIEMENS-SSA-633269
|
SSA-633269 V1.0: Incorrect Authorization Check Vulnerability in Industrial Communication Devices based on SINEC OS before V3.1
|
2025-06-10 |
| MEDIUM | 0 |
SSA-620799 V1.1 (Last Update: 2025-06-10): Denial of Service Vulnerability During BLE Pairing in SENTRON Powercenter 1000/1100
SIEMENS-SSA-620799
|
SSA-620799 V1.1 (Last Update: 2025-06-10): Denial of Service Vulnerability During BLE Pairing in SENTRON Powercenter 1000/1100
|
2025-06-10 |
| MEDIUM | 0 |
SSA-497656 V1.1 (Last Update: 2025-06-10): Multiple NTP Vulnerabilities in TIM 4R-IE Devices
SIEMENS-SSA-497656
|
SSA-497656 V1.1 (Last Update: 2025-06-10): Multiple NTP Vulnerabilities in TIM 4R-IE Devices
|
2025-06-10 |
| MEDIUM | 0 |
SSA-486186 V1.0: Out of Bounds Read Vulnerability in Tecnomatix Plant Simulation Before 2404
SIEMENS-SSA-486186
|
SSA-486186 V1.0: Out of Bounds Read Vulnerability in Tecnomatix Plant Simulation Before 2404
|
2025-06-10 |
| MEDIUM | 0 |
SSA-354569 V1.5 (Last Update: 2025-06-10): Multiple Vulnerabilities in Palo Alto Networks PAN-OS on RUGGEDCOM APE1808 Devices
SIEMENS-SSA-354569
|
SSA-354569 V1.5 (Last Update: 2025-06-10): Multiple Vulnerabilities in Palo Alto Networks PAN-OS on RUGGEDCOM APE1808 Devices
|
2025-06-10 |
| MEDIUM | 0 |
SSA-340240 V1.2 (Last Update: 2025-06-10): Denial of Service Vulnerability in SIRIUS 3RV2921-5M
SIEMENS-SSA-340240
|
SSA-340240 V1.2 (Last Update: 2025-06-10): Denial of Service Vulnerability in SIRIUS 3RV2921-5M
|
2025-06-10 |
| MEDIUM | 0 |
SSA-162506 V1.4 (Last Update: 2025-06-10): DHCP Client Vulnerability in SIMOTICS CONNECT 400, Desigo PXC/PXM, APOGEE MEC/MBC/PXC, APOGEE PXC Series, and TALON TC Series
SIEMENS-SSA-162506
|
SSA-162506 V1.4 (Last Update: 2025-06-10): DHCP Client Vulnerability in SIMOTICS CONNECT 400, Desigo PXC/PXM, APOGEE MEC/MBC/PXC, APOGEE PXC Series, and TALON TC Series
|
2025-06-10 |
| MEDIUM | 5.8 |
Siemens RuggedCom ROX-based Devices Certificate Verification Vulnerability (Update A)
ICSA-14-135-03A · 1 CVE
|
ROX 1,
ROX 2
|
2025-06-09 |
| HIGH | 7.5 |
Siemens Industrial Products OpenSSL Heartbleed Vulnerability (Update B)
ICSA-14-105-03B · 1 CVE
|
eLAN-8.2 eLAN (when RIP is used),
WinCC OA only,
S7-1500 (when HTTPS active)
+2 more
|
2025-06-09 |
| MEDIUM | 4.3 |
Siemens Ruggedcom WIN Products BEAST Attack Vulnerability
ICSA-14-098-03 · 1 CVE
|
WIN7000,
WIN7200,
WIN5100
+1 more
|
2025-06-09 |
| MEDIUM | 5.0 |
Siemens ROS Improper Input Validation (Update A)
ICSA-14-087-01A · 1 CVE
|
ROS,
ROS v3.11 (for product RS950G),
ROS v3.12
+1 more
|
2025-06-09 |
| HIGH | 8.3 |
Siemens SIMATIC S7-1200 Vulnerabilities
ICSA-14-079-02 · 6 CVEs
|
SIMATIC S7-1200 CPU family
|
2025-06-09 |
| HIGH | 7.8 |
Siemens SIMATIC S7-1200 Improper Input Validation Vulnerabilities
ICSA-14-079-01 · 2 CVEs
|
SIMATIC S7-1200 PLC family
|
2025-06-09 |
| HIGH | 8.3 |
Siemens SIMATIC S7-1500 CPU Firmware Vulnerabilities
ICSA-14-073-01 · 9 CVEs
|
SIMATIC S7-1500 CPU family
|
2025-06-09 |
| HIGH | 7.8 |
Siemens RuggedCom Uncontrolled Resource Consumption Vulnerability (Update B)
ICSA-14-051-03B · 1 CVE
|
ROS,
ROS v3.11 (for product RS950G),
ROS v3.12
+1 more
|
2025-06-09 |
| HIGH | 7.5 |
Siemens SIMATIC WinCC OA Multiple Vulnerabilities
ICSA-14-035-01 · 4 CVEs
|
SIMATIC WinCC OA
|
2025-06-09 |
| MEDIUM | 4.0 |
Siemens SCALANCE M-800/S615 Web Vulnerability
ICSA-16-271-01 · 1 CVE
|
SCALANCE M-800/S615
|
2025-06-09 |
| MEDIUM | 5.3 |
Siemens SIPROTEC 4 and SIPROTEC Compact Vulnerabilities
ICSA-16-250-01 · 3 CVEs
|
EN100 Ethernet module (as optional for SIPROTEC 4 and SIPROTEC Compact)
|
2025-06-09 |
| HIGH | 7.3 |
Siemens SINEMA Server Privilege Escalation Vulnerability (Update A)
ICSA-16-215-02A · 1 CVE
|
SINEMA Server
|
2025-06-09 |
| MEDIUM | 4.7 |
Siemens SINEMA Remote Connect Server Cross-site Scripting Vulnerability
ICSA-16-208-03 · 1 CVE
|
SINEMA Remote Connect Server
|
2025-06-09 |
| MEDIUM | 5.3 |
Siemens SIMATIC NET PC-Software Denial-of-Service Vulnerability
ICSA-16-208-02 · 1 CVE
|
SIMATIC NET PC-Software
|
2025-06-09 |
| LOW | 2.5 |
Siemens SICAM PAS Information Disclosure Vulnerabilities (Update B)
ICSA-16-182-02B · 2 CVEs
|
SICAM PAS
|
2025-06-09 |
| LOW | 3.7 |
Siemens SIMATIC WinCC Flexible Weakly Protected Credentials Vulnerability
ICSA-16-161-02 · 1 CVE
|
SIMATIC WinCC flexible
|
2025-06-09 |
| HIGH | 7.5 |
Siemens SIMATIC S7-300 Denial-of-Service Vulnerability
ICSA-16-161-01 · 1 CVE
|
SIMATIC S7-300 CPUs with Profinet support,
SIMATIC S7-300 CPUs without Profinet support
|
2025-06-09 |
| CRITICAL | 10.0 |
Siemens SIMATIC WinCC Vulnerabilities
ICSA-12-030-01A · 12 CVEs
|
WinCC flexible,
WinCC V11 (TIA portal),
Multiple SIMATIC HMI panels (TP, OP, MP, Comfort Panels, Mobile Panels)
+2 more
|
2025-06-09 |
| HIGH | 7.5 |
Siemens Automation License Manager Vulnerabilities
ICSA-11-361-01 · 4 CVEs
|
Automation License Manager,
Automation License Manager
|
2025-06-09 |
| CRITICAL | 9.3 |
Siemens FactoryLink Multiple ActiveX Vulnerabilities
ICSA-11-343-01 · 2 CVEs
|
Tecnomatix FactoryLink,
Tecnomatix FactoryLink,
Tecnomatix FactoryLink
|
2025-06-09 |
| MEDIUM | 4.7 |
Siemens OZW672 and OZW772 XSS Vulnerability
ICSA-16-019-01 · 1 CVE
|
OZW672,
OZW772
|
2025-06-09 |
| MEDIUM | 5.3 |
Siemens RUGGEDCOM ROX-based Devices NTP Vulnerabilities
ICSA-15-356-01 · 4 CVEs
|
RUGGEDCOM ROX I,
ROX II
|
2025-06-09 |
| MEDIUM | 4.3 |
Siemens RuggedCom Improper Ethernet Frame Padding Vulnerability
ICSA-15-300-01 · 1 CVE
|
RuggedCom ROS
|
2025-06-09 |
| CRITICAL | 10.0 |
Siemens Scalance W-7xx Product Family Multiple Vulnerabilities
ICSA-13-213-01 · 2 CVEs
|
SCALANCE,
SCALANCE,
SCALANCE
+16 more
|
2025-06-06 |
| CRITICAL | 10.0 |
Siemens CP 1604 and CP 1616 Improper Access Control
ICSA-13-084-01 · 1 CVE
|
CP 1604 and CP 1604 Microbox package,
CP 1604 and CP 1616 Onboard card of SIMANTIC IPCs
|
2025-06-06 |
| CRITICAL | 10.0 |
Siemens SIMATIC WinCC, PCS7, and TIA Portal Vulnerabilities
ICSA-14-329-02D · 2 CVEs
|
SIMATIC WinCC V7.0 SP3 and prior,
SIMATIC WinCC V7.2,
SIMATIC WinCC V7.3
+4 more
|
2025-06-06 |
| HIGH | 7.1 |
Siemens SIMATIC S7-1500 CPU Denial of Service
ICSA-14-226-01 · 1 CVE
|
SIMATIC S7-1500 CPU
|
2025-06-06 |
| MEDIUM | 6.8 |
Siemens SIMATIC RF Manager ActiveX Buffer Overflow
ICSA-13-014-01 · 1 CVE
|
SIMATIC RF Manager 2008,
SIMATIC RF Manager Basic
|
2025-06-06 |
| MEDIUM | 6.9 |
Siemens SIMATIC STEP 7 DLL Vulnerability
ICSA-12-205-02 · 1 CVE
|
SIMATIC STEP 7,
SIMATIC PCS 7
|
2025-06-06 |
| HIGH | 7.8 |
Siemens SIMATIC S7-300 CPU Denial-of-Service Vulnerability
ICSA-15-064-04 · 1 CVE
|
SIMATIC S7-300 CPU family
|
2025-06-06 |
| MEDIUM | 6.9 |
Siemens SIMATIC ProSave, SIMATIC CFC, SIMATIC STEP 7, SIMOTION Scout, and STARTER Insufficiently Qualified Paths (Update A)
ICSA-15-064-02A · 1 CVE
|
SIMATIC ProSave,
SIMOTION Scout,
STARTER
+12 more
|
2025-06-06 |
| MEDIUM | 6.9 |
Siemens SIMATIC ProSave, SIMATIC CFC, SIMATIC STEP 7, SIMOTION Scout, and STARTER Insufficiently Qualified Paths
ICSA-15-064-02 · 1 CVE
|
SIMATIC ProSave,
SIMOTION Scout,
STARTER
+12 more
|
2025-06-06 |
| CRITICAL | 10.0 |
Siemens SIMATIC HMI Basic, SINUMERIK, and Ruggedcom APE GHOST Vulnerability (Update A)
ICSA-15-064-01A · 1 CVE
|
SINUMERIK 808D,
SINUMERIK 828D,
SINUMERIK 840D sl
+1 more
|
2025-06-06 |
| CRITICAL | 10.0 |
Siemens SIMATIC HMI Basic, SINUMERIK, and Ruggedcom APE GHOST Vulnerability
ICSA-15-064-01 · 1 CVE
|
SINUMERIK 808D,
SINUMERIK 828D,
SINUMERIK 840D sl
+1 more
|
2025-06-06 |
| MEDIUM | 6.8 |
Siemens SIMATIC STEP 7 TIA Portal Vulnerabilities (Update A)
ICSA-15-050-01A · 2 CVEs
|
SIMATIC STEP 7 (TIA Portal) V13,
SIMATIC STEP 7 (TIA Portal) V12
|
2025-06-06 |
| MEDIUM | 6.8 |
Siemens SIMATIC WinCC TIA Portal Vulnerabilities
ICSA-15-048-02 · 2 CVEs
|
SIMATIC WinCC TIA Portal
|
2025-06-06 |
| MEDIUM | 4.4 |
Siemens SIMATIC STEP 7 TIA Portal Vulnerabilities
ICSA-15-048-01 · 2 CVEs
|
SIMATIC STEP 7 TIA Portal
|
2025-06-06 |
| CRITICAL | 10.0 |
Siemens Ruggedcom WIN Vulnerability
ICSA-15-034-02 · 3 CVEs
|
WIN51xx,
WIN52xx,
WIN70xx
+1 more
|
2025-06-06 |
| MEDIUM | 4.3 |
Siemens SIMATIC S7-1200 CPU Web Vulnerability
ICSA-15-022-01 · 1 CVE
|
SIMATIC S7-1200 CPU family
|
2025-06-06 |
| HIGH | 7.8 |
Siemens SCALANCE X-300/X408 Switch Family DOS Vulnerabilities
ICSA-15-020-01 · 2 CVEs
|
SCALANCE X-300 switch family,
SCALANCE X408
|
2025-06-06 |
| LOW | 2.1 |
Siemens SIMATIC WinCC Sm@rtClient iOS Application Authentication Vulnerabilities
ICSA-15-013-01 · 3 CVEs
|
SIMATIC WinCC Sm@rtClient,
SIMATIC WinCC Sm@rtClient Lite for iOS
|
2025-06-06 |
| MEDIUM | 6.1 |
Siemens Scalance S Multiple Security Vulnerabilities
ICSA-12-102-05 · 1 CVE
|
Scalance S602,
Scalance S612,
Scalance S613
|
2025-06-06 |
| HIGH | 7.8 |
Siemens Scalance X Buffer Overflow Vulnerability
ICSA-12-102-04 · 1 CVE
|
Scalance X414-3E,
Scalance X308-2M,
Scalance X-300EEC
+2 more
|
2025-06-06 |
| MEDIUM | 4.3 |
Siemens RUGGEDCOM ROS and ROX-based Devices TLS POODLE Vulnerability (Update B)
ICSA-15-202-03B · 1 CVE
|
RUGGEDCOM devices with ROS,
RUGGEDCOM devices with ROX II
|
2025-06-06 |
| CRITICAL | 9.3 |
Siemens SICAM MIC Authentication Bypass Vulnerability
ICSA-15-195-01 · 1 CVE
|
SICAM MIC
|
2025-06-06 |
| MEDIUM | 4.3 |
Siemens Climatix BACnet/IP Communication Module Cross-site Scripting Vulnerability
ICSA-15-176-01 · 1 CVE
|
Climatix BACnet/IP communication module
|
2025-06-06 |
| MEDIUM | 5.8 |
Siemens SIMATIC S7-1200 CPU Web Vulnerabilities
ICSA-14-114-02 · 2 CVEs
|
SIMATIC S7-1200 CPU family
|
2025-06-06 |
| CRITICAL | 9.3 |
Siemens SINEMA Vulnerabilities
ICSA-14-107-01 · 3 CVEs
|
SINEMA server
|
2025-06-06 |
| MEDIUM | 6.9 |
Siemens COMOS Privilege Escalation
ICSA-13-347-01 · 1 CVE
|
COMOS,
COMOS 9.2,
COMOS 10.0
+1 more
|
2025-06-06 |
| CRITICAL | 10.0 |
Siemens SINAMICS S/G Authentication Bypass Vulnerability
ICSA-13-338-01 · 1 CVE
|
SINAMICS S/G family firmware
|
2025-06-06 |
| CRITICAL | 10.0 |
Siemens SCALANCE X-200 Authentication Bypass Vulnerability
ICSA-13-274-01 · 1 CVE
|
SCALANCE X-200 switch family firmware,
SCALANCE X-200IRT Isochronous Real-Time switch family firmware,
SCALANCE X-200 MLFBs
+1 more
|
2025-06-06 |
| HIGH | 7.2 |
Siemens COMOS Privilege Escalation Vulnerability
ICSA-13-233-01 · 1 CVE
|
COMOS,
COMOS 9.1,
COMOS 9.2
+1 more
|
2025-06-06 |
| MEDIUM | 6.8 |
Siemens WinCC TIA Portal Vulnerabilities
ICSA-13-213-02 · 2 CVEs
|
WinCC (TIA Portal) V11,
WinCC (TIA Portal) V12
|
2025-06-06 |
| MEDIUM | 4.3 |
Siemens RUGGEDCOM ROS IP Forwarding Vulnerability
ICSA-15-244-01 · 1 CVE
|
ROS
|
2025-06-06 |
| HIGH | 7.5 |
Siemens SIMATIC S7-1200 CSRF Vulnerability
ICSA-15-239-02 · 1 CVE
|
SIMATIC S7-1200 CPU family
|
2025-06-06 |
| HIGH | 7.5 |
Siemens WinCC 7.2 Multiple Vulnerabilities
ICSA-13-169-02 · 3 CVEs
|
WinCC,
SIMATIC PCS7
|
2025-06-06 |
| MEDIUM | 4.6 |
Siemens COMOS Permissions, Privileges, and Access Controls
ICSA-13-169-03 · 1 CVE
|
COMOS 9.2,
COMOS 10.0
|
2025-06-06 |
| HIGH | 8.0 |
Siemens Scalance X200 IRT Multiple Vulnerabilities
ICSA-13-169-01 · 2 CVEs
|
SCALANCE X204IRT,
SCALANCE X204IRT PRO,
SCALANCE X202-2IRT
+6 more
|
2025-06-06 |
| MEDIUM | 6.8 |
Siemens WinCC 7.0 SP3 Multiple Vulnerabilities
ICSA-13-079-02 · 6 CVEs
|
WinCC
|
2025-06-06 |
| CRITICAL | 10.0 |
Siemens SiPass Server Buffer Overflow
ICSA-12-305-01 · 1 CVE
|
SiPass integrated
|
2025-06-06 |
| MEDIUM | 4.6 |
Siemens WinCC TIA Portal Vulnerabilities
ICSA-13-079-03 · 7 CVEs
|
WinCC (TIA Portal) V11
|
2025-06-06 |
| HIGH | 7.8 |
Siemens SPC Controller Series Denial-of-Service Vulnerability
ICSA-15-064-03 · 1 CVE
|
SPC4000 series,
SPC5000 series,
SPC6000 series
|
2025-06-05 |
| MEDIUM | 5.9 |
Siemens Desigo PX Web Module Insufficient Entropy Vulnerability
ICSA-16-355-01 · 1 CVE
|
Desigo PX Web module PXA40-W0 firmware for Desigo PX automation controllers PXC00-E.D,
Desigo PX Web module PXA40-W0 firmware for Desigo PX automation controllers PXC50-E.D,
Desigo PX Web module PXA40-W0 firmware for Desigo PX automation controllers PXC100-E.D
+18 more
|
2025-06-05 |
| MEDIUM | 4.2 |
Siemens SIMATIC WinCC and SIMATIC PCS 7 ActiveX Vulnerability
ICSA-16-348-04 · 1 CVE
|
SIMATIC WinCC,
SIMATIC PCS 7
|
2025-06-05 |
| HIGH | 7.5 |
Siemens SICAM RTU Devices Denial-of-Service Vulnerability
ICSA-16-299-01 · 1 CVE
|
SICAM AK SM-2558 extension ETA4 firmware,
SICAM TM 1703 SM-2558 extension ETA4 firmware,
SICAM BC 1703 SM-2558 extension ETA4 firmware
+4 more
|
2025-06-05 |
| CRITICAL | 9.1 |
Siemens Automation License Manager Vulnerabilities
ICSA-16-287-02 · 3 CVEs
|
ALM
|
2025-06-05 |
| HIGH | 7.8 |
Siemens WinCC Insecure SQL Server Authentication
ICSA-12-205-01 · 1 CVE
|
SIMATIC WinCC,
SIMATIC PCS 7
|
2025-06-05 |
| MEDIUM | 4.3 |
Siemens S7-1200 Web Application Cross Site Scripting
ICSA-12-283-01 · 1 CVE
|
SIMATIC S7-1200 PLC,
SIMATIC S7-1200 PLC,
SIMATIC S7-1200 PLC
|
2025-06-05 |
| HIGH | 7.8 |
Siemens SIMATIC S7-400 PN CPU DoS
ICSA-12-212-02 · 1 CVE
|
S7-400 CPU family,
CPU 412-2 PN (6ES7412-2EK06-0AB0),
CPU 414-3 PN/DP (6ES7414-3EM06-0AB0)
+3 more
|
2025-06-05 |
| MEDIUM | 4.3 |
Siemens S7-1200 Insecure Storage of HTTPS CA Certificate
ICSA-12-263-01 · 1 CVE
|
SIMATIC S7-1200
|
2025-06-05 |
| LOW | 2.5 |
Siemens SIMATIC STEP 7 (TIA Portal) Information Disclosure Vulnerabilities
ICSA-16-287-03 · 2 CVEs
|
SIMATIC STEP 7 (TIA Portal)
|
2025-06-05 |
| HIGH | 7.5 |
Siemens Synco OZW Default Password
ICSA-12-214-01 · 1 CVE
|
Synco models
|
2025-06-05 |
| CRITICAL | 9.8 |
Siemens SICAM PAS Vulnerabilities
ICSA-16-336-01A · 4 CVEs
|
SICAM PAS
|
2025-06-05 |
| CRITICAL | 10.0 |
Siemens Simatic HMI Authentication Vulnerabilities
ICSA-11-356-01 · 2 CVEs
|
SIMATIC WinCC flexible RT,
SIMATIC WinCC Runtime Advanced,
Multiple SIMATIC Panels
|
2025-06-05 |
| HIGH | 8.5 |
Siemens COMOS Database Privilege Escalation Vulnerability
ICSA-12-227-01 · 1 CVE
|
COMOS,
COMOS Version 9.1,
COMOS Version 9.2
+1 more
|
2025-06-05 |
| MEDIUM | 5.8 |
Siemens WinCC Multiple Vulnerabilities
ICSA-12-158-01 · 5 CVEs
|
Siemens WinCC
|
2025-06-05 |
| CRITICAL | 9.3 |
Siemens WinCC Flexible Runtime Heap Overflow
ICSA-11-244-01 · 1 CVE
|
Siemens SIMATIC WinCC flexible Runtime,
Siemens SIMATIC WinCC (TIA Portal) Runtime Advanced
|
2025-06-05 |
| MEDIUM | 5.3 |
Siemens SIPROTEC Information Disclosure Vulnerabilities (Update B)
ICSA-16-140-02 · 2 CVEs
|
EN100 Ethernet module included in SIPROTEC 4,
EN100 Ethernet module included in SIPROTEC Compact,
SIPROTEC Compact model 7SJ80 with Ethernet Service Interface on Port A Firmware
+3 more
|
2025-06-05 |
| MEDIUM | 4.0 |
Siemens Industrial Products DROWN Vulnerability (Update C)
ICSA-16-103-03C · 1 CVE
|
SCALANCE X300 family,
SCALANCE X414,
SCALANCE X200 IRT family
+3 more
|
2025-06-05 |
| MEDIUM | 5.3 |
Siemens SCALANCE S613 Denial-of-Service Vulnerability
ICSA-16-103-02 · 1 CVE
|
SCALANCE S613 (MLFB 6GK5613-0BA00-2AA3)
|
2025-06-05 |
| HIGH | 8.1 |
Siemens Industrial Products glibc Library Vulnerability (Update C)
ICSA-16-103-01C · 1 CVE
|
ROX II,
APE (Linux),
SINEMA Remote Connect
+2 more
|
2025-06-05 |
| LOW | 3.4 |
Siemens APOGEE Insight Incorrect File Permissions Vulnerability (Update A)
ICSA-16-082-01A · 1 CVE
|
APOGEE Insight
|
2025-06-05 |
| MEDIUM | 6.5 |
Siemens SIMATIC S7-1200 CPU Protection Mechanism Failure
ICSA-16-075-01 · 1 CVE
|
SIMATIC S7-1200 CPU family
|
2025-06-05 |
| HIGH | 7.5 |
Siemens SIMATIC S7-1500 CPU Vulnerabilities
ICSA-16-040-02 · 2 CVEs
|
SIMATIC S7-1500 CPU family
|
2025-06-05 |
| MEDIUM | 0 |
SSA-041082 V1.0: Out of Bounds Read Vulnerability in SiPass Integrated Before V2.95.3.18
SIEMENS-SSA-041082
|
SSA-041082 V1.0: Out of Bounds Read Vulnerability in SiPass Integrated Before V2.95.3.18
|
2025-05-23 |
| MEDIUM | 5.5 |
Siemens Siveillance Video
ICSA-25-140-05 · 1 CVE
|
Siveillance Video
|
2025-05-14 |
| MEDIUM | 0 |
SSA-556937 V1.1 (Last Update: 2025-05-14): Multiple Vulnerabilities in VersiCharge AC Series EV Chargers
SIEMENS-SSA-556937
|
SSA-556937 V1.1 (Last Update: 2025-05-14): Multiple Vulnerabilities in VersiCharge AC Series EV Chargers
|
2025-05-14 |
| MEDIUM | 0 |
SSA-552330 V1.0: System Configuration Password Reset in Siveillance Video V2024 R1
SIEMENS-SSA-552330
|
SSA-552330 V1.0: System Configuration Password Reset in Siveillance Video V2024 R1
|
2025-05-14 |
| HIGH | 8.1 |
Siemens RUGGEDCOM ROS
ICSA-21-194-10 · 1 CVE
|
RUGGEDCOM i800,
RUGGEDCOM i801,
RUGGEDCOM i802
+68 more
|
2025-05-13 |
| HIGH | 7.5 |
Siemens APOGEE, TALON and Desigo PXC/PXM Products
ICSA-22-286-12 · 1 CVE
|
APOGEE MBC (PPC) (BACnet),
APOGEE MBC (PPC) (P2 Ethernet),
APOGEE MEC (PPC) (BACnet)
+20 more
|
2025-05-13 |
| CRITICAL | 9.8 |
Siemens RUGGEDCOM APE1808
ICSA-24-102-04 · 25 CVEs
|
RUGGEDCOM APE1808,
RUGGEDCOM APE1808,
RUGGEDCOM APE1808
|
2025-05-13 |
| HIGH | 8.6 |
Siemens Automation License Manager
ICSA-24-256-06 · 1 CVE
|
Automation License Manager V5,
Automation License Manager V6.0,
Automation License Manager V6.2
|
2025-05-13 |
| CRITICAL | 9.8 |
Siemens Industrial Edge Device Kit
ICSA-25-105-02 · 1 CVE
|
Industrial Edge Device Kit - arm64 V1.17,
Industrial Edge Device Kit - arm64 V1.18,
Industrial Edge Device Kit - arm64 V1.19
+7 more
|
2025-05-13 |
| HIGH | 8.7 |
Siemens INTRALOG WMS
ICSA-25-135-02 · 8 CVEs
|
INTRALOG WMS
|
2025-05-13 |
| MEDIUM | 6.5 |
Siemens BACnet ATEC Devices
ICSA-25-135-03 · 1 CVE
|
BACnet ATEC 550-440,
BACnet ATEC 550-441,
BACnet ATEC 550-445
+1 more
|
2025-05-13 |
| HIGH | 7.5 |
Siemens Desigo
ICSA-25-135-04 · 1 CVE
|
Desigo CC,
Desigo CC
|
2025-05-13 |
| HIGH | 7.8 |
Siemens Teamcenter Visualization
ICSA-25-135-06 · 1 CVE
|
Teamcenter Visualization V14.3,
Teamcenter Visualization V2312,
Teamcenter Visualization V2406
+1 more
|
2025-05-13 |
| HIGH | 8.8 |
Siemens VersiCharge AC Series EV Chargers
ICSA-25-135-08 · 2 CVEs
|
IEC 1Ph 7.4kW Child socket (8EM1310-2EH04-0GA0),
IEC 1Ph 7.4kW Child socket (8EM1310-2EH04-0GA0),
IEC 1Ph 7.4kW Child socket/ shutter (8EM1310-2EN04-0GA0)
+71 more
|
2025-05-13 |
| CRITICAL | 10.0 |
Siemens OZW Web Servers
ICSA-25-135-10 · 2 CVEs
|
OZW672,
OZW672,
OZW772
+1 more
|
2025-05-13 |
| MEDIUM | 6.5 |
Siemens Polarion
ICSA-25-135-11 · 4 CVEs
|
Polarion V2310,
Polarion V2404,
Polarion V2404
|
2025-05-13 |
| HIGH | 8.8 |
Siemens SIMATIC PCS
ICSA-25-135-12 · 1 CVE
|
SIMATIC PCS neo V4.1,
SIMATIC PCS neo V5.0
|
2025-05-13 |
| HIGH | 7.5 |
Siemens SIRIUS
ICSA-25-135-13 · 3 CVEs
|
SIRIUS 3RK3 Modular Safety System (MSS),
SIRIUS Safety Relays 3SK2
|
2025-05-13 |
| MEDIUM | 4.7 |
Siemens APOGEE PXC and TALON TC Series
ICSA-25-135-14 · 1 CVE
|
APOGEE PXC+TALON TC Series (BACnet)
|
2025-05-13 |
| MEDIUM | 6.5 |
Siemens MS/TP Point Pickup Module
ICSA-25-135-16 · 1 CVE
|
MS/TP Point Pickup Module
|
2025-05-13 |
| HIGH | 7.8 |
Siemens SCALANCE LPE9403
ICSA-25-135-18 · 12 CVEs
|
SCALANCE LPE9403 (6GK5998-3GS00-2AC2),
SCALANCE LPE9403 (6GK5998-3GS00-2AC2)
|
2025-05-13 |
| HIGH | 7.5 |
Siemens SiPass Integrated
ICSA-25-148-02 · 1 CVE
|
SiPass integrated
|
2025-05-13 |
| MEDIUM | 0 |
SSA-935500 V1.3 (Last Update: 2025-05-13): Denial of Service Vulnerability in FTP Server of Nucleus RTOS based APOGEE, TALON and Desigo PXC/PXM Products
SIEMENS-SSA-935500
|
SSA-935500 V1.3 (Last Update: 2025-05-13): Denial of Service Vulnerability in FTP Server of Nucleus RTOS based APOGEE, TALON and Desigo PXC/PXM Products
|
2025-05-13 |
| MEDIUM | 0 |
SSA-901508 V1.0: Multiple Vulnerabilities in INTRALOG WMS Before V5
SIEMENS-SSA-901508
|
SSA-901508 V1.0: Multiple Vulnerabilities in INTRALOG WMS Before V5
|
2025-05-13 |
| MEDIUM | 0 |
SSA-828116 V1.0: Denial of Service Vulnerability in BACnet ATEC Devices
SIEMENS-SSA-828116
|
SSA-828116 V1.0: Denial of Service Vulnerability in BACnet ATEC Devices
|
2025-05-13 |
| MEDIUM | 0 |
SSA-819629 V1.2 (Last Update: 2025-05-13): Weak Authentication Vulnerability in Industrial Edge Device Kit
SIEMENS-SSA-819629
|
SSA-819629 V1.2 (Last Update: 2025-05-13): Weak Authentication Vulnerability in Industrial Edge Device Kit
|
2025-05-13 |
| MEDIUM | 0 |
SSA-718393 V1.0: Partial Denial of Service Vulnerability in APOGEE PXC and TALON TC Series (BACnet) Devices
SIEMENS-SSA-718393
|
SSA-718393 V1.0: Partial Denial of Service Vulnerability in APOGEE PXC and TALON TC Series (BACnet) Devices
|
2025-05-13 |
| MEDIUM | 0 |
SSA-668154 V1.0: Denial of Service Vulnerability in MS/TP Point Pickup Module
SIEMENS-SSA-668154
|
SSA-668154 V1.0: Denial of Service Vulnerability in MS/TP Point Pickup Module
|
2025-05-13 |
| MEDIUM | 0 |
SSA-542540 V1.0: Out of Bounds Read Vulnerability in Teamcenter Visualization
SIEMENS-SSA-542540
|
SSA-542540 V1.0: Out of Bounds Read Vulnerability in Teamcenter Visualization
|
2025-05-13 |
| MEDIUM | 0 |
SSA-523418 V1.0: Information Disclosure Vulnerability in Desigo CC
SIEMENS-SSA-523418
|
SSA-523418 V1.0: Information Disclosure Vulnerability in Desigo CC
|
2025-05-13 |
| MEDIUM | 0 |
SSA-455250 V1.6 (Last Update: 2025-05-13): Multiple Vulnerabilities in Palo Alto Networks Virtual NGFW on RUGGEDCOM APE1808 Devices Before V11.1.2-h3
SIEMENS-SSA-455250
|
SSA-455250 V1.6 (Last Update: 2025-05-13): Multiple Vulnerabilities in Palo Alto Networks Virtual NGFW on RUGGEDCOM APE1808 Devices Before V11.1.2-h3
|
2025-05-13 |
| MEDIUM | 0 |
SSA-339086 V1.0: Insufficient Session Expiration Vulnerability in SIMATIC PCS neo
SIEMENS-SSA-339086
|
SSA-339086 V1.0: Insufficient Session Expiration Vulnerability in SIMATIC PCS neo
|
2025-05-13 |
| MEDIUM | 0 |
SSA-222768 V1.0: Multiple Vulnerabilities in SIRIUS 3SK2 Safety Relays and 3RK3 Modular Safety Systems
SIEMENS-SSA-222768
|
SSA-222768 V1.0: Multiple Vulnerabilities in SIRIUS 3SK2 Safety Relays and 3RK3 Modular Safety Systems
|
2025-05-13 |
| MEDIUM | 0 |
SSA-162255 V1.0: Multiple Vulnerabilities in Polarion Before V2410
SIEMENS-SSA-162255
|
SSA-162255 V1.0: Multiple Vulnerabilities in Polarion Before V2410
|
2025-05-13 |
| MEDIUM | 0 |
SSA-103653 V1.1 (Last Update: 2025-05-13): Denial-of-Service Vulnerability in Automation License Manager
SIEMENS-SSA-103653
|
SSA-103653 V1.1 (Last Update: 2025-05-13): Denial-of-Service Vulnerability in Automation License Manager
|
2025-05-13 |
| MEDIUM | 0 |
SSA-047424 V1.0: Code Execution and SQL Injection Vulnerabilities in OZW Web Servers
SIEMENS-SSA-047424
|
SSA-047424 V1.0: Code Execution and SQL Injection Vulnerabilities in OZW Web Servers
|
2025-05-13 |
| HIGH | 8.2 |
Siemens OPC UA Protocol Stack Discovery Service (Update E)
ICSA-17-243-01 · 1 CVE
|
SIMATIC IT Production Suite,
SIMATIC NET PC Software V14,
SIMATIC PCS 7
+3 more
|
2025-05-06 |
| CRITICAL | 9.8 |
Siemens Desigo PXC (Update C)
ICSA-18-025-02B · 1 CVE
|
Desigo PXC00-E.D V4.10,
Desigo PXC00-E.D V5.00,
Desigo PXC00-E.D V5.10
+41 more
|
2025-05-06 |
| HIGH | 7.5 |
Siemens SIPROTEC 4, SIPROTEC Compact, DIGSI 4, and EN100 Ethernet Module (Update D)
ICSA-18-067-01 · 2 CVEs
|
DIGSI 4,
EN100 Ethernet module DNP3 variant,
EN100 Ethernet module IEC 104 variant
+12 more
|
2025-05-06 |
| HIGH | 7.5 |
Siemens SIMATIC PCS 7, SIMATIC WinCC, SIMATIC WinCC Runtime Professional, and SIMATIC NET PC Software (Update G)
ICSA-18-088-03 · 1 CVE
|
OpenPCS 7 V7.1 and earlier,
OpenPCS 7 V8.0,
OpenPCS 7 V8.1
+24 more
|
2025-05-06 |
| HIGH | 7.5 |
Siemens SIMATIC, SIMOCODE, SINAMICS, SITOP, and TIM (Update I)
ICSA-19-099-06 · 1 CVE
|
SIMATIC CP 1604 (6GK1160-4AA01),
SIMATIC CP 1616 (6GK1161-6AA02),
SIMATIC CP 343-1 Advanced (6GK7343-1GX31-0XE0)
+83 more
|
2025-05-06 |
| HIGH | 7.5 |
Siemens Industrial Real-Time (IRT) Devices
ICSA-19-283-01 · 1 CVE
|
Development/Evaluation Kits for PROFINET IO: DK Standard Ethernet Controller,
Development/Evaluation Kits for PROFINET IO: EK-ERTEC 200,
Development/Evaluation Kits for PROFINET IO: EK-ERTEC 200P
+87 more
|
2025-05-06 |
| LOW | 3.7 |
Siemens SIMATIC Products (Update C)
ICSA-19-344-04 · 1 CVE
|
SIMATIC CP 1626,
SIMATIC HMI Panel (incl. SIPLUS variants),
SIMATIC NET PC Software V14
+7 more
|
2025-05-06 |
| CRITICAL | 9.8 |
Siemens SPPA-T3000 (Update A)
ICSA-19-351-02 · 54 CVEs
|
SPPA-T3000 Application Server,
SPPA-T3000 MS3000 Migration Server
|
2025-05-06 |
| HIGH | 7.5 |
Siemens Industrial Products SNMP (Update F)
ICSA-20-042-02 · 2 CVEs
|
IE/PB link PN IO (6GK1411-5AB10),
SCALANCE S602,
SCALANCE S612
+16 more
|
2025-05-06 |
| HIGH | 7.5 |
Siemens SCALANCE S-600 (Update B)
ICSA-20-042-10 · 3 CVEs
|
SCALANCE S602,
SCALANCE S612,
SCALANCE S623
+1 more
|
2025-05-06 |
| HIGH | 7.5 |
Siemens SCALANCE and SIMATIC (Update H)
ICSA-20-105-07 · 1 CVE
|
SCALANCE X200-4P IRT (6GK5200-4AH00-2BA3),
SCALANCE X201-3P IRT (6GK5201-3BH00-2BA3),
SCALANCE X201-3P IRT PRO (6GK5201-3JR00-2BA6)
+112 more
|
2025-05-06 |
| HIGH | 7.8 |
Siemens SIMATIC, SINAMICS (Update C)
ICSA-20-161-05 · 2 CVEs
|
SIMATIC PCS 7 V8.2 and earlier,
SIMATIC PCS 7 V9.0,
SIMATIC PDM
+2 more
|
2025-05-06 |
| MEDIUM | 6.5 |
Siemens SIMATIC HMI Products (Update A)
ICSA-20-252-06 · 2 CVEs
|
SIMATIC HMI Basic Panels 2nd Generation (incl. SIPLUS variants),
SIMATIC HMI Comfort Panels (incl. SIPLUS variants),
SIMATIC HMI Mobile Panels
+1 more
|
2025-05-06 |
| MEDIUM | 5.5 |
Siemens Industrial Products (Update F)
ICSA-20-252-07 · 1 CVE
|
SIMATIC Field PG M4,
SIMATIC Field PG M5,
SIMATIC Field PG M6
+22 more
|
2025-05-06 |
| MEDIUM | 6.5 |
Siemens Embedded TCP/IP Stack Vulnerabilities-AMNESIA:33 (Update C)
ICSA-20-343-05 · 1 CVE
|
SENTRON 3VA COM100/800,
SENTRON 3VA DSP800,
SENTRON PAC2200 (without MID Approval)
+4 more
|
2025-05-06 |
| CRITICAL | 9.8 |
Siemens Products using TightVNC (Update A)
ICSA-20-343-08 · 4 CVEs
|
SIMATIC HMI Comfort Outdoor Panels 7" & 15" (incl. SIPLUS variants),
SIMATIC HMI Comfort Panels 4" - 22" (incl. SIPLUS variants),
SIMATIC HMI KTP Mobile Panels KTP400F, KTP700, KTP700F, KTP900 and KTP900F
+8 more
|
2025-05-06 |
| CRITICAL | 9.8 |
Siemens SCALANCE X Products (Update B)
ICSA-21-012-05 · 3 CVEs
|
SCALANCE X-200 switch family (incl. SIPLUS NET variants),
SCALANCE X-200IRT switch family (incl. SIPLUS NET variants),
SCALANCE X-300 switch family (incl. X408 and SIPLUS NET variants)
|
2025-05-06 |
| MEDIUM | 4.0 |
dnsmasq by Simon Kelley (Update A)
ICSA-21-019-01 · 3 CVEs
|
RUGGEDCOM RM1224,
SCALANCE M-800,
SCALANCE S615
+2 more
|
2025-05-06 |
| HIGH | 7.8 |
Siemens TIA Administrator (Update A)
ICSA-21-040-05 · 1 CVE
|
PCS neo (Administration Console),
TIA Portal
|
2025-05-06 |
| HIGH | 7.8 |
ICSA-21-040-06_Siemens JT2Go and Teamcenter Visualization (Update A)
ICSA-21-040-06 · 5 CVEs
|
JT2Go,
Teamcenter Visualization
|
2025-05-06 |
| HIGH | 7.8 |
Open Design Alliance Drawings SDK (Update A)
ICSA-21-047-01 · 18 CVEs
|
JT2Go,
Teamcenter Visualization
|
2025-05-06 |
| HIGH | 8.6 |
Siemens SCALANCE and RUGGEDCOM Devices SSH (Update A)
ICSA-21-068-02 · 1 CVE
|
RUGGEDCOM RM1224,
SCALANCE M-800,
SCALANCE S615
+1 more
|
2025-05-06 |
| HIGH | 8.8 |
Siemens SCALANCE and RUGGEDCOM Devices (Update A)
ICSA-21-068-03 · 1 CVE
|
RUGGEDCOM RM1224,
SCALANCE M-800,
SCALANCE S615
+8 more
|
2025-05-06 |
| MEDIUM | 6.5 |
Siemens TCP/IP Stack Vulnerabilities-AMNESIA:33 in SENTRON PAC / 3VA Devices (Update C)
ICSA-21-068-06 · 2 CVEs
|
SENTRON 3VA COM100/800,
SENTRON 3VA DSP800,
SENTRON PAC2200 (with CLP Approval)
+6 more
|
2025-05-06 |
| HIGH | 7.8 |
Siemens Solid Edge File Parsing
ICSA-21-068-09 · 4 CVEs
|
Solid Edge SE2020,
Solid Edge SE2021,
Solid Edge SE2021
|
2025-05-06 |
| HIGH | 8.1 |
Siemens Nucleus Products DNS Module (Update A)
ICSA-21-103-04 · 2 CVEs
|
Nucleus NET,
Nucleus Source Code
|
2025-05-06 |
| HIGH | 7.8 |
Siemens Solid Edge File Parsing (Update A)
ICSA-21-103-06 · 5 CVEs
|
Solid Edge SE2020,
Solid Edge SE2020,
Solid Edge SE2021
|
2025-05-06 |
| CRITICAL | 9.8 |
Siemens Web Server of SCALANCE X200 (Update A)
ICSA-21-103-07 · 2 CVEs
|
SCALANCE X200-4P IRT,
SCALANCE X201-3P IRT,
SCALANCE X201-3P IRT PRO
+26 more
|
2025-05-06 |
| HIGH | 7.5 |
Siemens SINEMA Remote Connect Server
ICSA-21-103-08 · 2 CVEs
|
SINEMA Remote Connect Server
|
2025-05-06 |
| HIGH | 7.8 |
Siemens Tecnomatix RobotExpert
ICSA-21-103-12 · 1 CVE
|
Tecnomatix RobotExpert
|
2025-05-06 |
| MEDIUM | 6.5 |
Siemens SIMOTICS CONNECT 400 (Update A)
ICSA-21-103-13 · 4 CVEs
|
SIMOTICS CONNECT 400,
SIMOTICS CONNECT 400
|
2025-05-06 |
| MEDIUM | 5.3 |
Siemens Nucleus DNS (Update A)
ICSA-21-103-14 · 1 CVE
|
Nucleus NET,
Nucleus ReadyStart V3,
Nucleus Source Code
|
2025-05-06 |
| CRITICAL | 9.9 |
Siemens and Milestone Siveillance Video Open Network Bridge
ICSA-21-103-15 · 1 CVE
|
Siveillance Video Open Network Bridge,
Siveillance Video Open Network Bridge,
Siveillance Video Open Network Bridge
+5 more
|
2025-05-06 |
| HIGH | 8.1 |
Siemens Mendix
ICSA-21-110-07 · 1 CVE
|
Mendix Applications using Mendix 7,
Mendix Applications using Mendix 8,
Mendix Applications using Mendix 8 (V8.6)
+2 more
|
2025-05-06 |
| CRITICAL | 9.8 |
Siemens SINAMICS Medium Voltage Products Remote Access (Update B)
ICSA-21-131-04 · 14 CVEs
|
SINAMICS GH150,
SINAMICS GL150 (with option X30),
SINAMICS GM150 (with option X30)
+5 more
|
2025-05-06 |
| MEDIUM | 4.3 |
Siemens Mendix Database Replication Module
ICSA-21-131-05 · 1 CVE
|
Mendix Database Replication
|
2025-05-06 |
| MEDIUM | 5.3 |
Siemens SNMP Implementation of WinCC Runtime
ICSA-21-131-06 · 1 CVE
|
SIMATIC HMI Comfort Panels 1st Generation (incl. SIPLUS variants),
SIMATIC HMI KTP Mobile Panels
|
2025-05-06 |
| HIGH | 7.5 |
Siemens SIMATIC NET CP343-1
ICSA-21-131-07 · 1 CVE
|
SIMATIC NET CP 343-1 Advanced (incl. SIPLUS variants),
SIMATIC NET CP 343-1 Lean (incl. SIPLUS variants),
SIMATIC NET CP 343-1 Standard (incl. SIPLUS variants)
|
2025-05-06 |
| HIGH | 7.8 |
Siemens Tecnomatix Plant Simulation
ICSA-21-131-08 · 3 CVEs
|
Tecnomatix Plant Simulation
|
2025-05-06 |
| MEDIUM | 4.3 |
Siemens Mendix Excel Importer Module
ICSA-21-131-09 · 1 CVE
|
Mendix Excel Importer Module
|
2025-05-06 |
| HIGH | 7.5 |
Siemens SCALANCE XM-400 and XR-500 Devices
ICSA-21-131-10 · 1 CVE
|
SCALANCE XM-400 Family,
SCALANCE XR-500 Family
|
2025-05-06 |
| CRITICAL | 9.8 |
Siemens SIMATIC UltraVNC HMI WinCC Products
ICSA-21-131-11 · 10 CVEs
|
SIMATIC HMI Comfort Outdoor Panels 7" & 15" (incl. SIPLUS variants),
SIMATIC HMI Comfort Panels 4" - 22" (incl. SIPLUS variants),
SIMATIC HMI KTP Mobile Panels KTP400F, KTP700, KTP700F, KTP900 and KTP900F
+1 more
|
2025-05-06 |
| CRITICAL | 9.8 |
Siemens SIMATIC SmartVNC HMI WinCC Products (Update B)
ICSA-21-131-12 · 7 CVEs
|
SIMATIC HMI Comfort Outdoor Panels V15 7" & 15" (incl. SIPLUS variants),
SIMATIC HMI Comfort Outdoor Panels V16 7" & 15" (incl. SIPLUS variants),
SIMATIC HMI Comfort Panels V15 4" - 22" (incl. SIPLUS variants)
+5 more
|
2025-05-06 |
| CRITICAL | 9.8 |
Siemens SCALANCE W1750D (Update B)
ICSA-21-131-14 · 21 CVEs
|
SCALANCE W1750D,
SCALANCE W1750D
|
2025-05-06 |
| HIGH | 7.8 |
Siemens SIMATIC S7-1500
ICSA-21-131-15 · 2 CVEs
|
SIMATIC S7-1500 CPU 1518-4 PN/DP MFP (MLFB: 6ES7518-4AX00-1AC0, 6AG1518-4AX00-4AC0, incl. SIPLUS variant),
SIMATIC S7-1500 CPU 1518F-4 PN/DP MFP
|
2025-05-06 |
| HIGH | 8.1 |
Siemens SIMATIC S7-1200 and S7-1500 CPU Families (Update A)
ICSA-21-152-01 · 1 CVE
|
SIMATIC Drive Controller family,
SIMATIC ET 200SP Open Controller CPU 1515SP PC2 (incl. SIPLUS variants),
SIMATIC ET 200SP Open Controller CPU 1515SP PC (incl. SIPLUS variants)
+4 more
|
2025-05-06 |
| HIGH | 8.1 |
Siemens Mendix SAML Module
ICSA-21-159-07 · 1 CVE
|
Mendix SAML Module
|
2025-05-06 |
| HIGH | 7.5 |
Siemens TIM 1531 IRC
ICSA-21-159-08 · 1 CVE
|
TIM 1531 IRC (incl. SIPLUS NET variants)
|
2025-05-06 |
| HIGH | 7.8 |
Siemens Solid Edge
ICSA-21-159-09 · 2 CVEs
|
Solid Edge SE2020,
Solid Edge SE2021
|
2025-05-06 |
| HIGH | 7.5 |
Siemens SIMATIC TIM libcurl
ICSA-21-159-10 · 2 CVEs
|
SIMATIC TIM 1531 IRC (incl. SIPLUS NET variants)
|
2025-05-06 |
| CRITICAL | 9.8 |
Siemens SIMATIC NET CP 443-1 OPC UA
ICSA-21-159-11 · 15 CVEs
|
SIMATIC CP 443-1 OPC UA
|
2025-05-06 |
| HIGH | 7.8 |
Siemens Simcenter Femap
ICSA-21-159-12 · 2 CVEs
|
Simcenter Femap 2020.2,
Simcenter Femap 2021.1
|
2025-05-06 |
| HIGH | 7.5 |
Siemens SIMATIC RFID (Update B)
ICSA-21-159-13 · 1 CVE
|
SIMATIC Reader RF610R CMIIT,
SIMATIC Reader RF610R ETSI,
SIMATIC Reader RF610R FCC
+22 more
|
2025-05-06 |
| HIGH | 7.8 |
Siemens JT2Go and Teamcenter Visualization
ICSA-21-159-14 · 1 CVE
|
JT2Go,
Teamcenter Visualization
|
2025-05-06 |
| HIGH | 7.4 |
Siemens SINUMERIK Integrate Operate Client
ICSA-21-194-04 · 1 CVE
|
SINUMERIK Analyse MyCondition,
SINUMERIK Analyze MyPerformance,
SINUMERIK Analyze MyPerformance /OEE-Monitor
+17 more
|
2025-05-06 |
| HIGH | 7.8 |
Siemens SIMATIC Software Products
ICSA-21-194-05 · 1 CVE
|
SIMATIC PCS 7 V8.2 and earlier,
SIMATIC PCS 7 V9.0,
SIMATIC PDM
+2 more
|
2025-05-06 |
| HIGH | 7.8 |
Siemens Solid Edge
ICSA-21-194-08 · 4 CVEs
|
Solid Edge SE2021
|
2025-05-06 |
| MEDIUM | 5.5 |
Siemens JT Utilities
ICSA-21-194-09 · 3 CVEs
|
JT Utilities
|
2025-05-06 |
| MEDIUM | 6.1 |
Siemens Teamcenter Active Workspace
ICSA-21-194-11 · 3 CVEs
|
Teamcenter Active Workspace V4,
Teamcenter Active Workspace V5.0,
Teamcenter Active Workspace V5.1
|
2025-05-06 |
| MEDIUM | 6.5 |
Siemens RWG Universal Controllers
ICSA-21-194-14 · 1 CVE
|
RWG1.M8,
RWG1.M12,
RWG1.M12D
|
2025-05-06 |
| MEDIUM | 5.3 |
Siemens Mendix
ICSA-21-194-16 · 1 CVE
|
Mendix Applications using Mendix 7,
Mendix Applications using Mendix 8,
Mendix Applications using Mendix 9
|
2025-05-06 |
| HIGH | 8.1 |
Siemens SINUMERIK ONE and SINUMERIK MC (Update A)
ICSA-21-194-17 · 1 CVE
|
SINUMERIK MC,
SINUMERIK ONE
|
2025-05-06 |
| CRITICAL | 9.1 |
Wibu-Systems CodeMeter Runtime
ICSA-21-210-02 · 2 CVEs
|
PSS(R)CAPE,
SICAM 230,
SIMATIC Information Server
+7 more
|
2025-05-06 |
| HIGH | 7.8 |
Siemens JT2Go and Teamcenter Visualization products
ICSA-21-222-01 · 7 CVEs
|
JT2Go,
Teamcenter Visualization
|
2025-05-06 |
| MEDIUM | 5.9 |
Siemens Automation License Manager
ICSA-21-222-02 · 1 CVE
|
Automation License Manager 5,
Automation License Manager 6
|
2025-05-06 |
| HIGH | 7.8 |
Siemens JT2Go and Teamcenter Visualization (Update A)
ICSA-21-222-03 · 3 CVEs
|
JT2Go,
Teamcenter Visualization
|
2025-05-06 |
| HIGH | 7.2 |
Siemens SINEC NMS
ICSA-21-222-04 · 1 CVE
|
SINEC NMS
|
2025-05-06 |
| CRITICAL | 9.8 |
Siemens Energy AGT and SGT Solutions
ICSA-21-222-06 · 1 CVE
|
SGT-100,
SGT-200,
SGT-300
+4 more
|
2025-05-06 |
| HIGH | 8.1 |
Siemens SIMATIC S7-1200 (Update A)
ICSA-21-222-09 · 1 CVE
|
SIMATIC S7-1200 CPU family (incl. SIPLUS variants)
|
2025-05-06 |
| LOW | 3.3 |
Siemens Simcenter Femap
ICSA-21-257-04 · 1 CVE
|
Simcenter Femap V2020.2,
Simcenter Femap V2021.1
|
2025-05-06 |
| HIGH | 7.8 |
Siemens Simcenter STAR-CCM+ Viewer
ICSA-21-257-05 · 1 CVE
|
Simcenter STAR-CCM+ Viewer
|
2025-05-06 |
| CRITICAL | 9.8 |
Siemens APOGEE and TALON
ICSA-21-257-07 · 1 CVE
|
APOGEE MBC (PPC) (P2 Ethernet),
APOGEE MEC (PPC) (P2 Ethernet),
APOGEE PXC Compact (BACnet)
+5 more
|
2025-05-06 |
| HIGH | 7.2 |
Siemens Teamcenter
ICSA-21-257-08 · 3 CVEs
|
Teamcenter V12.4,
Teamcenter V13.0,
Teamcenter V13.1
+1 more
|
2025-05-06 |
| HIGH | 7.8 |
Siemens NX
ICSA-21-257-09 · 2 CVEs
|
NX 1980 Series
|
2025-05-06 |
| CRITICAL | 9.8 |
Siemens SIPROTEC 5 relays (Update A)
ICSA-21-257-10 · 2 CVEs
|
SIPROTEC 5 relays with CPU variants CP050,
SIPROTEC 5 relays with CPU variants CP100,
SIPROTEC 5 relays with CPU variants CP300
|
2025-05-06 |
| HIGH | 7.3 |
Siemens SIMATIC RFID
ICSA-21-257-11 · 1 CVE
|
SIMATIC RF350M,
SIMATIC RF650M
|
2025-05-06 |
| MEDIUM | 4.7 |
Siemens SINEMA Server
ICSA-21-257-12 · 1 CVE
|
SINEMA Server
|
2025-05-06 |
| MEDIUM | 5.4 |
Siemens LOGO! CMR and SIMATIC RTU 3000 (Update A)
ICSA-21-257-13 · 1 CVE
|
LOGO! CMR2020,
LOGO! CMR2040,
SIMATIC RTU3010C
+3 more
|
2025-05-06 |
| HIGH | 8.8 |
Siemens SINEC NMS
ICSA-21-257-14 · 2 CVEs
|
SINEC NMS
|
2025-05-06 |
| HIGH | 7.5 |
Siemens SIMATIC NET CP Modules
ICSA-21-257-15 · 1 CVE
|
SIMATIC CP 343-1 (incl. SIPLUS variants),
SIMATIC CP 343-1 Advanced (incl. SIPLUS variants),
SIMATIC CP 343-1 ERPC (6GK7343-1FX00-0XE0)
+6 more
|
2025-05-06 |
| HIGH | 7.5 |
Siemens SIPROTEC 5 (Update A)
ICSA-21-257-16 · 1 CVE
|
SIPROTEC 5 relays with CPU variants CP050,
SIPROTEC 5 relays with CPU variants CP100,
SIPROTEC 5 relays with CPU variants CP300
|
2025-05-06 |
| CRITICAL | 10.0 |
Siemens Desigo CC Family
ICSA-21-257-17 · 1 CVE
|
Cerberus DMS V4.0,
Cerberus DMS V4.1,
Cerberus DMS V4.2
+9 more
|
2025-05-06 |
| CRITICAL | 10.0 |
Siemens Siveillance OIS
ICSA-21-257-18 · 1 CVE
|
Desigo CC,
GMA-Manager,
Operation Scheduler
+2 more
|
2025-05-06 |
| HIGH | 7.4 |
Siemens SINEMA Remote Connect Server
ICSA-21-257-19 · 6 CVEs
|
SINEMA Remote Connect Server
|
2025-05-06 |
| MEDIUM | 4.5 |
Siemens Teamcenter Active Workspace
ICSA-21-257-22 · 1 CVE
|
Teamcenter Active Workspace V4.3,
Teamcenter Active Workspace V5.0,
Teamcenter Active Workspace V5.1
+1 more
|
2025-05-06 |
| MEDIUM | 5.3 |
Siemens SIMATIC and TIM
ICSA-21-257-23 · 1 CVE
|
SIMATIC Drive Controller family,
SIMATIC ET 200SP Open Controller CPU 1515SP PC2 (incl. SIPLUS variants),
SIMATIC S7 PLCSIM Advanced
+4 more
|
2025-05-06 |
| HIGH | 8.8 |
Siemens RUGGEDCOM ROX (Update A)
ICSA-21-259-01 · 3 CVEs
|
RUGGEDCOM ROX MX5000,
RUGGEDCOM ROX RX1400,
RUGGEDCOM ROX RX1500
+7 more
|
2025-05-06 |
| HIGH | 7.5 |
Siemens SINUMERIK
ICSA-21-287-04 · 1 CVE
|
SINUMERIK 808D,
SINUMERIK 828D
|
2025-05-06 |
| HIGH | 8.8 |
Siemens SINEC NMS
ICSA-21-287-05 · 15 CVEs
|
SINEC NMS
|
2025-05-06 |
| HIGH | 7.8 |
Siemens Solid Edge
ICSA-21-287-06 · 10 CVEs
|
Solid Edge SE2021
|
2025-05-06 |
| HIGH | 7.5 |
Siemens RUGGEDCOM ROX Devices
ICSA-21-287-08 · 1 CVE
|
RUGGEDCOM ROX MX5000,
RUGGEDCOM ROX RX1400,
RUGGEDCOM ROX RX1500
+7 more
|
2025-05-06 |
| CRITICAL | 9.8 |
Siemens SIMATIC Process Historian
ICSA-21-287-09 · 1 CVE
|
SIMATIC Process Historian 2013 and earlier,
SIMATIC Process Historian 2014,
SIMATIC Process Historian 2019
+1 more
|
2025-05-06 |
| CRITICAL | 9.8 |
Siemens Nucleus RTOS TCP/IP Stack
ICSA-21-313-03 · 13 CVEs
|
Nucleus NET,
Nucleus ReadyStart V3,
Nucleus ReadyStart V4
+1 more
|
2025-05-06 |
| MEDIUM | 4.0 |
Siemens Mendix
ICSA-21-315-04 · 1 CVE
|
Mendix Applications using Mendix 7,
Mendix Applications using Mendix 8,
Mendix Applications using Mendix 9
|
2025-05-06 |
| MEDIUM | 5.3 |
Siemens Mendix Studio Pro
ICSA-21-315-05 · 2 CVEs
|
Mendix Applications using Mendix 8,
Mendix Applications using Mendix 9
|
2025-05-06 |
| CRITICAL | 9.8 |
Siemens Nucleus RTOS-based APOGEE and TALON Products (Update C)
ICSA-21-315-07 · 13 CVEs
|
APOGEE MBC (PPC) (BACnet),
APOGEE MBC (PPC) (P2 Ethernet),
APOGEE MEC (PPC) (BACnet)
+20 more
|
2025-05-06 |
| HIGH | 7.8 |
Siemens NX OBJ Translator
ICSA-21-315-08 · 2 CVEs
|
NX 1953 Series,
NX 1980 Series
|
2025-05-06 |
| HIGH | 7.8 |
Siemens SENTRON powermanager
ICSA-21-315-10 · 1 CVE
|
SENTRON powermanager V3
|
2025-05-06 |
| MEDIUM | 5.5 |
Siemens SIMATIC RTLS Locating Manager
ICSA-21-315-11 · 3 CVEs
|
SIMATIC RTLS Locating Manager
|
2025-05-06 |
| LOW | 3.3 |
Siemens NX JT Translator
ICSA-21-315-12 · 2 CVEs
|
NX 1980 Series
|
2025-05-06 |
| HIGH | 8.6 |
Siemens Siveillance Video DLNA Server
ICSA-21-315-13 · 1 CVE
|
Siveillance Video DLNA Server,
Siveillance Video DLNA Server,
Siveillance Video DLNA Server
+4 more
|
2025-05-06 |
| HIGH | 8.2 |
Siemens Capital VSTAR
ICSA-21-350-06 · 8 CVEs
|
Capital Embedded AR Classic 431-422,
Capital Embedded AR Classic R20-11
|
2025-05-06 |
| CRITICAL | 9.1 |
Siemens POWER METER SICAM Q100
ICSA-21-350-07 · 1 CVE
|
POWER METER SICAM Q100,
POWER METER SICAM Q100,
POWER METER SICAM Q100
+1 more
|
2025-05-06 |
| HIGH | 7.8 |
Siemens JTTK and JT Utilities
ICSA-21-350-08 · 3 CVEs
|
JT Utilities,
JTTK
|
2025-05-06 |
| HIGH | 7.4 |
Siemens SINUMERIK Edge
ICSA-21-350-09 · 1 CVE
|
SINUMERIK Edge
|
2025-05-06 |
| HIGH | 7.8 |
Siemens JT2Go and Teamcenter Visualization
ICSA-21-350-10 · 16 CVEs
|
JT2Go,
Teamcenter Visualization
|
2025-05-06 |
| MEDIUM | 6.5 |
Siemens SIMATIC eaSie PCS 7 Skill Package
ICSA-21-350-11 · 1 CVE
|
SIMATIC eaSie PCS 7 Skill Package
|
2025-05-06 |
| CRITICAL | 9.8 |
Siemens SIMATIC ITC
ICSA-21-350-12 · 19 CVEs
|
SIMATIC ITC1500 V3,
SIMATIC ITC1500 V3 PRO,
SIMATIC ITC1900 V3
+3 more
|
2025-05-06 |
| HIGH | 7.5 |
Siemens Siveillance Identity
ICSA-21-350-14 · 3 CVEs
|
Siveillance Identity V1.5,
Siveillance Identity V1.6
|
2025-05-06 |
| HIGH | 7.8 |
Siemens Simcenter STAR-CCM+ Viewer
ICSA-21-350-15 · 1 CVE
|
Simcenter STAR-CCM+ Viewer
|
2025-05-06 |
| HIGH | 7.8 |
Siemens JT Utilities and JT Open Toolkit
ICSA-21-350-17 · 16 CVEs
|
JT Utilities,
JTTK
|
2025-05-06 |
| MEDIUM | 6.8 |
Siemens Teamcenter Active Workspace
ICSA-21-350-18 · 1 CVE
|
Teamcenter Active Workspace V4.3,
Teamcenter Active Workspace V5.0,
Teamcenter Active Workspace V5.1
+1 more
|
2025-05-06 |
| HIGH | 7.5 |
Siemens SiPass Integrated
ICSA-21-350-19 · 3 CVEs
|
SiPass integrated V2.76,
SiPass integrated V2.80,
SiPass integrated V2.85
|
2025-05-06 |
| HIGH | 7.8 |
Siemens JTTK and JT Utilities
ICSA-21-350-20 · 2 CVEs
|
JT Utilities,
JTTK
|
2025-05-06 |
| CRITICAL | 9.9 |
Siemens SICAM A8000
ICSA-22-013-02 · 2 CVEs
|
CP-8000 MASTER MODULE WITH I/O -25/+70°C,
CP-8000 MASTER MODULE WITH I/O -40/+70°C,
CP-8021 MASTER MODULE
+1 more
|
2025-05-06 |
| HIGH | 8.2 |
Siemens Energy PLUSCONTROL
ICSA-22-013-03 · 6 CVEs
|
PLUSCONTROL 1st Gen
|
2025-05-06 |
| MEDIUM | 6.5 |
Siemens SIPROTEC 5 Devices
ICSA-22-013-04 · 1 CVE
|
SIPROTEC 5 6MD85 devices (CPU variant CP300),
SIPROTEC 5 6MD86 devices (CPU variant CP300),
SIPROTEC 5 6MD89 devices (CPU variant CP300)
+28 more
|
2025-05-06 |
| HIGH | 8.8 |
Siemens COMOS Web (Update A)
ICSA-22-013-05 · 5 CVEs
|
COMOS V10.2,
COMOS V10.3,
COMOS V10.3
+1 more
|
2025-05-06 |
| LOW | 3.4 |
Siemens SICAM PQ Analyzer
ICSA-22-013-06 · 1 CVE
|
SICAM PQ Analyzer
|
2025-05-06 |
| HIGH | 7.5 |
Siemens SIMATIC Industrial Products (Update A)
ICSA-22-041-01 · 3 CVEs
|
SIMATIC Drive Controller family,
SIMATIC Drive Controller family,
SIMATIC ET 200SP Open Controller CPU 1515SP PC (incl. SIPLUS variants)
+13 more
|
2025-05-06 |
| HIGH | 7.8 |
Siemens Simcenter Femap
ICSA-22-041-03 · 11 CVEs
|
Simcenter Femap V2020.2,
Simcenter Femap V2021.1
|
2025-05-06 |
| MEDIUM | 5.4 |
Siemens SINEMA Remote Connect Server
ICSA-22-041-04 · 1 CVE
|
SINEMA Remote Connect Server
|
2025-05-06 |
| MEDIUM | 5.4 |
Siemens Spectrum Power 4
ICSA-22-041-06 · 1 CVE
|
Spectrum Power 4
|
2025-05-06 |
| HIGH | 8.2 |
Siemens SIMOTICS CONNECT 400
ICSA-22-069-02 · 4 CVEs
|
SIMOTICS CONNECT 400,
SIMOTICS CONNECT 400
|
2025-05-06 |
| CRITICAL | 9.1 |
Siemens SINEMA Mendix Forgot Password Appstore
ICSA-22-069-04 · 2 CVEs
|
Mendix Forgot Password Appstore module,
Mendix Forgot Password Appstore module (Mendix 7 compatible)
|
2025-05-06 |
| HIGH | 7.8 |
Siemens Simcenter STAR-CCM+ Viewer
ICSA-22-069-05 · 1 CVE
|
Simcenter STAR-CCM+ Viewer
|
2025-05-06 |
| HIGH | 7.8 |
Siemens COMOS
ICSA-22-069-06 · 15 CVEs
|
COMOS
|
2025-05-06 |
| MEDIUM | 6.5 |
Siemens Climatix POL909
ICSA-22-069-07 · 3 CVEs
|
Climatix POL909 (AWB module),
Climatix POL909 (AWM module)
|
2025-05-06 |
| MEDIUM | 6.5 |
Siemens Polarion ALM
ICSA-22-069-08 · 1 CVE
|
Polarion ALM,
Polarion WebClient for SVN
|
2025-05-06 |
| CRITICAL | 9.8 |
Siemens SINEC INS
ICSA-22-069-09 · 71 CVEs
|
SINEC INS
|
2025-05-06 |
| HIGH | 7.8 |
Siemens Simcenter Femap
ICSA-22-069-10 · 2 CVEs
|
Simcenter Femap
|
2025-05-06 |
| HIGH | 7.8 |
Siemens SINUMERIK MC
ICSA-22-069-11 · 1 CVE
|
SINUMERIK MC,
SINUMERIK ONE
|
2025-05-06 |
| MEDIUM | 6.8 |
Siemens Mendix
ICSA-22-069-13 · 1 CVE
|
Mendix Runtime V7,
Mendix Runtime V8,
Mendix Runtime V9
|
2025-05-06 |
| MEDIUM | 6.5 |
Siemens SCALANCE FragAttacks
ICSA-22-104-04 · 9 CVEs
|
SCALANCE W721-1 RJ45 (6GK5721-1FC00-0AA0),
SCALANCE W721-1 RJ45 (6GK5721-1FC00-0AB0),
SCALANCE W722-1 RJ45 (6GK5722-1FC00-0AA0)
+64 more
|
2025-05-06 |
| HIGH | 7.4 |
Siemens SCALANCE W1700
ICSA-22-104-08 · 3 CVEs
|
SCALANCE W1788-1 M12,
SCALANCE W1788-2 EEC M12,
SCALANCE W1788-2 M12
+1 more
|
2025-05-06 |
| CRITICAL | 9.6 |
Siemens SCALANCE X-300 Switches
ICSA-22-104-09 · 9 CVEs
|
SCALANCE X302-7 EEC (2x 24V),
SCALANCE X302-7 EEC (2x 24V, coated),
SCALANCE X302-7 EEC (2x 230V)
+72 more
|
2025-05-06 |
| MEDIUM | 5.3 |
Siemens SICAM A8000
ICSA-22-104-10 · 1 CVE
|
SICAM A8000 CP-8031,
SICAM A8000 CP-8050
|
2025-05-06 |
| CRITICAL | 10.0 |
Siemens SIMATIC Energy Manager
ICSA-22-104-11 · 3 CVEs
|
SIMATIC Energy Manager Basic,
SIMATIC Energy Manager PRO
|
2025-05-06 |
| MEDIUM | 6.4 |
Siemens SIMATIC STEP 7 (TIA Portal)
ICSA-22-104-14 · 1 CVE
|
SIMATIC STEP 7 (TIA Portal) V15,
SIMATIC STEP 7 (TIA Portal) V16,
SIMATIC STEP 7 (TIA Portal) V17
|
2025-05-06 |
| HIGH | 7.8 |
Siemens Simcenter Femap
ICSA-22-104-15 · 3 CVEs
|
Simcenter Femap
|
2025-05-06 |
| LOW | 3.1 |
Siemens Mendix
ICSA-22-104-17 · 1 CVE
|
Mendix Applications using Mendix 7,
Mendix Applications using Mendix 8,
Mendix Applications using Mendix 9
+1 more
|
2025-05-06 |
| CRITICAL | 9.8 |
Siemens SICAM P850 and SICAM P855
ICSA-22-132-07 · 11 CVEs
|
SICAM P850,
SICAM P850,
SICAM P850
+33 more
|
2025-05-06 |
| HIGH | 7.8 |
Siemens JT2GO and Teamcenter Visualization
ICSA-22-132-09 · 6 CVEs
|
JT2Go,
Teamcenter Visualization V13.3,
Teamcenter Visualization V14.0
|
2025-05-06 |
| HIGH | 7.4 |
Siemens SIMATIC CP 44x-1 RNA
ICSA-22-132-11 · 1 CVE
|
SIMATIC CP 442-1 RNA,
SIMATIC CP 443-1 RNA
|
2025-05-06 |
| HIGH | 7.5 |
Siemens Industrial Products
ICSA-22-132-12 · 1 CVE
|
OpenPCS 7 V9.1,
SIMATIC NET PC Software V14,
SIMATIC NET PC Software V15
+7 more
|
2025-05-06 |
| HIGH | 7.8 |
Siemens Simcenter Femap
ICSA-22-132-14 · 1 CVE
|
Simcenter Femap
|
2025-05-06 |
| MEDIUM | 6.2 |
Siemens OpenV2G
ICSA-22-132-15 · 1 CVE
|
OpenV2G
|
2025-05-06 |
| HIGH | 7.8 |
Siemens Xpedition Designer
ICSA-22-167-11 · 1 CVE
|
Xpedition Designer VX.2.10,
Xpedition Designer VX.2.11,
Xpedition Designer VX.2.12
+1 more
|
2025-05-06 |
| HIGH | 7.5 |
Siemens OpenSSL Affected Industrial Products
ICSA-22-167-14 · 1 CVE
|
Industrial Edge - OPC UA Connector,
Industrial Edge - SIMATIC S7 Connector App,
OpenPCS 7 V8.2
+535 more
|
2025-05-06 |
| CRITICAL | 9.6 |
Siemens SCALANCE X Switch Devices
ICSA-22-195-01 · 3 CVEs
|
SCALANCE X200-4P IRT (6GK5200-4AH00-2BA3),
SCALANCE X201-3P IRT (6GK5201-3BH00-2BA3),
SCALANCE X201-3P IRT PRO (6GK5201-3JR00-2BA6)
+28 more
|
2025-05-06 |
| MEDIUM | 5.3 |
Siemens RUGGEDCOM ROS
ICSA-22-258-03 · 1 CVE
|
RUGGEDCOM RMC8388 V5.X,
RUGGEDCOM RMC8388NC V5.X,
RUGGEDCOM RS416NC v2
+29 more
|
2025-05-06 |
| HIGH | 8.6 |
Siemens SCALANCE and RUGGEDCOM Devices
ICSA-22-286-08 · 1 CVE
|
RUGGEDCOM RM1224 LTE(4G) EU (6GK6108-4AM00-2BA2),
RUGGEDCOM RM1224 LTE(4G) NAM (6GK6108-4AM00-2DA2),
SCALANCE M804PB (6GK5804-0AP00-2AA2)
+26 more
|
2025-05-06 |
| CRITICAL | 9.9 |
Siemens SICAM P850 and P855 Devices
ICSA-22-286-09 · 5 CVEs
|
SICAM P850 (7KG8500-0AA00-0AA0),
SICAM P850 (7KG8500-0AA00-2AA0),
SICAM P850 (7KG8500-0AA10-0AA0)
+33 more
|
2025-05-06 |
| HIGH | 8.8 |
Siemens SCALANCE and RUGGEDCOM Products (Update A)
ICSA-22-286-11 · 1 CVE
|
RUGGEDCOM RM1224 LTE(4G) EU (6GK6108-4AM00-2BA2),
RUGGEDCOM RM1224 LTE(4G) NAM (6GK6108-4AM00-2DA2),
SCALANCE M804PB (6GK5804-0AP00-2AA2)
+183 more
|
2025-05-06 |
| MEDIUM | 6.5 |
Siemens Web Server Login Page of Industrial Controllers
ICSA-22-314-02 · 1 CVE
|
SIMATIC Drive Controller CPU 1504D TF (6ES7615-4DF10-0AB0),
SIMATIC Drive Controller CPU 1507D TF (6ES7615-7DF10-0AB0),
SIMATIC ET 200pro IM154-8 PN/DP CPU (6ES7154-8AB01-0AB0)
+151 more
|
2025-05-06 |
| HIGH | 7.6 |
Siemens QMS Automotive
ICSA-22-314-06 · 1 CVE
|
QMS Automotive
|
2025-05-06 |
| HIGH | 7.8 |
Siemens Teamcenter Visualization and JT2Go
ICSA-22-314-09 · 6 CVEs
|
JT2Go,
Teamcenter Visualization V13.2,
Teamcenter Visualization V13.3
+3 more
|
2025-05-06 |
| HIGH | 7.5 |
Siemens Multiple Denial of Service Vulnerabilities in Industrial Products
ICSA-22-349-03 · 4 CVEs
|
SIMATIC Drive Controller CPU 1504D TF (6ES7615-4DF10-0AB0),
SIMATIC Drive Controller CPU 1507D TF (6ES7615-7DF10-0AB0),
SIMATIC ET 200SP Open Controller CPU 1515SP PC2 (incl. SIPLUS variants)
+106 more
|
2025-05-06 |
| HIGH | 7.6 |
Siemens SCALANCE Products
ICSA-22-349-04 · 5 CVEs
|
RUGGEDCOM RM1224 LTE(4G) EU (6GK6108-4AM00-2BA2),
RUGGEDCOM RM1224 LTE(4G) NAM (6GK6108-4AM00-2DA2),
SCALANCE M804PB (6GK5804-0AP00-2AA2)
+209 more
|
2025-05-06 |
| HIGH | 7.8 |
Siemens Simcenter STAR-CCM+
ICSA-22-349-07 · 1 CVE
|
Simcenter STAR-CCM+
|
2025-05-06 |
| MEDIUM | 5.4 |
Siemens Polarion ALM
ICSA-22-349-08 · 1 CVE
|
Polarion ALM
|
2025-05-06 |
| HIGH | 7.5 |
Siemens APOGEE/TALON Field Panels
ICSA-22-349-10 · 2 CVEs
|
Calibre ICE,
Mcenter,
SCALANCE X-200RNA switch family
+2 more
|
2025-05-06 |
| HIGH | 7.5 |
Siemens Parasolid
ICSA-22-349-12 · 2 CVEs
|
Calibre ICE,
Mcenter,
SCALANCE X-200RNA switch family
+2 more
|
2025-05-06 |
| HIGH | 7.5 |
Siemens SISCO MMS-EASE Third Party Component
ICSA-22-349-14 · 1 CVE
|
SIPROTEC 5 6MD85 (CP200),
SIPROTEC 5 6MD85 (CP300),
SIPROTEC 5 6MD86 (CP200)
+46 more
|
2025-05-06 |
| HIGH | 8.8 |
Siemens APOGEE and TALON
ICSA-22-349-16 · 8 CVEs
|
APOGEE PXC Compact (BACnet),
APOGEE PXC Compact (P2 Ethernet),
APOGEE PXC Modular (BACnet)
+3 more
|
2025-05-06 |
| HIGH | 7.8 |
Siemens Teamcenter Visualization and JT2Go
ICSA-22-349-20 · 12 CVEs
|
JT2Go,
Teamcenter Visualization V13.2,
Teamcenter Visualization V13.3
+4 more
|
2025-05-06 |
| HIGH | 7.9 |
Siemens SIMATIC Industrial Products
ICSA-23-047-09 · 1 CVE
|
SIMATIC Field PG M5,
SIMATIC Field PG M6,
SIMATIC IPC427E
+11 more
|
2025-05-06 |
| CRITICAL | 9.1 |
Siemens Mendix SAML Module
ICSA-23-075-05 · 2 CVEs
|
Mendix SAML (Mendix 7 compatible),
Mendix SAML (Mendix 7 compatible),
Mendix SAML (Mendix 8 compatible)
+9 more
|
2025-05-06 |
| HIGH | 7.8 |
Siemens JT Open and JT Utilities
ICSA-23-103-02 · 1 CVE
|
JT Open,
JT Utilities
|
2025-05-06 |
| HIGH | 7.8 |
Siemens in OPC Foundation Local Discovery Server
ICSA-23-103-03 · 1 CVE
|
OpenPCS 7 V9.1,
SIMATIC NET PC Software V14,
SIMATIC NET PC Software V15
+9 more
|
2025-05-06 |
| MEDIUM | 6.7 |
Siemens SCALANCE X-200IRT Devices
ICSA-23-103-05 · 1 CVE
|
SCALANCE X200-4P IRT (6GK5200-4AH00-2BA3),
SCALANCE X201-3P IRT (6GK5201-3BH00-2BA3),
SCALANCE X201-3P IRT PRO (6GK5201-3JR00-2BA6)
+12 more
|
2025-05-06 |
| HIGH | 7.3 |
Siemens Mendix Forgot Password Module
ICSA-23-103-08 · 1 CVE
|
Totally Integrated Automation Portal (TIA Portal) V15,
Totally Integrated Automation Portal (TIA Portal) V16,
Totally Integrated Automation Portal (TIA Portal) V17
+1 more
|
2025-05-06 |
| CRITICAL | 9.8 |
Siemens SCALANCE XCM332
ICSA-23-103-09 · 10 CVEs
|
SCALANCE XCM332 (6GK5332-0GA01-2AC2)
|
2025-05-06 |
| HIGH | 7.5 |
Siemens Industrial Products
ICSA-23-103-10 · 3 CVEs
|
SIMATIC CP 443-1 (6GK7443-1EX30-0XE0),
SIMATIC CP 443-1 (6GK7443-1EX30-0XE1),
SIMATIC CP 443-1 Advanced (6GK7443-1GX30-0XE0)
+20 more
|
2025-05-06 |
| HIGH | 7.8 |
Siemens Teamcenter Visualization and JT2Go
ICSA-23-103-11 · 1 CVE
|
JT2Go,
Teamcenter Visualization V13.2,
Teamcenter Visualization V13.3
+3 more
|
2025-05-06 |
| MEDIUM | 5.9 |
Siemens Polarion ALM
ICSA-23-103-12 · 1 CVE
|
Polarion ALM
|
2025-05-06 |
| HIGH | 7.2 |
Siemens SIMATIC Cloud Connect 7
ICSA-23-131-04 · 7 CVEs
|
SIMATIC Cloud Connect 7 CC712 (6GK1411-1AC00),
SIMATIC Cloud Connect 7 CC712 (6GK1411-1AC00),
SIMATIC Cloud Connect 7 CC716 (6GK1411-5AC00)
+1 more
|
2025-05-06 |
| CRITICAL | 9.8 |
Siemens SINEC NMS Third-Party
ICSA-23-131-05 · 9 CVEs
|
SINEC NMS
|
2025-05-06 |
| CRITICAL | 9.9 |
Siemens SCALANCE LPE9403
ICSA-23-131-06 · 4 CVEs
|
SCALANCE LPE9403 (6GK5998-3GS00-2AC2)
|
2025-05-06 |
| CRITICAL | 9.9 |
Siemens SICAM Q200 Devices
ICSA-23-166-03 · 6 CVEs
|
POWER METER SICAM Q200 family
|
2025-05-06 |
| MEDIUM | 4.6 |
Siemens SIMOTION
ICSA-23-166-04 · 1 CVE
|
SIMOTION C240 (6AU1240-1AA00-0AA0),
SIMOTION C240 PN (6AU1240-1AB00-0AA0),
SIMOTION D410-2 DP (6AU1410-2AA00-0AA0)
+10 more
|
2025-05-06 |
| HIGH | 7.8 |
Siemens SIMATIC WinCC V7
ICSA-23-166-07 · 1 CVE
|
SIMATIC WinCC
|
2025-05-06 |
| HIGH | 7.8 |
Siemens Teamcenter Visualization and JT2Go
ICSA-23-166-14 · 4 CVEs
|
JT2Go,
Teamcenter Visualization V13.2,
Teamcenter Visualization V13.3
+3 more
|
2025-05-06 |
| CRITICAL | 9.8 |
Siemens RUGGEDCOM ROX
ICSA-23-194-01 · 21 CVEs
|
RUGGEDCOM ROX MX5000,
RUGGEDCOM ROX MX5000RE,
RUGGEDCOM ROX RX1400
+8 more
|
2025-05-06 |
| HIGH | 7.5 |
Siemens SiPass Integrated
ICSA-23-194-02 · 1 CVE
|
SiPass integrated
|
2025-05-06 |
| CRITICAL | 9.9 |
Siemens SIMATIC CN 4100
ICSA-23-194-03 · 2 CVEs
|
SIMATIC CN 4100
|
2025-05-06 |
| CRITICAL | 9.8 |
Siemens SIMATIC MV500 Devices
ICSA-23-194-04 · 13 CVEs
|
SIMATIC MV540 H (6GF3540-0GE10),
SIMATIC MV540 S (6GF3540-0CD10),
SIMATIC MV550 H (6GF3550-0GE10)
+3 more
|
2025-05-06 |
| HIGH | 7.8 |
Siemens Solid Edge, JT2Go, and Teamcenter Visualization
ICSA-23-222-01 · 3 CVEs
|
JT2Go,
Solid Edge SE2022,
Solid Edge SE2023
+6 more
|
2025-05-06 |
| HIGH | 7.8 |
​Siemens JT Open, JT Utilities, and Parasolid
ICSA-23-222-03 · 2 CVEs
|
JT Open,
JT Utilities,
Parasolid V34.0
+3 more
|
2025-05-06 |
| HIGH | 7.8 |
​Siemens Software Center
ICSA-23-222-04 · 2 CVEs
|
Siemens Software Center
|
2025-05-06 |
| CRITICAL | 9.8 |
Siemens RUGGEDCOM CROSSBOW
ICSA-23-222-05 · 5 CVEs
|
RUGGEDCOM CROSSBOW
|
2025-05-06 |
| HIGH | 7.4 |
Siemens SIMATIC
ICSA-23-222-07 · 1 CVE
|
SIMATIC Drive Controller CPU 1504D TF (6ES7615-4DF10-0AB0),
SIMATIC Drive Controller CPU 1504D TF (6ES7615-4DF10-0AB0),
SIMATIC Drive Controller CPU 1507D TF (6ES7615-7DF10-0AB0)
+152 more
|
2025-05-06 |
| MEDIUM | 5.9 |
Siemens SIMATIC
ICSA-23-222-09 · 1 CVE
|
SIMATIC Cloud Connect 7 CC712 (6GK1411-1AC00),
SIMATIC Cloud Connect 7 CC716 (6GK1411-5AC00),
SIMATIC Drive Controller CPU 1504D TF (6ES7615-4DF10-0AB0)
+180 more
|
2025-05-06 |
| HIGH | 7.8 |
Siemens SICAM TOOLBOX II
ICSA-23-222-10 · 2 CVEs
|
SICAM TOOLBOX II
|
2025-05-06 |
| HIGH | 7.8 |
Siemens Parasolid
ICSA-23-257-02 · 2 CVEs
|
Parasolid V34.1,
Parasolid V35.0,
Parasolid V35.0
+4 more
|
2025-05-06 |
| HIGH | 8.8 |
Siemans QMS Automotive
ICSA-23-257-03 · 10 CVEs
|
QMS Automotive
|
2025-05-06 |
| MEDIUM | 6.5 |
Siemens SIMATIC IPCs
ICSA-23-257-05 · 1 CVE
|
SIMATIC Field PG M6,
SIMATIC IPC627E,
SIMATIC IPC647E
+8 more
|
2025-05-06 |
| HIGH | 8.2 |
Siemens Spectrum Power 7
ICSA-23-264-02 · 1 CVE
|
Spectrum Power 7
|
2025-05-06 |
| HIGH | 7.6 |
Siemens LOGO! and SIPLUS LOGO!
ICSA-23-348-04 · 1 CVE
|
LOGO! 12/24RCE (6ED1052-1MD08-0BA1),
LOGO! 12/24RCEo (6ED1052-2MD08-0BA1),
LOGO! 24CE (6ED1052-1CC08-0BA1)
+13 more
|
2025-05-06 |
| HIGH | 7.5 |
Siemens SINUMERIK
ICSA-23-348-11 · 1 CVE
|
SINUMERIK MC,
SINUMERIK ONE
|
2025-05-06 |
| HIGH | 7.8 |
Siemens SINEC Traffic Analyzer
ICSA-24-165-13 · 8 CVEs
|
SINEC Traffic Analyzer (6GK8822-1BG01-0BA0)
|
2025-05-06 |
| MEDIUM | 5.3 |
Siemens SIMATIC and SIMIT
ICSA-24-193-07 · 1 CVE
|
SIMATIC Energy Manager Basic,
SIMATIC Energy Manager PRO,
SIMATIC IPC DiagBase
+3 more
|
2025-05-06 |
| HIGH | 8.8 |
Siemens SINUMERIK ONE, SINUMERIK 840D and SINUMERIK 828D
ICSA-24-256-02 · 1 CVE
|
SINUMERIK 828D V4,
SINUMERIK 828D V5,
SINUMERIK 840D sl V4
+1 more
|
2025-05-06 |
| MEDIUM | 6.5 |
Siemens SIMATIC RFID Readers
ICSA-24-256-07 · 6 CVEs
|
SIMATIC Reader RF610R CMIIT (6GT2811-6BC10-2AA0),
SIMATIC Reader RF610R ETSI (6GT2811-6BC10-0AA0),
SIMATIC Reader RF610R FCC (6GT2811-6BC10-1AA0)
+24 more
|
2025-05-06 |
| HIGH | 7.3 |
Siemens Industrial Products
ICSA-24-256-08 · 1 CVE
|
AI Model Deployer,
Data Flow Monitoring Industrial Edge Device User Interface (DFM IED UI),
LiveTwin Industrial Edge app (6AV2170-0BL00-0AA0)
+9 more
|
2025-05-06 |
| MEDIUM | 5.9 |
Siemens SIMATIC, SIPLUS, and TIM
ICSA-24-256-09 · 3 CVEs
|
SIMATIC CP 1242-7 V2 (incl. SIPLUS variants),
SIMATIC CP 1243-1 (incl. SIPLUS variants),
SIMATIC CP 1243-1 DNP3 (incl. SIPLUS variants)
+9 more
|
2025-05-06 |
| HIGH | 7.8 |
Siemens Tecnomatix Plant Simulation
ICSA-24-256-12 · 1 CVE
|
Tecnomatix Plant Simulation V2302,
Tecnomatix Plant Simulation V2404
|
2025-05-06 |
| CRITICAL | 9.1 |
Siemens SCALANCE W700
ICSA-24-256-13 · 1 CVE
|
SCALANCE WAB762-1 (6GK5762-1AJ00-6AA0),
SCALANCE WAM763-1 (6GK5763-1AL00-7DA0),
SCALANCE WAM763-1 (ME) (6GK5763-1AL00-7DC0)
+16 more
|
2025-05-06 |
| HIGH | 7.8 |
Siemens Simcenter Nastran
ICSA-24-284-02 · 2 CVEs
|
Simcenter Nastran 2306,
Simcenter Nastran 2312,
Simcenter Nastran 2406
|
2025-05-06 |
| HIGH | 7.8 |
Siemens Teamcenter Visualization and JT2Go
ICSA-24-284-03 · 2 CVEs
|
JT2Go,
Teamcenter Visualization V14.2,
Teamcenter Visualization V14.3
+2 more
|
2025-05-06 |
| MEDIUM | 6.7 |
Siemens Questa and ModelSim
ICSA-24-284-05 · 3 CVEs
|
ModelSim,
Questa
|
2025-05-06 |
| HIGH | 7.8 |
Siemens JT2Go
ICSA-24-284-07 · 1 CVE
|
JT2Go
|
2025-05-06 |
| HIGH | 8.5 |
Siemens HiMed Cockpit
ICSA-24-284-08 · 1 CVE
|
HiMed Cockpit 12 pro (J31032-K2017-H259),
HiMed Cockpit 14 pro+ (J31032-K2017-H435),
HiMed Cockpit 18 pro (J31032-K2017-H260)
+1 more
|
2025-05-06 |
| HIGH | 7.8 |
Siemens Tecnomatix Plant Simulation
ICSA-24-284-13 · 16 CVEs
|
Tecnomatix Plant Simulation V2302,
Tecnomatix Plant Simulation V2404
|
2025-05-06 |
| MEDIUM | 6.7 |
Siemens Siveillance Video Camera
ICSA-24-289-01 · 1 CVE
|
Siveillance Video Device Pack
|
2025-05-06 |
| CRITICAL | 10.0 |
Siemens InterMesh Subscriber Devices
ICSA-24-303-01 · 4 CVEs
|
InterMesh 7177 Hybrid 2.0 Subscriber,
InterMesh 7707 Fire Subscriber
|
2025-05-06 |
| MEDIUM | 5.5 |
Siemens RUGGEDCOM CROSSBOW
ICSA-24-319-01 · 2 CVEs
|
RUGGEDCOM CROSSBOW Station Access Controller (SAC)
|
2025-05-06 |
| HIGH | 7.8 |
Siemens SIPORT
ICSA-24-319-02 · 1 CVE
|
SIPORT
|
2025-05-06 |
| MEDIUM | 6.8 |
Siemens OZW672 and OZW772 Web Server
ICSA-24-319-03 · 1 CVE
|
OZW672,
OZW772
|
2025-05-06 |
| HIGH | 7.5 |
Siemens SCALANCE M-800 Family
ICSA-24-319-06 · 16 CVEs
|
RUGGEDCOM RM1224 LTE(4G) EU (6GK6108-4AM00-2BA2),
RUGGEDCOM RM1224 LTE(4G) NAM (6GK6108-4AM00-2DA2),
SCALANCE M804PB (6GK5804-0AP00-2AA2)
+23 more
|
2025-05-06 |
| HIGH | 7.3 |
Siemens Engineering Platforms
ICSA-24-319-07 · 1 CVE
|
SIMATIC S7-PLCSIM V16,
SIMATIC S7-PLCSIM V17,
SIMATIC STEP 7 Safety V16
+27 more
|
2025-05-06 |
| CRITICAL | 10.0 |
Siemens TeleControl Server
ICSA-24-319-10 · 1 CVE
|
PP TeleControl Server Basic 8 to 32 V3.1 (6NH9910-0AA31-0AB1),
PP TeleControl Server Basic 32 to 64 V3.1 (6NH9910-0AA31-0AF1),
PP TeleControl Server Basic 64 to 256 V3.1 (6NH9910-0AA31-0AC1)
+10 more
|
2025-05-06 |
| HIGH | 7.5 |
Siemens SIMATIC CP
ICSA-24-319-11 · 1 CVE
|
SIMATIC CP 1543-1 V4.0 (6GK7543-1AX10-0XE0)
|
2025-05-06 |
| MEDIUM | 4.6 |
Siemens CPCI85 Central Processing/Communication
ICSA-24-347-01 · 1 CVE
|
CPCI85 Central Processing/Communication
|
2025-05-06 |
| HIGH | 8.8 |
Siemens RUGGEDCOM ROX II
ICSA-24-347-03 · 1 CVE
|
RUGGEDCOM ROX MX5000,
RUGGEDCOM ROX MX5000RE,
RUGGEDCOM ROX RX1400
+8 more
|
2025-05-06 |
| HIGH | 7.8 |
Siemens Parasolid
ICSA-24-347-04 · 1 CVE
|
Parasolid V36.1,
Parasolid V37.0,
Parasolid V37.1
|
2025-05-06 |
| MEDIUM | 5.5 |
Siemens COMOS
ICSA-24-347-08 · 2 CVEs
|
COMOS V10.3,
COMOS V10.4.0,
COMOS V10.4.1
+4 more
|
2025-05-06 |
| HIGH | 7.8 |
Siemens Teamcenter Visualization
ICSA-24-347-09 · 26 CVEs
|
Teamcenter Visualization V14.2,
Teamcenter Visualization V14.3,
Teamcenter Visualization V2312
+1 more
|
2025-05-06 |
| HIGH | 7.4 |
Siemens Mendix LDAP
ICSA-25-016-01 · 1 CVE
|
Mendix LDAP
|
2025-05-06 |
| HIGH | 7.8 |
Siemens Siveillance Video Camera
ICSA-25-016-03 · 1 CVE
|
Siveillance Video Device Pack
|
2025-05-06 |
| HIGH | 7.1 |
Siemens SIMATIC S7-1200 CPUs
ICSA-25-021-02 · 1 CVE
|
SIMATIC S7-1200 CPU 1211C AC/DC/Rly (6ES7211-1BE40-0XB0),
SIMATIC S7-1200 CPU 1211C DC/DC/DC (6ES7211-1AE40-0XB0),
SIMATIC S7-1200 CPU 1211C DC/DC/Rly (6ES7211-1HE40-0XB0)
+45 more
|
2025-05-06 |
| HIGH | 7.5 |
Siemens SIMATIC S7-1200 CPU Family
ICSA-25-044-01 · 2 CVEs
|
SIMATIC S7-1200 CPU 1211C AC/DC/Rly (6ES7211-1BE40-0XB0),
SIMATIC S7-1200 CPU 1211C DC/DC/DC (6ES7211-1AE40-0XB0),
SIMATIC S7-1200 CPU 1211C DC/DC/Rly (6ES7211-1HE40-0XB0)
+45 more
|
2025-05-06 |
| MEDIUM | 5.3 |
Siemens SIMATIC
ICSA-25-044-02 · 1 CVE
|
SIMATIC Drive Controller CPU 1504D TF (6ES7615-4DF10-0AB0),
SIMATIC Drive Controller CPU 1507D TF (6ES7615-7DF10-0AB0),
SIMATIC ET 200SP Open Controller CPU 1515SP PC2 (incl. SIPLUS variants)
+100 more
|
2025-05-06 |
| MEDIUM | 6.2 |
Siemens OpenV2G
ICSA-25-044-08 · 1 CVE
|
OpenV2G
|
2025-05-06 |
| CRITICAL | 9.8 |
Siemens SCALANCE W700 IEEE 802.11ax
ICSA-25-044-09 · 72 CVEs
|
SCALANCE WAB762-1 (6GK5762-1AJ00-6AA0),
SCALANCE WAM763-1 (6GK5763-1AL00-7DA0),
SCALANCE WAM763-1 (ME) (6GK5763-1AL00-7DC0)
+16 more
|
2025-05-06 |
| MEDIUM | 6.7 |
Siemens Questa and ModelSim
ICSA-25-044-10 · 1 CVE
|
ModelSim,
Questa
|
2025-05-06 |
| HIGH | 8.8 |
Siemens SIMATIC PCS neo, TIA Administrator, and TIA Portal
ICSA-25-044-13 · 1 CVE
|
SIMATIC PCS neo V4.0,
SIMATIC PCS neo V4.1,
SIMATIC PCS neo V5.0
+4 more
|
2025-05-06 |
| CRITICAL | 9.6 |
Siemens Opcenter Intelligence
ICSA-25-044-14 · 5 CVEs
|
Opcenter Intelligence
|
2025-05-06 |
| CRITICAL | 9.1 |
Siemens SiPass Integrated
ICSA-25-051-04 · 1 CVE
|
SiPass integrated V2.90,
SiPass integrated V2.95
|
2025-05-06 |
| HIGH | 7.8 |
Siemens Teamcenter Visualization and Tecnomatix
ICSA-25-072-01 · 8 CVEs
|
Teamcenter Visualization V14.3,
Teamcenter Visualization V2312,
Teamcenter Visualization V2406
+3 more
|
2025-05-06 |
| CRITICAL | 9.1 |
Siemens SiPass integrated AC5102/ACC-G2 and ACC-AP
ICSA-25-072-04 · 3 CVEs
|
SiPass integrated AC5102 (ACC-G2),
SiPass integrated AC5102 (ACC-G2),
SiPass integrated ACC-AP
+1 more
|
2025-05-06 |
| HIGH | 8.8 |
Siemens SCALANCE LPE9403
ICSA-25-072-06 · 7 CVEs
|
SCALANCE LPE9403 (6GK5998-3GS00-2AC2)
|
2025-05-06 |
| MEDIUM | 6.8 |
Siemens Tecnomatix Plant Simulation
ICSA-25-072-08 · 2 CVEs
|
Tecnomatix Plant Simulation V2302,
Tecnomatix Plant Simulation V2404
|
2025-05-06 |
| HIGH | 7.8 |
Siemens Simcenter Femap
ICSA-25-079-03 · 1 CVE
|
Simcenter Femap V2401,
Simcenter Femap V2406
|
2025-05-06 |
| MEDIUM | 6.7 |
Siemens License Server (SLS)
ICSA-25-100-01 · 2 CVEs
|
Siemens License Server (SLS)
|
2025-05-06 |
| HIGH | 8.7 |
Siemens SIDIS Prime
ICSA-25-100-02 · 14 CVEs
|
SIDIS Prime
|
2025-05-06 |
| HIGH | 7.8 |
Siemens Solid Edge
ICSA-25-100-03 · 1 CVE
|
Solid Edge SE2024,
Solid Edge SE2025
|
2025-05-06 |
| CRITICAL | 9.8 |
Siemens Industrial Edge Devices
ICSA-25-100-04 · 1 CVE
|
Industrial Edge Own Device (IEOD),
Industrial Edge Virtual Device,
SCALANCE LPE9413 (6GK5998-3GS01-2AC2)
+6 more
|
2025-05-06 |
| CRITICAL | 9.8 |
Siemens TeleControl Server Basic SQL
ICSA-25-112-01 · 67 CVEs
|
TeleControl Server Basic
|
2025-05-06 |
| LOW | 3.7 |
Siemens TeleControl Server Basic
ICSA-25-112-02 · 1 CVE
|
TeleControl Server Basic
|
2025-05-06 |
| MEDIUM | 0 |
SSA-443402 V1.0: Multiple SQL Injection Vulnerabilities in TeleControl Server Basic before V3.1.2.2
SIEMENS-SSA-443402
|
SSA-443402 V1.0: Multiple SQL Injection Vulnerabilities in TeleControl Server Basic before V3.1.2.2
|
2025-04-16 |
| MEDIUM | 0 |
SSA-395348 V1.0: Improper Handling of Length Parameter Inconsistency Vulnerability in TeleControl Server Basic before V3.1.2.2
SIEMENS-SSA-395348
|
SSA-395348 V1.0: Improper Handling of Length Parameter Inconsistency Vulnerability in TeleControl Server Basic before V3.1.2.2
|
2025-04-16 |
| HIGH | 7.0 |
Siemens SIMATIC IPC DiagBase and SIMATIC IPC DiagMonitor
ICSA-25-044-12 · 1 CVE
|
SIMATIC IPC DiagBase,
SIMATIC IPC DiagMonitor
|
2025-04-08 |
| CRITICAL | 9.8 |
Siemens Insights Hub Private Cloud
ICSA-25-100-05 · 5 CVEs
|
Insights Hub Private Cloud
|
2025-04-08 |
| CRITICAL | 10.0 |
Siemens SENTRON 7KT PAC1260 Data Manager
ICSA-25-100-06 · 9 CVEs
|
SENTRON 7KT PAC1260 Data Manager
|
2025-04-08 |
| MEDIUM | 0 |
SSA-913875 V1.4 (Last Update: 2025-04-08): Frame Aggregation and Fragmentation Vulnerabilities in 802.11
SIEMENS-SSA-913875
|
SSA-913875 V1.4 (Last Update: 2025-04-08): Frame Aggregation and Fragmentation Vulnerabilities in 802.11
|
2025-04-08 |
| MEDIUM | 0 |
SSA-817234 V1.0: Multiple Kubernetes Ingress NGINX Controller Vulnerabilities in Insights Hub Private Cloud
SIEMENS-SSA-817234
|
SSA-817234 V1.0: Multiple Kubernetes Ingress NGINX Controller Vulnerabilities in Insights Hub Private Cloud
|
2025-04-08 |
| MEDIUM | 0 |
SSA-686975 V1.6 (Last Update: 2025-04-08): IPU 2022.3 Vulnerabilities in Siemens Industrial Products using Intel CPUs
SIEMENS-SSA-686975
|
SSA-686975 V1.6 (Last Update: 2025-04-08): IPU 2022.3 Vulnerabilities in Siemens Industrial Products using Intel CPUs
|
2025-04-08 |
| MEDIUM | 0 |
SSA-672923 V1.0: Out of Bounds Write Vulnerability in Solid Edge
SIEMENS-SSA-672923
|
SSA-672923 V1.0: Out of Bounds Write Vulnerability in Solid Edge
|
2025-04-08 |
| MEDIUM | 0 |
SSA-525431 V1.0: Privilege Escalation Vulnerabilities in Siemens License Server Before V4.3
SIEMENS-SSA-525431
|
SSA-525431 V1.0: Privilege Escalation Vulnerabilities in Siemens License Server Before V4.3
|
2025-04-08 |
| MEDIUM | 0 |
SSA-369369 V1.1 (Last Update: 2025-04-08): Weak Registry Permission Vulnerability in SIMATIC IPC DiagBase and SIMATIC IPC DiagMonitor
SIEMENS-SSA-369369
|
SSA-369369 V1.1 (Last Update: 2025-04-08): Weak Registry Permission Vulnerability in SIMATIC IPC DiagBase and SIMATIC IPC DiagMonitor
|
2025-04-08 |
| MEDIUM | 0 |
SSA-306654 V1.9 (Last Update: 2025-04-08): Insyde BIOS Vulnerabilities in Siemens Industrial Products
SIEMENS-SSA-306654
|
SSA-306654 V1.9 (Last Update: 2025-04-08): Insyde BIOS Vulnerabilities in Siemens Industrial Products
|
2025-04-08 |
| MEDIUM | 0 |
SSA-277137 V1.0: Multiple Vulnerabilities in SIDIS Prime Before V4.0.700
SIEMENS-SSA-277137
|
SSA-277137 V1.0: Multiple Vulnerabilities in SIDIS Prime Before V4.0.700
|
2025-04-08 |
| MEDIUM | 0 |
SSA-195895 V1.2 (Last Update: 2025-04-08): User Enumeration Vulnerability in the Webserver of SIMATIC Products
SIEMENS-SSA-195895
|
SSA-195895 V1.2 (Last Update: 2025-04-08): User Enumeration Vulnerability in the Webserver of SIMATIC Products
|
2025-04-08 |
| MEDIUM | 0 |
SSA-187636 V1.0: Multiple Vulnerabilities in SENTRON 7KT PAC1260 Data Manager
SIEMENS-SSA-187636
|
SSA-187636 V1.0: Multiple Vulnerabilities in SENTRON 7KT PAC1260 Data Manager
|
2025-04-08 |
| MEDIUM | 0 |
SSA-920092 V1.0: Memory Corruption Vulnerability in Simcenter Femap
SIEMENS-SSA-920092
|
SSA-920092 V1.0: Memory Corruption Vulnerability in Simcenter Femap
|
2025-03-13 |
| HIGH | 7.1 |
Siemens Mentor Nucleus Networking Module
ICSA-19-318-01 · 1 CVE
|
Capital Embedded AR Classic 431-422,
Capital Embedded AR Classic R20-11,
Nucleus NET
+2 more
|
2025-03-11 |
| HIGH | 7.5 |
Siemens Nucleus Products IPv6 Stack
ICSA-21-103-05 · 2 CVEs
|
Capital Embedded AR Classic 431-422,
Capital Embedded AR Classic R20-11,
Nucleus NET
+3 more
|
2025-03-11 |
| MEDIUM | 6.5 |
Siemens SINEMA Remote Connect Server
ICSA-25-072-02 · 2 CVEs
|
SINEMA Remote Connect Server
|
2025-03-11 |
| CRITICAL | 9.8 |
Siemens SINAMICS S200
ICSA-25-072-05 · 1 CVE
|
SINAMICS S200
|
2025-03-11 |
| LOW | 3.7 |
Siemens SCALANCE M-800 and SC-600 Families
ICSA-25-072-07 · 1 CVE
|
RUGGEDCOM RM1224 LTE(4G) EU (6GK6108-4AM00-2BA2),
RUGGEDCOM RM1224 LTE(4G) NAM (6GK6108-4AM00-2DA2),
SCALANCE M804PB (6GK5804-0AP00-2AA2)
+24 more
|
2025-03-11 |
| CRITICAL | 9.8 |
Siemens SINEMA Remote Connect Client
ICSA-25-072-10 · 6 CVEs
|
SINEMA Remote Connect Client
|
2025-03-11 |
| MEDIUM | 0 |
SSA-787280 V1.0: Unlocked Bootloader Vulnerability in SINAMICS S200
SIEMENS-SSA-787280
|
SSA-787280 V1.0: Unlocked Bootloader Vulnerability in SINAMICS S200
|
2025-03-11 |
| MEDIUM | 0 |
SSA-620288 V1.3 (Last Update: 2025-03-11): Multiple Vulnerabilities (NUCLEUS:13) in Capital Embedded AR Classic
SIEMENS-SSA-620288
|
SSA-620288 V1.3 (Last Update: 2025-03-11): Multiple Vulnerabilities (NUCLEUS:13) in Capital Embedded AR Classic
|
2025-03-11 |
| MEDIUM | 0 |
SSA-615740 V1.0: Multiple Vulnerabilities in SINEMA Remote Connect Client Before V3.2 SP3
SIEMENS-SSA-615740
|
SSA-615740 V1.0: Multiple Vulnerabilities in SINEMA Remote Connect Client Before V3.2 SP3
|
2025-03-11 |
| MEDIUM | 0 |
SSA-515903 V1.0: Multiple Vulnerabilities in SiPass integrated AC5102 / ACC-G2 and ACC-AP
SIEMENS-SSA-515903
|
SSA-515903 V1.0: Multiple Vulnerabilities in SiPass integrated AC5102 / ACC-G2 and ACC-AP
|
2025-03-11 |
| MEDIUM | 0 |
SSA-507653 V1.0: Improper Access Control Vulnerabilities in Tecnomatix Plant Simulation
SIEMENS-SSA-507653
|
SSA-507653 V1.0: Improper Access Control Vulnerabilities in Tecnomatix Plant Simulation
|
2025-03-11 |
| MEDIUM | 0 |
SSA-434032 V1.2 (Last Update: 2025-03-11): Input Validation Vulnerability in the DHCP Client of Nucleus RTOS
SIEMENS-SSA-434032
|
SSA-434032 V1.2 (Last Update: 2025-03-11): Input Validation Vulnerability in the DHCP Client of Nucleus RTOS
|
2025-03-11 |
| MEDIUM | 0 |
SSA-280834 V1.0: Improper OpenVPN Credential Validation Vulnerability in SCALANCE M-800 and SC-600 Families
SIEMENS-SSA-280834
|
SSA-280834 V1.0: Improper OpenVPN Credential Validation Vulnerability in SCALANCE M-800 and SC-600 Families
|
2025-03-11 |
| MEDIUM | 0 |
SSA-248289 V1.3 (Last Update: 2025-03-11): Denial of Service Vulnerabilities in the IPv6 Stack of Nucleus RTOS
SIEMENS-SSA-248289
|
SSA-248289 V1.3 (Last Update: 2025-03-11): Denial of Service Vulnerabilities in the IPv6 Stack of Nucleus RTOS
|
2025-03-11 |
| MEDIUM | 0 |
SSA-075201 V1.0: Multiple Vulnerabilities in SCALANCE LPE9403 Before V4.0
SIEMENS-SSA-075201
|
SSA-075201 V1.0: Multiple Vulnerabilities in SCALANCE LPE9403 Before V4.0
|
2025-03-11 |
| MEDIUM | 0 |
SSA-073066 V1.0: Multiple Vulnerabilities in SINEMA Remote Connect Server Before V3.2 SP3
SIEMENS-SSA-073066
|
SSA-073066 V1.0: Multiple Vulnerabilities in SINEMA Remote Connect Server Before V3.2 SP3
|
2025-03-11 |
| MEDIUM | 0 |
SSA-050438 V1.0: Multiple File Parsing Vulnerabilities in Teamcenter Visualization and Tecnomatix Plant Simulation
SIEMENS-SSA-050438
|
SSA-050438 V1.0: Multiple File Parsing Vulnerabilities in Teamcenter Visualization and Tecnomatix Plant Simulation
|
2025-03-11 |
| MEDIUM | 0 |
SSA-992434 V1.0: Directory Traversal Vulnerability in Third-Party Component in SiPass integrated
SIEMENS-SSA-992434
|
SSA-992434 V1.0: Directory Traversal Vulnerability in Third-Party Component in SiPass integrated
|
2025-02-17 |
| MEDIUM | 0 |
SSA-246355 V1.1 (Last Update: 2025-02-14): Multiple Vulnerabilities in Tableau Server Component of Opcenter Intelligence
SIEMENS-SSA-246355
|
SSA-246355 V1.1 (Last Update: 2025-02-14): Multiple Vulnerabilities in Tableau Server Component of Opcenter Intelligence
|
2025-02-14 |
| MEDIUM | 4.6 |
Siemens SIPROTEC 5
ICSA-25-044-03 · 1 CVE
|
SIPROTEC 5 6MD84 (CP300),
SIPROTEC 5 6MD85 (CP200),
SIPROTEC 5 6MD85 (CP300)
+58 more
|
2025-02-11 |
| HIGH | 7.5 |
Siemens Apogee PXC100 Devices
ICSA-25-044-11 · 2 CVEs
|
APOGEE PXC Series (BACnet),
APOGEE PXC Series (P2 Ethernet),
TALON TC Series (BACnet)
|
2025-02-11 |
| MEDIUM | 0 |
SSA-769027 V1.0: Multiple Vulnerabilities fixed in SCALANCE W700 IEEE 802.11ax devices before V3.0.0
SIEMENS-SSA-769027
|
SSA-769027 V1.0: Multiple Vulnerabilities fixed in SCALANCE W700 IEEE 802.11ax devices before V3.0.0
|
2025-02-11 |
| MEDIUM | 0 |
SSA-697140 V1.3 (Last Update: 2025-02-11): Denial of Service Vulnerability in the TCP Event Service of SCALANCE and RUGGEDCOM Products
SIEMENS-SSA-697140
|
SSA-697140 V1.3 (Last Update: 2025-02-11): Denial of Service Vulnerability in the TCP Event Service of SCALANCE and RUGGEDCOM Products
|
2025-02-11 |
| MEDIUM | 0 |
SSA-647005 V1.0: Memory Corruption Vulnerability in OpenV2G
SIEMENS-SSA-647005
|
SSA-647005 V1.0: Memory Corruption Vulnerability in OpenV2G
|
2025-02-11 |
| MEDIUM | 0 |
SSA-637914 V1.0: Local Code Execution Vulnerability in Questa and ModelSim Before V2025.1
SIEMENS-SSA-637914
|
SSA-637914 V1.0: Local Code Execution Vulnerability in Questa and ModelSim Before V2025.1
|
2025-02-11 |
| MEDIUM | 0 |
SSA-615116 V1.0: Multiple Vulnerabilities in Apogee PXC and Talon TC Devices
SIEMENS-SSA-615116
|
SSA-615116 V1.0: Multiple Vulnerabilities in Apogee PXC and Talon TC Devices
|
2025-02-11 |
| MEDIUM | 0 |
SSA-349422 V2.2 (Last Update: 2025-02-11): Denial of Service Vulnerability in Industrial Real-Time (IRT) Devices
SIEMENS-SSA-349422
|
SSA-349422 V2.2 (Last Update: 2025-02-11): Denial of Service Vulnerability in Industrial Real-Time (IRT) Devices
|
2025-02-11 |
| MEDIUM | 0 |
SSA-342348 V1.0: Insufficient Session Expiration Vulnerability in Siemens Products
SIEMENS-SSA-342348
|
SSA-342348 V1.0: Insufficient Session Expiration Vulnerability in Siemens Products
|
2025-02-11 |
| MEDIUM | 0 |
SSA-224824 V1.0: Denial of Service Vulnerabilities in SIMATIC S7-1200 CPU Family Before V4.7
SIEMENS-SSA-224824
|
SSA-224824 V1.0: Denial of Service Vulnerabilities in SIMATIC S7-1200 CPU Family Before V4.7
|
2025-02-11 |
| MEDIUM | 0 |
SSA-196737 V1.1 (Last Update: 2025-02-11): Multiple Vulnerabilities in SINEC Traffic Analyzer Before V1.2
SIEMENS-SSA-196737
|
SSA-196737 V1.1 (Last Update: 2025-02-11): Multiple Vulnerabilities in SINEC Traffic Analyzer Before V1.2
|
2025-02-11 |
| MEDIUM | 0 |
SSA-111547 V1.0: Cleartext Storage of Sensitive Information Vulnerability in SIPROTEC 5
SIEMENS-SSA-111547
|
SSA-111547 V1.0: Cleartext Storage of Sensitive Information Vulnerability in SIPROTEC 5
|
2025-02-11 |
| MEDIUM | 0 |
SSA-404759 V1.1 (Last Update: 2025-01-15): Information Disclosure Vulnerability in Siveillance Video Camera Drivers
SIEMENS-SSA-404759
|
SSA-404759 V1.1 (Last Update: 2025-01-15): Information Disclosure Vulnerability in Siveillance Video Camera Drivers
|
2025-01-15 |
| MEDIUM | 5.3 |
Siemens PROFINET Stack Integrated on Interniche Stack
ICSA-22-104-06 · 1 CVE
|
SIMATIC CFU DIQ (6ES7655-5PX31-1XX0),
SIMATIC CFU PA (6ES7655-5PX11-0XX0),
SIMATIC ET200ecoPN, AI 8xRTD/TC, M12-L (6ES7144-6JF00-0BB0)
+79 more
|
2025-01-14 |
| MEDIUM | 4.6 |
Siemens S7-1500 CPU devices
ICSA-23-012-08 · 1 CVE
|
SIMATIC Drive Controller CPU 1504D TF (6ES7615-4DF10-0AB0),
SIMATIC Drive Controller CPU 1507D TF (6ES7615-7DF10-0AB0),
SIMATIC S7-1500 CPU 1510SP F-1 PN (6ES7510-1SJ00-0AB0)
+120 more
|
2025-01-14 |
| HIGH | 7.5 |
Siemens User Management Component (UMC)
ICSA-23-348-03 · 5 CVEs
|
Opcenter Execution Foundation,
Opcenter Quality,
SIMATIC PCS neo
+6 more
|
2025-01-14 |
| MEDIUM | 6.2 |
Siemens SIMATIC WinCC
ICSA-24-102-02 · 1 CVE
|
SIMATIC PCS 7 V9.1,
SIMATIC WinCC Runtime Professional V17,
SIMATIC WinCC Runtime Professional V18
+3 more
|
2025-01-14 |
| HIGH | 7.2 |
Siemens SCALANCE W700
ICSA-24-165-12 · 4 CVEs
|
SCALANCE WAB762-1 (6GK5762-1AJ00-6AA0),
SCALANCE WAB762-1 (6GK5762-1AJ00-6AA0),
SCALANCE WAM763-1 (6GK5763-1AL00-7DA0)
+35 more
|
2025-01-14 |
| CRITICAL | 9.1 |
Siemens SIMATIC SCADA and PCS 7 Systems
ICSA-24-256-14 · 1 CVE
|
SIMATIC BATCH V9.1,
SIMATIC Information Server 2020,
SIMATIC Information Server 2022
+8 more
|
2025-01-14 |
| MEDIUM | 4.7 |
Siemens Industrial Edge Management
ICSA-25-016-02 · 1 CVE
|
Industrial Edge Management OS (IEM-OS)
|
2025-01-14 |
| MEDIUM | 0 |
SSA-999588 V1.7 (Last Update: 2025-01-14): Multiple Vulnerabilities in User Management Component (UMC) Before V2.11.2
SIEMENS-SSA-999588
|
SSA-999588 V1.7 (Last Update: 2025-01-14): Multiple Vulnerabilities in User Management Component (UMC) Before V2.11.2
|
2025-01-14 |
| MEDIUM | 0 |
SSA-871035 V1.1 (Last Update: 2025-01-14): Session-Memory Deserialization Vulnerability in Siemens Engineering Platforms Before V19
SIEMENS-SSA-871035
|
SSA-871035 V1.1 (Last Update: 2025-01-14): Session-Memory Deserialization Vulnerability in Siemens Engineering Platforms Before V19
|
2025-01-14 |
| HIGH | 7.3 |
SSA-773256 V1.3 (Last Update: 2025-01-14): Impact of Socket.IO CVE-2024-38355 on Siemens Industrial Products
SIEMENS-SSA-773256 · 1 CVE
|
SSA-773256 V1.3 (Last Update: 2025-01-14): Impact of Socket.IO CVE-2024-38355 on Siemens Industrial Products
|
2025-01-14 |
| MEDIUM | 0 |
SSA-730482 V1.2 (Last Update: 2025-01-14): Denial of Service Vulnerability in SIMATIC WinCC
SIEMENS-SSA-730482
|
SSA-730482 V1.2 (Last Update: 2025-01-14): Denial of Service Vulnerability in SIMATIC WinCC
|
2025-01-14 |
| MEDIUM | 0 |
SSA-717113 V1.0: Cross-Site Request Forgery (CSRF) Vulnerability in SIMATIC S7-1200 CPUs before V4.7
SIEMENS-SSA-717113
|
SSA-717113 V1.0: Cross-Site Request Forgery (CSRF) Vulnerability in SIMATIC S7-1200 CPUs before V4.7
|
2025-01-14 |
| MEDIUM | 0 |
SSA-690517 V1.2 (Last Update: 2025-01-14): Multiple Vulnerabilities in SCALANCE W-700 IEEE 802.11ax Family
SIEMENS-SSA-690517
|
SSA-690517 V1.2 (Last Update: 2025-01-14): Multiple Vulnerabilities in SCALANCE W-700 IEEE 802.11ax Family
|
2025-01-14 |
| MEDIUM | 0 |
SSA-629254 V1.3 (Last Update: 2025-01-14): Remote Code Execution Vulnerability in SIMATIC SCADA and PCS 7 systems
SIEMENS-SSA-629254
|
SSA-629254 V1.3 (Last Update: 2025-01-14): Remote Code Execution Vulnerability in SIMATIC SCADA and PCS 7 systems
|
2025-01-14 |
| MEDIUM | 0 |
SSA-482757 V1.5 (Last Update: 2025-01-14): Missing Immutable Root of Trust in S7-1500 CPU devices
SIEMENS-SSA-482757
|
SSA-482757 V1.5 (Last Update: 2025-01-14): Missing Immutable Root of Trust in S7-1500 CPU devices
|
2025-01-14 |
| MEDIUM | 0 |
SSA-446448 V2.3 (Last Update: 2025-01-14): Denial of Service Vulnerability in PROFINET Stack Integrated on Interniche Stack
SIEMENS-SSA-446448
|
SSA-446448 V2.3 (Last Update: 2025-01-14): Denial of Service Vulnerability in PROFINET Stack Integrated on Interniche Stack
|
2025-01-14 |
| MEDIUM | 0 |
SSA-416411 V1.0: Cross-Site Scripting Vulnerability in Industrial Edge Management
SIEMENS-SSA-416411
|
SSA-416411 V1.0: Cross-Site Scripting Vulnerability in Industrial Edge Management
|
2025-01-14 |
| MEDIUM | 0 |
SSA-413565 V1.4 (Last Update: 2025-01-14): Multiple Vulnerabilities in SCALANCE Products
SIEMENS-SSA-413565
|
SSA-413565 V1.4 (Last Update: 2025-01-14): Multiple Vulnerabilities in SCALANCE Products
|
2025-01-14 |
| MEDIUM | 0 |
SSA-314390 V1.0: LDAP Injection Vulnerability in Mendix LDAP Module
SIEMENS-SSA-314390
|
SSA-314390 V1.0: LDAP Injection Vulnerability in Mendix LDAP Module
|
2025-01-14 |
| MEDIUM | 0 |
SSA-979056 V1.1 (Last Update: 2024-12-12): Out of Bounds Write Vulnerability in Parasolid
SIEMENS-SSA-979056
|
SSA-979056 V1.1 (Last Update: 2024-12-12): Out of Bounds Write Vulnerability in Parasolid
|
2024-12-12 |
| HIGH | 7.5 |
Siemens PROFINET Devices
ICSA-21-194-03 · 1 CVE
|
Development/Evaluation Kits for PROFINET IO: DK Standard Ethernet Controller,
Development/Evaluation Kits for PROFINET IO: EK-ERTEC 200,
Development/Evaluation Kits for PROFINET IO: EK-ERTEC 200P
+302 more
|
2024-12-10 |
| MEDIUM | 6.2 |
Siemens TIA Portal
ICSA-23-166-06 · 1 CVE
|
Totally Integrated Automation Portal (TIA Portal) V14,
Totally Integrated Automation Portal (TIA Portal) V15,
Totally Integrated Automation Portal (TIA Portal) V15.1
+5 more
|
2024-12-10 |
| HIGH | 8.8 |
Siemens RUGGEDCOM APE1808
ICSA-24-102-03 · 8 CVEs
|
RUGGEDCOM APE1808
|
2024-12-10 |
| MEDIUM | 6.5 |
Siemens Industrial Products
ICSA-24-137-13 · 1 CVE
|
Security Configuration Tool (SCT),
SIMATIC Automation Tool,
SIMATIC BATCH V9.1
+29 more
|
2024-12-10 |
| HIGH | 7.8 |
Siemens Simcenter Femap
ICSA-24-347-06 · 2 CVEs
|
Simcenter Femap V2306,
Simcenter Femap V2401,
Simcenter Femap V2406
|
2024-12-10 |
| HIGH | 7.8 |
Siemens Solid Edge SE2024
ICSA-24-347-07 · 3 CVEs
|
Solid Edge SE2024,
Solid Edge SE2024
|
2024-12-10 |
| MEDIUM | 6.5 |
SSA-981975 V1.4 (Last Update: 2024-12-10): Information Disclosure Vulnerability in Intel-CPUs (CVE-2022-40982) Impacting SIMATIC IPCs
SIEMENS-SSA-981975 · 1 CVE
|
SSA-981975 V1.4 (Last Update: 2024-12-10): Information Disclosure Vulnerability in Intel-CPUs (CVE-2022-40982) Impacting SIMATIC IPCs
|
2024-12-10 |
| MEDIUM | 0 |
SSA-962515 V1.5 (Last Update: 2024-12-10): Out of Bounds Read Vulnerability in Industrial Products
SIEMENS-SSA-962515
|
SSA-962515 V1.5 (Last Update: 2024-12-10): Out of Bounds Read Vulnerability in Industrial Products
|
2024-12-10 |
| MEDIUM | 0 |
SSA-881356 V1.0: Multiple Memory Corruption Vulnerabilities in Simcenter Femap
SIEMENS-SSA-881356
|
SSA-881356 V1.0: Multiple Memory Corruption Vulnerabilities in Simcenter Femap
|
2024-12-10 |
| MEDIUM | 0 |
SSA-822518 V1.2 (Last Update: 2024-12-10): Multiple Vulnerabilities in Palo Alto Networks Virtual NGFW Before V11.0.1 on RUGGEDCOM APE1808 Devices
SIEMENS-SSA-822518
|
SSA-822518 V1.2 (Last Update: 2024-12-10): Multiple Vulnerabilities in Palo Alto Networks Virtual NGFW Before V11.0.1 on RUGGEDCOM APE1808 Devices
|
2024-12-10 |
| MEDIUM | 0 |
SSA-730188 V1.0: Multiple File Parsing Vulnerabilities in Solid Edge V2024
SIEMENS-SSA-730188
|
SSA-730188 V1.0: Multiple File Parsing Vulnerabilities in Solid Edge V2024
|
2024-12-10 |
| MEDIUM | 0 |
SSA-701627 V1.0: XXE Injection Vulnerabilities in COMOS
SIEMENS-SSA-701627
|
SSA-701627 V1.0: XXE Injection Vulnerabilities in COMOS
|
2024-12-10 |
| MEDIUM | 0 |
SSA-645131 V1.0: Multiple WRL File Parsing Vulnerabilities in Teamcenter Visualization
SIEMENS-SSA-645131
|
SSA-645131 V1.0: Multiple WRL File Parsing Vulnerabilities in Teamcenter Visualization
|
2024-12-10 |
| MEDIUM | 0 |
SSA-599968 V1.8 (Last Update: 2024-12-10): Denial of Service Vulnerability in Profinet Devices
SIEMENS-SSA-599968
|
SSA-599968 V1.8 (Last Update: 2024-12-10): Denial of Service Vulnerability in Profinet Devices
|
2024-12-10 |
| MEDIUM | 0 |
SSA-583523 V1.1 (Last Update: 2024-12-10): Multiple WRL File Parsing Vulnerabilities in Tecnomatix Plant Simulation
SIEMENS-SSA-583523
|
SSA-583523 V1.1 (Last Update: 2024-12-10): Multiple WRL File Parsing Vulnerabilities in Tecnomatix Plant Simulation
|
2024-12-10 |
| MEDIUM | 0 |
SSA-384652 V1.0: Cross-Site Request Forgery (CSRF) Vulnerability in RUGGEDCOM ROX II
SIEMENS-SSA-384652
|
SSA-384652 V1.0: Cross-Site Request Forgery (CSRF) Vulnerability in RUGGEDCOM ROX II
|
2024-12-10 |
| HIGH | 7.4 |
SSA-264815 V1.3 (Last Update: 2024-12-10): Type Confusion Vulnerability in OpenSSL X.400 Address Processing in SIMATIC Products
SIEMENS-SSA-264815 · 1 CVE
|
SSA-264815 V1.3 (Last Update: 2024-12-10): Type Confusion Vulnerability in OpenSSL X.400 Address Processing in SIMATIC Products
|
2024-12-10 |
| LOW | 3.8 |
SSA-264814 V1.4 (Last Update: 2024-12-10): Timing Based Side Channel Vulnerability in the OpenSSL RSA Decryption in SIMATIC Products
SIEMENS-SSA-264814 · 1 CVE
|
SSA-264814 V1.4 (Last Update: 2024-12-10): Timing Based Side Channel Vulnerability in the OpenSSL RSA Decryption in SIMATIC Products
|
2024-12-10 |
| MEDIUM | 0 |
SSA-128393 V1.0: Firmware Decryption Vulnerability in SICAM A8000 CP-8031 and CP-8050
SIEMENS-SSA-128393
|
SSA-128393 V1.0: Firmware Decryption Vulnerability in SICAM A8000 CP-8031 and CP-8050
|
2024-12-10 |
| MEDIUM | 0 |
SSA-042050 V1.2 (Last Update: 2024-12-10): Know-How Protection Mechanism Failure in TIA Portal
SIEMENS-SSA-042050
|
SSA-042050 V1.2 (Last Update: 2024-12-10): Know-How Protection Mechanism Failure in TIA Portal
|
2024-12-10 |
| MEDIUM | 0 |
SSA-824503 V1.0: Multiple WRL File Parsing Vulnerabilities in Tecnomatix Plant Simulation Before V2302.0018 and V2404.0007
SIEMENS-SSA-824503
|
SSA-824503 V1.0: Multiple WRL File Parsing Vulnerabilities in Tecnomatix Plant Simulation Before V2302.0018 and V2404.0007
|
2024-11-18 |
| HIGH | 8.7 |
SSA-472448 V1.0: Security Bypass Vulnerability in the SQL Client-Server Communication in Siveillance Video
SIEMENS-SSA-472448 · 1 CVE
|
SSA-472448 V1.0: Security Bypass Vulnerability in the SQL Client-Server Communication in Siveillance Video
|
2024-11-13 |
| MEDIUM | 5.9 |
Siemens SIMATIC WinCC
ICSA-24-193-16 · 1 CVE
|
SIMATIC PCS 7 V9.1,
SIMATIC WinCC Runtime Professional V18,
SIMATIC WinCC Runtime Professional V19
+3 more
|
2024-11-12 |
| HIGH | 8.4 |
Siemens SINEC NMS
ICSA-24-319-04 · 17 CVEs
|
SINEC NMS
|
2024-11-12 |
| HIGH | 7.8 |
Siemens Solid Edge
ICSA-24-319-05 · 3 CVEs
|
Solid Edge SE2024
|
2024-11-12 |
| CRITICAL | 9.9 |
Siemens SINEC INS
ICSA-24-319-08 · 59 CVEs
|
SINEC INS
|
2024-11-12 |
| HIGH | 7.8 |
Siemens Spectrum Power 7
ICSA-24-319-09 · 1 CVE
|
Spectrum Power 7
|
2024-11-12 |
| MEDIUM | 0 |
SSA-915275 V1.0: Multiple Vulnerabilities in SINEC INS Before V1.0 SP2 Update 3
SIEMENS-SSA-915275
|
SSA-915275 V1.0: Multiple Vulnerabilities in SINEC INS Before V1.0 SP2 Update 3
|
2024-11-12 |
| MEDIUM | 0 |
SSA-883918 V1.2 (Last Update: 2024-11-12): Information Disclosure Vulnerability in SIMATIC WinCC
SIEMENS-SSA-883918
|
SSA-883918 V1.2 (Last Update: 2024-11-12): Information Disclosure Vulnerability in SIMATIC WinCC
|
2024-11-12 |
| MEDIUM | 0 |
SSA-654798 V1.0: Incorrect Authorization Vulnerability in SIMATIC CP 1543-1 Devices
SIEMENS-SSA-654798
|
SSA-654798 V1.0: Incorrect Authorization Vulnerability in SIMATIC CP 1543-1 Devices
|
2024-11-12 |
| MEDIUM | 0 |
SSA-616032 V1.0: Local Privilege Escalation Vulnerability in Spectrum Power 7 Before V24Q3
SIEMENS-SSA-616032
|
SSA-616032 V1.0: Local Privilege Escalation Vulnerability in Spectrum Power 7 Before V24Q3
|
2024-11-12 |
| MEDIUM | 0 |
SSA-454789 V1.0: Deserialization Vulnerability in TeleControl Server Basic V3.1
SIEMENS-SSA-454789
|
SSA-454789 V1.0: Deserialization Vulnerability in TeleControl Server Basic V3.1
|
2024-11-12 |
| MEDIUM | 0 |
SSA-354112 V1.0: Multiple Vulnerabilities in SCALANCE M-800 Family Before V8.2
SIEMENS-SSA-354112
|
SSA-354112 V1.0: Multiple Vulnerabilities in SCALANCE M-800 Family Before V8.2
|
2024-11-12 |
| MEDIUM | 0 |
SSA-351178 V1.0: Multiple Vulnerabilities in Solid Edge Before SE2024 Update 9
SIEMENS-SSA-351178
|
SSA-351178 V1.0: Multiple Vulnerabilities in Solid Edge Before SE2024 Update 9
|
2024-11-12 |
| MEDIUM | 0 |
SSA-331112 V1.0: Multiple Vulnerabilities in SINEC NMS Before V3.0 SP1
SIEMENS-SSA-331112
|
SSA-331112 V1.0: Multiple Vulnerabilities in SINEC NMS Before V3.0 SP1
|
2024-11-12 |
| MEDIUM | 0 |
SSA-230445 V1.0: Stored XSS Vulnerability in OZW Web Servers Before V5.2
SIEMENS-SSA-230445
|
SSA-230445 V1.0: Stored XSS Vulnerability in OZW Web Servers Before V5.2
|
2024-11-12 |
| MEDIUM | 0 |
SSA-064257 V1.0: Privilege Escalation Vulnerability in SIPORT Before V3.4.0
SIEMENS-SSA-064257
|
SSA-064257 V1.0: Privilege Escalation Vulnerability in SIPORT Before V3.4.0
|
2024-11-12 |
| MEDIUM | 0 |
SSA-000297 V1.0: Multiple SQLite Vulnerabilities in RUGGEDCOM CROSSBOW Station Access Controller Before V5.6
SIEMENS-SSA-000297
|
SSA-000297 V1.0: Multiple SQLite Vulnerabilities in RUGGEDCOM CROSSBOW Station Access Controller Before V5.6
|
2024-11-12 |
| MEDIUM | 0 |
SSA-333468 V1.0: Multiple Vulnerabilities in InterMesh Subscriber Devices
SIEMENS-SSA-333468
|
SSA-333468 V1.0: Multiple Vulnerabilities in InterMesh Subscriber Devices
|
2024-10-23 |
| MEDIUM | 0 |
SSA-438590 V1.0: Buffer Overflow Vulnerability in Siveillance Video Camera Drivers
SIEMENS-SSA-438590
|
SSA-438590 V1.0: Buffer Overflow Vulnerability in Siveillance Video Camera Drivers
|
2024-10-10 |
| MEDIUM | 5.5 |
Siemens LOGO! 8 BM
ICSA-21-068-05 · 1 CVE
|
LOGO! 12/24RCE (6ED1052-1MD08-0BA1),
LOGO! 12/24RCEo (6ED1052-2MD08-0BA1),
LOGO! 24CE (6ED1052-1CC08-0BA1)
+13 more
|
2024-10-08 |
| CRITICAL | 9.8 |
Siemens LOGO! 8 BM Devices
ICSA-22-286-13 · 3 CVEs
|
LOGO! 12/24RCE (6ED1052-1MD08-0BA1),
LOGO! 12/24RCE (6ED1052-1MD08-0BA2),
LOGO! 12/24RCEo (6ED1052-2MD08-0BA1)
+29 more
|
2024-10-08 |
| MEDIUM | 4.6 |
Siemens LOGO! V8.3 BM Devices
ICSA-24-228-05 · 1 CVE
|
LOGO! 12/24RCE (6ED1052-1MD08-0BA1),
LOGO! 12/24RCEo (6ED1052-2MD08-0BA1),
LOGO! 24CE (6ED1052-1CC08-0BA1)
+13 more
|
2024-10-08 |
| CRITICAL | 9.8 |
Siemens SENTRON PAC3200 Devices
ICSA-24-284-04 · 1 CVE
|
SENTRON 7KM PAC3200
|
2024-10-08 |
| HIGH | 8.8 |
Siemens PSS SINCAL
ICSA-24-284-09 · 2 CVEs
|
PSS(R)SINCAL
|
2024-10-08 |
| MEDIUM | 6.0 |
Siemens RUGGEDCOM APE1808
ICSA-24-284-11 · 1 CVE
|
RUGGEDCOM APE1808LNX (6GK6015-0AL20-0GH0),
RUGGEDCOM APE1808LNX CC (6GK6015-0AL20-0GH1)
|
2024-10-08 |
| MEDIUM | 0 |
SSA-959281 V1.0: XML File Parsing Vulnerabilities in Teamcenter Visualization and JT2Go
SIEMENS-SSA-959281
|
SSA-959281 V1.0: XML File Parsing Vulnerabilities in Teamcenter Visualization and JT2Go
|
2024-10-08 |
| MEDIUM | 0 |
SSA-955858 V1.3 (Last Update: 2024-10-08): Multiple Vulnerabilities in LOGO! 8 BM Devices
SIEMENS-SSA-955858
|
SSA-955858 V1.3 (Last Update: 2024-10-08): Multiple Vulnerabilities in LOGO! 8 BM Devices
|
2024-10-08 |
| MEDIUM | 0 |
SSA-921449 V1.2 (Last Update: 2024-10-08): Plaintext Storage of a Password Vulnerability in LOGO! V8.3 BM Devices
SIEMENS-SSA-921449
|
SSA-921449 V1.2 (Last Update: 2024-10-08): Plaintext Storage of a Password Vulnerability in LOGO! V8.3 BM Devices
|
2024-10-08 |
| MEDIUM | 0 |
SSA-852501 V1.0: Multiple Memory Corruption Vulnerabilities in Simcenter Nastran Before 2406.5000
SIEMENS-SSA-852501
|
SSA-852501 V1.0: Multiple Memory Corruption Vulnerabilities in Simcenter Nastran Before 2406.5000
|
2024-10-08 |
| MEDIUM | 0 |
SSA-850560 V1.0: Use of 4-Digit PIN in SENTRON PAC3200 Devices
SIEMENS-SSA-850560
|
SSA-850560 V1.0: Use of 4-Digit PIN in SENTRON PAC3200 Devices
|
2024-10-08 |
| MEDIUM | 0 |
SSA-844582 V1.2 (Last Update: 2024-10-08): Electromagnetic Fault Injection in LOGO! V8.3 BM Devices Results in Broken LOGO! V8.3 Product CA
SIEMENS-SSA-844582
|
SSA-844582 V1.2 (Last Update: 2024-10-08): Electromagnetic Fault Injection in LOGO! V8.3 BM Devices Results in Broken LOGO! V8.3 Product CA
|
2024-10-08 |
| MEDIUM | 0 |
SSA-783481 V1.3 (Last Update: 2024-10-08): Denial-of-Service Vulnerability in LOGO! 8 BM
SIEMENS-SSA-783481
|
SSA-783481 V1.3 (Last Update: 2024-10-08): Denial-of-Service Vulnerability in LOGO! 8 BM
|
2024-10-08 |
| MEDIUM | 0 |
SSA-626178 V1.0: Stack-Based Buffer Overflow Vulnerability in JT2Go Before V2406.0003
SIEMENS-SSA-626178
|
SSA-626178 V1.0: Stack-Based Buffer Overflow Vulnerability in JT2Go Before V2406.0003
|
2024-10-08 |
| MEDIUM | 0 |
SSA-540493 V1.0: Kiosk Mode Escape Vulnerability in HiMed Cockpit Devices Before V11.6.2
SIEMENS-SSA-540493
|
SSA-540493 V1.0: Kiosk Mode Escape Vulnerability in HiMed Cockpit Devices Before V11.6.2
|
2024-10-08 |
| MEDIUM | 0 |
SSA-368868 V1.0: Multiple Vulnerabilities in WibuKey for Windows
SIEMENS-SSA-368868
|
SSA-368868 V1.0: Multiple Vulnerabilities in WibuKey for Windows
|
2024-10-08 |
| HIGH | 7.5 |
SSA-321292 V1.6 (Last Update: 2024-10-08): Denial of Service in the OPC Foundation Local Discovery Server (LDS) in Industrial Products
SIEMENS-SSA-321292 · 1 CVE
|
SSA-321292 V1.6 (Last Update: 2024-10-08): Denial of Service in the OPC Foundation Local Discovery Server (LDS) in Industrial Products
|
2024-10-08 |
| MEDIUM | 0 |
SSA-254396 V1.0: Vulnerability in Nozomi Guardian/CMC Before 24.3.1 on RUGGEDCOM APE1808 Devices
SIEMENS-SSA-254396
|
SSA-254396 V1.0: Vulnerability in Nozomi Guardian/CMC Before 24.3.1 on RUGGEDCOM APE1808 Devices
|
2024-10-08 |
| MEDIUM | 0 |
SSA-148641 V1.3 (Last Update: 2024-10-08): XPath Constraint Vulnerability in Mendix Runtime
SIEMENS-SSA-148641
|
SSA-148641 V1.3 (Last Update: 2024-10-08): XPath Constraint Vulnerability in Mendix Runtime
|
2024-10-08 |
| MEDIUM | 6.5 |
Siemens PROFINET DCP (Update V)
ICSA-17-129-02 · 2 CVEs
|
Development/Evaluation Kits for PROFINET IO: DK Standard Ethernet Controller,
Development/Evaluation Kits for PROFINET IO: EK-ERTEC 200,
Development/Evaluation Kits for PROFINET IO: EK-ERTEC 200P
+123 more
|
2024-09-10 |
| MEDIUM | 6.5 |
Siemens SIMATIC WinCC, OpenPCS
ICSA-24-046-12 · 2 CVEs
|
OpenPCS 7 V9.1,
SIMATIC BATCH V9.1,
SIMATIC PCS 7 V9.1
+6 more
|
2024-09-10 |
| MEDIUM | 4.6 |
Siemens SENTRON 7KM PAC3x20
ICSA-24-074-01 · 1 CVE
|
SENTRON 7KM PAC3120 AC/DC (7KM3120-0BA01-1DA0),
SENTRON 7KM PAC3120 DC (7KM3120-1BA01-1EA0),
SENTRON 7KM PAC3220 AC/DC (7KM3220-0BA01-1DA0)
+1 more
|
2024-09-10 |
| MEDIUM | 4.3 |
Siemens SINEMA Remote Connect Server
ICSA-24-256-01 · 1 CVE
|
SINEMA Remote Connect Server
|
2024-09-10 |
| MEDIUM | 5.5 |
Siemens SINUMERIK Systems
ICSA-24-256-04 · 1 CVE
|
SINUMERIK 828D V4,
SINUMERIK 840D sl V4,
SINUMERIK ONE
+1 more
|
2024-09-10 |
| CRITICAL | 9.8 |
Siemens SINEMA
ICSA-24-256-10 · 7 CVEs
|
SINEMA Remote Connect Client
|
2024-09-10 |
| CRITICAL | 10.0 |
Siemens Industrial Edge Management
ICSA-24-256-11 · 1 CVE
|
Industrial Edge Management Pro,
Industrial Edge Management Virtual
|
2024-09-10 |
| HIGH | 7.5 |
Siemens SIMATIC S7-200 SMART Devices
ICSA-24-261-01 · 1 CVE
|
SIMATIC S7-200 SMART CPU CR40 (6ES7288-1CR40-0AA0),
SIMATIC S7-200 SMART CPU CR60 (6ES7288-1CR60-0AA0),
SIMATIC S7-200 SMART CPU SR20 (6ES7288-1SR20-0AA0)
+15 more
|
2024-09-10 |
| MEDIUM | 0 |
SSA-969738 V1.0: Denial of Service Vulnerability in SIMATIC S7-200 SMART Devices
SIEMENS-SSA-969738
|
SSA-969738 V1.0: Denial of Service Vulnerability in SIMATIC S7-200 SMART Devices
|
2024-09-10 |
| MEDIUM | 0 |
SSA-869574 V1.0: Multiple Vulnerabilities in SINEMA Remote Connect Server Before V3.2 SP2
SIEMENS-SSA-869574
|
SSA-869574 V1.0: Multiple Vulnerabilities in SINEMA Remote Connect Server Before V3.2 SP2
|
2024-09-10 |
| MEDIUM | 0 |
SSA-792319 V1.1 (Last Update: 2024-09-10): Missing Read Out Protection in SENTRON 7KM PAC3x20 Devices
SIEMENS-SSA-792319
|
SSA-792319 V1.1 (Last Update: 2024-09-10): Missing Read Out Protection in SENTRON 7KM PAC3x20 Devices
|
2024-09-10 |
| MEDIUM | 0 |
SSA-765405 V1.0: Multiple Vulnerabilities in SIMATIC RFID Readers
SIEMENS-SSA-765405
|
SSA-765405 V1.0: Multiple Vulnerabilities in SIMATIC RFID Readers
|
2024-09-10 |
| MEDIUM | 0 |
SSA-753746 V1.4 (Last Update: 2024-09-10): Denial of Service Vulnerabilities in SIMATIC WinCC Affecting Other SIMATIC Software Products
SIEMENS-SSA-753746
|
SSA-753746 V1.4 (Last Update: 2024-09-10): Denial of Service Vulnerabilities in SIMATIC WinCC Affecting Other SIMATIC Software Products
|
2024-09-10 |
| MEDIUM | 0 |
SSA-721642 V1.0: Injection Vulnerability in SCALANCE W700 802.11 AX Family Before V2.4
SIEMENS-SSA-721642
|
SSA-721642 V1.0: Injection Vulnerability in SCALANCE W700 802.11 AX Family Before V2.4
|
2024-09-10 |
| MEDIUM | 0 |
SSA-566905 V1.3 (Last Update: 2024-09-10): Multiple Denial of Service Vulnerabilities in the Webserver of Industrial Products
SIEMENS-SSA-566905
|
SSA-566905 V1.3 (Last Update: 2024-09-10): Multiple Denial of Service Vulnerabilities in the Webserver of Industrial Products
|
2024-09-10 |
| MEDIUM | 0 |
SSA-427715 V1.0: Stack-Based Buffer Overflow Vulnerability in Tecnomatix Plant Simulation
SIEMENS-SSA-427715
|
SSA-427715 V1.0: Stack-Based Buffer Overflow Vulnerability in Tecnomatix Plant Simulation
|
2024-09-10 |
| MEDIUM | 0 |
SSA-423808 V1.0: Multiple NULL Pointer Dereference Vulnerabilities in Industrial Products
SIEMENS-SSA-423808
|
SSA-423808 V1.0: Multiple NULL Pointer Dereference Vulnerabilities in Industrial Products
|
2024-09-10 |
| MEDIUM | 0 |
SSA-417159 V1.0: Multiple Vulnerabilities in SINEMA Remote Connect Client Before V3.2 SP2
SIEMENS-SSA-417159
|
SSA-417159 V1.0: Multiple Vulnerabilities in SINEMA Remote Connect Client Before V3.2 SP2
|
2024-09-10 |
| MEDIUM | 0 |
SSA-359713 V1.0: Authorization Bypass Vulnerability in Industrial Edge Management
SIEMENS-SSA-359713
|
SSA-359713 V1.0: Authorization Bypass Vulnerability in Industrial Edge Management
|
2024-09-10 |
| MEDIUM | 0 |
SSA-342438 V1.0: Privilege Escalation Vulnerability in SINUMERIK ONE, SINUMERIK 840D and SINUMERIK 828D
SIEMENS-SSA-342438
|
SSA-342438 V1.0: Privilege Escalation Vulnerability in SINUMERIK ONE, SINUMERIK 840D and SINUMERIK 828D
|
2024-09-10 |
| MEDIUM | 0 |
SSA-293562 V3.6 (Last Update: 2024-09-10): Denial of Service Vulnerabilities in PROFINET DCP Implementation of Industrial Products
SIEMENS-SSA-293562
|
SSA-293562 V3.6 (Last Update: 2024-09-10): Denial of Service Vulnerabilities in PROFINET DCP Implementation of Industrial Products
|
2024-09-10 |
| MEDIUM | 0 |
SSA-280603 V1.1 (Last Update: 2024-09-10): Denial of Service Vulnerability in SINUMERIK ONE and SINUMERIK MC
SIEMENS-SSA-280603
|
SSA-280603 V1.1 (Last Update: 2024-09-10): Denial of Service Vulnerability in SINUMERIK ONE and SINUMERIK MC
|
2024-09-10 |
| MEDIUM | 0 |
SSA-097786 V1.0: Insertion of Sensitive Information into Log File Vulnerability in SINUMERIK systems
SIEMENS-SSA-097786
|
SSA-097786 V1.0: Insertion of Sensitive Information into Log File Vulnerability in SINUMERIK systems
|
2024-09-10 |
| HIGH | 7.5 |
SSA-088132 V1.1 (Last Update: 2024-09-10): Denial of Service Vulnerability in the OPC UA Server Implementations of Several Industrial Products
SIEMENS-SSA-088132 · 1 CVE
|
SSA-088132 V1.1 (Last Update: 2024-09-10): Denial of Service Vulnerability in the OPC UA Server Implementations of Several Industrial Products
|
2024-09-10 |
| MEDIUM | 6.7 |
Siemens TIA Project-Server formerly known as TIA Multiuser Server
ICSA-23-047-07 · 1 CVE
|
TIA Multiuser Server V14,
TIA Multiuser Server V15,
TIA Project-Server
+2 more
|
2024-08-13 |
| HIGH | 7.3 |
Siemens TIA Portal
ICSA-23-103-04 · 1 CVE
|
Totally Integrated Automation Portal (TIA Portal) V15,
Totally Integrated Automation Portal (TIA Portal) V16,
Totally Integrated Automation Portal (TIA Portal) V17
+1 more
|
2024-08-13 |
| HIGH | 7.3 |
Siemens SCALANCE Switch Families
ICSA-23-103-13 · 2 CVEs
|
SCALANCE X200-4P IRT (6GK5200-4AH00-2BA3),
SCALANCE X201-3P IRT (6GK5201-3BH00-2BA3),
SCALANCE X201-3P IRT PRO (6GK5201-3JR00-2BA6)
+104 more
|
2024-08-13 |
| HIGH | 7.8 |
Siemens Parasolid and Teamcenter Visualization
ICSA-23-222-06 · 9 CVEs
|
Parasolid V34.1,
Parasolid V35.0,
Parasolid V35.1
+9 more
|
2024-08-13 |
| CRITICAL | 9.1 |
Siemens Desigo CC product family
ICSA-23-320-03 · 3 CVEs
|
Desigo CC family V5.0,
Desigo CC family V5.1,
Desigo CC family V6
+2 more
|
2024-08-13 |
| HIGH | 7.2 |
Siemens SCALANCE and RUGGEDCOM M-800/S615 Family
ICSA-23-348-12 · 3 CVEs
|
RUGGEDCOM RM1224 LTE(4G) EU (6GK6108-4AM00-2BA2),
RUGGEDCOM RM1224 LTE(4G) NAM (6GK6108-4AM00-2DA2),
SCALANCE M804PB (6GK5804-0AP00-2AA2)
+17 more
|
2024-08-13 |
| CRITICAL | 9.1 |
Siemens RUGGEDCOM and SCALANCE M-800/S615 Family
ICSA-23-348-14 · 7 CVEs
|
RUGGEDCOM RM1224 LTE(4G) EU (6GK6108-4AM00-2BA2),
RUGGEDCOM RM1224 LTE(4G) EU (6GK6108-4AM00-2BA2),
RUGGEDCOM RM1224 LTE(4G) NAM (6GK6108-4AM00-2DA2)
+37 more
|
2024-08-13 |
| HIGH | 7.8 |
Siemens Teamcenter Visualization and JT2Go
ICSA-24-165-08 · 3 CVEs
|
JT2Go,
Teamcenter Visualization V14.2,
Teamcenter Visualization V14.3
+1 more
|
2024-08-13 |
| HIGH | 7.8 |
Siemens Teamcenter Visualization and JT2Go
ICSA-24-193-03 · 1 CVE
|
JT2Go,
Teamcenter Visualization V14.1,
Teamcenter Visualization V14.2
+2 more
|
2024-08-13 |
| HIGH | 7.2 |
Siemens SCALANCE M-800, RUGGEDCOM RM1224
ICSA-24-228-01 · 4 CVEs
|
RUGGEDCOM RM1224 LTE(4G) EU (6GK6108-4AM00-2BA2),
RUGGEDCOM RM1224 LTE(4G) NAM (6GK6108-4AM00-2DA2),
SCALANCE M804PB (6GK5804-0AP00-2AA2)
+21 more
|
2024-08-13 |
| HIGH | 8.0 |
Siemens INTRALOG WMS
ICSA-24-228-02 · 2 CVEs
|
INTRALOG WMS
|
2024-08-13 |
| HIGH | 7.8 |
Siemens Teamcenter Visualization and JT2Go
ICSA-24-228-03 · 3 CVEs
|
JT2Go,
Teamcenter Visualization V14.2,
Teamcenter Visualization V14.3
+1 more
|
2024-08-13 |
| HIGH | 7.5 |
Siemens SINEC Traffic Analyzer
ICSA-24-228-04 · 5 CVEs
|
SINEC Traffic Analyzer (6GK8822-1BG01-0BA0)
|
2024-08-13 |
| CRITICAL | 9.1 |
Siemens SINEC NMS
ICSA-24-228-06 · 29 CVEs
|
SINEC NMS
|
2024-08-13 |
| MEDIUM | 6.7 |
Siemens Location Intelligence
ICSA-24-228-07 · 3 CVEs
|
Location Intelligence family
|
2024-08-13 |
| HIGH | 7.8 |
Siemens COMOS
ICSA-24-228-08 · 2 CVEs
|
COMOS
|
2024-08-13 |
| HIGH | 7.8 |
Siemens NX
ICSA-24-228-09 · 1 CVE
|
NX
|
2024-08-13 |
| MEDIUM | 0 |
SSA-856475 V1.0: X_T File Parsing Vulnerabilities in Teamcenter Visualization and JT2Go
SIEMENS-SSA-856475
|
SSA-856475 V1.0: X_T File Parsing Vulnerabilities in Teamcenter Visualization and JT2Go
|
2024-08-13 |
| MEDIUM | 0 |
SSA-813746 V1.1 (Last Update: 2024-08-13): BadAlloc Vulnerabilities in SCALANCE X-200, X-200IRT, and X-300 Switch Families
SIEMENS-SSA-813746
|
SSA-813746 V1.1 (Last Update: 2024-08-13): BadAlloc Vulnerabilities in SCALANCE X-200, X-200IRT, and X-300 Switch Families
|
2024-08-13 |
| MEDIUM | 0 |
SSA-784301 V1.0: Multiple Vulnerabilities in SINEC NMS Before V3.0
SIEMENS-SSA-784301
|
SSA-784301 V1.0: Multiple Vulnerabilities in SINEC NMS Before V3.0
|
2024-08-13 |
| MEDIUM | 0 |
SSA-771940 V1.1 (Last Update: 2024-08-13): X_T File Parsing Vulnerabilities in Teamcenter Visualization and JT2Go
SIEMENS-SSA-771940
|
SSA-771940 V1.1 (Last Update: 2024-08-13): X_T File Parsing Vulnerabilities in Teamcenter Visualization and JT2Go
|
2024-08-13 |
| MEDIUM | 0 |
SSA-722010 V1.1 (Last Update: 2024-08-13): Datalogics File Parsing Vulnerability in Teamcenter Visualization and JT2Go
SIEMENS-SSA-722010
|
SSA-722010 V1.1 (Last Update: 2024-08-13): Datalogics File Parsing Vulnerability in Teamcenter Visualization and JT2Go
|
2024-08-13 |
| MEDIUM | 0 |
SSA-720392 V1.0: Multiple Vulnerabilities in Third-Party Components in Location Intelligence Before V4.4
SIEMENS-SSA-720392
|
SSA-720392 V1.0: Multiple Vulnerabilities in Third-Party Components in Location Intelligence Before V4.4
|
2024-08-13 |
| MEDIUM | 0 |
SSA-716317 V1.0: Multiple Vulnerability in SINEC Traffic Analyzer Before V2.0
SIEMENS-SSA-716317
|
SSA-716317 V1.0: Multiple Vulnerability in SINEC Traffic Analyzer Before V2.0
|
2024-08-13 |
| MEDIUM | 0 |
SSA-659443 V1.0: Local Code Execution Vulnerabilities in COMOS Before V10.5
SIEMENS-SSA-659443
|
SSA-659443 V1.0: Local Code Execution Vulnerabilities in COMOS Before V10.5
|
2024-08-13 |
| MEDIUM | 0 |
SSA-640968 V1.2 (Last Update: 2024-08-13): Untrusted Search Path Vulnerability in TIA Project-Server formerly known as TIA Multiuser Server
SIEMENS-SSA-640968
|
SSA-640968 V1.2 (Last Update: 2024-08-13): Untrusted Search Path Vulnerability in TIA Project-Server formerly known as TIA Multiuser Server
|
2024-08-13 |
| CRITICAL | 9.8 |
SSA-625850 V1.1 (Last Update: 2024-08-13): Multiple WIBU Systems CodeMeter Vulnerabilities Affecting the Desigo CC Product Family and SENTRON powermanager
SIEMENS-SSA-625850 · 1 CVE
|
SSA-625850 V1.1 (Last Update: 2024-08-13): Multiple WIBU Systems CodeMeter Vulnerabilities Affecting the Desigo CC Product Family and SENTRON powermanager
|
2024-08-13 |
| MEDIUM | 0 |
SSA-417547 V1.0: Multiple Vulnerabilities in INTRALOG WMS Before V4
SIEMENS-SSA-417547
|
SSA-417547 V1.0: Multiple Vulnerabilities in INTRALOG WMS Before V4
|
2024-08-13 |
| MEDIUM | 0 |
SSA-407785 V1.3 (Last Update: 2024-08-13): Multiple X_T File Parsing Vulnerabilities in Parasolid and Teamcenter Visualization
SIEMENS-SSA-407785
|
SSA-407785 V1.3 (Last Update: 2024-08-13): Multiple X_T File Parsing Vulnerabilities in Parasolid and Teamcenter Visualization
|
2024-08-13 |
| MEDIUM | 0 |
SSA-357412 V1.0: PRT File Parsing Vulnerability in NX Before V2406.3000
SIEMENS-SSA-357412
|
SSA-357412 V1.0: PRT File Parsing Vulnerability in NX Before V2406.3000
|
2024-08-13 |
| MEDIUM | 0 |
SSA-180704 V1.1 (Last Update: 2024-08-13): Multiple Vulnerabilities in SCALANCE M-800 Family Before V8.0
SIEMENS-SSA-180704
|
SSA-180704 V1.1 (Last Update: 2024-08-13): Multiple Vulnerabilities in SCALANCE M-800 Family Before V8.0
|
2024-08-13 |
| MEDIUM | 0 |
SSA-116924 V1.2 (Last Update: 2024-08-13): Path Traversal Vulnerability in TIA Portal
SIEMENS-SSA-116924
|
SSA-116924 V1.2 (Last Update: 2024-08-13): Path Traversal Vulnerability in TIA Portal
|
2024-08-13 |
| MEDIUM | 0 |
SSA-087301 V1.0: Multiple Vulnerabilities in SCALANCE M-800 Family Before V8.1
SIEMENS-SSA-087301
|
SSA-087301 V1.0: Multiple Vulnerabilities in SCALANCE M-800 Family Before V8.1
|
2024-08-13 |
| MEDIUM | 0 |
SSA-068047 V1.1 (Last Update: 2024-08-13): Multiple Vulnerabilities in SCALANCE M-800 Family Before V7.2.2
SIEMENS-SSA-068047
|
SSA-068047 V1.1 (Last Update: 2024-08-13): Multiple Vulnerabilities in SCALANCE M-800 Family Before V7.2.2
|
2024-08-13 |
| MEDIUM | 0 |
SSA-857368 V1.0: Multiple Vulnerabilities in Omnivise T3000
SIEMENS-SSA-857368
|
SSA-857368 V1.0: Multiple Vulnerabilities in Omnivise T3000
|
2024-08-02 |
| CRITICAL | 9.8 |
Siemens SICAM Products
ICSA-24-207-01 · 2 CVEs
|
CPCI85 Central Processing/Communication,
SICORE Base system
|
2024-07-22 |
| MEDIUM | 0 |
SSA-071402 V1.0: Multiple Vulnerabilities in SICAM Products
SIEMENS-SSA-071402
|
SSA-071402 V1.0: Multiple Vulnerabilities in SICAM Products
|
2024-07-22 |
| HIGH | 7.5 |
Siemens Industrial Products (Update S)
ICSA-17-339-01 · 1 CVE
|
Development/Evaluation Kits for PROFINET IO: DK Standard Ethernet Controller,
Development/Evaluation Kits for PROFINET IO: EK-ERTEC 200,
Development/Evaluation Kits for PROFINET IO: EK-ERTEC 200P
+83 more
|
2024-07-09 |
| HIGH | 7.5 |
Siemens PROFINET Devices (Update K)
ICSA-19-283-02 · 1 CVE
|
Development/Evaluation Kits for PROFINET IO: DK Standard Ethernet Controller,
Development/Evaluation Kits for PROFINET IO: EK-ERTEC 200,
Development/Evaluation Kits for PROFINET IO: EK-ERTEC 200P
+117 more
|
2024-07-09 |
| HIGH | 7.5 |
Siemens PROFINET-IO Stack (Update H)
ICSA-20-042-04 · 1 CVE
|
Development/Evaluation Kits for PROFINET IO: DK Standard Ethernet Controller,
Development/Evaluation Kits for PROFINET IO: EK-ERTEC 200,
Development/Evaluation Kits for PROFINET IO: EK-ERTEC 200P
+195 more
|
2024-07-09 |
| CRITICAL | 9.8 |
Siemens OpenSSL Affecting Industrial Products
ICSA-22-167-17 · 29 CVEs
|
SINEMA Remote Connect Server
|
2024-07-09 |
| HIGH | 7.8 |
Siemens SINEC NMS
ICSA-23-285-08 · 2 CVEs
|
SINEC NMS
|
2024-07-09 |
| CRITICAL | 10.0 |
Siemens RUGGEDCOM APE1808 devices configured with Palo Alto Networks Virtual NGFW
ICSA-24-116-03 · 1 CVE
|
RUGGEDCOM APE1808
|
2024-07-09 |
| CRITICAL | 9.8 |
Siemens TIM 1531 IRC
ICSA-24-165-06 · 32 CVEs
|
SIPLUS TIM 1531 IRC (6AG1543-1MX00-7XE0),
TIM 1531 IRC (6GK7543-1MX00-0XE0)
|
2024-07-09 |
| CRITICAL | 9.6 |
Siemens Remote Connect Server
ICSA-24-193-01 · 13 CVEs
|
SINEMA Remote Connect Server
|
2024-07-09 |
| HIGH | 7.8 |
Siemens Simcenter Femap
ICSA-24-193-04 · 15 CVEs
|
Simcenter Femap
|
2024-07-09 |
| HIGH | 7.5 |
Siemens Mendix Encryption Module
ICSA-24-193-08 · 1 CVE
|
Mendix Encryption
|
2024-07-09 |
| HIGH | 8.8 |
Siemens SINEMA Remote Connect Server
ICSA-24-193-09 · 2 CVEs
|
SINEMA Remote Connect Server
|
2024-07-09 |
| HIGH | 7.8 |
Siemens JT Open and PLM XML SDK
ICSA-24-193-10 · 2 CVEs
|
JT Open,
PLM XML SDK
|
2024-07-09 |
| MEDIUM | 6.3 |
Siemens TIA Portal and SIMATIC STEP 7
ICSA-24-193-12 · 1 CVE
|
SIMATIC STEP 7 Safety V18
|
2024-07-09 |
| MEDIUM | 6.5 |
Siemens TIA Portal, SIMATIC, and SIRIUS
ICSA-24-193-13 · 1 CVE
|
SIMATIC STEP 7 Safety V16,
SIMATIC STEP 7 Safety V17,
SIMATIC STEP 7 Safety V18
+24 more
|
2024-07-09 |
| HIGH | 7.8 |
Siemens SINEMA Remote Connect Server
ICSA-24-193-15 · 3 CVEs
|
SINEMA Remote Connect Client
|
2024-07-09 |
| HIGH | 7.8 |
Siemens SIMATIC STEP 7 (TIA Portal)
ICSA-24-193-17 · 1 CVE
|
SIMATIC PCS neo V4.0,
SIMATIC STEP 7 V16,
SIMATIC STEP 7 V17
+1 more
|
2024-07-09 |
| MEDIUM | 0 |
SSA-998949 V1.0: Hard-coded Default Encryption Key in Mendix Encryption Module V10.0.0 and V10.0.1
SIEMENS-SSA-998949
|
SSA-998949 V1.0: Hard-coded Default Encryption Key in Mendix Encryption Module V10.0.0 and V10.0.1
|
2024-07-09 |
| MEDIUM | 0 |
SSA-928781 V1.0: Multiple Vulnerabilities in SINEMA Remote Connect Server before V3.2 HF1
SIEMENS-SSA-928781
|
SSA-928781 V1.0: Multiple Vulnerabilities in SINEMA Remote Connect Server before V3.2 HF1
|
2024-07-09 |
| MEDIUM | 0 |
SSA-868282 V1.0: Multiple Vulnerabilities in SINEMA Remote Connect Client before V3.2 HF1
SIEMENS-SSA-868282
|
SSA-868282 V1.0: Multiple Vulnerabilities in SINEMA Remote Connect Client before V3.2 HF1
|
2024-07-09 |
| MEDIUM | 0 |
SSA-825651 V1.0: Deserialization Vulnerability in SIMATIC STEP 7 (TIA Portal) before V18 Update 2
SIEMENS-SSA-825651
|
SSA-825651 V1.0: Deserialization Vulnerability in SIMATIC STEP 7 (TIA Portal) before V18 Update 2
|
2024-07-09 |
| MEDIUM | 0 |
SSA-824889 V1.0: XML File Parsing Vulnerabilities in JT Open and PLM XML SDK
SIEMENS-SSA-824889
|
SSA-824889 V1.0: XML File Parsing Vulnerabilities in JT Open and PLM XML SDK
|
2024-07-09 |
| MEDIUM | 0 |
SSA-780073 V2.4 (Last Update: 2024-07-09): Denial of Service Vulnerability in PROFINET Devices via DCE-RPC Packets
SIEMENS-SSA-780073
|
SSA-780073 V2.4 (Last Update: 2024-07-09): Denial of Service Vulnerability in PROFINET Devices via DCE-RPC Packets
|
2024-07-09 |
| MEDIUM | 0 |
SSA-779936 V1.0: Catalog-Profile Deserialization Vulnerability in Siemens Engineering Platforms before V19
SIEMENS-SSA-779936
|
SSA-779936 V1.0: Catalog-Profile Deserialization Vulnerability in Siemens Engineering Platforms before V19
|
2024-07-09 |
| CRITICAL | 10.0 |
SSA-750274 V1.1 (Last Update: 2024-07-09): Impact of CVE-2024-3400 on RUGGEDCOM APE1808 devices configured with Palo Alto Networks Virtual NGFW
SIEMENS-SSA-750274 · 1 CVE
|
SSA-750274 V1.1 (Last Update: 2024-07-09): Impact of CVE-2024-3400 on RUGGEDCOM APE1808 devices configured with Palo Alto Networks Virtual NGFW
|
2024-07-09 |
| CRITICAL | 9.8 |
SSA-484086 V1.1 (Last Update: 2024-07-09): Multiple Vulnerabilities in SINEMA Remote Connect Server before V3.1
SIEMENS-SSA-484086 · 12 CVEs
|
SSA-484086 V1.1 (Last Update: 2024-07-09): Multiple Vulnerabilities in SINEMA Remote Connect Server before V3.1
|
2024-07-09 |
| MEDIUM | 0 |
SSA-473245 V2.7 (Last Update: 2024-07-09): Denial of Service Vulnerability in Profinet Devices
SIEMENS-SSA-473245
|
SSA-473245 V2.7 (Last Update: 2024-07-09): Denial of Service Vulnerability in Profinet Devices
|
2024-07-09 |
| MEDIUM | 0 |
SSA-381581 V1.0: Multiple Vulnerabilities in SINEMA Remote Connect Server before V3.2 SP1
SIEMENS-SSA-381581
|
SSA-381581 V1.0: Multiple Vulnerabilities in SINEMA Remote Connect Server before V3.2 SP1
|
2024-07-09 |
| MEDIUM | 0 |
SSA-346262 V3.3 (Last Update: 2024-07-09): Denial of Service Vulnerability in SNMP Interface of Industrial Products
SIEMENS-SSA-346262
|
SSA-346262 V3.3 (Last Update: 2024-07-09): Denial of Service Vulnerability in SNMP Interface of Industrial Products
|
2024-07-09 |
| MEDIUM | 0 |
SSA-337522 V1.1 (Last Update: 2024-07-09): Multiple Vulnerabilities in TIM 1531 IRC before V2.4.8
SIEMENS-SSA-337522
|
SSA-337522 V1.1 (Last Update: 2024-07-09): Multiple Vulnerabilities in TIM 1531 IRC before V2.4.8
|
2024-07-09 |
| MEDIUM | 0 |
SSA-313039 V1.0: Deserialization Vulnerability in STEP 7 Safety before V19
SIEMENS-SSA-313039
|
SSA-313039 V1.0: Deserialization Vulnerability in STEP 7 Safety before V19
|
2024-07-09 |
| MEDIUM | 0 |
SSA-160243 V1.1 (Last Update: 2024-07-09): Multiple Vulnerabilities in SINEC NMS before V2.0
SIEMENS-SSA-160243
|
SSA-160243 V1.1 (Last Update: 2024-07-09): Multiple Vulnerabilities in SINEC NMS before V2.0
|
2024-07-09 |
| MEDIUM | 0 |
SSA-064222 V1.0: Multiple File Parsing Vulnerabilities in Simcenter Femap before V2406
SIEMENS-SSA-064222
|
SSA-064222 V1.0: Multiple File Parsing Vulnerabilities in Simcenter Femap before V2406
|
2024-07-09 |
| HIGH | 7.8 |
Siemens SICAM PAS/PQS
ICSA-23-285-06 · 2 CVEs
|
SICAM PAS/PQS,
SICAM PAS/PQS
|
2024-06-11 |
| HIGH | 7.8 |
Siemens SICAM Products
ICSA-24-137-02 · 3 CVEs
|
CPC80 Central Processing/Communication,
CPCI85 Central Processing/Communication,
OPUPI0 AMQP/MQTT
+1 more
|
2024-06-11 |
| CRITICAL | 10.0 |
Siemens SIMATIC RTLS Locating Manager
ICSA-24-137-07 · 21 CVEs
|
SIMATIC RTLS Locating Manager (6GT2780-0DA00),
SIMATIC RTLS Locating Manager (6GT2780-0DA10),
SIMATIC RTLS Locating Manager (6GT2780-0DA20)
+4 more
|
2024-06-11 |
| MEDIUM | 5.9 |
Siemens Mendix Applications
ICSA-24-165-01 · 1 CVE
|
Mendix Applications using Mendix 9,
Mendix Applications using Mendix 10,
Mendix Applications using Mendix 10 (V10.6)
|
2024-06-11 |
| HIGH | 8.2 |
Siemens SIMATIC S7-200 SMART Devices
ICSA-24-165-02 · 1 CVE
|
SIMATIC S7-200 SMART CPU CR40 (6ES7288-1CR40-0AA0),
SIMATIC S7-200 SMART CPU CR60 (6ES7288-1CR60-0AA0),
SIMATIC S7-200 SMART CPU SR20 (6ES7288-1SR20-0AA0)
+15 more
|
2024-06-11 |
| LOW | 3.3 |
Siemens TIA Administrator
ICSA-24-165-03 · 1 CVE
|
TIA Administrator
|
2024-06-11 |
| HIGH | 8.2 |
Siemens ST7 ScadaConnect
ICSA-24-165-04 · 37 CVEs
|
ST7 ScadaConnect (6NH7997-5DA10-0AA0)
|
2024-06-11 |
| MEDIUM | 5.6 |
Siemens SITOP UPS1600
ICSA-24-165-05 · 3 CVEs
|
SITOP UPS1600 10 A Ethernet/ PROFINET (6EP4134-3AB00-2AY0),
SITOP UPS1600 20 A Ethernet/ PROFINET (6EP4136-3AB00-2AY0),
SITOP UPS1600 40 A Ethernet/ PROFINET (6EP4137-3AB00-2AY0)
+1 more
|
2024-06-11 |
| CRITICAL | 9.3 |
Siemens PowerSys
ICSA-24-165-07 · 1 CVE
|
PowerSys
|
2024-06-11 |
| HIGH | 7.8 |
Siemens SICAM AK3/BC/TM
ICSA-24-165-09 · 1 CVE
|
CPCX26 Central Processing/Communication,
ETA4 Ethernet Interface IEC60870-5-104,
ETA5 Ethernet Int. 1x100TX IEC61850 Ed.2
+1 more
|
2024-06-11 |
| CRITICAL | 9.8 |
Siemens SIMATIC and SIPLUS
ICSA-24-165-10 · 23 CVEs
|
SIMATIC CP 1542SP-1 (6GK7542-6UX00-0XE0),
SIMATIC CP 1542SP-1 IRC (6GK7542-6VX00-0XE0),
SIMATIC CP 1543SP-1 (6GK7543-6WX00-0XE0)
+3 more
|
2024-06-11 |
| HIGH | 7.5 |
Siemens SCALANCE XM-400, XR-500
ICSA-24-165-11 · 8 CVEs
|
SCALANCE XM408-4C (6GK5408-4GP00-2AM2),
SCALANCE XM408-4C (L3 int.) (6GK5408-4GQ00-2AM2),
SCALANCE XM408-8C (6GK5408-8GS00-2AM2)
+23 more
|
2024-06-11 |
| MEDIUM | 0 |
SSA-900277 V1.0: MODEL File Parsing Vulnerability in Tecnomatix Plant Simulation before V2302.0012 and V2024.0001
SIEMENS-SSA-900277
|
SSA-900277 V1.0: MODEL File Parsing Vulnerability in Tecnomatix Plant Simulation before V2302.0012 and V2024.0001
|
2024-06-11 |
| MEDIUM | 0 |
SSA-879734 V1.0: Multiple Vulnerabilities in SCALANCE XM-400/XR-500 before V6.6.1
SIEMENS-SSA-879734
|
SSA-879734 V1.0: Multiple Vulnerabilities in SCALANCE XM-400/XR-500 before V6.6.1
|
2024-06-11 |
| MEDIUM | 0 |
SSA-871704 V1.1 (Last Update: 2024-06-11): Multiple Vulnerabilities in SICAM Products
SIEMENS-SSA-871704
|
SSA-871704 V1.1 (Last Update: 2024-06-11): Multiple Vulnerabilities in SICAM Products
|
2024-06-11 |
| MEDIUM | 0 |
SSA-625862 V1.0: Multiple Vulnerabilities in Third-Party Components in SIMATIC CP 1542SP-1 and CP 1543SP-1 before V2.3
SIEMENS-SSA-625862
|
SSA-625862 V1.0: Multiple Vulnerabilities in Third-Party Components in SIMATIC CP 1542SP-1 and CP 1543SP-1 before V2.3
|
2024-06-11 |
| MEDIUM | 0 |
SSA-620338 V1.0: Buffer Overflow Vulnerability in SICAM AK3 / BC / TM
SIEMENS-SSA-620338
|
SSA-620338 V1.0: Buffer Overflow Vulnerability in SICAM AK3 / BC / TM
|
2024-06-11 |
| MEDIUM | 0 |
SSA-540640 V1.0: Improper Privilege Management Vulnerability in Mendix Runtime
SIEMENS-SSA-540640
|
SSA-540640 V1.0: Improper Privilege Management Vulnerability in Mendix Runtime
|
2024-06-11 |
| MEDIUM | 0 |
SSA-481506 V1.0: Information Disclosure Vulnerability in SIMATIC S7-200 SMART Devices
SIEMENS-SSA-481506
|
SSA-481506 V1.0: Information Disclosure Vulnerability in SIMATIC S7-200 SMART Devices
|
2024-06-11 |
| MEDIUM | 0 |
SSA-341067 V1.0: Multiple vulnerabilities in third-party components in ST7 ScadaConnect before V1.1
SIEMENS-SSA-341067
|
SSA-341067 V1.0: Multiple vulnerabilities in third-party components in ST7 ScadaConnect before V1.1
|
2024-06-11 |
| MEDIUM | 0 |
SSA-319319 V1.0: Denial of Service Vulnerability in TIA Administrator
SIEMENS-SSA-319319
|
SSA-319319 V1.0: Denial of Service Vulnerability in TIA Administrator
|
2024-06-11 |
| MEDIUM | 0 |
SSA-238730 V1.0: Out-of-Bounds Write Vulnerabilities in SITOP UPS1600 before V2.5.4
SIEMENS-SSA-238730
|
SSA-238730 V1.0: Out-of-Bounds Write Vulnerabilities in SITOP UPS1600 before V2.5.4
|
2024-06-11 |
| MEDIUM | 0 |
SSA-093430 V1.1 (Last Update: 2024-06-11): Multiple Vulnerabilities in SIMATIC RTLS Locating Manager before V3.0
SIEMENS-SSA-093430
|
SSA-093430 V1.1 (Last Update: 2024-06-11): Multiple Vulnerabilities in SIMATIC RTLS Locating Manager before V3.0
|
2024-06-11 |
| MEDIUM | 0 |
SSA-035466 V1.1 (Last Update: 2024-06-11): Incorrect Permission Assignment in SICAM PAS/PQS
SIEMENS-SSA-035466
|
SSA-035466 V1.1 (Last Update: 2024-06-11): Incorrect Permission Assignment in SICAM PAS/PQS
|
2024-06-11 |
| MEDIUM | 0 |
SSA-024584 V1.0: Authentication Bypass Vulnerability in PowerSys before V3.11
SIEMENS-SSA-024584
|
SSA-024584 V1.0: Authentication Bypass Vulnerability in PowerSys before V3.11
|
2024-06-11 |
| CRITICAL | 10.0 |
Siemens SIMATIC STEP 7 and Derived Products
ICSA-23-166-08 · 1 CVE
|
SIMATIC PCS 7,
SIMATIC S7-PM,
SIMATIC S7-PM
+1 more
|
2024-05-14 |
| CRITICAL | 9.0 |
Siemans WIBU Systems CodeMeter
ICSA-23-257-06 · 1 CVE
|
PSS(R)CAPE V14,
PSS(R)CAPE V15,
PSS(R)E V34
+11 more
|
2024-05-14 |
| HIGH | 7.1 |
Siemens RUGGEDCOM APE180
ICSA-23-285-07 · 7 CVEs
|
RUGGEDCOM APE1808
|
2024-05-14 |
| HIGH | 8.1 |
Siemens RUGGEDCOM APE1808 Devices
ICSA-23-320-14 · 3 CVEs
|
RUGGEDCOM APE1808
|
2024-05-14 |
| HIGH | 7.5 |
Siemens Simantic S7-1500 CPU family
ICSA-23-348-09 · 1 CVE
|
SIMATIC Drive Controller CPU 1504D TF (6ES7615-4DF10-0AB0),
SIMATIC Drive Controller CPU 1507D TF (6ES7615-7DF10-0AB0),
SIMATIC ET 200SP Open Controller CPU 1515SP PC2 (incl. SIPLUS variants)
+148 more
|
2024-05-14 |
| MEDIUM | 5.3 |
Siemens RUGGEDCOM APE1808
ICSA-24-046-08 · 1 CVE
|
RUGGEDCOM APE1808
|
2024-05-14 |
| HIGH | 7.8 |
Siemens Polarion ALM
ICSA-24-046-14 · 2 CVEs
|
Polarion ALM
|
2024-05-14 |
| HIGH | 7.8 |
Siemens Solid Edge
ICSA-24-074-02 · 1 CVE
|
Solid Edge SE2023,
Solid Edge SE2024
|
2024-05-14 |
| CRITICAL | 10.0 |
Siemens Sinteso EN Cerberus PRO EN Fire Protection Systems
ICSA-24-074-09 · 3 CVEs
|
Cerberus PRO EN Engineering Tool,
Cerberus PRO EN Engineering Tool,
Cerberus PRO EN Fire Panel FC72x IP6
+29 more
|
2024-05-14 |
| HIGH | 7.8 |
Siemens Parasolid
ICSA-24-137-01 · 3 CVEs
|
Parasolid V35.1,
Parasolid V36.0,
Parasolid V36.1
|
2024-05-14 |
| HIGH | 7.8 |
Siemens Teamcenter Visualization and JT2Go
ICSA-24-137-03 · 2 CVEs
|
JT2Go,
Teamcenter Visualization V14.1,
Teamcenter Visualization V14.2
+2 more
|
2024-05-14 |
| MEDIUM | 6.5 |
Siemens Polarion ALM
ICSA-24-137-04 · 1 CVE
|
Polarion ALM
|
2024-05-14 |
| HIGH | 7.8 |
Siemens Simcenter Nastran
ICSA-24-137-05 · 1 CVE
|
Simcenter Nastran 2306,
Simcenter Nastran 2312,
Simcenter Nastran 2406
|
2024-05-14 |
| CRITICAL | 10.0 |
Siemens SIMATIC CN 4100
ICSA-24-137-06 · 3 CVEs
|
SIMATIC CN 4100
|
2024-05-14 |
| HIGH | 7.8 |
Siemens PS/IGES Parasolid Translator Component
ICSA-24-137-08 · 11 CVEs
|
PS/IGES Parasolid Translator Component
|
2024-05-14 |
| HIGH | 7.8 |
Siemens Solid Edge
ICSA-24-137-09 · 8 CVEs
|
Solid Edge,
Solid Edge,
Solid Edge
|
2024-05-14 |
| CRITICAL | 9.8 |
Siemens RUGGEDCOM CROSSBOW
ICSA-24-137-10 · 9 CVEs
|
RUGGEDCOM CROSSBOW
|
2024-05-14 |
| HIGH | 7.5 |
Siemens RUGGEDCOM APE1808
ICSA-24-137-11 · 2 CVEs
|
RUGGEDCOM APE1808LNX (6GK6015-0AL20-0GH0),
RUGGEDCOM APE1808LNX CC (6GK6015-0AL20-0GH1)
|
2024-05-14 |
| CRITICAL | 10.0 |
Siemens Desigo Fire Safety UL and Cerberus PRO UL Fire Protection Systems
ICSA-24-137-12 · 3 CVEs
|
Cerberus PRO UL Compact Panel FC922/924,
Cerberus PRO UL Engineering Tool,
Cerberus PRO UL X300 Cloud Distribution
+3 more
|
2024-05-14 |
| MEDIUM | 0 |
SSA-976324 V1.0: Multiple IGS File Parsing Vulnerabilities in PS/IGES Parasolid Translator Component before V27.1.215
SIEMENS-SSA-976324
|
SSA-976324 V1.0: Multiple IGS File Parsing Vulnerabilities in PS/IGES Parasolid Translator Component before V27.1.215
|
2024-05-14 |
| MEDIUM | 0 |
SSA-968170 V1.3 (Last Update: 2024-05-14): Remote Code Execution Vulnerability in SIMATIC STEP 7 V5.x and Derived Products
SIEMENS-SSA-968170
|
SSA-968170 V1.3 (Last Update: 2024-05-14): Remote Code Execution Vulnerability in SIMATIC STEP 7 V5.x and Derived Products
|
2024-05-14 |
| CRITICAL | 10.0 |
SSA-953710 V1.0: Vulnerabilities in the Network Communication Stack in Desigo Fire Safety UL and Cerberus PRO UL Fire Protection Systems
SIEMENS-SSA-953710 · 3 CVEs
|
SSA-953710 V1.0: Vulnerabilities in the Network Communication Stack in Desigo Fire Safety UL and Cerberus PRO UL Fire Protection Systems
|
2024-05-14 |
| MEDIUM | 0 |
SSA-925850 V1.0: Improper Access Control in Polarion ALM
SIEMENS-SSA-925850
|
SSA-925850 V1.0: Improper Access Control in Polarion ALM
|
2024-05-14 |
| MEDIUM | 0 |
SSA-923361 V1.0: MODEL File Parsing Vulnerability in Tecnomatix Plant Simulation before V2302.0011
SIEMENS-SSA-923361
|
SSA-923361 V1.0: MODEL File Parsing Vulnerability in Tecnomatix Plant Simulation before V2302.0011
|
2024-05-14 |
| MEDIUM | 0 |
SSA-916916 V1.0: Security Vulnerabilities Fixed in RUGGEDCOM CROSSBOW V5.5
SIEMENS-SSA-916916
|
SSA-916916 V1.0: Security Vulnerabilities Fixed in RUGGEDCOM CROSSBOW V5.5
|
2024-05-14 |
| MEDIUM | 0 |
SSA-871717 V1.2 (Last Update: 2024-05-14): Multiple Vulnerabilities in Polarion ALM
SIEMENS-SSA-871717
|
SSA-871717 V1.2 (Last Update: 2024-05-14): Multiple Vulnerabilities in Polarion ALM
|
2024-05-14 |
| MEDIUM | 0 |
SSA-665034 V1.1 (Last Update: 2024-05-14): Vulnerability in Nozomi Guardian/CMC before 23.3.0 on RUGGEDCOM APE1808 devices
SIEMENS-SSA-665034
|
SSA-665034 V1.1 (Last Update: 2024-05-14): Vulnerability in Nozomi Guardian/CMC before 23.3.0 on RUGGEDCOM APE1808 devices
|
2024-05-14 |
| MEDIUM | 0 |
SSA-661579 V1.0: Multiple File Parsing Vulnerabilities in Teamcenter Visualization and JT2Go
SIEMENS-SSA-661579
|
SSA-661579 V1.0: Multiple File Parsing Vulnerabilities in Teamcenter Visualization and JT2Go
|
2024-05-14 |
| MEDIUM | 0 |
SSA-647455 V1.2 (Last Update: 2024-05-14): Multiple Vulnerabilities in Nozomi Guardian/CMC before 22.6.2 on RUGGEDCOM APE1808 devices
SIEMENS-SSA-647455
|
SSA-647455 V1.2 (Last Update: 2024-05-14): Multiple Vulnerabilities in Nozomi Guardian/CMC before 22.6.2 on RUGGEDCOM APE1808 devices
|
2024-05-14 |
| MEDIUM | 0 |
SSA-592380 V1.2 (Last Update: 2024-05-14): Denial of Service Vulnerability in SIMATIC S7-1500 CPUs and related products
SIEMENS-SSA-592380
|
SSA-592380 V1.2 (Last Update: 2024-05-14): Denial of Service Vulnerability in SIMATIC S7-1500 CPUs and related products
|
2024-05-14 |
| MEDIUM | 0 |
SSA-589937 V1.0: Multiple Memory Corruption Vulnerabilities in Solid Edge
SIEMENS-SSA-589937
|
SSA-589937 V1.0: Multiple Memory Corruption Vulnerabilities in Solid Edge
|
2024-05-14 |
| MEDIUM | 0 |
SSA-489698 V1.0: X_T File Parsing Vulnerability in Parasolid
SIEMENS-SSA-489698
|
SSA-489698 V1.0: X_T File Parsing Vulnerability in Parasolid
|
2024-05-14 |
| MEDIUM | 0 |
SSA-382651 V1.1 (Last Update: 2024-05-14): File Parsing Vulnerability in Solid Edge
SIEMENS-SSA-382651
|
SSA-382651 V1.1 (Last Update: 2024-05-14): File Parsing Vulnerability in Solid Edge
|
2024-05-14 |
| MEDIUM | 0 |
SSA-292063 V1.1 (Last Update: 2024-05-14): Multiple Vulnerabilities in Nozomi Guardian/CMC before 22.6.3 and 23.1.0 on RUGGEDCOM APE1808 devices
SIEMENS-SSA-292063
|
SSA-292063 V1.1 (Last Update: 2024-05-14): Multiple Vulnerabilities in Nozomi Guardian/CMC before 22.6.3 and 23.1.0 on RUGGEDCOM APE1808 devices
|
2024-05-14 |
| MEDIUM | 0 |
SSA-292022 V1.0: Vulnerability in Nozomi Guardian/CMC before 23.4.1 on RUGGEDCOM APE1808 devices
SIEMENS-SSA-292022
|
SSA-292022 V1.0: Vulnerability in Nozomi Guardian/CMC before 23.4.1 on RUGGEDCOM APE1808 devices
|
2024-05-14 |
| MEDIUM | 0 |
SSA-273900 V1.0: Multiple Vulnerabilities in SIMATIC CN 4100 before V3.0
SIEMENS-SSA-273900
|
SSA-273900 V1.0: Multiple Vulnerabilities in SIMATIC CN 4100 before V3.0
|
2024-05-14 |
| MEDIUM | 0 |
SSA-258494 V1.0: Stack Overflow Vulnerability in Simcenter Nastran before 2406.90
SIEMENS-SSA-258494
|
SSA-258494 V1.0: Stack Overflow Vulnerability in Simcenter Nastran before 2406.90
|
2024-05-14 |
| CRITICAL | 9.8 |
SSA-240541 V1.3 (Last Update: 2024-05-14): WIBU Systems CodeMeter Heap Buffer Overflow Vulnerability in Industrial Products
SIEMENS-SSA-240541 · 1 CVE
|
SSA-240541 V1.3 (Last Update: 2024-05-14): WIBU Systems CodeMeter Heap Buffer Overflow Vulnerability in Industrial Products
|
2024-05-14 |
| CRITICAL | 10.0 |
SSA-225840 V1.1 (Last Update: 2024-05-14): Vulnerabilities in the Network Communication Stack in Sinteso EN and Cerberus PRO EN Fire Protection Systems
SIEMENS-SSA-225840 · 3 CVEs
|
SSA-225840 V1.1 (Last Update: 2024-05-14): Vulnerabilities in the Network Communication Stack in Sinteso EN and Cerberus PRO EN Fire Protection Systems
|
2024-05-14 |
| MEDIUM | 0 |
SSA-046364 V1.0: X_T File Parsing Vulnerabilities in Parasolid
SIEMENS-SSA-046364
|
SSA-046364 V1.0: X_T File Parsing Vulnerabilities in Parasolid
|
2024-05-14 |
| HIGH | 7.4 |
Siemens SCALANCE W1750D Devices
ICSA-23-075-04 · 4 CVEs
|
SCALANCE W1750D (JP) (6GK5750-2HX01-1AD0),
SCALANCE W1750D (ROW) (6GK5750-2HX01-1AA0),
SCALANCE W1750D (USA) (6GK5750-2HX01-1AB0)
|
2024-04-09 |
| CRITICAL | 9.8 |
Siemens SIMATIC S7-1500 TM MFP BIOS
ICSA-23-166-10 · 72 CVEs
|
SIMATIC S7-1500 TM MFP - BIOS
|
2024-04-09 |
| CRITICAL | 9.8 |
Siemens SIMATIC S7-1500 TM MFP Linux Kernel
ICSA-23-166-11 · 168 CVEs
|
SIMATIC S7-1500 TM MFP - GNU/Linux subsystem
|
2024-04-09 |
| HIGH | 8.4 |
Siemens SCALANCE W700
ICSA-23-320-05 · 3 CVEs
|
SCALANCE W721-1 RJ45 (6GK5721-1FC00-0AA0),
SCALANCE W721-1 RJ45 (6GK5721-1FC00-0AB0),
SCALANCE W722-1 RJ45 (6GK5722-1FC00-0AA0)
+61 more
|
2024-04-09 |
| CRITICAL | 9.8 |
Siemens SCALANCE W1750D
ICSA-24-046-01 · 14 CVEs
|
SCALANCE W1750D (JP) (6GK5750-2HX01-1AD0),
SCALANCE W1750D (ROW) (6GK5750-2HX01-1AA0),
SCALANCE W1750D (USA) (6GK5750-2HX01-1AB0)
|
2024-04-09 |
| CRITICAL | 9.8 |
Siemens Scalance W1750D
ICSA-24-102-05 · 3 CVEs
|
SCALANCE W1750D (JP) (6GK5750-2HX01-1AD0),
SCALANCE W1750D (ROW) (6GK5750-2HX01-1AA0),
SCALANCE W1750D (USA) (6GK5750-2HX01-1AB0)
|
2024-04-09 |
| HIGH | 7.8 |
Siemens Parasolid
ICSA-24-102-06 · 3 CVEs
|
Parasolid V35.1,
Parasolid V36.0,
Parasolid V36.1
|
2024-04-09 |
| HIGH | 7.6 |
Siemens SINEC NMS
ICSA-24-102-07 · 2 CVEs
|
SINEC NMS
|
2024-04-09 |
| MEDIUM | 0 |
SSA-885980 V1.0: Multiple Vulnerabilities in Scalance W1750D
SIEMENS-SSA-885980
|
SSA-885980 V1.0: Multiple Vulnerabilities in Scalance W1750D
|
2024-04-09 |
| MEDIUM | 0 |
SSA-831302 V1.4 (Last Update: 2024-04-09): Vulnerabilities in the BIOS of the SIMATIC S7-1500 TM MFP before V1.3.0
SIEMENS-SSA-831302
|
SSA-831302 V1.4 (Last Update: 2024-04-09): Vulnerabilities in the BIOS of the SIMATIC S7-1500 TM MFP before V1.3.0
|
2024-04-09 |
| MEDIUM | 0 |
SSA-794697 V1.8 (Last Update: 2024-04-09): Vulnerabilities in the additional GNU/Linux subsystem of the SIMATIC S7-1500 TM MFP before V1.1
SIEMENS-SSA-794697
|
SSA-794697 V1.8 (Last Update: 2024-04-09): Vulnerabilities in the additional GNU/Linux subsystem of the SIMATIC S7-1500 TM MFP before V1.1
|
2024-04-09 |
| MEDIUM | 0 |
SSA-716164 V1.1 (Last Update: 2024-04-09): Multiple Vulnerabilities in Scalance W1750D
SIEMENS-SSA-716164
|
SSA-716164 V1.1 (Last Update: 2024-04-09): Multiple Vulnerabilities in Scalance W1750D
|
2024-04-09 |
| MEDIUM | 0 |
SSA-556635 V1.0: Multiple Vulnerabilities in Telecontrol Server Basic before V3.1.2.0
SIEMENS-SSA-556635
|
SSA-556635 V1.0: Multiple Vulnerabilities in Telecontrol Server Basic before V3.1.2.0
|
2024-04-09 |
| MEDIUM | 0 |
SSA-457702 V1.1 (Last Update: 2024-04-09): Wi-Fi Encryption Bypass Vulnerabilities in SCALANCE W700 Product Family
SIEMENS-SSA-457702
|
SSA-457702 V1.1 (Last Update: 2024-04-09): Wi-Fi Encryption Bypass Vulnerabilities in SCALANCE W700 Product Family
|
2024-04-09 |
| MEDIUM | 0 |
SSA-222019 V1.0: X_T File Parsing Vulnerabilities in Parasolid
SIEMENS-SSA-222019
|
SSA-222019 V1.0: X_T File Parsing Vulnerabilities in Parasolid
|
2024-04-09 |
| MEDIUM | 0 |
SSA-203374 V1.2 (Last Update: 2024-04-09): Multiple OpenSSL Vulnerabilities in SCALANCE W1750D Devices
SIEMENS-SSA-203374
|
SSA-203374 V1.2 (Last Update: 2024-04-09): Multiple OpenSSL Vulnerabilities in SCALANCE W1750D Devices
|
2024-04-09 |
| MEDIUM | 0 |
SSA-128433 V1.0: Multiple Vulnerabilities in SINEC NMS before V2.0 SP2
SIEMENS-SSA-128433
|
SSA-128433 V1.0: Multiple Vulnerabilities in SINEC NMS before V2.0 SP2
|
2024-04-09 |
| CRITICAL | 9.8 |
Siemens SIMATIC
ICSA-24-074-07 · 157 CVEs
|
SIMATIC RF160B (6GT2003-0FA00)
|
2024-03-14 |
| CRITICAL | 9.1 |
Siemens SCALANCE Family Products
ICSA-23-320-08 · 13 CVEs
|
SCALANCE XB205-3 (SC, PN) (6GK5205-3BB00-2AB2),
SCALANCE XB205-3 (ST, E/IP) (6GK5205-3BB00-2TB2),
SCALANCE XB205-3 (ST, E/IP) (6GK5205-3BD00-2TB2)
+68 more
|
2024-03-12 |
| HIGH | 7.5 |
Siemens Web Server of Industrial Products
ICSA-23-348-08 · 1 CVE
|
SIMATIC CP 1242-7 V2 (incl. SIPLUS variants),
SIMATIC CP 1243-1 (incl. SIPLUS variants),
SIMATIC CP 1243-1 DNP3 (incl. SIPLUS variants)
+6 more
|
2024-03-12 |
| HIGH | 7.8 |
Siemens Simcenter Femap
ICSA-24-046-10 · 7 CVEs
|
Simcenter Femap,
Simcenter Femap,
Simcenter Femap
|
2024-03-12 |
| CRITICAL | 9.8 |
Siemens SINEC NMS
ICSA-24-046-15 · 62 CVEs
|
SINEC NMS
|
2024-03-12 |
| CRITICAL | 9.8 |
Siemens SINEMA Remote Connect Server
ICSA-24-074-03 · 2 CVEs
|
SINEMA Remote Connect Server,
SINEMA Remote Connect Server
|
2024-03-12 |
| HIGH | 7.6 |
Siemens SINEMA Remote Connect Client
ICSA-24-074-04 · 1 CVE
|
SINEMA Remote Connect Client
|
2024-03-12 |
| HIGH | 7.5 |
Siemens SENTRON
ICSA-24-074-06 · 1 CVE
|
SENTRON 3KC ATC6 Expansion Module Ethernet (3KC9000-8TL75)
|
2024-03-12 |
| MEDIUM | 5.5 |
Siemens Siveillance Control
ICSA-24-074-10 · 1 CVE
|
Siveillance Control
|
2024-03-12 |
| MEDIUM | 0 |
SSA-943925 V1.1 (Last Update: 2024-03-12): Multiple Vulnerabilities in SINEC NMS before V2.0 SP1
SIEMENS-SSA-943925
|
SSA-943925 V1.1 (Last Update: 2024-03-12): Multiple Vulnerabilities in SINEC NMS before V2.0 SP1
|
2024-03-12 |
| MEDIUM | 0 |
SSA-918992 V1.0: Unused HTTP Service on SENTRON 3KC ATC6 Ethernet Module
SIEMENS-SSA-918992
|
SSA-918992 V1.0: Unused HTTP Service on SENTRON 3KC ATC6 Ethernet Module
|
2024-03-12 |
| MEDIUM | 0 |
SSA-770721 V1.0: Multiple Vulnerabilities in SIMATIC RF160B before V2.2
SIEMENS-SSA-770721
|
SSA-770721 V1.0: Multiple Vulnerabilities in SIMATIC RF160B before V2.2
|
2024-03-12 |
| MEDIUM | 0 |
SSA-699386 V1.2 (Last Update: 2024-03-12): Multiple Vulnerabilities in SCALANCE XB-200 / XC-200 / XP-200 / XF-200BA / XR-300WG Family before V4.5
SIEMENS-SSA-699386
|
SSA-699386 V1.2 (Last Update: 2024-03-12): Multiple Vulnerabilities in SCALANCE XB-200 / XC-200 / XP-200 / XF-200BA / XR-300WG Family before V4.5
|
2024-03-12 |
| MEDIUM | 0 |
SSA-693975 V1.1 (Last Update: 2024-03-12): Denial-of-Service Vulnerability in the Web Server of Industrial Products
SIEMENS-SSA-693975
|
SSA-693975 V1.1 (Last Update: 2024-03-12): Denial-of-Service Vulnerability in the Web Server of Industrial Products
|
2024-03-12 |
| MEDIUM | 0 |
SSA-653855 V1.0: Information Disclosure vulnerability in SINEMA Remote Connect Client before V3.1 SP1
SIEMENS-SSA-653855
|
SSA-653855 V1.0: Information Disclosure vulnerability in SINEMA Remote Connect Client before V3.1 SP1
|
2024-03-12 |
| MEDIUM | 0 |
SSA-576771 V1.0: Multiple Vulnerabilities in SINEMA Remote Connect Server before V3.2
SIEMENS-SSA-576771
|
SSA-576771 V1.0: Multiple Vulnerabilities in SINEMA Remote Connect Server before V3.2
|
2024-03-12 |
| MEDIUM | 0 |
SSA-145196 V1.0: Authorization Bypass Vulnerability in Siveillance Control
SIEMENS-SSA-145196
|
SSA-145196 V1.0: Authorization Bypass Vulnerability in Siveillance Control
|
2024-03-12 |
| MEDIUM | 0 |
SSA-000072 V1.1 (Last Update: 2024-03-12): Multiple File Parsing Vulnerabilities in Simcenter Femap
SIEMENS-SSA-000072
|
SSA-000072 V1.1 (Last Update: 2024-03-12): Multiple File Parsing Vulnerabilities in Simcenter Femap
|
2024-03-12 |
| HIGH | 7.5 |
Siemens Industrial Products Intel CPUs (Update F)
ICSA-21-222-05 · 12 CVEs
|
SIMATIC Drive Controller CPU 1504D TF (6ES7615-4DF10-0AB0),
SIMATIC Drive Controller CPU 1507D TF (6ES7615-7DF10-0AB0),
SIMATIC ET 200SP Open Controller CPU 1515SP PC2 (incl. SIPLUS variants)
+22 more
|
2024-02-13 |
| HIGH | 7.5 |
Siemens SIDIS Prime
ICSA-24-046-02 · 5 CVEs
|
SIDIS Prime
|
2024-02-13 |
| HIGH | 7.5 |
Siemens SIMATIC RTLS Gateways
ICSA-24-046-03 · 1 CVE
|
SIMATIC RTLS Gateway RTLS4030G, CMIIT (6GT2701-5DB23),
SIMATIC RTLS Gateway RTLS4030G, ETSI (6GT2701-5DB03),
SIMATIC RTLS Gateway RTLS4030G, FCC (6GT2701-5DB13)
+2 more
|
2024-02-13 |
| HIGH | 7.5 |
Siemens CP343-1 Devices
ICSA-24-046-04 · 1 CVE
|
SIMATIC CP 343-1 (6GK7343-1EX30-0XE0),
SIMATIC CP 343-1 Lean (6GK7343-1CX10-0XE0),
SIPLUS NET CP 343-1 (6AG1343-1EX30-7XE0)
+1 more
|
2024-02-13 |
| CRITICAL | 9.8 |
Siemens Location Intelligence
ICSA-24-046-05 · 1 CVE
|
Location Intelligence Perpetual Large (9DE5110-8CA13-1AX0),
Location Intelligence Perpetual Medium (9DE5110-8CA12-1AX0),
Location Intelligence Perpetual Non-Prod (9DE5110-8CA10-1AX0)
+5 more
|
2024-02-13 |
| HIGH | 7.8 |
Siemens Unicam FX
ICSA-24-046-06 · 1 CVE
|
Unicam FX
|
2024-02-13 |
| HIGH | 7.8 |
Siemens Tecnomatix Plant Simulation
ICSA-24-046-07 · 10 CVEs
|
Tecnomatix Plant Simulation V2201,
Tecnomatix Plant Simulation V2201,
Tecnomatix Plant Simulation V2302
+1 more
|
2024-02-13 |
| CRITICAL | 9.1 |
Siemens SCALANCE SC-600 Family
ICSA-24-046-09 · 8 CVEs
|
SCALANCE SC622-2C (6GK5622-2GS00-2AC2),
SCALANCE SC622-2C (6GK5622-2GS00-2AC2),
SCALANCE SC622-2C (6GK5622-2GS00-2AC2)
+15 more
|
2024-02-13 |
| CRITICAL | 9.8 |
Siemens SCALANCE XCM-/XRM-300
ICSA-24-046-11 · 160 CVEs
|
SCALANCE XCH328 (6GK5328-4TS01-2EC2),
SCALANCE XCM324 (6GK5324-8TS01-2AC2),
SCALANCE XCM328 (6GK5328-4TS01-2AC2)
+8 more
|
2024-02-13 |
| HIGH | 7.8 |
Siemens Parasolid
ICSA-24-046-13 · 2 CVEs
|
Parasolid V35.0,
Parasolid V35.0,
Parasolid V35.1
+2 more
|
2024-02-13 |
| MEDIUM | 0 |
SSA-806742 V1.0: Multiple Vulnerabilities in SCALANCE XCM-/XRM-300 before V2.4
SIEMENS-SSA-806742
|
SSA-806742 V1.0: Multiple Vulnerabilities in SCALANCE XCM-/XRM-300 before V2.4
|
2024-02-13 |
| MEDIUM | 0 |
SSA-797296 V1.0: XT File Parsing Vulnerability in Parasolid
SIEMENS-SSA-797296
|
SSA-797296 V1.0: XT File Parsing Vulnerability in Parasolid
|
2024-02-13 |
| MEDIUM | 0 |
SSA-647068 V1.0: Ripple20 in SIMATIC RTLS Gateways
SIEMENS-SSA-647068
|
SSA-647068 V1.0: Ripple20 in SIMATIC RTLS Gateways
|
2024-02-13 |
| MEDIUM | 0 |
SSA-602936 V1.0: Multiple Vulnerabilities in SCALANCE SC-600 Family before V3.1
SIEMENS-SSA-602936
|
SSA-602936 V1.0: Multiple Vulnerabilities in SCALANCE SC-600 Family before V3.1
|
2024-02-13 |
| MEDIUM | 0 |
SSA-580228 V1.0: Use of Hard-Coded Credentials Vulnerability in Location Intelligence before V4.3
SIEMENS-SSA-580228
|
SSA-580228 V1.0: Use of Hard-Coded Credentials Vulnerability in Location Intelligence before V4.3
|
2024-02-13 |
| MEDIUM | 0 |
SSA-543502 V1.0: Local Privilege Escalation Vulnerability in Unicam FX
SIEMENS-SSA-543502
|
SSA-543502 V1.0: Local Privilege Escalation Vulnerability in Unicam FX
|
2024-02-13 |
| MEDIUM | 0 |
SSA-516818 V1.0: TCP Sequence Number Validation Vulnerability in the TCP/IP Stack of CP343-1 Devices
SIEMENS-SSA-516818
|
SSA-516818 V1.0: TCP Sequence Number Validation Vulnerability in the TCP/IP Stack of CP343-1 Devices
|
2024-02-13 |
| MEDIUM | 0 |
SSA-309571 V2.0 (Last Update: 2024-02-13): IPU 2021.1 Vulnerabilities in Siemens Industrial Products using Intel CPUs (June 2021)
SIEMENS-SSA-309571
|
SSA-309571 V2.0 (Last Update: 2024-02-13): IPU 2021.1 Vulnerabilities in Siemens Industrial Products using Intel CPUs (June 2021)
|
2024-02-13 |
| MEDIUM | 0 |
SSA-108696 V1.0: Multiple Vulnerabilities in SIDIS Prime before V4.0.400
SIEMENS-SSA-108696
|
SSA-108696 V1.0: Multiple Vulnerabilities in SIDIS Prime before V4.0.400
|
2024-02-13 |
| MEDIUM | 0 |
SSA-017796 V1.0: Multiple File Parsing Vulnerabilities in Tecnomatix Plant Simulation
SIEMENS-SSA-017796
|
SSA-017796 V1.0: Multiple File Parsing Vulnerabilities in Tecnomatix Plant Simulation
|
2024-02-13 |
| CRITICAL | 9.9 |
ICSA-20-070-01_Siemens and PKE SiNVR/SiVMS Video Server (Update B)
ICSA-20-070-01 · 12 CVEs
|
Control Center Server (CCS),
Control Center Server (CCS)
|
2024-01-09 |
| MEDIUM | 5.9 |
Siemens OpenSSL Vulnerabilities in Industrial Products
ICSA-22-104-05 · 1 CVE
|
RUGGEDCOM CROSSBOW Station Access Controller (SAC),
RUGGEDCOM RM1224 LTE(4G) EU (6GK6108-4AM00-2BA2),
RUGGEDCOM RM1224 LTE(4G) NAM (6GK6108-4AM00-2DA2)
+92 more
|
2024-01-09 |
| CRITICAL | 9.9 |
Siemens SICAM Q100
ICSA-22-314-11 · 4 CVEs
|
POWER METER SICAM Q100 (7KG9501-0AA01-0AA1),
POWER METER SICAM Q100 (7KG9501-0AA01-2AA1),
POWER METER SICAM Q100 (7KG9501-0AA31-0AA1)
+1 more
|
2024-01-09 |
| MEDIUM | 5.5 |
Siemens SICAM Q100 Devices
ICSA-23-348-13 · 2 CVEs
|
POWER METER SICAM Q100 (7KG9501-0AA01-0AA1),
POWER METER SICAM Q100 (7KG9501-0AA01-2AA1),
POWER METER SICAM Q100 (7KG9501-0AA31-0AA1)
+1 more
|
2024-01-09 |
| HIGH | 7.8 |
Siemens Teamcenter Visualization and JT2Go
ICSA-24-011-06 · 4 CVEs
|
JT2Go,
Teamcenter Visualization V13.3,
Teamcenter Visualization V14.1
+2 more
|
2024-01-09 |
| HIGH | 7.8 |
Siemens Spectrum Power 7
ICSA-24-011-07 · 1 CVE
|
Spectrum Power 7
|
2024-01-09 |
| MEDIUM | 6.6 |
Siemens SICAM A8000
ICSA-24-011-08 · 1 CVE
|
CP-8031 MASTER MODULE (6MF2803-1AA00),
CP-8050 MASTER MODULE (6MF2805-0AA00)
|
2024-01-09 |
| CRITICAL | 9.8 |
Siemens SIMATIC CN 4100
ICSA-24-011-09 · 3 CVEs
|
SIMATIC CN 4100
|
2024-01-09 |
| CRITICAL | 10.0 |
Siemens SIMATIC
ICSA-24-011-10 · 1 CVE
|
SIMATIC IPC647E,
SIMATIC IPC847E,
SIMATIC IPC1047E
|
2024-01-09 |
| HIGH | 7.8 |
Siemens Solid Edge
ICSA-24-011-11 · 11 CVEs
|
Solid Edge SE2023
|
2024-01-09 |
| HIGH | 7.5 |
SSA-844761 V1.3 (Last Update: 2024-01-09): Multiple Vulnerabilities in SiNVR/SiVMS Video Server
SIEMENS-SSA-844761 · 5 CVEs
|
SSA-844761 V1.3 (Last Update: 2024-01-09): Multiple Vulnerabilities in SiNVR/SiVMS Video Server
|
2024-01-09 |
| MEDIUM | 0 |
SSA-794653 V1.0: Multiple File Parsing Vulnerabilities in Teamcenter Visualization and JT2Go
SIEMENS-SSA-794653
|
SSA-794653 V1.0: Multiple File Parsing Vulnerabilities in Teamcenter Visualization and JT2Go
|
2024-01-09 |
| MEDIUM | 0 |
SSA-786191 V1.0: Local Privilege Escalation Vulnerability in Spectrum Power 7
SIEMENS-SSA-786191
|
SSA-786191 V1.0: Local Privilege Escalation Vulnerability in Spectrum Power 7
|
2024-01-09 |
| MEDIUM | 0 |
SSA-777015 V1.0: Multiple Vulnerabilities in SIMATIC CN 4100 before V2.7
SIEMENS-SSA-777015
|
SSA-777015 V1.0: Multiple Vulnerabilities in SIMATIC CN 4100 before V2.7
|
2024-01-09 |
| MEDIUM | 0 |
SSA-772220 V2.3 (Last Update: 2024-01-09): OpenSSL Vulnerabilities in Industrial Products
SIEMENS-SSA-772220
|
SSA-772220 V2.3 (Last Update: 2024-01-09): OpenSSL Vulnerabilities in Industrial Products
|
2024-01-09 |
| CRITICAL | 9.9 |
SSA-761844 V1.1 (Last Update: 2024-01-09): Multiple Vulnerabilities in Control Center Server (CCS)
SIEMENS-SSA-761844 · 12 CVEs
|
SSA-761844 V1.1 (Last Update: 2024-01-09): Multiple Vulnerabilities in Control Center Server (CCS)
|
2024-01-09 |
| CRITICAL | 9.8 |
SSA-761617 V1.2 (Last Update: 2024-01-09): Authentication Bypass and Information Disclosure Vulnerabilities in SiNVR/SiVMS Video Server
SIEMENS-SSA-761617 · 2 CVEs
|
SSA-761617 V1.2 (Last Update: 2024-01-09): Authentication Bypass and Information Disclosure Vulnerabilities in SiNVR/SiVMS Video Server
|
2024-01-09 |
| MEDIUM | 0 |
SSA-702935 V1.0: Redfish Server Vulnerability in maxView Storage Manager
SIEMENS-SSA-702935
|
SSA-702935 V1.0: Redfish Server Vulnerability in maxView Storage Manager
|
2024-01-09 |
| MEDIUM | 0 |
SSA-589891 V1.0: Multiple PAR File Parsing Vulnerabilities in Solid Edge
SIEMENS-SSA-589891
|
SSA-589891 V1.0: Multiple PAR File Parsing Vulnerabilities in Solid Edge
|
2024-01-09 |
| MEDIUM | 0 |
SSA-583634 V1.0: Command Injection Vulnerability in the CPCI85 Firmware of SICAM A8000 Devices
SIEMENS-SSA-583634
|
SSA-583634 V1.0: Command Injection Vulnerability in the CPCI85 Firmware of SICAM A8000 Devices
|
2024-01-09 |
| MEDIUM | 0 |
SSA-570294 V1.1 (Last Update: 2024-01-09): Multiple Vulnerabilities in SICAM Q100 Before V2.50
SIEMENS-SSA-570294
|
SSA-570294 V1.1 (Last Update: 2024-01-09): Multiple Vulnerabilities in SICAM Q100 Before V2.50
|
2024-01-09 |
| MEDIUM | 0 |
SSA-480095 V1.1 (Last Update: 2024-01-09): Vulnerabilities in the Web Interface of SICAM Q100 Devices before V2.60
SIEMENS-SSA-480095
|
SSA-480095 V1.1 (Last Update: 2024-01-09): Vulnerabilities in the Web Interface of SICAM Q100 Devices before V2.60
|
2024-01-09 |
| HIGH | 7.8 |
Siemens RUGGEDCOM ROS (Update A)
ICSA-19-344-03 · 2 CVEs
|
RUGGEDCOM RMC8388 V4.X,
RUGGEDCOM RMC8388 V5.X,
RUGGEDCOM RMC8388NC V4.X
+29 more
|
2023-12-12 |
| HIGH | 8.4 |
Siemens LOGO! Soft Comfort
ICSA-21-103-09 · 2 CVEs
|
LOGO! Soft Comfort
|
2023-12-12 |
| HIGH | 7.5 |
Siemens SIMATIC and SIPLUS Products
ICSA-23-348-05 · 2 CVEs
|
SIMATIC S7-400 CPU 412-2 PN V7 (6ES7412-2EK07-0AB0),
SIMATIC S7-400 CPU 414-3 PN/DP V7 (6ES7414-3EM07-0AB0),
SIMATIC S7-400 CPU 414F-3 PN/DP V7 (6ES7414-3FM07-0AB0)
+6 more
|
2023-12-12 |
| HIGH | 7.5 |
Siemens OPC UA Implementation in SINUMERIK ONE and SINUMERIK MC
ICSA-23-348-06 · 1 CVE
|
SINUMERIK MC,
SINUMERIK ONE
|
2023-12-12 |
| MEDIUM | 4.2 |
Siemens SIMATIC STEP 7 (TIA Portal)
ICSA-23-348-07 · 1 CVE
|
SIMATIC STEP 7 (TIA Portal)
|
2023-12-12 |
| HIGH | 8.1 |
Siemens SINEC INS
ICSA-23-348-16 · 7 CVEs
|
SINEC INS
|
2023-12-12 |
| MEDIUM | 0 |
SSA-983300 V1.1 (Last Update: 2023-12-12): Vulnerabilities in LOGO! Soft Comfort
SIEMENS-SSA-983300
|
SSA-983300 V1.1 (Last Update: 2023-12-12): Vulnerabilities in LOGO! Soft Comfort
|
2023-12-12 |
| MEDIUM | 0 |
SSA-892915 V1.0: Multiple Denial of Service Vulnerabilities in the Webserver of Industrial Products
SIEMENS-SSA-892915
|
SSA-892915 V1.0: Multiple Denial of Service Vulnerabilities in the Webserver of Industrial Products
|
2023-12-12 |
| MEDIUM | 0 |
SSA-887801 V1.0: Information Disclosure Vulnerability in SIMATIC STEP 7 (TIA Portal)
SIEMENS-SSA-887801
|
SSA-887801 V1.0: Information Disclosure Vulnerability in SIMATIC STEP 7 (TIA Portal)
|
2023-12-12 |
| MEDIUM | 0 |
SSA-618620 V1.2 (Last Update: 2023-12-12): Vulnerabilities in Boot Loader (U-Boot) of RUGGEDCOM ROS Devices
SIEMENS-SSA-618620
|
SSA-618620 V1.2 (Last Update: 2023-12-12): Vulnerabilities in Boot Loader (U-Boot) of RUGGEDCOM ROS Devices
|
2023-12-12 |
| MEDIUM | 0 |
SSA-118850 V1.0: Denial of Service Vulnerability in the OPC UA Implementation in SINUMERIK ONE and SINUMERIK MC
SIEMENS-SSA-118850
|
SSA-118850 V1.0: Denial of Service Vulnerability in the OPC UA Implementation in SINUMERIK ONE and SINUMERIK MC
|
2023-12-12 |
| MEDIUM | 0 |
SSA-077170 V1.0: Multiple Vulnerabilities in SINEC INS before V1.0 SP2 Update 2
SIEMENS-SSA-077170
|
SSA-077170 V1.0: Multiple Vulnerabilities in SINEC INS before V1.0 SP2 Update 2
|
2023-12-12 |
| HIGH | 7.8 |
Siemens SIMATIC WinCC
ICSA-22-132-06 · 1 CVE
|
SIMATIC PCS 7 V8.2,
SIMATIC PCS 7 V9.0,
SIMATIC PCS 7 V9.1
+5 more
|
2023-11-14 |
| HIGH | 7.8 |
Siemens Solid Edge
ICSA-23-166-09 · 1 CVE
|
Solid Edge SE2023
|
2023-11-14 |
| MEDIUM | 6.8 |
Siemens Mendix Runtime
ICSA-23-320-04 · 1 CVE
|
Mendix Applications using Mendix 7,
Mendix Applications using Mendix 8,
Mendix Applications using Mendix 9
+1 more
|
2023-11-14 |
| HIGH | 8.0 |
Siemens SIMATIC PCS neo
ICSA-23-320-06 · 4 CVEs
|
SIMATIC PCS neo
|
2023-11-14 |
| HIGH | 7.5 |
Siemens OPC UA Modeling Editor (SiOME)
ICSA-23-320-07 · 1 CVE
|
Siemens OPC UA Modelling Editor (SiOME)
|
2023-11-14 |
| CRITICAL | 9.8 |
Siemens COMOS
ICSA-23-320-09 · 16 CVEs
|
COMOS,
COMOS
|
2023-11-14 |
| CRITICAL | 9.8 |
Siemens SIPROTEC 4 7SJ66
ICSA-23-320-10 · 9 CVEs
|
SIPROTEC 4 7SJ66
|
2023-11-14 |
| HIGH | 7.5 |
Siemens Mendix Studio Pro
ICSA-23-320-11 · 1 CVE
|
Mendix Studio Pro 7,
Mendix Studio Pro 8,
Mendix Studio Pro 9
+1 more
|
2023-11-14 |
| CRITICAL | 9.8 |
Siemens PNI
ICSA-23-320-12 · 13 CVEs
|
SINEC PNI
|
2023-11-14 |
| CRITICAL | 9.8 |
Siemens SIMATIC MV500
ICSA-23-320-13 · 8 CVEs
|
SIMATIC MV500 family
|
2023-11-14 |
| MEDIUM | 0 |
SSA-975766 V1.1 (Last Update: 2023-11-14): Open Design Alliance Drawings SDK Vulnerability in Solid Edge
SIEMENS-SSA-975766
|
SSA-975766 V1.1 (Last Update: 2023-11-14): Open Design Alliance Drawings SDK Vulnerability in Solid Edge
|
2023-11-14 |
| MEDIUM | 0 |
SSA-887122 V1.0: X_T File Parsing Vulnerabilities in Simcenter Femap
SIEMENS-SSA-887122
|
SSA-887122 V1.0: X_T File Parsing Vulnerabilities in Simcenter Femap
|
2023-11-14 |
| MEDIUM | 0 |
SSA-617233 V1.0: Urgent/11 TCP/IP Stack Vulnerabilities in SIPROTEC 4 7SJ66 Devices
SIEMENS-SSA-617233
|
SSA-617233 V1.0: Urgent/11 TCP/IP Stack Vulnerabilities in SIPROTEC 4 7SJ66 Devices
|
2023-11-14 |
| MEDIUM | 0 |
SSA-478780 V1.0: Multiple WRL File Parsing Vulnerabilities in Tecnomatix Plant Simulation
SIEMENS-SSA-478780
|
SSA-478780 V1.0: Multiple WRL File Parsing Vulnerabilities in Tecnomatix Plant Simulation
|
2023-11-14 |
| MEDIUM | 0 |
SSA-456933 V1.0: Multiple Vulnerabilities in SIMATIC PCS neo before V4.1
SIEMENS-SSA-456933
|
SSA-456933 V1.0: Multiple Vulnerabilities in SIMATIC PCS neo before V4.1
|
2023-11-14 |
| MEDIUM | 0 |
SSA-363107 V1.4 (Last Update: 2023-11-14): An Improper Initialization Vulnerability Affects SIMATIC WinCC Kiosk Mode
SIEMENS-SSA-363107
|
SSA-363107 V1.4 (Last Update: 2023-11-14): An Improper Initialization Vulnerability Affects SIMATIC WinCC Kiosk Mode
|
2023-11-14 |
| HIGH | 8.8 |
SSA-268517 V1.0: Code Execution Vulnerability (libwebp CVE-2023-4863) in Mendix Studio Pro
SIEMENS-SSA-268517 · 1 CVE
|
SSA-268517 V1.0: Code Execution Vulnerability (libwebp CVE-2023-4863) in Mendix Studio Pro
|
2023-11-14 |
| MEDIUM | 0 |
SSA-197270 V1.0: Information Disclosure Vulnerability in Siemens OPC UA Modeling Editor (SiOME)
SIEMENS-SSA-197270
|
SSA-197270 V1.0: Information Disclosure Vulnerability in Siemens OPC UA Modeling Editor (SiOME)
|
2023-11-14 |
| MEDIUM | 0 |
SSA-150063 V1.0: Multiple Vulnerabilities in SINEC PNI before V2.0
SIEMENS-SSA-150063
|
SSA-150063 V1.0: Multiple Vulnerabilities in SINEC PNI before V2.0
|
2023-11-14 |
| MEDIUM | 0 |
SSA-137900 V1.0: Multiple Vulnerabilities in COMOS
SIEMENS-SSA-137900
|
SSA-137900 V1.0: Multiple Vulnerabilities in COMOS
|
2023-11-14 |
| MEDIUM | 0 |
SSA-099606 V1.0: Multiple Vulnerabilities in SIMATIC MV500 before V3.3.5
SIEMENS-SSA-099606
|
SSA-099606 V1.0: Multiple Vulnerabilities in SIMATIC MV500 before V3.3.5
|
2023-11-14 |
| MEDIUM | 0 |
SSA-084182 V1.0: Privilege Escalation Vulnerability in Mendix Runtime
SIEMENS-SSA-084182
|
SSA-084182 V1.0: Privilege Escalation Vulnerability in Mendix Runtime
|
2023-11-14 |
| HIGH | 7.3 |
Siemens SINEC NMS
ICSA-22-069-03 · 3 CVEs
|
SINEC NMS,
SINEC NMS,
SINEMA Server V14
|
2023-10-10 |
| MEDIUM | 6.5 |
Siemens Industrial Products with OPC UA
ICSA-22-132-08 · 1 CVE
|
SIMATIC HMI Comfort Outdoor Panels (incl. SIPLUS variants),
SIMATIC HMI Comfort Panels (incl. SIPLUS variants),
SIMATIC HMI KTP Mobile Panels KTP400F, KTP700, KTP700F, KTP900 and KTP900F
+6 more
|
2023-10-10 |
| CRITICAL | 9.1 |
Siemens SCALANCE (Update A)
ICSA-22-223-07 · 3 CVEs
|
RUGGEDCOM RM1224 LTE(4G) EU (6GK6108-4AM00-2BA2),
RUGGEDCOM RM1224 LTE(4G) NAM (6GK6108-4AM00-2DA2),
SCALANCE M804PB (6GK5804-0AP00-2AA2)
+182 more
|
2023-10-10 |
| HIGH | 8.4 |
Siemens SCALANCE W1750D
ICSA-23-131-02 · 1 CVE
|
SCALANCE W1750D (JP) (6GK5750-2HX01-1AD0),
SCALANCE W1750D (ROW) (6GK5750-2HX01-1AA0),
SCALANCE W1750D (USA) (6GK5750-2HX01-1AB0)
|
2023-10-10 |
| MEDIUM | 6.7 |
Siemens SIMATIC CP products
ICSA-23-285-01 · 2 CVEs
|
SIMATIC CP 1604 (6GK1160-4AA01),
SIMATIC CP 1616 (6GK1161-6AA02),
SIMATIC CP 1623 (6GK1162-3AA00)
+2 more
|
2023-10-10 |
| CRITICAL | 9.8 |
Siemens SCALANCE W1750D
ICSA-23-285-02 · 13 CVEs
|
SCALANCE W1750D (JP) (6GK5750-2HX01-1AD0),
SCALANCE W1750D (ROW) (6GK5750-2HX01-1AA0),
SCALANCE W1750D (USA) (6GK5750-2HX01-1AB0)
|
2023-10-10 |
| HIGH | 7.5 |
Siemens SICAM A8000 Devices
ICSA-23-285-03 · 1 CVE
|
CP-8031 MASTER MODULE (6MF2803-1AA00),
CP-8050 MASTER MODULE (6MF2805-0AA00)
|
2023-10-10 |
| HIGH | 7.8 |
Siemens Xpedition Layout Browser
ICSA-23-285-04 · 1 CVE
|
Xpedition Layout Browser
|
2023-10-10 |
| CRITICAL | 9.8 |
Siemens Simcenter Amesim
ICSA-23-285-05 · 1 CVE
|
Simcenter Amesim
|
2023-10-10 |
| CRITICAL | 9.8 |
Siemens CPCI85 Firmware of SICAM A8000 Devices
ICSA-23-285-09 · 1 CVE
|
CP-8031 MASTER MODULE (6MF2803-1AA00),
CP-8050 MASTER MODULE (6MF2805-0AA00)
|
2023-10-10 |
| HIGH | 7.8 |
Siemens Tecnomatix Plant Simulation
ICSA-23-285-10 · 9 CVEs
|
Parasolid V35.0,
Parasolid V35.1,
Parasolid V36.0
+2 more
|
2023-10-10 |
| MEDIUM | 5.3 |
Siemens Mendix Forgot Password Module
ICSA-23-285-11 · 1 CVE
|
Mendix Forgot Password (Mendix 7 compatible),
Mendix Forgot Password (Mendix 8 compatible),
Mendix Forgot Password (Mendix 9 compatible)
+1 more
|
2023-10-10 |
| MEDIUM | 0 |
SSA-843070 V1.0: Multiple Vulnerabilities in SCALANCE W1750D
SIEMENS-SSA-843070
|
SSA-843070 V1.0: Multiple Vulnerabilities in SCALANCE W1750D
|
2023-10-10 |
| MEDIUM | 0 |
SSA-829656 V1.0: Stack Overflow Vulnerability in Xpedition Layout Browser
SIEMENS-SSA-829656
|
SSA-829656 V1.0: Stack Overflow Vulnerability in Xpedition Layout Browser
|
2023-10-10 |
| MEDIUM | 0 |
SSA-784849 V1.0: Direct Memory Access Vulnerabilities in SIMATIC CP Devices
SIEMENS-SSA-784849
|
SSA-784849 V1.0: Direct Memory Access Vulnerabilities in SIMATIC CP Devices
|
2023-10-10 |
| MEDIUM | 0 |
SSA-770890 V1.0: Path Traversal Vulnerability in the Web Server of CPCI85 Firmware of SICAM A8000 Devices
SIEMENS-SSA-770890
|
SSA-770890 V1.0: Path Traversal Vulnerability in the Web Server of CPCI85 Firmware of SICAM A8000 Devices
|
2023-10-10 |
| MEDIUM | 0 |
SSA-710008 V1.4 (Last Update: 2023-10-10): Multiple Web Vulnerabilities in SCALANCE Products
SIEMENS-SSA-710008
|
SSA-710008 V1.4 (Last Update: 2023-10-10): Multiple Web Vulnerabilities in SCALANCE Products
|
2023-10-10 |
| MEDIUM | 0 |
SSA-594373 V1.0: Cross-Site-Scripting (XSS) Vulnerability in SINEMA Server V14
SIEMENS-SSA-594373
|
SSA-594373 V1.0: Cross-Site-Scripting (XSS) Vulnerability in SINEMA Server V14
|
2023-10-10 |
| MEDIUM | 0 |
SSA-524778 V1.0: File Parsing Vulnerabilities in Tecnomatix Plant Simulation
SIEMENS-SSA-524778
|
SSA-524778 V1.0: File Parsing Vulnerabilities in Tecnomatix Plant Simulation
|
2023-10-10 |
| MEDIUM | 0 |
SSA-516174 V1.1 (Last Update: 2023-10-10): Wi-Fi Encryption Bypass Vulnerabilities in SCALANCE W1750D
SIEMENS-SSA-516174
|
SSA-516174 V1.1 (Last Update: 2023-10-10): Wi-Fi Encryption Bypass Vulnerabilities in SCALANCE W1750D
|
2023-10-10 |
| MEDIUM | 0 |
SSA-386812 V1.0: Remote Code Execution Vulnerability in Simcenter Amesim before V2021.1
SIEMENS-SSA-386812
|
SSA-386812 V1.0: Remote Code Execution Vulnerability in Simcenter Amesim before V2021.1
|
2023-10-10 |
| MEDIUM | 0 |
SSA-295483 V1.0: User Enumeration Vulnerability in Mendix Forgot Password Module
SIEMENS-SSA-295483
|
SSA-295483 V1.0: User Enumeration Vulnerability in Mendix Forgot Password Module
|
2023-10-10 |
| MEDIUM | 0 |
SSA-285795 V1.4 (Last Update: 2023-10-10): Denial of Service in OPC-UA in Industrial Products
SIEMENS-SSA-285795
|
SSA-285795 V1.4 (Last Update: 2023-10-10): Denial of Service in OPC-UA in Industrial Products
|
2023-10-10 |
| MEDIUM | 0 |
SSA-250085 V1.3 (Last Update: 2023-10-10): Multiple Vulnerabilities in SINEC NMS and SINEMA Server
SIEMENS-SSA-250085
|
SSA-250085 V1.3 (Last Update: 2023-10-10): Multiple Vulnerabilities in SINEC NMS and SINEMA Server
|
2023-10-10 |
| MEDIUM | 0 |
SSA-134651 V1.0: Hard Coded SSH ID in CPCI85 Firmware of SICAM A8000 Devices
SIEMENS-SSA-134651
|
SSA-134651 V1.0: Hard Coded SSH ID in CPCI85 Firmware of SICAM A8000 Devices
|
2023-10-10 |
| MEDIUM | 5.5 |
Siemens SIMATIC PCS neo Administration Console
ICSA-23-262-01 · 1 CVE
|
SIMATIC PCS neo (Administration Console) V4.0,
SIMATIC PCS neo (Administration Console) V4.0 Update 1
|
2023-09-14 |
| MEDIUM | 0 |
SSA-646240 V1.0: Sensitive Information Disclosure in SIMATIC PCS neo Administration Console
SIEMENS-SSA-646240
|
SSA-646240 V1.0: Sensitive Information Disclosure in SIMATIC PCS neo Administration Console
|
2023-09-14 |
| MEDIUM | 0 |
SSA-357182 V1.0: Local Privilege Escalation Vulnerability in Spectrum Power 7
SIEMENS-SSA-357182
|
SSA-357182 V1.0: Local Privilege Escalation Vulnerability in Spectrum Power 7
|
2023-09-14 |
| HIGH | 7.0 |
Siemens RUGGEDCOM APE1808
ICSA-23-047-08 · 6 CVEs
|
RUGGEDCOM APE1808 ADM (6GK6015-0AL20-0GL0),
RUGGEDCOM APE1808 ADM CC (6GK6015-0AL20-0GL1),
RUGGEDCOM APE1808 CKP (6GK6015-0AL20-0GK0)
+19 more
|
2023-09-12 |
| HIGH | 8.2 |
Siemens RUGGEDCOM APE1808 Products
ICSA-23-257-04 · 23 CVEs
|
RUGGEDCOM APE1808 ADM (6GK6015-0AL20-0GL0),
RUGGEDCOM APE1808 ADM CC (6GK6015-0AL20-0GL1),
RUGGEDCOM APE1808 CKP (6GK6015-0AL20-0GK0)
+19 more
|
2023-09-12 |
| MEDIUM | 0 |
SSA-957369 V1.0: Insyde BIOS Vulnerabilities in RUGGEDCOM APE1808 Product Family
SIEMENS-SSA-957369
|
SSA-957369 V1.0: Insyde BIOS Vulnerabilities in RUGGEDCOM APE1808 Product Family
|
2023-09-12 |
| MEDIUM | 0 |
SSA-764801 V1.2 (Last Update: 2023-09-12): File Parsing Vulnerabilities in Tecnomatix Plant Simulation
SIEMENS-SSA-764801
|
SSA-764801 V1.2 (Last Update: 2023-09-12): File Parsing Vulnerabilities in Tecnomatix Plant Simulation
|
2023-09-12 |
| MEDIUM | 0 |
SSA-587547 V1.1 (Last Update: 2023-09-12): Unencrypted Storage of User Credentials in QMS Automotive
SIEMENS-SSA-587547
|
SSA-587547 V1.1 (Last Update: 2023-09-12): Unencrypted Storage of User Credentials in QMS Automotive
|
2023-09-12 |
| MEDIUM | 0 |
SSA-478960 V1.7 (Last Update: 2023-09-12): Missing CSRF Protection in the Web Server Login Page of Industrial Controllers
SIEMENS-SSA-478960
|
SSA-478960 V1.7 (Last Update: 2023-09-12): Missing CSRF Protection in the Web Server Login Page of Industrial Controllers
|
2023-09-12 |
| MEDIUM | 0 |
SSA-450613 V1.1 (Last Update: 2023-09-12): Insyde BIOS Vulnerabilities in RUGGEDCOM APE1808 Product Family
SIEMENS-SSA-450613
|
SSA-450613 V1.1 (Last Update: 2023-09-12): Insyde BIOS Vulnerabilities in RUGGEDCOM APE1808 Product Family
|
2023-09-12 |
| MEDIUM | 0 |
SSA-382653 V1.5 (Last Update: 2023-09-12): Multiple Denial of Service Vulnerabilities in Industrial Products
SIEMENS-SSA-382653
|
SSA-382653 V1.5 (Last Update: 2023-09-12): Multiple Denial of Service Vulnerabilities in Industrial Products
|
2023-09-12 |
| MEDIUM | 0 |
SSA-278349 V1.0: Multiple WRL File Parsing Vulnerabilities in Teamcenter Visualization and JT2Go
SIEMENS-SSA-278349
|
SSA-278349 V1.0: Multiple WRL File Parsing Vulnerabilities in Teamcenter Visualization and JT2Go
|
2023-09-12 |
| MEDIUM | 0 |
SSA-190839 V1.0: X_T File Parsing Vulnerabilities in Parasolid
SIEMENS-SSA-190839
|
SSA-190839 V1.0: X_T File Parsing Vulnerabilities in Parasolid
|
2023-09-12 |
| MEDIUM | 0 |
SSA-147266 V1.0: Multiple Vulnerabilities in QMS Automotive before V12.39
SIEMENS-SSA-147266
|
SSA-147266 V1.0: Multiple Vulnerabilities in QMS Automotive before V12.39
|
2023-09-12 |
| HIGH | 7.8 |
Siemens Solid Edge
ICSA-23-131-01 · 4 CVEs
|
Solid Edge SE2023,
Solid Edge SE2023
|
2023-08-08 |
| HIGH | 7.8 |
Siemens Parasolid Installer
ICSA-23-222-02 · 1 CVE
|
Parasolid V35.0,
Parasolid V35.1
|
2023-08-08 |
| HIGH | 7.8 |
Siemens Solid Edge SE2023
ICSA-23-222-11 · 9 CVEs
|
Solid Edge SE2023
|
2023-08-08 |
| MEDIUM | 0 |
SSA-975961 V1.0: Privilege Escalation Vulnerabilities in SICAM TOOLBOX II before V07.10
SIEMENS-SSA-975961
|
SSA-975961 V1.0: Privilege Escalation Vulnerabilities in SICAM TOOLBOX II before V07.10
|
2023-08-08 |
| MEDIUM | 0 |
SSA-932528 V1.1 (Last Update: 2023-08-08): Multiple File Parsing Vulnerabilities in Solid Edge
SIEMENS-SSA-932528
|
SSA-932528 V1.1 (Last Update: 2023-08-08): Multiple File Parsing Vulnerabilities in Solid Edge
|
2023-08-08 |
| CRITICAL | 9.1 |
SSA-851884 V1.2 (Last Update: 2023-08-08): Authentication Bypass Vulnerability in Mendix SAML Module
SIEMENS-SSA-851884 · 2 CVEs
|
SSA-851884 V1.2 (Last Update: 2023-08-08): Authentication Bypass Vulnerability in Mendix SAML Module
|
2023-08-08 |
| MEDIUM | 0 |
SSA-811403 V1.0: Multiple File Parsing Vulnerabilities in Solid Edge before V223 Update 7
SIEMENS-SSA-811403
|
SSA-811403 V1.0: Multiple File Parsing Vulnerabilities in Solid Edge before V223 Update 7
|
2023-08-08 |
| MEDIUM | 0 |
SSA-472630 V1.0: Security Vulnerabilities Fixed in RUGGEDCOM CROSSBOW V5.4
SIEMENS-SSA-472630
|
SSA-472630 V1.0: Security Vulnerabilities Fixed in RUGGEDCOM CROSSBOW V5.4
|
2023-08-08 |
| MEDIUM | 0 |
SSA-223771 V1.3 (Last Update: 2023-08-08): SISCO Stack Vulnerability in SIPROTEC 5 Devices
SIEMENS-SSA-223771
|
SSA-223771 V1.3 (Last Update: 2023-08-08): SISCO Stack Vulnerability in SIPROTEC 5 Devices
|
2023-08-08 |
| MEDIUM | 0 |
SSA-188491 V1.0: DLL Hijacking Vulnerabilities in Siemens Software Center
SIEMENS-SSA-188491
|
SSA-188491 V1.0: DLL Hijacking Vulnerabilities in Siemens Software Center
|
2023-08-08 |
| HIGH | 8.8 |
SSA-180579 V1.1 (Last Update: 2023-08-08): Privilege Management Vulnerability and Multiple Nucleus RTOS Vulnerabilities in APOGEE/TALON Field Panels before V3.5.5/V2.8.20
SIEMENS-SSA-180579 · 2 CVEs
|
SSA-180579 V1.1 (Last Update: 2023-08-08): Privilege Management Vulnerability and Multiple Nucleus RTOS Vulnerabilities in APOGEE/TALON Field Panels before V3.5.5/V2.8.20
|
2023-08-08 |
| MEDIUM | 0 |
SSA-131450 V1.0: File parsing Vulnerabilities in Solid Edge, JT2Go and Teamcenter Visualization
SIEMENS-SSA-131450
|
SSA-131450 V1.0: File parsing Vulnerabilities in Solid Edge, JT2Go and Teamcenter Visualization
|
2023-08-08 |
| MEDIUM | 5.3 |
SSA-116172 V1.0: Nullsoft Scriptable Install System (NSIS) Vulnerability (CVE-2023-37378) in Parasolid Installer
SIEMENS-SSA-116172 · 1 CVE
|
SSA-116172 V1.0: Nullsoft Scriptable Install System (NSIS) Vulnerability (CVE-2023-37378) in Parasolid Installer
|
2023-08-08 |
| MEDIUM | 0 |
SSA-001569 V1.0: JT File Parsing Vulnerabilities in JT Open, JT Utilities and Parasolid
SIEMENS-SSA-001569
|
SSA-001569 V1.0: JT File Parsing Vulnerabilities in JT Open, JT Utilities and Parasolid
|
2023-08-08 |
| MEDIUM | 0 |
SSA-930100 V1.1 (Last Update: 2023-07-11): Privilege Escalation Vulnerability in Simcenter STAR-CCM+
SIEMENS-SSA-930100
|
SSA-930100 V1.1 (Last Update: 2023-07-11): Privilege Escalation Vulnerability in Simcenter STAR-CCM+
|
2023-07-11 |
| MEDIUM | 0 |
SSA-924149 V1.0: Stack Overflow Vulnerability in SiPass Integrated before V2.90.3.8
SIEMENS-SSA-924149
|
SSA-924149 V1.0: Stack Overflow Vulnerability in SiPass Integrated before V2.90.3.8
|
2023-07-11 |
| MEDIUM | 0 |
SSA-561322 V1.0: Multiple Vulnerabilities in SIMATIC MV500 Devices before V3.3.4
SIEMENS-SSA-561322
|
SSA-561322 V1.0: Multiple Vulnerabilities in SIMATIC MV500 Devices before V3.3.4
|
2023-07-11 |
| MEDIUM | 0 |
SSA-313488 V1.0: Multiple Vulnerabilities in SIMATIC CN 4100 before V2.5
SIEMENS-SSA-313488
|
SSA-313488 V1.0: Multiple Vulnerabilities in SIMATIC CN 4100 before V2.5
|
2023-07-11 |
| CRITICAL | 9.8 |
SSA-146325 V1.0: Multiple Vulnerabilities in RUGGEDCOM ROX before V2.16
SIEMENS-SSA-146325 · 8 CVEs
|
SSA-146325 V1.0: Multiple Vulnerabilities in RUGGEDCOM ROX before V2.16
|
2023-07-11 |
| CRITICAL | 9.8 |
Siemens SINAMICS Medium Voltage Products
ICSA-23-166-12 · 23 CVEs
|
SINAMICS PERFECT HARMONY GH180 6SR5
|
2023-06-14 |
| MEDIUM | 0 |
SSA-942865 V1.1 (Last Update: 2023-06-14): Multiple Vulnerabilities in the Integrated SCALANCE S615 of SINAMICS Medium Voltage Products
SIEMENS-SSA-942865
|
SSA-942865 V1.1 (Last Update: 2023-06-14): Multiple Vulnerabilities in the Integrated SCALANCE S615 of SINAMICS Medium Voltage Products
|
2023-06-14 |
| LOW | 3.9 |
Siemens SIMATIC WinCC
ICSA-23-166-05 · 1 CVE
|
SIMATIC NET PC Software V14,
SIMATIC NET PC Software V15,
SIMATIC PCS 7 V8.2
+4 more
|
2023-06-13 |
| HIGH | 7.2 |
Siemens SICAM A8000 Devices
ICSA-23-166-13 · 3 CVEs
|
CP-8031 MASTER MODULE (6MF2803-1AA00),
CP-8050 MASTER MODULE (6MF2805-0AA00)
|
2023-06-13 |
| MEDIUM | 0 |
SSA-988345 V1.1 (Last Update: 2023-06-13): Local Privilege Escalation Vulnerability in Xpedition Designer
SIEMENS-SSA-988345
|
SSA-988345 V1.1 (Last Update: 2023-06-13): Local Privilege Escalation Vulnerability in Xpedition Designer
|
2023-06-13 |
| MEDIUM | 0 |
SSA-914026 V1.0: Local Code Execution Vulnerability in SIMATIC WinCC V7
SIEMENS-SSA-914026
|
SSA-914026 V1.0: Local Code Execution Vulnerability in SIMATIC WinCC V7
|
2023-06-13 |
| MEDIUM | 0 |
SSA-887249 V1.0: Multiple Vulnerabilities in the Web Interface of SICAM Q200 Devices
SIEMENS-SSA-887249
|
SSA-887249 V1.0: Multiple Vulnerabilities in the Web Interface of SICAM Q200 Devices
|
2023-06-13 |
| MEDIUM | 0 |
SSA-824231 V1.4 (Last Update: 2023-06-13): Unauthenticated Firmware Upload Vulnerability in Desigo PX Controllers
SIEMENS-SSA-824231
|
SSA-824231 V1.4 (Last Update: 2023-06-13): Unauthenticated Firmware Upload Vulnerability in Desigo PX Controllers
|
2023-06-13 |
| MEDIUM | 0 |
SSA-731916 V1.0: Multiple Vulnerabilities in CPCI85 Firmware of SICAM A8000 Devices
SIEMENS-SSA-731916
|
SSA-731916 V1.0: Multiple Vulnerabilities in CPCI85 Firmware of SICAM A8000 Devices
|
2023-06-13 |
| MEDIUM | 0 |
SSA-572005 V1.2 (Last Update: 2023-06-13): Vulnerabilities in the Web Server of SICAM P850 and SICAM P855 Devices
SIEMENS-SSA-572005
|
SSA-572005 V1.2 (Last Update: 2023-06-13): Vulnerabilities in the Web Server of SICAM P850 and SICAM P855 Devices
|
2023-06-13 |
| MEDIUM | 0 |
SSA-538795 V1.0: Multiple File Parsing Vulnerabilities in Teamcenter Visualization and JT2Go
SIEMENS-SSA-538795
|
SSA-538795 V1.0: Multiple File Parsing Vulnerabilities in Teamcenter Visualization and JT2Go
|
2023-06-13 |
| MEDIUM | 0 |
SSA-508677 V1.0: Use of Obsolete Function Vulnerability in SIMATIC WinCC before V8
SIEMENS-SSA-508677
|
SSA-508677 V1.0: Use of Obsolete Function Vulnerability in SIMATIC WinCC before V8
|
2023-06-13 |
| MEDIUM | 0 |
SSA-482956 V1.0: Information Disclosure Vulnerability in SIMOTION before V5.5
SIEMENS-SSA-482956
|
SSA-482956 V1.0: Information Disclosure Vulnerability in SIMOTION before V5.5
|
2023-06-13 |
| MEDIUM | 0 |
SSA-120378 V1.2 (Last Update: 2023-06-13): Multiple File Parsing Vulnerabilities in Teamcenter Visualization and JT2Go
SIEMENS-SSA-120378
|
SSA-120378 V1.2 (Last Update: 2023-06-13): Multiple File Parsing Vulnerabilities in Teamcenter Visualization and JT2Go
|
2023-06-13 |
| MEDIUM | 6.5 |
Siemens SIMATIC, SINUMERIK, and PROFINET IO (Update D)
ICSA-18-079-02 · 1 CVE
|
SIMATIC S7-400 CPU 414-3 PN/DP V7 (6ES7414-3EM07-0AB0),
SIMATIC S7-400 CPU 414F-3 PN/DP V7 (6ES7414-3FM07-0AB0),
SIMATIC S7-400 CPU 416-3 PN/DP V7 (6ES7416-3ES07-0AB0)
+42 more
|
2023-05-09 |
| HIGH | 8.2 |
Siemens S7-400 CPUs (Update B)
ICSA-18-317-02 · 2 CVEs
|
SIMATIC S7-400 CPU 412-1 DP V7 (6ES7412-1XJ07-0AB0),
SIMATIC S7-400 CPU 412-2 DP V7 (6ES7412-2XK07-0AB0),
SIMATIC S7-400 CPU 414-2 DP V7 (6ES7414-2XL07-0AB0)
+18 more
|
2023-05-09 |
| CRITICAL | 9.9 |
Siemens Siveillance
ICSA-23-131-03 · 2 CVEs
|
Siveillance Video 2020 R2,
Siveillance Video 2020 R3,
Siveillance Video 2021 R1
+5 more
|
2023-05-09 |
| MEDIUM | 0 |
SSA-892048 V1.0: Third-Party Component Vulnerabilities in SINEC NMS before V1.0.3.1
SIEMENS-SSA-892048
|
SSA-892048 V1.0: Third-Party Component Vulnerabilities in SINEC NMS before V1.0.3.1
|
2023-05-09 |
| MEDIUM | 0 |
SSA-789345 V1.0: Code Execution Vulnerabilities in Siveillance Video Event and Management Servers
SIEMENS-SSA-789345
|
SSA-789345 V1.0: Code Execution Vulnerabilities in Siveillance Video Event and Management Servers
|
2023-05-09 |
| MEDIUM | 0 |
SSA-632164 V1.1 (Last Update: 2023-05-09): External Entity Injection Vulnerability in Polarion ALM
SIEMENS-SSA-632164
|
SSA-632164 V1.1 (Last Update: 2023-05-09): External Entity Injection Vulnerability in Polarion ALM
|
2023-05-09 |
| MEDIUM | 0 |
SSA-592007 V2.1 (Last Update: 2023-05-09): Denial of Service Vulnerability in Industrial Products
SIEMENS-SSA-592007
|
SSA-592007 V2.1 (Last Update: 2023-05-09): Denial of Service Vulnerability in Industrial Products
|
2023-05-09 |
| MEDIUM | 0 |
SSA-555292 V1.0: Security Vulnerabilities Fixed in SIMATIC Cloud Connect 7 V2.1
SIEMENS-SSA-555292
|
SSA-555292 V1.0: Security Vulnerabilities Fixed in SIMATIC Cloud Connect 7 V2.1
|
2023-05-09 |
| MEDIUM | 0 |
SSA-480230 V2.7 (Last Update: 2023-05-09): Denial of Service Vulnerability in Webserver of Industrial Products
SIEMENS-SSA-480230
|
SSA-480230 V2.7 (Last Update: 2023-05-09): Denial of Service Vulnerability in Webserver of Industrial Products
|
2023-05-09 |
| MEDIUM | 0 |
SSA-325383 V1.0: Multiple Vulnerabilities in SCALANCE LPE9403 before V2.1
SIEMENS-SSA-325383
|
SSA-325383 V1.0: Multiple Vulnerabilities in SCALANCE LPE9403 before V2.1
|
2023-05-09 |
| MEDIUM | 0 |
SSA-113131 V1.5 (Last Update: 2023-05-09): Denial of Service Vulnerabilities in SIMATIC S7-400 CPUs
SIEMENS-SSA-113131
|
SSA-113131 V1.5 (Last Update: 2023-05-09): Denial of Service Vulnerabilities in SIMATIC S7-400 CPUs
|
2023-05-09 |
| HIGH | 7.5 |
Siemens SIMATIC PCS 7, SIMATIC WinCC, and SIMATIC NET PC (Update G)
ICSA-20-042-06 · 1 CVE
|
OpenPCS 7 V8.1,
OpenPCS 7 V8.2,
OpenPCS 7 V9.0
+19 more
|
2023-04-11 |
| CRITICAL | 9.9 |
Siemens SIMATIC WinCC (Update E)
ICSA-21-315-03 · 3 CVEs
|
OpenPCS 7 V8.2,
OpenPCS 7 V9.0,
OpenPCS 7 V9.1
+18 more
|
2023-04-11 |
| HIGH | 7.5 |
Siemens SIMATIC S7-400
ICSA-22-104-12 · 1 CVE
|
SIMATIC S7-400 CPU 412-1 DP V7 (6ES7412-1XJ07-0AB0),
SIMATIC S7-400 CPU 412-2 DP V7 (6ES7412-2XK07-0AB0),
SIMATIC S7-400 CPU 412-2 PN/DP V7 (6ES7412-2EK07-0AB0)
+17 more
|
2023-04-11 |
| MEDIUM | 6.2 |
Siemens Adaptec Maxview Application
ICSA-23-103-01 · 1 CVE
|
SIMATIC IPC1047,
SIMATIC IPC1047E,
SIMATIC IPC647D
+3 more
|
2023-04-11 |
| CRITICAL | 9.8 |
Siemens CPCI85 Firmware of SICAM A8000 Devices
ICSA-23-103-07 · 1 CVE
|
CP-8031 MASTER MODULE (6MF2803-1AA00),
CP-8050 MASTER MODULE (6MF2805-0AA00)
|
2023-04-11 |
| MEDIUM | 0 |
SSA-978220 V1.8 (Last Update: 2023-04-11): Denial of Service Vulnerability over SNMP in Multiple Industrial Products
SIEMENS-SSA-978220
|
SSA-978220 V1.8 (Last Update: 2023-04-11): Denial of Service Vulnerability over SNMP in Multiple Industrial Products
|
2023-04-11 |
| HIGH | 7.7 |
SSA-840188 V1.6 (Last Update: 2023-04-11): Multiple Vulnerabilities in SIMATIC WinCC Affecting Other SIMATIC Software Products
SIEMENS-SSA-840188 · 1 CVE
|
SSA-840188 V1.6 (Last Update: 2023-04-11): Multiple Vulnerabilities in SIMATIC WinCC Affecting Other SIMATIC Software Products
|
2023-04-11 |
| MEDIUM | 0 |
SSA-838121 V1.3 (Last Update: 2023-04-11): Multiple Denial of Service Vulnerabilities in Industrial Products
SIEMENS-SSA-838121
|
SSA-838121 V1.3 (Last Update: 2023-04-11): Multiple Denial of Service Vulnerabilities in Industrial Products
|
2023-04-11 |
| MEDIUM | 0 |
SSA-792594 V1.1 (Last Update: 2023-04-11): Host Header Injection Vulnerability in Polarion ALM
SIEMENS-SSA-792594
|
SSA-792594 V1.1 (Last Update: 2023-04-11): Host Header Injection Vulnerability in Polarion ALM
|
2023-04-11 |
| MEDIUM | 0 |
SSA-700053 V1.2 (Last Update: 2023-04-11): Multiple File Parsing Vulnerabilities in Teamcenter Visualization and JT2Go
SIEMENS-SSA-700053
|
SSA-700053 V1.2 (Last Update: 2023-04-11): Multiple File Parsing Vulnerabilities in Teamcenter Visualization and JT2Go
|
2023-04-11 |
| MEDIUM | 0 |
SSA-699404 V1.0: Observable Response Discrepancy in Mendix Forgot Password Module
SIEMENS-SSA-699404
|
SSA-699404 V1.0: Observable Response Discrepancy in Mendix Forgot Password Module
|
2023-04-11 |
| MEDIUM | 0 |
SSA-676336 V1.2 (Last Update: 2023-04-11): OpenSSH Vulnerabilities in SCALANCE X-200 and X-300/X408 Switches
SIEMENS-SSA-676336
|
SSA-676336 V1.2 (Last Update: 2023-04-11): OpenSSH Vulnerabilities in SCALANCE X-200 and X-300/X408 Switches
|
2023-04-11 |
| MEDIUM | 0 |
SSA-642810 V1.0: JT File Parsing Vulnerability in JT Open and JT Utilities
SIEMENS-SSA-642810
|
SSA-642810 V1.0: JT File Parsing Vulnerability in JT Open and JT Utilities
|
2023-04-11 |
| MEDIUM | 0 |
SSA-629917 V1.0: Datalogics File Parsing Vulnerability in Teamcenter Visualization and JT2Go
SIEMENS-SSA-629917
|
SSA-629917 V1.0: Datalogics File Parsing Vulnerability in Teamcenter Visualization and JT2Go
|
2023-04-11 |
| MEDIUM | 0 |
SSA-603476 V1.4 (Last Update: 2023-04-11): Web Vulnerabilities in SIMATIC NET CP 343-1/CP 443-1 Modules and SIMATIC S7-300/S7-400 CPUs
SIEMENS-SSA-603476
|
SSA-603476 V1.4 (Last Update: 2023-04-11): Web Vulnerabilities in SIMATIC NET CP 343-1/CP 443-1 Modules and SIMATIC S7-300/S7-400 CPUs
|
2023-04-11 |
| MEDIUM | 0 |
SSA-572164 V1.0: Luxion KeyShot Vulnerability in Solid Edge
SIEMENS-SSA-572164
|
SSA-572164 V1.0: Luxion KeyShot Vulnerability in Solid Edge
|
2023-04-11 |
| MEDIUM | 0 |
SSA-558014 V1.0: Third-Party Component Vulnerabilities in SCALANCE XCM332 before V2.2
SIEMENS-SSA-558014
|
SSA-558014 V1.0: Third-Party Component Vulnerabilities in SCALANCE XCM332 before V2.2
|
2023-04-11 |
| MEDIUM | 0 |
SSA-557541 V1.2 (Last Update: 2023-04-11): Denial-of-Service Vulnerability in SIMATIC S7-400 CPUs
SIEMENS-SSA-557541
|
SSA-557541 V1.2 (Last Update: 2023-04-11): Denial-of-Service Vulnerability in SIMATIC S7-400 CPUs
|
2023-04-11 |
| MEDIUM | 0 |
SSA-552702 V1.5 (Last Update: 2023-04-11): Privilege Escalation Vulnerability in the Web Interface of SCALANCE and RUGGEDCOM Products
SIEMENS-SSA-552702
|
SSA-552702 V1.5 (Last Update: 2023-04-11): Privilege Escalation Vulnerability in the Web Interface of SCALANCE and RUGGEDCOM Products
|
2023-04-11 |
| MEDIUM | 0 |
SSA-549234 V1.3 (Last Update: 2023-04-11): Denial-of-Service Vulnerability in SIMATIC NET CP Modules
SIEMENS-SSA-549234
|
SSA-549234 V1.3 (Last Update: 2023-04-11): Denial-of-Service Vulnerability in SIMATIC NET CP Modules
|
2023-04-11 |
| MEDIUM | 0 |
SSA-511182 V1.0: Use of Static TLS Certificate Known Hard Coded Private Keys in Adaptec Maxview Application
SIEMENS-SSA-511182
|
SSA-511182 V1.0: Use of Static TLS Certificate Known Hard Coded Private Keys in Adaptec Maxview Application
|
2023-04-11 |
| MEDIUM | 0 |
SSA-479249 V1.0: Weak Encryption Vulnerability in SCALANCE X-200IRT Devices
SIEMENS-SSA-479249
|
SSA-479249 V1.0: Weak Encryption Vulnerability in SCALANCE X-200IRT Devices
|
2023-04-11 |
| MEDIUM | 0 |
SSA-472454 V1.0: Command Injection Vulnerability in CPCI85 Firmware of SICAM A8000 Devices
SIEMENS-SSA-472454
|
SSA-472454 V1.0: Command Injection Vulnerability in CPCI85 Firmware of SICAM A8000 Devices
|
2023-04-11 |
| MEDIUM | 0 |
SSA-462066 V3.1 (Last Update: 2023-04-11): Vulnerability known as TCP SACK PANIC in Industrial Products
SIEMENS-SSA-462066
|
SSA-462066 V3.1 (Last Update: 2023-04-11): Vulnerability known as TCP SACK PANIC in Industrial Products
|
2023-04-11 |
| MEDIUM | 0 |
SSA-459643 V1.2 (Last Update: 2023-04-11): Denial of Service Vulnerability in RUGGEDCOM ROS before V5.6.0
SIEMENS-SSA-459643
|
SSA-459643 V1.2 (Last Update: 2023-04-11): Denial of Service Vulnerability in RUGGEDCOM ROS before V5.6.0
|
2023-04-11 |
| MEDIUM | 0 |
SSA-310038 V1.1 (Last Update: 2023-04-11): Multiple Vulnerabilities in SCALANCE X Switch Devices
SIEMENS-SSA-310038
|
SSA-310038 V1.1 (Last Update: 2023-04-11): Multiple Vulnerabilities in SCALANCE X Switch Devices
|
2023-04-11 |
| MEDIUM | 0 |
SSA-270778 V1.8 (Last Update: 2023-04-11): Denial-of-Service Vulnerability in SIMATIC PCS 7, SIMATIC WinCC and SIMATIC NET PC Software
SIEMENS-SSA-270778
|
SSA-270778 V1.8 (Last Update: 2023-04-11): Denial-of-Service Vulnerability in SIMATIC PCS 7, SIMATIC WinCC and SIMATIC NET PC Software
|
2023-04-11 |
| MEDIUM | 0 |
SSA-244969 V2.0 (Last Update: 2023-04-11): OpenSSL Vulnerability in Industrial Products
SIEMENS-SSA-244969
|
SSA-244969 V2.0 (Last Update: 2023-04-11): OpenSSL Vulnerability in Industrial Products
|
2023-04-11 |
| MEDIUM | 0 |
SSA-102233 V2.1 (Last Update: 2023-04-11): SegmentSmack in VxWorks-based Industrial Devices
SIEMENS-SSA-102233
|
SSA-102233 V2.1 (Last Update: 2023-04-11): SegmentSmack in VxWorks-based Industrial Devices
|
2023-04-11 |
| HIGH | 7.4 |
Siemens Linux-based Products (Update J)
ICSA-21-131-03 · 1 CVE
|
RUGGEDCOM RM1224 family (6GK6108-4AM00),
SCALANCE M-800 family,
SCALANCE S615 (6GK5615-0AA00-2AA2)
+29 more
|
2023-03-14 |
| CRITICAL | 9.8 |
Siemens Industrial Products LLDP (Update D)
ICSA-21-194-07 · 2 CVEs
|
SIMATIC CP 1243-1 (6GK7243-1BX30-0XE0),
SIMATIC CP 1243-8 IRC (6GK7243-8RX30-0XE0),
SIMATIC CP 1542SP-1 (6GK7542-6UX00-0XE0)
+14 more
|
2023-03-14 |
| CRITICAL | 10.0 |
Siemens SRCS VPN Feature in SIMATIC CP Devices
ICSA-22-195-12 · 3 CVEs
|
SIMATIC CP 1242-7 V2 (6GK7242-7KX31-0XE0),
SIMATIC CP 1243-1 (6GK7243-1BX30-0XE0),
SIMATIC CP 1243-7 LTE EU (6GK7243-7KX30-0XE0)
+12 more
|
2023-03-14 |
| HIGH | 8.2 |
Siemens Automation License Manager
ICSA-23-012-10 · 2 CVEs
|
Automation License Manager V5,
Automation License Manager V6
|
2023-03-14 |
| HIGH | 7.8 |
Siemens Solid Edge
ICSA-23-047-01 · 37 CVEs
|
Solid Edge SE2022,
Solid Edge SE2022,
Solid Edge SE2023
|
2023-03-14 |
| CRITICAL | 9.8 |
Siemens SCALANCE, RUGGEDCOM Third-Party
ICSA-23-075-01 · 65 CVEs
|
RUGGEDCOM RM1224 LTE(4G) EU (6GK6108-4AM00-2BA2),
RUGGEDCOM RM1224 LTE(4G) NAM (6GK6108-4AM00-2DA2),
SCALANCE M804PB (6GK5804-0AP00-2AA2)
+17 more
|
2023-03-14 |
| HIGH | 8.8 |
Siemens RUGGEDCOM CROSSBOW V5.3
ICSA-23-075-02 · 2 CVEs
|
RUGGEDCOM CROSSBOW
|
2023-03-14 |
| MEDIUM | 6.6 |
Siemens RUGGEDCOM CROSSBOW V5.2
ICSA-23-075-03 · 2 CVEs
|
RUGGEDCOM CROSSBOW
|
2023-03-14 |
| HIGH | 7.5 |
Siemens RADIUS Client of SIPROTEC 5 Devices
ICSA-23-080-04 · 1 CVE
|
SIPROTEC 5 6MD85 (CP300),
SIPROTEC 5 6MD86 (CP300),
SIPROTEC 5 6MD89 (CP300)
+25 more
|
2023-03-14 |
| HIGH | 8.1 |
Siemens SCALANCE Third-Party
ICSA-23-080-07 · 17 CVEs
|
SCALANCE WAM763-1 (6GK5763-1AL00-7DA0),
SCALANCE WAM766-1 (EU) (6GK5766-1GE00-7DA0),
SCALANCE WAM766-1 (US) (6GK5766-1GE00-7DB0)
+6 more
|
2023-03-14 |
| MEDIUM | 0 |
SSA-941426 V1.4 (Last Update: 2023-03-14): Multiple LLDP Vulnerabilities in Industrial Products
SIEMENS-SSA-941426
|
SSA-941426 V1.4 (Last Update: 2023-03-14): Multiple LLDP Vulnerabilities in Industrial Products
|
2023-03-14 |
| MEDIUM | 0 |
SSA-847261 V1.1 (Last Update: 2023-03-14): Multiple SPP File Parsing Vulnerabilities in Tecnomatix Plant Simulation
SIEMENS-SSA-847261
|
SSA-847261 V1.1 (Last Update: 2023-03-14): Multiple SPP File Parsing Vulnerabilities in Tecnomatix Plant Simulation
|
2023-03-14 |
| MEDIUM | 0 |
SSA-726834 V1.0: Denial of Service Vulnerability in the RADIUS Client of SIPROTEC 5 Devices
SIEMENS-SSA-726834
|
SSA-726834 V1.0: Denial of Service Vulnerability in the RADIUS Client of SIPROTEC 5 Devices
|
2023-03-14 |
| MEDIUM | 0 |
SSA-565386 V1.0: Third-Party Component Vulnerabilities in SCALANCE W-700 IEEE 802.11ax devices before V2.0
SIEMENS-SSA-565386
|
SSA-565386 V1.0: Third-Party Component Vulnerabilities in SCALANCE W-700 IEEE 802.11ax devices before V2.0
|
2023-03-14 |
| MEDIUM | 0 |
SSA-539476 V1.4 (Last Update: 2023-03-14): Siemens SIMATIC NET CP, SINEMA and SCALANCE Products Affected by Vulnerabilities in Third-Party Component strongSwan
SIEMENS-SSA-539476
|
SSA-539476 V1.4 (Last Update: 2023-03-14): Siemens SIMATIC NET CP, SINEMA and SCALANCE Products Affected by Vulnerabilities in Third-Party Component strongSwan
|
2023-03-14 |
| MEDIUM | 0 |
SSA-517377 V1.2 (Last Update: 2023-03-14): Multiple Vulnerabilities in the SRCS VPN Feature in SIMATIC CP Devices
SIEMENS-SSA-517377
|
SSA-517377 V1.2 (Last Update: 2023-03-14): Multiple Vulnerabilities in the SRCS VPN Feature in SIMATIC CP Devices
|
2023-03-14 |
| MEDIUM | 0 |
SSA-491245 V1.1 (Last Update: 2023-03-14): Multiple File Parsing Vulnerabilities in Solid Edge
SIEMENS-SSA-491245
|
SSA-491245 V1.1 (Last Update: 2023-03-14): Multiple File Parsing Vulnerabilities in Solid Edge
|
2023-03-14 |
| MEDIUM | 0 |
SSA-476715 V1.1 (Last Update: 2023-03-14): Two Vulnerabilities in Automation License Manager
SIEMENS-SSA-476715
|
SSA-476715 V1.1 (Last Update: 2023-03-14): Two Vulnerabilities in Automation License Manager
|
2023-03-14 |
| MEDIUM | 0 |
SSA-419740 V1.0: Multiple Third-Party Component Vulnerabilities in RUGGEDCOM and SCALANCE Products before V7.2
SIEMENS-SSA-419740
|
SSA-419740 V1.0: Multiple Third-Party Component Vulnerabilities in RUGGEDCOM and SCALANCE Products before V7.2
|
2023-03-14 |
| MEDIUM | 0 |
SSA-324955 V2.0 (Last Update: 2023-03-14): SAD DNS Attack in Linux Based Products
SIEMENS-SSA-324955
|
SSA-324955 V2.0 (Last Update: 2023-03-14): SAD DNS Attack in Linux Based Products
|
2023-03-14 |
| MEDIUM | 0 |
SSA-320629 V1.0: Security Vulnerabilities Fixed in RUGGEDCOM CROSSBOW V5.3
SIEMENS-SSA-320629
|
SSA-320629 V1.0: Security Vulnerabilities Fixed in RUGGEDCOM CROSSBOW V5.3
|
2023-03-14 |
| MEDIUM | 6.6 |
SSA-260625 V1.0: Security Vulnerabilities Fixed in RUGGEDCOM CROSSBOW V5.2
SIEMENS-SSA-260625 · 2 CVEs
|
SSA-260625 V1.0: Security Vulnerabilities Fixed in RUGGEDCOM CROSSBOW V5.2
|
2023-03-14 |
| HIGH | 7.5 |
Siemens Nucleus RTOS FTP Server
ICSA-22-286-07 · 1 CVE
|
Nucleus NET for Nucleus PLUS V1,
Nucleus NET for Nucleus PLUS V2,
Nucleus ReadyStart V3 V2012
+2 more
|
2023-02-14 |
| CRITICAL | 9.3 |
Siemens SINUMERIK ONE and SINUMERIK MC
ICSA-22-314-04 · 1 CVE
|
SINUMERIK MC,
SINUMERIK ONE
|
2023-02-14 |
| CRITICAL | 9.8 |
Siemens SCALANCE W1750D
ICSA-22-314-10 · 13 CVEs
|
SCALANCE W1750D (JP) (6GK5750-2HX01-1AD0),
SCALANCE W1750D (ROW) (6GK5750-2HX01-1AA0),
SCALANCE W1750D (USA) (6GK5750-2HX01-1AB0)
|
2023-02-14 |
| HIGH | 7.5 |
Siemens SCALANCE X200 IRT
ICSA-23-047-02 · 1 CVE
|
SCALANCE X200-4P IRT (6GK5200-4AH00-2BA3),
SCALANCE X201-3P IRT (6GK5201-3BH00-2BA3),
SCALANCE X201-3P IRT PRO (6GK5201-3JR00-2BA6)
+10 more
|
2023-02-14 |
| CRITICAL | 9.8 |
Siemens Brownfield Connectivity Client
ICSA-23-047-03 · 4 CVEs
|
Brownfield Connectivity - Client
|
2023-02-14 |
| HIGH | 7.5 |
Siemens Brownfield Connectivity Gateway
ICSA-23-047-04 · 8 CVEs
|
Brownfield Connectivity - Gateway,
Brownfield Connectivity - Gateway
|
2023-02-14 |
| HIGH | 7.8 |
Siemens SiPass integrated AC5102 / ACC-G2 and ACC-AP
ICSA-23-047-05 · 1 CVE
|
SiPass integrated AC5102 (ACC-G2),
SiPass integrated ACC-AP
|
2023-02-14 |
| HIGH | 7.8 |
Siemens Simcenter Femap before V2023.1
ICSA-23-047-06 · 2 CVEs
|
Simcenter Femap
|
2023-02-14 |
| CRITICAL | 10.0 |
Siemens COMOS
ICSA-23-047-10 · 1 CVE
|
COMOS V10.2,
COMOS V10.3.3.1,
COMOS V10.3.3.2
+5 more
|
2023-02-14 |
| MEDIUM | 5.9 |
Siemens Mendix
ICSA-23-047-11 · 1 CVE
|
Mendix Applications using Mendix 7,
Mendix Applications using Mendix 8,
Mendix Applications using Mendix 9
+3 more
|
2023-02-14 |
| HIGH | 7.8 |
Siemens JT Open, JT Utilities, and Parasolid
ICSA-23-047-12 · 3 CVEs
|
JT Open,
JT Utilities,
Parasolid V34.0
+4 more
|
2023-02-14 |
| MEDIUM | 0 |
SSA-953464 V1.0: Multiple Vulnerabilites in Siemens Brownfield Connectivity - Client before V2.15
SIEMENS-SSA-953464
|
SSA-953464 V1.0: Multiple Vulnerabilites in Siemens Brownfield Connectivity - Client before V2.15
|
2023-02-14 |
| MEDIUM | 0 |
SSA-836777 V1.0: JT File Parsing Vulnerabilities in JT Open, JT Utilities and Parasolid
SIEMENS-SSA-836777
|
SSA-836777 V1.0: JT File Parsing Vulnerabilities in JT Open, JT Utilities and Parasolid
|
2023-02-14 |
| MEDIUM | 0 |
SSA-744259 V1.0: Golang Vulnerabilities in Brownfield Connectivity - Gateway before V1.10.1
SIEMENS-SSA-744259
|
SSA-744259 V1.0: Golang Vulnerabilities in Brownfield Connectivity - Gateway before V1.10.1
|
2023-02-14 |
| MEDIUM | 0 |
SSA-693110 V1.0: Buffer Overflow Vulnerability in COMOS
SIEMENS-SSA-693110
|
SSA-693110 V1.0: Buffer Overflow Vulnerability in COMOS
|
2023-02-14 |
| MEDIUM | 0 |
SSA-658793 V1.0: Command Injection Vulnerability in SiPass integrated AC5102 / ACC-G2 and ACC-AP
SIEMENS-SSA-658793
|
SSA-658793 V1.0: Command Injection Vulnerability in SiPass integrated AC5102 / ACC-G2 and ACC-AP
|
2023-02-14 |
| MEDIUM | 0 |
SSA-617755 V1.0: Denial of Service Vulnerability in the SNMP Agent of SCALANCE X-200IRT Products
SIEMENS-SSA-617755
|
SSA-617755 V1.0: Denial of Service Vulnerability in the SNMP Agent of SCALANCE X-200IRT Products
|
2023-02-14 |
| MEDIUM | 0 |
SSA-568428 V1.1 (Last Update: 2023-02-14): Weak Key Protection Vulnerability in SINUMERIK ONE and SINUMERIK MC
SIEMENS-SSA-568428
|
SSA-568428 V1.1 (Last Update: 2023-02-14): Weak Key Protection Vulnerability in SINUMERIK ONE and SINUMERIK MC
|
2023-02-14 |
| MEDIUM | 0 |
SSA-565356 V1.0: X_T File Parsing Vulnerabilities in Simcenter Femap before V2023.1
SIEMENS-SSA-565356
|
SSA-565356 V1.0: X_T File Parsing Vulnerabilities in Simcenter Femap before V2023.1
|
2023-02-14 |
| MEDIUM | 0 |
SSA-506569 V1.1 (Last Update: 2023-02-14): Multiple Vulnerabilities in SCALANCE W1750D
SIEMENS-SSA-506569
|
SSA-506569 V1.1 (Last Update: 2023-02-14): Multiple Vulnerabilities in SCALANCE W1750D
|
2023-02-14 |
| MEDIUM | 0 |
SSA-313313 V1.2 (Last Update: 2023-02-14): Denial of Service Vulnerability in the FTP Server of Nucleus RTOS
SIEMENS-SSA-313313
|
SSA-313313 V1.2 (Last Update: 2023-02-14): Denial of Service Vulnerability in the FTP Server of Nucleus RTOS
|
2023-02-14 |
| MEDIUM | 0 |
SSA-252808 V1.0: XPath Constraint Vulnerability in Mendix Runtime
SIEMENS-SSA-252808
|
SSA-252808 V1.0: XPath Constraint Vulnerability in Mendix Runtime
|
2023-02-14 |
| MEDIUM | 5.3 |
Siemens SIMATIC S7 (Update B)
ICSA-20-042-05 · 1 CVE
|
SIMATIC ET 200pro IM154-8 PN/DP CPU (6ES7154-8AB01-0AB0),
SIMATIC ET 200pro IM154-8F PN/DP CPU (6ES7154-8FB01-0AB0),
SIMATIC ET 200pro IM154-8FX PN/DP CPU (6ES7154-8FX00-0AB0)
+24 more
|
2023-01-10 |
| MEDIUM | 5.4 |
Siemens SIMATIC WinCC OA Ultralight Client
ICSA-22-349-06 · 1 CVE
|
SIMATIC WinCC OA V3.15,
SIMATIC WinCC OA V3.16,
SIMATIC WinCC OA V3.17
+1 more
|
2023-01-10 |
| HIGH | 8.1 |
Siemens Mendix Workflow Commons
ICSA-22-349-13 · 1 CVE
|
Mendix Workflow Commons,
Mendix Workflow Commons V2.1,
Mendix Workflow Commons V2.3
|
2023-01-10 |
| CRITICAL | 9.3 |
Siemens Mendix SAML Module
ICSA-23-012-09 · 1 CVE
|
Mendix SAML (Mendix 8 compatible),
Mendix SAML (Mendix 9 compatible, New Track),
Mendix SAML (Mendix 9 compatible, Upgrade Track)
|
2023-01-10 |
| HIGH | 7.8 |
Siemens Solid Edge before V2023 MP1
ICSA-23-012-11 · 1 CVE
|
Solid Edge
|
2023-01-10 |
| CRITICAL | 9.9 |
Siemens SINEC INS
ICSA-23-017-03 · 12 CVEs
|
SINEC INS
|
2023-01-10 |
| MEDIUM | 0 |
SSA-997779 V1.0: File Parsing Vulnerability in Solid Edge before V2023 MP1
SIEMENS-SSA-997779
|
SSA-997779 V1.0: File Parsing Vulnerability in Solid Edge before V2023 MP1
|
2023-01-10 |
| MEDIUM | 0 |
SSA-936212 V1.0: JT File Parsing Vulnerabilities in JT Open, JT Utilities and Solid Edge
SIEMENS-SSA-936212
|
SSA-936212 V1.0: JT File Parsing Vulnerabilities in JT Open, JT Utilities and Solid Edge
|
2023-01-10 |
| MEDIUM | 0 |
SSA-547714 V1.1 (Last Update: 2023-01-10): Argument Injection Vulnerability in SIMATIC WinCC OA Ultralight Client
SIEMENS-SSA-547714
|
SSA-547714 V1.1 (Last Update: 2023-01-10): Argument Injection Vulnerability in SIMATIC WinCC OA Ultralight Client
|
2023-01-10 |
| MEDIUM | 0 |
SSA-496604 V1.0: Cross-Site Scripting Vulnerability in Mendix SAML Module
SIEMENS-SSA-496604
|
SSA-496604 V1.0: Cross-Site Scripting Vulnerability in Mendix SAML Module
|
2023-01-10 |
| MEDIUM | 0 |
SSA-431678 V1.4 (Last Update: 2023-01-10): Denial of Service Vulnerability in SIMATIC S7 CPU Families
SIEMENS-SSA-431678
|
SSA-431678 V1.4 (Last Update: 2023-01-10): Denial of Service Vulnerability in SIMATIC S7 CPU Families
|
2023-01-10 |
| MEDIUM | 0 |
SSA-332410 V1.0: Multiple Vulnerabilities in SINEC INS before V1.0 SP2 Update 1
SIEMENS-SSA-332410
|
SSA-332410 V1.0: Multiple Vulnerabilities in SINEC INS before V1.0 SP2 Update 1
|
2023-01-10 |
| MEDIUM | 0 |
SSA-210822 V1.1 (Last Update: 2023-01-10): Improper Access Control Vulnerability in Mendix Workflow Commons Module
SIEMENS-SSA-210822
|
SSA-210822 V1.1 (Last Update: 2023-01-10): Improper Access Control Vulnerability in Mendix Workflow Commons Module
|
2023-01-10 |
| MEDIUM | 5.8 |
Siemens SCALANCE X Switches (Update A)
ICSA-18-163-02 · 2 CVEs
|
SCALANCE X-200 switch family (incl. SIPLUS NET variants),
SCALANCE X-200IRT switch family (incl. SIPLUS NET variants),
SCALANCE X-200RNA switch family
+1 more
|
2022-12-13 |
| HIGH | 8.8 |
Siemens SCALANCE X Switches (Update B)
ICSA-20-014-03 · 1 CVE
|
SCALANCE X204RNA (HSR) (6GK5204-0BA00-2MB2),
SCALANCE X204RNA (PRP) (6GK5204-0BA00-2KB2),
SCALANCE X204RNA EEC (HSR) (6GK5204-0BS00-2NA3)
+77 more
|
2022-12-13 |
| MEDIUM | 4.2 |
Siemens SCALANCE X Switches (Update B)
ICSA-20-042-07 · 1 CVE
|
SCALANCE S602,
SCALANCE S612,
SCALANCE S623
+5 more
|
2022-12-13 |
| HIGH | 8.8 |
Siemens SIMATIC, SINAMICS, SINEC, SINEMA, SINUMERIK (Update J)
ICSA-20-161-04 · 1 CVE
|
SIMATIC Automation Tool,
SIMATIC NET PC Software V14,
SIMATIC NET PC Software V15
+24 more
|
2022-12-13 |
| CRITICAL | 9.1 |
Siemens SCALANCE X Switches (Update B)
ICSA-21-012-02 · 2 CVEs
|
SCALANCE X-200 switch family (incl. SIPLUS NET variants),
SCALANCE X-200IRT switch family (incl. SIPLUS NET variants),
SCALANCE X-200RNA switch family
+1 more
|
2022-12-13 |
| HIGH | 7.8 |
Siemens Industrial PCs and CNC devices
ICSA-22-132-05 · 4 CVEs
|
SIMATIC Drive Controller family,
SIMATIC ET 200SP Open Controller CPU 1515SP PC2 (incl. SIPLUS variants),
SIMATIC Field PG M5
+17 more
|
2022-12-13 |
| HIGH | 7.4 |
Siemens Mendix SAML Module
ICSA-22-258-04 · 2 CVEs
|
Mendix SAML (Mendix 7 compatible),
Mendix SAML (Mendix 7 compatible),
Mendix SAML (Mendix 8 compatible)
+5 more
|
2022-12-13 |
| MEDIUM | 6.1 |
Siemens PLM Help Server
ICSA-22-346-05 · 1 CVE
|
PLM Help Server V4.2
|
2022-12-13 |
| HIGH | 8.8 |
Siemens SCALANCE X-200RNA Switch Devices
ICSA-22-349-02 · 6 CVEs
|
SCALANCE X204RNA (HSR) (6GK5204-0BA00-2MB2),
SCALANCE X204RNA (PRP) (6GK5204-0BA00-2KB2),
SCALANCE X204RNA EEC (HSR) (6GK5204-0BS00-2NA3)
+2 more
|
2022-12-13 |
| HIGH | 7.8 |
Siemens Teamcenter Visualization and JT2Go
ICSA-22-349-15 · 3 CVEs
|
JT2Go,
Teamcenter Visualization V13.3,
Teamcenter Visualization V14.0
+1 more
|
2022-12-13 |
| HIGH | 8.1 |
Siemens Mendix Email Connector
ICSA-22-349-17 · 1 CVE
|
Mendix Email Connector
|
2022-12-13 |
| HIGH | 7.8 |
Siemens SCALANCE SC-600 Family
ICSA-22-349-18 · 4 CVEs
|
SCALANCE SC622-2C (6GK5622-2GS00-2AC2),
SCALANCE SC626-2C (6GK5626-2GS00-2AC2),
SCALANCE SC632-2C (6GK5632-2GS00-2AC2)
+3 more
|
2022-12-13 |
| HIGH | 8.8 |
Siemens SICAM PAS
ICSA-22-349-19 · 3 CVEs
|
SICAM PAS/PQS,
SICAM PAS/PQS
|
2022-12-13 |
| CRITICAL | 9.8 |
Siemens SCALANCE X-200RNA Switch Devices
ICSA-22-349-21 · 83 CVEs
|
SCALANCE X204RNA (HSR) (6GK5204-0BA00-2MB2),
SCALANCE X204RNA (PRP) (6GK5204-0BA00-2KB2),
SCALANCE X204RNA EEC (HSR) (6GK5204-0BS00-2NA3)
+2 more
|
2022-12-13 |
| MEDIUM | 0 |
SSA-951513 V1.3 (Last Update: 2022-12-13): Clickjacking Vulnerability in SCALANCE S, SCALANCE X-300, X-200IRT, X-200RNA and X-200 Switch Families
SIEMENS-SSA-951513
|
SSA-951513 V1.3 (Last Update: 2022-12-13): Clickjacking Vulnerability in SCALANCE S, SCALANCE X-300, X-200IRT, X-200RNA and X-200 Switch Families
|
2022-12-13 |
| MEDIUM | 0 |
SSA-849072 V1.0: Several Vulnerabilities in SICAM PAS before V8.06
SIEMENS-SSA-849072
|
SSA-849072 V1.0: Several Vulnerabilities in SICAM PAS before V8.06
|
2022-12-13 |
| HIGH | 7.8 |
SSA-678983 V1.6 (Last Update: 2022-12-13): Vulnerabilities in Industrial PCs and CNC devices using Intel CPUs (November 2020)
SIEMENS-SSA-678983 · 4 CVEs
|
SSA-678983 V1.6 (Last Update: 2022-12-13): Vulnerabilities in Industrial PCs and CNC devices using Intel CPUs (November 2020)
|
2022-12-13 |
| CRITICAL | 9.8 |
SSA-638652 V1.2 (Last Update: 2022-12-13): Authentication Bypass Vulnerability in Mendix SAML Module
SIEMENS-SSA-638652 · 2 CVEs
|
SSA-638652 V1.2 (Last Update: 2022-12-13): Authentication Bypass Vulnerability in Mendix SAML Module
|
2022-12-13 |
| MEDIUM | 0 |
SSA-588101 V1.0: Multiple File Parsing Vulnerabilities in Parasolid
SIEMENS-SSA-588101
|
SSA-588101 V1.0: Multiple File Parsing Vulnerabilities in Parasolid
|
2022-12-13 |
| MEDIUM | 0 |
SSA-480829 V1.2 (Last Update: 2022-12-13): Cross-Site Scripting Vulnerabilities in SCALANCE X Switches
SIEMENS-SSA-480829
|
SSA-480829 V1.2 (Last Update: 2022-12-13): Cross-Site Scripting Vulnerabilities in SCALANCE X Switches
|
2022-12-13 |
| MEDIUM | 0 |
SSA-443566 V1.3 (Last Update: 2022-12-13): Authentication Bypass in SCALANCE X Switches Families
SIEMENS-SSA-443566
|
SSA-443566 V1.3 (Last Update: 2022-12-13): Authentication Bypass in SCALANCE X Switches Families
|
2022-12-13 |
| MEDIUM | 0 |
SSA-436469 V1.0: TCP Vulnerability in APOGEE/TALON Field Panels
SIEMENS-SSA-436469
|
SSA-436469 V1.0: TCP Vulnerability in APOGEE/TALON Field Panels
|
2022-12-13 |
| MEDIUM | 0 |
SSA-412672 V1.0: Multiple OpenSSL and OpenSSH Vulnerabilities in SCALANCE X-200RNA Switch Devices before V3.2.7
SIEMENS-SSA-412672
|
SSA-412672 V1.0: Multiple OpenSSL and OpenSSH Vulnerabilities in SCALANCE X-200RNA Switch Devices before V3.2.7
|
2022-12-13 |
| MEDIUM | 0 |
SSA-363821 V1.0: Multiple Vulnerabilities in SCALANCE X-200RNA Switch Devices before V3.2.7
SIEMENS-SSA-363821
|
SSA-363821 V1.0: Multiple Vulnerabilities in SCALANCE X-200RNA Switch Devices before V3.2.7
|
2022-12-13 |
| MEDIUM | 0 |
SSA-360681 V1.0: Datalogics File Parsing Vulnerabilities in Teamcenter Visualization and JT2Go
SIEMENS-SSA-360681
|
SSA-360681 V1.0: Datalogics File Parsing Vulnerabilities in Teamcenter Visualization and JT2Go
|
2022-12-13 |
| MEDIUM | 0 |
SSA-333517 V1.0: Multiple Vulnerabilities in SCALANCE SC-600 Family before V3.0
SIEMENS-SSA-333517
|
SSA-333517 V1.0: Multiple Vulnerabilities in SCALANCE SC-600 Family before V3.0
|
2022-12-13 |
| MEDIUM | 0 |
SSA-312271 V2.1 (Last Update: 2022-12-13): Unquoted Search Path Vulnerability in Windows-based Industrial Software Applications
SIEMENS-SSA-312271
|
SSA-312271 V2.1 (Last Update: 2022-12-13): Unquoted Search Path Vulnerability in Windows-based Industrial Software Applications
|
2022-12-13 |
| MEDIUM | 0 |
SSA-274900 V1.3 (Last Update: 2022-12-13): Use of Hardcoded Key in SCALANCE X Devices Under Certain Conditions
SIEMENS-SSA-274900
|
SSA-274900 V1.3 (Last Update: 2022-12-13): Use of Hardcoded Key in SCALANCE X Devices Under Certain Conditions
|
2022-12-13 |
| MEDIUM | 0 |
SSA-274282 V1.0: Cross Site Scripting Vulnerability in PLM Help Server V4.2
SIEMENS-SSA-274282
|
SSA-274282 V1.0: Cross Site Scripting Vulnerability in PLM Help Server V4.2
|
2022-12-13 |
| MEDIUM | 0 |
SSA-224632 V1.0: Improper Access Control Vulnerability in Mendix Email Connector Module
SIEMENS-SSA-224632
|
SSA-224632 V1.0: Improper Access Control Vulnerability in Mendix Email Connector Module
|
2022-12-13 |
| CRITICAL | 9.6 |
Siemens SCALANCE X-200 and X-200IRT Families (Update A)
ICSA-22-286-15 · 1 CVE
|
SCALANCE X200-4P IRT (6GK5200-4AH00-2BA3),
SCALANCE X201-3P IRT (6GK5201-3BH00-2BA3),
SCALANCE X201-3P IRT PRO (6GK5201-3JR00-2BA6)
+27 more
|
2022-11-08 |
| HIGH | 7.8 |
Siemens Parasolid
ICSA-22-314-01 · 2 CVEs
|
Parasolid V34.0,
Parasolid V34.0,
Parasolid V34.1
+3 more
|
2022-11-08 |
| MEDIUM | 6.6 |
Siemens SINEC Network Management System Logback Component
ICSA-22-314-03 · 1 CVE
|
SINEC NMS
|
2022-11-08 |
| MEDIUM | 0 |
SSA-853037 V1.0: File Parsing Vulnerabilities in Parasolid
SIEMENS-SSA-853037
|
SSA-853037 V1.0: File Parsing Vulnerabilities in Parasolid
|
2022-11-08 |
| MEDIUM | 0 |
SSA-501891 V1.1 (Last Update: 2022-11-08): Cross-Site Scripting Vulnerability in SCALANCE X-200 and X-200IRT Families
SIEMENS-SSA-501891
|
SSA-501891 V1.1 (Last Update: 2022-11-08): Cross-Site Scripting Vulnerability in SCALANCE X-200 and X-200IRT Families
|
2022-11-08 |
| MEDIUM | 0 |
SSA-400332 V1.1 (Last Update: 2022-11-08): Insufficient Design IP Protection in IEEE 1735 Recommended Practice - Impact to Questa and ModelSim
SIEMENS-SSA-400332
|
SSA-400332 V1.1 (Last Update: 2022-11-08): Insufficient Design IP Protection in IEEE 1735 Recommended Practice - Impact to Questa and ModelSim
|
2022-11-08 |
| MEDIUM | 6.6 |
SSA-371761 V1.0: Arbitrary Code Execution Vulnerability in the Logback Component of SINEC NMS before V1.0.3
SIEMENS-SSA-371761 · 1 CVE
|
SSA-371761 V1.0: Arbitrary Code Execution Vulnerability in the Logback Component of SINEC NMS before V1.0.3
|
2022-11-08 |
| MEDIUM | 0 |
SSA-362164 V1.2 (Last Update: 2022-11-08): Predictable Initial Sequence Numbers in the TCP/IP Stack of Nucleus RTOS
SIEMENS-SSA-362164
|
SSA-362164 V1.2 (Last Update: 2022-11-08): Predictable Initial Sequence Numbers in the TCP/IP Stack of Nucleus RTOS
|
2022-11-08 |
| CRITICAL | 9.4 |
Siemens Siveillance Video Mobile Server
ICSA-22-298-03 · 1 CVE
|
Siveillance Video Mobile Server V2022 R2
|
2022-10-21 |
| MEDIUM | 0 |
SSA-640732 V1.0: Authentication Bypass Vulnerability in Siveillance Video Mobile Server
SIEMENS-SSA-640732
|
SSA-640732 V1.0: Authentication Bypass Vulnerability in Siveillance Video Mobile Server
|
2022-10-21 |
| HIGH | 7.4 |
Siemens Industrial Edge Management
ICSA-22-286-02 · 1 CVE
|
Industrial Edge Management
|
2022-10-13 |
| CRITICAL | 9.8 |
Siemens SCALANCE
ICSA-21-287-07 · 15 CVEs
|
SCALANCE W1750D,
SCALANCE W1750D,
SCALANCE W1750D
|
2022-10-11 |
| CRITICAL | 9.8 |
Siemens SCALANCE W1750D
ICSA-21-315-06 · 6 CVEs
|
SCALANCE W1750D,
SCALANCE W1750D
|
2022-10-11 |
| CRITICAL | 9.8 |
Siemens Apache HTTP Server
ICSA-22-167-06 · 3 CVEs
|
RUGGEDCOM NMS,
SINEC NMS,
SINEMA Remote Connect Server
+1 more
|
2022-10-11 |
| MEDIUM | 6.1 |
Siemens LOGO!
ICSA-22-286-01 · 1 CVE
|
LOGO! 8 BM (incl. SIPLUS variants)
|
2022-10-11 |
| HIGH | 7.8 |
Siemens Solid Edge
ICSA-22-286-03 · 1 CVE
|
Solid Edge
|
2022-10-11 |
| CRITICAL | 9.3 |
Siemens SIMATIC S7-1200 and S7-1500 CPU Families
ICSA-22-286-04 · 1 CVE
|
SIMATIC Drive Controller family,
SIMATIC ET 200SP Open Controller CPU 1515SP PC (incl. SIPLUS variants),
SIMATIC ET 200SP Open Controller CPU 1515SP PC2 (incl. SIPLUS variants)
+4 more
|
2022-10-11 |
| HIGH | 8.8 |
Siemens Desigo PXM Devices
ICSA-22-286-06 · 7 CVEs
|
Desigo PXM30-1,
Desigo PXM30.E,
Desigo PXM40-1
+7 more
|
2022-10-11 |
| HIGH | 7.8 |
Siemens JT Open Toolkit and Simcenter Femap
ICSA-22-286-10 · 1 CVE
|
JTTK,
Simcenter Femap V2022.1,
Simcenter Femap V2022.2
|
2022-10-11 |
| HIGH | 7.5 |
Siemens SIMATIC HMI Panels
ICSA-22-286-14 · 1 CVE
|
SIMATIC HMI Comfort Panels (incl. SIPLUS variants),
SIMATIC HMI KTP Mobile Panels,
SIMATIC HMI KTP1200 Basic (6AV2123-2MB03-0AX0)
+7 more
|
2022-10-11 |
| CRITICAL | 9.8 |
Siemens Desigo CC and Cerberus DMS
ICSA-22-286-16 · 1 CVE
|
Cerberus DMS,
Desigo CC,
Desigo CC Compact
|
2022-10-11 |
| MEDIUM | 0 |
SSA-928782 V1.0: Firmware Authenticity Vulnerability in LOGO! 8 BM Devices
SIEMENS-SSA-928782
|
SSA-928782 V1.0: Firmware Authenticity Vulnerability in LOGO! 8 BM Devices
|
2022-10-11 |
| MEDIUM | 0 |
SSA-917476 V1.1 (Last Update: 2022-10-11): Multiple Vulnerabilities in SCALANCE W1750D
SIEMENS-SSA-917476
|
SSA-917476 V1.1 (Last Update: 2022-10-11): Multiple Vulnerabilities in SCALANCE W1750D
|
2022-10-11 |
| MEDIUM | 0 |
SSB-898115 V1.0: Remarks Regarding SSA-568427 (Weak Key Protection Vulnerability in SIMATIC S7-1200 and S7-1500 CPU Families)
SIEMENS-SSA-568427
|
SSB-898115 V1.0: Remarks Regarding SSA-568427 (Weak Key Protection Vulnerability in SIMATIC S7-1200 and S7-1500 CPU Families)
|
2022-10-11 |
| MEDIUM | 0 |
SSA-836027 V1.0: Client-side Authentication in Desigo CC and Cerberus DMS
SIEMENS-SSA-836027
|
SSA-836027 V1.0: Client-side Authentication in Desigo CC and Cerberus DMS
|
2022-10-11 |
| MEDIUM | 0 |
SSA-685781 V1.1 (Last Update: 2022-10-11): Multiple Vulnerabilities in Apache HTTP Server Affecting Siemens Products
SIEMENS-SSA-685781
|
SSA-685781 V1.1 (Last Update: 2022-10-11): Multiple Vulnerabilities in Apache HTTP Server Affecting Siemens Products
|
2022-10-11 |
| MEDIUM | 0 |
SSA-649853 V1.0: Improper Certificate Validation Vulnerability in Industrial Edge Management
SIEMENS-SSA-649853
|
SSA-649853 V1.0: Improper Certificate Validation Vulnerability in Industrial Edge Management
|
2022-10-11 |
| MEDIUM | 0 |
SSA-611756 V1.0: JT File Parsing Vulnerability in JTTK and Simcenter Femap
SIEMENS-SSA-611756
|
SSA-611756 V1.0: JT File Parsing Vulnerability in JTTK and Simcenter Femap
|
2022-10-11 |
| MEDIUM | 0 |
SSA-384224 V1.0: Denial of Service Vulnerability in SIMATIC HMI Panels
SIEMENS-SSA-384224
|
SSA-384224 V1.0: Denial of Service Vulnerability in SIMATIC HMI Panels
|
2022-10-11 |
| MEDIUM | 0 |
SSA-360783 V1.0: Multiple Webserver Vulnerabilities in Desigo PXM Devices
SIEMENS-SSA-360783
|
SSA-360783 V1.0: Multiple Webserver Vulnerabilities in Desigo PXM Devices
|
2022-10-11 |
| MEDIUM | 0 |
SSA-280624 V1.1 (Last Update: 2022-10-11): Multiple Vulnerabilities in SCALANCE W1750D
SIEMENS-SSA-280624
|
SSA-280624 V1.1 (Last Update: 2022-10-11): Multiple Vulnerabilities in SCALANCE W1750D
|
2022-10-11 |
| MEDIUM | 0 |
SSA-258115 V1.0: DWG File Parsing Vulnerability in Solid Edge before SE2022MP9
SIEMENS-SSA-258115
|
SSA-258115 V1.0: DWG File Parsing Vulnerability in Solid Edge before SE2022MP9
|
2022-10-11 |
| CRITICAL | 9.8 |
SSA-254054 V1.3 (Last Update: 2022-10-11): Spring Framework Vulnerability (Spring4Shell or SpringShell, CVE-2022-22965) - Impact to Siemens Products
SIEMENS-SSA-254054 · 1 CVE
|
SSA-254054 V1.3 (Last Update: 2022-10-11): Spring Framework Vulnerability (Spring4Shell or SpringShell, CVE-2022-22965) - Impact to Siemens Products
|
2022-10-11 |
| MEDIUM | 5.9 |
Siemens OpenSSL Vulnerability in Industrial Products (Update E)
ICSA-18-226-02 · 1 CVE
|
MindConnect IoT2040,
MindConnect Nano (IPC227D),
SIMATIC ET 200SP Open Controller CPU 1515SP PC (incl. SIPLUS variants)
+17 more
|
2022-09-13 |
| HIGH | 7.8 |
Simcenter Femap and Parasolid
ICSA-22-195-09 · 1 CVE
|
Parasolid V33.1,
Parasolid V34.0,
Parasolid V34.1
+2 more
|
2022-09-13 |
| HIGH | 7.8 |
Open Design Alliance Drawings SDK
ICSA-22-195-11 · 3 CVEs
|
JT2Go,
Teamcenter Visualization V12.4,
Teamcenter Visualization V13.2
+2 more
|
2022-09-13 |
| HIGH | 7.8 |
Siemens Mobility CoreShield OWG Software
ICSA-22-258-01 · 1 CVE
|
CoreShield One-Way Gateway (OWG) Software
|
2022-09-13 |
| HIGH | 7.8 |
Siemens Simcenter Femap and Parasolid
ICSA-22-258-02 · 20 CVEs
|
Parasolid V33.1,
Parasolid V33.1,
Parasolid V34.0
+5 more
|
2022-09-13 |
| HIGH | 8.8 |
Siemens SINEC INS
ICSA-22-258-05 · 14 CVEs
|
SINEC INS
|
2022-09-13 |
| MEDIUM | 0 |
SSA-637483 V1.0: Third-Party Component Vulnerabilities in SINEC INS before V1.0 SP2
SIEMENS-SSA-637483
|
SSA-637483 V1.0: Third-Party Component Vulnerabilities in SINEC INS before V1.0 SP2
|
2022-09-13 |
| MEDIUM | 0 |
SSA-589975 V1.0: Improper Access Control Vulnerability in CoreShield OWG Software
SIEMENS-SSA-589975
|
SSA-589975 V1.0: Improper Access Control Vulnerability in CoreShield OWG Software
|
2022-09-13 |
| MEDIUM | 0 |
SSA-518824 V1.0: Multiple File Parsing Vulnerabilities in Simcenter Femap and Parasolid
SIEMENS-SSA-518824
|
SSA-518824 V1.0: Multiple File Parsing Vulnerabilities in Simcenter Femap and Parasolid
|
2022-09-13 |
| MEDIUM | 0 |
SSA-429204 V1.2 (Last Update: 2022-09-13): Open Design Alliance Drawings SDK Vulnerabilities in JT2Go and Teamcenter Visualization
SIEMENS-SSA-429204
|
SSA-429204 V1.2 (Last Update: 2022-09-13): Open Design Alliance Drawings SDK Vulnerabilities in JT2Go and Teamcenter Visualization
|
2022-09-13 |
| MEDIUM | 0 |
SSA-243317 V1.2 (Last Update: 2022-09-13): File Parsing Vulnerability in Simcenter Femap and Parasolid
SIEMENS-SSA-243317
|
SSA-243317 V1.2 (Last Update: 2022-09-13): File Parsing Vulnerability in Simcenter Femap and Parasolid
|
2022-09-13 |
| MEDIUM | 0 |
SSA-179516 V1.7 (Last Update: 2022-09-13): OpenSSL Vulnerability in Industrial Products
SIEMENS-SSA-179516
|
SSA-179516 V1.7 (Last Update: 2022-09-13): OpenSSL Vulnerability in Industrial Products
|
2022-09-13 |
| CRITICAL | 9.9 |
Siemens SICAM TOOLBOX II
ICSA-22-223-06 · 1 CVE
|
SICAM TOOLBOX II
|
2022-08-11 |
| HIGH | 7.5 |
Siemens SIMATIC Panels and WinCC (TIA Portal)
ICSA-19-134-09 · 1 CVE
|
SIMATIC CP 443-1 OPC UA,
SIMATIC ET 200SP Open Controller CPU 1515SP PC2 (incl. SIPLUS variants),
SIMATIC HMI Comfort Outdoor Panels 7" & 15" (incl. SIPLUS variants)
+16 more
|
2022-08-09 |
| MEDIUM | 6.7 |
Siemens UMC Stack (Update H)
ICSA-20-196-05 · 3 CVEs
|
Opcenter Execution Discrete,
Opcenter Execution Foundation,
Opcenter Execution Process
+13 more
|
2022-08-09 |
| MEDIUM | 5.9 |
Siemens SIMATIC S7-300 CPUs and SINUMERIK Controller (Update A)
ICSA-20-315-04 · 1 CVE
|
SIMATIC S7-300 CPU family (incl. related ET200 CPUs and SIPLUS variants),
SIMATIC TDC CPU555,
SINUMERIK 840D sl
|
2022-08-09 |
| HIGH | 7.3 |
Siemens SIMATIC Software Products (Update B)
ICSA-21-194-06 · 1 CVE
|
SIMATIC PCS 7 V8.2 and earlier,
SIMATIC PCS 7 V9.X,
SIMATIC PDM
+2 more
|
2022-08-09 |
| MEDIUM | 6.3 |
Siemens SIMATIC WinCC and PCS
ICSA-22-041-02 · 2 CVEs
|
SIMATIC PCS 7 V8.2,
SIMATIC PCS 7 V9.0,
SIMATIC PCS 7 V9.1
+6 more
|
2022-08-09 |
| CRITICAL | 9.9 |
Siemens SICAM TOOLBOX II (Update A)
ICSA-22-041-05 · 1 CVE
|
SICAM TOOLBOX II
|
2022-08-09 |
| HIGH | 8.1 |
Siemens Industrial Devices using libcurl
ICSA-22-132-13 · 2 CVEs
|
LOGO! CMR family,
RUGGEDCOM RM1224 LTE(4G) EU,
RUGGEDCOM RM1224 LTE(4G) NAM
+31 more
|
2022-08-09 |
| HIGH | 7.8 |
Siemens Teamcenter
ICSA-22-132-16 · 2 CVEs
|
Teamcenter V12.4,
Teamcenter V13.0,
Teamcenter V13.1
+3 more
|
2022-08-09 |
| CRITICAL | 9.9 |
Siemens Teamcenter
ICSA-22-167-13 · 1 CVE
|
Teamcenter V12.4,
Teamcenter V13.0,
Teamcenter V13.1
+3 more
|
2022-08-09 |
| HIGH | 7.8 |
Siemens Datalogics File Parsing Vulnerability
ICSA-22-195-07 · 1 CVE
|
JT2Go,
Teamcenter Visualization V13.3,
Teamcenter Visualization V14.0
|
2022-08-09 |
| CRITICAL | 10.0 |
Siemens SIMATIC eaSie Core Package
ICSA-22-195-15 · 2 CVEs
|
SIMATIC eaSie Core Package
|
2022-08-09 |
| MEDIUM | 5.3 |
Siemens Simcenter STAR-CCM+
ICSA-22-223-01 · 1 CVE
|
Simcenter STAR-CCM+
|
2022-08-09 |
| HIGH | 7.6 |
Siemens Teamcenter
ICSA-22-223-02 · 2 CVEs
|
Teamcenter V12.4,
Teamcenter V13.0,
Teamcenter V13.1
+3 more
|
2022-08-09 |
| MEDIUM | 4.3 |
Siemens SICAM A8000 Web Server Module
ICSA-22-223-05 · 1 CVE
|
CP-8000 MASTER MODULE WITH I/O -25/+70°C,
CP-8000 MASTER MODULE WITH I/O -40/+70°C,
CP-8021 MASTER MODULE
+1 more
|
2022-08-09 |
| MEDIUM | 0 |
SSA-914168 V1.3 (Last Update: 2022-08-09): Multiple Vulnerabilities in SIMATIC WinCC Affecting Other SIMATIC Software Products
SIEMENS-SSA-914168
|
SSA-914168 V1.3 (Last Update: 2022-08-09): Multiple Vulnerabilities in SIMATIC WinCC Affecting Other SIMATIC Software Products
|
2022-08-09 |
| MEDIUM | 0 |
SSA-841348 V1.9 (Last Update: 2022-08-09): Multiple Vulnerabilities in the UMC Component
SIEMENS-SSA-841348
|
SSA-841348 V1.9 (Last Update: 2022-08-09): Multiple Vulnerabilities in the UMC Component
|
2022-08-09 |
| MEDIUM | 0 |
SSA-829738 V1.1 (Last Update: 2022-08-09): Datalogics File Parsing Vulnerability in Teamcenter Visualization and JT2Go
SIEMENS-SSA-829738
|
SSA-829738 V1.1 (Last Update: 2022-08-09): Datalogics File Parsing Vulnerability in Teamcenter Visualization and JT2Go
|
2022-08-09 |
| HIGH | 7.5 |
SSA-789162 V1.2 (Last Update: 2022-08-09): Vulnerabilities in Teamcenter
SIEMENS-SSA-789162 · 2 CVEs
|
SSA-789162 V1.2 (Last Update: 2022-08-09): Vulnerabilities in Teamcenter
|
2022-08-09 |
| MEDIUM | 0 |
SSA-759952 V1.0: Command Injection and Denial of Service Vulnerability in Teamcenter
SIEMENS-SSA-759952
|
SSA-759952 V1.0: Command Injection and Denial of Service Vulnerability in Teamcenter
|
2022-08-09 |
| MEDIUM | 0 |
SSA-732250 V1.2 (Last Update: 2022-08-09): Libcurl Vulnerabilities in Industrial Devices
SIEMENS-SSA-732250
|
SSA-732250 V1.2 (Last Update: 2022-08-09): Libcurl Vulnerabilities in Industrial Devices
|
2022-08-09 |
| MEDIUM | 0 |
SSA-669737 V1.2 (Last Update: 2022-08-09): Improper Access Control Vulnerability in SICAM TOOLBOX II
SIEMENS-SSA-669737
|
SSA-669737 V1.2 (Last Update: 2022-08-09): Improper Access Control Vulnerability in SICAM TOOLBOX II
|
2022-08-09 |
| LOW | 3.7 |
SSA-661247 V3.0 (Last Update: 2022-08-09): Apache Log4j Vulnerabilities (Log4Shell, CVE-2021-44228, CVE-2021-45046) - Impact to Siemens Products
SIEMENS-SSA-661247 · 4 CVEs
|
SSA-661247 V3.0 (Last Update: 2022-08-09): Apache Log4j Vulnerabilities (Log4Shell, CVE-2021-44228, CVE-2021-45046) - Impact to Siemens Products
|
2022-08-09 |
| MEDIUM | 0 |
SSA-661034 V1.2 (Last Update: 2022-08-09): Incorrect Permission Assignment in Multiple SIMATIC Software Products
SIEMENS-SSA-661034
|
SSA-661034 V1.2 (Last Update: 2022-08-09): Incorrect Permission Assignment in Multiple SIMATIC Software Products
|
2022-08-09 |
| MEDIUM | 0 |
SSA-629512 V1.6 (Last Update: 2022-08-09): Local Privilege Escalation Vulnerability in TIA Portal
SIEMENS-SSA-629512
|
SSA-629512 V1.6 (Last Update: 2022-08-09): Local Privilege Escalation Vulnerability in TIA Portal
|
2022-08-09 |
| HIGH | 7.1 |
SSA-580693 V1.3 (Last Update: 2022-08-09): WIBU Systems CodeMeter Runtime Denial-of-Service Vulnerability in Siemens Products
SIEMENS-SSA-580693 · 1 CVE
|
SSA-580693 V1.3 (Last Update: 2022-08-09): WIBU Systems CodeMeter Runtime Denial-of-Service Vulnerability in Siemens Products
|
2022-08-09 |
| MEDIUM | 0 |
SSA-580125 V1.1 (Last Update: 2022-08-09): Multiple Vulnerabilities in SIMATIC eaSie
SIEMENS-SSA-580125
|
SSA-580125 V1.1 (Last Update: 2022-08-09): Multiple Vulnerabilities in SIMATIC eaSie
|
2022-08-09 |
| MEDIUM | 0 |
SSA-555707 V1.0: Information Disclosure Vulnerability in Simcenter STAR-CCM+
SIEMENS-SSA-555707
|
SSA-555707 V1.0: Information Disclosure Vulnerability in Simcenter STAR-CCM+
|
2022-08-09 |
| MEDIUM | 0 |
SSA-492828 V1.2 (Last Update: 2022-08-09): Denial-of-Service Vulnerability in SIMATIC S7-300 CPUs and SINUMERIK Controller
SIEMENS-SSA-492828
|
SSA-492828 V1.2 (Last Update: 2022-08-09): Denial-of-Service Vulnerability in SIMATIC S7-300 CPUs and SINUMERIK Controller
|
2022-08-09 |
| MEDIUM | 0 |
SSA-307392 V1.9 (Last Update: 2022-08-09): Denial of Service in OPC UA in Industrial Products
SIEMENS-SSA-307392
|
SSA-307392 V1.9 (Last Update: 2022-08-09): Denial of Service in OPC UA in Industrial Products
|
2022-08-09 |
| HIGH | 7.5 |
SSA-232418 V1.4 (Last Update: 2022-08-09): Vulnerabilities in SIMATIC S7-1200 and SIMATIC S7-1500 CPU Families
SIEMENS-SSA-232418 · 2 CVEs
|
SSA-232418 V1.4 (Last Update: 2022-08-09): Vulnerabilities in SIMATIC S7-1200 and SIMATIC S7-1500 CPU Families
|
2022-08-09 |
| MEDIUM | 0 |
SSA-220589 V1.2 (Last Update: 2022-08-09): Hard Coded Default Credential Vulnerability in Teamcenter
SIEMENS-SSA-220589
|
SSA-220589 V1.2 (Last Update: 2022-08-09): Hard Coded Default Credential Vulnerability in Teamcenter
|
2022-08-09 |
| MEDIUM | 0 |
SSA-185638 V1.0: Authentication Bypass Vulnerability in SICAM A8000 Web Server Module
SIEMENS-SSA-185638
|
SSA-185638 V1.0: Authentication Bypass Vulnerability in SICAM A8000 Web Server Module
|
2022-08-09 |
| MEDIUM | 5.4 |
Siemens SCALANCE X (Update D)
ICSA-19-085-01 · 1 CVE
|
SCALANCE X204-2,
SCALANCE X204-2FM,
SCALANCE X204-2LD
+156 more
|
2022-07-12 |
| MEDIUM | 5.3 |
Siemens Mendix
ICSA-22-104-07 · 1 CVE
|
Mendix Applications using Mendix 7,
Mendix Applications using Mendix 8,
Mendix Applications using Mendix 9
+1 more
|
2022-07-12 |
| HIGH | 7.5 |
Siemens TIA Administrator
ICSA-22-104-16 · 1 CVE
|
SIMATIC PCS neo (Administration Console),
SINETPLAN,
TIA Portal
|
2022-07-12 |
| HIGH | 8.0 |
Siemens SIMATIC MV500 Devices
ICSA-22-195-03 · 2 CVEs
|
SIMATIC MV540 H,
SIMATIC MV540 S,
SIMATIC MV550 H
+3 more
|
2022-07-12 |
| HIGH | 7.8 |
Siemens Simcenter Femap
ICSA-22-195-04 · 1 CVE
|
Simcenter Femap
|
2022-07-12 |
| HIGH | 7.2 |
Siemens RUGGEDCOM ROX
ICSA-22-195-05 · 1 CVE
|
RUGGEDCOM ROX MX5000,
RUGGEDCOM ROX MX5000RE,
RUGGEDCOM ROX RX1400
+8 more
|
2022-07-12 |
| MEDIUM | 6.5 |
Siemens Mendix Excel Importer
ICSA-22-195-06 · 1 CVE
|
Mendix Excel Importer Module (Mendix 8 compatible),
Mendix Excel Importer Module (Mendix 9 compatible)
|
2022-07-12 |
| HIGH | 7.8 |
Siemens PADS Standard/Plus Viewer
ICSA-22-195-08 · 20 CVEs
|
PADS Standard/Plus Viewer
|
2022-07-12 |
| MEDIUM | 6.5 |
Siemens Mendix Applications
ICSA-22-195-10 · 1 CVE
|
Mendix Applications using Mendix 9,
Mendix Applications using Mendix 9 (V9.12)
|
2022-07-12 |
| MEDIUM | 4.9 |
Siemens Mendix
ICSA-22-195-13 · 1 CVE
|
Mendix Applications using Mendix 7,
Mendix Applications using Mendix 8,
Mendix Applications using Mendix 9
+2 more
|
2022-07-12 |
| HIGH | 7.5 |
Siemens CPC80 Firmware of SICAM A8000
ICSA-22-195-14 · 1 CVE
|
CP-8000 MASTER MODULE WITH I/O -25/+70°C,
CP-8000 MASTER MODULE WITH I/O -40/+70°C,
CP-8021 MASTER MODULE
+1 more
|
2022-07-12 |
| HIGH | 8.6 |
Siemens EN100 Ethernet Module
ICSA-22-195-16 · 1 CVE
|
EN100 Ethernet module DNP3 IP variant,
EN100 Ethernet module IEC 104 variant,
EN100 Ethernet module IEC 61850 variant
+2 more
|
2022-07-12 |
| CRITICAL | 9.6 |
Siemens Opcenter Quality
ICSA-22-195-17 · 1 CVE
|
Opcenter Quality V13.1,
Opcenter Quality V13.2
|
2022-07-12 |
| MEDIUM | 0 |
SSA-944952 V1.0: Authentication Bypass Vulnerability in Opcenter Quality
SIEMENS-SSA-944952
|
SSA-944952 V1.0: Authentication Bypass Vulnerability in Opcenter Quality
|
2022-07-12 |
| CRITICAL | 9.8 |
SSA-910883 V1.0: DHCP Client Vulnerability in SINAMICS PERFECT HARMONY GH180 Drives
SIEMENS-SSA-910883 · 1 CVE
|
SSA-910883 V1.0: DHCP Client Vulnerability in SINAMICS PERFECT HARMONY GH180 Drives
|
2022-07-12 |
| HIGH | 7.5 |
SSA-865333 V1.0: Memory Corruption Vulnerability in EN100 Ethernet Module
SIEMENS-SSA-865333 · 1 CVE
|
SSA-865333 V1.0: Memory Corruption Vulnerability in EN100 Ethernet Module
|
2022-07-12 |
| MEDIUM | 0 |
SSA-711829 V1.1 (Last Update: 2022-07-12): Denial of Service Vulnerability in TIA Administrator
SIEMENS-SSA-711829
|
SSA-711829 V1.1 (Last Update: 2022-07-12): Denial of Service Vulnerability in TIA Administrator
|
2022-07-12 |
| MEDIUM | 0 |
SSA-610768 V1.0: XML Entity Expansion Injection Vulnerability in Mendix Excel Importer Module
SIEMENS-SSA-610768
|
SSA-610768 V1.0: XML Entity Expansion Injection Vulnerability in Mendix Excel Importer Module
|
2022-07-12 |
| MEDIUM | 0 |
SSA-599506 V1.0: Command Injection in RUGGEDCOM ROX
SIEMENS-SSA-599506
|
SSA-599506 V1.0: Command Injection in RUGGEDCOM ROX
|
2022-07-12 |
| MEDIUM | 0 |
SSA-557804 V1.4 (Last Update: 2022-07-12): Mirror Port Isolation Vulnerability in SCALANCE X Switches
SIEMENS-SSA-557804
|
SSA-557804 V1.4 (Last Update: 2022-07-12): Mirror Port Isolation Vulnerability in SCALANCE X Switches
|
2022-07-12 |
| MEDIUM | 0 |
SSA-492173 V1.0: Expression Injection Vulnerability in Mendix Applications
SIEMENS-SSA-492173
|
SSA-492173 V1.0: Expression Injection Vulnerability in Mendix Applications
|
2022-07-12 |
| MEDIUM | 0 |
SSA-491621 V1.0: Denial of Service Vulnerability in CPC80 Firmware of SICAM A8000 Devices
SIEMENS-SSA-491621
|
SSA-491621 V1.0: Denial of Service Vulnerability in CPC80 Firmware of SICAM A8000 Devices
|
2022-07-12 |
| MEDIUM | 0 |
SSA-474231 V1.0: File Parsing Vulnerability in Simcenter Femap before V2022.2
SIEMENS-SSA-474231
|
SSA-474231 V1.0: File Parsing Vulnerability in Simcenter Femap before V2022.2
|
2022-07-12 |
| MEDIUM | 0 |
SSA-439148 V1.0: File Parsing Vulnerabilities in PADS Standard/Plus Viewer
SIEMENS-SSA-439148
|
SSA-439148 V1.0: File Parsing Vulnerabilities in PADS Standard/Plus Viewer
|
2022-07-12 |
| MEDIUM | 0 |
SSA-433782 V1.0: Improper Access Control Vulnerability in Mendix
SIEMENS-SSA-433782
|
SSA-433782 V1.0: Improper Access Control Vulnerability in Mendix
|
2022-07-12 |
| MEDIUM | 0 |
SSA-414513 V1.2 (Last Update: 2022-07-12): Information Disclosure Vulnerability in Mendix
SIEMENS-SSA-414513
|
SSA-414513 V1.2 (Last Update: 2022-07-12): Information Disclosure Vulnerability in Mendix
|
2022-07-12 |
| HIGH | 8.0 |
SSA-348662 V1.0: Multiple Vulnerabilities in SIMATIC MV500 Devices before V3.3
SIEMENS-SSA-348662 · 2 CVEs
|
SSA-348662 V1.0: Multiple Vulnerabilities in SIMATIC MV500 Devices before V3.3
|
2022-07-12 |
| CRITICAL | 9.8 |
Siemens WinCC OA
ICSA-22-172-06 · 1 CVE
|
SIMATIC WinCC OA V3.16,
SIMATIC WinCC OA V3.17,
SIMATIC WinCC OA V3.18
|
2022-06-21 |
| MEDIUM | 0 |
SSA-111512 V1.0: Client-side Authentication in SIMATIC WinCC OA
SIEMENS-SSA-111512
|
SSA-111512 V1.0: Client-side Authentication in SIMATIC WinCC OA
|
2022-06-21 |
| HIGH | 7.8 |
Siemens TIA Portal (Update F)
ICSA-20-014-05 · 1 CVE
|
TIA Portal v15,
TIA Portal v17,
TIA Portal v14
+1 more
|
2022-06-16 |
| CRITICAL | 9.0 |
Siemens Desigo PXC and DXR Devices
ICSA-22-132-10 · 8 CVEs
|
Desigo DXR2,
Desigo PXC3,
Desigo PXC4
+1 more
|
2022-06-16 |
| HIGH | 7.5 |
Siemens BACnet Field Panels (Update A)
ICSA-17-285-05 · 2 CVEs
|
APOGEE PXC Compact (BACnet),
APOGEE PXC Compact (P2 Ethernet),
APOGEE PXC Modular (BACnet)
+3 more
|
2022-06-14 |
| HIGH | 8.8 |
Siemens SIMATIC CP (Update A)
ICSA-21-222-07 · 2 CVEs
|
SIMATIC CP 1543-1 (incl. SIPLUS variants),
SIMATIC CP 1545-1
|
2022-06-14 |
| MEDIUM | 6.5 |
Siemens SIMATIC CP (Update A)
ICSA-21-257-06 · 1 CVE
|
SIMATIC CP 1543-1 (incl. SIPLUS variants),
SIMATIC CP 1545-1
|
2022-06-14 |
| HIGH | 7.8 |
Siemens Solid Edge, JT2Go, and Teamcenter Visualization
ICSA-22-041-07 · 5 CVEs
|
JT2Go,
Solid Edge SE2021,
Solid Edge SE2022
+5 more
|
2022-06-14 |
| HIGH | 8.3 |
Siemens Mendix SAML Module
ICSA-22-167-04 · 2 CVEs
|
Mendix SAML Module (Mendix 7 compatible),
Mendix SAML Module (Mendix 8 compatible),
Mendix SAML Module (Mendix 9 compatible)
|
2022-06-14 |
| HIGH | 8.6 |
Siemens EN100 Ethernet Module
ICSA-22-167-05 · 1 CVE
|
EN100 Ethernet module DNP3 IP variant,
EN100 Ethernet module IEC 104 variant,
EN100 Ethernet module IEC 61850 variant
+2 more
|
2022-06-14 |
| MEDIUM | 4.2 |
Siemens SINEMA Remote Connect Server
ICSA-22-167-07 · 2 CVEs
|
SINEMA Remote Connect Server
|
2022-06-14 |
| CRITICAL | 9.8 |
Siemens SCALANCE LPE9403 Third-Party Vulnerabilities
ICSA-22-167-09 · 10 CVEs
|
SCALANCE LPE9403
|
2022-06-14 |
| MEDIUM | 5.9 |
Siemens SCALANCE XM-400 and XR-500
ICSA-22-167-10 · 1 CVE
|
SCALANCE XM408-4C,
SCALANCE XM408-4C (L3 int.),
SCALANCE XM408-8C
+23 more
|
2022-06-14 |
| HIGH | 8.8 |
Siemens Spectrum Power Systems
ICSA-22-167-12 · 1 CVE
|
Spectrum Power 4,
Spectrum Power 7,
Spectrum Power MGMS
|
2022-06-14 |
| MEDIUM | 6.1 |
Siemens Teamcenter Active Workspace
ICSA-22-167-15 · 1 CVE
|
Teamcenter Active Workspace V5.2,
Teamcenter Active Workspace V6.0
|
2022-06-14 |
| HIGH | 7.8 |
Siemens SCALANCE LPE 4903 and SINUMERIK Edge
ICSA-22-167-16 · 1 CVE
|
SCALANCE LPE9403,
SINUMERIK Edge
|
2022-06-14 |
| MEDIUM | 0 |
SSA-911567 V1.0: Missing HTTP headers in SINEMA Remote Connect Server before V3.0 SP2
SIEMENS-SSA-911567
|
SSA-911567 V1.0: Missing HTTP headers in SINEMA Remote Connect Server before V3.0 SP2
|
2022-06-14 |
| MEDIUM | 0 |
SSA-740594 V1.0: Privilege Escalation Vulnerability in Mendix SAML Module
SIEMENS-SSA-740594
|
SSA-740594 V1.0: Privilege Escalation Vulnerability in Mendix SAML Module
|
2022-06-14 |
| HIGH | 7.5 |
SSA-693555 V1.0: Memory Corruption Vulnerability in EN100 Ethernet Module
SIEMENS-SSA-693555 · 1 CVE
|
SSA-693555 V1.0: Memory Corruption Vulnerability in EN100 Ethernet Module
|
2022-06-14 |
| MEDIUM | 0 |
SSA-679335 V1.1 (Last Update: 2022-06-14): Multiple Vulnerabilities in Embedded FTP Server of SIMATIC CP Modules
SIEMENS-SSA-679335
|
SSA-679335 V1.1 (Last Update: 2022-06-14): Multiple Vulnerabilities in Embedded FTP Server of SIMATIC CP Modules
|
2022-06-14 |
| MEDIUM | 0 |
SSA-662649 V1.1 (Last Update: 2022-06-14): Denial of Service Vulnerability in Desigo DXR and PXC Controllers
SIEMENS-SSA-662649
|
SSA-662649 V1.1 (Last Update: 2022-06-14): Denial of Service Vulnerability in Desigo DXR and PXC Controllers
|
2022-06-14 |
| MEDIUM | 0 |
SSA-626968 V1.1 (Last Update: 2022-06-14): Multiple Webserver Vulnerabilities in Desigo PXC and DXR Devices
SIEMENS-SSA-626968
|
SSA-626968 V1.1 (Last Update: 2022-06-14): Multiple Webserver Vulnerabilities in Desigo PXC and DXR Devices
|
2022-06-14 |
| MEDIUM | 0 |
SSA-535997 V1.1 (Last Update: 2022-06-14): Cleartext Storage of Sensitive Information in Multiple SIMATIC Products
SIEMENS-SSA-535997
|
SSA-535997 V1.1 (Last Update: 2022-06-14): Cleartext Storage of Sensitive Information in Multiple SIMATIC Products
|
2022-06-14 |
| MEDIUM | 0 |
SSA-401167 V1.0: Cross-site scripting Vulnerability in Teamcenter Active Workspace
SIEMENS-SSA-401167
|
SSA-401167 V1.0: Cross-site scripting Vulnerability in Teamcenter Active Workspace
|
2022-06-14 |
| MEDIUM | 0 |
SSA-388239 V1.0: Default Password Leakage affecting the Component Shared HIS used in Spectrum Power Systems
SIEMENS-SSA-388239
|
SSA-388239 V1.0: Default Password Leakage affecting the Component Shared HIS used in Spectrum Power Systems
|
2022-06-14 |
| HIGH | 7.8 |
SSA-330556 V1.0: PwnKit Vulnerability in SCALANCE LPE9403 and SINUMERIK Edge Products (CVE-2021-4034)
SIEMENS-SSA-330556 · 1 CVE
|
SSA-330556 V1.0: PwnKit Vulnerability in SCALANCE LPE9403 and SINUMERIK Edge Products (CVE-2021-4034)
|
2022-06-14 |
| MEDIUM | 0 |
SSA-301589 V1.3 (Last Update: 2022-06-14): Multiple File Parsing Vulnerabilities in Solid Edge, JT2Go and Teamcenter Visualization
SIEMENS-SSA-301589
|
SSA-301589 V1.3 (Last Update: 2022-06-14): Multiple File Parsing Vulnerabilities in Solid Edge, JT2Go and Teamcenter Visualization
|
2022-06-14 |
| MEDIUM | 0 |
SSA-222547 V1.0: Third-Party Component Vulnerabilities in SCALANCE LPE9403 before V2.0
SIEMENS-SSA-222547
|
SSA-222547 V1.0: Third-Party Component Vulnerabilities in SCALANCE LPE9403 before V2.0
|
2022-06-14 |
| MEDIUM | 0 |
SSA-148078 V1.1 (Last Update: 2022-06-14): Multiple Vulnerabilities in APOGEE/TALON Field Panels
SIEMENS-SSA-148078
|
SSA-148078 V1.1 (Last Update: 2022-06-14): Multiple Vulnerabilities in APOGEE/TALON Field Panels
|
2022-06-14 |
| MEDIUM | 0 |
SSA-145224 V1.0: Vulnerability in OSPF Packet Handling of SCALANCE XM-400 and XR-500 Devices
SIEMENS-SSA-145224
|
SSA-145224 V1.0: Vulnerability in OSPF Packet Handling of SCALANCE XM-400 and XR-500 Devices
|
2022-06-14 |
| HIGH | 7.5 |
ICSA-19-253-03_Siemens Industrial Products (Update P)
ICSA-19-253-03 · 4 CVEs
|
SIMATIC ITC2200 PRO,
SIMATIC RF188C,
SIMATIC S7-1500 CPU 1518-4 PN/DP MFP (MLFB- 6ES7518-4AX00-1AC0 6AG1518-4AX00-4AC0 incl. SIPLUS variant)
+104 more
|
2022-05-12 |
| MEDIUM | 5.9 |
Siemens VxWorks-based Industrial Products (Update C)
ICSA-21-194-12 · 1 CVE
|
SCALANCE X208PRO (6GK5208-0HA10-2AA6),
SCALANCE X202-2P IRT PRO (6GK5202-2JR00-2BA6),
SCALANCE X308-2M (6GK5308-2GG00-2AA2)
+107 more
|
2022-05-12 |
| MEDIUM | 0 |
SSA-162616 V1.0: File Parsing Vulnerabilities in Simcenter Femap before V2022.2
SIEMENS-SSA-162616
|
SSA-162616 V1.0: File Parsing Vulnerabilities in Simcenter Femap before V2022.2
|
2022-05-10 |
| MEDIUM | 0 |
SSA-165073 V1.0: Multiple Vulnerabilities in the Webinterface of SICAM P850 and SICAM P855 Devices
SIEMENS-SSA-165073
|
SSA-165073 V1.0: Multiple Vulnerabilities in the Webinterface of SICAM P850 and SICAM P855 Devices
|
2022-05-10 |
| MEDIUM | 0 |
SSA-480937 V1.0: Denial of Service Vulnerability in CP 44x-1 RNA before V1.5.18
SIEMENS-SSA-480937
|
SSA-480937 V1.0: Denial of Service Vulnerability in CP 44x-1 RNA before V1.5.18
|
2022-05-10 |
| MEDIUM | 0 |
SSA-553086 V1.0: Multiple File Parsing Vulnerabilities in JT2Go and Teamcenter Visualization
SIEMENS-SSA-553086
|
SSA-553086 V1.0: Multiple File Parsing Vulnerabilities in JT2Go and Teamcenter Visualization
|
2022-05-10 |
| MEDIUM | 0 |
SSA-736385 V1.0: Memory Corruption Vulnerability in OpenV2G
SIEMENS-SSA-736385
|
SSA-736385 V1.0: Memory Corruption Vulnerability in OpenV2G
|
2022-05-10 |
| MEDIUM | 0 |
SSA-114589 V1.3 (Last Update: 2022-05-10): Multiple Vulnerabilities in Nucleus RTOS based APOGEE, TALON and Desigo PXC/PXM Products
SIEMENS-SSA-114589
|
SSA-114589 V1.3 (Last Update: 2022-05-10): Multiple Vulnerabilities in Nucleus RTOS based APOGEE, TALON and Desigo PXC/PXM Products
|
2022-05-10 |
| MEDIUM | 0 |
SSA-560465 V1.2 (Last Update: 2022-05-10): DHCP Client Vulnerability in VxWorks-based Industrial Products
SIEMENS-SSA-560465
|
SSA-560465 V1.2 (Last Update: 2022-05-10): DHCP Client Vulnerability in VxWorks-based Industrial Products
|
2022-05-10 |
| MEDIUM | 0 |
SSA-756638 V1.1 (Last Update: 2022-05-10): Vulnerabilities in Third-Party Component Mbed TLS of LOGO! CMR Family and SIMATIC RTU 3000 Family
SIEMENS-SSA-756638
|
SSA-756638 V1.1 (Last Update: 2022-05-10): Vulnerabilities in Third-Party Component Mbed TLS of LOGO! CMR Family and SIMATIC RTU 3000 Family
|
2022-05-10 |
| MEDIUM | 0 |
SSA-787292 V1.2 (Last Update: 2022-05-10): Denial of Service Vulnerability in SIMATIC RFID Readers
SIEMENS-SSA-787292
|
SSA-787292 V1.2 (Last Update: 2022-05-10): Denial of Service Vulnerability in SIMATIC RFID Readers
|
2022-05-10 |
| HIGH | 7.5 |
Siemens Industrial Products with OPC UA (Update H)
ICSA-19-099-03 · 1 CVE
|
SIMATIC CP 443-1 OPC UA,
SIMATIC ET 200SP Open Controller CPU 1515SP PC2 (incl. SIPLUS variants),
SIMATIC HMI Comfort Outdoor Panels 7" & 15" (incl. SIPLUS variants)
+16 more
|
2022-04-14 |
| MEDIUM | 0 |
SSA-316850 V1.0: Unauthenticated File Access in SICAM A8000 Devices
SIEMENS-SSA-316850
|
SSA-316850 V1.0: Unauthenticated File Access in SICAM A8000 Devices
|
2022-04-12 |
| MEDIUM | 0 |
SSA-350757 V1.0: Improper Access Control Vulnerability in TIA Portal Affecting S7-1200 and S7-1500 CPUs Web Server (Incl. Related ET200 CPUs and SIPLUS variants)
SIEMENS-SSA-350757
|
SSA-350757 V1.0: Improper Access Control Vulnerability in TIA Portal Affecting S7-1200 and S7-1500 CPUs Web Server (Incl. Related ET200 CPUs and SIPLUS variants)
|
2022-04-12 |
| MEDIUM | 0 |
SSA-392912 V1.0: Multiple Denial Of Service Vulnerabilities in SCALANCE W1700 Devices
SIEMENS-SSA-392912
|
SSA-392912 V1.0: Multiple Denial Of Service Vulnerabilities in SCALANCE W1700 Devices
|
2022-04-12 |
| MEDIUM | 0 |
SSA-655554 V1.0: Multiple Vulnerabilities in SIMATIC Energy Manager before V7.3 Update 1
SIEMENS-SSA-655554
|
SSA-655554 V1.0: Multiple Vulnerabilities in SIMATIC Energy Manager before V7.3 Update 1
|
2022-04-12 |
| MEDIUM | 0 |
SSA-836527 V1.0: Multiple Vulnerabilities in SCALANCE X-300 Switch Family Devices
SIEMENS-SSA-836527
|
SSA-836527 V1.0: Multiple Vulnerabilities in SCALANCE X-300 Switch Family Devices
|
2022-04-12 |
| MEDIUM | 0 |
SSA-870917 V1.0: Improper Access Control Vulnerability in Mendix
SIEMENS-SSA-870917
|
SSA-870917 V1.0: Improper Access Control Vulnerability in Mendix
|
2022-04-12 |
| MEDIUM | 0 |
SSA-998762 V1.0: File Parsing Vulnerabilities in Simcenter Femap before V2022.1.2
SIEMENS-SSA-998762
|
SSA-998762 V1.0: File Parsing Vulnerabilities in Simcenter Femap before V2022.1.2
|
2022-04-12 |
| MEDIUM | 0 |
SSA-273799 V1.3 (Last Update: 2022-04-12): Message Integrity Protection Bypass Vulnerability in SIMATIC Products
SIEMENS-SSA-273799
|
SSA-273799 V1.3 (Last Update: 2022-04-12): Message Integrity Protection Bypass Vulnerability in SIMATIC Products
|
2022-04-12 |
| MEDIUM | 0 |
SSA-348629 V1.9 (Last Update: 2022-04-12): Denial-of-Service Vulnerability in SIMATIC PCS 7, SIMATIC WinCC, SIMATIC WinCC Runtime Professional and SIMATIC NET PC Software
SIEMENS-SSA-348629
|
SSA-348629 V1.9 (Last Update: 2022-04-12): Denial-of-Service Vulnerability in SIMATIC PCS 7, SIMATIC WinCC, SIMATIC WinCC Runtime Professional and SIMATIC NET PC Software
|
2022-04-12 |
| HIGH | 8.2 |
SSA-535640 V1.5 (Last Update: 2022-04-12): Vulnerability in Industrial Products
SIEMENS-SSA-535640 · 1 CVE
|
SSA-535640 V1.5 (Last Update: 2022-04-12): Vulnerability in Industrial Products
|
2022-04-12 |
| MEDIUM | 0 |
SSA-562051 V1.1 (Last Update: 2022-04-12): Cross-Site Scripting Vulnerability in Polarion ALM
SIEMENS-SSA-562051
|
SSA-562051 V1.1 (Last Update: 2022-04-12): Cross-Site Scripting Vulnerability in Polarion ALM
|
2022-04-12 |
| MEDIUM | 0 |
SSA-672373 V1.2 (Last Update: 2022-04-12): Vulnerabilities in CP 1543-1 before V2.0.28
SIEMENS-SSA-672373
|
SSA-672373 V1.2 (Last Update: 2022-04-12): Vulnerabilities in CP 1543-1 before V2.0.28
|
2022-04-12 |
| MEDIUM | 0 |
SSA-995338 V1.2 (Last Update: 2022-04-12): Multiple Vulnerabilities in COMOS Web
SIEMENS-SSA-995338
|
SSA-995338 V1.2 (Last Update: 2022-04-12): Multiple Vulnerabilities in COMOS Web
|
2022-04-12 |
| MEDIUM | 6.4 |
Siemens Climatix POL909 (Update A)
ICSA-21-315-09 · 1 CVE
|
Climatix POL909 (AWM module),
Climatix POL909 (AWB module)
|
2022-03-10 |
| MEDIUM | 0 |
SSA-134279 V1.0: Vulnerability in Mendix Forgot Password Appstore module
SIEMENS-SSA-134279
|
SSA-134279 V1.0: Vulnerability in Mendix Forgot Password Appstore module
|
2022-03-08 |
| MEDIUM | 0 |
SSA-155599 V1.0: File Parsing Vulnerabilities in COMOS
SIEMENS-SSA-155599
|
SSA-155599 V1.0: File Parsing Vulnerabilities in COMOS
|
2022-03-08 |
| MEDIUM | 0 |
SSA-166747 V1.0: Scene File Parsing Vulnerability in Simcenter STAR-CCM+ Viewer before V2022.1
SIEMENS-SSA-166747
|
SSA-166747 V1.0: Scene File Parsing Vulnerability in Simcenter STAR-CCM+ Viewer before V2022.1
|
2022-03-08 |
| MEDIUM | 0 |
SSA-223353 V1.0: Multiple Vulnerabilities in Nucleus RTOS based SIMOTICS CONNECT 400
SIEMENS-SSA-223353
|
SSA-223353 V1.0: Multiple Vulnerabilities in Nucleus RTOS based SIMOTICS CONNECT 400
|
2022-03-08 |
| MEDIUM | 0 |
SSA-252466 V1.0: Multiple Vulnerabilities in Climatix POL909 (AWM and AWB)
SIEMENS-SSA-252466
|
SSA-252466 V1.0: Multiple Vulnerabilities in Climatix POL909 (AWM and AWB)
|
2022-03-08 |
| MEDIUM | 0 |
SSA-337210 V1.0: Privilege Escalation Vulnerability in SINUMERIK MC
SIEMENS-SSA-337210
|
SSA-337210 V1.0: Privilege Escalation Vulnerability in SINUMERIK MC
|
2022-03-08 |
| MEDIUM | 0 |
SSA-389290 V1.0: Third-Party Component Vulnerabilities in SINEC INS
SIEMENS-SSA-389290
|
SSA-389290 V1.0: Third-Party Component Vulnerabilities in SINEC INS
|
2022-03-08 |
| MEDIUM | 0 |
SSA-406691 V1.0: Buffer Vulnerabilities in DHCP function of RUGGEDCOM ROX products
SIEMENS-SSA-406691
|
SSA-406691 V1.0: Buffer Vulnerabilities in DHCP function of RUGGEDCOM ROX products
|
2022-03-08 |
| MEDIUM | 0 |
SSA-415938 V1.0: Improper Access Control Vulnerability in Mendix
SIEMENS-SSA-415938
|
SSA-415938 V1.0: Improper Access Control Vulnerability in Mendix
|
2022-03-08 |
| MEDIUM | 0 |
SSA-594438 V1.0: Remote Code Execution and Denial-of-Service Vulnerability in multiple RUGGEDCOM ROX products
SIEMENS-SSA-594438
|
SSA-594438 V1.0: Remote Code Execution and Denial-of-Service Vulnerability in multiple RUGGEDCOM ROX products
|
2022-03-08 |
| HIGH | 7.8 |
SSA-501073 V1.1 (Last Update: 2022-03-08): Vulnerabilities in Controllers CPU 1518 MFP using Intel CPUs (November 2020)
SIEMENS-SSA-501073 · 2 CVEs
|
SSA-501073 V1.1 (Last Update: 2022-03-08): Vulnerabilities in Controllers CPU 1518 MFP using Intel CPUs (November 2020)
|
2022-03-08 |
| MEDIUM | 0 |
SSA-534763 V1.6 (Last Update: 2022-03-08): Special Register Buffer Data Sampling (SRBDS) aka Crosstalk in Industrial Products
SIEMENS-SSA-534763
|
SSA-534763 V1.6 (Last Update: 2022-03-08): Special Register Buffer Data Sampling (SRBDS) aka Crosstalk in Industrial Products
|
2022-03-08 |
| HIGH | 8.2 |
SSA-541018 V1.5 (Last Update: 2022-03-08): Embedded TCP/IP Stack Vulnerabilities (AMNESIA:33) in SENTRON PAC / 3VA Devices (Part 2)
SIEMENS-SSA-541018 · 3 CVEs
|
SSA-541018 V1.5 (Last Update: 2022-03-08): Embedded TCP/IP Stack Vulnerabilities (AMNESIA:33) in SENTRON PAC / 3VA Devices (Part 2)
|
2022-03-08 |
| MEDIUM | 0 |
SSA-669158 V1.1 (Last Update: 2022-03-08): DNS Client Vulnerabilities in SIMOTICS CONNECT 400
SIEMENS-SSA-669158
|
SSA-669158 V1.1 (Last Update: 2022-03-08): DNS Client Vulnerabilities in SIMOTICS CONNECT 400
|
2022-03-08 |
| MEDIUM | 0 |
SSA-703715 V1.1 (Last Update: 2022-03-08): Information Disclosure Vulnerability in Climatix POL909 (AWM and AWB)
SIEMENS-SSA-703715
|
SSA-703715 V1.1 (Last Update: 2022-03-08): Information Disclosure Vulnerability in Climatix POL909 (AWM and AWB)
|
2022-03-08 |
| CRITICAL | 9.8 |
SSA-455843 V1.7 (Last Update: 2022-02-17): WIBU Systems CodeMeter Runtime Vulnerabilities in Siemens Products
SIEMENS-SSA-455843 · 6 CVEs
|
SSA-455843 V1.7 (Last Update: 2022-02-17): WIBU Systems CodeMeter Runtime Vulnerabilities in Siemens Products
|
2022-02-17 |
| MEDIUM | 0 |
SSA-949188 V1.0: File Parsing Vulnerabilities in Simcenter Femap before V2022.1.1
SIEMENS-SSA-949188
|
SSA-949188 V1.0: File Parsing Vulnerabilities in Simcenter Femap before V2022.1.1
|
2022-02-17 |
| HIGH | 8.6 |
ICSA-19-225-03_Siemens SCALANCE X Switches (Update D)
ICSA-19-225-03 · 1 CVE
|
SCALANCE X-200RNA,
SCALANCE X204RNA EEC (PRP) (6GK5204-0BS00-3LA3),
SCALANCE X204RNA (PRP) (6GK5204-0BA00-2KB2)
+4 more
|
2022-02-10 |
| MEDIUM | 0 |
SSA-609880 V1.0: File Parsing Vulnerabilities in Simcenter Femap before V2022.1
SIEMENS-SSA-609880
|
SSA-609880 V1.0: File Parsing Vulnerabilities in Simcenter Femap before V2022.1
|
2022-02-08 |
| MEDIUM | 0 |
SSA-654775 V1.0: Open Redirect Vulnerability in SINEMA Remote Connect Server
SIEMENS-SSA-654775
|
SSA-654775 V1.0: Open Redirect Vulnerability in SINEMA Remote Connect Server
|
2022-02-08 |
| MEDIUM | 0 |
SSA-831168 V1.0: Cross-Site Scripting Vulnerability in Spectrum Power 4
SIEMENS-SSA-831168
|
SSA-831168 V1.0: Cross-Site Scripting Vulnerability in Spectrum Power 4
|
2022-02-08 |
| MEDIUM | 0 |
SSA-100232 V1.4 (Last Update: 2022-02-08): Denial-of-Service vulnerability in SCALANCE X Switches
SIEMENS-SSA-100232
|
SSA-100232 V1.4 (Last Update: 2022-02-08): Denial-of-Service vulnerability in SCALANCE X Switches
|
2022-02-08 |
| MEDIUM | 0 |
SSA-211752 V1.1 (Last Update: 2022-02-08): Multiple NTP-Client Related Vulnerabilities in SIMATIC CP 443-1 OPC UA
SIEMENS-SSA-211752
|
SSA-211752 V1.1 (Last Update: 2022-02-08): Multiple NTP-Client Related Vulnerabilities in SIMATIC CP 443-1 OPC UA
|
2022-02-08 |
| MEDIUM | 0 |
SSA-316383 V1.1 (Last Update: 2022-02-08): NumberJack Vulnerability in LOGO! CMR and SIMATIC RTU 3000 devices
SIEMENS-SSA-316383
|
SSA-316383 V1.1 (Last Update: 2022-02-08): NumberJack Vulnerability in LOGO! CMR and SIMATIC RTU 3000 devices
|
2022-02-08 |
| CRITICAL | 9.1 |
SSA-675303 V1.3 (Last Update: 2022-02-08): WIBU Systems CodeMeter Runtime Vulnerabilities in Siemens Products
SIEMENS-SSA-675303 · 2 CVEs
|
SSA-675303 V1.3 (Last Update: 2022-02-08): WIBU Systems CodeMeter Runtime Vulnerabilities in Siemens Products
|
2022-02-08 |
| MEDIUM | 0 |
SSA-173318 V1.0: Unquoted Search Path Vulnerability in SICAM PQ Analyzer
SIEMENS-SSA-173318
|
SSA-173318 V1.0: Unquoted Search Path Vulnerability in SICAM PQ Analyzer
|
2022-01-11 |
| MEDIUM | 0 |
SSA-324998 V1.0: Multiple Vulnerabilities in SICAM A8000
SIEMENS-SSA-324998
|
SSA-324998 V1.0: Multiple Vulnerabilities in SICAM A8000
|
2022-01-11 |
| MEDIUM | 0 |
SSA-439673 V1.0: Information Disclosure Vulnerability in SIPROTEC 5 Devices
SIEMENS-SSA-439673
|
SSA-439673 V1.0: Information Disclosure Vulnerability in SIPROTEC 5 Devices
|
2022-01-11 |
| MEDIUM | 0 |
SSA-845392 V1.0: Multiple Vulnerabilities in Nucleus RTOS based Siemens Energy PLUSCONTROL 1st Gen Devices
SIEMENS-SSA-845392
|
SSA-845392 V1.0: Multiple Vulnerabilities in Nucleus RTOS based Siemens Energy PLUSCONTROL 1st Gen Devices
|
2022-01-11 |
| MEDIUM | 0 |
SSA-185699 V1.2 (Last Update: 2022-01-11): Out of Bounds Write Vulnerabilities (NAME:WRECK) in the DNS Module of Nucleus RTOS
SIEMENS-SSA-185699
|
SSA-185699 V1.2 (Last Update: 2022-01-11): Out of Bounds Write Vulnerabilities (NAME:WRECK) in the DNS Module of Nucleus RTOS
|
2022-01-11 |
| MEDIUM | 0 |
SSA-201384 V1.2 (Last Update: 2022-01-11): Predictable UDP Port Number Vulnerability (NAME:WRECK) in the DNS Module of Nucleus RTOS
SIEMENS-SSA-201384
|
SSA-201384 V1.2 (Last Update: 2022-01-11): Predictable UDP Port Number Vulnerability (NAME:WRECK) in the DNS Module of Nucleus RTOS
|
2022-01-11 |
| MEDIUM | 0 |
SSA-705111 V1.2 (Last Update: 2022-01-11): Multiple Vulnerabilities (NAME:WRECK) in the DNS Module of Nucleus RTOS
SIEMENS-SSA-705111
|
SSA-705111 V1.2 (Last Update: 2022-01-11): Multiple Vulnerabilities (NAME:WRECK) in the DNS Module of Nucleus RTOS
|
2022-01-11 |
| MEDIUM | 0 |
SSA-766247 V1.1 (Last Update: 2022-01-11): Authentication Vulnerability in SIMATIC Process Historian
SIEMENS-SSA-766247
|
SSA-766247 V1.1 (Last Update: 2022-01-11): Authentication Vulnerability in SIMATIC Process Historian
|
2022-01-11 |
| MEDIUM | 0 |
SSA-789208 V1.2 (Last Update: 2022-01-11): Multiple Vulnerabilities (INFRA:HALT) in Interniche IP-Stack based Low Voltage Devices
SIEMENS-SSA-789208
|
SSA-789208 V1.2 (Last Update: 2022-01-11): Multiple Vulnerabilities (INFRA:HALT) in Interniche IP-Stack based Low Voltage Devices
|
2022-01-11 |
| MEDIUM | 6.6 |
SSA-784507 V1.0: Apache Log4j Vulnerability (CVE-2021-44832) via JDBC Appender - Impact to Siemens Products
SIEMENS-SSA-784507 · 1 CVE
|
SSA-784507 V1.0: Apache Log4j Vulnerability (CVE-2021-44832) via JDBC Appender - Impact to Siemens Products
|
2021-12-28 |
| LOW | 3.7 |
SSA-479842 V1.1 (Last Update: 2021-12-23): Apache Log4j Vulnerabilities - Impact to Siemens Energy Sensformer / Sensgear (Platform, Basic and Advanced)
SIEMENS-SSA-479842 · 3 CVEs
|
SSA-479842 V1.1 (Last Update: 2021-12-23): Apache Log4j Vulnerabilities - Impact to Siemens Energy Sensformer / Sensgear (Platform, Basic and Advanced)
|
2021-12-23 |
| LOW | 3.7 |
SSA-397453 V1.0: Apache Log4j Vulnerabilities (Log4Shell, CVE-2021-44228, CVE-2021-45046) - Impact to Siemens Energy TraceAlertServerPLUS
SIEMENS-SSA-397453 · 2 CVEs
|
SSA-397453 V1.0: Apache Log4j Vulnerabilities (Log4Shell, CVE-2021-44228, CVE-2021-45046) - Impact to Siemens Energy TraceAlertServerPLUS
|
2021-12-20 |
| MEDIUM | 5.9 |
SSA-501673 V1.0: Apache Log4j Denial of Service Vulnerability (CVE-2021-45105) - Impact to Siemens Products
SIEMENS-SSA-501673 · 1 CVE
|
SSA-501673 V1.0: Apache Log4j Denial of Service Vulnerability (CVE-2021-45105) - Impact to Siemens Products
|
2021-12-19 |
| CRITICAL | 9.0 |
Siemens Questa and ModelSim
ICSA-21-350-13 · 1 CVE
|
ModelSim Simulation,
Questa Simulation
|
2021-12-16 |
| CRITICAL | 10.0 |
SSA-714170 V1.0: Apache Log4j Vulnerabilities (Log4Shell, CVE-2021-44228, CVE-2021-45046) - Impact to SPPA-T3000
SIEMENS-SSA-714170 · 2 CVEs
|
SSA-714170 V1.0: Apache Log4j Vulnerabilities (Log4Shell, CVE-2021-44228, CVE-2021-45046) - Impact to SPPA-T3000
|
2021-12-16 |
| MEDIUM | 0 |
SSA-133772 V1.0: Zip Path Traversal Vulnerability in Teamcenter Active Workspace
SIEMENS-SSA-133772
|
SSA-133772 V1.0: Zip Path Traversal Vulnerability in Teamcenter Active Workspace
|
2021-12-14 |
| MEDIUM | 0 |
SSA-160202 V1.0: Multiple Access Control Vulnerabilities in SiPass Integrated
SIEMENS-SSA-160202
|
SSA-160202 V1.0: Multiple Access Control Vulnerabilities in SiPass Integrated
|
2021-12-14 |
| MEDIUM | 0 |
SSA-161331 V1.0: Scene File Parsing Vulnerability in Simcenter STAR-CCM+ Viewer before V2021.3.1
SIEMENS-SSA-161331
|
SSA-161331 V1.0: Scene File Parsing Vulnerability in Simcenter STAR-CCM+ Viewer before V2021.3.1
|
2021-12-14 |
| MEDIUM | 0 |
SSA-199605 V1.0: Arbitrary File Download Vulnerability in SIMATIC eaSie PCS 7 Skill Package
SIEMENS-SSA-199605
|
SSA-199605 V1.0: Arbitrary File Download Vulnerability in SIMATIC eaSie PCS 7 Skill Package
|
2021-12-14 |
| MEDIUM | 0 |
SSA-352143 V1.0: Multiple File Parsing Vulnerabilities in JTTK before V11.0.3.0 and JT Utilities before V13.0.3.0
SIEMENS-SSA-352143
|
SSA-352143 V1.0: Multiple File Parsing Vulnerabilities in JTTK before V11.0.3.0 and JT Utilities before V13.0.3.0
|
2021-12-14 |
| MEDIUM | 0 |
SSA-390195 V1.0: LibVNC Vulnerabilities in SIMATIC ITC Products
SIEMENS-SSA-390195
|
SSA-390195 V1.0: LibVNC Vulnerabilities in SIMATIC ITC Products
|
2021-12-14 |
| MEDIUM | 0 |
SSA-396621 V1.0: Multiple File Parsing Vulnerabilities in JTTK before V10.8.1.1 and JT Utilities before V12.8.1.1
SIEMENS-SSA-396621
|
SSA-396621 V1.0: Multiple File Parsing Vulnerabilities in JTTK before V10.8.1.1 and JT Utilities before V12.8.1.1
|
2021-12-14 |
| MEDIUM | 0 |
SSA-463116 V1.0: Multiple Access Control Vulnerabilities in Siveillance Identity before V1.6.284.0
SIEMENS-SSA-463116
|
SSA-463116 V1.0: Multiple Access Control Vulnerabilities in Siveillance Identity before V1.6.284.0
|
2021-12-14 |
| MEDIUM | 0 |
SSA-496292 V1.0: Remote Code Execution Vulnerability in POWER METER SICAM Q100
SIEMENS-SSA-496292
|
SSA-496292 V1.0: Remote Code Execution Vulnerability in POWER METER SICAM Q100
|
2021-12-14 |
| MEDIUM | 0 |
SSA-523250 V1.0: Improper Certificate Validation Vulnerability in SINUMERIK Edge
SIEMENS-SSA-523250
|
SSA-523250 V1.0: Improper Certificate Validation Vulnerability in SINUMERIK Edge
|
2021-12-14 |
| MEDIUM | 0 |
SSA-595101 V1.0: Multiple File Parsing Vulnerabilities in JT2Go and Teamcenter Visualization before V13.2.0.5
SIEMENS-SSA-595101
|
SSA-595101 V1.0: Multiple File Parsing Vulnerabilities in JT2Go and Teamcenter Visualization before V13.2.0.5
|
2021-12-14 |
| MEDIUM | 0 |
SSA-802578 V1.0: Multiple File Parsing Vulnerabilities in JTTK before V11.1.1.0 and JT Utilities before V13.1.1.0
SIEMENS-SSA-802578
|
SSA-802578 V1.0: Multiple File Parsing Vulnerabilities in JTTK before V11.1.1.0 and JT Utilities before V13.1.1.0
|
2021-12-14 |
| MEDIUM | 0 |
SSA-044112 V1.1 (Last Update: 2021-12-14): Multiple Vulnerabilities (NUCLEUS:13) in the TCP/IP Stack of Nucleus RTOS
SIEMENS-SSA-044112
|
SSA-044112 V1.1 (Last Update: 2021-12-14): Multiple Vulnerabilities (NUCLEUS:13) in the TCP/IP Stack of Nucleus RTOS
|
2021-12-14 |
| MEDIUM | 0 |
SSA-145157 V1.0: Multiple Vulnerabilities in SIMATIC RTLS Locating Manager before V2.12
SIEMENS-SSA-145157
|
SSA-145157 V1.0: Multiple Vulnerabilities in SIMATIC RTLS Locating Manager before V2.12
|
2021-11-09 |
| MEDIUM | 0 |
SSA-328042 V1.0: File Parsing Vulnerabilities in OBJ Translator in NX
SIEMENS-SSA-328042
|
SSA-328042 V1.0: File Parsing Vulnerabilities in OBJ Translator in NX
|
2021-11-09 |
| MEDIUM | 0 |
SSA-338732 V1.0: Information Disclosure Vulnerability in Mendix
SIEMENS-SSA-338732
|
SSA-338732 V1.0: Information Disclosure Vulnerability in Mendix
|
2021-11-09 |
| MEDIUM | 0 |
SSA-537983 V1.0: Local Code Execution Vulnerability in SENTRON powermanager V3
SIEMENS-SSA-537983
|
SSA-537983 V1.0: Local Code Execution Vulnerability in SENTRON powermanager V3
|
2021-11-09 |
| MEDIUM | 0 |
SSA-740908 V1.0: File Parsing Vulnerabilities in JT Translator in NX
SIEMENS-SSA-740908
|
SSA-740908 V1.0: File Parsing Vulnerabilities in JT Translator in NX
|
2021-11-09 |
| MEDIUM | 0 |
SSA-755517 V1.0: Path Traversal Vulnerability in Siveillance Video DLNA Server
SIEMENS-SSA-755517
|
SSA-755517 V1.0: Path Traversal Vulnerability in Siveillance Video DLNA Server
|
2021-11-09 |
| MEDIUM | 0 |
SSA-779699 V1.0: Two Incorrect Authorization Vulnerabilities in Mendix
SIEMENS-SSA-779699
|
SSA-779699 V1.0: Two Incorrect Authorization Vulnerabilities in Mendix
|
2021-11-09 |
| MEDIUM | 0 |
SSA-163251 V1.0: Multiple Vulnerabilities in SINEC NMS
SIEMENS-SSA-163251
|
SSA-163251 V1.0: Multiple Vulnerabilities in SINEC NMS
|
2021-10-12 |
| MEDIUM | 0 |
SSA-173565 V1.0: Denial-of-Service Vulnerability in RUGGEDCOM ROX Devices
SIEMENS-SSA-173565
|
SSA-173565 V1.0: Denial-of-Service Vulnerability in RUGGEDCOM ROX Devices
|
2021-10-12 |
| MEDIUM | 0 |
SSA-178380 V1.0: Denial-of-Service Vulnerability in SINUMERIK Controllers
SIEMENS-SSA-178380
|
SSA-178380 V1.0: Denial-of-Service Vulnerability in SINUMERIK Controllers
|
2021-10-12 |
| MEDIUM | 0 |
SSA-150692 V1.1 (Last Update: 2021-10-12): Multiple Vulnerabilities in RUGGEDCOM ROX
SIEMENS-SSA-150692
|
SSA-150692 V1.1 (Last Update: 2021-10-12): Multiple Vulnerabilities in RUGGEDCOM ROX
|
2021-10-12 |
| MEDIUM | 0 |
SSA-500748 V1.1 (Last Update: 2021-10-12): Denial-of-Service Vulnerabilities in SIPROTEC 5 Devices
SIEMENS-SSA-500748
|
SSA-500748 V1.1 (Last Update: 2021-10-12): Denial-of-Service Vulnerabilities in SIPROTEC 5 Devices
|
2021-10-12 |
| MEDIUM | 0 |
SSA-538778 V1.2 (Last Update: 2021-10-12): SmartVNC Vulnerabilities in SIMATIC HMI/WinCC Products
SIEMENS-SSA-538778
|
SSA-538778 V1.2 (Last Update: 2021-10-12): SmartVNC Vulnerabilities in SIMATIC HMI/WinCC Products
|
2021-10-12 |
| MEDIUM | 0 |
SSA-723417 V1.2 (Last Update: 2021-10-12): Multiple Vulnerabilities in SCALANCE W1750D
SIEMENS-SSA-723417
|
SSA-723417 V1.2 (Last Update: 2021-10-12): Multiple Vulnerabilities in SCALANCE W1750D
|
2021-10-12 |
| MEDIUM | 0 |
SSA-847986 V1.1 (Last Update: 2021-10-12): Denial-of-Service Vulnerabilities in SIPROTEC 5 relays
SIEMENS-SSA-847986
|
SSA-847986 V1.1 (Last Update: 2021-10-12): Denial-of-Service Vulnerabilities in SIPROTEC 5 relays
|
2021-10-12 |
| MEDIUM | 0 |
SSA-728618 V1.0: Multiple Vulnerabilities in Solid Edge before SE2021MP8
SIEMENS-SSA-728618
|
SSA-728618 V1.0: Multiple Vulnerabilities in Solid Edge before SE2021MP8
|
2021-09-28 |
| HIGH | 8.1 |
Siemens SINAMICS PERFECT HARMONY GH180 (Update A)
ICSA-21-194-13 · 1 CVE
|
SINAMICS PERFECT HARMONY GH180 Drives,
SINAMICS PERFECT HARMONY model 6SR4,
SINAMICS PERFECT HARMONY model 6SR5
|
2021-09-14 |
| HIGH | 7.5 |
Siemens LOGO! CMR and SIMATIC RTU 3000
ICSA-21-257-20 · 2 CVEs
|
LOGO! CMR2040,
SIMATIC RTU 3000 family,
LOGO! CMR2020
|
2021-09-14 |
| CRITICAL | 9.8 |
Siemens Industrial Edge
ICSA-21-257-21 · 1 CVE
|
Industrial Edge Management
|
2021-09-14 |
| MEDIUM | 0 |
SSA-109294 V1.0: Scene File Parsing Vulnerability in Simcenter STAR-CCM+ Viewer
SIEMENS-SSA-109294
|
SSA-109294 V1.0: Scene File Parsing Vulnerability in Simcenter STAR-CCM+ Viewer
|
2021-09-14 |
| MEDIUM | 0 |
SSA-208530 V1.0: File parsing vulnerabilities in IFC adapter in NX
SIEMENS-SSA-208530
|
SSA-208530 V1.0: File parsing vulnerabilities in IFC adapter in NX
|
2021-09-14 |
| MEDIUM | 0 |
SSA-288459 V1.0: Heap Overflow Vulnerability in RFID terminals
SIEMENS-SSA-288459
|
SSA-288459 V1.0: Heap Overflow Vulnerability in RFID terminals
|
2021-09-14 |
| MEDIUM | 0 |
SSA-330339 V1.0: Web Vulnerabilities in SINEC NMS
SIEMENS-SSA-330339
|
SSA-330339 V1.0: Web Vulnerabilities in SINEC NMS
|
2021-09-14 |
| MEDIUM | 0 |
SSA-334944 V1.0: Vulnerability in SINEMA Remote Connect Server
SIEMENS-SSA-334944
|
SSA-334944 V1.0: Vulnerability in SINEMA Remote Connect Server
|
2021-09-14 |
| MEDIUM | 0 |
SSA-413407 V1.0: Path Traversal Vulnerability in Teamcenter Active Workspace
SIEMENS-SSA-413407
|
SSA-413407 V1.0: Path Traversal Vulnerability in Teamcenter Active Workspace
|
2021-09-14 |
| MEDIUM | 0 |
SSA-453715 V1.0: Deserialization Vulnerability in CCOM Communication Component of Desigo CC Family
SIEMENS-SSA-453715
|
SSA-453715 V1.0: Deserialization Vulnerability in CCOM Communication Component of Desigo CC Family
|
2021-09-14 |
| MEDIUM | 0 |
SSA-535380 V1.0: Command Injection Vulnerability in Siveillance OIS Affecting Several Building Management Systems
SIEMENS-SSA-535380
|
SSA-535380 V1.0: Command Injection Vulnerability in Siveillance OIS Affecting Several Building Management Systems
|
2021-09-14 |
| MEDIUM | 0 |
SSA-692317 V1.0: Authorization Bypass Vulnerability in Industrial Edge
SIEMENS-SSA-692317
|
SSA-692317 V1.0: Authorization Bypass Vulnerability in Industrial Edge
|
2021-09-14 |
| MEDIUM | 0 |
SSA-835377 V1.0: Missing Authentication Vulnerability in SINEMA Server
SIEMENS-SSA-835377
|
SSA-835377 V1.0: Missing Authentication Vulnerability in SINEMA Server
|
2021-09-14 |
| MEDIUM | 0 |
SSA-944498 V1.0: Buffer Overflow Vulnerability in Web Server of APOGEE and TALON Automation Devices
SIEMENS-SSA-944498
|
SSA-944498 V1.0: Buffer Overflow Vulnerability in Web Server of APOGEE and TALON Automation Devices
|
2021-09-14 |
| MEDIUM | 0 |
SSA-987403 V1.0: Multiple Vulnerabilities in Teamcenter
SIEMENS-SSA-987403
|
SSA-987403 V1.0: Multiple Vulnerabilities in Teamcenter
|
2021-09-14 |
| MEDIUM | 0 |
SSA-997732 V1.0: Modfem File Parsing Vulnerability in Simcenter Femap before V2021.2
SIEMENS-SSA-997732
|
SSA-997732 V1.0: Modfem File Parsing Vulnerability in Simcenter Femap before V2021.2
|
2021-09-14 |
| MEDIUM | 0 |
SSA-139628 V1.2 (Last Update: 2021-09-14): Vulnerabilities in Web Server for Scalance X Products
SIEMENS-SSA-139628
|
SSA-139628 V1.2 (Last Update: 2021-09-14): Vulnerabilities in Web Server for Scalance X Products
|
2021-09-14 |
| MEDIUM | 0 |
SSA-187092 V1.1 (Last Update: 2021-09-14): Several Buffer-Overflow Vulnerabilities in Web Server of SCALANCE X-200
SIEMENS-SSA-187092
|
SSA-187092 V1.1 (Last Update: 2021-09-14): Several Buffer-Overflow Vulnerabilities in Web Server of SCALANCE X-200
|
2021-09-14 |
| MEDIUM | 0 |
SSA-428051 V1.1 (Last Update: 2021-09-14): Privilege Escalation Vulnerability in TIA Administrator
SIEMENS-SSA-428051
|
SSA-428051 V1.1 (Last Update: 2021-09-14): Privilege Escalation Vulnerability in TIA Administrator
|
2021-09-14 |
| MEDIUM | 0 |
SSA-434534 V1.1 (Last Update: 2021-09-14): Memory Protection Bypass Vulnerability in SIMATIC S7-1200 and S7-1500 CPU Families
SIEMENS-SSA-434534
|
SSA-434534 V1.1 (Last Update: 2021-09-14): Memory Protection Bypass Vulnerability in SIMATIC S7-1200 and S7-1500 CPU Families
|
2021-09-14 |
| MEDIUM | 0 |
SSA-434535 V1.1 (Last Update: 2021-09-14): Memory Protection Bypass Vulnerability in SINAMICS PERFECT HARMONY GH180 Drives
SIEMENS-SSA-434535
|
SSA-434535 V1.1 (Last Update: 2021-09-14): Memory Protection Bypass Vulnerability in SINAMICS PERFECT HARMONY GH180 Drives
|
2021-09-14 |
| MEDIUM | 0 |
SSA-434536 V1.1 (Last Update: 2021-09-14): Memory Protection Bypass Vulnerability in SINUMERIK ONE and SINUMERIK MC
SIEMENS-SSA-434536
|
SSA-434536 V1.1 (Last Update: 2021-09-14): Memory Protection Bypass Vulnerability in SINUMERIK ONE and SINUMERIK MC
|
2021-09-14 |
| MEDIUM | 0 |
SSA-756744 V1.1 (Last Update: 2021-09-14): OS Command Injection Vulnerability in SINEC NMS
SIEMENS-SSA-756744
|
SSA-756744 V1.1 (Last Update: 2021-09-14): OS Command Injection Vulnerability in SINEC NMS
|
2021-09-14 |
| MEDIUM | 0 |
SSA-830194 V1.1 (Last Update: 2021-09-14): Missing Authentication Vulnerability in S7-1200 Devices
SIEMENS-SSA-830194
|
SSA-830194 V1.1 (Last Update: 2021-09-14): Missing Authentication Vulnerability in S7-1200 Devices
|
2021-09-14 |
| MEDIUM | 0 |
SSA-865327 V1.1 (Last Update: 2021-09-14): Incorrect Authorization Vulnerability in Industrial Products
SIEMENS-SSA-865327
|
SSA-865327 V1.1 (Last Update: 2021-09-14): Incorrect Authorization Vulnerability in Industrial Products
|
2021-09-14 |
| MEDIUM | 0 |
SSA-936080 V1.2 (Last Update: 2021-09-14): Multiple Vulnerabilities in Third-Party Component libcurl
SIEMENS-SSA-936080
|
SSA-936080 V1.2 (Last Update: 2021-09-14): Multiple Vulnerabilities in Third-Party Component libcurl
|
2021-09-14 |
| MEDIUM | 0 |
SSA-938030 V1.1 (Last Update: 2021-09-14): DGN and PAR File Parsing Vulnerabilities in JT2Go and Teamcenter Visualization before V13.2.0.2
SIEMENS-SSA-938030
|
SSA-938030 V1.1 (Last Update: 2021-09-14): DGN and PAR File Parsing Vulnerabilities in JT2Go and Teamcenter Visualization before V13.2.0.2
|
2021-09-14 |
| MEDIUM | 0 |
SSA-816035 V1.0: Code Execution Vulnerability in SINEMA Remote Connect Client
SIEMENS-SSA-816035
|
SSA-816035 V1.0: Code Execution Vulnerability in SINEMA Remote Connect Client
|
2021-08-19 |
| HIGH | 8.1 |
Siemens SINAMICS Medium Voltage Products Telnet (Update A)
ICSA-21-131-13 · 1 CVE
|
SINAMICS GH150,
SINAMICS SH150,
SINAMICS GL150 (with option X30)
+5 more
|
2021-08-10 |
| HIGH | 7.8 |
ICSA-21-222-08_Siemens Solid Edge
ICSA-21-222-08 · 3 CVEs
|
Solid Edge SE2021
|
2021-08-10 |
| MEDIUM | 0 |
SSA-158827 V1.0: Denial-of-Service Vulnerability in Automation License Manager
SIEMENS-SSA-158827
|
SSA-158827 V1.0: Denial-of-Service Vulnerability in Automation License Manager
|
2021-08-10 |
| MEDIUM | 0 |
SSA-365397 V1.0: Multiple File Parsing Vulnerabilities in JT2Go and Teamcenter Visualization before V13.2.0.1
SIEMENS-SSA-365397
|
SSA-365397 V1.0: Multiple File Parsing Vulnerabilities in JT2Go and Teamcenter Visualization before V13.2.0.1
|
2021-08-10 |
| MEDIUM | 0 |
SSA-553445 V1.0: DNS "Name:Wreck" Vulnerabilities in Multiple Siemens Energy AGT and SGT solutions
SIEMENS-SSA-553445
|
SSA-553445 V1.0: DNS "Name:Wreck" Vulnerabilities in Multiple Siemens Energy AGT and SGT solutions
|
2021-08-10 |
| MEDIUM | 0 |
SSA-818688 V1.0: Multiple Vulnerabilities in Solid Edge before SE2021MP7
SIEMENS-SSA-818688
|
SSA-818688 V1.0: Multiple Vulnerabilities in Solid Edge before SE2021MP7
|
2021-08-10 |
| MEDIUM | 0 |
SSA-286838 V1.1 (Last Update: 2021-08-10): Multiple Vulnerabilities in SINAMICS Medium Voltage Products
SIEMENS-SSA-286838
|
SSA-286838 V1.1 (Last Update: 2021-08-10): Multiple Vulnerabilities in SINAMICS Medium Voltage Products
|
2021-08-10 |
| MEDIUM | 0 |
SSA-752103 V1.1 (Last Update: 2021-08-10): Telnet Authentication Vulnerability in SINAMICS Medium Voltage Products
SIEMENS-SSA-752103
|
SSA-752103 V1.1 (Last Update: 2021-08-10): Telnet Authentication Vulnerability in SINAMICS Medium Voltage Products
|
2021-08-10 |
| HIGH | 7.8 |
ICSA-21-194-15_Siemens JT2Go and Teamcenter Visualization
ICSA-21-194-15 · 43 CVEs
|
Teamcenter Visualization,
JT2Go
|
2021-07-13 |
| MEDIUM | 0 |
SSA-173615 V1.0: Multiple PAR and ASM File Parsing Vulnerabilities in Solid Edge
SIEMENS-SSA-173615
|
SSA-173615 V1.0: Multiple PAR and ASM File Parsing Vulnerabilities in Solid Edge
|
2021-07-13 |
| MEDIUM | 0 |
SSA-209268 V1.0: Multiple JT File Parsing Vulnerabilities in JT Utilities before V13.0.2.0
SIEMENS-SSA-209268
|
SSA-209268 V1.0: Multiple JT File Parsing Vulnerabilities in JT Utilities before V13.0.2.0
|
2021-07-13 |
| MEDIUM | 0 |
SSA-352521 V1.0: Access Check Bypass Vulnerability in Mendix
SIEMENS-SSA-352521
|
SSA-352521 V1.0: Access Check Bypass Vulnerability in Mendix
|
2021-07-13 |
| MEDIUM | 0 |
SSA-448291 V1.0: Denial-of-Service Vulnerability in ARP Protocol of RWG Universal Controllers
SIEMENS-SSA-448291
|
SSA-448291 V1.0: Denial-of-Service Vulnerability in ARP Protocol of RWG Universal Controllers
|
2021-07-13 |
| MEDIUM | 0 |
SSA-483182 V1.0: Multiple File Parsing Vulnerabilities in JT2Go and Teamcenter Visualization before V13.2
SIEMENS-SSA-483182
|
SSA-483182 V1.0: Multiple File Parsing Vulnerabilities in JT2Go and Teamcenter Visualization before V13.2
|
2021-07-13 |
| MEDIUM | 0 |
SSA-622535 V1.0: Multiple Vulnerabilities in Teamcenter Active Workspace
SIEMENS-SSA-622535
|
SSA-622535 V1.0: Multiple Vulnerabilities in Teamcenter Active Workspace
|
2021-07-13 |
| MEDIUM | 0 |
SSA-641963 V1.0: Remote Code Execution Vulnerability in Multiple SIMATIC Software Products
SIEMENS-SSA-641963
|
SSA-641963 V1.0: Remote Code Execution Vulnerability in Multiple SIMATIC Software Products
|
2021-07-13 |
| MEDIUM | 0 |
SSA-729965 V1.0: TLS Certificate Validation Vulnerability in SINUMERIK Integrate Operate Client
SIEMENS-SSA-729965
|
SSA-729965 V1.0: TLS Certificate Validation Vulnerability in SINUMERIK Integrate Operate Client
|
2021-07-13 |
| MEDIUM | 0 |
SSA-203306 V1.5 (Last Update: 2021-07-13): Password Vulnerabilities in SIPROTEC 4 and SIPROTEC Compact Relay Families
SIEMENS-SSA-203306
|
SSA-203306 V1.5 (Last Update: 2021-07-13): Password Vulnerabilities in SIPROTEC 4 and SIPROTEC Compact Relay Families
|
2021-07-13 |
| MEDIUM | 0 |
SSA-133038 V1.0: Multiple Modfem File Parsing Vulnerabilities in Simcenter Femap
SIEMENS-SSA-133038
|
SSA-133038 V1.0: Multiple Modfem File Parsing Vulnerabilities in Simcenter Femap
|
2021-06-08 |
| MEDIUM | 0 |
SSA-200951 V1.0: Multiple Vulnerabilities in Third-Party Component libcurl of TIM Devices
SIEMENS-SSA-200951
|
SSA-200951 V1.0: Multiple Vulnerabilities in Third-Party Component libcurl of TIM Devices
|
2021-06-08 |
| MEDIUM | 0 |
SSA-208356 V1.0: DFT File Parsing Vulnerabilities in Solid Edge
SIEMENS-SSA-208356
|
SSA-208356 V1.0: DFT File Parsing Vulnerabilities in Solid Edge
|
2021-06-08 |
| MEDIUM | 0 |
SSA-419820 V1.0: Denial-of-Service Vulnerability in TIM 1531 IRC
SIEMENS-SSA-419820
|
SSA-419820 V1.0: Denial-of-Service Vulnerability in TIM 1531 IRC
|
2021-06-08 |
| MEDIUM | 0 |
SSA-522654 V1.0: Privilege Escalation Vulnerability in Mendix SAML Module
SIEMENS-SSA-522654
|
SSA-522654 V1.0: Privilege Escalation Vulnerability in Mendix SAML Module
|
2021-06-08 |
| MEDIUM | 0 |
SSA-645530 V1.0: TIFF File Parsing Vulnerability in JT2Go and Teamcenter Visualization before V13.1.0.3
SIEMENS-SSA-645530
|
SSA-645530 V1.0: TIFF File Parsing Vulnerability in JT2Go and Teamcenter Visualization before V13.1.0.3
|
2021-06-08 |
| MEDIUM | 0 |
SSA-542525 V1.3 (Last Update: 2021-06-08): Authentication Vulnerabilities in SIMATIC HMI Products
SIEMENS-SSA-542525
|
SSA-542525 V1.3 (Last Update: 2021-06-08): Authentication Vulnerabilities in SIMATIC HMI Products
|
2021-06-08 |
| MEDIUM | 0 |
SSA-574442 V1.1 (Last Update: 2021-06-08): Multiple PAR and DFT File Parsing Vulnerabilities in Solid Edge
SIEMENS-SSA-574442
|
SSA-574442 V1.1 (Last Update: 2021-06-08): Multiple PAR and DFT File Parsing Vulnerabilities in Solid Edge
|
2021-06-08 |
| HIGH | 7.8 |
Siemens JT2Go and Teamcenter Visualization (Update B)
ICSA-21-012-03 · 14 CVEs
|
JT2Go,
Teamcenter Visualization,
JT2Go
+1 more
|
2021-05-27 |
| HIGH | 7.8 |
Siemens JT2Go and Teamcenter Visualization
ICSA-21-147-04 · 5 CVEs
|
JT2Go,
Teamcenter Visualization
|
2021-05-27 |
| MEDIUM | 0 |
SSA-119468 V1.0: Luxion KeyShot Vulnerabilities in Solid Edge
SIEMENS-SSA-119468
|
SSA-119468 V1.0: Luxion KeyShot Vulnerabilities in Solid Edge
|
2021-05-25 |
| HIGH | 8.8 |
SSA-622830 V1.2 (Last Update: 2021-05-17): Multiple File Parsing Vulnerabilities in JT2Go and Teamcenter Visualization before V13.1.0
SIEMENS-SSA-622830 · 4 CVEs
|
SSA-622830 V1.2 (Last Update: 2021-05-17): Multiple File Parsing Vulnerabilities in JT2Go and Teamcenter Visualization before V13.1.0
|
2021-05-17 |
| HIGH | 8.8 |
SSA-663999 V1.1 (Last Update: 2021-05-17): Multiple File Parsing Vulnerabilities in JT2Go and Teamcenter Visualization before V13.1.0.1
SIEMENS-SSA-663999 · 7 CVEs
|
SSA-663999 V1.1 (Last Update: 2021-05-17): Multiple File Parsing Vulnerabilities in JT2Go and Teamcenter Visualization before V13.1.0.1
|
2021-05-17 |
| MEDIUM | 0 |
SSA-695540 V1.0: ASM and PAR File Parsing Vulnerabilities in JT2Go and Teamcenter Visualization before V13.1.0.2
SIEMENS-SSA-695540
|
SSA-695540 V1.0: ASM and PAR File Parsing Vulnerabilities in JT2Go and Teamcenter Visualization before V13.1.0.2
|
2021-05-17 |
| MEDIUM | 4.4 |
Siemens SIMARIS Configuration (Update A)
ICSA-21-040-08 · 1 CVE
|
SIMARIS configuration
|
2021-05-11 |
| MEDIUM | 0 |
SSA-116379 V1.0: Denial-of-Service Vulnerability in OSPF Packet Handling of SCALANCE XM-400 and XR-500 Devices
SIEMENS-SSA-116379
|
SSA-116379 V1.0: Denial-of-Service Vulnerability in OSPF Packet Handling of SCALANCE XM-400 and XR-500 Devices
|
2021-05-11 |
| MEDIUM | 0 |
SSA-594364 V1.0: Denial-of-Service Vulnerability in SNMP Implementation of WinCC Runtime
SIEMENS-SSA-594364
|
SSA-594364 V1.0: Denial-of-Service Vulnerability in SNMP Implementation of WinCC Runtime
|
2021-05-11 |
| MEDIUM | 0 |
SSA-676775 V1.0: Denial-of-Service Vulnerability in SIMATIC NET CP 343-1 Devices
SIEMENS-SSA-676775
|
SSA-676775 V1.0: Denial-of-Service Vulnerability in SIMATIC NET CP 343-1 Devices
|
2021-05-11 |
| MEDIUM | 0 |
SSA-854248 V1.0: Information Disclosure Vulnerability in Mendix Excel Importer Module
SIEMENS-SSA-854248
|
SSA-854248 V1.0: Information Disclosure Vulnerability in Mendix Excel Importer Module
|
2021-05-11 |
| MEDIUM | 0 |
SSA-919955 V1.0: Information Disclosure Vulnerability in Mendix Database Replication Module
SIEMENS-SSA-919955
|
SSA-919955 V1.0: Information Disclosure Vulnerability in Mendix Database Replication Module
|
2021-05-11 |
| MEDIUM | 0 |
SSA-940818 V1.0: UltraVNC Vulnerabilities in SIMATIC HMIs/WinCC Products
SIEMENS-SSA-940818
|
SSA-940818 V1.0: UltraVNC Vulnerabilities in SIMATIC HMIs/WinCC Products
|
2021-05-11 |
| MEDIUM | 0 |
SSA-983548 V1.0: Multiple SPP File Parsing Vulnerabilities in Tecnomatix Plant Simulation
SIEMENS-SSA-983548
|
SSA-983548 V1.0: Multiple SPP File Parsing Vulnerabilities in Tecnomatix Plant Simulation
|
2021-05-11 |
| MEDIUM | 0 |
SSA-478893 V1.1 (Last Update: 2021-05-11): TightVNC Vulnerabilities in Industrial Products (Revoked)
SIEMENS-SSA-478893
|
SSA-478893 V1.1 (Last Update: 2021-05-11): TightVNC Vulnerabilities in Industrial Products (Revoked)
|
2021-05-11 |
| HIGH | 8.1 |
SSA-646763 V1.3 (Last Update: 2021-05-11): DNSpooq - Dnsmasq Vulnerabilities in SCALANCE and RUGGEDCOM Devices
SIEMENS-SSA-646763 · 4 CVEs
|
SSA-646763 V1.3 (Last Update: 2021-05-11): DNSpooq - Dnsmasq Vulnerabilities in SCALANCE and RUGGEDCOM Devices
|
2021-05-11 |
| MEDIUM | 0 |
SSA-794542 V1.1 (Last Update: 2021-05-11): Insecure Folder Permissions in SIMARIS Configuration
SIEMENS-SSA-794542
|
SSA-794542 V1.1 (Last Update: 2021-05-11): Insecure Folder Permissions in SIMARIS Configuration
|
2021-05-11 |
| MEDIUM | 0 |
SSA-875726 V1.0: Privilege Escalation Vulnerability in Mendix
SIEMENS-SSA-875726
|
SSA-875726 V1.0: Privilege Escalation Vulnerability in Mendix
|
2021-04-14 |
| CRITICAL | 9.8 |
Siemens and PKE SiNVR, SiVMS Video Server (Update A)
ICSA-19-344-02 · 2 CVEs
|
SiNVR/SiVMS Video Server,
SiNVR 3 Central Control Server (CCS),
SiNVR/SiVMS Video Server
|
2021-04-13 |
| CRITICAL | 9.9 |
Siemens and PKE Control Center Server
ICSA-21-103-10 · 12 CVEs
|
Control Center Server (CCS),
Control Center Server (CCS)
|
2021-04-13 |
| MEDIUM | 0 |
SSA-163226 V1.0: CELL File Parsing Vulnerability in Tecnomatix RobotExpert
SIEMENS-SSA-163226
|
SSA-163226 V1.0: CELL File Parsing Vulnerability in Tecnomatix RobotExpert
|
2021-04-13 |
| MEDIUM | 0 |
SSA-292794 V1.0: Multiple Denial-of-Service Vulnerabilities in SINEMA Remote Connect Server
SIEMENS-SSA-292794
|
SSA-292794 V1.0: Multiple Denial-of-Service Vulnerabilities in SINEMA Remote Connect Server
|
2021-04-13 |
| MEDIUM | 0 |
SSA-788287 V1.0: Disclosure of Private Data
SIEMENS-SSA-788287
|
SSA-788287 V1.0: Disclosure of Private Data
|
2021-04-13 |
| MEDIUM | 0 |
SSA-853866 V1.0: User Credentials Disclosure Vulnerability in Siveillance Video Open Network Bridge (ONVIF)
SIEMENS-SSA-853866
|
SSA-853866 V1.0: User Credentials Disclosure Vulnerability in Siveillance Video Open Network Bridge (ONVIF)
|
2021-04-13 |
| MEDIUM | 0 |
SSA-296266 V1.1 (Last Update: 2021-04-13): Denial-of-Service Vulnerability in SCALANCE and RUGGEDCOM Devices
SIEMENS-SSA-296266
|
SSA-296266 V1.1 (Last Update: 2021-04-13): Denial-of-Service Vulnerability in SCALANCE and RUGGEDCOM Devices
|
2021-04-13 |
| HIGH | 7.5 |
SSA-541017 V1.3 (Last Update: 2021-04-13): Embedded TCP/IP Stack Vulnerabilities (AMNESIA:33) in SIRIUS 3RW5 Modbus TCP and SENTRON PAC / 3VA Devices
SIEMENS-SSA-541017 · 1 CVE
|
SSA-541017 V1.3 (Last Update: 2021-04-13): Embedded TCP/IP Stack Vulnerabilities (AMNESIA:33) in SIRIUS 3RW5 Modbus TCP and SENTRON PAC / 3VA Devices
|
2021-04-13 |
| MEDIUM | 0 |
SSA-591405 V1.2 (Last Update: 2021-04-13): Web Vulnerabilities in SCALANCE S-600 Family
SIEMENS-SSA-591405
|
SSA-591405 V1.2 (Last Update: 2021-04-13): Web Vulnerabilities in SCALANCE S-600 Family
|
2021-04-13 |
| MEDIUM | 0 |
SSA-689942 V1.3 (Last Update: 2021-04-13): Denial-of-Service and DLL Hijacking Vulnerabilities in Multiple SIMATIC Software Products
SIEMENS-SSA-689942
|
SSA-689942 V1.3 (Last Update: 2021-04-13): Denial-of-Service and DLL Hijacking Vulnerabilities in Multiple SIMATIC Software Products
|
2021-04-13 |
| MEDIUM | 0 |
SSA-715184 V1.1 (Last Update: 2021-04-13): Multiple File Parsing Vulnerabilities in Solid Edge
SIEMENS-SSA-715184
|
SSA-715184 V1.1 (Last Update: 2021-04-13): Multiple File Parsing Vulnerabilities in Solid Edge
|
2021-04-13 |
| MEDIUM | 0 |
SSA-979775 V1.1 (Last Update: 2021-04-13): Stack Overflow Vulnerability in SCALANCE and RUGGEDCOM Devices
SIEMENS-SSA-979775
|
SSA-979775 V1.1 (Last Update: 2021-04-13): Stack Overflow Vulnerability in SCALANCE and RUGGEDCOM Devices
|
2021-04-13 |
| HIGH | 8.3 |
Siemens SINEMA Remote Connect (Update A)
ICSA-19-099-04 · 5 CVEs
|
SINEMA Remote Connect Client,
SINEMA Remote Connect Server
|
2021-03-09 |
| HIGH | 7.1 |
Siemens SIMATIC Ident MV440 Family (Update A)
ICSA-19-162-02 · 2 CVEs
|
SIMATIC MV400 family
|
2021-03-09 |
| MEDIUM | 5.5 |
Siemens SIMATIC S7-PLCSIM
ICSA-21-068-01 · 3 CVEs
|
SIMATIC S7-PLCSIM V5.4
|
2021-03-09 |
| HIGH | 8.8 |
Siemens SINEMA Remote Connect Server
ICSA-21-068-04 · 2 CVEs
|
SINEMA Remote Connect Server
|
2021-03-09 |
| HIGH | 7.5 |
Siemens TCP Stack of SIMATIC MV400
ICSA-21-068-07 · 2 CVEs
|
SIMATIC MV400 family
|
2021-03-09 |
| MEDIUM | 6.5 |
Siemens Energy PLUSCONTROL 1st Gen
ICSA-21-068-08 · 1 CVE
|
PLUSCONTROL 1st Gen
|
2021-03-09 |
| HIGH | 8.3 |
Siemens SCALANCE and SIMATIC libcurl (Update B)
ICSA-21-068-10 · 5 CVEs
|
SINEMA Remote Connect Client,
SINEMA Remote Connect Server
|
2021-03-09 |
| MEDIUM | 0 |
SSA-231216 V1.0: Luxion KeyShot Vulnerabilities in Solid Edge
SIEMENS-SSA-231216
|
SSA-231216 V1.0: Luxion KeyShot Vulnerabilities in Solid Edge
|
2021-03-09 |
| MEDIUM | 0 |
SSA-256092 V1.0: Multiple local Denial-of-Service Vulnerabilities in SIMATIC S7-PLCSIM V5.4
SIEMENS-SSA-256092
|
SSA-256092 V1.0: Multiple local Denial-of-Service Vulnerabilities in SIMATIC S7-PLCSIM V5.4
|
2021-03-09 |
| MEDIUM | 0 |
SSA-344238 V1.0: TCP Session Hijacking Vulnerability in Siemens Energy PLUSCONTROL 1st Gen Devices
SIEMENS-SSA-344238
|
SSA-344238 V1.0: TCP Session Hijacking Vulnerability in Siemens Energy PLUSCONTROL 1st Gen Devices
|
2021-03-09 |
| MEDIUM | 0 |
SSA-599268 V1.0: Several Vulnerabilities in TCP Stack of SIMATIC MV400 family
SIEMENS-SSA-599268
|
SSA-599268 V1.0: Several Vulnerabilities in TCP Stack of SIMATIC MV400 family
|
2021-03-09 |
| MEDIUM | 0 |
SSA-731317 V1.0: Multiple vulnerabilities in SINEMA Remote Connect Web Based Management
SIEMENS-SSA-731317
|
SSA-731317 V1.0: Multiple vulnerabilities in SINEMA Remote Connect Web Based Management
|
2021-03-09 |
| MEDIUM | 0 |
SSA-917115 V1.0: Mendix Forgot Password Appstore module
SIEMENS-SSA-917115
|
SSA-917115 V1.0: Mendix Forgot Password Appstore module
|
2021-03-09 |
| MEDIUM | 0 |
SSA-398519 V1.6 (Last Update: 2021-03-09): Vulnerabilities in Intel CPUs (November 2019)
SIEMENS-SSA-398519
|
SSA-398519 V1.6 (Last Update: 2021-03-09): Vulnerabilities in Intel CPUs (November 2019)
|
2021-03-09 |
| MEDIUM | 0 |
SSA-436177 V1.1 (Last Update: 2021-03-09): Multiple Vulnerabilities in SINEMA Remote Connect
SIEMENS-SSA-436177
|
SSA-436177 V1.1 (Last Update: 2021-03-09): Multiple Vulnerabilities in SINEMA Remote Connect
|
2021-03-09 |
| MEDIUM | 0 |
SSA-816980 V1.1 (Last Update: 2021-03-09): Multiple Web Vulnerabilities in SIMATIC MV400 Family
SIEMENS-SSA-816980
|
SSA-816980 V1.1 (Last Update: 2021-03-09): Multiple Web Vulnerabilities in SIMATIC MV400 Family
|
2021-03-09 |
| HIGH | 7.1 |
Siemens SCALANCE X (Update B)
ICSA-19-162-04 · 1 CVE
|
SCALANCE X-200 switch family (incl.'SIPLUS NET variants),
SCALANCE X-200IRT switch family (incl.'SIPLUS NET variants),
SCALANCE X-300 switch family (incl.'X408 and SIPLUS NET variants)
+1 more
|
2021-02-09 |
| MEDIUM | 6.1 |
Siemens Climatix (Update A)
ICSA-20-105-04 · 2 CVEs
|
Climatix POL908 (BACnet/IP module),
Climatix POL909 (AWM module)
|
2021-02-09 |
| HIGH | 8.8 |
Siemens SINEMA Server & SINEC NMS
ICSA-21-040-03 · 1 CVE
|
SINEC NMS,
SINEMA Server
|
2021-02-09 |
| CRITICAL | 9.8 |
Siemens RUGGEDCOM ROX II
ICSA-21-040-04 · 6 CVEs
|
RUGGEDCOM ROX MX5000,
RUGGEDCOM ROX RX1400,
RUGGEDCOM ROX RX1500
+5 more
|
2021-02-09 |
| MEDIUM | 4.3 |
Siemens SCALANCE W780 and W740
ICSA-21-040-07 · 1 CVE
|
SCALANCE W780 and W740 (IEEE 802.11n) family
|
2021-02-09 |
| MEDIUM | 6.2 |
SIMATIC WinCC Graphics Designer
ICSA-21-040-09 · 1 CVE
|
SIMATIC PCS 7,
SIMATIC WinCC
|
2021-02-09 |
| HIGH | 7.8 |
Siemens DIGSI 4
ICSA-21-040-10 · 1 CVE
|
DIGSI 4
|
2021-02-09 |
| MEDIUM | 0 |
SSA-156833 V1.0: Zip-Slip Directory Traversal Vulnerability in SINEMA Server and SINEC NMS
SIEMENS-SSA-156833
|
SSA-156833 V1.0: Zip-Slip Directory Traversal Vulnerability in SINEMA Server and SINEC NMS
|
2021-02-09 |
| MEDIUM | 0 |
SSA-379803 V1.0: Vulnerabilities in RUGGEDCOM ROX II
SIEMENS-SSA-379803
|
SSA-379803 V1.0: Vulnerabilities in RUGGEDCOM ROX II
|
2021-02-09 |
| MEDIUM | 0 |
SSA-536315 V1.0: Privilege escalation vulnerability in DIGSI 4
SIEMENS-SSA-536315
|
SSA-536315 V1.0: Privilege escalation vulnerability in DIGSI 4
|
2021-02-09 |
| MEDIUM | 0 |
SSA-686152 V1.0: Denial-of-Service Vulnerability in ARP Protocol of SCALANCE W780 and W740
SIEMENS-SSA-686152
|
SSA-686152 V1.0: Denial-of-Service Vulnerability in ARP Protocol of SCALANCE W780 and W740
|
2021-02-09 |
| MEDIUM | 0 |
SSA-944678 V1.0: Potential Password Protection Bypass in SIMATIC WinCC
SIEMENS-SSA-944678
|
SSA-944678 V1.0: Potential Password Protection Bypass in SIMATIC WinCC
|
2021-02-09 |
| MEDIUM | 0 |
SSA-646841 V1.2 (Last Update: 2021-02-09): Recoverable Password from Configuration Storage in SCALANCE X Switches
SIEMENS-SSA-646841
|
SSA-646841 V1.2 (Last Update: 2021-02-09): Recoverable Password from Configuration Storage in SCALANCE X Switches
|
2021-02-09 |
| MEDIUM | 0 |
SSA-886514 V1.1 (Last Update: 2021-02-09): Persistent XSS Vulnerabilities in the Web Interface of Climatix POL908 and POL909 Modules
SIEMENS-SSA-886514
|
SSA-886514 V1.1 (Last Update: 2021-02-09): Persistent XSS Vulnerabilities in the Web Interface of Climatix POL908 and POL909 Modules
|
2021-02-09 |
| HIGH | 8.1 |
Siemens SIMATIC HMI Comfort Panels & SIMATIC HMI KTP Mobile Panels
ICSA-21-033-02 · 1 CVE
|
SIMATIC HMI Comfort Panels (incl.'SIPLUS variants),
SIMATIC HMI KTP Mobile Panels
|
2021-01-28 |
| MEDIUM | 0 |
SSA-520004 V1.0: Telnet Authentication Vulnerability in SIMATIC HMI Comfort Panels
SIEMENS-SSA-520004
|
SSA-520004 V1.0: Telnet Authentication Vulnerability in SIMATIC HMI Comfort Panels
|
2021-01-28 |
| HIGH | 7.8 |
Siemens Solid Edge
ICSA-21-012-04 · 6 CVEs
|
Solid Edge SE2020,
Solid Edge SE2021
|
2021-01-15 |
| MEDIUM | 0 |
SSA-979834 V1.1 (Last Update: 2021-01-15): Multiple vulnerabilities in Solid Edge
SIEMENS-SSA-979834
|
SSA-979834 V1.1 (Last Update: 2021-01-15): Multiple vulnerabilities in Solid Edge
|
2021-01-15 |
| HIGH | 8.1 |
SSA-604937 V1.2 (Last Update: 2021-01-12): Multiple Web Server Vulnerabilities in Opcenter Execution Core
SIEMENS-SSA-604937 · 4 CVEs
|
SSA-604937 V1.2 (Last Update: 2021-01-12): Multiple Web Server Vulnerabilities in Opcenter Execution Core
|
2021-01-12 |
| HIGH | 7.5 |
Siemens LOGO! (Update A)
ICSA-17-243-02 · 2 CVEs
|
LOGO! 8 BM (incl.'SIPLUS variants),
LOGO! 8 BM (incl.'SIPLUS variants)
|
2020-12-08 |
| HIGH | 7.5 |
Siemens SCALANCE X Switches, RUGGEDCOM WiMAX, RFID 181-EIP, and SIMATIC RF182C (Update D)
ICSA-18-165-01 · 1 CVE
|
RFID 181EIP,
RUGGEDCOM Win,
SCALANCE X-200 switch family (incl.'SIPLUS NET variants)
+6 more
|
2020-12-08 |
| HIGH | 7.8 |
Siemens LOGO! Soft Comfort (Update A)
ICSA-19-134-03 · 1 CVE
|
LOGO! Soft Comfort
|
2020-12-08 |
| CRITICAL | 9.4 |
Siemens LOGO! 8 BM (Update A)
ICSA-19-134-04 · 3 CVEs
|
LOGO! 8 BM (incl.'SIPLUS variants)
|
2020-12-08 |
| CRITICAL | 9.4 |
Siemens LOGO! (Update A)
ICSA-20-161-03 · 1 CVE
|
LOGO! 8 BM (incl.'SIPLUS variants)
|
2020-12-08 |
| LOW | 3.1 |
Siemens SIMATIC, SIMOTICS (Update A)
ICSA-20-224-05 · 1 CVE
|
SIMATIC RF350M,
SIMATIC RF650M,
SIMOTICS CONNECT 400
|
2020-12-08 |
| MEDIUM | 5.9 |
Siemens SIMATIC S7-300 and S7-400 CPUs (Update C)
ICSA-20-252-02 · 1 CVE
|
SINUMERIK 840D sl,
SIMATIC S7-300 CPU family (incl. related ET200 CPUs and SIPLUS variants),
SIMATIC S7-400 CPU family (incl. SIPLUS variants)
+1 more
|
2020-12-08 |
| HIGH | 8.1 |
Siemens XHQ Operations Intelligence
ICSA-20-343-06 · 7 CVEs
|
XHQ
|
2020-12-08 |
| HIGH | 8.1 |
Siemens SICAM A8000 RTUs
ICSA-20-343-07 · 1 CVE
|
SICAM A8000 CP-8000,
SICAM A8000 CP-8021,
SICAM A8000 CP-8022
|
2020-12-08 |
| MEDIUM | 5.3 |
Siemens SIMATIC Controller Web Servers
ICSA-20-343-09 · 1 CVE
|
SIMATIC ET 200SP Open Controller (incl. SIPLUS variants),
SIMATIC S7-1500 Software Controller
|
2020-12-08 |
| CRITICAL | 9.8 |
Siemens LOGO! 8 BM
ICSA-20-343-10 · 8 CVEs
|
LOGO! 8 BM (incl.'SIPLUS variants),
LOGO! Soft Comfort
|
2020-12-08 |
| MEDIUM | 0 |
SSA-415783 V1.0: Insecure SSL configuration in SICAM A8000 CP-8000, CP-8021 and CP-8022
SIEMENS-SSA-415783
|
SSA-415783 V1.0: Insecure SSL configuration in SICAM A8000 CP-8000, CP-8021 and CP-8022
|
2020-12-08 |
| MEDIUM | 0 |
SSA-480824 V1.0: Multiple Vulnerabilities in LOGO! 8 BM
SIEMENS-SSA-480824
|
SSA-480824 V1.0: Multiple Vulnerabilities in LOGO! 8 BM
|
2020-12-08 |
| MEDIUM | 0 |
SSA-700697 V1.0: Denial-of-Service Vulnerability in Web Server of SIMATIC Controllers
SIEMENS-SSA-700697
|
SSA-700697 V1.0: Denial-of-Service Vulnerability in Web Server of SIMATIC Controllers
|
2020-12-08 |
| MEDIUM | 0 |
SSA-712690 V1.0: Vulnerabilities in XHQ Operations Intelligence
SIEMENS-SSA-712690
|
SSA-712690 V1.0: Vulnerabilities in XHQ Operations Intelligence
|
2020-12-08 |
| MEDIUM | 0 |
SSA-087240 V1.2 (Last Update: 2020-12-08): Vulnerabilities in SIEMENS LOGO!
SIEMENS-SSA-087240
|
SSA-087240 V1.2 (Last Update: 2020-12-08): Vulnerabilities in SIEMENS LOGO!
|
2020-12-08 |
| MEDIUM | 0 |
SSA-102144 V1.1 (Last Update: 2020-12-08): Code Execution Vulnerability in LOGO! Soft Comfort
SIEMENS-SSA-102144
|
SSA-102144 V1.1 (Last Update: 2020-12-08): Code Execution Vulnerability in LOGO! Soft Comfort
|
2020-12-08 |
| MEDIUM | 0 |
SSA-181018 V1.6 (Last Update: 2020-12-08): Heap Overflow Vulnerability in SCALANCE X switches, RUGGEDCOM Win, RFID 181EIP, and SIMATIC RF182C
SIEMENS-SSA-181018
|
SSA-181018 V1.6 (Last Update: 2020-12-08): Heap Overflow Vulnerability in SCALANCE X switches, RUGGEDCOM Win, RFID 181EIP, and SIMATIC RF182C
|
2020-12-08 |
| MEDIUM | 0 |
SSA-381684 V1.3 (Last Update: 2020-12-08): Improper Password Protection during Authentication in SIMATIC S7-300 and S7-400 CPUs and Derived Products
SIEMENS-SSA-381684
|
SSA-381684 V1.3 (Last Update: 2020-12-08): Improper Password Protection during Authentication in SIMATIC S7-300 and S7-400 CPUs and Derived Products
|
2020-12-08 |
| MEDIUM | 0 |
SSA-542701 V1.2 (Last Update: 2020-12-08): Vulnerabilities in SIEMENS LOGO!
SIEMENS-SSA-542701
|
SSA-542701 V1.2 (Last Update: 2020-12-08): Vulnerabilities in SIEMENS LOGO!
|
2020-12-08 |
| MEDIUM | 0 |
SSA-616472 V1.7 (Last Update: 2020-12-08): ZombieLoad and Microarchitectural Data Sampling Vulnerabilities in Industrial Products
SIEMENS-SSA-616472
|
SSA-616472 V1.7 (Last Update: 2020-12-08): ZombieLoad and Microarchitectural Data Sampling Vulnerabilities in Industrial Products
|
2020-12-08 |
| LOW | 3.1 |
SSA-712518 V1.1 (Last Update: 2020-12-08): Information Disclosure Vulnerability (Kr00k) in Industrial Wi-Fi Products
SIEMENS-SSA-712518 · 1 CVE
|
SSA-712518 V1.1 (Last Update: 2020-12-08): Information Disclosure Vulnerability (Kr00k) in Industrial Wi-Fi Products
|
2020-12-08 |
| MEDIUM | 0 |
SSA-817401 V1.1 (Last Update: 2020-12-08): Missing Authentication Vulnerability in SIEMENS LOGO!
SIEMENS-SSA-817401
|
SSA-817401 V1.1 (Last Update: 2020-12-08): Missing Authentication Vulnerability in SIEMENS LOGO!
|
2020-12-08 |
| CRITICAL | 9.8 |
Siemens SCALANCE W 1750D
ICSA-20-315-05 · 1 CVE
|
SCALANCE W1750D
|
2020-11-10 |
| CRITICAL | 9.8 |
SSA-431802 (Last Update: 2020-11-10): Multiple Vulnerabilities in SCALANCE W1750D
SIEMENS-SSA-431802 · 1 CVE
|
SSA-431802 (Last Update: 2020-11-10): Multiple Vulnerabilities in SCALANCE W1750D
|
2020-11-10 |
| MEDIUM | 5.4 |
Siemens Desigo Insight
ICSA-20-287-05 · 3 CVEs
|
Desigo Insight
|
2020-10-13 |
| HIGH | 8.8 |
Siemens SIPORT MP
ICSA-20-287-06 · 1 CVE
|
SIPORT MP
|
2020-10-13 |
| MEDIUM | 5.4 |
SSA-226339 (Last Update: 2020-10-13): Multiple Web Application Vulnerabilities in Desigo Insight
SIEMENS-SSA-226339 · 3 CVEs
|
SSA-226339 (Last Update: 2020-10-13): Multiple Web Application Vulnerabilities in Desigo Insight
|
2020-10-13 |
| MEDIUM | 0 |
SSA-384879 (Last Update: 2020-10-13): Authentication Bypass Vulnerability in SIPORT MP
SIEMENS-SSA-384879
|
SSA-384879 (Last Update: 2020-10-13): Authentication Bypass Vulnerability in SIPORT MP
|
2020-10-13 |
| MEDIUM | 0 |
SSA-689071 (Last Update: 2020-10-13): DNSMasq Vulnerabilities in SCALANCE W1750D, SCALANCE M-800 / S615 and RUGGEDCOM RM1224
SIEMENS-SSA-689071
|
SSA-689071 (Last Update: 2020-10-13): DNSMasq Vulnerabilities in SCALANCE W1750D, SCALANCE M-800 / S615 and RUGGEDCOM RM1224
|
2020-10-13 |
| HIGH | 7.5 |
Siemens RUGGEDCOM, SCALANCE, SIMATIC, SINEMA (Update B)
ICSA-20-105-05 · 2 CVEs
|
RUGGEDCOM RM1224,
RUGGEDCOM ROX II,
SCALANCE M-800 / S615
+18 more
|
2020-09-08 |
| HIGH | 8.4 |
Siemens SIMATIC RTLS Locating Manager
ICSA-20-252-01 · 3 CVEs
|
SIMATIC RTLS Locating Manager
|
2020-09-08 |
| HIGH | 7.8 |
Siemens License Management Utility
ICSA-20-252-03 · 1 CVE
|
License Management Utility (LMU)
|
2020-09-08 |
| LOW | 3.7 |
Siemens Spectrum Power
ICSA-20-252-04 · 2 CVEs
|
Spectrum Power' 4
|
2020-09-08 |
| MEDIUM | 5.3 |
Siemens Siveillance Video Client
ICSA-20-252-05 · 1 CVE
|
Siveillance Video Client
|
2020-09-08 |
| HIGH | 8.1 |
Siemens Polarion Subversion Webclient
ICSA-20-252-08 · 2 CVEs
|
Polarion Subversion Webclient
|
2020-09-08 |
| MEDIUM | 0 |
SSA-251935 (Last Update: 2020-09-08): Multiple Privilege Escalation Vulnerabilities in SIMATIC RTLS Locating Manager
SIEMENS-SSA-251935
|
SSA-251935 (Last Update: 2020-09-08): Multiple Privilege Escalation Vulnerabilities in SIMATIC RTLS Locating Manager
|
2020-09-08 |
| MEDIUM | 0 |
SSA-436520 (Last Update: 2020-09-08): XSS and CSRF Vulnerabilities in Polarion Subversion Webclient
SIEMENS-SSA-436520
|
SSA-436520 (Last Update: 2020-09-08): XSS and CSRF Vulnerabilities in Polarion Subversion Webclient
|
2020-09-08 |
| MEDIUM | 0 |
SSA-568969 (Last Update: 2020-09-08): Insecure Storage of Sensitive Information in Spectrum Power™ 4
SIEMENS-SSA-568969
|
SSA-568969 (Last Update: 2020-09-08): Insecure Storage of Sensitive Information in Spectrum Power™ 4
|
2020-09-08 |
| MEDIUM | 0 |
SSA-709003 (Last Update: 2020-09-08): Privilege Escalation Vulnerability in License Management Utility (LMU)
SIEMENS-SSA-709003
|
SSA-709003 (Last Update: 2020-09-08): Privilege Escalation Vulnerability in License Management Utility (LMU)
|
2020-09-08 |
| MEDIUM | 0 |
SSA-770698 (Last Update: 2020-09-08): User Information Disclosure Vulnerability in Siveillance Video Client
SIEMENS-SSA-770698
|
SSA-770698 (Last Update: 2020-09-08): User Information Disclosure Vulnerability in Siveillance Video Client
|
2020-09-08 |
| MEDIUM | 0 |
SSA-377115 (Last Update: 2020-09-08): SegmentSmack in Linux IP-Stack based Industrial Devices
SIEMENS-SSA-377115
|
SSA-377115 (Last Update: 2020-09-08): SegmentSmack in Linux IP-Stack based Industrial Devices
|
2020-09-08 |
| HIGH | 8.5 |
Siemens Opcenter Execution Core (Update B)
ICSA-20-196-07 · 4 CVEs
|
Camstar Enterprise Platform,
Opcenter Execution Core,
Opcenter Execution Core
+1 more
|
2020-08-11 |
| CRITICAL | 9.8 |
Siemens SCALANCE, RUGGEDCOM
ICSA-20-224-04 · 1 CVE
|
RUGGEDCOM RM1224,
SCALANCE M-800 / S615
|
2020-08-11 |
| CRITICAL | 9.8 |
Siemens Desigo CC
ICSA-20-224-06 · 1 CVE
|
Desigo CC,
Desigo CC,
Desigo CC Compact
+1 more
|
2020-08-11 |
| HIGH | 7.3 |
Siemens Automation License Manager
ICSA-20-224-07 · 1 CVE
|
Automation License Manager 5,
Automation License Manager 6
|
2020-08-11 |
| HIGH | 8.3 |
Siemens SICAM A8000 RTUs
ICSA-20-224-08 · 1 CVE
|
SICAM WEB firmware for SICAM A8000 RTUs
|
2020-08-11 |
| MEDIUM | 0 |
SSA-370042 (Last Update: 2020-08-11): Cross-Site-Scripting (XSS) in SICAM A8000 RTUs
SIEMENS-SSA-370042
|
SSA-370042 (Last Update: 2020-08-11): Cross-Site-Scripting (XSS) in SICAM A8000 RTUs
|
2020-08-11 |
| MEDIUM | 0 |
SSA-388646 (Last Update: 2020-08-11): Local Privilege Escalation in Automation License Manager
SIEMENS-SSA-388646
|
SSA-388646 (Last Update: 2020-08-11): Local Privilege Escalation in Automation License Manager
|
2020-08-11 |
| MEDIUM | 0 |
SSA-786743 (Last Update: 2020-08-11): Code Injection Vulnerability in Advanced Reporting for Desigo CC and Desigo CC Compact
SIEMENS-SSA-786743
|
SSA-786743 (Last Update: 2020-08-11): Code Injection Vulnerability in Advanced Reporting for Desigo CC and Desigo CC Compact
|
2020-08-11 |
| MEDIUM | 0 |
SSA-809841 (Last Update: 2020-08-11): Buffer Overflow Vulnerability in Third-Party Component pppd
SIEMENS-SSA-809841
|
SSA-809841 (Last Update: 2020-08-11): Buffer Overflow Vulnerability in Third-Party Component pppd
|
2020-08-11 |
| MEDIUM | 6.6 |
Siemens SCALANCE Products (Update A)
ICSA-19-227-03 · 2 CVEs
|
SCALANCE SC-600,
SCALANCE XB-200,
SCALANCE XC-200
+3 more
|
2020-07-14 |
| MEDIUM | 6.8 |
Siemens S7-1200 and S7-200 SMART CPUs (Update B)
ICSA-19-318-02 · 1 CVE
|
SIMATIC S7-1200 CPU family V4.x (incl.'SIPLUS variants),
SIMATIC S7-1200 CPU family < V4.x (incl.'SIPLUS variants),
SIMATIC S7-200 SMART CPU ST20 (6ES7 288-1ST20-0AA0)
+13 more
|
2020-07-14 |
| CRITICAL | 9.8 |
Siemens SICAM MMU, SICAM T, and SICAM SGU
ICSA-20-196-03 · 9 CVEs
|
SICAM MMU,
SICAM SGU,
SICAM T
|
2020-07-14 |
| MEDIUM | 5.7 |
Siemens SIMATIC HMI Panels
ICSA-20-196-04 · 1 CVE
|
SIMATIC HMI Basic Panels 1st Generation (incl.'SIPLUS variants),
SIMATIC HMI Basic Panels 2nd Generation (incl.'SIPLUS variants),
SIMATIC HMI Comfort Panels (incl.'SIPLUS variants)
+3 more
|
2020-07-14 |
| HIGH | 7.5 |
Siemens SIMATIC S7-200 SMART CPU Family
ICSA-20-196-06 · 1 CVE
|
SIMATIC S7-200 SMART CPU family
|
2020-07-14 |
| CRITICAL | 9.8 |
Siemens LOGO! Web Server
ICSA-20-196-08 · 1 CVE
|
LOGO! 8 BM (incl.'SIPLUS variants),
LOGO! 8 BM (incl.'SIPLUS variants),
LOGO! 8 BM (incl.'SIPLUS variants)
|
2020-07-14 |
| MEDIUM | 0 |
SSA-305120 (Last Update: 2020-07-14): Vulnerabilities in SICAM MMU, SICAM T and SICAM SGU
SIEMENS-SSA-305120
|
SSA-305120 (Last Update: 2020-07-14): Vulnerabilities in SICAM MMU, SICAM T and SICAM SGU
|
2020-07-14 |
| MEDIUM | 0 |
SSA-364335 (Last Update: 2020-07-14): Clear Text Transmission Vulnerability on SIMATIC HMI Panels
SIEMENS-SSA-364335
|
SSA-364335 (Last Update: 2020-07-14): Clear Text Transmission Vulnerability on SIMATIC HMI Panels
|
2020-07-14 |
| MEDIUM | 0 |
SSA-508982 (Last Update: 2020-07-14): Denial-of-Service Vulnerability in SIMATIC S7-300 CPUs, SIMATIC TDC, and SINUMERIK Controller over Profinet
SIEMENS-SSA-508982
|
SSA-508982 (Last Update: 2020-07-14): Denial-of-Service Vulnerability in SIMATIC S7-300 CPUs, SIMATIC TDC, and SINUMERIK Controller over Profinet
|
2020-07-14 |
| MEDIUM | 0 |
SSA-573753 (Last Update: 2020-07-14): Remote Code Execution in Siemens LOGO! Web Server
SIEMENS-SSA-573753
|
SSA-573753 (Last Update: 2020-07-14): Remote Code Execution in Siemens LOGO! Web Server
|
2020-07-14 |
| MEDIUM | 0 |
SSA-589181 (Last Update: 2020-07-14): Denial-Of-Service in SIMATIC S7-200 SMART CPU Family Devices
SIEMENS-SSA-589181
|
SSA-589181 (Last Update: 2020-07-14): Denial-Of-Service in SIMATIC S7-200 SMART CPU Family Devices
|
2020-07-14 |
| MEDIUM | 0 |
SSA-631949 (Last Update: 2020-07-14): Ripple20 and Intel SPS Vulnerabilities in SPPA-T3000 Solutions
SIEMENS-SSA-631949
|
SSA-631949 (Last Update: 2020-07-14): Ripple20 and Intel SPS Vulnerabilities in SPPA-T3000 Solutions
|
2020-07-14 |
| MEDIUM | 0 |
SSA-671286 (Last Update: 2020-07-14): Multiple Vulnerabilities in SCALANCE Products
SIEMENS-SSA-671286
|
SSA-671286 (Last Update: 2020-07-14): Multiple Vulnerabilities in SCALANCE Products
|
2020-07-14 |
| MEDIUM | 0 |
SSA-686531 (Last Update: 2020-07-14): Hardware based manufacturing access on S7-1200 and S7-200 SMART
SIEMENS-SSA-686531
|
SSA-686531 (Last Update: 2020-07-14): Hardware based manufacturing access on S7-1200 and S7-200 SMART
|
2020-07-14 |
| CRITICAL | 9.8 |
Siemens SINUMERIK
ICSA-20-161-06 · 22 CVEs
|
SINUMERIK Access MyMachine /P2P,
SINUMERIK PCU base Win10 software /IPC,
SINUMERIK PCU base Win7 software /IPC
|
2020-06-09 |
| MEDIUM | 0 |
SSA-927095 (Last Update: 2020-06-09): UltraVNC Vulnerabilities in SINUMERIK Products
SIEMENS-SSA-927095
|
SSA-927095 (Last Update: 2020-06-09): UltraVNC Vulnerabilities in SINUMERIK Products
|
2020-06-09 |
| MEDIUM | 0 |
SSA-352504 (Last Update: 2020-06-09): Urgent/11 TCP/IP Stack Vulnerabilities in Siemens Power Meters
SIEMENS-SSA-352504
|
SSA-352504 (Last Update: 2020-06-09): Urgent/11 TCP/IP Stack Vulnerabilities in Siemens Power Meters
|
2020-06-09 |
| HIGH | 7.5 |
Siemens SIPROTEC 5 and DIGSI 5 (Update C)
ICSA-19-190-05 · 2 CVEs
|
SIPROTEC 5 device types 6MD85, 6MD86, 6MD89, 7UM85, 7SA87, 7SD87, 7SL87, 7VK87, 7SA82, 7SA86, 7SD82, 7SD86, 7SL82, 7SL86, 7SJ86, 7SK82, 7SK85, 7SJ82, 7SJ85, 7UT82, 7UT85, 7UT86, 7UT87 and 7VE85 with CPU variants CP300 and CP100 and the respective Ethernet communication modules,
SIPROTEC 5 device types 7SS85 and 7KE85,
All other SIPROTEC 5 device types with CPU variants CP300 and CP100 and the respective Ethernet communication modules
+3 more
|
2020-05-12 |
| HIGH | 7.5 |
Siemens SINAMICS (Update C)
ICSA-19-227-04 · 1 CVE
|
SINAMICS GH150 V4.7 (Control Unit),
SINAMICS GH150 V4.8 (Control Unit),
SINAMICS GL150 V4.7 (Control Unit)
+8 more
|
2020-05-12 |
| MEDIUM | 0 |
SSA-530931 (Last Update: 2020-05-12): Denial-of-Service in Webserver of Industrial Products
SIEMENS-SSA-530931
|
SSA-530931 (Last Update: 2020-05-12): Denial-of-Service in Webserver of Industrial Products
|
2020-05-12 |
| MEDIUM | 0 |
SSA-899560 (Last Update: 2020-05-12): Vulnerabilities in SIPROTEC 5 relays and DIGSI 5
SIEMENS-SSA-899560
|
SSA-899560 (Last Update: 2020-05-12): Vulnerabilities in SIPROTEC 5 relays and DIGSI 5
|
2020-05-12 |
| CRITICAL | 9.0 |
Siemens TIM 3V-IE and 4R-IE Family Devices
ICSA-20-105-09 · 1 CVE
|
TIM 3V-IE (incl. SIPLUS NET variants),
TIM 3V-IE Advanced (incl. SIPLUS NET variants),
TIM 3V-IE DNP3 (incl. SIPLUS NET variants)
+2 more
|
2020-04-14 |
| MEDIUM | 0 |
SSA-359303 (Last Update: 2020-04-14): Debug Port in TIM 3V-IE and 4R-IE Family Devices
SIEMENS-SSA-359303
|
SSA-359303 (Last Update: 2020-04-14): Debug Port in TIM 3V-IE and 4R-IE Family Devices
|
2020-04-14 |
| MEDIUM | 0 |
SSA-589272 (Last Update: 2020-04-13): Security vulnerability in SIMATIC S7-400 V6 PN CPUs
SIEMENS-SSA-589272
|
SSA-589272 (Last Update: 2020-04-13): Security vulnerability in SIMATIC S7-400 V6 PN CPUs
|
2020-04-13 |
| MEDIUM | 0 |
SSA-617264 (Last Update: 2020-04-13): Multiple Security Vulnerabilities in SIMATIC S7-400 V5 PN CPUs
SIEMENS-SSA-617264
|
SSA-617264 (Last Update: 2020-04-13): Multiple Security Vulnerabilities in SIMATIC S7-400 V5 PN CPUs
|
2020-04-13 |
| MEDIUM | 5.3 |
Siemens SIMATIC S7-1200 and S7-1500 CPU Families (Update B)
ICSA-19-344-06 · 2 CVEs
|
SIMATIC Drive Controller family,
SIMATIC S7-1500 CPU family (incl. related ET200 CPUs and SIPLUS variants),
SIMATIC S7-PLCSIM Advanced
+10 more
|
2020-03-10 |
| HIGH | 7.5 |
Siemens SIMATIC S7-1500 (Update A)
ICSA-20-042-11 · 1 CVE
|
SIMATIC ET 200SP Open Controller CPU 1515SP PC2 (incl. SIPLUS variants),
SIMATIC S7-1500 CPU family (incl. related ET200 CPUs and SIPLUS variants),
SIMATIC S7-1500 Software Controller
|
2020-03-10 |
| HIGH | 7.5 |
Siemens SIMATIC S7-300 CPUs and SINUMERIK Controller over Profinet (Update A)
ICSA-20-070-02 · 1 CVE
|
SIMATIC S7-300 CPU family (incl.'related ET200 CPUs and SIPLUS variants),
SIMATIC TDC CP51M1,
SIMATIC TDC CPU555
+2 more
|
2020-03-10 |
| MEDIUM | 6.1 |
Siemens Spectrum Power 5
ICSA-20-070-03 · 1 CVE
|
Spectrum Power™ 5
|
2020-03-10 |
| MEDIUM | 0 |
SSA-938930 (Last Update: 2020-03-10): Cross-Site Scripting Vulnerability in Spectrum Power™ 5
SIEMENS-SSA-938930
|
SSA-938930 (Last Update: 2020-03-10): Cross-Site Scripting Vulnerability in Spectrum Power™ 5
|
2020-03-10 |
| MEDIUM | 0 |
SSA-451445 (Last Update: 2020-03-10): Multiple Vulnerabilities in SPPA-T3000
SIEMENS-SSA-451445
|
SSA-451445 (Last Update: 2020-03-10): Multiple Vulnerabilities in SPPA-T3000
|
2020-03-10 |
| MEDIUM | 0 |
SSA-750824 (Last Update: 2020-03-10): Denial-of-Service Vulnerability in Profinet Devices
SIEMENS-SSA-750824
|
SSA-750824 (Last Update: 2020-03-10): Denial-of-Service Vulnerability in Profinet Devices
|
2020-03-10 |
| MEDIUM | 0 |
SSA-731239 (Last Update: 2020-03-10): Vulnerabilities in SIMATIC S7-300 and S7-400 CPUs
SIEMENS-SSA-731239
|
SSA-731239 (Last Update: 2020-03-10): Vulnerabilities in SIMATIC S7-300 and S7-400 CPUs
|
2020-03-10 |
| CRITICAL | 9.8 |
Siemens SIMATIC CP 1543-1
ICSA-20-042-03 · 2 CVEs
|
SIMATIC CP 1543-1 (incl. SIPLUS NET variants)
|
2020-02-11 |
| MEDIUM | 6.5 |
Siemens SIPORT MP
ICSA-20-042-08 · 1 CVE
|
SIPORT MP
|
2020-02-11 |
| MEDIUM | 5.3 |
Siemens OZW Web Server
ICSA-20-042-09 · 1 CVE
|
OZW672,
OZW772
|
2020-02-11 |
| HIGH | 7.5 |
Siemens SIPROTEC 4 and SIPROTEC Compact
ICSA-20-042-12 · 1 CVE
|
SIPROTEC 4 and SIPROTEC Compact relays equipped with EN100 Ethernet communication modules
|
2020-02-11 |
| MEDIUM | 0 |
SSA-940889 (Last Update: 2020-02-11): Vulnerabilities in the embedded FTP server of SIMATIC CP 1543-1
SIEMENS-SSA-940889
|
SSA-940889 (Last Update: 2020-02-11): Vulnerabilities in the embedded FTP server of SIMATIC CP 1543-1
|
2020-02-11 |
| MEDIUM | 0 |
SSA-974843 (Last Update: 2020-02-11): Denial-of-Service Vulnerability in SIPROTEC 4 and SIPROTEC Compact Relay Families
SIEMENS-SSA-974843
|
SSA-974843 (Last Update: 2020-02-11): Denial-of-Service Vulnerability in SIPROTEC 4 and SIPROTEC Compact Relay Families
|
2020-02-11 |
| MEDIUM | 0 |
SSA-978558 (Last Update: 2020-02-11): Insufficient Logging Vulnerability in SIPORT MP
SIEMENS-SSA-978558
|
SSA-978558 (Last Update: 2020-02-11): Insufficient Logging Vulnerability in SIPORT MP
|
2020-02-11 |
| MEDIUM | 0 |
SSA-986695 (Last Update: 2020-02-11): Information Disclosure Vulnerability in the OZW Web Server
SIEMENS-SSA-986695
|
SSA-986695 (Last Update: 2020-02-11): Information Disclosure Vulnerability in the OZW Web Server
|
2020-02-11 |
| MEDIUM | 5.9 |
Siemens SIMATIC Industrial PCs (Update A)
ICSA-18-058-01A · 1 CVE
|
SIMATIC Field-PG M5,
SIMATIC IPC227E,
SIMATIC IPC277E
+4 more
|
2020-02-10 |
| CRITICAL | 9.8 |
Siemens TIM 1531 IRC
ICSA-18-088-02 · 1 CVE
|
TIM 1531 IRC (incl. SIPLUS NET variants)
|
2020-02-10 |
| HIGH | 7.5 |
Siemens Medium Voltage SINAMICS Products (Update A)
ICSA-18-128-01 · 2 CVEs
|
SIMOTION D4xx V4.4 for SINAMICS SM150i-2 w. PROFINET (incl. SIPLUS variants),
SINAMICS GH150 V4.7 w. PROFINET,
SINAMICS GL150 V4.7 w. PROFINET
+5 more
|
2020-02-10 |
| HIGH | 7.5 |
Siemens SIMATIC S7-400 CPU (Update A)
ICSA-18-137-03 · 1 CVE
|
SIMATIC S7-400 CPU hardware version 4.0 and below (incl. SIPLUS variants),
SIMATIC S7-400 CPU hardware version 5.0 (incl. SIPLUS variants),
SIMATIC S7-400 H CPU hardware version 4.5 and below (incl. SIPLUS variants)
|
2020-02-10 |
| HIGH | 8.6 |
Siemens SCALANCE X Switches
ICSA-18-254-05 · 1 CVE
|
SCALANCE X-300 switch family (incl. SIPLUS NET variants),
SCALANCE X408,
SCALANCE X414
|
2020-02-10 |
| HIGH | 7.5 |
Siemens SIMATIC S7-1200 CPU Family Version 4
ICSA-18-282-04 · 1 CVE
|
SIMATIC S7-1200 CPU family version 4 (incl. SIPLUS variants)
|
2020-02-10 |
| MEDIUM | 5.3 |
Siemens SIMATIC S7-1500, SIMATIC S7-1500 Software Controller and SIMATIC ET 200SP OpenController (Update A)
ICSA-18-282-05 · 1 CVE
|
SIMATIC ET 200SP Open Controller (incl. SIPLUS variants),
SIMATIC S7-1500 CPU family (incl. related ET200 CPUs and SIPLUS variants),
SIMATIC S7-1500 Software Controller
|
2020-02-10 |
| MEDIUM | 4.3 |
Siemens SIMATIC Panels and SIMATIC WinCC (TIA Portal)
ICSA-18-317-03 · 1 CVE
|
SIMATIC HMI Comfort Panels 4" - 22" (incl. SIPLUS variants),
SIMATIC HMI Comfort Outdoor Panels 7" & 15" (incl. SIPLUS variants),
SIMATIC HMI KTP Mobile Panels KTP400F, KTP700, KTP700F, KTP900 and KTP900F
+4 more
|
2020-02-10 |
| MEDIUM | 5.3 |
Siemens SIMATIC S7 (Update A)
ICSA-18-317-05 · 1 CVE
|
SIMATIC S7-1200 CPU family (incl. SIPLUS variants),
SIMATIC S7-1500 CPU family (incl. related ET200 CPUs and SIPLUS variants)
|
2020-02-10 |
| HIGH | 7.5 |
Siemens SIMATIC Panels
ICSA-18-317-08 · 2 CVEs
|
SIMATIC HMI Comfort Panels 4" - 22" (incl. SIPLUS variants),
SIMATIC HMI Comfort Outdoor Panels 7" & 15" (incl. SIPLUS variants),
SIMATIC HMI KTP Mobile Panels KTP400F
+4 more
|
2020-02-10 |
| CRITICAL | 10.0 |
Siemens TIM 1531 IRC Modules
ICSA-18-352-05 · 1 CVE
|
TIM 1531 IRC (incl. SIPLUS NET variants)
|
2020-02-10 |
| HIGH | 7.5 |
Siemens SIMATIC S7-1500 CPU
ICSA-19-036-04 · 2 CVEs
|
SIMATIC S7-1500 CPU family (incl. related ET200 CPUs and SIPLUS variants),
SIMATIC S7-1500 CPU family (incl. related ET200 CPUs and SIPLUS variants)
|
2020-02-10 |
| HIGH | 7.5 |
Siemens SIMATIC S7-300 CPU
ICSA-19-043-04 · 1 CVE
|
SIMATIC S7-300 CPU family (incl. related ET200 CPUs and SIPLUS variants)
|
2020-02-10 |
| MEDIUM | 6.7 |
Siemens Intel Active Management Technology of SIMATIC IPCs
ICSA-19-043-05 · 3 CVEs
|
SIMATIC FieldPG M5,
SIMATIC IPC427E (incl. SIPLUS variants),
SIMATIC IPC477E
+8 more
|
2020-02-10 |
| HIGH | 7.5 |
Siemens SIMOCODE pro V EIP
ICSA-19-099-01 · 1 CVE
|
SIMOCODE pro V EIP (incl. SIPLUS variants)
|
2020-02-10 |
| HIGH | 7.5 |
Siemens LOGO!8 Devices
ICSA-19-162-03 · 2 CVEs
|
SIEMENS LOGO!8 (incl. SIPLUS variants),
SIEMENS LOGO!8 (incl. SIPLUS variants)
|
2020-02-10 |
| MEDIUM | 0 |
SSA-110922 (Last Update: 2020-02-10): Web Vulnerability in TIM 1531 IRC
SIEMENS-SSA-110922
|
SSA-110922 (Last Update: 2020-02-10): Web Vulnerability in TIM 1531 IRC
|
2020-02-10 |
| MEDIUM | 0 |
SSA-134003 (Last Update: 2020-02-10): Web Vulnerability in SIMATIC S7-1200 Family
SIEMENS-SSA-134003
|
SSA-134003 (Last Update: 2020-02-10): Web Vulnerability in SIMATIC S7-1200 Family
|
2020-02-10 |
| MEDIUM | 0 |
SSA-141614 (Last Update: 2020-02-10): Denial-of-Service in SIMOCODE pro V EIP
SIEMENS-SSA-141614
|
SSA-141614 (Last Update: 2020-02-10): Denial-of-Service in SIMOCODE pro V EIP
|
2020-02-10 |
| MEDIUM | 0 |
SSA-168644 (Last Update: 2020-02-10): Spectre and Meltdown Vulnerabilities in Industrial Products
SIEMENS-SSA-168644
|
SSA-168644 (Last Update: 2020-02-10): Spectre and Meltdown Vulnerabilities in Industrial Products
|
2020-02-10 |
| MEDIUM | 0 |
SSA-176087 (Last Update: 2020-02-10): Unauthenticated Access to Critical Services in SCALANCE X-200 Switch Family
SIEMENS-SSA-176087
|
SSA-176087 (Last Update: 2020-02-10): Unauthenticated Access to Critical Services in SCALANCE X-200 Switch Family
|
2020-02-10 |
| MEDIUM | 0 |
SSA-180635 (Last Update: 2020-02-10): Denial-of-Service Vulnerabilities in SIMATIC S7-1500 CPU Family
SIEMENS-SSA-180635
|
SSA-180635 (Last Update: 2020-02-10): Denial-of-Service Vulnerabilities in SIMATIC S7-1500 CPU Family
|
2020-02-10 |
| MEDIUM | 0 |
SSA-233109 (Last Update: 2020-02-10): Web Vulnerabilities in SIMATIC Panels
SIEMENS-SSA-233109
|
SSA-233109 (Last Update: 2020-02-10): Web Vulnerabilities in SIMATIC Panels
|
2020-02-10 |
| MEDIUM | 0 |
SSA-234763 (Last Update: 2020-02-10): OpenSSL Vulnerabilities in Siemens Industrial Products
SIEMENS-SSA-234763
|
SSA-234763 (Last Update: 2020-02-10): OpenSSL Vulnerabilities in Siemens Industrial Products
|
2020-02-10 |
| MEDIUM | 0 |
SSA-253230 (Last Update: 2020-02-10): Vulnerabilities in SIMATIC S7-1500 CPU family
SIEMENS-SSA-253230
|
SSA-253230 (Last Update: 2020-02-10): Vulnerabilities in SIMATIC S7-1500 CPU family
|
2020-02-10 |
| MEDIUM | 0 |
SSA-254686 (Last Update: 2020-02-10): Foreshadow / L1 Terminal Fault Vulnerabilities in Industrial Products
SIEMENS-SSA-254686
|
SSA-254686 (Last Update: 2020-02-10): Foreshadow / L1 Terminal Fault Vulnerabilities in Industrial Products
|
2020-02-10 |
| MEDIUM | 0 |
SSA-268644 (Last Update: 2020-02-10): Spectre-NG (Variants 3a and 4) Vulnerabilities in Industrial Products
SIEMENS-SSA-268644
|
SSA-268644 (Last Update: 2020-02-10): Spectre-NG (Variants 3a and 4) Vulnerabilities in Industrial Products
|
2020-02-10 |
| MEDIUM | 0 |
SSA-306710 (Last Update: 2020-02-10): Denial-of-Service Vulnerability in SIMATIC S7-300 CPU Family
SIEMENS-SSA-306710
|
SSA-306710 (Last Update: 2020-02-10): Denial-of-Service Vulnerability in SIMATIC S7-300 CPU Family
|
2020-02-10 |
| MEDIUM | 0 |
SSA-310688 (Last Update: 2020-02-10): Denial-of-Service Vulnerability in SIMATIC S7-1500 CPU
SIEMENS-SSA-310688
|
SSA-310688 (Last Update: 2020-02-10): Denial-of-Service Vulnerability in SIMATIC S7-1500 CPU
|
2020-02-10 |
| MEDIUM | 0 |
SSA-321046 (Last Update: 2020-02-10): Denial-of-Service Vulnerability in SCALANCE X-300/X408 Switch Family
SIEMENS-SSA-321046
|
SSA-321046 (Last Update: 2020-02-10): Denial-of-Service Vulnerability in SCALANCE X-300/X408 Switch Family
|
2020-02-10 |
| MEDIUM | 0 |
SSA-347726 (Last Update: 2020-02-10): Denial-of-Service Vulnerability in SIMATIC S7-1500, SIMATIC S7-1500 Software Controller and SIMATIC ET 200SP Open Controller
SIEMENS-SSA-347726
|
SSA-347726 (Last Update: 2020-02-10): Denial-of-Service Vulnerability in SIMATIC S7-1500, SIMATIC S7-1500 Software Controller and SIMATIC ET 200SP Open Controller
|
2020-02-10 |
| MEDIUM | 0 |
SSA-377318 (Last Update: 2020-02-10): Multiple vulnerabilities in Intel Active Management Technology (AMT) of SIMATIC IPCs
SIEMENS-SSA-377318
|
SSA-377318 (Last Update: 2020-02-10): Multiple vulnerabilities in Intel Active Management Technology (AMT) of SIMATIC IPCs
|
2020-02-10 |
| MEDIUM | 0 |
SSA-447396 (Last Update: 2020-02-10): Denial-of-Service in SCALANCE X-300, SCALANCE X408 and SCALANCE X414
SIEMENS-SSA-447396
|
SSA-447396 (Last Update: 2020-02-10): Denial-of-Service in SCALANCE X-300, SCALANCE X408 and SCALANCE X414
|
2020-02-10 |
| MEDIUM | 0 |
SSA-456423 (Last Update: 2020-02-10): Vulnerabilities in SIMATIC S7-1500 CPU family
SIEMENS-SSA-456423
|
SSA-456423 (Last Update: 2020-02-10): Vulnerabilities in SIMATIC S7-1500 CPU family
|
2020-02-10 |
| MEDIUM | 0 |
SSA-470231 (Last Update: 2020-02-10): TPM Vulnerability in SIMATIC IPCs
SIEMENS-SSA-470231
|
SSA-470231 (Last Update: 2020-02-10): TPM Vulnerability in SIMATIC IPCs
|
2020-02-10 |
| MEDIUM | 0 |
SSA-487246 (Last Update: 2020-02-10): Vulnerabilities in SIMATIC HMI Devices
SIEMENS-SSA-487246
|
SSA-487246 (Last Update: 2020-02-10): Vulnerabilities in SIMATIC HMI Devices
|
2020-02-10 |
| MEDIUM | 0 |
SSA-507847 (Last Update: 2020-02-10): Cross-Site Request Forgery Vulnerability in SIMATIC S7-1200 CPU Family Version 4
SIEMENS-SSA-507847
|
SSA-507847 (Last Update: 2020-02-10): Cross-Site Request Forgery Vulnerability in SIMATIC S7-1200 CPU Family Version 4
|
2020-02-10 |
| MEDIUM | 0 |
SSA-546832 (Last Update: 2020-02-10): Vulnerabilities in Medium Voltage SINAMICS and SIMOTION Products
SIEMENS-SSA-546832
|
SSA-546832 (Last Update: 2020-02-10): Vulnerabilities in Medium Voltage SINAMICS and SIMOTION Products
|
2020-02-10 |
| MEDIUM | 0 |
SSA-584286 (Last Update: 2020-02-10): Denial-of-Service Vulnerability in SIMATIC S7-1200 CPU and SIMATIC S7-1500 CPU
SIEMENS-SSA-584286
|
SSA-584286 (Last Update: 2020-02-10): Denial-of-Service Vulnerability in SIMATIC S7-1200 CPU and SIMATIC S7-1500 CPU
|
2020-02-10 |
| MEDIUM | 0 |
SSA-597212 (Last Update: 2020-02-10): Web Vulnerability in SIMATIC S7-1200 CPU Family
SIEMENS-SSA-597212
|
SSA-597212 (Last Update: 2020-02-10): Web Vulnerability in SIMATIC S7-1200 CPU Family
|
2020-02-10 |
| MEDIUM | 5.9 |
SSA-623229 (Last Update: 2020-02-10): DROWN Vulnerability in Industrial Products
SIEMENS-SSA-623229 · 1 CVE
|
SSA-623229 (Last Update: 2020-02-10): DROWN Vulnerability in Industrial Products
|
2020-02-10 |
| HIGH | 7.5 |
SSA-635659 (Last Update: 2020-02-10): Heartbleed Vulnerability in Siemens Industrial Products
SIEMENS-SSA-635659 · 1 CVE
|
SSA-635659 (Last Update: 2020-02-10): Heartbleed Vulnerability in Siemens Industrial Products
|
2020-02-10 |
| MEDIUM | 0 |
SSA-654382 (Last Update: 2020-02-10): Vulnerabilities in SIMATIC S7-1200 CPU Familiy
SIEMENS-SSA-654382
|
SSA-654382 (Last Update: 2020-02-10): Vulnerabilities in SIMATIC S7-1200 CPU Familiy
|
2020-02-10 |
| MEDIUM | 0 |
SSA-724606 (Last Update: 2020-02-10): Denial-of-Service Vulnerabilities in SIMATIC S7-1200 CPU Family
SIEMENS-SSA-724606
|
SSA-724606 (Last Update: 2020-02-10): Denial-of-Service Vulnerabilities in SIMATIC S7-1200 CPU Family
|
2020-02-10 |
| MEDIUM | 0 |
SSA-742938 (Last Update: 2020-02-10): Open Ports in SINAMICS S/G Firmware
SIEMENS-SSA-742938
|
SSA-742938 (Last Update: 2020-02-10): Open Ports in SINAMICS S/G Firmware
|
2020-02-10 |
| MEDIUM | 0 |
SSA-774850 (Last Update: 2020-02-10): Vulnerabilities in SIEMENS LOGO!8 devices
SIEMENS-SSA-774850
|
SSA-774850 (Last Update: 2020-02-10): Vulnerabilities in SIEMENS LOGO!8 devices
|
2020-02-10 |
| MEDIUM | 0 |
SSA-804486 (Last Update: 2020-02-10): Multiple Vulnerabilities in SIMATIC Panels and SIMATIC WinCC (TIA Portal)
SIEMENS-SSA-804486
|
SSA-804486 (Last Update: 2020-02-10): Multiple Vulnerabilities in SIMATIC Panels and SIMATIC WinCC (TIA Portal)
|
2020-02-10 |
| MEDIUM | 0 |
SSA-818183 (Last Update: 2020-02-10): Denial-of-Service Vulnerability in SIMATIC S7-300 CPU Family
SIEMENS-SSA-818183
|
SSA-818183 (Last Update: 2020-02-10): Denial-of-Service Vulnerability in SIMATIC S7-300 CPU Family
|
2020-02-10 |
| MEDIUM | 0 |
SSA-833048 (Last Update: 2020-02-10): Vulnerability in SIMATIC S7-1200 CPU Family
SIEMENS-SSA-833048
|
SSA-833048 (Last Update: 2020-02-10): Vulnerability in SIMATIC S7-1200 CPU Family
|
2020-02-10 |
| MEDIUM | 0 |
SSA-850708 (Last Update: 2020-02-10): Authentication Bypass in SCALANCE X-200 Switch Family
SIEMENS-SSA-850708
|
SSA-850708 (Last Update: 2020-02-10): Authentication Bypass in SCALANCE X-200 Switch Family
|
2020-02-10 |
| CRITICAL | 9.8 |
SSA-874235 (Last Update: 2020-02-10): Intel Vulnerability in Siemens Industrial Products
SIEMENS-SSA-874235 · 1 CVE
|
SSA-874235 (Last Update: 2020-02-10): Intel Vulnerability in Siemens Industrial Products
|
2020-02-10 |
| MEDIUM | 0 |
SSA-892012 (Last Update: 2020-02-10): Web Vulnerabilities in SIMATIC S7-1200 CPU Family
SIEMENS-SSA-892012
|
SSA-892012 (Last Update: 2020-02-10): Web Vulnerabilities in SIMATIC S7-1200 CPU Family
|
2020-02-10 |
| MEDIUM | 0 |
SSA-892715 (Last Update: 2020-02-10): ME, SPS and TXE Vulnerabilities in SIMATIC IPCs
SIEMENS-SSA-892715
|
SSA-892715 (Last Update: 2020-02-10): ME, SPS and TXE Vulnerabilities in SIMATIC IPCs
|
2020-02-10 |
| MEDIUM | 0 |
SSA-914382 (Last Update: 2020-02-10): Denial-of-Service Vulnerability in SIMATIC S7-400 CPU Family
SIEMENS-SSA-914382
|
SSA-914382 (Last Update: 2020-02-10): Denial-of-Service Vulnerability in SIMATIC S7-400 CPU Family
|
2020-02-10 |
| MEDIUM | 0 |
SSA-944083 (Last Update: 2020-02-10): HTTP Header Injection in SIMATIC Panels and SIMATIC WinCC (TIA Portal)
SIEMENS-SSA-944083
|
SSA-944083 (Last Update: 2020-02-10): HTTP Header Injection in SIMATIC Panels and SIMATIC WinCC (TIA Portal)
|
2020-02-10 |
| MEDIUM | 0 |
SSA-954136 (Last Update: 2020-02-10): User Impersonation Vulnerability in SCALANCE X-200IRT Switch Family
SIEMENS-SSA-954136
|
SSA-954136 (Last Update: 2020-02-10): User Impersonation Vulnerability in SCALANCE X-200IRT Switch Family
|
2020-02-10 |
| MEDIUM | 0 |
SSA-982399 (Last Update: 2020-02-10): Missing Authentication in TIM 1531 IRC Modules
SIEMENS-SSA-982399
|
SSA-982399 (Last Update: 2020-02-10): Missing Authentication in TIM 1531 IRC Modules
|
2020-02-10 |
| MEDIUM | 0 |
SSA-987029 (Last Update: 2020-02-10): Denial-of-Service Vulnerability in SIMATIC S7-300 CPU Family
SIEMENS-SSA-987029
|
SSA-987029 (Last Update: 2020-02-10): Denial-of-Service Vulnerability in SIMATIC S7-300 CPU Family
|
2020-02-10 |
| CRITICAL | 10.0 |
SSA-994726 (Last Update: 2020-02-10): GHOST Vulnerability in Siemens Industrial Products
SIEMENS-SSA-994726 · 1 CVE
|
SSA-994726 (Last Update: 2020-02-10): GHOST Vulnerability in Siemens Industrial Products
|
2020-02-10 |
| HIGH | 7.5 |
Siemens SIMATIC WinAC RTX (F) 2010 (Update A)
ICSA-19-281-03 · 1 CVE
|
SIMATIC WinAC RTX (F) 2010
|
2020-01-14 |
| HIGH | 7.5 |
Siemens EN100 Ethernet Module (Update A)
ICSA-19-344-07 · 3 CVEs
|
EN100 Ethernet module IEC 61850 variant,
EN100 Ethernet module PROFINET IO variant,
EN100 Ethernet module Modbus TCP variant
+2 more
|
2020-01-14 |
| CRITICAL | 9.9 |
Siemens SINEMA Server
ICSA-20-014-02 · 1 CVE
|
SINEMA Server
|
2020-01-14 |
| MEDIUM | 6.8 |
Siemens SINAMICS PERFECT HARMONY GH180
ICSA-20-014-04 · 1 CVE
|
SINAMICS PERFECT HARMONY GH180 Drives,
SINAMICS PERFECT HARMONY GH180 Drives
|
2020-01-14 |
| MEDIUM | 0 |
SSA-880233 (Last Update: 2020-01-14): Incorrect Session Validation Vulnerability in SINEMA Server
SIEMENS-SSA-880233
|
SSA-880233 (Last Update: 2020-01-14): Incorrect Session Validation Vulnerability in SINEMA Server
|
2020-01-14 |
| MEDIUM | 0 |
SSA-242353 (Last Update: 2020-01-14): Access Control Vulnerability in SINAMICS PERFECT HARMONY GH180
SIEMENS-SSA-242353
|
SSA-242353 (Last Update: 2020-01-14): Access Control Vulnerability in SINAMICS PERFECT HARMONY GH180
|
2020-01-14 |
| MEDIUM | 0 |
SSA-878278 (Last Update: 2020-01-14): Denial-of-Service Vulnerability in SIMATIC WinAC RTX (F) 2010
SIEMENS-SSA-878278
|
SSA-878278 (Last Update: 2020-01-14): Denial-of-Service Vulnerability in SIMATIC WinAC RTX (F) 2010
|
2020-01-14 |
| HIGH | 8.8 |
SSA-632562 (Last Update: 2020-01-14): Vulnerabilities in SIPROTEC 5 Ethernet plug-in communication modules and devices
SIEMENS-SSA-632562 · 2 CVEs
|
SSA-632562 (Last Update: 2020-01-14): Vulnerabilities in SIPROTEC 5 Ethernet plug-in communication modules and devices
|
2020-01-14 |
| MEDIUM | 0 |
SSA-418979 (Last Update: 2020-01-14): Vulnerabilities in EN100 Ethernet Communication Module
SIEMENS-SSA-418979
|
SSA-418979 (Last Update: 2020-01-14): Vulnerabilities in EN100 Ethernet Communication Module
|
2020-01-14 |
| MEDIUM | 0 |
SSA-616199 (Last Update: 2020-01-14): BlueKeep Vulnerability Identified in RAPIDPoint® 500 Operating on Windows XP
SIEMENS-SSA-616199
|
SSA-616199 (Last Update: 2020-01-14): BlueKeep Vulnerability Identified in RAPIDPoint® 500 Operating on Windows XP
|
2020-01-14 |
| MEDIUM | 6.5 |
Siemens SCALANCE W700 and W1700
ICSA-19-344-01 · 1 CVE
|
SCALANCE W1700,
SCALANCE W700
|
2019-12-10 |
| HIGH | 8.8 |
Siemens XHQ Operations Intelligence
ICSA-19-344-05 · 3 CVEs
|
XHQ
|
2019-12-10 |
| MEDIUM | 0 |
SSA-525454 (Last Update: 2019-12-10): Vulnerabilities in XHQ Operations Intelligence
SIEMENS-SSA-525454
|
SSA-525454 (Last Update: 2019-12-10): Vulnerabilities in XHQ Operations Intelligence
|
2019-12-10 |
| MEDIUM | 0 |
SSA-344983 (Last Update: 2019-12-10): Vulnerability in WPA2 Key Handling affecting SCALANCE W700 and SCALANCE W1700 Devices
SIEMENS-SSA-344983
|
SSA-344983 (Last Update: 2019-12-10): Vulnerability in WPA2 Key Handling affecting SCALANCE W700 and SCALANCE W1700 Devices
|
2019-12-10 |
| MEDIUM | 0 |
SSA-189842 (Last Update: 2019-12-10): TCP URGENT/11 Vulnerabilities in RUGGEDCOM Win
SIEMENS-SSA-189842
|
SSA-189842 (Last Update: 2019-12-10): TCP URGENT/11 Vulnerabilities in RUGGEDCOM Win
|
2019-12-10 |
| MEDIUM | 0 |
SSA-170686 (Last Update: 2019-12-10): Vulnerabilities in SCALANCE X-200 and X-200IRT Switch Families
SIEMENS-SSA-170686
|
SSA-170686 (Last Update: 2019-12-10): Vulnerabilities in SCALANCE X-200 and X-200IRT Switch Families
|
2019-12-10 |
| MEDIUM | 5.3 |
Siemens Desigo PX Devices
ICSA-19-318-03 · 1 CVE
|
Desigo PX automation controllers PXC00-E.D,
Desigo PX automation controllers PXC00-U,
Desigo PX automation controllers PXC22.1-E.D
|
2019-11-12 |
| MEDIUM | 0 |
SSA-898181 (Last Update: 2019-11-12): Desigo PX Web Remote Denial of Service Vulnerability
SIEMENS-SSA-898181
|
SSA-898181 (Last Update: 2019-11-12): Desigo PX Web Remote Denial of Service Vulnerability
|
2019-11-12 |
| MEDIUM | 6.5 |
ICSA-17-129-01 Siemens devices using the PROFINET Discovery and Configuration Protocol (Update K)
ICSA-17-129-01 · 1 CVE
|
Primary Setup Tool (PST),
SIMATIC Automation Tool,
SIMATIC NET PC-Software
+18 more
|
2019-10-08 |
| CRITICAL | 9.1 |
ICSA-19-134-08 Siemens SIMATIC PCS7, WinCC, TIA Portal (Update D)
ICSA-19-134-08 · 3 CVEs
|
SIMATIC PCS 7 V8.0 and earlier,
SIMATIC PCS 7 V8.1,
SIMATIC PCS 7 V8.2
+11 more
|
2019-10-08 |
| HIGH | 7.2 |
ICSA-19-192-02 Siemens SIMATIC WinCC and PCS7 (Update C)
ICSA-19-192-02 · 1 CVE
|
SIMATIC PCS 7 V8.0 and earlier,
SIMATIC PCS 7 V8.1,
SIMATIC PCS 7 V8.2
+11 more
|
2019-10-08 |
| MEDIUM | 6.8 |
ICSA-19-281-04 Siemens SIMATIC IT UADM
ICSA-19-281-04 · 1 CVE
|
SIMATIC IT UADM
|
2019-10-08 |
| MEDIUM | 0 |
SSA-121293 (Last Update: 2019-10-08): Code Upload Vulnerability in SIMATIC WinCC and SIMATIC PCS 7
SIEMENS-SSA-121293
|
SSA-121293 (Last Update: 2019-10-08): Code Upload Vulnerability in SIMATIC WinCC and SIMATIC PCS 7
|
2019-10-08 |
| MEDIUM | 0 |
SSA-275839 (Last Update: 2019-10-08): Denial-of-Service Vulnerability in Industrial Products
SIEMENS-SSA-275839
|
SSA-275839 (Last Update: 2019-10-08): Denial-of-Service Vulnerability in Industrial Products
|
2019-10-08 |
| MEDIUM | 0 |
SSA-608355 (Last Update: 2019-10-08): Processor Vulnerabilities Affecting SIMATIC WinAC RTX (F) 2010
SIEMENS-SSA-608355
|
SSA-608355 (Last Update: 2019-10-08): Processor Vulnerabilities Affecting SIMATIC WinAC RTX (F) 2010
|
2019-10-08 |
| MEDIUM | 0 |
SSA-697412 (Last Update: 2019-10-08): Multiple Vulnerabilities in SIMATIC WinCC, SIMATIC WinCC Runtime, SIMATIC PCS 7, SIMATIC TIA Portal
SIEMENS-SSA-697412
|
SSA-697412 (Last Update: 2019-10-08): Multiple Vulnerabilities in SIMATIC WinCC, SIMATIC WinCC Runtime, SIMATIC PCS 7, SIMATIC TIA Portal
|
2019-10-08 |
| MEDIUM | 0 |
SSA-701708 (Last Update: 2019-10-08): Local Privilege Escalation in Industrial Products
SIEMENS-SSA-701708
|
SSA-701708 (Last Update: 2019-10-08): Local Privilege Escalation in Industrial Products
|
2019-10-08 |
| MEDIUM | 0 |
SSA-984700 (Last Update: 2019-10-08): Password Storage Vulnerability in SIMATIC IT UADM
SIEMENS-SSA-984700
|
SSA-984700 (Last Update: 2019-10-08): Password Storage Vulnerability in SIMATIC IT UADM
|
2019-10-08 |
| HIGH | 8.0 |
ICSA-19-253-02 Siemens SINETPLAN
ICSA-19-253-02 · 1 CVE
|
SINETPLAN
|
2019-09-10 |
| HIGH | 7.5 |
ICSA-19-253-04 Siemens IE-WSN-PA Link WirelessHART Gateway
ICSA-19-253-04 · 1 CVE
|
IE/WSN-PA Link WirelessHART Gateway
|
2019-09-10 |
| HIGH | 7.5 |
ICSA-19-253-05 Siemens SIMATIC TDC CP51M1
ICSA-19-253-05 · 1 CVE
|
SIMATIC TDC CP51M1
|
2019-09-10 |
| HIGH | 8.1 |
ICSA-19-260-02 Siemens SINEMA Remote Connect Server
ICSA-19-260-02 · 4 CVEs
|
SINEMA Remote Connect Server
|
2019-09-10 |
| MEDIUM | 0 |
SSA-187667 (Last Update: 2019-09-10): DejaBlue Vulnerabilities - Siemens Healthineers Products
SIEMENS-SSA-187667
|
SSA-187667 (Last Update: 2019-09-10): DejaBlue Vulnerabilities - Siemens Healthineers Products
|
2019-09-10 |
| MEDIUM | 0 |
SSA-191683 (Last Update: 2019-09-10): Cross-Site Scripting Vulnerability in IE/WSN-PA Link WirelessHART Gateway
SIEMENS-SSA-191683
|
SSA-191683 (Last Update: 2019-09-10): Cross-Site Scripting Vulnerability in IE/WSN-PA Link WirelessHART Gateway
|
2019-09-10 |
| MEDIUM | 0 |
SSA-250618 (Last Update: 2019-09-10): Denial-of-Service Vulnerability in SIMATIC TDC CP51M1
SIEMENS-SSA-250618
|
SSA-250618 (Last Update: 2019-09-10): Denial-of-Service Vulnerability in SIMATIC TDC CP51M1
|
2019-09-10 |
| MEDIUM | 0 |
SSA-834884 (Last Update: 2019-09-10): Vulnerability in SINETPLAN
SIEMENS-SSA-834884
|
SSA-834884 (Last Update: 2019-09-10): Vulnerability in SINETPLAN
|
2019-09-10 |
| MEDIUM | 0 |
SSA-884497 (Last Update: 2019-09-10): Multiple Vulnerabilities in SINEMA Remote Connect Server
SIEMENS-SSA-884497
|
SSA-884497 (Last Update: 2019-09-10): Multiple Vulnerabilities in SINEMA Remote Connect Server
|
2019-09-10 |
| MEDIUM | 4.7 |
ICSA-19-190-04 Siemens Spectrum Power (Update A)
ICSA-19-190-04 · 1 CVE
|
Spectrum Power 3 (Corporate User Interface),
Spectrum Power 4 (Corporate User Interface),
Spectrum Power 5 (Corporate User Interface)
+1 more
|
2019-08-13 |
| MEDIUM | 0 |
SSA-747162 (Last Update: 2019-08-13): Cross-Site Scripting Vulnerability in Spectrum Power™
SIEMENS-SSA-747162
|
SSA-747162 (Last Update: 2019-08-13): Cross-Site Scripting Vulnerability in Spectrum Power™
|
2019-08-13 |
| CRITICAL | 9.1 |
ICSA-19-043-06 Siemens CP1604 and CP1616 (Update A)
ICSA-19-043-06 · 3 CVEs
|
CP 1604,
CP 1616
|
2019-07-09 |
| HIGH | 8.0 |
ICSA-19-192-03 Siemens TIA Administrator (TIA Portal)
ICSA-19-192-03 · 1 CVE
|
TIA Administrator
|
2019-07-09 |
| MEDIUM | 5.9 |
ICSA-19-192-04 Siemens SIMATIC RF6XXR
ICSA-19-192-04 · 3 CVEs
|
SIMATIC RF615R,
SIMATIC RF68XR
|
2019-07-09 |
| MEDIUM | 0 |
SSA-166360 (Last Update: 2019-07-09): Vulnerability in Advanced Therapy Products from Siemens Healthineers
SIEMENS-SSA-166360
|
SSA-166360 (Last Update: 2019-07-09): Vulnerability in Advanced Therapy Products from Siemens Healthineers
|
2019-07-09 |
| MEDIUM | 0 |
SSA-556833 (Last Update: 2019-07-09): TLS Vulnerabilities in SIMATIC RF6XXR
SIEMENS-SSA-556833
|
SSA-556833 (Last Update: 2019-07-09): TLS Vulnerabilities in SIMATIC RF6XXR
|
2019-07-09 |
| MEDIUM | 0 |
SSA-559174 (Last Update: 2019-07-09): Multiple Vulnerabilities in CP1604 and CP1616 devices
SIEMENS-SSA-559174
|
SSA-559174 (Last Update: 2019-07-09): Multiple Vulnerabilities in CP1604 and CP1616 devices
|
2019-07-09 |
| MEDIUM | 0 |
SSA-721298 (Last Update: 2019-07-09): Missing Authentication Vulnerability in TIA Administrator (TIA Portal)
SIEMENS-SSA-721298
|
SSA-721298 (Last Update: 2019-07-09): Missing Authentication Vulnerability in TIA Administrator (TIA Portal)
|
2019-07-09 |
| MEDIUM | 0 |
SSA-832947 (Last Update: 2019-07-09): Vulnerability in Laboratory Diagnostics Products from Siemens Healthineers
SIEMENS-SSA-832947
|
SSA-832947 (Last Update: 2019-07-09): Vulnerability in Laboratory Diagnostics Products from Siemens Healthineers
|
2019-07-09 |
| HIGH | 8.8 |
ICSA-19-162-01 Siemens Siveillance VMS
ICSA-19-162-01 · 3 CVEs
|
Siveillance VMS 2017 R2,
Siveillance VMS 2018 R1,
Siveillance VMS 2018 R2
+2 more
|
2019-06-11 |
| MEDIUM | 0 |
SSA-212009 (Last Update: 2019-06-11): Vulnerabilities in Siveillance VMS
SIEMENS-SSA-212009
|
SSA-212009 (Last Update: 2019-06-11): Vulnerabilities in Siveillance VMS
|
2019-06-11 |
| MEDIUM | 0 |
SSA-406175 (Last Update: 2019-05-24): Vulnerability in Siemens Healthineers Software Products
SIEMENS-SSA-406175
|
SSA-406175 (Last Update: 2019-05-24): Vulnerability in Siemens Healthineers Software Products
|
2019-05-24 |
| MEDIUM | 0 |
SSA-433987 (Last Update: 2019-05-24): Vulnerability in Radiation Oncology Products from Siemens Healthineers
SIEMENS-SSA-433987
|
SSA-433987 (Last Update: 2019-05-24): Vulnerability in Radiation Oncology Products from Siemens Healthineers
|
2019-05-24 |
| MEDIUM | 0 |
SSA-932041 (Last Update: 2019-05-24): Vulnerability in Radiography and Mobile X-ray Products from Siemens Healthineers
SIEMENS-SSA-932041
|
SSA-932041 (Last Update: 2019-05-24): Vulnerability in Radiography and Mobile X-ray Products from Siemens Healthineers
|
2019-05-24 |
| CRITICAL | 9.8 |
ICSA-19-134-02 Siemens SIMATIC WinCC and SIMATIC PCS 7
ICSA-19-134-02 · 1 CVE
|
SIMATIC PCS 7 V8.0 and earlier,
SIMATIC PCS 7 V8.1 and newer,
SIMATIC WinCC V7.2 and earlier
+1 more
|
2019-05-14 |
| HIGH | 7.5 |
ICSA-19-134-05 Siemens SINAMICS PERFECT HARMONY GH180 Drives NXG I and NXG II
ICSA-19-134-05 · 1 CVE
|
SINAMICS PERFECT HARMONY GH180 with NXG I control, MLFBs: 6SR2...-, 6SR3...-, 6SR4...-,
SINAMICS PERFECT HARMONY GH180 with NXG II control, MLFBs: 6SR2...-,6SR3...-, 6SR4...-
|
2019-05-14 |
| HIGH | 7.5 |
ICSA-19-134-06 Siemens SINAMICS PERFECT HARMONY GH180 Fieldbus Network
ICSA-19-134-06 · 1 CVE
|
SINAMICS PERFECT HARMONY GH180 with NXG I control, MLFBs: 6SR2...-,,
SINAMICS PERFECT HARMONY GH180 with NXG II control, MLFBs: 6SR2...-,
|
2019-05-14 |
| CRITICAL | 9.8 |
ICSA-19-134-07 Siemens SCALANCE W1750D
ICSA-19-134-07 · 5 CVEs
|
SCALANCE W1750D
|
2019-05-14 |
| MEDIUM | 0 |
SSA-549547 (Last Update: 2019-05-14): Multiple Vulnerabilites in SCALANCE W1750D
SIEMENS-SSA-549547
|
SSA-549547 (Last Update: 2019-05-14): Multiple Vulnerabilites in SCALANCE W1750D
|
2019-05-14 |
| MEDIUM | 0 |
SSA-606525 (Last Update: 2019-05-14): Denial-of-Service Vulnerability in SINAMICS PERFECT HARMONY GH180 Ethernet Modbus Interface (G28)
SIEMENS-SSA-606525
|
SSA-606525 (Last Update: 2019-05-14): Denial-of-Service Vulnerability in SINAMICS PERFECT HARMONY GH180 Ethernet Modbus Interface (G28)
|
2019-05-14 |
| MEDIUM | 0 |
SSA-705517 (Last Update: 2019-05-14): Remote Code Execution Vulnerability in SIMATIC WinCC and SIMATIC PCS 7
SIEMENS-SSA-705517
|
SSA-705517 (Last Update: 2019-05-14): Remote Code Execution Vulnerability in SIMATIC WinCC and SIMATIC PCS 7
|
2019-05-14 |
| MEDIUM | 0 |
SSA-865156 (Last Update: 2019-05-14): Denial-of-Service Vulnerability in SINAMICS PERFECT HARMONY GH180 Fieldbus Network
SIEMENS-SSA-865156
|
SSA-865156 (Last Update: 2019-05-14): Denial-of-Service Vulnerability in SINAMICS PERFECT HARMONY GH180 Fieldbus Network
|
2019-05-14 |
| MEDIUM | 0 |
SSA-902727 (Last Update: 2019-05-14): Multiple Vulnerabilities in Licensing Software for SISHIP Automation Solutions
SIEMENS-SSA-902727
|
SSA-902727 (Last Update: 2019-05-14): Multiple Vulnerabilities in Licensing Software for SISHIP Automation Solutions
|
2019-05-14 |
| MEDIUM | 6.8 |
ICSA-17-318-01_Siemens SCALANCE, SIMATIC, RUGGEDCOM, and SINAMICS Products (Update F)
ICSA-17-318-01 · 10 CVEs
|
SIMATIC RF650M,
SCALANCE W-700 (IEEE 802.11a/b/g),
SIMATIC Mobile Panel 277(F) IWLAN
+10 more
|
2019-04-09 |
| CRITICAL | 10.0 |
ICSA-19-099-02 Siemens Spectrum Power 4.7
ICSA-19-099-02 · 1 CVE
|
Spectrum Power 4
|
2019-04-09 |
| CRITICAL | 9.8 |
ICSA-19-099-05 Siemens RUGGEDCOM ROX II
ICSA-19-099-05 · 3 CVEs
|
RUGGEDCOM ROX II
|
2019-04-09 |
| MEDIUM | 0 |
SSA-324467 (Last Update: 2019-04-09): OS Command Injection in Spectrum Power 4.7
SIEMENS-SSA-324467
|
SSA-324467 (Last Update: 2019-04-09): OS Command Injection in Spectrum Power 4.7
|
2019-04-09 |
| MEDIUM | 0 |
SSA-451142 (Last Update: 2019-04-09): Multiple Vulnerabilities in RUGGEDCOM ROX II
SIEMENS-SSA-451142
|
SSA-451142 (Last Update: 2019-04-09): Multiple Vulnerabilities in RUGGEDCOM ROX II
|
2019-04-09 |
| MEDIUM | 0 |
SSA-844562 (Last Update: 2019-04-09): Multiple Vulnerabilities in Licensing Software for WinCC OA
SIEMENS-SSA-844562
|
SSA-844562 (Last Update: 2019-04-09): Multiple Vulnerabilities in Licensing Software for WinCC OA
|
2019-04-09 |
| MEDIUM | 0 |
SSA-901333 (Last Update: 2019-04-09): KRACK Attacks Vulnerabilities in Industrial Products
SIEMENS-SSA-901333
|
SSA-901333 (Last Update: 2019-04-09): KRACK Attacks Vulnerabilities in Industrial Products
|
2019-04-09 |
| CRITICAL | 10.0 |
ICSA-18-345-02 Siemens SINUMERIK Controllers (Update A)
ICSA-18-345-02 · 10 CVEs
|
SINUMERIK 808D V4.7,
SINUMERIK 808D V4.8,
SINUMERIK 828D V4.7
+2 more
|
2019-03-12 |
| MEDIUM | 0 |
SSA-170881 (Last Update: 2019-03-12): Vulnerabilities in SINUMERIK Controllers
SIEMENS-SSA-170881
|
SSA-170881 (Last Update: 2019-03-12): Vulnerabilities in SINUMERIK Controllers
|
2019-03-12 |
| MEDIUM | 6.5 |
ICSA-18-023-02 Siemens Industrial Products (Update A)
ICSA-18-023-02 · 1 CVE
|
Extension Unit 12" PROFINET,
Extension Unit 15" PROFINET,
Extension Unit 19" PROFINET
+5 more
|
2019-02-12 |
| HIGH | 7.5 |
ICSA-18-067-02_Siemens SIPROTEC 4, SIPROTEC Compact, and Reyrolle Devices using the EN100 Ethernet Communication Module Extension (Update B)
ICSA-18-067-02 · 1 CVE
|
EN100 Ethernet module DNP3 variant,
EN100 Ethernet module IEC 61850 variant,
EN100 Ethernet module Modbus TCP variant
+2 more
|
2019-02-12 |
| HIGH | 7.5 |
ICSA-18-347-02 Siemens EN100 Ethernet Communication Module and SIPROTEC 5 Relays (Update A)
ICSA-18-347-02 · 2 CVEs
|
Firmware variant IEC 61850 for EN100 Ethernet module,
Firmware variant PROFINET IO for EN100 Ethernet module,
Firmware variant Modbus TCP for EN100 Ethernet module
+4 more
|
2019-02-12 |
| MEDIUM | 5.3 |
ICSA-19-038-01 Siemens SICAM A8000 RTU Series
ICSA-19-038-01 · 1 CVE
|
SICAM A8000 CP-8000,
SICAM A8000 CP-802X,
SICAM A8000 CP-8050
|
2019-02-12 |
| HIGH | 7.5 |
ICSA-19-043-02 Siemens EN100 Ethernet Communication Module and SIPROTEC 5 Relays
ICSA-19-043-02 · 1 CVE
|
Firmware variant IEC 61850 for EN100 Ethernet module,
Firmware variant MODBUS TCP for EN100 Ethernet module,
Firmware variant DNP3 TCP for EN100 Ethernet module
+4 more
|
2019-02-12 |
| MEDIUM | 0 |
SSA-505225 (Last Update: 2019-02-12): Spectre Vulnerabilities in SIMATIC Industrial Thin Client V3
SIEMENS-SSA-505225
|
SSA-505225 (Last Update: 2019-02-12): Spectre Vulnerabilities in SIMATIC Industrial Thin Client V3
|
2019-02-12 |
| MEDIUM | 0 |
SSA-760124 (Last Update: 2019-02-12): Multiple Vulnerabilities in Licensing Software for SICAM 230
SIEMENS-SSA-760124
|
SSA-760124 (Last Update: 2019-02-12): Multiple Vulnerabilities in Licensing Software for SICAM 230
|
2019-02-12 |
| MEDIUM | 0 |
SSA-104088 (Last Update: 2019-02-12): Denial-of-Service Vulnerabilities in EN100 Ethernet Communication Module and SIPROTEC 5 relays
SIEMENS-SSA-104088
|
SSA-104088 (Last Update: 2019-02-12): Denial-of-Service Vulnerabilities in EN100 Ethernet Communication Module and SIPROTEC 5 relays
|
2019-02-12 |
| MEDIUM | 0 |
SSA-284673 (Last Update: 2019-02-12): Vulnerability in Industrial Products
SIEMENS-SSA-284673
|
SSA-284673 (Last Update: 2019-02-12): Vulnerability in Industrial Products
|
2019-02-12 |
| MEDIUM | 0 |
SSA-579309 (Last Update: 2019-02-12): Denial-of-Service in SICAM A8000 Series
SIEMENS-SSA-579309
|
SSA-579309 (Last Update: 2019-02-12): Denial-of-Service in SICAM A8000 Series
|
2019-02-12 |
| MEDIUM | 0 |
SSA-635129 (Last Update: 2019-02-12): Denial-of-Service Vulnerabilities in EN100 Ethernet Communication Module and SIPROTEC 5 relays
SIEMENS-SSA-635129
|
SSA-635129 (Last Update: 2019-02-12): Denial-of-Service Vulnerabilities in EN100 Ethernet Communication Module and SIPROTEC 5 relays
|
2019-02-12 |
| MEDIUM | 0 |
SSA-845879 (Last Update: 2019-02-12): Firmware Downgrade Vulnerability in EN100 Ethernet Communication Module for SIPROTEC 4, SIPROTEC Compact and Reyrolle
SIEMENS-SSA-845879
|
SSA-845879 (Last Update: 2019-02-12): Firmware Downgrade Vulnerability in EN100 Ethernet Communication Module for SIPROTEC 4, SIPROTEC Compact and Reyrolle
|
2019-02-12 |
| HIGH | 7.5 |
ICSA-19-038-02 Siemens EN100 Ethernet Module
ICSA-19-038-02 · 2 CVEs
|
Firmware variant IEC 61850 for EN100 Ethernet module
|
2019-01-08 |
| MEDIUM | 0 |
SSA-325546 (Last Update: 2019-01-08): Denial-of-Service Vulnerabilities in EN100 Ethernet Communication Module of SWT3000
SIEMENS-SSA-325546
|
SSA-325546 (Last Update: 2019-01-08): Denial-of-Service Vulnerabilities in EN100 Ethernet Communication Module of SWT3000
|
2019-01-08 |
| HIGH | 7.1 |
ICSA-18-345-01 McAfee SINAMICS PERFECT HARMONY GH180
ICSA-18-345-01 · 1 CVE
|
SINAMICS PERFECT HARMONY GH180 Drives,
SINAMICS PERFECT HARMONY GH180 Drives,
SINAMICS PERFECT HARMONY GH180 Drives
+5 more
|
2018-12-11 |
| MEDIUM | 0 |
SSA-674165 (Last Update: 2018-12-11): Vulnerability in McAfee MACC product for SINAMICS PERFECT HARMONY GH180 drives
SIEMENS-SSA-674165
|
SSA-674165 (Last Update: 2018-12-11): Vulnerability in McAfee MACC product for SINAMICS PERFECT HARMONY GH180 drives
|
2018-12-11 |
| MEDIUM | 4.2 |
ICSA-18-317-01 Siemens IEC 61850 System Configurator, DIGSI 5, DIGSI 4, SICAM PAS/PQS, SICAM PQ Analyzer, and SICAM SCC
ICSA-18-317-01 · 1 CVE
|
IEC 61850 system configurator,
DIGSI 5 (affected as IEC 61850 system configurator is incorporated),
DIGSI 4
+3 more
|
2018-11-13 |
| MEDIUM | 4.7 |
ICSA-18-317-04 Siemens SCALANCE S
ICSA-18-317-04 · 1 CVE
|
SCALANCE S602,
SCALANCE S612,
SCALANCE S623
+1 more
|
2018-11-13 |
| MEDIUM | 4.0 |
ICSA-18-317-06 Siemens SIMATIC STEP 7 (TIA Portal)
ICSA-18-317-06 · 1 CVE
|
SIMATIC STEP 7 (TIA Portal)
|
2018-11-13 |
| HIGH | 7.7 |
ICSA-18-317-07 Siemens SIMATIC IT Production Suite
ICSA-18-317-07 · 1 CVE
|
SIMATIC IT LMS,
SIMATIC IT Production Suite,
SIMATIC IT UA Discrete Manufacturing
+4 more
|
2018-11-13 |
| MEDIUM | 0 |
SSA-242982 (Last Update: 2018-11-13): Cross-Site Scripting Vulnerability in SCALANCE S
SIEMENS-SSA-242982
|
SSA-242982 (Last Update: 2018-11-13): Cross-Site Scripting Vulnerability in SCALANCE S
|
2018-11-13 |
| MEDIUM | 0 |
SSA-621493 (Last Update: 2018-11-13): Password Storage Vulnerability in SIMATIC STEP7 (TIA Portal)
SIEMENS-SSA-621493
|
SSA-621493 (Last Update: 2018-11-13): Password Storage Vulnerability in SIMATIC STEP7 (TIA Portal)
|
2018-11-13 |
| MEDIUM | 0 |
SSA-886615 (Last Update: 2018-11-13): Vulnerability in SIMATIC IT Production Suite
SIEMENS-SSA-886615
|
SSA-886615 (Last Update: 2018-11-13): Vulnerability in SIMATIC IT Production Suite
|
2018-11-13 |
| MEDIUM | 0 |
SSA-159860 (Last Update: 2018-11-13): Access Control Vulnerability in IEC 61850 system configurator, DIGSI 5, DIGSI 4, SICAM PAS/PQS, SICAM PQ Analyzer, and SICAM SCC
SIEMENS-SSA-159860
|
SSA-159860 (Last Update: 2018-11-13): Access Control Vulnerability in IEC 61850 system configurator, DIGSI 5, DIGSI 4, SICAM PAS/PQS, SICAM PQ Analyzer, and SICAM SCC
|
2018-11-13 |
| MEDIUM | 4.0 |
Siemens SIMATIC WinCC OA Operator IOS App (Update A)
ICSA-18-109-01 · 1 CVE
|
SIMATIC WinCC OA Operator iOS App
|
2018-10-09 |
| HIGH | 8.6 |
ICSA-18-226-01 Siemens SIMATIC STEP 7 and SIMATIC WinCC (Update A)
ICSA-18-226-01 · 2 CVEs
|
SIMATIC STEP 7 (TIA Portal) and WinCC (TIA Portal) V10, V11, V12,
SIMATIC STEP 7 (TIA Portal) and WinCC (TIA Portal) V13,
SIMATIC STEP 7 (TIA Portal) and WinCC (TIA Portal) V14
+1 more
|
2018-10-09 |
| MEDIUM | 5.9 |
ICSA-18-282-02 Siemens SCALANCE W1750D
ICSA-18-282-02 · 1 CVE
|
SCALANCE W1750D
|
2018-10-09 |
| HIGH | 8.8 |
ICSA-18-282-03 Siemens ROX II
ICSA-18-282-03 · 2 CVEs
|
ROX II
|
2018-10-09 |
| MEDIUM | 0 |
SSA-493830 (Last Update: 2018-10-09): Privilege Escalation in ROX II
SIEMENS-SSA-493830
|
SSA-493830 (Last Update: 2018-10-09): Privilege Escalation in ROX II
|
2018-10-09 |
| MEDIUM | 0 |
SSA-464260 (Last Update: 2018-10-09): TLS ROBOT vulnerability in SCALANCE W1750D
SIEMENS-SSA-464260
|
SSA-464260 (Last Update: 2018-10-09): TLS ROBOT vulnerability in SCALANCE W1750D
|
2018-10-09 |
| MEDIUM | 0 |
SSA-597741 (Last Update: 2018-10-09): Vulnerability in iOS App SIMATIC WinCC OA Operator
SIEMENS-SSA-597741
|
SSA-597741 (Last Update: 2018-10-09): Vulnerability in iOS App SIMATIC WinCC OA Operator
|
2018-10-09 |
| MEDIUM | 0 |
SSA-979106 (Last Update: 2018-10-09): Vulnerabilities in SIMATIC STEP 7 (TIA Portal) and SIMATIC WinCC (TIA Portal)
SIEMENS-SSA-979106
|
SSA-979106 (Last Update: 2018-10-09): Vulnerabilities in SIMATIC STEP 7 (TIA Portal) and SIMATIC WinCC (TIA Portal)
|
2018-10-09 |
| HIGH | 7.3 |
ICSA-18-254-03 Siemens TD Keypad Designer
ICSA-18-254-03 · 1 CVE
|
SIEMENS TD Keypad Designer
|
2018-09-11 |
| CRITICAL | 9.1 |
ICSA-18-254-04 Siemens SIMATIC WinCC OA
ICSA-18-254-04 · 1 CVE
|
SIMATIC WinCC OA V3.14 and prior
|
2018-09-11 |
| MEDIUM | 0 |
SSA-346256 (Last Update: 2018-09-11): Vulnerability in SIMATIC WinCC OA V3.14 and prior
SIEMENS-SSA-346256
|
SSA-346256 (Last Update: 2018-09-11): Vulnerability in SIMATIC WinCC OA V3.14 and prior
|
2018-09-11 |
| MEDIUM | 0 |
SSA-198330 (Last Update: 2018-09-11): Local Privilege Escalation in TD Keypad Designer
SIEMENS-SSA-198330
|
SSA-198330 (Last Update: 2018-09-11): Local Privilege Escalation in TD Keypad Designer
|
2018-09-11 |
| HIGH | 8.8 |
ICSA-18-226-03 Siemens Automation License Manager
ICSA-18-226-03 · 2 CVEs
|
Automation License Manager 5,
Automation License Manager 6
|
2018-08-07 |
| MEDIUM | 0 |
SSA-920962 (Last Update: 2018-08-07): Vulnerabilities in Automation License Manager
SIEMENS-SSA-920962
|
SSA-920962 (Last Update: 2018-08-07): Vulnerabilities in Automation License Manager
|
2018-08-07 |
| MEDIUM | 0 |
SSA-197012 (Last Update: 2018-07-03): Vulnerabilities in SICLOCK central plant clocks
SIEMENS-SSA-197012
|
SSA-197012 (Last Update: 2018-07-03): Vulnerabilities in SICLOCK central plant clocks
|
2018-07-03 |
| MEDIUM | 0 |
SSA-755010 (Last Update: 2018-06-26): Vulnerability in RAPIDLab 1200 and RAPIDPoint 400/500 Blood Gas Analyzers
SIEMENS-SSA-755010
|
SSA-755010 (Last Update: 2018-06-26): Vulnerability in RAPIDLab 1200 and RAPIDPoint 400/500 Blood Gas Analyzers
|
2018-06-26 |
| MEDIUM | 0 |
SSA-966341 (Last Update: 2018-06-19): SMBv1 Vulnerabilities in Molecular Diagnostics Products from Siemens Healthineers
SIEMENS-SSA-966341
|
SSA-966341 (Last Update: 2018-06-19): SMBv1 Vulnerabilities in Molecular Diagnostics Products from Siemens Healthineers
|
2018-06-19 |
| CRITICAL | 9.0 |
ICSA-17-045-03 Siemens SIMATIC Authentication Bypass (Update D)
ICSA-17-045-03 · 1 CVE
|
SIMATIC Logon,
SIMATIC WinCC,
SIMATIC WinCC Runtime Professional
+3 more
|
2018-06-12 |
| HIGH | 8.6 |
ICSA-17-187-03F Siemens SIPROTEC 4 and SIPROTEC Compact (Update F)
ICSA-17-187-03F · 6 CVEs
|
Firmware variant PROFINET IO for EN100 Ethernet module,
Firmware variant Modbus TCP for EN100 Ethernet module,
Firmware variant DNP3 TCP for EN100 Ethernet module
+10 more
|
2018-06-12 |
| MEDIUM | 4.9 |
ICSA-17-306-01 Siemens SIMATIC PCS 7 (Update A)
ICSA-17-306-01 · 1 CVE
|
SIMATIC PCS 7 V8.1,
SIMATIC PCS 7 V8.2
|
2018-06-12 |
| MEDIUM | 0 |
SSA-323211 (Last Update: 2018-06-12): Vulnerabilities in SIPROTEC 4 and SIPROTEC Compact Devices
SIEMENS-SSA-323211
|
SSA-323211 (Last Update: 2018-06-12): Vulnerabilities in SIPROTEC 4 and SIPROTEC Compact Devices
|
2018-06-12 |
| MEDIUM | 0 |
SSA-977428 (Last Update: 2018-06-12): Vulnerabilities in SCALANCE M875
SIEMENS-SSA-977428
|
SSA-977428 (Last Update: 2018-06-12): Vulnerabilities in SCALANCE M875
|
2018-06-12 |
| MEDIUM | 0 |
SSA-566773 (Last Update: 2018-06-12): Vulnerabilities in Building Technologies Products
SIEMENS-SSA-566773
|
SSA-566773 (Last Update: 2018-06-12): Vulnerabilities in Building Technologies Products
|
2018-06-12 |
| MEDIUM | 0 |
SSA-523365 (Last Update: 2018-06-12): Vulnerability in SIMATIC PCS 7
SIEMENS-SSA-523365
|
SSA-523365 (Last Update: 2018-06-12): Vulnerability in SIMATIC PCS 7
|
2018-06-12 |
| MEDIUM | 0 |
SSA-931064 (Last Update: 2018-06-12): Authentication Bypass in SIMATIC Logon
SIEMENS-SSA-931064
|
SSA-931064 (Last Update: 2018-06-12): Authentication Bypass in SIMATIC Logon
|
2018-06-12 |
| HIGH | 8.1 |
ICSA-18-128-02 Siemens Siveillance VMS (Update A)
ICSA-18-128-02 · 1 CVE
|
Siveillance VMS 2016 R1 and prior,
Siveillance VMS 2016 R2,
Siveillance VMS 2016 R3
+3 more
|
2018-05-23 |
| MEDIUM | 0 |
SSA-457058 (Last Update: 2018-05-23): .NET Security Vulnerability in Siveillance VMS
SIEMENS-SSA-457058
|
SSA-457058 (Last Update: 2018-05-23): .NET Security Vulnerability in Siveillance VMS
|
2018-05-23 |
| MEDIUM | 0 |
SSA-547990 (Last Update: 2018-05-15): Information Disclosure Vulnerabilities in SIPROTEC 4 and SIPROTEC Compact
SIEMENS-SSA-547990
|
SSA-547990 (Last Update: 2018-05-15): Information Disclosure Vulnerabilities in SIPROTEC 4 and SIPROTEC Compact
|
2018-05-15 |
| HIGH | 8.1 |
Siemens SCALANCE W1750D, M800, S615, and RUGGEDCOM RM1224 (Update C)
ICSA-17-332-01 · 4 CVEs
|
RUGGEDCOM RM1224,
SCALANCE M-800 / S615,
SCALANCE W1750D
|
2018-05-09 |
| MEDIUM | 4.8 |
ICSA-18-128-03 Siemens Siveillance VMS Video Mobile App
ICSA-18-128-03 · 1 CVE
|
Siveillance VMS Video for Android,
Siveillance VMS Video for iOS
|
2018-05-03 |
| MEDIUM | 0 |
SSA-468514 (Last Update: 2018-05-03): Improper Certificate Validation Vulnerability in Siveillance VMS Video Mobile App for Android and iOS
SIEMENS-SSA-468514
|
SSA-468514 (Last Update: 2018-05-03): Improper Certificate Validation Vulnerability in Siveillance VMS Video Mobile App for Android and iOS
|
2018-05-03 |
| HIGH | 8.2 |
ICSA-18-060-01_Siemens SIMATIC, SIMOTION, and SINUMERIK (Update A)
ICSA-18-060-01 · 3 CVEs
|
SINUMERIK PCU50.5-P WINXP,
SINUMERIK PCU50.5-C WINXP,
SIMATIC IPC477D PRO
+24 more
|
2018-04-19 |
| CRITICAL | 9.8 |
ICSA-18-093-01 Siemens Building Technologies Products (Update A)
ICSA-18-093-01 · 8 CVEs
|
License Management System (LMS),
Annual Shading,
Desigo ABT
+5 more
|
2018-04-03 |
| MEDIUM | 0 |
SSA-727467 (Last Update: 2018-04-03): Vulnerabilities in Building Technologies Products
SIEMENS-SSA-727467
|
SSA-727467 (Last Update: 2018-04-03): Vulnerabilities in Building Technologies Products
|
2018-04-03 |
| MEDIUM | 5.1 |
ICSA-18-081-01 Siemens SIMATIC WinCC OA UI Mobile App
ICSA-18-081-01 · 1 CVE
|
SIMATIC WinCC OA UI for Android,
SIMATIC WinCC OA UI for iOS
|
2018-03-20 |
| MEDIUM | 0 |
SSA-822928 (Last Update: 2018-03-20): Access Control Vulnerability in SIMATIC WinCC OA UI Mobile App for Android and iOS
SIEMENS-SSA-822928
|
SSA-822928 (Last Update: 2018-03-20): Access Control Vulnerability in SIMATIC WinCC OA UI Mobile App for Android and iOS
|
2018-03-20 |
| CRITICAL | 9.8 |
ICSA-18-018-01A Siemens SIMATIC WinCC Add-On (Update A)
ICSA-18-018-01A · 8 CVEs
|
SIMATIC WinCC Add-On Historian CONNECT ALARM,
SIMATIC WinCC Add-On PI CONNECT ALARM,
SIMATIC WinCC Add-On PI CONNECT AUDIT TRAIL
+13 more
|
2018-02-22 |
| MEDIUM | 0 |
SSA-701903 (Last Update: 2018-02-22): SMBv1 Vulnerabilities in Ultrasound Products from Siemens Healthineers
SIEMENS-SSA-701903
|
SSA-701903 (Last Update: 2018-02-22): SMBv1 Vulnerabilities in Ultrasound Products from Siemens Healthineers
|
2018-02-22 |
| MEDIUM | 0 |
SSA-127490 (Last Update: 2018-02-22): Vulnerabilities in SIMATIC WinCC Add-Ons
SIEMENS-SSA-127490
|
SSA-127490 (Last Update: 2018-02-22): Vulnerabilities in SIMATIC WinCC Add-Ons
|
2018-02-22 |
| HIGH | 8.8 |
Siemens TeleControl Server Basic
ICSA-18-030-02 · 3 CVEs
|
TeleControl Server Basic
|
2018-01-30 |
| MEDIUM | 0 |
SSA-651454 (Last Update: 2018-01-25): Vulnerabilities in TeleControl Server Basic
SIEMENS-SSA-651454
|
SSA-651454 (Last Update: 2018-01-25): Vulnerabilities in TeleControl Server Basic
|
2018-01-25 |
| MEDIUM | 5.9 |
Siemens LOGO! Soft Comfort
ICSA-17-353-04 · 1 CVE
|
LOGO! Soft Comfort
|
2017-12-19 |
| MEDIUM | 5.3 |
Siemens SWT3000
ICSA-17-334-01 · 5 CVEs
|
TPOP firmware,
IEC 61850 firmware
|
2017-11-30 |
| CRITICAL | 9.8 |
Siemens SICAM
ICSA-17-320-02 · 3 CVEs
|
SICAM RTUs SM-2556 COM Modules with the firmware variants ENOS00 ERAC00 ETA2 ETLS00 MODi00 DNPi00
|
2017-11-16 |
| CRITICAL | 9.8 |
Siemens 7KT PAC1200 Data Manager
ICSA-17-278-02 · 1 CVE
|
7KT PAC1200 data manager
|
2017-10-05 |
| MEDIUM | 4.3 |
Siemens 7KM PAC Switched Ethernet
ICSA-17-243-03 · 1 CVE
|
7KM PAC Switched Ethernet PROFINET expansion module
|
2017-08-31 |
| CRITICAL | 9.8 |
ICSMA-17-215-01_Siemens Molecular Imaging Vulnerabilities
ICSMA-17-215-01 · 2 CVEs
|
Siemens SPECT Workplaces/Symbia.net Windows XP-Based,
Siemens SPECT/CT Systems Windows XP-Based,
Siemens SPECT Systems Windows XP-Based
+1 more
|
2017-08-03 |
| CRITICAL | 9.8 |
ICSMA-17-215-02_Siemens Molecular Imaging Vulnerabilities
ICSMA-17-215-02 · 4 CVEs
|
Siemens PET/CT Systems Windows 7-Based,
Siemens SPECT/CT Systems Windows 7-Based,
Siemens SPECT Workplaces/Symbia.net Windows 7-Based
+1 more
|
2017-08-03 |
| CRITICAL | 9.8 |
Siemens SiPass integrated
ICSA-17-194-01 · 4 CVEs
|
SiPass integrated
|
2017-07-13 |
| HIGH | 7.4 |
Siemens SIMATIC Sm@rtClient Android App
ICSA-17-194-03 · 2 CVEs
|
SIMATIC WinCC Sm@rtClient Lite for Android,
SIMATIC WinCC Sm@rtClient for Android
|
2017-07-13 |
| CRITICAL | 9.8 |
ICSA-17-180-01A_Siemens SIMATIC Industrial PCs, SINUMERIK Panel Control Unit, and SIMOTION P320 (Update A)
ICSA-17-180-01A · 1 CVE
|
SINUMERIK Panel Control Unit (PCU),
SIMATIC Industrial PCs,
SIMOTION P320
|
2017-07-11 |
| MEDIUM | 5.3 |
Siemens SIMATIC Logon
ICSA-17-192-01 · 1 CVE
|
SIMATIC Logon
|
2017-07-11 |
| HIGH | 7.4 |
Siemens OZW672 and OZW772
ICSA-17-187-01 · 2 CVEs
|
OZW672,
OZW772
|
2017-07-06 |
| HIGH | 7.5 |
Siemens Reyrolle
ICSA-17-187-02 · 5 CVEs
|
EN100 Ethernet modules as optional for Reyrolle
|
2017-07-06 |
| CRITICAL | 9.8 |
Siemens Viewport for Web Office Portal
ICSA-17-180-03 · 1 CVE
|
ViewPort for Web Office Portal
|
2017-06-29 |
| CRITICAL | 9.8 |
Siemens SIMATIC CP 44x-1 Redundant Network Access Modules
ICSA-17-173-01 · 1 CVE
|
SIMATIC CP 44x-1 RNA
|
2017-06-22 |
| MEDIUM | 6.5 |
Siemens XHQ
ICSA-17-173-02 · 1 CVE
|
XHQ 4,
XHQ 5
|
2017-06-22 |
| MEDIUM | 4.9 |
Siemens SIMATIC WinCC and SIMATIC WinCC Runtime Professional
ICSA-17-129-03 · 1 CVE
|
SIMATIC WinCC Runtime Professional / SIMATIC WinCC (TIA Portal) Professional,
SIMATIC WinCC Runtime Professional / SIMATIC WinCC (TIA Portal) Professional,
SIMATIC WinCC
+1 more
|
2017-05-09 |
| HIGH | 8.8 |
Siemens RUGGEDCOM ROX I
ICSA-17-087-01 · 5 CVEs
|
RUGGEDCOM ROX I
|
2017-03-28 |
| HIGH | 7.4 |
Siemens SINUMERIK Integrate and SINUMERIK Operate
ICSA-17-061-03 · 1 CVE
|
SINUMERIK Integrate Operate Client,
SINUMERIK Integrate Operate client,
SINUMERIK Integrate Operate client
+2 more
|
2017-03-02 |
| HIGH | 8.8 |
Siemens RUGGEDCOM NMS
ICSA-17-059-01 · 2 CVEs
|
RUGGEDCOM NMS
|
2017-02-28 |
Get Siemens Vulnerability Alerts
Don't check manually — OTWarden emails you when CISA publishes new Siemens ICS advisories, filtered to your specific equipment.
Start 14-Day Free Trial →