Siemens ICS Security Advisories

1950 CISA ICS-CERT advisories published for Siemens industrial control system products. Data updated every 2 hours.

248
Critical
518
High
1158
Medium
26
Low
Severity CVSS Advisory Products Published
HIGH 7.5 Siemens SICAM 8 Products
ICSA-26-092-01 · 2 CVEs
CPCI85 Central Processing/Communication, RTUM85 RTU Base, SICORE Base system
2026-04-02
MEDIUM 0 SSA-246443 V1.0: Multiple Vulnerabilities in SICAM 8 Products
SIEMENS-SSA-246443
SSA-246443 V1.0: Multiple Vulnerabilities in SICAM 8 Products
2026-03-26
MEDIUM 0 SSA-452276 V1.2 (Last Update: 2026-03-19): Eval Injection Vulnerability in SIMATIC S7-1500
SIEMENS-SSA-452276
SSA-452276 V1.2 (Last Update: 2026-03-19): Eval Injection Vulnerability in SIMATIC S7-1500
2026-03-19
HIGH 7.4 Siemens SICAM SIAPP SDK
ICSA-26-076-04 · 6 CVEs
SICAM SIAPP SDK
2026-03-17
CRITICAL 9.9 Siemens SINEC Security Monitor
ICSA-24-284-06 · 5 CVEs
SINEC Security Monitor
2026-03-12
CRITICAL 9.8 Siemens RUGGEDCOM APE1808
ICSA-25-044-06 · 30 CVEs
RUGGEDCOM APE1808, RUGGEDCOM APE1808, RUGGEDCOM APE1808 +1 more
2026-03-12
HIGH 7.5 Siemens RUGGEDCOM APE1808
ICSA-25-162-02 · 8 CVEs
RUGGEDCOM APE1808, RUGGEDCOM APE1808, RUGGEDCOM APE1808 +1 more
2026-03-12
CRITICAL 9.8 Siemens SIMATIC S7-1500 CPU Family
ICSA-25-162-05 · 148 CVEs
SIMATIC S7-1500 CPU 1518-4 PN/DP MFP (6ES7518-4AX00-1AB0), SIMATIC S7-1500 CPU 1518-4 PN/DP MFP (6ES7518-4AX00-1AC0), SIMATIC S7-1500 CPU 1518F-4 PN/DP MFP (6ES7518-4FX00-1AB0) +2 more
2026-03-12
HIGH 7.8 Siemens Web Installer
ICSA-25-226-22 · 1 CVE
Automation License Manager V6.0, Automation License Manager V6.2, CEMAT V10.0 +136 more
2026-03-12
HIGH 8.2 Siemens Mendix SAML Module
ICSA-25-231-02 · 1 CVE
Desigo CC family V5.0, Desigo CC family V5.1, Desigo CC family V6 +6 more
2026-03-12
MEDIUM 6.3 Siemens SINAMICS Drives
ICSA-25-254-03 · 1 CVE
SINAMICS G220 V6.4, SINAMICS S200 V6.4, SINAMICS S210 V6.4
2026-03-12
HIGH 7.4 Siemens IAM Client
ICSA-25-345-04 · 1 CVE
COMOS V10.6, NX V2412, NX V2506 +4 more
2026-03-12
HIGH 8.1 Siemens Advanced Licensing (SALT) Toolkit
ICSA-25-345-05 · 1 CVE
COMOS V10.6, JT Bi-Directional Translator for STEP, NX V2412 +6 more
2026-03-12
CRITICAL 10.0 Siemens COMOS
ICSA-26-043-03 · 6 CVEs
COMOS V10.4, COMOS V10.4, COMOS V10.4.5 +3 more
2026-03-12
HIGH 7.8 Siemens NX
ICSA-26-043-08 · 1 CVE
NX, NX (Managed Mode)
2026-03-12
CRITICAL 9.8 Siemens RUGGEDCOM APE1808 Devices
ICSA-26-071-02 · 4 CVEs
RUGGEDCOM APE1808, RUGGEDCOM APE1808
2026-03-12
HIGH 8.7 Siemens SIDIS Prime
ICSA-26-071-03 · 23 CVEs
SIDIS Prime
2026-03-12
CRITICAL 9.6 Siemens SIMATIC
ICSA-26-071-04 · 1 CVE
SIMATIC Drive Controller CPU 1504D TF (6ES7615-4DF10-0AB0), SIMATIC Drive Controller CPU 1507D TF (6ES7615-7DF10-0AB0), SIMATIC ET 200SP CPU 1510SP F-1 PN (6ES7510-1SJ01-0AB0) +168 more
2026-03-12
LOW 2.6 Siemens Heliox EV Chargers
ICSA-26-071-05 · 1 CVE
Heliox Flex 180 kW EV Charging Station, Heliox Mobile DC 40 kW EV Charging Station
2026-03-12
MEDIUM 0 SSA-975644 V1.0: Multiple Vulnerabilities in Fortigate NGFW on RUGGEDCOM APE1808 Devices
SIEMENS-SSA-975644
SSA-975644 V1.0: Multiple Vulnerabilities in Fortigate NGFW on RUGGEDCOM APE1808 Devices
2026-03-10
MEDIUM 0 SSA-903736 V1.0: Multiple vulnerabilities in SICAM SIAPP SDK before V2.1.7
SIEMENS-SSA-903736
SSA-903736 V1.0: Multiple vulnerabilities in SICAM SIAPP SDK before V2.1.7
2026-03-10
MEDIUM 0 SSA-868571 V1.1 (Last Update: 2026-03-10): Missing Server Certificate Validation in IAM Client
SIEMENS-SSA-868571
SSA-868571 V1.1 (Last Update: 2026-03-10): Missing Server Certificate Validation in IAM Client
2026-03-10
MEDIUM 0 SSA-770770 V1.8 (Last Update: 2026-03-10): Multiple Vulnerabilities in Fortigate NGFW Before V7.4.7 on RUGGEDCOM APE1808 Devices
SIEMENS-SSA-770770
SSA-770770 V1.8 (Last Update: 2026-03-10): Multiple Vulnerabilities in Fortigate NGFW Before V7.4.7 on RUGGEDCOM APE1808 Devices
2026-03-10
MEDIUM 0 SSA-710408 V1.1 (Last Update: 2026-03-10): Missing Server Certificate Validation in Siemens Advanced Licensing (SALT) Toolkit
SIEMENS-SSA-710408
SSA-710408 V1.1 (Last Update: 2026-03-10): Missing Server Certificate Validation in Siemens Advanced Licensing (SALT) Toolkit
2026-03-10
MEDIUM 0 SSA-535115 V1.1 (Last Update: 2026-03-10): Data Validation Vulnerability in NX Before V2512
SIEMENS-SSA-535115
SSA-535115 V1.1 (Last Update: 2026-03-10): Data Validation Vulnerability in NX Before V2512
2026-03-10
MEDIUM 0 SSA-513708 V1.4 (Last Update: 2026-03-10): Multiple Vulnerabilities in Palo Alto Networks Virtual NGFW on RUGGEDCOM APE1808 Devices
SIEMENS-SSA-513708
SSA-513708 V1.4 (Last Update: 2026-03-10): Multiple Vulnerabilities in Palo Alto Networks Virtual NGFW on RUGGEDCOM APE1808 Devices
2026-03-10
MEDIUM 0 SSA-485750 V1.0: Multiple Vulnerabilities in SIDIS Prime Before V4.0.800
SIEMENS-SSA-485750
SSA-485750 V1.0: Multiple Vulnerabilities in SIDIS Prime Before V4.0.800
2026-03-10
MEDIUM 0 SSA-430425 V1.1 (Last Update: 2026-03-10): Multiple Vulnerabilities in SINEC Security Monitor before V4.9.0
SIEMENS-SSA-430425
SSA-430425 V1.1 (Last Update: 2026-03-10): Multiple Vulnerabilities in SINEC Security Monitor before V4.9.0
2026-03-10
MEDIUM 0 SSA-282044 V1.7 (Last Update: 2026-03-10): DLL Hijacking Vulnerability in Siemens Web Installer used by the Online Software Delivery
SIEMENS-SSA-282044
SSA-282044 V1.7 (Last Update: 2026-03-10): DLL Hijacking Vulnerability in Siemens Web Installer used by the Online Software Delivery
2026-03-10
MEDIUM 0 SSA-212953 V1.3 (Last Update: 2026-03-10): Multiple Vulnerabilities in COMOS
SIEMENS-SSA-212953
SSA-212953 V1.3 (Last Update: 2026-03-10): Multiple Vulnerabilities in COMOS
2026-03-10
MEDIUM 0 SSA-201595 V1.3 (Last Update: 2026-03-10): Privilege Escalation Vulnerability in WIBU CodeMeter Runtime Affecting the Desigo CC Product Family and SENTRON Powermanager
SIEMENS-SSA-201595
SSA-201595 V1.3 (Last Update: 2026-03-10): Privilege Escalation Vulnerability in WIBU CodeMeter Runtime Affecting the Desigo CC Product Family and SENTRON Powermanager
2026-03-10
MEDIUM 0 SSA-126399 V1.0: Improper Access Control Vulnerability in Heliox EV Chargers
SIEMENS-SSA-126399
SSA-126399 V1.0: Improper Access Control Vulnerability in Heliox EV Chargers
2026-03-10
MEDIUM 0 SSA-082556 V1.4 (Last Update: 2026-03-10): Vulnerabilities in the additional GNU/Linux subsystem of the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP V3.1.5
SIEMENS-SSA-082556
SSA-082556 V1.4 (Last Update: 2026-03-10): Vulnerabilities in the additional GNU/Linux subsystem of the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP V3.1.5
2026-03-10
MEDIUM 0 SSA-027652 V1.1 (Last Update: 2026-03-10): Privilege Escalation Vulnerability in SINAMICS Drives
SIEMENS-SSA-027652
SSA-027652 V1.1 (Last Update: 2026-03-10): Privilege Escalation Vulnerability in SINAMICS Drives
2026-03-10
MEDIUM 0 SSB-751527 V1.0: Misconfiguration in Mendix Applications
SIEMENS-SSB-751527
SSB-751527 V1.0: Misconfiguration in Mendix Applications
2026-03-10
CRITICAL 9.1 Siemens Third-Party Components in SINEC OS
ICSA-25-226-07 · 486 CVEs
RUGGEDCOM RST2428P (6GK6242-6PA00), RUGGEDCOM RST2428P (6GK6242-6PA00), SCALANCE XC-300/XR-300/XC-400/XR-500WG/XR-500 family +3 more
2026-02-25
CRITICAL 9.8 Siemens SINEC OS
ICSA-25-226-15 · 381 CVEs
RUGGEDCOM RST2428P (6GK6242-6PA00), RUGGEDCOM RST2428P (6GK6242-6PA00), SCALANCE XC-300/XR-300/XC-400/XR-500WG/XR-500 family +2 more
2026-02-25
CRITICAL 10.0 Siemens SINEC OS
ICSA-26-043-06 · 51 CVEs
RUGGEDCOM RST2428P (6GK6242-6PA00), SCALANCE XC-300/XR-300/XC-400/XR-500WG/XR-500 family, SCALANCE XCH328 (6GK5328-4TS01-2EC2) +13 more
2026-02-25
MEDIUM 0 SSA-613116 V1.2 (Last Update: 2026-02-24): Multiple Vulnerabilities in Third-Party Components in SINEC OS before V3.1
SIEMENS-SSA-613116
SSA-613116 V1.2 (Last Update: 2026-02-24): Multiple Vulnerabilities in Third-Party Components in SINEC OS before V3.1
2026-02-24
MEDIUM 0 SSA-355557 V1.2 (Last Update: 2026-02-24): Multiple Vulnerabilities in Third-Party Components in SINEC OS before V3.2
SIEMENS-SSA-355557
SSA-355557 V1.2 (Last Update: 2026-02-24): Multiple Vulnerabilities in Third-Party Components in SINEC OS before V3.2
2026-02-24
MEDIUM 0 SSA-089022 V1.1 (Last Update: 2026-02-24): Multiple Vulnerabilities in Third-Party Components in SINEC OS before V3.3
SIEMENS-SSA-089022
SSA-089022 V1.1 (Last Update: 2026-02-24): Multiple Vulnerabilities in Third-Party Components in SINEC OS before V3.3
2026-02-24
HIGH 7.8 Siemens Simcenter Femap and Nastran
ICSA-26-048-01 · 6 CVEs
Simcenter Femap, Simcenter Nastran
2026-02-17
HIGH 8.6 Siemens Automation License Manager Uncontrolled Resource Consumption
ICSA-12-349-01 · 1 CVE
Automation License Manager
2026-02-12
CRITICAL 9.1 Siemens SIMATIC S7-1500
ICSA-24-102-01 · 452 CVEs
SIMATIC S7-1500 TM MFP - GNU/Linux subsystem
2026-02-12
HIGH 8.2 Siemens SIMATIC IPC Family, ITP1000, and Field PGs
ICSA-25-072-11 · 2 CVEs
SIMATIC Field PG M5, SIMATIC Field PG M6, SIMATIC IPC BX-21A +29 more
2026-02-12
CRITICAL 9.8 Siemens RUGGEDCOM APE1808 Devices
ICSA-25-135-01 · 21 CVEs
RUGGEDCOM APE1808, RUGGEDCOM APE1808
2026-02-12
HIGH 8.8 Siemens SiPass Integrated
ICSA-25-289-06 · 4 CVEs
SiPass integrated, SiPass integrated V2.95
2026-02-12
HIGH 7.5 Siemens SIMATIC and SIPLUS products
ICSA-26-015-04 · 1 CVE
SIMATIC ET 200AL IM 157-1 PN (6ES7157-1AB00-0AB0), SIMATIC ET 200MP IM 155-5 PN HF (6ES7155-5AA00-0AC0), SIMATIC ET 200SP IM 155-6 MF HF (6ES7155-6MU00-0CN0) +14 more
2026-02-12
HIGH 7.8 Siemens SINEC NMS
ICSA-26-043-01 · 2 CVEs
SINEC NMS, SINEC NMS, User Management Component (UMC)
2026-02-12
HIGH 7.6 Siemens Polarion
ICSA-26-043-02 · 1 CVE
Polarion V2404, Polarion V2410
2026-02-12
HIGH 8.8 Siemens Desigo CC Product Family and SENTRON Powermanager
ICSA-26-043-04 · 1 CVE
Desigo CC family V6, Desigo CC family V7, Desigo CC family V8 +5 more
2026-02-12
HIGH 7.8 Siemens Solid Edge
ICSA-26-043-05 · 1 CVE
Solid Edge
2026-02-12
MEDIUM 6.3 Siemens Siveillance Video Management Servers
ICSA-26-043-07 · 1 CVE
Siveillance Video V2022 R3, Siveillance Video V2023 R1, Siveillance Video V2023 R2 +3 more
2026-02-12
MEDIUM 0 SSA-965753 V1.0: Multiple File Parsing Vulnerabilities in Simcenter Femap and Nastran Before V2512
SIEMENS-SSA-965753
SSA-965753 V1.0: Multiple File Parsing Vulnerabilities in Simcenter Femap and Nastran Before V2512
2026-02-10
MEDIUM 0 SSA-864900 V1.7 (Last Update: 2026-02-10): Multiple Vulnerabilities in Fortigate NGFW on RUGGEDCOM APE1808 Devices
SIEMENS-SSA-864900
SSA-864900 V1.7 (Last Update: 2026-02-10): Multiple Vulnerabilities in Fortigate NGFW on RUGGEDCOM APE1808 Devices
2026-02-10
MEDIUM 0 SSA-783261 V1.1 (Last Update: 2026-02-10): Denial of Service Vulnerability in Automation License Manager (ALM) Before V5.2
SIEMENS-SSA-783261
SSA-783261 V1.1 (Last Update: 2026-02-10): Denial of Service Vulnerability in Automation License Manager (ALM) Before V5.2
2026-02-10
MEDIUM 0 SSA-674753 V1.1 (Last Update: 2026-02-10): Denial-of-Service Vulnerability in ET 200 Devices
SIEMENS-SSA-674753
SSA-674753 V1.1 (Last Update: 2026-02-10): Denial-of-Service Vulnerability in ET 200 Devices
2026-02-10
MEDIUM 0 SSA-625934 V1.0: Improper Access Control Vulnerability in the Webhooks Implementation of Siveillance Video Management Servers
SIEMENS-SSA-625934
SSA-625934 V1.0: Improper Access Control Vulnerability in the Webhooks Implementation of Siveillance Video Management Servers
2026-02-10
MEDIUM 0 SSA-599451 V1.1 (Last Update: 2026-02-10): Multiple Vulnerabilities in SiPass integrated
SIEMENS-SSA-599451
SSA-599451 V1.1 (Last Update: 2026-02-10): Multiple Vulnerabilities in SiPass integrated
2026-02-10
MEDIUM 0 SSA-507364 V1.0: Heap Based Buffer Overflow Vulnerability in WIBU CodeMeter Runtime Affecting the Desigo CC Product Family and SENTRON Powermanager
SIEMENS-SSA-507364
SSA-507364 V1.0: Heap Based Buffer Overflow Vulnerability in WIBU CodeMeter Runtime Affecting the Desigo CC Product Family and SENTRON Powermanager
2026-02-10
MEDIUM 0 SSA-445819 V1.0: Out of Bounds Read in PS/IGES Parasolid Translator Component in Solid Edge
SIEMENS-SSA-445819
SSA-445819 V1.0: Out of Bounds Read in PS/IGES Parasolid Translator Component in Solid Edge
2026-02-10
MEDIUM 0 SSA-311973 V1.0: Multiple Local Privilege Escalation Vulnerabilities in SINEC NMS and User Management Component (UMC)
SIEMENS-SSA-311973
SSA-311973 V1.0: Multiple Local Privilege Escalation Vulnerabilities in SINEC NMS and User Management Component (UMC)
2026-02-10
MEDIUM 0 SSA-265688 V2.1 (Last Update: 2026-02-10): Vulnerabilities in the additional GNU/Linux subsystem of the SIMATIC S7-1500 TM MFP V1.1
SIEMENS-SSA-265688
SSA-265688 V2.1 (Last Update: 2026-02-10): Vulnerabilities in the additional GNU/Linux subsystem of the SIMATIC S7-1500 TM MFP V1.1
2026-02-10
MEDIUM 0 SSA-216014 V1.3 (Last Update: 2026-02-10): Vulnerabilities in EFI variable of SIMATIC IPCs, SIMATIC Tablet PCs, and SIMATIC Field PGs
SIEMENS-SSA-216014
SSA-216014 V1.3 (Last Update: 2026-02-10): Vulnerabilities in EFI variable of SIMATIC IPCs, SIMATIC Tablet PCs, and SIMATIC Field PGs
2026-02-10
MEDIUM 0 SSA-130874 V1.4 (Last Update: 2026-02-10): Buffer Overflow Vulnerability in SCALANCE X Switches
SIEMENS-SSA-130874
SSA-130874 V1.4 (Last Update: 2026-02-10): Buffer Overflow Vulnerability in SCALANCE X Switches
2026-02-10
MEDIUM 0 SSA-035571 V1.0: Cross Site Scripting Vulnerability in Polarion Before V2506
SIEMENS-SSA-035571
SSA-035571 V1.0: Cross Site Scripting Vulnerability in Polarion Before V2506
2026-02-10
MEDIUM 0 SSB-491780 V1.0: Missing anti-tamper protection in SIPORT Desktop Client Application
SIEMENS-SSB-491780
SSB-491780 V1.0: Missing anti-tamper protection in SIPORT Desktop Client Application
2026-02-10
CRITICAL 10.0 Siemens Industrial Edge Devices
ICSA-26-015-08 · 1 CVE
Industrial Edge Cloud Device (IECD), Industrial Edge Own Device (IEOD), Industrial Edge Virtual Device (IEVD) +63 more
2026-01-14
MEDIUM 6.7 Siemens SINEC Security Monitor
ICSA-26-015-06 · 2 CVEs
SINEC Security Monitor
2026-01-14
HIGH 8.9 Siemens RUGGEDCOM APE1808 Devices
ICSA-26-015-07 · 4 CVEs
RUGGEDCOM APE1808
2026-01-14
MEDIUM 4.3 Siemens RUGGEDCOM ROS
ICSA-26-015-05 · 1 CVE
RUGGEDCOM RMC8388 V5.X, RUGGEDCOM RS416Pv2 V5.X, RUGGEDCOM RS416v2 V5.X +18 more
2026-01-14
HIGH 8.8 Siemens TeleControl Server Basic
ICSA-26-015-03 · 1 CVE
TeleControl Server Basic
2026-01-14
HIGH 8.1 Siemens RUGGEDCOM APE1808
ICSA-25-226-09 · 11 CVEs
RUGGEDCOM APE1808
2026-01-14
CRITICAL 9.8 Siemens User Management Component
ICSA-24-354-04 · 1 CVE
Desigo ABT, Opcenter Execution Foundation, Opcenter Intelligence +10 more
2026-01-14
CRITICAL 9.1 Siemens OPC UA
ICSA-25-072-09 · 2 CVEs
Industrial Edge for Machine Tools (formerly known as "SINUMERIK Edge"), SIMATIC BRAUMAT, SIMATIC Energy Manager PRO V7.2 +9 more
2026-01-14
MEDIUM 6.5 Siemens SCALANCE and RUGGEDCOM
ICSA-25-162-04 · 3 CVEs
RUGGEDCOM RST2428P (6GK6242-6PA00), SCALANCE XC316-8 (6GK5324-8TS00-2AC2), SCALANCE XC324-4 (6GK5328-4TS00-2AC2) +38 more
2026-01-14
HIGH 8.1 Siemens HyperLynx and Industrial Edge App Publisher
ICSA-25-289-10 · 1 CVE
HyperLynx, Industrial Edge App Publisher
2026-01-14
CRITICAL 9.8 Siemens RUGGEDCOM APE1808
ICSA-24-074-05 · 30 CVEs
RUGGEDCOM APE1808, RUGGEDCOM APE1808
2026-01-14
HIGH 7.5 Siemens RUGGEDCOM APE 1808
ICSA-24-193-02 · 14 CVEs
RUGGEDCOM APE1808
2026-01-14
CRITICAL 9.8 Siemens RUGGEDCOM APE1808 with Fortigate NGFW Devices
ICSA-24-074-11 · 43 CVEs
RUGGEDCOM APE1808
2026-01-14
CRITICAL 9.1 Siemens RUGGEDCOM APE 1808
ICSA-24-193-11 · 9 CVEs
RUGGEDCOM APE1808, RUGGEDCOM APE1808, RUGGEDCOM APE1808 +1 more
2026-01-14
CRITICAL 10.0 Siemens Industrial Edge Device Kit
ICSA-26-015-09 · 1 CVE
Industrial Edge Device Kit - arm64 V1.10, Industrial Edge Device Kit - arm64 V1.11, Industrial Edge Device Kit - arm64 V1.12 +39 more
2026-01-14
MEDIUM 0 SSA-978177 V1.3 (Last Update: 2026-01-13): Vulnerability in Nozomi Guardian/CMC Before 25.4.0 on RUGGEDCOM APE1808 Devices
SIEMENS-SSA-978177
SSA-978177 V1.3 (Last Update: 2026-01-13): Vulnerability in Nozomi Guardian/CMC Before 25.4.0 on RUGGEDCOM APE1808 Devices
2026-01-13
MEDIUM 0 SSA-928984 V1.4 (Last Update: 2026-01-13): Heap-based Buffer Overflow Vulnerability in User Management Component (UMC)
SIEMENS-SSA-928984
SSA-928984 V1.4 (Last Update: 2026-01-13): Heap-based Buffer Overflow Vulnerability in User Management Component (UMC)
2026-01-13
MEDIUM 0 SSA-912274 V1.1 (Last Update: 2026-01-13): Multiple Vulnerabilities in RUGGEDCOM ROX Before V2.17
SIEMENS-SSA-912274
SSA-912274 V1.1 (Last Update: 2026-01-13): Multiple Vulnerabilities in RUGGEDCOM ROX Before V2.17
2026-01-13
MEDIUM 0 SSA-858251 V1.2 (Last Update: 2026-01-13): Authentication Bypass Vulnerabilities in OPC UA
SIEMENS-SSA-858251
SSA-858251 V1.2 (Last Update: 2026-01-13): Authentication Bypass Vulnerabilities in OPC UA
2026-01-13
MEDIUM 0 SSA-832273 V2.1 (Last Update: 2026-01-13): Multiple Vulnerabilities in Fortigate NGFW Before V7.4.3 on RUGGEDCOM APE1808 Devices
SIEMENS-SSA-832273
SSA-832273 V2.1 (Last Update: 2026-01-13): Multiple Vulnerabilities in Fortigate NGFW Before V7.4.3 on RUGGEDCOM APE1808 Devices
2026-01-13
MEDIUM 0 SSA-827968 V1.0: Vulnerability in Nozomi Guardian/CMC on RUGGEDCOM APE1808 Devices
SIEMENS-SSA-827968
SSA-827968 V1.0: Vulnerability in Nozomi Guardian/CMC on RUGGEDCOM APE1808 Devices
2026-01-13
MEDIUM 0 SSA-698820 V2.0 (Last Update: 2026-01-13): Multiple Vulnerabilities in Fortigate NGFW Before V7.4.4 on RUGGEDCOM APE1808 Devices
SIEMENS-SSA-698820
SSA-698820 V2.0 (Last Update: 2026-01-13): Multiple Vulnerabilities in Fortigate NGFW Before V7.4.4 on RUGGEDCOM APE1808 Devices
2026-01-13
MEDIUM 0 SSA-693776 V1.1 (Last Update: 2026-01-13): Multiple Vulnerabilities in Industrial Communication Devices based on SINEC OS before V3.2
SIEMENS-SSA-693776
SSA-693776 V1.1 (Last Update: 2026-01-13): Multiple Vulnerabilities in Industrial Communication Devices based on SINEC OS before V3.2
2026-01-13
MEDIUM 0 SSA-366067 V1.7 (Last Update: 2026-01-13): Multiple Vulnerabilities in Fortigate NGFW Before V7.4.1 on RUGGEDCOM APE1808 Devices
SIEMENS-SSA-366067
SSA-366067 V1.7 (Last Update: 2026-01-13): Multiple Vulnerabilities in Fortigate NGFW Before V7.4.1 on RUGGEDCOM APE1808 Devices
2026-01-13
MEDIUM 0 SSA-365200 V1.1 (Last Update: 2026-01-13): Google Chrome Type Confusion Vulnerability in Siemens Products
SIEMENS-SSA-365200
SSA-365200 V1.1 (Last Update: 2026-01-13): Google Chrome Type Confusion Vulnerability in Siemens Products
2026-01-13
MEDIUM 0 SSA-364175 V1.7 (Last Update: 2026-01-13): Multiple Vulnerabilities in Palo Alto Networks Virtual NGFW on RUGGEDCOM APE1808 Devices Before V11.1.4-h1
SIEMENS-SSA-364175
SSA-364175 V1.7 (Last Update: 2026-01-13): Multiple Vulnerabilities in Palo Alto Networks Virtual NGFW on RUGGEDCOM APE1808 Devices Before V11.1.4-h1
2026-01-13
MEDIUM 0 SSA-192617 V1.0: Local Privilege Escalation Vulnerability in TeleControl Server Basic Before V3.1.2.4
SIEMENS-SSA-192617
SSA-192617 V1.0: Local Privilege Escalation Vulnerability in TeleControl Server Basic Before V3.1.2.4
2026-01-13
MEDIUM 0 SSA-014678 V1.0: Authorization Bypass Vulnerability in Industrial Edge Device Kit
SIEMENS-SSA-014678
SSA-014678 V1.0: Authorization Bypass Vulnerability in Industrial Edge Device Kit
2026-01-13
MEDIUM 0 SSA-001536 V1.0: Authorization Bypass Vulnerability in Siemens Industrial Edge Devices
SIEMENS-SSA-001536
SSA-001536 V1.0: Authorization Bypass Vulnerability in Siemens Industrial Edge Devices
2026-01-13
HIGH 7.5 Siemens Interniche IP-Stack
ICSA-25-352-05 · 1 CVE
SIDOOR ATD430W, SIDOOR ATE530G COATED (6FB1221-5SM10-7BP0), SIDOOR ATE530S COATED +168 more
2025-12-18
MEDIUM 0 SSA-512988 V1.0: File Parsing Vulnerability in Simcenter Femap Before V2512
SIEMENS-SSA-512988
SSA-512988 V1.0: File Parsing Vulnerability in Simcenter Femap Before V2512
2025-12-12
HIGH 7.5 Siemens OpenSSL 3.0 Affecting Products
ICSA-22-349-09 · 2 CVEs
Calibre ICE, Mcenter, SCALANCE X-200RNA family +2 more
2025-12-09
CRITICAL 9.0 Siemens SCALANCE, RUGGEDCOM
ICSA-24-193-05 · 1 CVE
RUGGEDCOM CROSSBOW, RUGGEDCOM i800, RUGGEDCOM i800NC +494 more
2025-12-09
HIGH 8.2 Siemens Third-Party Component in SICAM and SITIPE Products
ICSA-24-256-16 · 1 CVE
ET85 Ethernet Interface IEC61850 Ed.2, ETI5 Ethernet Int. 1x100TX IEC61850, SICAM SCC +1 more
2025-12-09
HIGH 7.3 Siemens Engineering Platforms
ICSA-24-347-02 · 1 CVE
SIMATIC S7-PLCSIM V17, SIMATIC S7-PLCSIM V18, SIMATIC STEP 7 Safety V17 +31 more
2025-12-09
HIGH 8.2 Siemens SIMATIC S7-PLCSIM
ICSA-25-226-03 · 1 CVE
SIMATIC PCS neo V4.1, SIMATIC PCS neo V5.0, SIMATIC PCS neo V6.0 +34 more
2025-12-09
HIGH 7.8 Siemens SIMATIC S7-PLCSIM
ICSA-25-226-11 · 1 CVE
SIMATIC S7-PLCSIM V17, SIMATIC STEP 7 V17, SIMATIC STEP 7 V18 +30 more
2025-12-09
MEDIUM 4.3 Siemens SINEMA Remote Connect Server
ICSA-25-345-06 · 2 CVEs
SINEMA Remote Connect Server
2025-12-09
MEDIUM 6.2 Siemens Building X - Security Manager Edge Controller
ICSA-25-345-07 · 1 CVE
Building X - Security Manager Edge Controller (ACC-AP)
2025-12-09
MEDIUM 6.8 Siemens Energy Services
ICSA-25-345-08 · 1 CVE
Energy Services
2025-12-09
MEDIUM 6.3 Siemens Gridscale X Prepay
ICSA-25-345-09 · 2 CVEs
Gridscale X Prepay
2025-12-09
HIGH 8.8 Siemens RUGGEDCOM ROX II
ICSA-26-015-11 · 6 CVEs
RUGGEDCOM ROX II family
2025-12-09
HIGH 8.3 Siemens SIMATIC CN 4100
ICSA-26-015-12 · 5 CVEs
SIMATIC CN 4100
2025-12-09
MEDIUM 0 SSA-915282 V1.0: Denial of service Vulnerability in Interniche IP-Stack based Industrial Devices
SIEMENS-SSA-915282
SSA-915282 V1.0: Denial of service Vulnerability in Interniche IP-Stack based Industrial Devices
2025-12-09
MEDIUM 0 SSA-882673 V1.0: Multiple Vulnerabilities in SINEC Security Monitor before V4.10.0
SIEMENS-SSA-882673
SSA-882673 V1.0: Multiple Vulnerabilities in SINEC Security Monitor before V4.10.0
2025-12-09
HIGH 8.4 SSA-800126 V1.2 (Last Update: 2025-12-09): Deserialization Vulnerability in Siemens Engineering Platforms before V20
SIEMENS-SSA-800126 · 1 CVE
SSA-800126 V1.2 (Last Update: 2025-12-09): Deserialization Vulnerability in Siemens Engineering Platforms before V20
2025-12-09
MEDIUM 0 SSA-763474 V1.0: Denial of Service Vulnerability in Ruggedcom ROS devices before V5.10.1
SIEMENS-SSA-763474
SSA-763474 V1.0: Denial of Service Vulnerability in Ruggedcom ROS devices before V5.10.1
2025-12-09
MEDIUM 0 SSA-734261 V1.0: Authentication Bypass Vulnerability in Energy Services Using Elspec G5DFR
SIEMENS-SSA-734261
SSA-734261 V1.0: Authentication Bypass Vulnerability in Energy Services Using Elspec G5DFR
2025-12-09
CRITICAL 9.0 SSA-723487 V1.8 (Last Update: 2025-12-09): RADIUS Protocol Susceptible to Forgery Attacks (CVE-2024-3596) - Impact to SCALANCE, RUGGEDCOM and Related Products
SIEMENS-SSA-723487 · 1 CVE
SSA-723487 V1.8 (Last Update: 2025-12-09): RADIUS Protocol Susceptible to Forgery Attacks (CVE-2024-3596) - Impact to SCALANCE, RUGGEDCOM and Related Products
2025-12-09
MEDIUM 0 SSA-693808 V1.2 (Last Update: 2025-12-09): Deserialization Vulnerability in Siemens Engineering Platforms
SIEMENS-SSA-693808
SSA-693808 V1.2 (Last Update: 2025-12-09): Deserialization Vulnerability in Siemens Engineering Platforms
2025-12-09
MEDIUM 0 SSA-673996 V1.3 (Last Update: 2025-12-09): Buffer Overflow Vulnerability in Third-Party Component in SICAM and SITIPE Products
SIEMENS-SSA-673996
SSA-673996 V1.3 (Last Update: 2025-12-09): Buffer Overflow Vulnerability in Third-Party Component in SICAM and SITIPE Products
2025-12-09
MEDIUM 0 SSA-626856 V1.0: Multiple Vulnerabilities in SINEMA Remote Connect Sever Before V3.2 SP4
SIEMENS-SSA-626856
SSA-626856 V1.0: Multiple Vulnerabilities in SINEMA Remote Connect Sever Before V3.2 SP4
2025-12-09
MEDIUM 0 SSA-493396 V1.2 (Last Update: 2025-12-09): Deserialization Vulnerability in Siemens Engineering Platforms
SIEMENS-SSA-493396
SSA-493396 V1.2 (Last Update: 2025-12-09): Deserialization Vulnerability in Siemens Engineering Platforms
2025-12-09
MEDIUM 0 SSA-471761 V1.0: Multiple Vulnerabilities in SICAM T Before V3.0
SIEMENS-SSA-471761
SSA-471761 V1.0: Multiple Vulnerabilities in SICAM T Before V3.0
2025-12-09
MEDIUM 0 SSA-420375 V1.0: Improper Integrity Check of Firmware Updates in Building X - Security Manager Edge Controller (ACC-AP)
SIEMENS-SSA-420375
SSA-420375 V1.0: Improper Integrity Check of Firmware Updates in Building X - Security Manager Edge Controller (ACC-AP)
2025-12-09
MEDIUM 0 SSA-416652 V1.0: Multiple Vulnerabilities in SIMATIC CN 4100 Before V4.0.1
SIEMENS-SSA-416652
SSA-416652 V1.0: Multiple Vulnerabilities in SIMATIC CN 4100 Before V4.0.1
2025-12-09
HIGH 7.5 SSA-408105 V1.3 (Last Update: 2025-12-09): Buffer Overflow Vulnerabilities in OpenSSL 3.0 Affecting Siemens Products
SIEMENS-SSA-408105 · 2 CVEs
SSA-408105 V1.3 (Last Update: 2025-12-09): Buffer Overflow Vulnerabilities in OpenSSL 3.0 Affecting Siemens Products
2025-12-09
HIGH 7.0 SSA-392859 V1.2 (Last Update: 2025-12-09): Local Arbitrary Code Execution Vulnerability in Siemens Engineering Platforms before V20
SIEMENS-SSA-392859 · 1 CVE
SSA-392859 V1.2 (Last Update: 2025-12-09): Local Arbitrary Code Execution Vulnerability in Siemens Engineering Platforms before V20
2025-12-09
MEDIUM 0 SSA-356310 V1.0: Multiple Vulnerabilities in Gridscale X Prepay
SIEMENS-SSA-356310
SSA-356310 V1.0: Multiple Vulnerabilities in Gridscale X Prepay
2025-12-09
MEDIUM 0 SSA-202008 V1.0: Multiple Vulnerabilities in Ruggedcom Rox Before V2.17.0
SIEMENS-SSA-202008
SSA-202008 V1.0: Multiple Vulnerabilities in Ruggedcom Rox Before V2.17.0
2025-12-09
MEDIUM 0 SSA-241605 V1.0: Out of Bounds Read in PS/IGES Parasolid Translator Component Before V29.0.258
SIEMENS-SSA-241605
SSA-241605 V1.0: Out of Bounds Read in PS/IGES Parasolid Translator Component Before V29.0.258
2025-11-17
MEDIUM 0 SSA-190588 V1.0: Cross-Site Scripting Vulnerability in Mendix Rich Text Widget
SIEMENS-SSA-190588
SSA-190588 V1.0: Cross-Site Scripting Vulnerability in Mendix Rich Text Widget
2025-11-17
MEDIUM 5.5 Siemens SICAM P850 family and SICAM P855 family
ICSA-25-317-11 · 2 CVEs
SICAM P850 (7KG8500-0AA00-0AA0), SICAM P850 (7KG8501-0AA02-2AA0), SICAM P850 (7KG8501-0AA11-0AA0) +33 more
2025-11-13
HIGH 8.8 Siemens Spectrum Power 4
ICSA-25-317-12 · 5 CVEs
Spectrum Power 4
2025-11-13
CRITICAL 9.8 Siemens SICAM GridEdge
ICSA-22-167-08 · 4 CVEs
SICAM GridEdge (Classic)
2025-11-11
MEDIUM 6.3 Siemens SICAM GridEdge
ICSA-22-195-02 · 1 CVE
SICAM GridEdge (Classic)
2025-11-11
MEDIUM 5.3 Siemens SIPROTEC 5 Devices
ICSA-22-349-11 · 1 CVE
SIPROTEC 5 6MD84 (CP300), SIPROTEC 5 6MD85 (CP200), SIPROTEC 5 6MD85 (CP300) +66 more
2025-11-11
HIGH 7.5 Siemens SIPROTEC 5 Devices
ICSA-23-103-06 · 1 CVE
SIPROTEC 5 6MD85 (CP300), SIPROTEC 5 6MD86 (CP300), SIPROTEC 5 6MD89 (CP300) +43 more
2025-11-11
HIGH 7.5 Siemens SIMATIC, SIPLUS Products
ICSA-23-257-01 · 1 CVE
SIMATIC BRAUMAT, SIMATIC Cloud Connect 7 CC712 (6GK1411-1AC00), SIMATIC Cloud Connect 7 CC716 (6GK1411-5AC00) +143 more
2025-11-11
MEDIUM 5.9 Siemens SIPROTEC
ICSA-24-193-14 · 1 CVE
SIPROTEC 5 6MD84 (CP300), SIPROTEC 5 6MD85 (CP200), SIPROTEC 5 6MD85 (CP300) +66 more
2025-11-11
MEDIUM 6.5 Siemens SIPROTEC 5 Products
ICSA-25-016-04 · 1 CVE
SIPROTEC 5 6MD84 (CP300), SIPROTEC 5 6MD85 (CP300), SIPROTEC 5 6MD86 (CP300) +40 more
2025-11-11
MEDIUM 6.8 Siemens SIPROTEC 5
ICSA-25-044-04 · 1 CVE
SIPROTEC 5 6MD84 (CP300), SIPROTEC 5 6MD85 (CP200), SIPROTEC 5 6MD85 (CP300) +58 more
2025-11-11
CRITICAL 9.0 Siemens SIPROTEC and SICAM
ICSA-25-135-05 · 1 CVE
CPC80 Central Processing/Communication, CPCI85 Central Processing/Communication, POWER METER SICAM Q100 family +56 more
2025-11-11
LOW 2.2 Siemens Mendix OIDC SSO
ICSA-25-135-15 · 1 CVE
Mendix OIDC SSO (Mendix 10 compatible), Mendix OIDC SSO (Mendix 10.12 compatible), Mendix OIDC SSO (Mendix 9 compatible)
2025-11-11
CRITICAL 9.9 Siemens RUGGEDCOM ROX II
ICSA-25-135-17 · 4 CVEs
RUGGEDCOM ROX MX5000, RUGGEDCOM ROX MX5000RE, RUGGEDCOM ROX RX1400 +8 more
2025-11-11
HIGH 7.6 Siemens LOGO! 8 BM Devices
ICSA-25-317-13 · 3 CVEs
LOGO! 12/24RCE (6ED1052-1MD08-0BA2), LOGO! 12/24RCEo (6ED1052-2MD08-0BA2), LOGO! 230RCE (6ED1052-1FB08-0BA2) +13 more
2025-11-11
HIGH 7.5 Siemens Solid Edge
ICSA-25-317-14 · 1 CVE
Solid Edge SE2025
2025-11-11
CRITICAL 9.3 Siemens COMOS
ICSA-25-317-15 · 2 CVEs
COMOS, COMOS
2025-11-11
HIGH 7.8 Siemens Altair Grid Engine
ICSA-25-317-16 · 2 CVEs
Altair Grid Engine
2025-11-11
HIGH 7.8 Siemens Software Center and Solid Edge
ICSA-25-317-17 · 1 CVE
Siemens Software Center, Solid Edge SE2025
2025-11-11
CRITICAL 9.0 SSA-794185 V1.2 (Last Update: 2025-11-11): RADIUS Protocol Susceptible to Forgery Attacks (CVE-2024-3596) - Impact to SIPROTEC, SICAM and Related Products
SIEMENS-SSA-794185 · 1 CVE
SSA-794185 V1.2 (Last Update: 2025-11-11): RADIUS Protocol Susceptible to Forgery Attacks (CVE-2024-3596) - Impact to SIPROTEC, SICAM and Related Products
2025-11-11
MEDIUM 0 SSA-750499 V1.2 (Last Update: 2025-11-11): Weak Encryption Vulnerability in SIPROTEC 5 Devices
SIEMENS-SSA-750499
SSA-750499 V1.2 (Last Update: 2025-11-11): Weak Encryption Vulnerability in SIPROTEC 5 Devices
2025-11-11
MEDIUM 0 SSA-726617 V1.3 (Last Update: 2025-11-11): Incorrect Privilege Assignment Vulnerability in Mendix OIDC SSO Module
SIEMENS-SSA-726617
SSA-726617 V1.3 (Last Update: 2025-11-11): Incorrect Privilege Assignment Vulnerability in Mendix OIDC SSO Module
2025-11-11
MEDIUM 0 SSA-711309 V2.5 (Last Update: 2025-11-11): Denial of Service Vulnerability in the OPC UA Implementations of SIMATIC Products
SIEMENS-SSA-711309
SSA-711309 V2.5 (Last Update: 2025-11-11): Denial of Service Vulnerability in the OPC UA Implementations of SIMATIC Products
2025-11-11
MEDIUM 0 SSA-687955 V1.2 (Last Update: 2025-11-11): Accessible Development Shell via Physical Interface in SIPROTEC 5
SIEMENS-SSA-687955
SSA-687955 V1.2 (Last Update: 2025-11-11): Accessible Development Shell via Physical Interface in SIPROTEC 5
2025-11-11
MEDIUM 0 SSA-682326 V1.0: Multiple Vulnerabilities in COMOS before V10.4.5
SIEMENS-SSA-682326
SSA-682326 V1.0: Multiple Vulnerabilities in COMOS before V10.4.5
2025-11-11
MEDIUM 0 SSA-631336 V1.1 (Last Update: 2025-11-11): Multiple Web Server Vulnerabilities in SICAM GridEdge Before V2.6.6
SIEMENS-SSA-631336
SSA-631336 V1.1 (Last Update: 2025-11-11): Multiple Web Server Vulnerabilities in SICAM GridEdge Before V2.6.6
2025-11-11
MEDIUM 0 SSA-552874 V1.5 (Last Update: 2025-11-11): Denial of Service Vulnerability in SIPROTEC 5 Devices
SIEMENS-SSA-552874
SSA-552874 V1.5 (Last Update: 2025-11-11): Denial of Service Vulnerability in SIPROTEC 5 Devices
2025-11-11
MEDIUM 0 SSA-522291 V1.0: Improper Certificate Validation Vulnerability in Solid Edge
SIEMENS-SSA-522291
SSA-522291 V1.0: Improper Certificate Validation Vulnerability in Solid Edge
2025-11-11
MEDIUM 0 SSA-514895 V1.0: Multiple Vulnerabilities in Altair Grid Engine V2025.1.0
SIEMENS-SSA-514895
SSA-514895 V1.0: Multiple Vulnerabilities in Altair Grid Engine V2025.1.0
2025-11-11
MEDIUM 0 SSA-365596 V1.0: DLL Hijacking Vulnerability in Siemens Software Center and Solid Edge
SIEMENS-SSA-365596
SSA-365596 V1.0: DLL Hijacking Vulnerability in Siemens Software Center and Solid Edge
2025-11-11
MEDIUM 0 SSA-339694 V1.0: Multiple Vulnerabilities in Spectrum Power 4 Before v4.70 SP12 Security Patch 2
SIEMENS-SSA-339694
SSA-339694 V1.0: Multiple Vulnerabilities in Spectrum Power 4 Before v4.70 SP12 Security Patch 2
2025-11-11
MEDIUM 0 SSA-322980 V1.5 (Last Update: 2025-11-11): Denial of Service Vulnerability in SIPROTEC 5 Devices
SIEMENS-SSA-322980
SSA-322980 V1.5 (Last Update: 2025-11-11): Denial of Service Vulnerability in SIPROTEC 5 Devices
2025-11-11
MEDIUM 0 SSA-301229 V1.2 (Last Update: 2025-11-11): Client-Side Enforcement of Server-Side Security Vulnerabilities in RUGGEDCOM ROX II
SIEMENS-SSA-301229
SSA-301229 V1.2 (Last Update: 2025-11-11): Client-Side Enforcement of Server-Side Security Vulnerabilities in RUGGEDCOM ROX II
2025-11-11
MEDIUM 0 SSA-267056 V1.0: Multiple Vulnerabilities in LOGO! 8 BM Devices
SIEMENS-SSA-267056
SSA-267056 V1.0: Multiple Vulnerabilities in LOGO! 8 BM Devices
2025-11-11
MEDIUM 0 SSA-225578 V1.1 (Last Update: 2025-11-11): Improper Access Control Vulnerability in SICAM GridEdge Before V2.7.3
SIEMENS-SSA-225578
SSA-225578 V1.1 (Last Update: 2025-11-11): Improper Access Control Vulnerability in SICAM GridEdge Before V2.7.3
2025-11-11
MEDIUM 0 SSA-201498 V1.0: Multiple Vulnerabilities in the Web Server of SICAM P850 and SICAM P855 Devices Before V3.11
SIEMENS-SSA-201498
SSA-201498 V1.0: Multiple Vulnerabilities in the Web Server of SICAM P850 and SICAM P855 Devices Before V3.11
2025-11-11
MEDIUM 0 SSA-194557 V1.3 (Last Update: 2025-11-11): Improper Limitation of Filesystem Access through Web Server Vulnerability in SIPROTEC 5
SIEMENS-SSA-194557
SSA-194557 V1.3 (Last Update: 2025-11-11): Improper Limitation of Filesystem Access through Web Server Vulnerability in SIPROTEC 5
2025-11-11
CRITICAL 9.8 Siemens User Management Component (UMC)
ICSA-24-256-03 · 1 CVE
Opcenter Quality, Opcenter RDnL, SIMATIC PCS neo V4.0 +8 more
2025-10-14
MEDIUM 4.7 Siemens SIMATIC S7-1500 and S7-1200 CPUs
ICSA-24-284-01 · 1 CVE
SIMATIC Drive Controller CPU 1504D TF (6ES7615-4DF10-0AB0), SIMATIC Drive Controller CPU 1507D TF (6ES7615-7DF10-0AB0), SIMATIC ET 200SP CPU 1510SP F-1 PN (6ES7510-1SJ01-0AB0) +186 more
2025-10-14
MEDIUM 5.3 Siemens SIMATIC S7-1500 CPUs
ICSA-24-284-10 · 1 CVE
SIMATIC Drive Controller CPU 1504D TF (6ES7615-4DF10-0AB0), SIMATIC Drive Controller CPU 1507D TF (6ES7615-7DF10-0AB0), SIMATIC ET 200SP CPU 1510SP F-1 PN (6ES7510-1SJ01-0AB0) +137 more
2025-10-14
HIGH 7.5 Siemens User Management Component (UMC)
ICSA-25-135-09 · 3 CVEs
SIMATIC PCS neo V4.1, SIMATIC PCS neo V5.0, SINEC NMS +6 more
2025-10-14
MEDIUM 6.2 Siemens SiPass
ICSA-25-148-01 · 1 CVE
SiPass integrated AC5102 (ACC-G2), SiPass integrated ACC-AP
2025-10-14
MEDIUM 5.5 Siemens SIMOTION SCOUT, SIMOTION SCOUT TIA, and SINAMICS STARTER
ICSA-25-226-18 · 1 CVE
SIMOTION SCOUT TIA V5.4, SIMOTION SCOUT TIA V5.5, SIMOTION SCOUT TIA V5.6 +8 more
2025-10-14
CRITICAL 9.8 Siemens User Management Component (UMC)
ICSA-25-254-07 · 4 CVEs
SIMATIC PCS neo V4.1, SIMATIC PCS neo V5.0, SIMATIC PCS neo V6.0 +1 more
2025-10-14
HIGH 7.8 Siemens Solid Edge
ICSA-25-289-05 · 4 CVEs
Solid Edge SE2024, Solid Edge SE2025
2025-10-14
CRITICAL 9.8 Siemens SIMATIC ET 200SP Communication Processors
ICSA-25-289-07 · 1 CVE
SIMATIC CP 1542SP-1 (6GK7542-6UX00-0XE0), SIMATIC CP 1542SP-1 IRC (6GK7542-6VX00-0XE0), SIMATIC CP 1543SP-1 (6GK7543-6WX00-0XE0) +3 more
2025-10-14
HIGH 8.8 Siemens SINEC NMS
ICSA-25-289-08 · 1 CVE
SINEC NMS
2025-10-14
CRITICAL 9.8 Siemens TeleControl Server Basic
ICSA-25-289-09 · 1 CVE
TeleControl Server Basic V3.1
2025-10-14
HIGH 7.5 Siemens SIMATIC S7-1200 CPU V1/V2 Devices
ICSA-25-294-03 · 2 CVEs
SIMATIC S7-1200 CPU V1 family (incl. SIPLUS variants), SIMATIC S7-1200 CPU V1 family (incl. SIPLUS variants), SIMATIC S7-1200 CPU V2 family (incl. SIPLUS variants) +1 more
2025-10-14
HIGH 8.8 Siemens RUGGEDCOM ROS Devices
ICSA-25-294-04 · 4 CVEs
RUGGEDCOM i800, RUGGEDCOM i801, RUGGEDCOM i802 +87 more
2025-10-14
MEDIUM 0 SSA-876787 V1.9 (Last Update: 2025-10-14): Open Redirect Vulnerability in SIMATIC S7-1500 and S7-1200 CPUs
SIEMENS-SSA-876787
SSA-876787 V1.9 (Last Update: 2025-10-14): Open Redirect Vulnerability in SIMATIC S7-1500 and S7-1200 CPUs
2025-10-14
MEDIUM 0 SSA-722410 V1.1 (Last Update: 2025-10-14): Multiple Vulnerabilities in User Management Component (UMC)
SIEMENS-SSA-722410
SSA-722410 V1.1 (Last Update: 2025-10-14): Multiple Vulnerabilities in User Management Component (UMC)
2025-10-14
MEDIUM 0 SSA-625789 V1.4 (Last Update: 2025-10-14): Multiple Vulnerabilities in SIMATIC S7-1200 CPU V1/V2 Devices
SIEMENS-SSA-625789
SSA-625789 V1.4 (Last Update: 2025-10-14): Multiple Vulnerabilities in SIMATIC S7-1200 CPU V1/V2 Devices
2025-10-14
MEDIUM 0 SSA-614723 V1.2 (Last Update: 2025-10-14): Denial of Service Vulnerabilities in User Management Component (UMC)
SIEMENS-SSA-614723
SSA-614723 V1.2 (Last Update: 2025-10-14): Denial of Service Vulnerabilities in User Management Component (UMC)
2025-10-14
MEDIUM 0 SSA-541582 V1.0: Multiple File Parsing Vulnerabilities in Solid Edge
SIEMENS-SSA-541582
SSA-541582 V1.0: Multiple File Parsing Vulnerabilities in Solid Edge
2025-10-14
MEDIUM 0 SSA-486936 V1.0: Authentication Vulnerability in SIMATIC ET 200SP Communication Processors
SIEMENS-SSA-486936
SSA-486936 V1.0: Authentication Vulnerability in SIMATIC ET 200SP Communication Processors
2025-10-14
MEDIUM 0 SSA-373591 V1.2 (Last Update: 2025-10-14): Buffer Overflow Vulnerability in RUGGEDCOM ROS Devices
SIEMENS-SSA-373591
SSA-373591 V1.2 (Last Update: 2025-10-14): Buffer Overflow Vulnerability in RUGGEDCOM ROS Devices
2025-10-14
MEDIUM 0 SSA-367714 V1.1 (Last Update: 2025-10-14): Improper Integrity Check of Firmware Updates in SiPass integrated AC5102 / ACC-G2 and ACC-AP
SIEMENS-SSA-367714
SSA-367714 V1.1 (Last Update: 2025-10-14): Improper Integrity Check of Firmware Updates in SiPass integrated AC5102 / ACC-G2 and ACC-AP
2025-10-14
MEDIUM 0 SSA-318832 V1.0: SQL Injection Vulnerability in SINEC NMS
SIEMENS-SSA-318832
SSA-318832 V1.0: SQL Injection Vulnerability in SINEC NMS
2025-10-14
MEDIUM 0 SSA-279823 V1.2 (Last Update: 2025-10-14): Cross-Site Scripting Vulnerability in SIMATIC S7-1200 CPU V2/V3 Before V3.0.2
SIEMENS-SSA-279823
SSA-279823 V1.2 (Last Update: 2025-10-14): Cross-Site Scripting Vulnerability in SIMATIC S7-1200 CPU V2/V3 Before V3.0.2
2025-10-14
MEDIUM 0 SSA-240718 V1.2 (Last Update: 2025-10-14): Insecure Storage of HTTPS CA Certificate in SIMATIC S7-1200 CPU V2
SIEMENS-SSA-240718
SSA-240718 V1.2 (Last Update: 2025-10-14): Insecure Storage of HTTPS CA Certificate in SIMATIC S7-1200 CPU V2
2025-10-14
MEDIUM 0 SSA-186293 V1.1 (Last Update: 2025-10-14): XML External Entity (XXE) Injection Vulnerability in SIMOTION SCOUT, SIMOTION SCOUT TIA and SINAMICS STARTER
SIEMENS-SSA-186293
SSA-186293 V1.1 (Last Update: 2025-10-14): XML External Entity (XXE) Injection Vulnerability in SIMOTION SCOUT, SIMOTION SCOUT TIA and SINAMICS STARTER
2025-10-14
MEDIUM 0 SSA-083019 V1.1 (Last Update: 2025-10-14): Multiple Vulnerabilities in RUGGEDCOM ROS Devices
SIEMENS-SSA-083019
SSA-083019 V1.1 (Last Update: 2025-10-14): Multiple Vulnerabilities in RUGGEDCOM ROS Devices
2025-10-14
MEDIUM 0 SSA-062309 V1.0: Information Disclosure Vulnerability in TeleControl Server Basic V3.1
SIEMENS-SSA-062309
SSA-062309 V1.0: Information Disclosure Vulnerability in TeleControl Server Basic V3.1
2025-10-14
MEDIUM 0 SSA-054046 V1.7 (Last Update: 2025-10-14): Unauthenticated Information Disclosure in Web Server of SIMATIC S7-1500 CPUs
SIEMENS-SSA-054046
SSA-054046 V1.7 (Last Update: 2025-10-14): Unauthenticated Information Disclosure in Web Server of SIMATIC S7-1500 CPUs
2025-10-14
MEDIUM 0 SSA-039007 V1.6 (Last Update: 2025-10-14): Heap-based Buffer Overflow Vulnerability in User Management Component (UMC)
SIEMENS-SSA-039007
SSA-039007 V1.6 (Last Update: 2025-10-14): Heap-based Buffer Overflow Vulnerability in User Management Component (UMC)
2025-10-14
HIGH 8.1 End-of-Train and Head-of-Train Remote Linking Protocol (Update C)
ICSA-25-191-10 · 1 CVE
Trainguard HOT, Trainguard EOT
2025-09-18
HIGH 7.5 Siemens SIMATIC NET CP, SINEMA and SCALANCE
ICSA-25-259-03 · 2 CVEs
Siemens RUGGEDCOM RM1224 LTE(4G) EU (6GK6108-4AM00-2BA2), Siemens SCALANCE M874-3 (6GK5874-3AA00-2AA2), Siemens SCALANCE M876-3 (EVDO) (6GK5876-3AA02-2BA2) +38 more
2025-09-16
HIGH 7.4 Siemens OpenSSL Vulnerability in Industrial Products
ICSA-25-259-05 · 1 CVE
Siemens Industrial Edge - Machine Insight App, Siemens RUGGEDCOM ROX RX1510, Siemens SCALANCE X201-3P IRT PRO (6GK5201-3JR00-2BA6) +221 more
2025-09-16
HIGH 7.8 Siemens OPC Foundation Local Discovery Server Affecting Siemens Products
ICSA-24-102-08 · 1 CVE
OpenPCS 7 V9.1, SIMATIC NET PC Software V14, SIMATIC NET PC Software V15 +9 more
2025-09-09
HIGH 7.8 Siemens SIMATIC S7-1500 TM MFP
ICSA-25-072-03 · 19 CVEs
SIMATIC S7-1500 TM MFP - BIOS
2025-09-09
HIGH 8.2 Siemens WIBU CodeMeter Runtime
ICSA-25-226-05 · 1 CVE
SIMATIC PDM Maintenance Station V5.0, SIMATIC WinCC OA V3.18, SIMATIC WinCC OA V3.19 +1 more
2025-09-09
HIGH 8.1 Siemens SIMOTION Tools
ICSA-25-254-01 · 1 CVE
SIMATIC Technology Package TPCamGen (6ES7823-0FE30-1AA0), SIMOTION OA MIIF (6AU1820-3DA20-0AB0), SIMOTION OACAMGEN (6AU1820-3EA20-0AB0) +2 more
2025-09-09
CRITICAL 9.1 Siemens SIMATIC Virtualization as a Service (SIVaaS)
ICSA-25-254-02 · 1 CVE
SIMATIC Virtualization as a Service (SIVaaS)
2025-09-09
LOW 3.1 Siemens SINEC OS
ICSA-25-254-04 · 2 CVEs
RUGGEDCOM RST2428P (6GK6242-6PA00)
2025-09-09
MEDIUM 5.3 Siemens Apogee PXC and Talon TC Devices
ICSA-25-254-05 · 1 CVE
APOGEE PXC Series (BACnet), APOGEE PXC Series (P2 Ethernet), TALON TC Series (BACnet)
2025-09-09
HIGH 7.5 Siemens Industrial Edge Management
ICSA-25-254-06 · 1 CVE
Industrial Edge Management OS (IEM-OS)
2025-09-09
MEDIUM 0 SSA-916339 V1.0: Information Disclosure Vulnerability in Apogee PXC and Talon TC Devices
SIEMENS-SSA-916339
SSA-916339 V1.0: Information Disclosure Vulnerability in Apogee PXC and Talon TC Devices
2025-09-09
HIGH 7.5 SSA-712929 V3.0 (Last Update: 2025-09-09): Denial of Service Vulnerability in OpenSSL (CVE-2022-0778) Affecting Industrial Products
SIEMENS-SSA-712929 · 1 CVE
SSA-712929 V3.0 (Last Update: 2025-09-09): Denial of Service Vulnerability in OpenSSL (CVE-2022-0778) Affecting Industrial Products
2025-09-09
MEDIUM 0 SSA-691715 V1.7 (Last Update: 2025-09-09): Vulnerability in OPC Foundation Local Discovery Server Affecting Siemens Products
SIEMENS-SSA-691715
SSA-691715 V1.7 (Last Update: 2025-09-09): Vulnerability in OPC Foundation Local Discovery Server Affecting Siemens Products
2025-09-09
MEDIUM 0 SSA-640476 V1.0: Denial of Service Vulnerability in Industrial Edge Management
SIEMENS-SSA-640476
SSA-640476 V1.0: Denial of Service Vulnerability in Industrial Edge Management
2025-09-09
MEDIUM 0 SSA-563922 V1.0: Local Privilege Escalation Vulnerability in SIMOTION Tools
SIEMENS-SSA-563922
SSA-563922 V1.0: Local Privilege Escalation Vulnerability in SIMOTION Tools
2025-09-09
MEDIUM 0 SSA-534283 V1.0: Insecure File Share Vulnerability in SIMATIC Virtualization as a Service (SIVaaS)
SIEMENS-SSA-534283
SSA-534283 V1.0: Insecure File Share Vulnerability in SIMATIC Virtualization as a Service (SIVaaS)
2025-09-09
MEDIUM 0 SSA-503939 V1.2 (Last Update: 2025-09-09): Vulnerabilities in the BIOS of the SIMATIC S7-1500 TM MFP
SIEMENS-SSA-503939
SSA-503939 V1.2 (Last Update: 2025-09-09): Vulnerabilities in the BIOS of the SIMATIC S7-1500 TM MFP
2025-09-09
MEDIUM 0 SSA-494539 V1.0: Multiple Vulnerabilities in SINEC OS
SIEMENS-SSA-494539
SSA-494539 V1.0: Multiple Vulnerabilities in SINEC OS
2025-09-09
MEDIUM 0 SSA-331739 V1.1 (Last Update: 2025-09-09): Privilege Escalation Vulnerability in WIBU CodeMeter Runtime Affecting Siemens Products
SIEMENS-SSA-331739
SSA-331739 V1.1 (Last Update: 2025-09-09): Privilege Escalation Vulnerability in WIBU CodeMeter Runtime Affecting Siemens Products
2025-09-09
MEDIUM 0 SSA-707630 V1.1 (Last Update: 2025-08-26): Multiple Vulnerabilities in SIMATIC RTLS Locating Manager Before V3.3
SIEMENS-SSA-707630
SSA-707630 V1.1 (Last Update: 2025-08-26): Multiple Vulnerabilities in SIMATIC RTLS Locating Manager Before V3.3
2025-08-26
HIGH 8.2 Siemens Desigo CC Product Family and SENTRON Powermanager
ICSA-25-231-01 · 1 CVE
Desigo CC family V5.0, Desigo CC family V5.1, Desigo CC family V6 +6 more
2025-08-14
MEDIUM 0 SSA-395458 V1.0: Account Hijacking Vulnerability in Mendix SAML Module
SIEMENS-SSA-395458
SSA-395458 V1.0: Account Hijacking Vulnerability in Mendix SAML Module
2025-08-14
MEDIUM 0 SSA-028723 V1.1 (Last Update: 2025-08-13): Multiple OpenSSL Vulnerabilities in BFCClient Before V2.17
SIEMENS-SSA-028723
SSA-028723 V1.1 (Last Update: 2025-08-13): Multiple OpenSSL Vulnerabilities in BFCClient Before V2.17
2025-08-13
HIGH 8.8 Siemens Ruggedcom ROS, SCALANCE
ICSA-17-271-01B · 1 CVE
RUGGEDCOM i800, RUGGEDCOM i800NC, RUGGEDCOM i801 +250 more
2025-08-12
MEDIUM 6.7 Siemens RUGGEDCOM Devices
ICSA-22-069-01 · 1 CVE
RUGGEDCOM i800, RUGGEDCOM i801, RUGGEDCOM i802 +71 more
2025-08-12
CRITICAL 9.6 Siemens RUGGEDCOM ROS
ICSA-22-069-12 · 6 CVEs
RUGGEDCOM i800, RUGGEDCOM i800NC, RUGGEDCOM i801 +149 more
2025-08-12
HIGH 8.0 Siemens RUGGEDCOM ROS Code Injection
ICSA-22-195-18 · 1 CVE
RUGGEDCOM i800, RUGGEDCOM i800NC, RUGGEDCOM i801 +149 more
2025-08-12
MEDIUM 5.3 Siemens RUGGEDCOM ROS
ICSA-22-314-05 · 1 CVE
RUGGEDCOM i800, RUGGEDCOM i800NC, RUGGEDCOM i801 +149 more
2025-08-12
HIGH 7.5 Siemens RUGGEDCOM ROS Devices
ICSA-23-222-08 · 1 CVE
RUGGEDCOM i800, RUGGEDCOM i800NC, RUGGEDCOM i801 +149 more
2025-08-12
CRITICAL 9.1 Siemens RUGGEDCOM ROS
ICSA-23-222-12 · 1 CVE
RUGGEDCOM i800, RUGGEDCOM i800NC, RUGGEDCOM i801 +153 more
2025-08-12
CRITICAL 9.8 Siemens SIMATIC S7-1500
ICSA-23-348-10 · 544 CVEs
SIMATIC S7-1500 CPU 1518-4 PN/DP MFP (6ES7518-4AX00-1AB0), SIMATIC S7-1500 CPU 1518-4 PN/DP MFP (6ES7518-4AX00-1AC0), SIMATIC S7-1500 CPU 1518F-4 PN/DP MFP (6ES7518-4FX00-1AB0) +2 more
2025-08-12
MEDIUM 4.9 Siemens SCALANCE XB-200 / XC-200 / XP-200 / XF-200BA / XR-300WG Family
ICSA-24-074-08 · 2 CVEs
SCALANCE XB205-3 (SC, PN) (6GK5205-3BB00-2AB2), SCALANCE XB205-3 (SC, PN) (6GK5205-3BB00-2AB2), SCALANCE XB205-3 (ST, E/IP) (6GK5205-3BB00-2TB2) +179 more
2025-08-12
HIGH 8.8 Siemens RUGGEDCOM
ICSA-24-193-06 · 4 CVEs
RUGGEDCOM i800, RUGGEDCOM i800NC, RUGGEDCOM i801 +133 more
2025-08-12
MEDIUM 5.3 Siemens Mendix Runtime
ICSA-24-256-05 · 1 CVE
Mendix Runtime V8, Mendix Runtime V9, Mendix Runtime V10 +2 more
2025-08-12
MEDIUM 5.3 Siemens Mendix Runtime
ICSA-24-319-12 · 1 CVE
Mendix Runtime V8, Mendix Runtime V9, Mendix Runtime V10 +2 more
2025-08-12
HIGH 7.8 Siemens Siemens Engineering Platforms
ICSA-24-347-05 · 1 CVE
SIMATIC S7-PLCSIM V16, SIMATIC S7-PLCSIM V17, SIMATIC STEP 7 Safety V16 +36 more
2025-08-12
HIGH 7.5 Siemens SIPROTEC 5 Devices
ICSA-25-044-05 · 1 CVE
SIPROTEC 5 6MD84 (CP300), SIPROTEC 5 6MD85 (CP300), SIPROTEC 5 6MD86 (CP300) +45 more
2025-08-12
CRITICAL 10.0 Siemens SIMATIC IPC RS-828A
ICSA-25-135-07 · 1 CVE
SIMATIC IPC RS-828A - BMC firmware
2025-08-12
MEDIUM 4.3 Siemens TIA Project-Server and TIA Portal
ICSA-25-191-05 · 1 CVE
TIA Project-Server, TIA Project-Server V17, Totally Integrated Automation Portal (TIA Portal) V17 +3 more
2025-08-12
MEDIUM 6.3 Siemens SIMATIC RTLS Locating Manager
ICSA-25-226-01 · 2 CVEs
SIMATIC RTLS Locating Manager
2025-08-12
HIGH 8.2 Siemens COMOS
ICSA-25-226-02 · 1 CVE
COMOS
2025-08-12
HIGH 7.8 Siemens Simcenter Femap
ICSA-25-226-04 · 2 CVEs
Simcenter Femap V2406, Simcenter Femap V2412
2025-08-12
HIGH 7.1 Siemens Opcenter Quality
ICSA-25-226-06 · 7 CVEs
SmartClient modules Opcenter QL Home (SC), SOA Audit, SOA Cockpit
2025-08-12
HIGH 8.3 Siemens RUGGEDCOM CROSSBOW Station Access Controller
ICSA-25-226-08 · 3 CVEs
RUGGEDCOM CROSSBOW Station Access Controller (SAC)
2025-08-12
LOW 2.4 Siemens SIPROTEC 5
ICSA-25-226-10 · 1 CVE
SIPROTEC 5 6MD84 (CP300), SIPROTEC 5 6MD85 (CP300), SIPROTEC 5 6MD86 (CP300) +33 more
2025-08-12
HIGH 7.5 Siemens SIPROTEC 4 and SIPROTEC 4 Compact
ICSA-25-226-12 · 1 CVE
SIPROTEC 4 6MD61, SIPROTEC 4 6MD63, SIPROTEC 4 6MD66 +26 more
2025-08-12
CRITICAL 9.1 Siemens SIMATIC RTLS Locating Manager
ICSA-25-226-13 · 1 CVE
SIMATIC RTLS Locating Manager
2025-08-12
MEDIUM 4.1 Siemens RUGGEDCOM ROX II
ICSA-25-226-14 · 1 CVE
RUGGEDCOM ROX MX5000, RUGGEDCOM ROX MX5000RE, RUGGEDCOM ROX RX1400 +8 more
2025-08-12
MEDIUM 6.2 Siemens SICAM Q100/Q200
ICSA-25-226-16 · 2 CVEs
POWER METER SICAM Q100 (7KG9501-0AA01-0AA1), POWER METER SICAM Q100 (7KG9501-0AA01-2AA1), POWER METER SICAM Q100 (7KG9501-0AA31-0AA1) +2 more
2025-08-12
HIGH 7.8 Siemens SINEC Traffic Analyzer
ICSA-25-226-17 · 7 CVEs
SINEC Traffic Analyzer (6GK8822-1BG01-0BA0), SINEC Traffic Analyzer (6GK8822-1BG01-0BA0)
2025-08-12
HIGH 8.3 Siemens SINUMERIK
ICSA-25-226-19 · 1 CVE
SINUMERIK 828D PPU.4, SINUMERIK 828D PPU.5, SINUMERIK 840D sl +4 more
2025-08-12
HIGH 7.6 Siemens RUGGEDCOM ROX II
ICSA-25-226-20 · 1 CVE
RUGGEDCOM ROX MX5000, RUGGEDCOM ROX MX5000RE, RUGGEDCOM ROX RX1400 +8 more
2025-08-12
CRITICAL 9.8 Siemens BFCClient
ICSA-25-226-21 · 5 CVEs
BFCClient
2025-08-12
MEDIUM 0 SSA-994087 V1.0: Multiple SQLite Vulnerabilities in RUGGEDCOM CROSSBOW Station Access Controller Before V5.7
SIEMENS-SSA-994087
SSA-994087 V1.0: Multiple SQLite Vulnerabilities in RUGGEDCOM CROSSBOW Station Access Controller Before V5.7
2025-08-12
MEDIUM 0 SSA-914892 V1.1 (Last Update: 2025-08-12): Race Condition Vulnerability in Basic Authentication Implementation of Mendix Runtime
SIEMENS-SSA-914892
SSA-914892 V1.1 (Last Update: 2025-08-12): Race Condition Vulnerability in Basic Authentication Implementation of Mendix Runtime
2025-08-12
MEDIUM 0 SSA-908185 V1.2 (Last Update: 2025-08-12): Mirror Port Isolation Vulnerability in RUGGEDCOM ROS Devices
SIEMENS-SSA-908185
SSA-908185 V1.2 (Last Update: 2025-08-12): Mirror Port Isolation Vulnerability in RUGGEDCOM ROS Devices
2025-08-12
MEDIUM 0 SSA-894058 V1.0: Improper Bandwidth Limitation of Network Packets Over Local USB Port Vulnerability in SIPROTEC 5
SIEMENS-SSA-894058
SSA-894058 V1.0: Improper Bandwidth Limitation of Network Packets Over Local USB Port Vulnerability in SIPROTEC 5
2025-08-12
MEDIUM 0 SSA-856721 V1.3 (Last Update: 2025-08-12): Vulnerability in RUGGEDCOM Discovery Protocol (RCDP) of Industrial Communication Devices
SIEMENS-SSA-856721
SSA-856721 V1.3 (Last Update: 2025-08-12): Vulnerability in RUGGEDCOM Discovery Protocol (RCDP) of Industrial Communication Devices
2025-08-12
MEDIUM 0 SSA-840800 V1.5 (Last Update: 2025-08-12): Code Injection Vulnerability in RUGGEDCOM ROS
SIEMENS-SSA-840800
SSA-840800 V1.5 (Last Update: 2025-08-12): Code Injection Vulnerability in RUGGEDCOM ROS
2025-08-12
MEDIUM 0 SSA-787941 V1.5 (Last Update: 2025-08-12): Denial of Service Vulnerability in RUGGEDCOM ROS devices
SIEMENS-SSA-787941
SSA-787941 V1.5 (Last Update: 2025-08-12): Denial of Service Vulnerability in RUGGEDCOM ROS devices
2025-08-12
MEDIUM 0 SSA-770902 V1.2 (Last Update: 2025-08-12): Denial of Service Vulnerability in the Web Server of RUGGEDCOM ROS Devices
SIEMENS-SSA-770902
SSA-770902 V1.2 (Last Update: 2025-08-12): Denial of Service Vulnerability in the Web Server of RUGGEDCOM ROS Devices
2025-08-12
MEDIUM 0 SSA-769791 V1.0: Local Arbitrary Code Execution Vulnerability in COMOS Before V10.6
SIEMENS-SSA-769791
SSA-769791 V1.0: Local Arbitrary Code Execution Vulnerability in COMOS Before V10.6
2025-08-12
MEDIUM 0 SSA-767615 V1.4 (Last Update: 2025-08-12): Information Disclosure Vulnerability in SIPROTEC 5 Devices
SIEMENS-SSA-767615
SSA-767615 V1.4 (Last Update: 2025-08-12): Information Disclosure Vulnerability in SIPROTEC 5 Devices
2025-08-12
MEDIUM 0 SSA-764417 V1.9 (Last Update: 2025-08-12): Weak Encryption Vulnerability in RUGGEDCOM ROS Devices
SIEMENS-SSA-764417
SSA-764417 V1.9 (Last Update: 2025-08-12): Weak Encryption Vulnerability in RUGGEDCOM ROS Devices
2025-08-12
MEDIUM 0 SSA-674084 V1.0: File Parsing Vulnerabilities in Simcenter Femap Before V2506
SIEMENS-SSA-674084
SSA-674084 V1.0: File Parsing Vulnerabilities in Simcenter Femap Before V2506
2025-08-12
MEDIUM 0 SSA-665108 V1.0: Arbitrary File Upload Vulnerability in RUGGEDCOM ROX II
SIEMENS-SSA-665108
SSA-665108 V1.0: Arbitrary File Upload Vulnerability in RUGGEDCOM ROX II
2025-08-12
MEDIUM 0 SSA-529291 V1.0: Information Disclosure Vulnerabilities in SICAM Q100/Q200
SIEMENS-SSA-529291
SSA-529291 V1.0: Information Disclosure Vulnerabilities in SICAM Q100/Q200
2025-08-12
MEDIUM 0 SSA-517338 V1.0: Multiple Vulnerabilities in SINEC Traffic Analyzer Before V3.0
SIEMENS-SSA-517338
SSA-517338 V1.0: Multiple Vulnerabilities in SINEC Traffic Analyzer Before V3.0
2025-08-12
MEDIUM 0 SSA-493787 V1.0: Arbitrary Code Execution Vulnerability in SIMATIC RTLS Locating Manager Before V3.2
SIEMENS-SSA-493787
SSA-493787 V1.0: Arbitrary Code Execution Vulnerability in SIMATIC RTLS Locating Manager Before V3.2
2025-08-12
MEDIUM 0 SSA-460466 V1.1 (Last Update: 2025-08-12): Denial of Service Vulnerability in TIA Project-Server and TIA Portal
SIEMENS-SSA-460466
SSA-460466 V1.1 (Last Update: 2025-08-12): Denial of Service Vulnerability in TIA Project-Server and TIA Portal
2025-08-12
CRITICAL 10.0 SSA-446307 V1.1 (Last Update: 2025-08-12): Authentication Bypass Vulnerability in BMC (CVE-2024-54085) affects SIMATIC IPC RS-828A
SIEMENS-SSA-446307 · 1 CVE
SSA-446307 V1.1 (Last Update: 2025-08-12): Authentication Bypass Vulnerability in BMC (CVE-2024-54085) affects SIMATIC IPC RS-828A
2025-08-12
MEDIUM 0 SSA-400089 V1.0: Denial of Service Vulnerability in SIPROTEC 4 and SIPROTEC 4 Compact
SIEMENS-SSA-400089
SSA-400089 V1.0: Denial of Service Vulnerability in SIPROTEC 4 and SIPROTEC 4 Compact
2025-08-12
MEDIUM 0 SSA-398330 V2.7 (Last Update: 2025-08-12): Vulnerabilities in the additional GNU/Linux subsystem of the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP >= V3.1.0 and < V3.1.5
SIEMENS-SSA-398330
SSA-398330 V2.7 (Last Update: 2025-08-12): Vulnerabilities in the additional GNU/Linux subsystem of the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP >= V3.1.0 and < V3.1.5
2025-08-12
MEDIUM 0 SSA-382999 V1.0: Multiple Vulnerabilities in Opcenter Quality Before V2506
SIEMENS-SSA-382999
SSA-382999 V1.0: Multiple Vulnerabilities in Opcenter Quality Before V2506
2025-08-12
MEDIUM 6.9 SSA-353002 V1.2 (Last Update: 2025-08-12): Multiple Vulnerabilities in SCALANCE XB-200 / XC-200 / XP-200 / XF-200BA / XR-300WG Family
SIEMENS-SSA-353002 · 2 CVEs
SSA-353002 V1.2 (Last Update: 2025-08-12): Multiple Vulnerabilities in SCALANCE XB-200 / XC-200 / XP-200 / XF-200BA / XR-300WG Family
2025-08-12
MEDIUM 0 SSA-256353 V1.6 (Last Update: 2025-08-12): Third-Party Component Vulnerabilities in RUGGEDCOM ROS
SIEMENS-SSA-256353
SSA-256353 V1.6 (Last Update: 2025-08-12): Third-Party Component Vulnerabilities in RUGGEDCOM ROS
2025-08-12
MEDIUM 0 SSA-177847 V1.0: Improper VNC Password Check Vulnerability in SINUMERIK Controllers
SIEMENS-SSA-177847
SSA-177847 V1.0: Improper VNC Password Check Vulnerability in SINUMERIK Controllers
2025-08-12
MEDIUM 0 SSA-170375 V1.1 (Last Update: 2025-08-12): Multiple Vulnerabilities in RUGGEDCOM ROS Before V5.9
SIEMENS-SSA-170375
SSA-170375 V1.1 (Last Update: 2025-08-12): Multiple Vulnerabilities in RUGGEDCOM ROS Before V5.9
2025-08-12
MEDIUM 0 SSA-097435 V1.9 (Last Update: 2025-08-12): Usernames Disclosure Vulnerability in Mendix Runtime
SIEMENS-SSA-097435
SSA-097435 V1.9 (Last Update: 2025-08-12): Usernames Disclosure Vulnerability in Mendix Runtime
2025-08-12
MEDIUM 0 SSA-094954 V1.0: Authentication Bypass Vulnerability in BIST mode of RUGGEDCOM ROX II
SIEMENS-SSA-094954
SSA-094954 V1.0: Authentication Bypass Vulnerability in BIST mode of RUGGEDCOM ROX II
2025-08-12
MEDIUM 0 SSA-725549 V1.3 (Last Update: 2025-07-21): Denial of Service of ICMP in Industrial Devices
SIEMENS-SSA-725549
SSA-725549 V1.3 (Last Update: 2025-07-21): Denial of Service of ICMP in Industrial Devices
2025-07-21
MEDIUM 0 SSA-183963 V1.1 (Last Update: 2025-07-18): Certificate Validation Vulnerabilities in SICAM TOOLBOX II Before V07.11
SIEMENS-SSA-183963
SSA-183963 V1.1 (Last Update: 2025-07-18): Certificate Validation Vulnerabilities in SICAM TOOLBOX II Before V07.11
2025-07-18
MEDIUM 5.3 Siemens SIMOCODE, SIMATIC, SIPLUS, SIDOOR, SIWAREX
ICSA-25-105-03 · 1 CVE
SIDOOR ATD430W, SIDOOR ATE530G COATED (6FB1221-5SM10-7BP0), SIDOOR ATE530S COATED +164 more
2025-07-10
CRITICAL 9.8 Siemens SIMATIC Communication Processor Vulnerability (Update C)
ICSA-15-335-03 · 1 CVE
SIMATIC CP 342-5 (6GK7342-5DA02-0XE0), SIMATIC CP 342-5 (6GK7342-5DA03-0XE0), SIMATIC CP 342-5 FO (6GK7342-5DF00-0XE0) +25 more
2025-07-08
HIGH 7.5 Siemens KTK, SIDOOR, SIMATIC, and SINAMICS (Update D)
ICSA-20-105-08 · 1 CVE
Development/Evaluation Kits for PROFINET IO: EK-ERTEC 200, Development/Evaluation Kits for PROFINET IO: EK-ERTEC 200P, KTK ATE530S +69 more
2025-07-08
HIGH 8.1 Siemens Industrial Products
ICSA-24-256-15 · 1 CVE
Industrial Edge Management OS (IEM-OS), SINAMICS IIoT module, SINEMA Remote Connect Server +1 more
2025-07-08
MEDIUM 6.1 Siemens Mendix Studio Pro
ICSA-25-168-01 · 1 CVE
Mendix Studio Pro 8, Mendix Studio Pro 9, Mendix Studio Pro 10 +4 more
2025-07-08
CRITICAL 9.8 Siemens SINEC NMS
ICSA-25-191-01 · 4 CVEs
SINEC NMS
2025-07-08
HIGH 7.8 Siemens Solid Edge
ICSA-25-191-02 · 3 CVEs
Solid Edge SE2025
2025-07-08
HIGH 7.8 Siemens TIA Administrator
ICSA-25-191-03 · 2 CVEs
TIA Administrator
2025-07-08
MEDIUM 6.5 Siemens SIMATIC CN 4100
ICSA-25-191-04 · 1 CVE
SIMATIC CN 4100
2025-07-08
MEDIUM 5.3 Siemens SIPROTEC 5
ICSA-25-191-06 · 1 CVE
SIPROTEC 5 6MD84 (CP300), SIPROTEC 5 6MD85 (CP300), SIPROTEC 5 6MD86 (CP300) +41 more
2025-07-08
MEDIUM 0 SSA-938066 V1.0: Remote Code Execution Vulnerability in SENTRON Powermanager and Desigo CC
SIEMENS-SSA-938066
SSA-938066 V1.0: Remote Code Execution Vulnerability in SENTRON Powermanager and Desigo CC
2025-07-08
MEDIUM 0 SSA-904646 V1.0: Sensitive Data Exposure Vulnerability in SIPROTEC 5 Devices
SIEMENS-SSA-904646
SSA-904646 V1.0: Sensitive Data Exposure Vulnerability in SIPROTEC 5 Devices
2025-07-08
MEDIUM 0 SSA-763427 V1.6 (Last Update: 2025-07-08): Authentication Bypass Vulnerability in SIMATIC CP and TIM Devices
SIEMENS-SSA-763427
SSA-763427 V1.6 (Last Update: 2025-07-08): Authentication Bypass Vulnerability in SIMATIC CP and TIM Devices
2025-07-08
MEDIUM 0 SSA-634640 V1.1 (Last Update: 2025-07-08): Weak Authentication Vulnerability in Siemens Industrial Edge Devices
SIEMENS-SSA-634640
SSA-634640 V1.1 (Last Update: 2025-07-08): Weak Authentication Vulnerability in Siemens Industrial Edge Devices
2025-07-08
MEDIUM 0 SSA-627195 V1.1 (Last Update: 2025-07-08): Zip Path Traversal Vulnerability in Mendix Studio Pro's Module Installation Process
SIEMENS-SSA-627195
SSA-627195 V1.1 (Last Update: 2025-07-08): Zip Path Traversal Vulnerability in Mendix Studio Pro's Module Installation Process
2025-07-08
MEDIUM 0 SSA-626991 V1.0: Denial of Service Vulnerability in SIMATIC CN 4100 before V4.0
SIEMENS-SSA-626991
SSA-626991 V1.0: Denial of Service Vulnerability in SIMATIC CN 4100 before V4.0
2025-07-08
MEDIUM 0 SSA-593272 V2.5 (Last Update: 2025-07-08): SegmentSmack in Interniche IP-Stack based Industrial Devices
SIEMENS-SSA-593272
SSA-593272 V2.5 (Last Update: 2025-07-08): SegmentSmack in Interniche IP-Stack based Industrial Devices
2025-07-08
MEDIUM 0 SSA-573669 V1.0: Multiple Vulnerabilities in TIA Administrator Before V3.0.6
SIEMENS-SSA-573669
SSA-573669 V1.0: Multiple Vulnerabilities in TIA Administrator Before V3.0.6
2025-07-08
HIGH 8.1 SSA-446545 V1.1 (Last Update: 2025-07-08): Impact of RegreSSHion (CVE-2024-6387) in Siemens Industrial Products
SIEMENS-SSA-446545 · 1 CVE
SSA-446545 V1.1 (Last Update: 2025-07-08): Impact of RegreSSHion (CVE-2024-6387) in Siemens Industrial Products
2025-07-08
MEDIUM 0 SSA-327438 V1.1 (Last Update: 2025-07-08): Multiple Vulnerabilities in SCALANCE LPE9403
SIEMENS-SSA-327438
SSA-327438 V1.1 (Last Update: 2025-07-08): Multiple Vulnerabilities in SCALANCE LPE9403
2025-07-08
MEDIUM 0 SSA-091753 V1.0: Multiple Vulnerabilities in Solid Edge Before SE2025 Update 5
SIEMENS-SSA-091753
SSA-091753 V1.0: Multiple Vulnerabilities in Solid Edge Before SE2025 Update 5
2025-07-08
MEDIUM 0 SSA-078892 V1.0: Multiple Vulnerabilities in SINEC NMS Before V4.0
SIEMENS-SSA-078892
SSA-078892 V1.0: Multiple Vulnerabilities in SINEC NMS Before V4.0
2025-07-08
LOW 2.1 Siemens Sm@rtClient Password Storage Vulnerability
ICSA-15-202-02 · 1 CVE
SIMATIC WinCC Sm@rtClient for Android, SIMATIC WinCC Sm@rtClient Lite for Android
2025-06-25
HIGH 7.8 Siemens SIPROTEC Denial-of-Service Vulnerability
ICSA-15-202-01 · 1 CVE
SIPROTEC 4 and SIPROTEC Compact product families, EN100 Ethernet module
2025-06-25
HIGH 8.3 Siemens SCALANCE X-200 Web Hijack Vulnerability
ICSA-13-254-01 · 1 CVE
SCALANCE X-200 switch Machine-Readable Product Designation (MLFB), SCALANCE X-200 switch Machine-Readable Product Designation (MLFB), SCALANCE X-200 switch Machine-Readable Product Designation (MLFB) +13 more
2025-06-25
HIGH 7.5 Siemens WinCC WebNavigator Multiple Vulnerabilities
ICSA-12-256-01 · 5 CVEs
WebNavigator component of WinCC
2025-06-25
CRITICAL 9.8 Siemens SIMATIC WinCC, PCS 7, and WinCC Runtime Professional Vulnerabilities (Update C)
ICSA-16-208-01C · 2 CVEs
SIMATIC WinCC 7.0 SP2, SIMATIC WinCC 7.0 SP3, SIMATIC WinCC 7.2 +7 more
2025-06-25
MEDIUM 6.8 Siemens SCALANCE X-200IRT Switch Family User Impersonation Vulnerability
ICSA-15-034-01 · 1 CVE
SCALANCE X-200IRT switch family
2025-06-18
MEDIUM 4.3 Ruggedcom ROS Hard-Coded RSA SSL Private Key
ICSA-12-354-01A · 1 CVE
Rugged OS, ROX I OS firmware used by RX1000 and RX1100 series products. ROX I, ROX II OS firmware used by RX5000 and RX1500 series products. ROX II +1 more
2025-06-18
MEDIUM 6.8 Siemens SIMATIC HMI Devices Vulnerabilities (Update E)
ICSA-15-099-01E · 1 CVE
SIMATIC HMI Basic Panels 2nd Generation V13, SIMATIC HMI Comfort Panels V12, SIMATIC HMI Comfort Panels V13 +14 more
2025-06-18
HIGH 8.5 RuggedCom Weak Cryptography for Password Vulnerability
ICSA-12-146-01A · 1 CVE
ROS, ROS
2025-06-17
MEDIUM 0 SSA-426509 V1.1 (Last Update: 2025-06-17): Multiple Local Code Execution Vulnerabilities in Questa and ModelSim
SIEMENS-SSA-426509
SSA-426509 V1.1 (Last Update: 2025-06-17): Multiple Local Code Execution Vulnerabilities in Questa and ModelSim
2025-06-17
MEDIUM 0 SSA-345750 V1.1 (Last Update: 2025-06-16): Default Credentials in Energy Services Using Elspec G5DFR
SIEMENS-SSA-345750
SSA-345750 V1.1 (Last Update: 2025-06-16): Default Credentials in Energy Services Using Elspec G5DFR
2025-06-16
MEDIUM 6.8 Siemens SIMATIC WinCC Vulnerabilities (Update A)
ICSA-14-205-02A · 5 CVEs
SIMATIC WinCC, SIMATIC PCS7 (as WinCC is incorporated)
2025-06-12
HIGH 7.1 Siemens SIMOTICS, Desigo, APOGEE, and TALON
ICSA-20-105-06 · 1 CVE
APOGEE MEC/MBC/PXC (P2), APOGEE PXC Compact (BACnet), APOGEE PXC Compact (P2 Ethernet) +18 more
2025-06-10
CRITICAL 9.8 Siemens TIM 4R-IE Devices
ICSA-21-103-11 · 14 CVEs
SIPLUS NET TIM 4R-IE (6AG1800-4BA00-7AA0), SIPLUS NET TIM 4R-IE DNP3 (6AG1803-4BA00-7AA0), TIM 4R-IE (6NH7800-4BA00) +1 more
2025-06-10
HIGH 7.5 Siemens Sentron Powercenter 1000
ICSA-24-284-12 · 1 CVE
SIRIUS 3RV2921-5M
2025-06-10
CRITICAL 10.0 Siemens RUGGEDCOM APE1808
ICSA-24-338-02 · 18 CVEs
RUGGEDCOM APE1808, RUGGEDCOM APE1808, RUGGEDCOM APE1808 +4 more
2025-06-10
MEDIUM 6.5 Siemens SENTRON Powercenter 1000
ICSA-24-347-10 · 1 CVE
SENTRON Powercenter 1000 (7KN1110-0MC00), SENTRON Powercenter 1100 (7KN1111-0MC00)
2025-06-10
HIGH 7.4 Siemens Teamcenter
ICSA-25-044-07 · 1 CVE
Teamcenter V14.1, Teamcenter V14.2, Teamcenter V14.3 +3 more
2025-06-10
MEDIUM 5.3 Siemens Mendix Runtime
ICSA-25-105-01 · 1 CVE
Mendix Runtime V8, Mendix Runtime V9, Mendix Runtime V10 +3 more
2025-06-10
HIGH 7.8 Siemens Tecnomatix Plant Simulation
ICSA-25-162-01 · 1 CVE
Tecnomatix Plant Simulation V2404
2025-06-10
MEDIUM 4.3 Siemens SCALANCE and RUGGEDCOM
ICSA-25-162-03 · 1 CVE
RUGGEDCOM RST2428P (6GK6242-6PA00), SCALANCE XC316-8 (6GK5324-8TS00-2AC2), SCALANCE XC324-4 (6GK5328-4TS00-2AC2) +38 more
2025-06-10
CRITICAL 9.9 Siemens Energy Services
ICSA-25-162-06 · 1 CVE
Energy Services
2025-06-10
MEDIUM 0 SSA-874353 V1.3 (Last Update: 2025-06-10): Entity Enumeration Vulnerability in Mendix Runtime
SIEMENS-SSA-874353
SSA-874353 V1.3 (Last Update: 2025-06-10): Entity Enumeration Vulnerability in Mendix Runtime
2025-06-10
MEDIUM 0 SSA-656895 V1.3 (Last Update: 2025-06-10): Open Redirect Vulnerability in Teamcenter
SIEMENS-SSA-656895
SSA-656895 V1.3 (Last Update: 2025-06-10): Open Redirect Vulnerability in Teamcenter
2025-06-10
MEDIUM 0 SSA-633269 V1.0: Incorrect Authorization Check Vulnerability in Industrial Communication Devices based on SINEC OS before V3.1
SIEMENS-SSA-633269
SSA-633269 V1.0: Incorrect Authorization Check Vulnerability in Industrial Communication Devices based on SINEC OS before V3.1
2025-06-10
MEDIUM 0 SSA-620799 V1.1 (Last Update: 2025-06-10): Denial of Service Vulnerability During BLE Pairing in SENTRON Powercenter 1000/1100
SIEMENS-SSA-620799
SSA-620799 V1.1 (Last Update: 2025-06-10): Denial of Service Vulnerability During BLE Pairing in SENTRON Powercenter 1000/1100
2025-06-10
MEDIUM 0 SSA-497656 V1.1 (Last Update: 2025-06-10): Multiple NTP Vulnerabilities in TIM 4R-IE Devices
SIEMENS-SSA-497656
SSA-497656 V1.1 (Last Update: 2025-06-10): Multiple NTP Vulnerabilities in TIM 4R-IE Devices
2025-06-10
MEDIUM 0 SSA-486186 V1.0: Out of Bounds Read Vulnerability in Tecnomatix Plant Simulation Before 2404
SIEMENS-SSA-486186
SSA-486186 V1.0: Out of Bounds Read Vulnerability in Tecnomatix Plant Simulation Before 2404
2025-06-10
MEDIUM 0 SSA-354569 V1.5 (Last Update: 2025-06-10): Multiple Vulnerabilities in Palo Alto Networks PAN-OS on RUGGEDCOM APE1808 Devices
SIEMENS-SSA-354569
SSA-354569 V1.5 (Last Update: 2025-06-10): Multiple Vulnerabilities in Palo Alto Networks PAN-OS on RUGGEDCOM APE1808 Devices
2025-06-10
MEDIUM 0 SSA-340240 V1.2 (Last Update: 2025-06-10): Denial of Service Vulnerability in SIRIUS 3RV2921-5M
SIEMENS-SSA-340240
SSA-340240 V1.2 (Last Update: 2025-06-10): Denial of Service Vulnerability in SIRIUS 3RV2921-5M
2025-06-10
MEDIUM 0 SSA-162506 V1.4 (Last Update: 2025-06-10): DHCP Client Vulnerability in SIMOTICS CONNECT 400, Desigo PXC/PXM, APOGEE MEC/MBC/PXC, APOGEE PXC Series, and TALON TC Series
SIEMENS-SSA-162506
SSA-162506 V1.4 (Last Update: 2025-06-10): DHCP Client Vulnerability in SIMOTICS CONNECT 400, Desigo PXC/PXM, APOGEE MEC/MBC/PXC, APOGEE PXC Series, and TALON TC Series
2025-06-10
MEDIUM 5.8 Siemens RuggedCom ROX-based Devices Certificate Verification Vulnerability (Update A)
ICSA-14-135-03A · 1 CVE
ROX 1, ROX 2
2025-06-09
HIGH 7.5 Siemens Industrial Products OpenSSL Heartbleed Vulnerability (Update B)
ICSA-14-105-03B · 1 CVE
eLAN-8.2 eLAN (when RIP is used), WinCC OA only, S7-1500 (when HTTPS active) +2 more
2025-06-09
MEDIUM 4.3 Siemens Ruggedcom WIN Products BEAST Attack Vulnerability
ICSA-14-098-03 · 1 CVE
WIN7000, WIN7200, WIN5100 +1 more
2025-06-09
MEDIUM 5.0 Siemens ROS Improper Input Validation (Update A)
ICSA-14-087-01A · 1 CVE
ROS, ROS v3.11 (for product RS950G), ROS v3.12 +1 more
2025-06-09
HIGH 8.3 Siemens SIMATIC S7-1200 Vulnerabilities
ICSA-14-079-02 · 6 CVEs
SIMATIC S7-1200 CPU family
2025-06-09
HIGH 7.8 Siemens SIMATIC S7-1200 Improper Input Validation Vulnerabilities
ICSA-14-079-01 · 2 CVEs
SIMATIC S7-1200 PLC family
2025-06-09
HIGH 8.3 Siemens SIMATIC S7-1500 CPU Firmware Vulnerabilities
ICSA-14-073-01 · 9 CVEs
SIMATIC S7-1500 CPU family
2025-06-09
HIGH 7.8 Siemens RuggedCom Uncontrolled Resource Consumption Vulnerability (Update B)
ICSA-14-051-03B · 1 CVE
ROS, ROS v3.11 (for product RS950G), ROS v3.12 +1 more
2025-06-09
HIGH 7.5 Siemens SIMATIC WinCC OA Multiple Vulnerabilities
ICSA-14-035-01 · 4 CVEs
SIMATIC WinCC OA
2025-06-09
MEDIUM 4.0 Siemens SCALANCE M-800/S615 Web Vulnerability
ICSA-16-271-01 · 1 CVE
SCALANCE M-800/S615
2025-06-09
MEDIUM 5.3 Siemens SIPROTEC 4 and SIPROTEC Compact Vulnerabilities
ICSA-16-250-01 · 3 CVEs
EN100 Ethernet module (as optional for SIPROTEC 4 and SIPROTEC Compact)
2025-06-09
HIGH 7.3 Siemens SINEMA Server Privilege Escalation Vulnerability (Update A)
ICSA-16-215-02A · 1 CVE
SINEMA Server
2025-06-09
MEDIUM 4.7 Siemens SINEMA Remote Connect Server Cross-site Scripting Vulnerability
ICSA-16-208-03 · 1 CVE
SINEMA Remote Connect Server
2025-06-09
MEDIUM 5.3 Siemens SIMATIC NET PC-Software Denial-of-Service Vulnerability
ICSA-16-208-02 · 1 CVE
SIMATIC NET PC-Software
2025-06-09
LOW 2.5 Siemens SICAM PAS Information Disclosure Vulnerabilities (Update B)
ICSA-16-182-02B · 2 CVEs
SICAM PAS
2025-06-09
LOW 3.7 Siemens SIMATIC WinCC Flexible Weakly Protected Credentials Vulnerability
ICSA-16-161-02 · 1 CVE
SIMATIC WinCC flexible
2025-06-09
HIGH 7.5 Siemens SIMATIC S7-300 Denial-of-Service Vulnerability
ICSA-16-161-01 · 1 CVE
SIMATIC S7-300 CPUs with Profinet support, SIMATIC S7-300 CPUs without Profinet support
2025-06-09
CRITICAL 10.0 Siemens SIMATIC WinCC Vulnerabilities
ICSA-12-030-01A · 12 CVEs
WinCC flexible, WinCC V11 (TIA portal), Multiple SIMATIC HMI panels (TP, OP, MP, Comfort Panels, Mobile Panels) +2 more
2025-06-09
HIGH 7.5 Siemens Automation License Manager Vulnerabilities
ICSA-11-361-01 · 4 CVEs
Automation License Manager, Automation License Manager
2025-06-09
CRITICAL 9.3 Siemens FactoryLink Multiple ActiveX Vulnerabilities
ICSA-11-343-01 · 2 CVEs
Tecnomatix FactoryLink, Tecnomatix FactoryLink, Tecnomatix FactoryLink
2025-06-09
MEDIUM 4.7 Siemens OZW672 and OZW772 XSS Vulnerability
ICSA-16-019-01 · 1 CVE
OZW672, OZW772
2025-06-09
MEDIUM 5.3 Siemens RUGGEDCOM ROX-based Devices NTP Vulnerabilities
ICSA-15-356-01 · 4 CVEs
RUGGEDCOM ROX I, ROX II
2025-06-09
MEDIUM 4.3 Siemens RuggedCom Improper Ethernet Frame Padding Vulnerability
ICSA-15-300-01 · 1 CVE
RuggedCom ROS
2025-06-09
CRITICAL 10.0 Siemens Scalance W-7xx Product Family Multiple Vulnerabilities
ICSA-13-213-01 · 2 CVEs
SCALANCE, SCALANCE, SCALANCE +16 more
2025-06-06
CRITICAL 10.0 Siemens CP 1604 and CP 1616 Improper Access Control
ICSA-13-084-01 · 1 CVE
CP 1604 and CP 1604 Microbox package, CP 1604 and CP 1616 Onboard card of SIMANTIC IPCs
2025-06-06
CRITICAL 10.0 Siemens SIMATIC WinCC, PCS7, and TIA Portal Vulnerabilities
ICSA-14-329-02D · 2 CVEs
SIMATIC WinCC V7.0 SP3 and prior, SIMATIC WinCC V7.2, SIMATIC WinCC V7.3 +4 more
2025-06-06
HIGH 7.1 Siemens SIMATIC S7-1500 CPU Denial of Service
ICSA-14-226-01 · 1 CVE
SIMATIC S7-1500 CPU
2025-06-06
MEDIUM 6.8 Siemens SIMATIC RF Manager ActiveX Buffer Overflow
ICSA-13-014-01 · 1 CVE
SIMATIC RF Manager 2008, SIMATIC RF Manager Basic
2025-06-06
MEDIUM 6.9 Siemens SIMATIC STEP 7 DLL Vulnerability
ICSA-12-205-02 · 1 CVE
SIMATIC STEP 7, SIMATIC PCS 7
2025-06-06
HIGH 7.8 Siemens SIMATIC S7-300 CPU Denial-of-Service Vulnerability
ICSA-15-064-04 · 1 CVE
SIMATIC S7-300 CPU family
2025-06-06
MEDIUM 6.9 Siemens SIMATIC ProSave, SIMATIC CFC, SIMATIC STEP 7, SIMOTION Scout, and STARTER Insufficiently Qualified Paths (Update A)
ICSA-15-064-02A · 1 CVE
SIMATIC ProSave, SIMOTION Scout, STARTER +12 more
2025-06-06
MEDIUM 6.9 Siemens SIMATIC ProSave, SIMATIC CFC, SIMATIC STEP 7, SIMOTION Scout, and STARTER Insufficiently Qualified Paths
ICSA-15-064-02 · 1 CVE
SIMATIC ProSave, SIMOTION Scout, STARTER +12 more
2025-06-06
CRITICAL 10.0 Siemens SIMATIC HMI Basic, SINUMERIK, and Ruggedcom APE GHOST Vulnerability (Update A)
ICSA-15-064-01A · 1 CVE
SINUMERIK 808D, SINUMERIK 828D, SINUMERIK 840D sl +1 more
2025-06-06
CRITICAL 10.0 Siemens SIMATIC HMI Basic, SINUMERIK, and Ruggedcom APE GHOST Vulnerability
ICSA-15-064-01 · 1 CVE
SINUMERIK 808D, SINUMERIK 828D, SINUMERIK 840D sl +1 more
2025-06-06
MEDIUM 6.8 Siemens SIMATIC STEP 7 TIA Portal Vulnerabilities (Update A)
ICSA-15-050-01A · 2 CVEs
SIMATIC STEP 7 (TIA Portal) V13, SIMATIC STEP 7 (TIA Portal) V12
2025-06-06
MEDIUM 6.8 Siemens SIMATIC WinCC TIA Portal Vulnerabilities
ICSA-15-048-02 · 2 CVEs
SIMATIC WinCC TIA Portal
2025-06-06
MEDIUM 4.4 Siemens SIMATIC STEP 7 TIA Portal Vulnerabilities
ICSA-15-048-01 · 2 CVEs
SIMATIC STEP 7 TIA Portal
2025-06-06
CRITICAL 10.0 Siemens Ruggedcom WIN Vulnerability
ICSA-15-034-02 · 3 CVEs
WIN51xx, WIN52xx, WIN70xx +1 more
2025-06-06
MEDIUM 4.3 Siemens SIMATIC S7-1200 CPU Web Vulnerability
ICSA-15-022-01 · 1 CVE
SIMATIC S7-1200 CPU family
2025-06-06
HIGH 7.8 Siemens SCALANCE X-300/X408 Switch Family DOS Vulnerabilities
ICSA-15-020-01 · 2 CVEs
SCALANCE X-300 switch family, SCALANCE X408
2025-06-06
LOW 2.1 Siemens SIMATIC WinCC Sm@rtClient iOS Application Authentication Vulnerabilities
ICSA-15-013-01 · 3 CVEs
SIMATIC WinCC Sm@rtClient, SIMATIC WinCC Sm@rtClient Lite for iOS
2025-06-06
MEDIUM 6.1 Siemens Scalance S Multiple Security Vulnerabilities
ICSA-12-102-05 · 1 CVE
Scalance S602, Scalance S612, Scalance S613
2025-06-06
HIGH 7.8 Siemens Scalance X Buffer Overflow Vulnerability
ICSA-12-102-04 · 1 CVE
Scalance X414-3E, Scalance X308-2M, Scalance X-300EEC +2 more
2025-06-06
MEDIUM 4.3 Siemens RUGGEDCOM ROS and ROX-based Devices TLS POODLE Vulnerability (Update B)
ICSA-15-202-03B · 1 CVE
RUGGEDCOM devices with ROS, RUGGEDCOM devices with ROX II
2025-06-06
CRITICAL 9.3 Siemens SICAM MIC Authentication Bypass Vulnerability
ICSA-15-195-01 · 1 CVE
SICAM MIC
2025-06-06
MEDIUM 4.3 Siemens Climatix BACnet/IP Communication Module Cross-site Scripting Vulnerability
ICSA-15-176-01 · 1 CVE
Climatix BACnet/IP communication module
2025-06-06
MEDIUM 5.8 Siemens SIMATIC S7-1200 CPU Web Vulnerabilities
ICSA-14-114-02 · 2 CVEs
SIMATIC S7-1200 CPU family
2025-06-06
CRITICAL 9.3 Siemens SINEMA Vulnerabilities
ICSA-14-107-01 · 3 CVEs
SINEMA server
2025-06-06
MEDIUM 6.9 Siemens COMOS Privilege Escalation
ICSA-13-347-01 · 1 CVE
COMOS, COMOS 9.2, COMOS 10.0 +1 more
2025-06-06
CRITICAL 10.0 Siemens SINAMICS S/G Authentication Bypass Vulnerability
ICSA-13-338-01 · 1 CVE
SINAMICS S/G family firmware
2025-06-06
CRITICAL 10.0 Siemens SCALANCE X-200 Authentication Bypass Vulnerability
ICSA-13-274-01 · 1 CVE
SCALANCE X-200 switch family firmware, SCALANCE X-200IRT Isochronous Real-Time switch family firmware, SCALANCE X-200 MLFBs +1 more
2025-06-06
HIGH 7.2 Siemens COMOS Privilege Escalation Vulnerability
ICSA-13-233-01 · 1 CVE
COMOS, COMOS 9.1, COMOS 9.2 +1 more
2025-06-06
MEDIUM 6.8 Siemens WinCC TIA Portal Vulnerabilities
ICSA-13-213-02 · 2 CVEs
WinCC (TIA Portal) V11, WinCC (TIA Portal) V12
2025-06-06
MEDIUM 4.3 Siemens RUGGEDCOM ROS IP Forwarding Vulnerability
ICSA-15-244-01 · 1 CVE
ROS
2025-06-06
HIGH 7.5 Siemens SIMATIC S7-1200 CSRF Vulnerability
ICSA-15-239-02 · 1 CVE
SIMATIC S7-1200 CPU family
2025-06-06
HIGH 7.5 Siemens WinCC 7.2 Multiple Vulnerabilities
ICSA-13-169-02 · 3 CVEs
WinCC, SIMATIC PCS7
2025-06-06
MEDIUM 4.6 Siemens COMOS Permissions, Privileges, and Access Controls
ICSA-13-169-03 · 1 CVE
COMOS 9.2, COMOS 10.0
2025-06-06
HIGH 8.0 Siemens Scalance X200 IRT Multiple Vulnerabilities
ICSA-13-169-01 · 2 CVEs
SCALANCE X204IRT, SCALANCE X204IRT PRO, SCALANCE X202-2IRT +6 more
2025-06-06
MEDIUM 6.8 Siemens WinCC 7.0 SP3 Multiple Vulnerabilities
ICSA-13-079-02 · 6 CVEs
WinCC
2025-06-06
CRITICAL 10.0 Siemens SiPass Server Buffer Overflow
ICSA-12-305-01 · 1 CVE
SiPass integrated
2025-06-06
MEDIUM 4.6 Siemens WinCC TIA Portal Vulnerabilities
ICSA-13-079-03 · 7 CVEs
WinCC (TIA Portal) V11
2025-06-06
HIGH 7.8 Siemens SPC Controller Series Denial-of-Service Vulnerability
ICSA-15-064-03 · 1 CVE
SPC4000 series, SPC5000 series, SPC6000 series
2025-06-05
MEDIUM 5.9 Siemens Desigo PX Web Module Insufficient Entropy Vulnerability
ICSA-16-355-01 · 1 CVE
Desigo PX Web module PXA40-W0 firmware for Desigo PX automation controllers PXC00-E.D, Desigo PX Web module PXA40-W0 firmware for Desigo PX automation controllers PXC50-E.D, Desigo PX Web module PXA40-W0 firmware for Desigo PX automation controllers PXC100-E.D +18 more
2025-06-05
MEDIUM 4.2 Siemens SIMATIC WinCC and SIMATIC PCS 7 ActiveX Vulnerability
ICSA-16-348-04 · 1 CVE
SIMATIC WinCC, SIMATIC PCS 7
2025-06-05
HIGH 7.5 Siemens SICAM RTU Devices Denial-of-Service Vulnerability
ICSA-16-299-01 · 1 CVE
SICAM AK SM-2558 extension ETA4 firmware, SICAM TM 1703 SM-2558 extension ETA4 firmware, SICAM BC 1703 SM-2558 extension ETA4 firmware +4 more
2025-06-05
CRITICAL 9.1 Siemens Automation License Manager Vulnerabilities
ICSA-16-287-02 · 3 CVEs
ALM
2025-06-05
HIGH 7.8 Siemens WinCC Insecure SQL Server Authentication
ICSA-12-205-01 · 1 CVE
SIMATIC WinCC, SIMATIC PCS 7
2025-06-05
MEDIUM 4.3 Siemens S7-1200 Web Application Cross Site Scripting
ICSA-12-283-01 · 1 CVE
SIMATIC S7-1200 PLC, SIMATIC S7-1200 PLC, SIMATIC S7-1200 PLC
2025-06-05
HIGH 7.8 Siemens SIMATIC S7-400 PN CPU DoS
ICSA-12-212-02 · 1 CVE
S7-400 CPU family, CPU 412-2 PN (6ES7412-2EK06-0AB0), CPU 414-3 PN/DP (6ES7414-3EM06-0AB0) +3 more
2025-06-05
MEDIUM 4.3 Siemens S7-1200 Insecure Storage of HTTPS CA Certificate
ICSA-12-263-01 · 1 CVE
SIMATIC S7-1200
2025-06-05
LOW 2.5 Siemens SIMATIC STEP 7 (TIA Portal) Information Disclosure Vulnerabilities
ICSA-16-287-03 · 2 CVEs
SIMATIC STEP 7 (TIA Portal)
2025-06-05
HIGH 7.5 Siemens Synco OZW Default Password
ICSA-12-214-01 · 1 CVE
Synco models
2025-06-05
CRITICAL 9.8 Siemens SICAM PAS Vulnerabilities
ICSA-16-336-01A · 4 CVEs
SICAM PAS
2025-06-05
CRITICAL 10.0 Siemens Simatic HMI Authentication Vulnerabilities
ICSA-11-356-01 · 2 CVEs
SIMATIC WinCC flexible RT, SIMATIC WinCC Runtime Advanced, Multiple SIMATIC Panels
2025-06-05
HIGH 8.5 Siemens COMOS Database Privilege Escalation Vulnerability
ICSA-12-227-01 · 1 CVE
COMOS, COMOS Version 9.1, COMOS Version 9.2 +1 more
2025-06-05
MEDIUM 5.8 Siemens WinCC Multiple Vulnerabilities
ICSA-12-158-01 · 5 CVEs
Siemens WinCC
2025-06-05
CRITICAL 9.3 Siemens WinCC Flexible Runtime Heap Overflow
ICSA-11-244-01 · 1 CVE
Siemens SIMATIC WinCC flexible Runtime, Siemens SIMATIC WinCC (TIA Portal) Runtime Advanced
2025-06-05
MEDIUM 5.3 Siemens SIPROTEC Information Disclosure Vulnerabilities (Update B)
ICSA-16-140-02 · 2 CVEs
EN100 Ethernet module included in SIPROTEC 4, EN100 Ethernet module included in SIPROTEC Compact, SIPROTEC Compact model 7SJ80 with Ethernet Service Interface on Port A Firmware +3 more
2025-06-05
MEDIUM 4.0 Siemens Industrial Products DROWN Vulnerability (Update C)
ICSA-16-103-03C · 1 CVE
SCALANCE X300 family, SCALANCE X414, SCALANCE X200 IRT family +3 more
2025-06-05
MEDIUM 5.3 Siemens SCALANCE S613 Denial-of-Service Vulnerability
ICSA-16-103-02 · 1 CVE
SCALANCE S613 (MLFB 6GK5613-0BA00-2AA3)
2025-06-05
HIGH 8.1 Siemens Industrial Products glibc Library Vulnerability (Update C)
ICSA-16-103-01C · 1 CVE
ROX II, APE (Linux), SINEMA Remote Connect +2 more
2025-06-05
LOW 3.4 Siemens APOGEE Insight Incorrect File Permissions Vulnerability (Update A)
ICSA-16-082-01A · 1 CVE
APOGEE Insight
2025-06-05
MEDIUM 6.5 Siemens SIMATIC S7-1200 CPU Protection Mechanism Failure
ICSA-16-075-01 · 1 CVE
SIMATIC S7-1200 CPU family
2025-06-05
HIGH 7.5 Siemens SIMATIC S7-1500 CPU Vulnerabilities
ICSA-16-040-02 · 2 CVEs
SIMATIC S7-1500 CPU family
2025-06-05
MEDIUM 0 SSA-041082 V1.0: Out of Bounds Read Vulnerability in SiPass Integrated Before V2.95.3.18
SIEMENS-SSA-041082
SSA-041082 V1.0: Out of Bounds Read Vulnerability in SiPass Integrated Before V2.95.3.18
2025-05-23
MEDIUM 5.5 Siemens Siveillance Video
ICSA-25-140-05 · 1 CVE
Siveillance Video
2025-05-14
MEDIUM 0 SSA-556937 V1.1 (Last Update: 2025-05-14): Multiple Vulnerabilities in VersiCharge AC Series EV Chargers
SIEMENS-SSA-556937
SSA-556937 V1.1 (Last Update: 2025-05-14): Multiple Vulnerabilities in VersiCharge AC Series EV Chargers
2025-05-14
MEDIUM 0 SSA-552330 V1.0: System Configuration Password Reset in Siveillance Video V2024 R1
SIEMENS-SSA-552330
SSA-552330 V1.0: System Configuration Password Reset in Siveillance Video V2024 R1
2025-05-14
HIGH 8.1 Siemens RUGGEDCOM ROS
ICSA-21-194-10 · 1 CVE
RUGGEDCOM i800, RUGGEDCOM i801, RUGGEDCOM i802 +68 more
2025-05-13
HIGH 7.5 Siemens APOGEE, TALON and Desigo PXC/PXM Products
ICSA-22-286-12 · 1 CVE
APOGEE MBC (PPC) (BACnet), APOGEE MBC (PPC) (P2 Ethernet), APOGEE MEC (PPC) (BACnet) +20 more
2025-05-13
CRITICAL 9.8 Siemens RUGGEDCOM APE1808
ICSA-24-102-04 · 25 CVEs
RUGGEDCOM APE1808, RUGGEDCOM APE1808, RUGGEDCOM APE1808
2025-05-13
HIGH 8.6 Siemens Automation License Manager
ICSA-24-256-06 · 1 CVE
Automation License Manager V5, Automation License Manager V6.0, Automation License Manager V6.2
2025-05-13
CRITICAL 9.8 Siemens Industrial Edge Device Kit
ICSA-25-105-02 · 1 CVE
Industrial Edge Device Kit - arm64 V1.17, Industrial Edge Device Kit - arm64 V1.18, Industrial Edge Device Kit - arm64 V1.19 +7 more
2025-05-13
HIGH 8.7 Siemens INTRALOG WMS
ICSA-25-135-02 · 8 CVEs
INTRALOG WMS
2025-05-13
MEDIUM 6.5 Siemens BACnet ATEC Devices
ICSA-25-135-03 · 1 CVE
BACnet ATEC 550-440, BACnet ATEC 550-441, BACnet ATEC 550-445 +1 more
2025-05-13
HIGH 7.5 Siemens Desigo
ICSA-25-135-04 · 1 CVE
Desigo CC, Desigo CC
2025-05-13
HIGH 7.8 Siemens Teamcenter Visualization
ICSA-25-135-06 · 1 CVE
Teamcenter Visualization V14.3, Teamcenter Visualization V2312, Teamcenter Visualization V2406 +1 more
2025-05-13
HIGH 8.8 Siemens VersiCharge AC Series EV Chargers
ICSA-25-135-08 · 2 CVEs
IEC 1Ph 7.4kW Child socket (8EM1310-2EH04-0GA0), IEC 1Ph 7.4kW Child socket (8EM1310-2EH04-0GA0), IEC 1Ph 7.4kW Child socket/ shutter (8EM1310-2EN04-0GA0) +71 more
2025-05-13
CRITICAL 10.0 Siemens OZW Web Servers
ICSA-25-135-10 · 2 CVEs
OZW672, OZW672, OZW772 +1 more
2025-05-13
MEDIUM 6.5 Siemens Polarion
ICSA-25-135-11 · 4 CVEs
Polarion V2310, Polarion V2404, Polarion V2404
2025-05-13
HIGH 8.8 Siemens SIMATIC PCS
ICSA-25-135-12 · 1 CVE
SIMATIC PCS neo V4.1, SIMATIC PCS neo V5.0
2025-05-13
HIGH 7.5 Siemens SIRIUS
ICSA-25-135-13 · 3 CVEs
SIRIUS 3RK3 Modular Safety System (MSS), SIRIUS Safety Relays 3SK2
2025-05-13
MEDIUM 4.7 Siemens APOGEE PXC and TALON TC Series
ICSA-25-135-14 · 1 CVE
APOGEE PXC+TALON TC Series (BACnet)
2025-05-13
MEDIUM 6.5 Siemens MS/TP Point Pickup Module
ICSA-25-135-16 · 1 CVE
MS/TP Point Pickup Module
2025-05-13
HIGH 7.8 Siemens SCALANCE LPE9403
ICSA-25-135-18 · 12 CVEs
SCALANCE LPE9403 (6GK5998-3GS00-2AC2), SCALANCE LPE9403 (6GK5998-3GS00-2AC2)
2025-05-13
HIGH 7.5 Siemens SiPass Integrated
ICSA-25-148-02 · 1 CVE
SiPass integrated
2025-05-13
MEDIUM 0 SSA-935500 V1.3 (Last Update: 2025-05-13): Denial of Service Vulnerability in FTP Server of Nucleus RTOS based APOGEE, TALON and Desigo PXC/PXM Products
SIEMENS-SSA-935500
SSA-935500 V1.3 (Last Update: 2025-05-13): Denial of Service Vulnerability in FTP Server of Nucleus RTOS based APOGEE, TALON and Desigo PXC/PXM Products
2025-05-13
MEDIUM 0 SSA-901508 V1.0: Multiple Vulnerabilities in INTRALOG WMS Before V5
SIEMENS-SSA-901508
SSA-901508 V1.0: Multiple Vulnerabilities in INTRALOG WMS Before V5
2025-05-13
MEDIUM 0 SSA-828116 V1.0: Denial of Service Vulnerability in BACnet ATEC Devices
SIEMENS-SSA-828116
SSA-828116 V1.0: Denial of Service Vulnerability in BACnet ATEC Devices
2025-05-13
MEDIUM 0 SSA-819629 V1.2 (Last Update: 2025-05-13): Weak Authentication Vulnerability in Industrial Edge Device Kit
SIEMENS-SSA-819629
SSA-819629 V1.2 (Last Update: 2025-05-13): Weak Authentication Vulnerability in Industrial Edge Device Kit
2025-05-13
MEDIUM 0 SSA-718393 V1.0: Partial Denial of Service Vulnerability in APOGEE PXC and TALON TC Series (BACnet) Devices
SIEMENS-SSA-718393
SSA-718393 V1.0: Partial Denial of Service Vulnerability in APOGEE PXC and TALON TC Series (BACnet) Devices
2025-05-13
MEDIUM 0 SSA-668154 V1.0: Denial of Service Vulnerability in MS/TP Point Pickup Module
SIEMENS-SSA-668154
SSA-668154 V1.0: Denial of Service Vulnerability in MS/TP Point Pickup Module
2025-05-13
MEDIUM 0 SSA-542540 V1.0: Out of Bounds Read Vulnerability in Teamcenter Visualization
SIEMENS-SSA-542540
SSA-542540 V1.0: Out of Bounds Read Vulnerability in Teamcenter Visualization
2025-05-13
MEDIUM 0 SSA-523418 V1.0: Information Disclosure Vulnerability in Desigo CC
SIEMENS-SSA-523418
SSA-523418 V1.0: Information Disclosure Vulnerability in Desigo CC
2025-05-13
MEDIUM 0 SSA-455250 V1.6 (Last Update: 2025-05-13): Multiple Vulnerabilities in Palo Alto Networks Virtual NGFW on RUGGEDCOM APE1808 Devices Before V11.1.2-h3
SIEMENS-SSA-455250
SSA-455250 V1.6 (Last Update: 2025-05-13): Multiple Vulnerabilities in Palo Alto Networks Virtual NGFW on RUGGEDCOM APE1808 Devices Before V11.1.2-h3
2025-05-13
MEDIUM 0 SSA-339086 V1.0: Insufficient Session Expiration Vulnerability in SIMATIC PCS neo
SIEMENS-SSA-339086
SSA-339086 V1.0: Insufficient Session Expiration Vulnerability in SIMATIC PCS neo
2025-05-13
MEDIUM 0 SSA-222768 V1.0: Multiple Vulnerabilities in SIRIUS 3SK2 Safety Relays and 3RK3 Modular Safety Systems
SIEMENS-SSA-222768
SSA-222768 V1.0: Multiple Vulnerabilities in SIRIUS 3SK2 Safety Relays and 3RK3 Modular Safety Systems
2025-05-13
MEDIUM 0 SSA-162255 V1.0: Multiple Vulnerabilities in Polarion Before V2410
SIEMENS-SSA-162255
SSA-162255 V1.0: Multiple Vulnerabilities in Polarion Before V2410
2025-05-13
MEDIUM 0 SSA-103653 V1.1 (Last Update: 2025-05-13): Denial-of-Service Vulnerability in Automation License Manager
SIEMENS-SSA-103653
SSA-103653 V1.1 (Last Update: 2025-05-13): Denial-of-Service Vulnerability in Automation License Manager
2025-05-13
MEDIUM 0 SSA-047424 V1.0: Code Execution and SQL Injection Vulnerabilities in OZW Web Servers
SIEMENS-SSA-047424
SSA-047424 V1.0: Code Execution and SQL Injection Vulnerabilities in OZW Web Servers
2025-05-13
HIGH 8.2 Siemens OPC UA Protocol Stack Discovery Service (Update E)
ICSA-17-243-01 · 1 CVE
SIMATIC IT Production Suite, SIMATIC NET PC Software V14, SIMATIC PCS 7 +3 more
2025-05-06
CRITICAL 9.8 Siemens Desigo PXC (Update C)
ICSA-18-025-02B · 1 CVE
Desigo PXC00-E.D V4.10, Desigo PXC00-E.D V5.00, Desigo PXC00-E.D V5.10 +41 more
2025-05-06
HIGH 7.5 Siemens SIPROTEC 4, SIPROTEC Compact, DIGSI 4, and EN100 Ethernet Module (Update D)
ICSA-18-067-01 · 2 CVEs
DIGSI 4, EN100 Ethernet module DNP3 variant, EN100 Ethernet module IEC 104 variant +12 more
2025-05-06
HIGH 7.5 Siemens SIMATIC PCS 7, SIMATIC WinCC, SIMATIC WinCC Runtime Professional, and SIMATIC NET PC Software (Update G)
ICSA-18-088-03 · 1 CVE
OpenPCS 7 V7.1 and earlier, OpenPCS 7 V8.0, OpenPCS 7 V8.1 +24 more
2025-05-06
HIGH 7.5 Siemens SIMATIC, SIMOCODE, SINAMICS, SITOP, and TIM (Update I)
ICSA-19-099-06 · 1 CVE
SIMATIC CP 1604 (6GK1160-4AA01), SIMATIC CP 1616 (6GK1161-6AA02), SIMATIC CP 343-1 Advanced (6GK7343-1GX31-0XE0) +83 more
2025-05-06
HIGH 7.5 Siemens Industrial Real-Time (IRT) Devices
ICSA-19-283-01 · 1 CVE
Development/Evaluation Kits for PROFINET IO: DK Standard Ethernet Controller, Development/Evaluation Kits for PROFINET IO: EK-ERTEC 200, Development/Evaluation Kits for PROFINET IO: EK-ERTEC 200P +87 more
2025-05-06
LOW 3.7 Siemens SIMATIC Products (Update C)
ICSA-19-344-04 · 1 CVE
SIMATIC CP 1626, SIMATIC HMI Panel (incl. SIPLUS variants), SIMATIC NET PC Software V14 +7 more
2025-05-06
CRITICAL 9.8 Siemens SPPA-T3000 (Update A)
ICSA-19-351-02 · 54 CVEs
SPPA-T3000 Application Server, SPPA-T3000 MS3000 Migration Server
2025-05-06
HIGH 7.5 Siemens Industrial Products SNMP (Update F)
ICSA-20-042-02 · 2 CVEs
IE/PB link PN IO (6GK1411-5AB10), SCALANCE S602, SCALANCE S612 +16 more
2025-05-06
HIGH 7.5 Siemens SCALANCE S-600 (Update B)
ICSA-20-042-10 · 3 CVEs
SCALANCE S602, SCALANCE S612, SCALANCE S623 +1 more
2025-05-06
HIGH 7.5 Siemens SCALANCE and SIMATIC (Update H)
ICSA-20-105-07 · 1 CVE
SCALANCE X200-4P IRT (6GK5200-4AH00-2BA3), SCALANCE X201-3P IRT (6GK5201-3BH00-2BA3), SCALANCE X201-3P IRT PRO (6GK5201-3JR00-2BA6) +112 more
2025-05-06
HIGH 7.8 Siemens SIMATIC, SINAMICS (Update C)
ICSA-20-161-05 · 2 CVEs
SIMATIC PCS 7 V8.2 and earlier, SIMATIC PCS 7 V9.0, SIMATIC PDM +2 more
2025-05-06
MEDIUM 6.5 Siemens SIMATIC HMI Products (Update A)
ICSA-20-252-06 · 2 CVEs
SIMATIC HMI Basic Panels 2nd Generation (incl. SIPLUS variants), SIMATIC HMI Comfort Panels (incl. SIPLUS variants), SIMATIC HMI Mobile Panels +1 more
2025-05-06
MEDIUM 5.5 Siemens Industrial Products (Update F)
ICSA-20-252-07 · 1 CVE
SIMATIC Field PG M4, SIMATIC Field PG M5, SIMATIC Field PG M6 +22 more
2025-05-06
MEDIUM 6.5 Siemens Embedded TCP/IP Stack Vulnerabilities-AMNESIA:33 (Update C)
ICSA-20-343-05 · 1 CVE
SENTRON 3VA COM100/800, SENTRON 3VA DSP800, SENTRON PAC2200 (without MID Approval) +4 more
2025-05-06
CRITICAL 9.8 Siemens Products using TightVNC (Update A)
ICSA-20-343-08 · 4 CVEs
SIMATIC HMI Comfort Outdoor Panels 7" & 15" (incl. SIPLUS variants), SIMATIC HMI Comfort Panels 4" - 22" (incl. SIPLUS variants), SIMATIC HMI KTP Mobile Panels KTP400F, KTP700, KTP700F, KTP900 and KTP900F +8 more
2025-05-06
CRITICAL 9.8 Siemens SCALANCE X Products (Update B)
ICSA-21-012-05 · 3 CVEs
SCALANCE X-200 switch family (incl. SIPLUS NET variants), SCALANCE X-200IRT switch family (incl. SIPLUS NET variants), SCALANCE X-300 switch family (incl. X408 and SIPLUS NET variants)
2025-05-06
MEDIUM 4.0 dnsmasq by Simon Kelley (Update A)
ICSA-21-019-01 · 3 CVEs
RUGGEDCOM RM1224, SCALANCE M-800, SCALANCE S615 +2 more
2025-05-06
HIGH 7.8 Siemens TIA Administrator (Update A)
ICSA-21-040-05 · 1 CVE
PCS neo (Administration Console), TIA Portal
2025-05-06
HIGH 7.8 ICSA-21-040-06_Siemens JT2Go and Teamcenter Visualization (Update A)
ICSA-21-040-06 · 5 CVEs
JT2Go, Teamcenter Visualization
2025-05-06
HIGH 7.8 Open Design Alliance Drawings SDK (Update A)
ICSA-21-047-01 · 18 CVEs
JT2Go, Teamcenter Visualization
2025-05-06
HIGH 8.6 Siemens SCALANCE and RUGGEDCOM Devices SSH (Update A)
ICSA-21-068-02 · 1 CVE
RUGGEDCOM RM1224, SCALANCE M-800, SCALANCE S615 +1 more
2025-05-06
HIGH 8.8 Siemens SCALANCE and RUGGEDCOM Devices (Update A)
ICSA-21-068-03 · 1 CVE
RUGGEDCOM RM1224, SCALANCE M-800, SCALANCE S615 +8 more
2025-05-06
MEDIUM 6.5 Siemens TCP/IP Stack Vulnerabilities-AMNESIA:33 in SENTRON PAC / 3VA Devices (Update C)
ICSA-21-068-06 · 2 CVEs
SENTRON 3VA COM100/800, SENTRON 3VA DSP800, SENTRON PAC2200 (with CLP Approval) +6 more
2025-05-06
HIGH 7.8 Siemens Solid Edge File Parsing
ICSA-21-068-09 · 4 CVEs
Solid Edge SE2020, Solid Edge SE2021, Solid Edge SE2021
2025-05-06
HIGH 8.1 Siemens Nucleus Products DNS Module (Update A)
ICSA-21-103-04 · 2 CVEs
Nucleus NET, Nucleus Source Code
2025-05-06
HIGH 7.8 Siemens Solid Edge File Parsing (Update A)
ICSA-21-103-06 · 5 CVEs
Solid Edge SE2020, Solid Edge SE2020, Solid Edge SE2021
2025-05-06
CRITICAL 9.8 Siemens Web Server of SCALANCE X200 (Update A)
ICSA-21-103-07 · 2 CVEs
SCALANCE X200-4P IRT, SCALANCE X201-3P IRT, SCALANCE X201-3P IRT PRO +26 more
2025-05-06
HIGH 7.5 Siemens SINEMA Remote Connect Server
ICSA-21-103-08 · 2 CVEs
SINEMA Remote Connect Server
2025-05-06
HIGH 7.8 Siemens Tecnomatix RobotExpert
ICSA-21-103-12 · 1 CVE
Tecnomatix RobotExpert
2025-05-06
MEDIUM 6.5 Siemens SIMOTICS CONNECT 400 (Update A)
ICSA-21-103-13 · 4 CVEs
SIMOTICS CONNECT 400, SIMOTICS CONNECT 400
2025-05-06
MEDIUM 5.3 Siemens Nucleus DNS (Update A)
ICSA-21-103-14 · 1 CVE
Nucleus NET, Nucleus ReadyStart V3, Nucleus Source Code
2025-05-06
CRITICAL 9.9 Siemens and Milestone Siveillance Video Open Network Bridge
ICSA-21-103-15 · 1 CVE
Siveillance Video Open Network Bridge, Siveillance Video Open Network Bridge, Siveillance Video Open Network Bridge +5 more
2025-05-06
HIGH 8.1 Siemens Mendix
ICSA-21-110-07 · 1 CVE
Mendix Applications using Mendix 7, Mendix Applications using Mendix 8, Mendix Applications using Mendix 8 (V8.6) +2 more
2025-05-06
CRITICAL 9.8 Siemens SINAMICS Medium Voltage Products Remote Access (Update B)
ICSA-21-131-04 · 14 CVEs
SINAMICS GH150, SINAMICS GL150 (with option X30), SINAMICS GM150 (with option X30) +5 more
2025-05-06
MEDIUM 4.3 Siemens Mendix Database Replication Module
ICSA-21-131-05 · 1 CVE
Mendix Database Replication
2025-05-06
MEDIUM 5.3 Siemens SNMP Implementation of WinCC Runtime
ICSA-21-131-06 · 1 CVE
SIMATIC HMI Comfort Panels 1st Generation (incl. SIPLUS variants), SIMATIC HMI KTP Mobile Panels
2025-05-06
HIGH 7.5 Siemens SIMATIC NET CP343-1
ICSA-21-131-07 · 1 CVE
SIMATIC NET CP 343-1 Advanced (incl. SIPLUS variants), SIMATIC NET CP 343-1 Lean (incl. SIPLUS variants), SIMATIC NET CP 343-1 Standard (incl. SIPLUS variants)
2025-05-06
HIGH 7.8 Siemens Tecnomatix Plant Simulation
ICSA-21-131-08 · 3 CVEs
Tecnomatix Plant Simulation
2025-05-06
MEDIUM 4.3 Siemens Mendix Excel Importer Module
ICSA-21-131-09 · 1 CVE
Mendix Excel Importer Module
2025-05-06
HIGH 7.5 Siemens SCALANCE XM-400 and XR-500 Devices
ICSA-21-131-10 · 1 CVE
SCALANCE XM-400 Family, SCALANCE XR-500 Family
2025-05-06
CRITICAL 9.8 Siemens SIMATIC UltraVNC HMI WinCC Products
ICSA-21-131-11 · 10 CVEs
SIMATIC HMI Comfort Outdoor Panels 7" & 15" (incl. SIPLUS variants), SIMATIC HMI Comfort Panels 4" - 22" (incl. SIPLUS variants), SIMATIC HMI KTP Mobile Panels KTP400F, KTP700, KTP700F, KTP900 and KTP900F +1 more
2025-05-06
CRITICAL 9.8 Siemens SIMATIC SmartVNC HMI WinCC Products (Update B)
ICSA-21-131-12 · 7 CVEs
SIMATIC HMI Comfort Outdoor Panels V15 7" & 15" (incl. SIPLUS variants), SIMATIC HMI Comfort Outdoor Panels V16 7" & 15" (incl. SIPLUS variants), SIMATIC HMI Comfort Panels V15 4" - 22" (incl. SIPLUS variants) +5 more
2025-05-06
CRITICAL 9.8 Siemens SCALANCE W1750D (Update B)
ICSA-21-131-14 · 21 CVEs
SCALANCE W1750D, SCALANCE W1750D
2025-05-06
HIGH 7.8 Siemens SIMATIC S7-1500
ICSA-21-131-15 · 2 CVEs
SIMATIC S7-1500 CPU 1518-4 PN/DP MFP (MLFB: 6ES7518-4AX00-1AC0, 6AG1518-4AX00-4AC0, incl. SIPLUS variant), SIMATIC S7-1500 CPU 1518F-4 PN/DP MFP
2025-05-06
HIGH 8.1 Siemens SIMATIC S7-1200 and S7-1500 CPU Families (Update A)
ICSA-21-152-01 · 1 CVE
SIMATIC Drive Controller family, SIMATIC ET 200SP Open Controller CPU 1515SP PC2 (incl. SIPLUS variants), SIMATIC ET 200SP Open Controller CPU 1515SP PC (incl. SIPLUS variants) +4 more
2025-05-06
HIGH 8.1 Siemens Mendix SAML Module
ICSA-21-159-07 · 1 CVE
Mendix SAML Module
2025-05-06
HIGH 7.5 Siemens TIM 1531 IRC
ICSA-21-159-08 · 1 CVE
TIM 1531 IRC (incl. SIPLUS NET variants)
2025-05-06
HIGH 7.8 Siemens Solid Edge
ICSA-21-159-09 · 2 CVEs
Solid Edge SE2020, Solid Edge SE2021
2025-05-06
HIGH 7.5 Siemens SIMATIC TIM libcurl
ICSA-21-159-10 · 2 CVEs
SIMATIC TIM 1531 IRC (incl. SIPLUS NET variants)
2025-05-06
CRITICAL 9.8 Siemens SIMATIC NET CP 443-1 OPC UA
ICSA-21-159-11 · 15 CVEs
SIMATIC CP 443-1 OPC UA
2025-05-06
HIGH 7.8 Siemens Simcenter Femap
ICSA-21-159-12 · 2 CVEs
Simcenter Femap 2020.2, Simcenter Femap 2021.1
2025-05-06
HIGH 7.5 Siemens SIMATIC RFID (Update B)
ICSA-21-159-13 · 1 CVE
SIMATIC Reader RF610R CMIIT, SIMATIC Reader RF610R ETSI, SIMATIC Reader RF610R FCC +22 more
2025-05-06
HIGH 7.8 Siemens JT2Go and Teamcenter Visualization
ICSA-21-159-14 · 1 CVE
JT2Go, Teamcenter Visualization
2025-05-06
HIGH 7.4 Siemens SINUMERIK Integrate Operate Client
ICSA-21-194-04 · 1 CVE
SINUMERIK Analyse MyCondition, SINUMERIK Analyze MyPerformance, SINUMERIK Analyze MyPerformance /OEE-Monitor +17 more
2025-05-06
HIGH 7.8 Siemens SIMATIC Software Products
ICSA-21-194-05 · 1 CVE
SIMATIC PCS 7 V8.2 and earlier, SIMATIC PCS 7 V9.0, SIMATIC PDM +2 more
2025-05-06
HIGH 7.8 Siemens Solid Edge
ICSA-21-194-08 · 4 CVEs
Solid Edge SE2021
2025-05-06
MEDIUM 5.5 Siemens JT Utilities
ICSA-21-194-09 · 3 CVEs
JT Utilities
2025-05-06
MEDIUM 6.1 Siemens Teamcenter Active Workspace
ICSA-21-194-11 · 3 CVEs
Teamcenter Active Workspace V4, Teamcenter Active Workspace V5.0, Teamcenter Active Workspace V5.1
2025-05-06
MEDIUM 6.5 Siemens RWG Universal Controllers
ICSA-21-194-14 · 1 CVE
RWG1.M8, RWG1.M12, RWG1.M12D
2025-05-06
MEDIUM 5.3 Siemens Mendix
ICSA-21-194-16 · 1 CVE
Mendix Applications using Mendix 7, Mendix Applications using Mendix 8, Mendix Applications using Mendix 9
2025-05-06
HIGH 8.1 Siemens SINUMERIK ONE and SINUMERIK MC (Update A)
ICSA-21-194-17 · 1 CVE
SINUMERIK MC, SINUMERIK ONE
2025-05-06
CRITICAL 9.1 Wibu-Systems CodeMeter Runtime
ICSA-21-210-02 · 2 CVEs
PSS(R)CAPE, SICAM 230, SIMATIC Information Server +7 more
2025-05-06
HIGH 7.8 Siemens JT2Go and Teamcenter Visualization products
ICSA-21-222-01 · 7 CVEs
JT2Go, Teamcenter Visualization
2025-05-06
MEDIUM 5.9 Siemens Automation License Manager
ICSA-21-222-02 · 1 CVE
Automation License Manager 5, Automation License Manager 6
2025-05-06
HIGH 7.8 Siemens JT2Go and Teamcenter Visualization (Update A)
ICSA-21-222-03 · 3 CVEs
JT2Go, Teamcenter Visualization
2025-05-06
HIGH 7.2 Siemens SINEC NMS
ICSA-21-222-04 · 1 CVE
SINEC NMS
2025-05-06
CRITICAL 9.8 Siemens Energy AGT and SGT Solutions
ICSA-21-222-06 · 1 CVE
SGT-100, SGT-200, SGT-300 +4 more
2025-05-06
HIGH 8.1 Siemens SIMATIC S7-1200 (Update A)
ICSA-21-222-09 · 1 CVE
SIMATIC S7-1200 CPU family (incl. SIPLUS variants)
2025-05-06
LOW 3.3 Siemens Simcenter Femap
ICSA-21-257-04 · 1 CVE
Simcenter Femap V2020.2, Simcenter Femap V2021.1
2025-05-06
HIGH 7.8 Siemens Simcenter STAR-CCM+ Viewer
ICSA-21-257-05 · 1 CVE
Simcenter STAR-CCM+ Viewer
2025-05-06
CRITICAL 9.8 Siemens APOGEE and TALON
ICSA-21-257-07 · 1 CVE
APOGEE MBC (PPC) (P2 Ethernet), APOGEE MEC (PPC) (P2 Ethernet), APOGEE PXC Compact (BACnet) +5 more
2025-05-06
HIGH 7.2 Siemens Teamcenter
ICSA-21-257-08 · 3 CVEs
Teamcenter V12.4, Teamcenter V13.0, Teamcenter V13.1 +1 more
2025-05-06
HIGH 7.8 Siemens NX
ICSA-21-257-09 · 2 CVEs
NX 1980 Series
2025-05-06
CRITICAL 9.8 Siemens SIPROTEC 5 relays (Update A)
ICSA-21-257-10 · 2 CVEs
SIPROTEC 5 relays with CPU variants CP050, SIPROTEC 5 relays with CPU variants CP100, SIPROTEC 5 relays with CPU variants CP300
2025-05-06
HIGH 7.3 Siemens SIMATIC RFID
ICSA-21-257-11 · 1 CVE
SIMATIC RF350M, SIMATIC RF650M
2025-05-06
MEDIUM 4.7 Siemens SINEMA Server
ICSA-21-257-12 · 1 CVE
SINEMA Server
2025-05-06
MEDIUM 5.4 Siemens LOGO! CMR and SIMATIC RTU 3000 (Update A)
ICSA-21-257-13 · 1 CVE
LOGO! CMR2020, LOGO! CMR2040, SIMATIC RTU3010C +3 more
2025-05-06
HIGH 8.8 Siemens SINEC NMS
ICSA-21-257-14 · 2 CVEs
SINEC NMS
2025-05-06
HIGH 7.5 Siemens SIMATIC NET CP Modules
ICSA-21-257-15 · 1 CVE
SIMATIC CP 343-1 (incl. SIPLUS variants), SIMATIC CP 343-1 Advanced (incl. SIPLUS variants), SIMATIC CP 343-1 ERPC (6GK7343-1FX00-0XE0) +6 more
2025-05-06
HIGH 7.5 Siemens SIPROTEC 5 (Update A)
ICSA-21-257-16 · 1 CVE
SIPROTEC 5 relays with CPU variants CP050, SIPROTEC 5 relays with CPU variants CP100, SIPROTEC 5 relays with CPU variants CP300
2025-05-06
CRITICAL 10.0 Siemens Desigo CC Family
ICSA-21-257-17 · 1 CVE
Cerberus DMS V4.0, Cerberus DMS V4.1, Cerberus DMS V4.2 +9 more
2025-05-06
CRITICAL 10.0 Siemens Siveillance OIS
ICSA-21-257-18 · 1 CVE
Desigo CC, GMA-Manager, Operation Scheduler +2 more
2025-05-06
HIGH 7.4 Siemens SINEMA Remote Connect Server
ICSA-21-257-19 · 6 CVEs
SINEMA Remote Connect Server
2025-05-06
MEDIUM 4.5 Siemens Teamcenter Active Workspace
ICSA-21-257-22 · 1 CVE
Teamcenter Active Workspace V4.3, Teamcenter Active Workspace V5.0, Teamcenter Active Workspace V5.1 +1 more
2025-05-06
MEDIUM 5.3 Siemens SIMATIC and TIM
ICSA-21-257-23 · 1 CVE
SIMATIC Drive Controller family, SIMATIC ET 200SP Open Controller CPU 1515SP PC2 (incl. SIPLUS variants), SIMATIC S7 PLCSIM Advanced +4 more
2025-05-06
HIGH 8.8 Siemens RUGGEDCOM ROX (Update A)
ICSA-21-259-01 · 3 CVEs
RUGGEDCOM ROX MX5000, RUGGEDCOM ROX RX1400, RUGGEDCOM ROX RX1500 +7 more
2025-05-06
HIGH 7.5 Siemens SINUMERIK
ICSA-21-287-04 · 1 CVE
SINUMERIK 808D, SINUMERIK 828D
2025-05-06
HIGH 8.8 Siemens SINEC NMS
ICSA-21-287-05 · 15 CVEs
SINEC NMS
2025-05-06
HIGH 7.8 Siemens Solid Edge
ICSA-21-287-06 · 10 CVEs
Solid Edge SE2021
2025-05-06
HIGH 7.5 Siemens RUGGEDCOM ROX Devices
ICSA-21-287-08 · 1 CVE
RUGGEDCOM ROX MX5000, RUGGEDCOM ROX RX1400, RUGGEDCOM ROX RX1500 +7 more
2025-05-06
CRITICAL 9.8 Siemens SIMATIC Process Historian
ICSA-21-287-09 · 1 CVE
SIMATIC Process Historian 2013 and earlier, SIMATIC Process Historian 2014, SIMATIC Process Historian 2019 +1 more
2025-05-06
CRITICAL 9.8 Siemens Nucleus RTOS TCP/IP Stack
ICSA-21-313-03 · 13 CVEs
Nucleus NET, Nucleus ReadyStart V3, Nucleus ReadyStart V4 +1 more
2025-05-06
MEDIUM 4.0 Siemens Mendix
ICSA-21-315-04 · 1 CVE
Mendix Applications using Mendix 7, Mendix Applications using Mendix 8, Mendix Applications using Mendix 9
2025-05-06
MEDIUM 5.3 Siemens Mendix Studio Pro
ICSA-21-315-05 · 2 CVEs
Mendix Applications using Mendix 8, Mendix Applications using Mendix 9
2025-05-06
CRITICAL 9.8 Siemens Nucleus RTOS-based APOGEE and TALON Products (Update C)
ICSA-21-315-07 · 13 CVEs
APOGEE MBC (PPC) (BACnet), APOGEE MBC (PPC) (P2 Ethernet), APOGEE MEC (PPC) (BACnet) +20 more
2025-05-06
HIGH 7.8 Siemens NX OBJ Translator
ICSA-21-315-08 · 2 CVEs
NX 1953 Series, NX 1980 Series
2025-05-06
HIGH 7.8 Siemens SENTRON powermanager
ICSA-21-315-10 · 1 CVE
SENTRON powermanager V3
2025-05-06
MEDIUM 5.5 Siemens SIMATIC RTLS Locating Manager
ICSA-21-315-11 · 3 CVEs
SIMATIC RTLS Locating Manager
2025-05-06
LOW 3.3 Siemens NX JT Translator
ICSA-21-315-12 · 2 CVEs
NX 1980 Series
2025-05-06
HIGH 8.6 Siemens Siveillance Video DLNA Server
ICSA-21-315-13 · 1 CVE
Siveillance Video DLNA Server, Siveillance Video DLNA Server, Siveillance Video DLNA Server +4 more
2025-05-06
HIGH 8.2 Siemens Capital VSTAR
ICSA-21-350-06 · 8 CVEs
Capital Embedded AR Classic 431-422, Capital Embedded AR Classic R20-11
2025-05-06
CRITICAL 9.1 Siemens POWER METER SICAM Q100
ICSA-21-350-07 · 1 CVE
POWER METER SICAM Q100, POWER METER SICAM Q100, POWER METER SICAM Q100 +1 more
2025-05-06
HIGH 7.8 Siemens JTTK and JT Utilities
ICSA-21-350-08 · 3 CVEs
JT Utilities, JTTK
2025-05-06
HIGH 7.4 Siemens SINUMERIK Edge
ICSA-21-350-09 · 1 CVE
SINUMERIK Edge
2025-05-06
HIGH 7.8 Siemens JT2Go and Teamcenter Visualization
ICSA-21-350-10 · 16 CVEs
JT2Go, Teamcenter Visualization
2025-05-06
MEDIUM 6.5 Siemens SIMATIC eaSie PCS 7 Skill Package
ICSA-21-350-11 · 1 CVE
SIMATIC eaSie PCS 7 Skill Package
2025-05-06
CRITICAL 9.8 Siemens SIMATIC ITC
ICSA-21-350-12 · 19 CVEs
SIMATIC ITC1500 V3, SIMATIC ITC1500 V3 PRO, SIMATIC ITC1900 V3 +3 more
2025-05-06
HIGH 7.5 Siemens Siveillance Identity
ICSA-21-350-14 · 3 CVEs
Siveillance Identity V1.5, Siveillance Identity V1.6
2025-05-06
HIGH 7.8 Siemens Simcenter STAR-CCM+ Viewer
ICSA-21-350-15 · 1 CVE
Simcenter STAR-CCM+ Viewer
2025-05-06
HIGH 7.8 Siemens JT Utilities and JT Open Toolkit
ICSA-21-350-17 · 16 CVEs
JT Utilities, JTTK
2025-05-06
MEDIUM 6.8 Siemens Teamcenter Active Workspace
ICSA-21-350-18 · 1 CVE
Teamcenter Active Workspace V4.3, Teamcenter Active Workspace V5.0, Teamcenter Active Workspace V5.1 +1 more
2025-05-06
HIGH 7.5 Siemens SiPass Integrated
ICSA-21-350-19 · 3 CVEs
SiPass integrated V2.76, SiPass integrated V2.80, SiPass integrated V2.85
2025-05-06
HIGH 7.8 Siemens JTTK and JT Utilities
ICSA-21-350-20 · 2 CVEs
JT Utilities, JTTK
2025-05-06
CRITICAL 9.9 Siemens SICAM A8000
ICSA-22-013-02 · 2 CVEs
CP-8000 MASTER MODULE WITH I/O -25/+70°C, CP-8000 MASTER MODULE WITH I/O -40/+70°C, CP-8021 MASTER MODULE +1 more
2025-05-06
HIGH 8.2 Siemens Energy PLUSCONTROL
ICSA-22-013-03 · 6 CVEs
PLUSCONTROL 1st Gen
2025-05-06
MEDIUM 6.5 Siemens SIPROTEC 5 Devices
ICSA-22-013-04 · 1 CVE
SIPROTEC 5 6MD85 devices (CPU variant CP300), SIPROTEC 5 6MD86 devices (CPU variant CP300), SIPROTEC 5 6MD89 devices (CPU variant CP300) +28 more
2025-05-06
HIGH 8.8 Siemens COMOS Web (Update A)
ICSA-22-013-05 · 5 CVEs
COMOS V10.2, COMOS V10.3, COMOS V10.3 +1 more
2025-05-06
LOW 3.4 Siemens SICAM PQ Analyzer
ICSA-22-013-06 · 1 CVE
SICAM PQ Analyzer
2025-05-06
HIGH 7.5 Siemens SIMATIC Industrial Products (Update A)
ICSA-22-041-01 · 3 CVEs
SIMATIC Drive Controller family, SIMATIC Drive Controller family, SIMATIC ET 200SP Open Controller CPU 1515SP PC (incl. SIPLUS variants) +13 more
2025-05-06
HIGH 7.8 Siemens Simcenter Femap
ICSA-22-041-03 · 11 CVEs
Simcenter Femap V2020.2, Simcenter Femap V2021.1
2025-05-06
MEDIUM 5.4 Siemens SINEMA Remote Connect Server
ICSA-22-041-04 · 1 CVE
SINEMA Remote Connect Server
2025-05-06
MEDIUM 5.4 Siemens Spectrum Power 4
ICSA-22-041-06 · 1 CVE
Spectrum Power 4
2025-05-06
HIGH 8.2 Siemens SIMOTICS CONNECT 400
ICSA-22-069-02 · 4 CVEs
SIMOTICS CONNECT 400, SIMOTICS CONNECT 400
2025-05-06
CRITICAL 9.1 Siemens SINEMA Mendix Forgot Password Appstore
ICSA-22-069-04 · 2 CVEs
Mendix Forgot Password Appstore module, Mendix Forgot Password Appstore module (Mendix 7 compatible)
2025-05-06
HIGH 7.8 Siemens Simcenter STAR-CCM+ Viewer
ICSA-22-069-05 · 1 CVE
Simcenter STAR-CCM+ Viewer
2025-05-06
HIGH 7.8 Siemens COMOS
ICSA-22-069-06 · 15 CVEs
COMOS
2025-05-06
MEDIUM 6.5 Siemens Climatix POL909
ICSA-22-069-07 · 3 CVEs
Climatix POL909 (AWB module), Climatix POL909 (AWM module)
2025-05-06
MEDIUM 6.5 Siemens Polarion ALM
ICSA-22-069-08 · 1 CVE
Polarion ALM, Polarion WebClient for SVN
2025-05-06
CRITICAL 9.8 Siemens SINEC INS
ICSA-22-069-09 · 71 CVEs
SINEC INS
2025-05-06
HIGH 7.8 Siemens Simcenter Femap
ICSA-22-069-10 · 2 CVEs
Simcenter Femap
2025-05-06
HIGH 7.8 Siemens SINUMERIK MC
ICSA-22-069-11 · 1 CVE
SINUMERIK MC, SINUMERIK ONE
2025-05-06
MEDIUM 6.8 Siemens Mendix
ICSA-22-069-13 · 1 CVE
Mendix Runtime V7, Mendix Runtime V8, Mendix Runtime V9
2025-05-06
MEDIUM 6.5 Siemens SCALANCE FragAttacks
ICSA-22-104-04 · 9 CVEs
SCALANCE W721-1 RJ45 (6GK5721-1FC00-0AA0), SCALANCE W721-1 RJ45 (6GK5721-1FC00-0AB0), SCALANCE W722-1 RJ45 (6GK5722-1FC00-0AA0) +64 more
2025-05-06
HIGH 7.4 Siemens SCALANCE W1700
ICSA-22-104-08 · 3 CVEs
SCALANCE W1788-1 M12, SCALANCE W1788-2 EEC M12, SCALANCE W1788-2 M12 +1 more
2025-05-06
CRITICAL 9.6 Siemens SCALANCE X-300 Switches
ICSA-22-104-09 · 9 CVEs
SCALANCE X302-7 EEC (2x 24V), SCALANCE X302-7 EEC (2x 24V, coated), SCALANCE X302-7 EEC (2x 230V) +72 more
2025-05-06
MEDIUM 5.3 Siemens SICAM A8000
ICSA-22-104-10 · 1 CVE
SICAM A8000 CP-8031, SICAM A8000 CP-8050
2025-05-06
CRITICAL 10.0 Siemens SIMATIC Energy Manager
ICSA-22-104-11 · 3 CVEs
SIMATIC Energy Manager Basic, SIMATIC Energy Manager PRO
2025-05-06
MEDIUM 6.4 Siemens SIMATIC STEP 7 (TIA Portal)
ICSA-22-104-14 · 1 CVE
SIMATIC STEP 7 (TIA Portal) V15, SIMATIC STEP 7 (TIA Portal) V16, SIMATIC STEP 7 (TIA Portal) V17
2025-05-06
HIGH 7.8 Siemens Simcenter Femap
ICSA-22-104-15 · 3 CVEs
Simcenter Femap
2025-05-06
LOW 3.1 Siemens Mendix
ICSA-22-104-17 · 1 CVE
Mendix Applications using Mendix 7, Mendix Applications using Mendix 8, Mendix Applications using Mendix 9 +1 more
2025-05-06
CRITICAL 9.8 Siemens SICAM P850 and SICAM P855
ICSA-22-132-07 · 11 CVEs
SICAM P850, SICAM P850, SICAM P850 +33 more
2025-05-06
HIGH 7.8 Siemens JT2GO and Teamcenter Visualization
ICSA-22-132-09 · 6 CVEs
JT2Go, Teamcenter Visualization V13.3, Teamcenter Visualization V14.0
2025-05-06
HIGH 7.4 Siemens SIMATIC CP 44x-1 RNA
ICSA-22-132-11 · 1 CVE
SIMATIC CP 442-1 RNA, SIMATIC CP 443-1 RNA
2025-05-06
HIGH 7.5 Siemens Industrial Products
ICSA-22-132-12 · 1 CVE
OpenPCS 7 V9.1, SIMATIC NET PC Software V14, SIMATIC NET PC Software V15 +7 more
2025-05-06
HIGH 7.8 Siemens Simcenter Femap
ICSA-22-132-14 · 1 CVE
Simcenter Femap
2025-05-06
MEDIUM 6.2 Siemens OpenV2G
ICSA-22-132-15 · 1 CVE
OpenV2G
2025-05-06
HIGH 7.8 Siemens Xpedition Designer
ICSA-22-167-11 · 1 CVE
Xpedition Designer VX.2.10, Xpedition Designer VX.2.11, Xpedition Designer VX.2.12 +1 more
2025-05-06
HIGH 7.5 Siemens OpenSSL Affected Industrial Products
ICSA-22-167-14 · 1 CVE
Industrial Edge - OPC UA Connector, Industrial Edge - SIMATIC S7 Connector App, OpenPCS 7 V8.2 +535 more
2025-05-06
CRITICAL 9.6 Siemens SCALANCE X Switch Devices
ICSA-22-195-01 · 3 CVEs
SCALANCE X200-4P IRT (6GK5200-4AH00-2BA3), SCALANCE X201-3P IRT (6GK5201-3BH00-2BA3), SCALANCE X201-3P IRT PRO (6GK5201-3JR00-2BA6) +28 more
2025-05-06
MEDIUM 5.3 Siemens RUGGEDCOM ROS
ICSA-22-258-03 · 1 CVE
RUGGEDCOM RMC8388 V5.X, RUGGEDCOM RMC8388NC V5.X, RUGGEDCOM RS416NC v2 +29 more
2025-05-06
HIGH 8.6 Siemens SCALANCE and RUGGEDCOM Devices
ICSA-22-286-08 · 1 CVE
RUGGEDCOM RM1224 LTE(4G) EU (6GK6108-4AM00-2BA2), RUGGEDCOM RM1224 LTE(4G) NAM (6GK6108-4AM00-2DA2), SCALANCE M804PB (6GK5804-0AP00-2AA2) +26 more
2025-05-06
CRITICAL 9.9 Siemens SICAM P850 and P855 Devices
ICSA-22-286-09 · 5 CVEs
SICAM P850 (7KG8500-0AA00-0AA0), SICAM P850 (7KG8500-0AA00-2AA0), SICAM P850 (7KG8500-0AA10-0AA0) +33 more
2025-05-06
HIGH 8.8 Siemens SCALANCE and RUGGEDCOM Products (Update A)
ICSA-22-286-11 · 1 CVE
RUGGEDCOM RM1224 LTE(4G) EU (6GK6108-4AM00-2BA2), RUGGEDCOM RM1224 LTE(4G) NAM (6GK6108-4AM00-2DA2), SCALANCE M804PB (6GK5804-0AP00-2AA2) +183 more
2025-05-06
MEDIUM 6.5 Siemens Web Server Login Page of Industrial Controllers
ICSA-22-314-02 · 1 CVE
SIMATIC Drive Controller CPU 1504D TF (6ES7615-4DF10-0AB0), SIMATIC Drive Controller CPU 1507D TF (6ES7615-7DF10-0AB0), SIMATIC ET 200pro IM154-8 PN/DP CPU (6ES7154-8AB01-0AB0) +151 more
2025-05-06
HIGH 7.6 Siemens QMS Automotive
ICSA-22-314-06 · 1 CVE
QMS Automotive
2025-05-06
HIGH 7.8 Siemens Teamcenter Visualization and JT2Go
ICSA-22-314-09 · 6 CVEs
JT2Go, Teamcenter Visualization V13.2, Teamcenter Visualization V13.3 +3 more
2025-05-06
HIGH 7.5 Siemens Multiple Denial of Service Vulnerabilities in Industrial Products
ICSA-22-349-03 · 4 CVEs
SIMATIC Drive Controller CPU 1504D TF (6ES7615-4DF10-0AB0), SIMATIC Drive Controller CPU 1507D TF (6ES7615-7DF10-0AB0), SIMATIC ET 200SP Open Controller CPU 1515SP PC2 (incl. SIPLUS variants) +106 more
2025-05-06
HIGH 7.6 Siemens SCALANCE Products
ICSA-22-349-04 · 5 CVEs
RUGGEDCOM RM1224 LTE(4G) EU (6GK6108-4AM00-2BA2), RUGGEDCOM RM1224 LTE(4G) NAM (6GK6108-4AM00-2DA2), SCALANCE M804PB (6GK5804-0AP00-2AA2) +209 more
2025-05-06
HIGH 7.8 Siemens Simcenter STAR-CCM+
ICSA-22-349-07 · 1 CVE
Simcenter STAR-CCM+
2025-05-06
MEDIUM 5.4 Siemens Polarion ALM
ICSA-22-349-08 · 1 CVE
Polarion ALM
2025-05-06
HIGH 7.5 Siemens APOGEE/TALON Field Panels
ICSA-22-349-10 · 2 CVEs
Calibre ICE, Mcenter, SCALANCE X-200RNA switch family +2 more
2025-05-06
HIGH 7.5 Siemens Parasolid
ICSA-22-349-12 · 2 CVEs
Calibre ICE, Mcenter, SCALANCE X-200RNA switch family +2 more
2025-05-06
HIGH 7.5 Siemens SISCO MMS-EASE Third Party Component
ICSA-22-349-14 · 1 CVE
SIPROTEC 5 6MD85 (CP200), SIPROTEC 5 6MD85 (CP300), SIPROTEC 5 6MD86 (CP200) +46 more
2025-05-06
HIGH 8.8 Siemens APOGEE and TALON
ICSA-22-349-16 · 8 CVEs
APOGEE PXC Compact (BACnet), APOGEE PXC Compact (P2 Ethernet), APOGEE PXC Modular (BACnet) +3 more
2025-05-06
HIGH 7.8 Siemens Teamcenter Visualization and JT2Go
ICSA-22-349-20 · 12 CVEs
JT2Go, Teamcenter Visualization V13.2, Teamcenter Visualization V13.3 +4 more
2025-05-06
HIGH 7.9 Siemens SIMATIC Industrial Products
ICSA-23-047-09 · 1 CVE
SIMATIC Field PG M5, SIMATIC Field PG M6, SIMATIC IPC427E +11 more
2025-05-06
CRITICAL 9.1 Siemens Mendix SAML Module
ICSA-23-075-05 · 2 CVEs
Mendix SAML (Mendix 7 compatible), Mendix SAML (Mendix 7 compatible), Mendix SAML (Mendix 8 compatible) +9 more
2025-05-06
HIGH 7.8 Siemens JT Open and JT Utilities
ICSA-23-103-02 · 1 CVE
JT Open, JT Utilities
2025-05-06
HIGH 7.8 Siemens in OPC Foundation Local Discovery Server
ICSA-23-103-03 · 1 CVE
OpenPCS 7 V9.1, SIMATIC NET PC Software V14, SIMATIC NET PC Software V15 +9 more
2025-05-06
MEDIUM 6.7 Siemens SCALANCE X-200IRT Devices
ICSA-23-103-05 · 1 CVE
SCALANCE X200-4P IRT (6GK5200-4AH00-2BA3), SCALANCE X201-3P IRT (6GK5201-3BH00-2BA3), SCALANCE X201-3P IRT PRO (6GK5201-3JR00-2BA6) +12 more
2025-05-06
HIGH 7.3 Siemens Mendix Forgot Password Module
ICSA-23-103-08 · 1 CVE
Totally Integrated Automation Portal (TIA Portal) V15, Totally Integrated Automation Portal (TIA Portal) V16, Totally Integrated Automation Portal (TIA Portal) V17 +1 more
2025-05-06
CRITICAL 9.8 Siemens SCALANCE XCM332
ICSA-23-103-09 · 10 CVEs
SCALANCE XCM332 (6GK5332-0GA01-2AC2)
2025-05-06
HIGH 7.5 Siemens Industrial Products
ICSA-23-103-10 · 3 CVEs
SIMATIC CP 443-1 (6GK7443-1EX30-0XE0), SIMATIC CP 443-1 (6GK7443-1EX30-0XE1), SIMATIC CP 443-1 Advanced (6GK7443-1GX30-0XE0) +20 more
2025-05-06
HIGH 7.8 Siemens Teamcenter Visualization and JT2Go
ICSA-23-103-11 · 1 CVE
JT2Go, Teamcenter Visualization V13.2, Teamcenter Visualization V13.3 +3 more
2025-05-06
MEDIUM 5.9 Siemens Polarion ALM
ICSA-23-103-12 · 1 CVE
Polarion ALM
2025-05-06
HIGH 7.2 Siemens SIMATIC Cloud Connect 7
ICSA-23-131-04 · 7 CVEs
SIMATIC Cloud Connect 7 CC712 (6GK1411-1AC00), SIMATIC Cloud Connect 7 CC712 (6GK1411-1AC00), SIMATIC Cloud Connect 7 CC716 (6GK1411-5AC00) +1 more
2025-05-06
CRITICAL 9.8 Siemens SINEC NMS Third-Party
ICSA-23-131-05 · 9 CVEs
SINEC NMS
2025-05-06
CRITICAL 9.9 Siemens SCALANCE LPE9403
ICSA-23-131-06 · 4 CVEs
SCALANCE LPE9403 (6GK5998-3GS00-2AC2)
2025-05-06
CRITICAL 9.9 Siemens SICAM Q200 Devices
ICSA-23-166-03 · 6 CVEs
POWER METER SICAM Q200 family
2025-05-06
MEDIUM 4.6 Siemens SIMOTION
ICSA-23-166-04 · 1 CVE
SIMOTION C240 (6AU1240-1AA00-0AA0), SIMOTION C240 PN (6AU1240-1AB00-0AA0), SIMOTION D410-2 DP (6AU1410-2AA00-0AA0) +10 more
2025-05-06
HIGH 7.8 Siemens SIMATIC WinCC V7
ICSA-23-166-07 · 1 CVE
SIMATIC WinCC
2025-05-06
HIGH 7.8 Siemens Teamcenter Visualization and JT2Go
ICSA-23-166-14 · 4 CVEs
JT2Go, Teamcenter Visualization V13.2, Teamcenter Visualization V13.3 +3 more
2025-05-06
CRITICAL 9.8 Siemens RUGGEDCOM ROX
ICSA-23-194-01 · 21 CVEs
RUGGEDCOM ROX MX5000, RUGGEDCOM ROX MX5000RE, RUGGEDCOM ROX RX1400 +8 more
2025-05-06
HIGH 7.5 Siemens SiPass Integrated
ICSA-23-194-02 · 1 CVE
SiPass integrated
2025-05-06
CRITICAL 9.9 Siemens SIMATIC CN 4100
ICSA-23-194-03 · 2 CVEs
SIMATIC CN 4100
2025-05-06
CRITICAL 9.8 Siemens SIMATIC MV500 Devices
ICSA-23-194-04 · 13 CVEs
SIMATIC MV540 H (6GF3540-0GE10), SIMATIC MV540 S (6GF3540-0CD10), SIMATIC MV550 H (6GF3550-0GE10) +3 more
2025-05-06
HIGH 7.8 Siemens Solid Edge, JT2Go, and Teamcenter Visualization
ICSA-23-222-01 · 3 CVEs
JT2Go, Solid Edge SE2022, Solid Edge SE2023 +6 more
2025-05-06
HIGH 7.8 ​Siemens JT Open, JT Utilities, and Parasolid
ICSA-23-222-03 · 2 CVEs
JT Open, JT Utilities, Parasolid V34.0 +3 more
2025-05-06
HIGH 7.8 ​Siemens Software Center
ICSA-23-222-04 · 2 CVEs
Siemens Software Center
2025-05-06
CRITICAL 9.8 Siemens RUGGEDCOM CROSSBOW
ICSA-23-222-05 · 5 CVEs
RUGGEDCOM CROSSBOW
2025-05-06
HIGH 7.4 Siemens SIMATIC
ICSA-23-222-07 · 1 CVE
SIMATIC Drive Controller CPU 1504D TF (6ES7615-4DF10-0AB0), SIMATIC Drive Controller CPU 1504D TF (6ES7615-4DF10-0AB0), SIMATIC Drive Controller CPU 1507D TF (6ES7615-7DF10-0AB0) +152 more
2025-05-06
MEDIUM 5.9 Siemens SIMATIC
ICSA-23-222-09 · 1 CVE
SIMATIC Cloud Connect 7 CC712 (6GK1411-1AC00), SIMATIC Cloud Connect 7 CC716 (6GK1411-5AC00), SIMATIC Drive Controller CPU 1504D TF (6ES7615-4DF10-0AB0) +180 more
2025-05-06
HIGH 7.8 Siemens SICAM TOOLBOX II
ICSA-23-222-10 · 2 CVEs
SICAM TOOLBOX II
2025-05-06
HIGH 7.8 Siemens Parasolid
ICSA-23-257-02 · 2 CVEs
Parasolid V34.1, Parasolid V35.0, Parasolid V35.0 +4 more
2025-05-06
HIGH 8.8 Siemans QMS Automotive
ICSA-23-257-03 · 10 CVEs
QMS Automotive
2025-05-06
MEDIUM 6.5 Siemens SIMATIC IPCs
ICSA-23-257-05 · 1 CVE
SIMATIC Field PG M6, SIMATIC IPC627E, SIMATIC IPC647E +8 more
2025-05-06
HIGH 8.2 Siemens Spectrum Power 7
ICSA-23-264-02 · 1 CVE
Spectrum Power 7
2025-05-06
HIGH 7.6 Siemens LOGO! and SIPLUS LOGO!
ICSA-23-348-04 · 1 CVE
LOGO! 12/24RCE (6ED1052-1MD08-0BA1), LOGO! 12/24RCEo (6ED1052-2MD08-0BA1), LOGO! 24CE (6ED1052-1CC08-0BA1) +13 more
2025-05-06
HIGH 7.5 Siemens SINUMERIK
ICSA-23-348-11 · 1 CVE
SINUMERIK MC, SINUMERIK ONE
2025-05-06
HIGH 7.8 Siemens SINEC Traffic Analyzer
ICSA-24-165-13 · 8 CVEs
SINEC Traffic Analyzer (6GK8822-1BG01-0BA0)
2025-05-06
MEDIUM 5.3 Siemens SIMATIC and SIMIT
ICSA-24-193-07 · 1 CVE
SIMATIC Energy Manager Basic, SIMATIC Energy Manager PRO, SIMATIC IPC DiagBase +3 more
2025-05-06
HIGH 8.8 Siemens SINUMERIK ONE, SINUMERIK 840D and SINUMERIK 828D
ICSA-24-256-02 · 1 CVE
SINUMERIK 828D V4, SINUMERIK 828D V5, SINUMERIK 840D sl V4 +1 more
2025-05-06
MEDIUM 6.5 Siemens SIMATIC RFID Readers
ICSA-24-256-07 · 6 CVEs
SIMATIC Reader RF610R CMIIT (6GT2811-6BC10-2AA0), SIMATIC Reader RF610R ETSI (6GT2811-6BC10-0AA0), SIMATIC Reader RF610R FCC (6GT2811-6BC10-1AA0) +24 more
2025-05-06
HIGH 7.3 Siemens Industrial Products
ICSA-24-256-08 · 1 CVE
AI Model Deployer, Data Flow Monitoring Industrial Edge Device User Interface (DFM IED UI), LiveTwin Industrial Edge app (6AV2170-0BL00-0AA0) +9 more
2025-05-06
MEDIUM 5.9 Siemens SIMATIC, SIPLUS, and TIM
ICSA-24-256-09 · 3 CVEs
SIMATIC CP 1242-7 V2 (incl. SIPLUS variants), SIMATIC CP 1243-1 (incl. SIPLUS variants), SIMATIC CP 1243-1 DNP3 (incl. SIPLUS variants) +9 more
2025-05-06
HIGH 7.8 Siemens Tecnomatix Plant Simulation
ICSA-24-256-12 · 1 CVE
Tecnomatix Plant Simulation V2302, Tecnomatix Plant Simulation V2404
2025-05-06
CRITICAL 9.1 Siemens SCALANCE W700
ICSA-24-256-13 · 1 CVE
SCALANCE WAB762-1 (6GK5762-1AJ00-6AA0), SCALANCE WAM763-1 (6GK5763-1AL00-7DA0), SCALANCE WAM763-1 (ME) (6GK5763-1AL00-7DC0) +16 more
2025-05-06
HIGH 7.8 Siemens Simcenter Nastran
ICSA-24-284-02 · 2 CVEs
Simcenter Nastran 2306, Simcenter Nastran 2312, Simcenter Nastran 2406
2025-05-06
HIGH 7.8 Siemens Teamcenter Visualization and JT2Go
ICSA-24-284-03 · 2 CVEs
JT2Go, Teamcenter Visualization V14.2, Teamcenter Visualization V14.3 +2 more
2025-05-06
MEDIUM 6.7 Siemens Questa and ModelSim
ICSA-24-284-05 · 3 CVEs
ModelSim, Questa
2025-05-06
HIGH 7.8 Siemens JT2Go
ICSA-24-284-07 · 1 CVE
JT2Go
2025-05-06
HIGH 8.5 Siemens HiMed Cockpit
ICSA-24-284-08 · 1 CVE
HiMed Cockpit 12 pro (J31032-K2017-H259), HiMed Cockpit 14 pro+ (J31032-K2017-H435), HiMed Cockpit 18 pro (J31032-K2017-H260) +1 more
2025-05-06
HIGH 7.8 Siemens Tecnomatix Plant Simulation
ICSA-24-284-13 · 16 CVEs
Tecnomatix Plant Simulation V2302, Tecnomatix Plant Simulation V2404
2025-05-06
MEDIUM 6.7 Siemens Siveillance Video Camera
ICSA-24-289-01 · 1 CVE
Siveillance Video Device Pack
2025-05-06
CRITICAL 10.0 Siemens InterMesh Subscriber Devices
ICSA-24-303-01 · 4 CVEs
InterMesh 7177 Hybrid 2.0 Subscriber, InterMesh 7707 Fire Subscriber
2025-05-06
MEDIUM 5.5 Siemens RUGGEDCOM CROSSBOW
ICSA-24-319-01 · 2 CVEs
RUGGEDCOM CROSSBOW Station Access Controller (SAC)
2025-05-06
HIGH 7.8 Siemens SIPORT
ICSA-24-319-02 · 1 CVE
SIPORT
2025-05-06
MEDIUM 6.8 Siemens OZW672 and OZW772 Web Server
ICSA-24-319-03 · 1 CVE
OZW672, OZW772
2025-05-06
HIGH 7.5 Siemens SCALANCE M-800 Family
ICSA-24-319-06 · 16 CVEs
RUGGEDCOM RM1224 LTE(4G) EU (6GK6108-4AM00-2BA2), RUGGEDCOM RM1224 LTE(4G) NAM (6GK6108-4AM00-2DA2), SCALANCE M804PB (6GK5804-0AP00-2AA2) +23 more
2025-05-06
HIGH 7.3 Siemens Engineering Platforms
ICSA-24-319-07 · 1 CVE
SIMATIC S7-PLCSIM V16, SIMATIC S7-PLCSIM V17, SIMATIC STEP 7 Safety V16 +27 more
2025-05-06
CRITICAL 10.0 Siemens TeleControl Server
ICSA-24-319-10 · 1 CVE
PP TeleControl Server Basic 8 to 32 V3.1 (6NH9910-0AA31-0AB1), PP TeleControl Server Basic 32 to 64 V3.1 (6NH9910-0AA31-0AF1), PP TeleControl Server Basic 64 to 256 V3.1 (6NH9910-0AA31-0AC1) +10 more
2025-05-06
HIGH 7.5 Siemens SIMATIC CP
ICSA-24-319-11 · 1 CVE
SIMATIC CP 1543-1 V4.0 (6GK7543-1AX10-0XE0)
2025-05-06
MEDIUM 4.6 Siemens CPCI85 Central Processing/Communication 
ICSA-24-347-01 · 1 CVE
CPCI85 Central Processing/Communication
2025-05-06
HIGH 8.8 Siemens RUGGEDCOM ROX II 
ICSA-24-347-03 · 1 CVE
RUGGEDCOM ROX MX5000, RUGGEDCOM ROX MX5000RE, RUGGEDCOM ROX RX1400 +8 more
2025-05-06
HIGH 7.8 Siemens Parasolid
ICSA-24-347-04 · 1 CVE
Parasolid V36.1, Parasolid V37.0, Parasolid V37.1
2025-05-06
MEDIUM 5.5 Siemens COMOS 
ICSA-24-347-08 · 2 CVEs
COMOS V10.3, COMOS V10.4.0, COMOS V10.4.1 +4 more
2025-05-06
HIGH 7.8 Siemens Teamcenter Visualization 
ICSA-24-347-09 · 26 CVEs
Teamcenter Visualization V14.2, Teamcenter Visualization V14.3, Teamcenter Visualization V2312 +1 more
2025-05-06
HIGH 7.4 Siemens Mendix LDAP
ICSA-25-016-01 · 1 CVE
Mendix LDAP
2025-05-06
HIGH 7.8 Siemens Siveillance Video Camera
ICSA-25-016-03 · 1 CVE
Siveillance Video Device Pack
2025-05-06
HIGH 7.1 Siemens SIMATIC S7-1200 CPUs
ICSA-25-021-02 · 1 CVE
SIMATIC S7-1200 CPU 1211C AC/DC/Rly (6ES7211-1BE40-0XB0), SIMATIC S7-1200 CPU 1211C DC/DC/DC (6ES7211-1AE40-0XB0), SIMATIC S7-1200 CPU 1211C DC/DC/Rly (6ES7211-1HE40-0XB0) +45 more
2025-05-06
HIGH 7.5 Siemens SIMATIC S7-1200 CPU Family
ICSA-25-044-01 · 2 CVEs
SIMATIC S7-1200 CPU 1211C AC/DC/Rly (6ES7211-1BE40-0XB0), SIMATIC S7-1200 CPU 1211C DC/DC/DC (6ES7211-1AE40-0XB0), SIMATIC S7-1200 CPU 1211C DC/DC/Rly (6ES7211-1HE40-0XB0) +45 more
2025-05-06
MEDIUM 5.3 Siemens SIMATIC
ICSA-25-044-02 · 1 CVE
SIMATIC Drive Controller CPU 1504D TF (6ES7615-4DF10-0AB0), SIMATIC Drive Controller CPU 1507D TF (6ES7615-7DF10-0AB0), SIMATIC ET 200SP Open Controller CPU 1515SP PC2 (incl. SIPLUS variants) +100 more
2025-05-06
MEDIUM 6.2 Siemens OpenV2G
ICSA-25-044-08 · 1 CVE
OpenV2G
2025-05-06
CRITICAL 9.8 Siemens SCALANCE W700 IEEE 802.11ax
ICSA-25-044-09 · 72 CVEs
SCALANCE WAB762-1 (6GK5762-1AJ00-6AA0), SCALANCE WAM763-1 (6GK5763-1AL00-7DA0), SCALANCE WAM763-1 (ME) (6GK5763-1AL00-7DC0) +16 more
2025-05-06
MEDIUM 6.7 Siemens Questa and ModelSim
ICSA-25-044-10 · 1 CVE
ModelSim, Questa
2025-05-06
HIGH 8.8 Siemens SIMATIC PCS neo, TIA Administrator, and TIA Portal
ICSA-25-044-13 · 1 CVE
SIMATIC PCS neo V4.0, SIMATIC PCS neo V4.1, SIMATIC PCS neo V5.0 +4 more
2025-05-06
CRITICAL 9.6 Siemens Opcenter Intelligence
ICSA-25-044-14 · 5 CVEs
Opcenter Intelligence
2025-05-06
CRITICAL 9.1 Siemens SiPass Integrated
ICSA-25-051-04 · 1 CVE
SiPass integrated V2.90, SiPass integrated V2.95
2025-05-06
HIGH 7.8 Siemens Teamcenter Visualization and Tecnomatix
ICSA-25-072-01 · 8 CVEs
Teamcenter Visualization V14.3, Teamcenter Visualization V2312, Teamcenter Visualization V2406 +3 more
2025-05-06
CRITICAL 9.1 Siemens SiPass integrated AC5102/ACC-G2 and ACC-AP
ICSA-25-072-04 · 3 CVEs
SiPass integrated AC5102 (ACC-G2), SiPass integrated AC5102 (ACC-G2), SiPass integrated ACC-AP +1 more
2025-05-06
HIGH 8.8 Siemens SCALANCE LPE9403
ICSA-25-072-06 · 7 CVEs
SCALANCE LPE9403 (6GK5998-3GS00-2AC2)
2025-05-06
MEDIUM 6.8 Siemens Tecnomatix Plant Simulation
ICSA-25-072-08 · 2 CVEs
Tecnomatix Plant Simulation V2302, Tecnomatix Plant Simulation V2404
2025-05-06
HIGH 7.8 Siemens Simcenter Femap
ICSA-25-079-03 · 1 CVE
Simcenter Femap V2401, Simcenter Femap V2406
2025-05-06
MEDIUM 6.7 Siemens License Server (SLS)
ICSA-25-100-01 · 2 CVEs
Siemens License Server (SLS)
2025-05-06
HIGH 8.7 Siemens SIDIS Prime
ICSA-25-100-02 · 14 CVEs
SIDIS Prime
2025-05-06
HIGH 7.8 Siemens Solid Edge
ICSA-25-100-03 · 1 CVE
Solid Edge SE2024, Solid Edge SE2025
2025-05-06
CRITICAL 9.8 Siemens Industrial Edge Devices
ICSA-25-100-04 · 1 CVE
Industrial Edge Own Device (IEOD), Industrial Edge Virtual Device, SCALANCE LPE9413 (6GK5998-3GS01-2AC2) +6 more
2025-05-06
CRITICAL 9.8 Siemens TeleControl Server Basic SQL
ICSA-25-112-01 · 67 CVEs
TeleControl Server Basic
2025-05-06
LOW 3.7 Siemens TeleControl Server Basic
ICSA-25-112-02 · 1 CVE
TeleControl Server Basic
2025-05-06
MEDIUM 0 SSA-443402 V1.0: Multiple SQL Injection Vulnerabilities in TeleControl Server Basic before V3.1.2.2
SIEMENS-SSA-443402
SSA-443402 V1.0: Multiple SQL Injection Vulnerabilities in TeleControl Server Basic before V3.1.2.2
2025-04-16
MEDIUM 0 SSA-395348 V1.0: Improper Handling of Length Parameter Inconsistency Vulnerability in TeleControl Server Basic before V3.1.2.2
SIEMENS-SSA-395348
SSA-395348 V1.0: Improper Handling of Length Parameter Inconsistency Vulnerability in TeleControl Server Basic before V3.1.2.2
2025-04-16
HIGH 7.0 Siemens SIMATIC IPC DiagBase and SIMATIC IPC DiagMonitor
ICSA-25-044-12 · 1 CVE
SIMATIC IPC DiagBase, SIMATIC IPC DiagMonitor
2025-04-08
CRITICAL 9.8 Siemens Insights Hub Private Cloud
ICSA-25-100-05 · 5 CVEs
Insights Hub Private Cloud
2025-04-08
CRITICAL 10.0 Siemens SENTRON 7KT PAC1260 Data Manager
ICSA-25-100-06 · 9 CVEs
SENTRON 7KT PAC1260 Data Manager
2025-04-08
MEDIUM 0 SSA-913875 V1.4 (Last Update: 2025-04-08): Frame Aggregation and Fragmentation Vulnerabilities in 802.11
SIEMENS-SSA-913875
SSA-913875 V1.4 (Last Update: 2025-04-08): Frame Aggregation and Fragmentation Vulnerabilities in 802.11
2025-04-08
MEDIUM 0 SSA-817234 V1.0: Multiple Kubernetes Ingress NGINX Controller Vulnerabilities in Insights Hub Private Cloud
SIEMENS-SSA-817234
SSA-817234 V1.0: Multiple Kubernetes Ingress NGINX Controller Vulnerabilities in Insights Hub Private Cloud
2025-04-08
MEDIUM 0 SSA-686975 V1.6 (Last Update: 2025-04-08): IPU 2022.3 Vulnerabilities in Siemens Industrial Products using Intel CPUs
SIEMENS-SSA-686975
SSA-686975 V1.6 (Last Update: 2025-04-08): IPU 2022.3 Vulnerabilities in Siemens Industrial Products using Intel CPUs
2025-04-08
MEDIUM 0 SSA-672923 V1.0: Out of Bounds Write Vulnerability in Solid Edge
SIEMENS-SSA-672923
SSA-672923 V1.0: Out of Bounds Write Vulnerability in Solid Edge
2025-04-08
MEDIUM 0 SSA-525431 V1.0: Privilege Escalation Vulnerabilities in Siemens License Server Before V4.3
SIEMENS-SSA-525431
SSA-525431 V1.0: Privilege Escalation Vulnerabilities in Siemens License Server Before V4.3
2025-04-08
MEDIUM 0 SSA-369369 V1.1 (Last Update: 2025-04-08): Weak Registry Permission Vulnerability in SIMATIC IPC DiagBase and SIMATIC IPC DiagMonitor
SIEMENS-SSA-369369
SSA-369369 V1.1 (Last Update: 2025-04-08): Weak Registry Permission Vulnerability in SIMATIC IPC DiagBase and SIMATIC IPC DiagMonitor
2025-04-08
MEDIUM 0 SSA-306654 V1.9 (Last Update: 2025-04-08): Insyde BIOS Vulnerabilities in Siemens Industrial Products
SIEMENS-SSA-306654
SSA-306654 V1.9 (Last Update: 2025-04-08): Insyde BIOS Vulnerabilities in Siemens Industrial Products
2025-04-08
MEDIUM 0 SSA-277137 V1.0: Multiple Vulnerabilities in SIDIS Prime Before V4.0.700
SIEMENS-SSA-277137
SSA-277137 V1.0: Multiple Vulnerabilities in SIDIS Prime Before V4.0.700
2025-04-08
MEDIUM 0 SSA-195895 V1.2 (Last Update: 2025-04-08): User Enumeration Vulnerability in the Webserver of SIMATIC Products
SIEMENS-SSA-195895
SSA-195895 V1.2 (Last Update: 2025-04-08): User Enumeration Vulnerability in the Webserver of SIMATIC Products
2025-04-08
MEDIUM 0 SSA-187636 V1.0: Multiple Vulnerabilities in SENTRON 7KT PAC1260 Data Manager
SIEMENS-SSA-187636
SSA-187636 V1.0: Multiple Vulnerabilities in SENTRON 7KT PAC1260 Data Manager
2025-04-08
MEDIUM 0 SSA-920092 V1.0: Memory Corruption Vulnerability in Simcenter Femap
SIEMENS-SSA-920092
SSA-920092 V1.0: Memory Corruption Vulnerability in Simcenter Femap
2025-03-13
HIGH 7.1 Siemens Mentor Nucleus Networking Module
ICSA-19-318-01 · 1 CVE
Capital Embedded AR Classic 431-422, Capital Embedded AR Classic R20-11, Nucleus NET +2 more
2025-03-11
HIGH 7.5 Siemens Nucleus Products IPv6 Stack
ICSA-21-103-05 · 2 CVEs
Capital Embedded AR Classic 431-422, Capital Embedded AR Classic R20-11, Nucleus NET +3 more
2025-03-11
MEDIUM 6.5 Siemens SINEMA Remote Connect Server
ICSA-25-072-02 · 2 CVEs
SINEMA Remote Connect Server
2025-03-11
CRITICAL 9.8 Siemens SINAMICS S200
ICSA-25-072-05 · 1 CVE
SINAMICS S200
2025-03-11
LOW 3.7 Siemens SCALANCE M-800 and SC-600 Families
ICSA-25-072-07 · 1 CVE
RUGGEDCOM RM1224 LTE(4G) EU (6GK6108-4AM00-2BA2), RUGGEDCOM RM1224 LTE(4G) NAM (6GK6108-4AM00-2DA2), SCALANCE M804PB (6GK5804-0AP00-2AA2) +24 more
2025-03-11
CRITICAL 9.8 Siemens SINEMA Remote Connect Client
ICSA-25-072-10 · 6 CVEs
SINEMA Remote Connect Client
2025-03-11
MEDIUM 0 SSA-787280 V1.0: Unlocked Bootloader Vulnerability in SINAMICS S200
SIEMENS-SSA-787280
SSA-787280 V1.0: Unlocked Bootloader Vulnerability in SINAMICS S200
2025-03-11
MEDIUM 0 SSA-620288 V1.3 (Last Update: 2025-03-11): Multiple Vulnerabilities (NUCLEUS:13) in Capital Embedded AR Classic
SIEMENS-SSA-620288
SSA-620288 V1.3 (Last Update: 2025-03-11): Multiple Vulnerabilities (NUCLEUS:13) in Capital Embedded AR Classic
2025-03-11
MEDIUM 0 SSA-615740 V1.0: Multiple Vulnerabilities in SINEMA Remote Connect Client Before V3.2 SP3
SIEMENS-SSA-615740
SSA-615740 V1.0: Multiple Vulnerabilities in SINEMA Remote Connect Client Before V3.2 SP3
2025-03-11
MEDIUM 0 SSA-515903 V1.0: Multiple Vulnerabilities in SiPass integrated AC5102 / ACC-G2 and ACC-AP
SIEMENS-SSA-515903
SSA-515903 V1.0: Multiple Vulnerabilities in SiPass integrated AC5102 / ACC-G2 and ACC-AP
2025-03-11
MEDIUM 0 SSA-507653 V1.0: Improper Access Control Vulnerabilities in Tecnomatix Plant Simulation
SIEMENS-SSA-507653
SSA-507653 V1.0: Improper Access Control Vulnerabilities in Tecnomatix Plant Simulation
2025-03-11
MEDIUM 0 SSA-434032 V1.2 (Last Update: 2025-03-11): Input Validation Vulnerability in the DHCP Client of Nucleus RTOS
SIEMENS-SSA-434032
SSA-434032 V1.2 (Last Update: 2025-03-11): Input Validation Vulnerability in the DHCP Client of Nucleus RTOS
2025-03-11
MEDIUM 0 SSA-280834 V1.0: Improper OpenVPN Credential Validation Vulnerability in SCALANCE M-800 and SC-600 Families
SIEMENS-SSA-280834
SSA-280834 V1.0: Improper OpenVPN Credential Validation Vulnerability in SCALANCE M-800 and SC-600 Families
2025-03-11
MEDIUM 0 SSA-248289 V1.3 (Last Update: 2025-03-11): Denial of Service Vulnerabilities in the IPv6 Stack of Nucleus RTOS
SIEMENS-SSA-248289
SSA-248289 V1.3 (Last Update: 2025-03-11): Denial of Service Vulnerabilities in the IPv6 Stack of Nucleus RTOS
2025-03-11
MEDIUM 0 SSA-075201 V1.0: Multiple Vulnerabilities in SCALANCE LPE9403 Before V4.0
SIEMENS-SSA-075201
SSA-075201 V1.0: Multiple Vulnerabilities in SCALANCE LPE9403 Before V4.0
2025-03-11
MEDIUM 0 SSA-073066 V1.0: Multiple Vulnerabilities in SINEMA Remote Connect Server Before V3.2 SP3
SIEMENS-SSA-073066
SSA-073066 V1.0: Multiple Vulnerabilities in SINEMA Remote Connect Server Before V3.2 SP3
2025-03-11
MEDIUM 0 SSA-050438 V1.0: Multiple File Parsing Vulnerabilities in Teamcenter Visualization and Tecnomatix Plant Simulation
SIEMENS-SSA-050438
SSA-050438 V1.0: Multiple File Parsing Vulnerabilities in Teamcenter Visualization and Tecnomatix Plant Simulation
2025-03-11
MEDIUM 0 SSA-992434 V1.0: Directory Traversal Vulnerability in Third-Party Component in SiPass integrated
SIEMENS-SSA-992434
SSA-992434 V1.0: Directory Traversal Vulnerability in Third-Party Component in SiPass integrated
2025-02-17
MEDIUM 0 SSA-246355 V1.1 (Last Update: 2025-02-14): Multiple Vulnerabilities in Tableau Server Component of Opcenter Intelligence
SIEMENS-SSA-246355
SSA-246355 V1.1 (Last Update: 2025-02-14): Multiple Vulnerabilities in Tableau Server Component of Opcenter Intelligence
2025-02-14
MEDIUM 4.6 Siemens SIPROTEC 5
ICSA-25-044-03 · 1 CVE
SIPROTEC 5 6MD84 (CP300), SIPROTEC 5 6MD85 (CP200), SIPROTEC 5 6MD85 (CP300) +58 more
2025-02-11
HIGH 7.5 Siemens Apogee PXC100 Devices
ICSA-25-044-11 · 2 CVEs
APOGEE PXC Series (BACnet), APOGEE PXC Series (P2 Ethernet), TALON TC Series (BACnet)
2025-02-11
MEDIUM 0 SSA-769027 V1.0: Multiple Vulnerabilities fixed in SCALANCE W700 IEEE 802.11ax devices before V3.0.0
SIEMENS-SSA-769027
SSA-769027 V1.0: Multiple Vulnerabilities fixed in SCALANCE W700 IEEE 802.11ax devices before V3.0.0
2025-02-11
MEDIUM 0 SSA-697140 V1.3 (Last Update: 2025-02-11): Denial of Service Vulnerability in the TCP Event Service of SCALANCE and RUGGEDCOM Products
SIEMENS-SSA-697140
SSA-697140 V1.3 (Last Update: 2025-02-11): Denial of Service Vulnerability in the TCP Event Service of SCALANCE and RUGGEDCOM Products
2025-02-11
MEDIUM 0 SSA-647005 V1.0: Memory Corruption Vulnerability in OpenV2G
SIEMENS-SSA-647005
SSA-647005 V1.0: Memory Corruption Vulnerability in OpenV2G
2025-02-11
MEDIUM 0 SSA-637914 V1.0: Local Code Execution Vulnerability in Questa and ModelSim Before V2025.1
SIEMENS-SSA-637914
SSA-637914 V1.0: Local Code Execution Vulnerability in Questa and ModelSim Before V2025.1
2025-02-11
MEDIUM 0 SSA-615116 V1.0: Multiple Vulnerabilities in Apogee PXC and Talon TC Devices
SIEMENS-SSA-615116
SSA-615116 V1.0: Multiple Vulnerabilities in Apogee PXC and Talon TC Devices
2025-02-11
MEDIUM 0 SSA-349422 V2.2 (Last Update: 2025-02-11): Denial of Service Vulnerability in Industrial Real-Time (IRT) Devices
SIEMENS-SSA-349422
SSA-349422 V2.2 (Last Update: 2025-02-11): Denial of Service Vulnerability in Industrial Real-Time (IRT) Devices
2025-02-11
MEDIUM 0 SSA-342348 V1.0: Insufficient Session Expiration Vulnerability in Siemens Products
SIEMENS-SSA-342348
SSA-342348 V1.0: Insufficient Session Expiration Vulnerability in Siemens Products
2025-02-11
MEDIUM 0 SSA-224824 V1.0: Denial of Service Vulnerabilities in SIMATIC S7-1200 CPU Family Before V4.7
SIEMENS-SSA-224824
SSA-224824 V1.0: Denial of Service Vulnerabilities in SIMATIC S7-1200 CPU Family Before V4.7
2025-02-11
MEDIUM 0 SSA-196737 V1.1 (Last Update: 2025-02-11): Multiple Vulnerabilities in SINEC Traffic Analyzer Before V1.2
SIEMENS-SSA-196737
SSA-196737 V1.1 (Last Update: 2025-02-11): Multiple Vulnerabilities in SINEC Traffic Analyzer Before V1.2
2025-02-11
MEDIUM 0 SSA-111547 V1.0: Cleartext Storage of Sensitive Information Vulnerability in SIPROTEC 5
SIEMENS-SSA-111547
SSA-111547 V1.0: Cleartext Storage of Sensitive Information Vulnerability in SIPROTEC 5
2025-02-11
MEDIUM 0 SSA-404759 V1.1 (Last Update: 2025-01-15): Information Disclosure Vulnerability in Siveillance Video Camera Drivers
SIEMENS-SSA-404759
SSA-404759 V1.1 (Last Update: 2025-01-15): Information Disclosure Vulnerability in Siveillance Video Camera Drivers
2025-01-15
MEDIUM 5.3 Siemens PROFINET Stack Integrated on Interniche Stack
ICSA-22-104-06 · 1 CVE
SIMATIC CFU DIQ (6ES7655-5PX31-1XX0), SIMATIC CFU PA (6ES7655-5PX11-0XX0), SIMATIC ET200ecoPN, AI 8xRTD/TC, M12-L (6ES7144-6JF00-0BB0) +79 more
2025-01-14
MEDIUM 4.6 Siemens S7-1500 CPU devices
ICSA-23-012-08 · 1 CVE
SIMATIC Drive Controller CPU 1504D TF (6ES7615-4DF10-0AB0), SIMATIC Drive Controller CPU 1507D TF (6ES7615-7DF10-0AB0), SIMATIC S7-1500 CPU 1510SP F-1 PN (6ES7510-1SJ00-0AB0) +120 more
2025-01-14
HIGH 7.5 Siemens User Management Component (UMC)
ICSA-23-348-03 · 5 CVEs
Opcenter Execution Foundation, Opcenter Quality, SIMATIC PCS neo +6 more
2025-01-14
MEDIUM 6.2 Siemens SIMATIC WinCC
ICSA-24-102-02 · 1 CVE
SIMATIC PCS 7 V9.1, SIMATIC WinCC Runtime Professional V17, SIMATIC WinCC Runtime Professional V18 +3 more
2025-01-14
HIGH 7.2 Siemens SCALANCE W700
ICSA-24-165-12 · 4 CVEs
SCALANCE WAB762-1 (6GK5762-1AJ00-6AA0), SCALANCE WAB762-1 (6GK5762-1AJ00-6AA0), SCALANCE WAM763-1 (6GK5763-1AL00-7DA0) +35 more
2025-01-14
CRITICAL 9.1 Siemens SIMATIC SCADA and PCS 7 Systems
ICSA-24-256-14 · 1 CVE
SIMATIC BATCH V9.1, SIMATIC Information Server 2020, SIMATIC Information Server 2022 +8 more
2025-01-14
MEDIUM 4.7 Siemens Industrial Edge Management
ICSA-25-016-02 · 1 CVE
Industrial Edge Management OS (IEM-OS)
2025-01-14
MEDIUM 0 SSA-999588 V1.7 (Last Update: 2025-01-14): Multiple Vulnerabilities in User Management Component (UMC) Before V2.11.2
SIEMENS-SSA-999588
SSA-999588 V1.7 (Last Update: 2025-01-14): Multiple Vulnerabilities in User Management Component (UMC) Before V2.11.2
2025-01-14
MEDIUM 0 SSA-871035 V1.1 (Last Update: 2025-01-14): Session-Memory Deserialization Vulnerability in Siemens Engineering Platforms Before V19
SIEMENS-SSA-871035
SSA-871035 V1.1 (Last Update: 2025-01-14): Session-Memory Deserialization Vulnerability in Siemens Engineering Platforms Before V19
2025-01-14
HIGH 7.3 SSA-773256 V1.3 (Last Update: 2025-01-14): Impact of Socket.IO CVE-2024-38355 on Siemens Industrial Products
SIEMENS-SSA-773256 · 1 CVE
SSA-773256 V1.3 (Last Update: 2025-01-14): Impact of Socket.IO CVE-2024-38355 on Siemens Industrial Products
2025-01-14
MEDIUM 0 SSA-730482 V1.2 (Last Update: 2025-01-14): Denial of Service Vulnerability in SIMATIC WinCC
SIEMENS-SSA-730482
SSA-730482 V1.2 (Last Update: 2025-01-14): Denial of Service Vulnerability in SIMATIC WinCC
2025-01-14
MEDIUM 0 SSA-717113 V1.0: Cross-Site Request Forgery (CSRF) Vulnerability in SIMATIC S7-1200 CPUs before V4.7
SIEMENS-SSA-717113
SSA-717113 V1.0: Cross-Site Request Forgery (CSRF) Vulnerability in SIMATIC S7-1200 CPUs before V4.7
2025-01-14
MEDIUM 0 SSA-690517 V1.2 (Last Update: 2025-01-14): Multiple Vulnerabilities in SCALANCE W-700 IEEE 802.11ax Family
SIEMENS-SSA-690517
SSA-690517 V1.2 (Last Update: 2025-01-14): Multiple Vulnerabilities in SCALANCE W-700 IEEE 802.11ax Family
2025-01-14
MEDIUM 0 SSA-629254 V1.3 (Last Update: 2025-01-14): Remote Code Execution Vulnerability in SIMATIC SCADA and PCS 7 systems
SIEMENS-SSA-629254
SSA-629254 V1.3 (Last Update: 2025-01-14): Remote Code Execution Vulnerability in SIMATIC SCADA and PCS 7 systems
2025-01-14
MEDIUM 0 SSA-482757 V1.5 (Last Update: 2025-01-14): Missing Immutable Root of Trust in S7-1500 CPU devices
SIEMENS-SSA-482757
SSA-482757 V1.5 (Last Update: 2025-01-14): Missing Immutable Root of Trust in S7-1500 CPU devices
2025-01-14
MEDIUM 0 SSA-446448 V2.3 (Last Update: 2025-01-14): Denial of Service Vulnerability in PROFINET Stack Integrated on Interniche Stack
SIEMENS-SSA-446448
SSA-446448 V2.3 (Last Update: 2025-01-14): Denial of Service Vulnerability in PROFINET Stack Integrated on Interniche Stack
2025-01-14
MEDIUM 0 SSA-416411 V1.0: Cross-Site Scripting Vulnerability in Industrial Edge Management
SIEMENS-SSA-416411
SSA-416411 V1.0: Cross-Site Scripting Vulnerability in Industrial Edge Management
2025-01-14
MEDIUM 0 SSA-413565 V1.4 (Last Update: 2025-01-14): Multiple Vulnerabilities in SCALANCE Products
SIEMENS-SSA-413565
SSA-413565 V1.4 (Last Update: 2025-01-14): Multiple Vulnerabilities in SCALANCE Products
2025-01-14
MEDIUM 0 SSA-314390 V1.0: LDAP Injection Vulnerability in Mendix LDAP Module
SIEMENS-SSA-314390
SSA-314390 V1.0: LDAP Injection Vulnerability in Mendix LDAP Module
2025-01-14
MEDIUM 0 SSA-979056 V1.1 (Last Update: 2024-12-12): Out of Bounds Write Vulnerability in Parasolid
SIEMENS-SSA-979056
SSA-979056 V1.1 (Last Update: 2024-12-12): Out of Bounds Write Vulnerability in Parasolid
2024-12-12
HIGH 7.5 Siemens PROFINET Devices
ICSA-21-194-03 · 1 CVE
Development/Evaluation Kits for PROFINET IO: DK Standard Ethernet Controller, Development/Evaluation Kits for PROFINET IO: EK-ERTEC 200, Development/Evaluation Kits for PROFINET IO: EK-ERTEC 200P +302 more
2024-12-10
MEDIUM 6.2 Siemens TIA Portal
ICSA-23-166-06 · 1 CVE
Totally Integrated Automation Portal (TIA Portal) V14, Totally Integrated Automation Portal (TIA Portal) V15, Totally Integrated Automation Portal (TIA Portal) V15.1 +5 more
2024-12-10
HIGH 8.8 Siemens RUGGEDCOM APE1808
ICSA-24-102-03 · 8 CVEs
RUGGEDCOM APE1808
2024-12-10
MEDIUM 6.5 Siemens Industrial Products
ICSA-24-137-13 · 1 CVE
Security Configuration Tool (SCT), SIMATIC Automation Tool, SIMATIC BATCH V9.1 +29 more
2024-12-10
HIGH 7.8 Siemens Simcenter Femap
ICSA-24-347-06 · 2 CVEs
Simcenter Femap V2306, Simcenter Femap V2401, Simcenter Femap V2406
2024-12-10
HIGH 7.8 Siemens Solid Edge SE2024
ICSA-24-347-07 · 3 CVEs
Solid Edge SE2024, Solid Edge SE2024
2024-12-10
MEDIUM 6.5 SSA-981975 V1.4 (Last Update: 2024-12-10): Information Disclosure Vulnerability in Intel-CPUs (CVE-2022-40982) Impacting SIMATIC IPCs
SIEMENS-SSA-981975 · 1 CVE
SSA-981975 V1.4 (Last Update: 2024-12-10): Information Disclosure Vulnerability in Intel-CPUs (CVE-2022-40982) Impacting SIMATIC IPCs
2024-12-10
MEDIUM 0 SSA-962515 V1.5 (Last Update: 2024-12-10): Out of Bounds Read Vulnerability in Industrial Products
SIEMENS-SSA-962515
SSA-962515 V1.5 (Last Update: 2024-12-10): Out of Bounds Read Vulnerability in Industrial Products
2024-12-10
MEDIUM 0 SSA-881356 V1.0: Multiple Memory Corruption Vulnerabilities in Simcenter Femap
SIEMENS-SSA-881356
SSA-881356 V1.0: Multiple Memory Corruption Vulnerabilities in Simcenter Femap
2024-12-10
MEDIUM 0 SSA-822518 V1.2 (Last Update: 2024-12-10): Multiple Vulnerabilities in Palo Alto Networks Virtual NGFW Before V11.0.1 on RUGGEDCOM APE1808 Devices
SIEMENS-SSA-822518
SSA-822518 V1.2 (Last Update: 2024-12-10): Multiple Vulnerabilities in Palo Alto Networks Virtual NGFW Before V11.0.1 on RUGGEDCOM APE1808 Devices
2024-12-10
MEDIUM 0 SSA-730188 V1.0: Multiple File Parsing Vulnerabilities in Solid Edge V2024
SIEMENS-SSA-730188
SSA-730188 V1.0: Multiple File Parsing Vulnerabilities in Solid Edge V2024
2024-12-10
MEDIUM 0 SSA-701627 V1.0: XXE Injection Vulnerabilities in COMOS
SIEMENS-SSA-701627
SSA-701627 V1.0: XXE Injection Vulnerabilities in COMOS
2024-12-10
MEDIUM 0 SSA-645131 V1.0: Multiple WRL File Parsing Vulnerabilities in Teamcenter Visualization
SIEMENS-SSA-645131
SSA-645131 V1.0: Multiple WRL File Parsing Vulnerabilities in Teamcenter Visualization
2024-12-10
MEDIUM 0 SSA-599968 V1.8 (Last Update: 2024-12-10): Denial of Service Vulnerability in Profinet Devices
SIEMENS-SSA-599968
SSA-599968 V1.8 (Last Update: 2024-12-10): Denial of Service Vulnerability in Profinet Devices
2024-12-10
MEDIUM 0 SSA-583523 V1.1 (Last Update: 2024-12-10): Multiple WRL File Parsing Vulnerabilities in Tecnomatix Plant Simulation
SIEMENS-SSA-583523
SSA-583523 V1.1 (Last Update: 2024-12-10): Multiple WRL File Parsing Vulnerabilities in Tecnomatix Plant Simulation
2024-12-10
MEDIUM 0 SSA-384652 V1.0: Cross-Site Request Forgery (CSRF) Vulnerability in RUGGEDCOM ROX II
SIEMENS-SSA-384652
SSA-384652 V1.0: Cross-Site Request Forgery (CSRF) Vulnerability in RUGGEDCOM ROX II
2024-12-10
HIGH 7.4 SSA-264815 V1.3 (Last Update: 2024-12-10): Type Confusion Vulnerability in OpenSSL X.400 Address Processing in SIMATIC Products
SIEMENS-SSA-264815 · 1 CVE
SSA-264815 V1.3 (Last Update: 2024-12-10): Type Confusion Vulnerability in OpenSSL X.400 Address Processing in SIMATIC Products
2024-12-10
LOW 3.8 SSA-264814 V1.4 (Last Update: 2024-12-10): Timing Based Side Channel Vulnerability in the OpenSSL RSA Decryption in SIMATIC Products
SIEMENS-SSA-264814 · 1 CVE
SSA-264814 V1.4 (Last Update: 2024-12-10): Timing Based Side Channel Vulnerability in the OpenSSL RSA Decryption in SIMATIC Products
2024-12-10
MEDIUM 0 SSA-128393 V1.0: Firmware Decryption Vulnerability in SICAM A8000 CP-8031 and CP-8050
SIEMENS-SSA-128393
SSA-128393 V1.0: Firmware Decryption Vulnerability in SICAM A8000 CP-8031 and CP-8050
2024-12-10
MEDIUM 0 SSA-042050 V1.2 (Last Update: 2024-12-10): Know-How Protection Mechanism Failure in TIA Portal
SIEMENS-SSA-042050
SSA-042050 V1.2 (Last Update: 2024-12-10): Know-How Protection Mechanism Failure in TIA Portal
2024-12-10
MEDIUM 0 SSA-824503 V1.0: Multiple WRL File Parsing Vulnerabilities in Tecnomatix Plant Simulation Before V2302.0018 and V2404.0007
SIEMENS-SSA-824503
SSA-824503 V1.0: Multiple WRL File Parsing Vulnerabilities in Tecnomatix Plant Simulation Before V2302.0018 and V2404.0007
2024-11-18
HIGH 8.7 SSA-472448 V1.0: Security Bypass Vulnerability in the SQL Client-Server Communication in Siveillance Video
SIEMENS-SSA-472448 · 1 CVE
SSA-472448 V1.0: Security Bypass Vulnerability in the SQL Client-Server Communication in Siveillance Video
2024-11-13
MEDIUM 5.9 Siemens SIMATIC WinCC
ICSA-24-193-16 · 1 CVE
SIMATIC PCS 7 V9.1, SIMATIC WinCC Runtime Professional V18, SIMATIC WinCC Runtime Professional V19 +3 more
2024-11-12
HIGH 8.4 Siemens SINEC NMS
ICSA-24-319-04 · 17 CVEs
SINEC NMS
2024-11-12
HIGH 7.8 Siemens Solid Edge
ICSA-24-319-05 · 3 CVEs
Solid Edge SE2024
2024-11-12
CRITICAL 9.9 Siemens SINEC INS
ICSA-24-319-08 · 59 CVEs
SINEC INS
2024-11-12
HIGH 7.8 Siemens Spectrum Power 7
ICSA-24-319-09 · 1 CVE
Spectrum Power 7
2024-11-12
MEDIUM 0 SSA-915275 V1.0: Multiple Vulnerabilities in SINEC INS Before V1.0 SP2 Update 3
SIEMENS-SSA-915275
SSA-915275 V1.0: Multiple Vulnerabilities in SINEC INS Before V1.0 SP2 Update 3
2024-11-12
MEDIUM 0 SSA-883918 V1.2 (Last Update: 2024-11-12): Information Disclosure Vulnerability in SIMATIC WinCC
SIEMENS-SSA-883918
SSA-883918 V1.2 (Last Update: 2024-11-12): Information Disclosure Vulnerability in SIMATIC WinCC
2024-11-12
MEDIUM 0 SSA-654798 V1.0: Incorrect Authorization Vulnerability in SIMATIC CP 1543-1 Devices
SIEMENS-SSA-654798
SSA-654798 V1.0: Incorrect Authorization Vulnerability in SIMATIC CP 1543-1 Devices
2024-11-12
MEDIUM 0 SSA-616032 V1.0: Local Privilege Escalation Vulnerability in Spectrum Power 7 Before V24Q3
SIEMENS-SSA-616032
SSA-616032 V1.0: Local Privilege Escalation Vulnerability in Spectrum Power 7 Before V24Q3
2024-11-12
MEDIUM 0 SSA-454789 V1.0: Deserialization Vulnerability in TeleControl Server Basic V3.1
SIEMENS-SSA-454789
SSA-454789 V1.0: Deserialization Vulnerability in TeleControl Server Basic V3.1
2024-11-12
MEDIUM 0 SSA-354112 V1.0: Multiple Vulnerabilities in SCALANCE M-800 Family Before V8.2
SIEMENS-SSA-354112
SSA-354112 V1.0: Multiple Vulnerabilities in SCALANCE M-800 Family Before V8.2
2024-11-12
MEDIUM 0 SSA-351178 V1.0: Multiple Vulnerabilities in Solid Edge Before SE2024 Update 9
SIEMENS-SSA-351178
SSA-351178 V1.0: Multiple Vulnerabilities in Solid Edge Before SE2024 Update 9
2024-11-12
MEDIUM 0 SSA-331112 V1.0: Multiple Vulnerabilities in SINEC NMS Before V3.0 SP1
SIEMENS-SSA-331112
SSA-331112 V1.0: Multiple Vulnerabilities in SINEC NMS Before V3.0 SP1
2024-11-12
MEDIUM 0 SSA-230445 V1.0: Stored XSS Vulnerability in OZW Web Servers Before V5.2
SIEMENS-SSA-230445
SSA-230445 V1.0: Stored XSS Vulnerability in OZW Web Servers Before V5.2
2024-11-12
MEDIUM 0 SSA-064257 V1.0: Privilege Escalation Vulnerability in SIPORT Before V3.4.0
SIEMENS-SSA-064257
SSA-064257 V1.0: Privilege Escalation Vulnerability in SIPORT Before V3.4.0
2024-11-12
MEDIUM 0 SSA-000297 V1.0: Multiple SQLite Vulnerabilities in RUGGEDCOM CROSSBOW Station Access Controller Before V5.6
SIEMENS-SSA-000297
SSA-000297 V1.0: Multiple SQLite Vulnerabilities in RUGGEDCOM CROSSBOW Station Access Controller Before V5.6
2024-11-12
MEDIUM 0 SSA-333468 V1.0: Multiple Vulnerabilities in InterMesh Subscriber Devices
SIEMENS-SSA-333468
SSA-333468 V1.0: Multiple Vulnerabilities in InterMesh Subscriber Devices
2024-10-23
MEDIUM 0 SSA-438590 V1.0: Buffer Overflow Vulnerability in Siveillance Video Camera Drivers
SIEMENS-SSA-438590
SSA-438590 V1.0: Buffer Overflow Vulnerability in Siveillance Video Camera Drivers
2024-10-10
MEDIUM 5.5 Siemens LOGO! 8 BM
ICSA-21-068-05 · 1 CVE
LOGO! 12/24RCE (6ED1052-1MD08-0BA1), LOGO! 12/24RCEo (6ED1052-2MD08-0BA1), LOGO! 24CE (6ED1052-1CC08-0BA1) +13 more
2024-10-08
CRITICAL 9.8 Siemens LOGO! 8 BM Devices
ICSA-22-286-13 · 3 CVEs
LOGO! 12/24RCE (6ED1052-1MD08-0BA1), LOGO! 12/24RCE (6ED1052-1MD08-0BA2), LOGO! 12/24RCEo (6ED1052-2MD08-0BA1) +29 more
2024-10-08
MEDIUM 4.6 Siemens LOGO! V8.3 BM Devices
ICSA-24-228-05 · 1 CVE
LOGO! 12/24RCE (6ED1052-1MD08-0BA1), LOGO! 12/24RCEo (6ED1052-2MD08-0BA1), LOGO! 24CE (6ED1052-1CC08-0BA1) +13 more
2024-10-08
CRITICAL 9.8 Siemens SENTRON PAC3200 Devices
ICSA-24-284-04 · 1 CVE
SENTRON 7KM PAC3200
2024-10-08
HIGH 8.8 Siemens PSS SINCAL
ICSA-24-284-09 · 2 CVEs
PSS(R)SINCAL
2024-10-08
MEDIUM 6.0 Siemens RUGGEDCOM APE1808
ICSA-24-284-11 · 1 CVE
RUGGEDCOM APE1808LNX (6GK6015-0AL20-0GH0), RUGGEDCOM APE1808LNX CC (6GK6015-0AL20-0GH1)
2024-10-08
MEDIUM 0 SSA-959281 V1.0: XML File Parsing Vulnerabilities in Teamcenter Visualization and JT2Go
SIEMENS-SSA-959281
SSA-959281 V1.0: XML File Parsing Vulnerabilities in Teamcenter Visualization and JT2Go
2024-10-08
MEDIUM 0 SSA-955858 V1.3 (Last Update: 2024-10-08): Multiple Vulnerabilities in LOGO! 8 BM Devices
SIEMENS-SSA-955858
SSA-955858 V1.3 (Last Update: 2024-10-08): Multiple Vulnerabilities in LOGO! 8 BM Devices
2024-10-08
MEDIUM 0 SSA-921449 V1.2 (Last Update: 2024-10-08): Plaintext Storage of a Password Vulnerability in LOGO! V8.3 BM Devices
SIEMENS-SSA-921449
SSA-921449 V1.2 (Last Update: 2024-10-08): Plaintext Storage of a Password Vulnerability in LOGO! V8.3 BM Devices
2024-10-08
MEDIUM 0 SSA-852501 V1.0: Multiple Memory Corruption Vulnerabilities in Simcenter Nastran Before 2406.5000
SIEMENS-SSA-852501
SSA-852501 V1.0: Multiple Memory Corruption Vulnerabilities in Simcenter Nastran Before 2406.5000
2024-10-08
MEDIUM 0 SSA-850560 V1.0: Use of 4-Digit PIN in SENTRON PAC3200 Devices
SIEMENS-SSA-850560
SSA-850560 V1.0: Use of 4-Digit PIN in SENTRON PAC3200 Devices
2024-10-08
MEDIUM 0 SSA-844582 V1.2 (Last Update: 2024-10-08): Electromagnetic Fault Injection in LOGO! V8.3 BM Devices Results in Broken LOGO! V8.3 Product CA
SIEMENS-SSA-844582
SSA-844582 V1.2 (Last Update: 2024-10-08): Electromagnetic Fault Injection in LOGO! V8.3 BM Devices Results in Broken LOGO! V8.3 Product CA
2024-10-08
MEDIUM 0 SSA-783481 V1.3 (Last Update: 2024-10-08): Denial-of-Service Vulnerability in LOGO! 8 BM
SIEMENS-SSA-783481
SSA-783481 V1.3 (Last Update: 2024-10-08): Denial-of-Service Vulnerability in LOGO! 8 BM
2024-10-08
MEDIUM 0 SSA-626178 V1.0: Stack-Based Buffer Overflow Vulnerability in JT2Go Before V2406.0003
SIEMENS-SSA-626178
SSA-626178 V1.0: Stack-Based Buffer Overflow Vulnerability in JT2Go Before V2406.0003
2024-10-08
MEDIUM 0 SSA-540493 V1.0: Kiosk Mode Escape Vulnerability in HiMed Cockpit Devices Before V11.6.2
SIEMENS-SSA-540493
SSA-540493 V1.0: Kiosk Mode Escape Vulnerability in HiMed Cockpit Devices Before V11.6.2
2024-10-08
MEDIUM 0 SSA-368868 V1.0: Multiple Vulnerabilities in WibuKey for Windows
SIEMENS-SSA-368868
SSA-368868 V1.0: Multiple Vulnerabilities in WibuKey for Windows
2024-10-08
HIGH 7.5 SSA-321292 V1.6 (Last Update: 2024-10-08): Denial of Service in the OPC Foundation Local Discovery Server (LDS) in Industrial Products
SIEMENS-SSA-321292 · 1 CVE
SSA-321292 V1.6 (Last Update: 2024-10-08): Denial of Service in the OPC Foundation Local Discovery Server (LDS) in Industrial Products
2024-10-08
MEDIUM 0 SSA-254396 V1.0: Vulnerability in Nozomi Guardian/CMC Before 24.3.1 on RUGGEDCOM APE1808 Devices
SIEMENS-SSA-254396
SSA-254396 V1.0: Vulnerability in Nozomi Guardian/CMC Before 24.3.1 on RUGGEDCOM APE1808 Devices
2024-10-08
MEDIUM 0 SSA-148641 V1.3 (Last Update: 2024-10-08): XPath Constraint Vulnerability in Mendix Runtime
SIEMENS-SSA-148641
SSA-148641 V1.3 (Last Update: 2024-10-08): XPath Constraint Vulnerability in Mendix Runtime
2024-10-08
MEDIUM 6.5 Siemens PROFINET DCP (Update V)
ICSA-17-129-02 · 2 CVEs
Development/Evaluation Kits for PROFINET IO: DK Standard Ethernet Controller, Development/Evaluation Kits for PROFINET IO: EK-ERTEC 200, Development/Evaluation Kits for PROFINET IO: EK-ERTEC 200P +123 more
2024-09-10
MEDIUM 6.5 Siemens SIMATIC WinCC, OpenPCS
ICSA-24-046-12 · 2 CVEs
OpenPCS 7 V9.1, SIMATIC BATCH V9.1, SIMATIC PCS 7 V9.1 +6 more
2024-09-10
MEDIUM 4.6 Siemens SENTRON 7KM PAC3x20
ICSA-24-074-01 · 1 CVE
SENTRON 7KM PAC3120 AC/DC (7KM3120-0BA01-1DA0), SENTRON 7KM PAC3120 DC (7KM3120-1BA01-1EA0), SENTRON 7KM PAC3220 AC/DC (7KM3220-0BA01-1DA0) +1 more
2024-09-10
MEDIUM 4.3 Siemens SINEMA Remote Connect Server
ICSA-24-256-01 · 1 CVE
SINEMA Remote Connect Server
2024-09-10
MEDIUM 5.5 Siemens SINUMERIK Systems
ICSA-24-256-04 · 1 CVE
SINUMERIK 828D V4, SINUMERIK 840D sl V4, SINUMERIK ONE +1 more
2024-09-10
CRITICAL 9.8 Siemens SINEMA
ICSA-24-256-10 · 7 CVEs
SINEMA Remote Connect Client
2024-09-10
CRITICAL 10.0 Siemens Industrial Edge Management
ICSA-24-256-11 · 1 CVE
Industrial Edge Management Pro, Industrial Edge Management Virtual
2024-09-10
HIGH 7.5 Siemens SIMATIC S7-200 SMART Devices
ICSA-24-261-01 · 1 CVE
SIMATIC S7-200 SMART CPU CR40 (6ES7288-1CR40-0AA0), SIMATIC S7-200 SMART CPU CR60 (6ES7288-1CR60-0AA0), SIMATIC S7-200 SMART CPU SR20 (6ES7288-1SR20-0AA0) +15 more
2024-09-10
MEDIUM 0 SSA-969738 V1.0: Denial of Service Vulnerability in SIMATIC S7-200 SMART Devices
SIEMENS-SSA-969738
SSA-969738 V1.0: Denial of Service Vulnerability in SIMATIC S7-200 SMART Devices
2024-09-10
MEDIUM 0 SSA-869574 V1.0: Multiple Vulnerabilities in SINEMA Remote Connect Server Before V3.2 SP2
SIEMENS-SSA-869574
SSA-869574 V1.0: Multiple Vulnerabilities in SINEMA Remote Connect Server Before V3.2 SP2
2024-09-10
MEDIUM 0 SSA-792319 V1.1 (Last Update: 2024-09-10): Missing Read Out Protection in SENTRON 7KM PAC3x20 Devices
SIEMENS-SSA-792319
SSA-792319 V1.1 (Last Update: 2024-09-10): Missing Read Out Protection in SENTRON 7KM PAC3x20 Devices
2024-09-10
MEDIUM 0 SSA-765405 V1.0: Multiple Vulnerabilities in SIMATIC RFID Readers
SIEMENS-SSA-765405
SSA-765405 V1.0: Multiple Vulnerabilities in SIMATIC RFID Readers
2024-09-10
MEDIUM 0 SSA-753746 V1.4 (Last Update: 2024-09-10): Denial of Service Vulnerabilities in SIMATIC WinCC Affecting Other SIMATIC Software Products
SIEMENS-SSA-753746
SSA-753746 V1.4 (Last Update: 2024-09-10): Denial of Service Vulnerabilities in SIMATIC WinCC Affecting Other SIMATIC Software Products
2024-09-10
MEDIUM 0 SSA-721642 V1.0: Injection Vulnerability in SCALANCE W700 802.11 AX Family Before V2.4
SIEMENS-SSA-721642
SSA-721642 V1.0: Injection Vulnerability in SCALANCE W700 802.11 AX Family Before V2.4
2024-09-10
MEDIUM 0 SSA-566905 V1.3 (Last Update: 2024-09-10): Multiple Denial of Service Vulnerabilities in the Webserver of Industrial Products
SIEMENS-SSA-566905
SSA-566905 V1.3 (Last Update: 2024-09-10): Multiple Denial of Service Vulnerabilities in the Webserver of Industrial Products
2024-09-10
MEDIUM 0 SSA-427715 V1.0: Stack-Based Buffer Overflow Vulnerability in Tecnomatix Plant Simulation
SIEMENS-SSA-427715
SSA-427715 V1.0: Stack-Based Buffer Overflow Vulnerability in Tecnomatix Plant Simulation
2024-09-10
MEDIUM 0 SSA-423808 V1.0: Multiple NULL Pointer Dereference Vulnerabilities in Industrial Products
SIEMENS-SSA-423808
SSA-423808 V1.0: Multiple NULL Pointer Dereference Vulnerabilities in Industrial Products
2024-09-10
MEDIUM 0 SSA-417159 V1.0: Multiple Vulnerabilities in SINEMA Remote Connect Client Before V3.2 SP2
SIEMENS-SSA-417159
SSA-417159 V1.0: Multiple Vulnerabilities in SINEMA Remote Connect Client Before V3.2 SP2
2024-09-10
MEDIUM 0 SSA-359713 V1.0: Authorization Bypass Vulnerability in Industrial Edge Management
SIEMENS-SSA-359713
SSA-359713 V1.0: Authorization Bypass Vulnerability in Industrial Edge Management
2024-09-10
MEDIUM 0 SSA-342438 V1.0: Privilege Escalation Vulnerability in SINUMERIK ONE, SINUMERIK 840D and SINUMERIK 828D
SIEMENS-SSA-342438
SSA-342438 V1.0: Privilege Escalation Vulnerability in SINUMERIK ONE, SINUMERIK 840D and SINUMERIK 828D
2024-09-10
MEDIUM 0 SSA-293562 V3.6 (Last Update: 2024-09-10): Denial of Service Vulnerabilities in PROFINET DCP Implementation of Industrial Products
SIEMENS-SSA-293562
SSA-293562 V3.6 (Last Update: 2024-09-10): Denial of Service Vulnerabilities in PROFINET DCP Implementation of Industrial Products
2024-09-10
MEDIUM 0 SSA-280603 V1.1 (Last Update: 2024-09-10): Denial of Service Vulnerability in SINUMERIK ONE and SINUMERIK MC
SIEMENS-SSA-280603
SSA-280603 V1.1 (Last Update: 2024-09-10): Denial of Service Vulnerability in SINUMERIK ONE and SINUMERIK MC
2024-09-10
MEDIUM 0 SSA-097786 V1.0: Insertion of Sensitive Information into Log File Vulnerability in SINUMERIK systems
SIEMENS-SSA-097786
SSA-097786 V1.0: Insertion of Sensitive Information into Log File Vulnerability in SINUMERIK systems
2024-09-10
HIGH 7.5 SSA-088132 V1.1 (Last Update: 2024-09-10): Denial of Service Vulnerability in the OPC UA Server Implementations of Several Industrial Products
SIEMENS-SSA-088132 · 1 CVE
SSA-088132 V1.1 (Last Update: 2024-09-10): Denial of Service Vulnerability in the OPC UA Server Implementations of Several Industrial Products
2024-09-10
MEDIUM 6.7 Siemens TIA Project-Server formerly known as TIA Multiuser Server
ICSA-23-047-07 · 1 CVE
TIA Multiuser Server V14, TIA Multiuser Server V15, TIA Project-Server +2 more
2024-08-13
HIGH 7.3 Siemens TIA Portal
ICSA-23-103-04 · 1 CVE
Totally Integrated Automation Portal (TIA Portal) V15, Totally Integrated Automation Portal (TIA Portal) V16, Totally Integrated Automation Portal (TIA Portal) V17 +1 more
2024-08-13
HIGH 7.3 Siemens SCALANCE Switch Families
ICSA-23-103-13 · 2 CVEs
SCALANCE X200-4P IRT (6GK5200-4AH00-2BA3), SCALANCE X201-3P IRT (6GK5201-3BH00-2BA3), SCALANCE X201-3P IRT PRO (6GK5201-3JR00-2BA6) +104 more
2024-08-13
HIGH 7.8 Siemens Parasolid and Teamcenter Visualization
ICSA-23-222-06 · 9 CVEs
Parasolid V34.1, Parasolid V35.0, Parasolid V35.1 +9 more
2024-08-13
CRITICAL 9.1 Siemens Desigo CC product family
ICSA-23-320-03 · 3 CVEs
Desigo CC family V5.0, Desigo CC family V5.1, Desigo CC family V6 +2 more
2024-08-13
HIGH 7.2 Siemens SCALANCE and RUGGEDCOM M-800/S615 Family
ICSA-23-348-12 · 3 CVEs
RUGGEDCOM RM1224 LTE(4G) EU (6GK6108-4AM00-2BA2), RUGGEDCOM RM1224 LTE(4G) NAM (6GK6108-4AM00-2DA2), SCALANCE M804PB (6GK5804-0AP00-2AA2) +17 more
2024-08-13
CRITICAL 9.1 Siemens RUGGEDCOM and SCALANCE M-800/S615 Family
ICSA-23-348-14 · 7 CVEs
RUGGEDCOM RM1224 LTE(4G) EU (6GK6108-4AM00-2BA2), RUGGEDCOM RM1224 LTE(4G) EU (6GK6108-4AM00-2BA2), RUGGEDCOM RM1224 LTE(4G) NAM (6GK6108-4AM00-2DA2) +37 more
2024-08-13
HIGH 7.8 Siemens Teamcenter Visualization and JT2Go
ICSA-24-165-08 · 3 CVEs
JT2Go, Teamcenter Visualization V14.2, Teamcenter Visualization V14.3 +1 more
2024-08-13
HIGH 7.8 Siemens Teamcenter Visualization and JT2Go
ICSA-24-193-03 · 1 CVE
JT2Go, Teamcenter Visualization V14.1, Teamcenter Visualization V14.2 +2 more
2024-08-13
HIGH 7.2 Siemens SCALANCE M-800, RUGGEDCOM RM1224
ICSA-24-228-01 · 4 CVEs
RUGGEDCOM RM1224 LTE(4G) EU (6GK6108-4AM00-2BA2), RUGGEDCOM RM1224 LTE(4G) NAM (6GK6108-4AM00-2DA2), SCALANCE M804PB (6GK5804-0AP00-2AA2) +21 more
2024-08-13
HIGH 8.0 Siemens INTRALOG WMS
ICSA-24-228-02 · 2 CVEs
INTRALOG WMS
2024-08-13
HIGH 7.8 Siemens Teamcenter Visualization and JT2Go
ICSA-24-228-03 · 3 CVEs
JT2Go, Teamcenter Visualization V14.2, Teamcenter Visualization V14.3 +1 more
2024-08-13
HIGH 7.5 Siemens SINEC Traffic Analyzer
ICSA-24-228-04 · 5 CVEs
SINEC Traffic Analyzer (6GK8822-1BG01-0BA0)
2024-08-13
CRITICAL 9.1 Siemens SINEC NMS
ICSA-24-228-06 · 29 CVEs
SINEC NMS
2024-08-13
MEDIUM 6.7 Siemens Location Intelligence
ICSA-24-228-07 · 3 CVEs
Location Intelligence family
2024-08-13
HIGH 7.8 Siemens COMOS
ICSA-24-228-08 · 2 CVEs
COMOS
2024-08-13
HIGH 7.8 Siemens NX
ICSA-24-228-09 · 1 CVE
NX
2024-08-13
MEDIUM 0 SSA-856475 V1.0: X_T File Parsing Vulnerabilities in Teamcenter Visualization and JT2Go
SIEMENS-SSA-856475
SSA-856475 V1.0: X_T File Parsing Vulnerabilities in Teamcenter Visualization and JT2Go
2024-08-13
MEDIUM 0 SSA-813746 V1.1 (Last Update: 2024-08-13): BadAlloc Vulnerabilities in SCALANCE X-200, X-200IRT, and X-300 Switch Families
SIEMENS-SSA-813746
SSA-813746 V1.1 (Last Update: 2024-08-13): BadAlloc Vulnerabilities in SCALANCE X-200, X-200IRT, and X-300 Switch Families
2024-08-13
MEDIUM 0 SSA-784301 V1.0: Multiple Vulnerabilities in SINEC NMS Before V3.0
SIEMENS-SSA-784301
SSA-784301 V1.0: Multiple Vulnerabilities in SINEC NMS Before V3.0
2024-08-13
MEDIUM 0 SSA-771940 V1.1 (Last Update: 2024-08-13): X_T File Parsing Vulnerabilities in Teamcenter Visualization and JT2Go
SIEMENS-SSA-771940
SSA-771940 V1.1 (Last Update: 2024-08-13): X_T File Parsing Vulnerabilities in Teamcenter Visualization and JT2Go
2024-08-13
MEDIUM 0 SSA-722010 V1.1 (Last Update: 2024-08-13): Datalogics File Parsing Vulnerability in Teamcenter Visualization and JT2Go
SIEMENS-SSA-722010
SSA-722010 V1.1 (Last Update: 2024-08-13): Datalogics File Parsing Vulnerability in Teamcenter Visualization and JT2Go
2024-08-13
MEDIUM 0 SSA-720392 V1.0: Multiple Vulnerabilities in Third-Party Components in Location Intelligence Before V4.4
SIEMENS-SSA-720392
SSA-720392 V1.0: Multiple Vulnerabilities in Third-Party Components in Location Intelligence Before V4.4
2024-08-13
MEDIUM 0 SSA-716317 V1.0: Multiple Vulnerability in SINEC Traffic Analyzer Before V2.0
SIEMENS-SSA-716317
SSA-716317 V1.0: Multiple Vulnerability in SINEC Traffic Analyzer Before V2.0
2024-08-13
MEDIUM 0 SSA-659443 V1.0: Local Code Execution Vulnerabilities in COMOS Before V10.5
SIEMENS-SSA-659443
SSA-659443 V1.0: Local Code Execution Vulnerabilities in COMOS Before V10.5
2024-08-13
MEDIUM 0 SSA-640968 V1.2 (Last Update: 2024-08-13): Untrusted Search Path Vulnerability in TIA Project-Server formerly known as TIA Multiuser Server
SIEMENS-SSA-640968
SSA-640968 V1.2 (Last Update: 2024-08-13): Untrusted Search Path Vulnerability in TIA Project-Server formerly known as TIA Multiuser Server
2024-08-13
CRITICAL 9.8 SSA-625850 V1.1 (Last Update: 2024-08-13): Multiple WIBU Systems CodeMeter Vulnerabilities Affecting the Desigo CC Product Family and SENTRON powermanager
SIEMENS-SSA-625850 · 1 CVE
SSA-625850 V1.1 (Last Update: 2024-08-13): Multiple WIBU Systems CodeMeter Vulnerabilities Affecting the Desigo CC Product Family and SENTRON powermanager
2024-08-13
MEDIUM 0 SSA-417547 V1.0: Multiple Vulnerabilities in INTRALOG WMS Before V4
SIEMENS-SSA-417547
SSA-417547 V1.0: Multiple Vulnerabilities in INTRALOG WMS Before V4
2024-08-13
MEDIUM 0 SSA-407785 V1.3 (Last Update: 2024-08-13): Multiple X_T File Parsing Vulnerabilities in Parasolid and Teamcenter Visualization
SIEMENS-SSA-407785
SSA-407785 V1.3 (Last Update: 2024-08-13): Multiple X_T File Parsing Vulnerabilities in Parasolid and Teamcenter Visualization
2024-08-13
MEDIUM 0 SSA-357412 V1.0: PRT File Parsing Vulnerability in NX Before V2406.3000
SIEMENS-SSA-357412
SSA-357412 V1.0: PRT File Parsing Vulnerability in NX Before V2406.3000
2024-08-13
MEDIUM 0 SSA-180704 V1.1 (Last Update: 2024-08-13): Multiple Vulnerabilities in SCALANCE M-800 Family Before V8.0
SIEMENS-SSA-180704
SSA-180704 V1.1 (Last Update: 2024-08-13): Multiple Vulnerabilities in SCALANCE M-800 Family Before V8.0
2024-08-13
MEDIUM 0 SSA-116924 V1.2 (Last Update: 2024-08-13): Path Traversal Vulnerability in TIA Portal
SIEMENS-SSA-116924
SSA-116924 V1.2 (Last Update: 2024-08-13): Path Traversal Vulnerability in TIA Portal
2024-08-13
MEDIUM 0 SSA-087301 V1.0: Multiple Vulnerabilities in SCALANCE M-800 Family Before V8.1
SIEMENS-SSA-087301
SSA-087301 V1.0: Multiple Vulnerabilities in SCALANCE M-800 Family Before V8.1
2024-08-13
MEDIUM 0 SSA-068047 V1.1 (Last Update: 2024-08-13): Multiple Vulnerabilities in SCALANCE M-800 Family Before V7.2.2
SIEMENS-SSA-068047
SSA-068047 V1.1 (Last Update: 2024-08-13): Multiple Vulnerabilities in SCALANCE M-800 Family Before V7.2.2
2024-08-13
MEDIUM 0 SSA-857368 V1.0: Multiple Vulnerabilities in Omnivise T3000
SIEMENS-SSA-857368
SSA-857368 V1.0: Multiple Vulnerabilities in Omnivise T3000
2024-08-02
CRITICAL 9.8 Siemens SICAM Products
ICSA-24-207-01 · 2 CVEs
CPCI85 Central Processing/Communication, SICORE Base system
2024-07-22
MEDIUM 0 SSA-071402 V1.0: Multiple Vulnerabilities in SICAM Products
SIEMENS-SSA-071402
SSA-071402 V1.0: Multiple Vulnerabilities in SICAM Products
2024-07-22
HIGH 7.5 Siemens Industrial Products (Update S)
ICSA-17-339-01 · 1 CVE
Development/Evaluation Kits for PROFINET IO: DK Standard Ethernet Controller, Development/Evaluation Kits for PROFINET IO: EK-ERTEC 200, Development/Evaluation Kits for PROFINET IO: EK-ERTEC 200P +83 more
2024-07-09
HIGH 7.5 Siemens PROFINET Devices (Update K)
ICSA-19-283-02 · 1 CVE
Development/Evaluation Kits for PROFINET IO: DK Standard Ethernet Controller, Development/Evaluation Kits for PROFINET IO: EK-ERTEC 200, Development/Evaluation Kits for PROFINET IO: EK-ERTEC 200P +117 more
2024-07-09
HIGH 7.5 Siemens PROFINET-IO Stack (Update H)
ICSA-20-042-04 · 1 CVE
Development/Evaluation Kits for PROFINET IO: DK Standard Ethernet Controller, Development/Evaluation Kits for PROFINET IO: EK-ERTEC 200, Development/Evaluation Kits for PROFINET IO: EK-ERTEC 200P +195 more
2024-07-09
CRITICAL 9.8 Siemens OpenSSL Affecting Industrial Products
ICSA-22-167-17 · 29 CVEs
SINEMA Remote Connect Server
2024-07-09
HIGH 7.8 Siemens SINEC NMS
ICSA-23-285-08 · 2 CVEs
SINEC NMS
2024-07-09
CRITICAL 10.0 Siemens RUGGEDCOM APE1808 devices configured with Palo Alto Networks Virtual NGFW
ICSA-24-116-03 · 1 CVE
RUGGEDCOM APE1808
2024-07-09
CRITICAL 9.8 Siemens TIM 1531 IRC
ICSA-24-165-06 · 32 CVEs
SIPLUS TIM 1531 IRC (6AG1543-1MX00-7XE0), TIM 1531 IRC (6GK7543-1MX00-0XE0)
2024-07-09
CRITICAL 9.6 Siemens Remote Connect Server
ICSA-24-193-01 · 13 CVEs
SINEMA Remote Connect Server
2024-07-09
HIGH 7.8 Siemens Simcenter Femap
ICSA-24-193-04 · 15 CVEs
Simcenter Femap
2024-07-09
HIGH 7.5 Siemens Mendix Encryption Module
ICSA-24-193-08 · 1 CVE
Mendix Encryption
2024-07-09
HIGH 8.8 Siemens SINEMA Remote Connect Server
ICSA-24-193-09 · 2 CVEs
SINEMA Remote Connect Server
2024-07-09
HIGH 7.8 Siemens JT Open and PLM XML SDK
ICSA-24-193-10 · 2 CVEs
JT Open, PLM XML SDK
2024-07-09
MEDIUM 6.3 Siemens TIA Portal and SIMATIC STEP 7
ICSA-24-193-12 · 1 CVE
SIMATIC STEP 7 Safety V18
2024-07-09
MEDIUM 6.5 Siemens TIA Portal, SIMATIC, and SIRIUS
ICSA-24-193-13 · 1 CVE
SIMATIC STEP 7 Safety V16, SIMATIC STEP 7 Safety V17, SIMATIC STEP 7 Safety V18 +24 more
2024-07-09
HIGH 7.8 Siemens SINEMA Remote Connect Server
ICSA-24-193-15 · 3 CVEs
SINEMA Remote Connect Client
2024-07-09
HIGH 7.8 Siemens SIMATIC STEP 7 (TIA Portal)
ICSA-24-193-17 · 1 CVE
SIMATIC PCS neo V4.0, SIMATIC STEP 7 V16, SIMATIC STEP 7 V17 +1 more
2024-07-09
MEDIUM 0 SSA-998949 V1.0: Hard-coded Default Encryption Key in Mendix Encryption Module V10.0.0 and V10.0.1
SIEMENS-SSA-998949
SSA-998949 V1.0: Hard-coded Default Encryption Key in Mendix Encryption Module V10.0.0 and V10.0.1
2024-07-09
MEDIUM 0 SSA-928781 V1.0: Multiple Vulnerabilities in SINEMA Remote Connect Server before V3.2 HF1
SIEMENS-SSA-928781
SSA-928781 V1.0: Multiple Vulnerabilities in SINEMA Remote Connect Server before V3.2 HF1
2024-07-09
MEDIUM 0 SSA-868282 V1.0: Multiple Vulnerabilities in SINEMA Remote Connect Client before V3.2 HF1
SIEMENS-SSA-868282
SSA-868282 V1.0: Multiple Vulnerabilities in SINEMA Remote Connect Client before V3.2 HF1
2024-07-09
MEDIUM 0 SSA-825651 V1.0: Deserialization Vulnerability in SIMATIC STEP 7 (TIA Portal) before V18 Update 2
SIEMENS-SSA-825651
SSA-825651 V1.0: Deserialization Vulnerability in SIMATIC STEP 7 (TIA Portal) before V18 Update 2
2024-07-09
MEDIUM 0 SSA-824889 V1.0: XML File Parsing Vulnerabilities in JT Open and PLM XML SDK
SIEMENS-SSA-824889
SSA-824889 V1.0: XML File Parsing Vulnerabilities in JT Open and PLM XML SDK
2024-07-09
MEDIUM 0 SSA-780073 V2.4 (Last Update: 2024-07-09): Denial of Service Vulnerability in PROFINET Devices via DCE-RPC Packets
SIEMENS-SSA-780073
SSA-780073 V2.4 (Last Update: 2024-07-09): Denial of Service Vulnerability in PROFINET Devices via DCE-RPC Packets
2024-07-09
MEDIUM 0 SSA-779936 V1.0: Catalog-Profile Deserialization Vulnerability in Siemens Engineering Platforms before V19
SIEMENS-SSA-779936
SSA-779936 V1.0: Catalog-Profile Deserialization Vulnerability in Siemens Engineering Platforms before V19
2024-07-09
CRITICAL 10.0 SSA-750274 V1.1 (Last Update: 2024-07-09): Impact of CVE-2024-3400 on RUGGEDCOM APE1808 devices configured with Palo Alto Networks Virtual NGFW
SIEMENS-SSA-750274 · 1 CVE
SSA-750274 V1.1 (Last Update: 2024-07-09): Impact of CVE-2024-3400 on RUGGEDCOM APE1808 devices configured with Palo Alto Networks Virtual NGFW
2024-07-09
CRITICAL 9.8 SSA-484086 V1.1 (Last Update: 2024-07-09): Multiple Vulnerabilities in SINEMA Remote Connect Server before V3.1
SIEMENS-SSA-484086 · 12 CVEs
SSA-484086 V1.1 (Last Update: 2024-07-09): Multiple Vulnerabilities in SINEMA Remote Connect Server before V3.1
2024-07-09
MEDIUM 0 SSA-473245 V2.7 (Last Update: 2024-07-09): Denial of Service Vulnerability in Profinet Devices
SIEMENS-SSA-473245
SSA-473245 V2.7 (Last Update: 2024-07-09): Denial of Service Vulnerability in Profinet Devices
2024-07-09
MEDIUM 0 SSA-381581 V1.0: Multiple Vulnerabilities in SINEMA Remote Connect Server before V3.2 SP1
SIEMENS-SSA-381581
SSA-381581 V1.0: Multiple Vulnerabilities in SINEMA Remote Connect Server before V3.2 SP1
2024-07-09
MEDIUM 0 SSA-346262 V3.3 (Last Update: 2024-07-09): Denial of Service Vulnerability in SNMP Interface of Industrial Products
SIEMENS-SSA-346262
SSA-346262 V3.3 (Last Update: 2024-07-09): Denial of Service Vulnerability in SNMP Interface of Industrial Products
2024-07-09
MEDIUM 0 SSA-337522 V1.1 (Last Update: 2024-07-09): Multiple Vulnerabilities in TIM 1531 IRC before V2.4.8
SIEMENS-SSA-337522
SSA-337522 V1.1 (Last Update: 2024-07-09): Multiple Vulnerabilities in TIM 1531 IRC before V2.4.8
2024-07-09
MEDIUM 0 SSA-313039 V1.0: Deserialization Vulnerability in STEP 7 Safety before V19
SIEMENS-SSA-313039
SSA-313039 V1.0: Deserialization Vulnerability in STEP 7 Safety before V19
2024-07-09
MEDIUM 0 SSA-160243 V1.1 (Last Update: 2024-07-09): Multiple Vulnerabilities in SINEC NMS before V2.0
SIEMENS-SSA-160243
SSA-160243 V1.1 (Last Update: 2024-07-09): Multiple Vulnerabilities in SINEC NMS before V2.0
2024-07-09
MEDIUM 0 SSA-064222 V1.0: Multiple File Parsing Vulnerabilities in Simcenter Femap before V2406
SIEMENS-SSA-064222
SSA-064222 V1.0: Multiple File Parsing Vulnerabilities in Simcenter Femap before V2406
2024-07-09
HIGH 7.8 Siemens SICAM PAS/PQS
ICSA-23-285-06 · 2 CVEs
SICAM PAS/PQS, SICAM PAS/PQS
2024-06-11
HIGH 7.8 Siemens SICAM Products
ICSA-24-137-02 · 3 CVEs
CPC80 Central Processing/Communication, CPCI85 Central Processing/Communication, OPUPI0 AMQP/MQTT +1 more
2024-06-11
CRITICAL 10.0 Siemens SIMATIC RTLS Locating Manager
ICSA-24-137-07 · 21 CVEs
SIMATIC RTLS Locating Manager (6GT2780-0DA00), SIMATIC RTLS Locating Manager (6GT2780-0DA10), SIMATIC RTLS Locating Manager (6GT2780-0DA20) +4 more
2024-06-11
MEDIUM 5.9 Siemens Mendix Applications
ICSA-24-165-01 · 1 CVE
Mendix Applications using Mendix 9, Mendix Applications using Mendix 10, Mendix Applications using Mendix 10 (V10.6)
2024-06-11
HIGH 8.2 Siemens SIMATIC S7-200 SMART Devices
ICSA-24-165-02 · 1 CVE
SIMATIC S7-200 SMART CPU CR40 (6ES7288-1CR40-0AA0), SIMATIC S7-200 SMART CPU CR60 (6ES7288-1CR60-0AA0), SIMATIC S7-200 SMART CPU SR20 (6ES7288-1SR20-0AA0) +15 more
2024-06-11
LOW 3.3 Siemens TIA Administrator
ICSA-24-165-03 · 1 CVE
TIA Administrator
2024-06-11
HIGH 8.2 Siemens ST7 ScadaConnect
ICSA-24-165-04 · 37 CVEs
ST7 ScadaConnect (6NH7997-5DA10-0AA0)
2024-06-11
MEDIUM 5.6 Siemens SITOP UPS1600
ICSA-24-165-05 · 3 CVEs
SITOP UPS1600 10 A Ethernet/ PROFINET (6EP4134-3AB00-2AY0), SITOP UPS1600 20 A Ethernet/ PROFINET (6EP4136-3AB00-2AY0), SITOP UPS1600 40 A Ethernet/ PROFINET (6EP4137-3AB00-2AY0) +1 more
2024-06-11
CRITICAL 9.3 Siemens PowerSys
ICSA-24-165-07 · 1 CVE
PowerSys
2024-06-11
HIGH 7.8 Siemens SICAM AK3/BC/TM
ICSA-24-165-09 · 1 CVE
CPCX26 Central Processing/Communication, ETA4 Ethernet Interface IEC60870-5-104, ETA5 Ethernet Int. 1x100TX IEC61850 Ed.2 +1 more
2024-06-11
CRITICAL 9.8 Siemens SIMATIC and SIPLUS
ICSA-24-165-10 · 23 CVEs
SIMATIC CP 1542SP-1 (6GK7542-6UX00-0XE0), SIMATIC CP 1542SP-1 IRC (6GK7542-6VX00-0XE0), SIMATIC CP 1543SP-1 (6GK7543-6WX00-0XE0) +3 more
2024-06-11
HIGH 7.5 Siemens SCALANCE XM-400, XR-500
ICSA-24-165-11 · 8 CVEs
SCALANCE XM408-4C (6GK5408-4GP00-2AM2), SCALANCE XM408-4C (L3 int.) (6GK5408-4GQ00-2AM2), SCALANCE XM408-8C (6GK5408-8GS00-2AM2) +23 more
2024-06-11
MEDIUM 0 SSA-900277 V1.0: MODEL File Parsing Vulnerability in Tecnomatix Plant Simulation before V2302.0012 and V2024.0001
SIEMENS-SSA-900277
SSA-900277 V1.0: MODEL File Parsing Vulnerability in Tecnomatix Plant Simulation before V2302.0012 and V2024.0001
2024-06-11
MEDIUM 0 SSA-879734 V1.0: Multiple Vulnerabilities in SCALANCE XM-400/XR-500 before V6.6.1
SIEMENS-SSA-879734
SSA-879734 V1.0: Multiple Vulnerabilities in SCALANCE XM-400/XR-500 before V6.6.1
2024-06-11
MEDIUM 0 SSA-871704 V1.1 (Last Update: 2024-06-11): Multiple Vulnerabilities in SICAM Products
SIEMENS-SSA-871704
SSA-871704 V1.1 (Last Update: 2024-06-11): Multiple Vulnerabilities in SICAM Products
2024-06-11
MEDIUM 0 SSA-625862 V1.0: Multiple Vulnerabilities in Third-Party Components in SIMATIC CP 1542SP-1 and CP 1543SP-1 before V2.3
SIEMENS-SSA-625862
SSA-625862 V1.0: Multiple Vulnerabilities in Third-Party Components in SIMATIC CP 1542SP-1 and CP 1543SP-1 before V2.3
2024-06-11
MEDIUM 0 SSA-620338 V1.0: Buffer Overflow Vulnerability in SICAM AK3 / BC / TM
SIEMENS-SSA-620338
SSA-620338 V1.0: Buffer Overflow Vulnerability in SICAM AK3 / BC / TM
2024-06-11
MEDIUM 0 SSA-540640 V1.0: Improper Privilege Management Vulnerability in Mendix Runtime
SIEMENS-SSA-540640
SSA-540640 V1.0: Improper Privilege Management Vulnerability in Mendix Runtime
2024-06-11
MEDIUM 0 SSA-481506 V1.0: Information Disclosure Vulnerability in SIMATIC S7-200 SMART Devices
SIEMENS-SSA-481506
SSA-481506 V1.0: Information Disclosure Vulnerability in SIMATIC S7-200 SMART Devices
2024-06-11
MEDIUM 0 SSA-341067 V1.0: Multiple vulnerabilities in third-party components in ST7 ScadaConnect before V1.1
SIEMENS-SSA-341067
SSA-341067 V1.0: Multiple vulnerabilities in third-party components in ST7 ScadaConnect before V1.1
2024-06-11
MEDIUM 0 SSA-319319 V1.0: Denial of Service Vulnerability in TIA Administrator
SIEMENS-SSA-319319
SSA-319319 V1.0: Denial of Service Vulnerability in TIA Administrator
2024-06-11
MEDIUM 0 SSA-238730 V1.0: Out-of-Bounds Write Vulnerabilities in SITOP UPS1600 before V2.5.4
SIEMENS-SSA-238730
SSA-238730 V1.0: Out-of-Bounds Write Vulnerabilities in SITOP UPS1600 before V2.5.4
2024-06-11
MEDIUM 0 SSA-093430 V1.1 (Last Update: 2024-06-11): Multiple Vulnerabilities in SIMATIC RTLS Locating Manager before V3.0
SIEMENS-SSA-093430
SSA-093430 V1.1 (Last Update: 2024-06-11): Multiple Vulnerabilities in SIMATIC RTLS Locating Manager before V3.0
2024-06-11
MEDIUM 0 SSA-035466 V1.1 (Last Update: 2024-06-11): Incorrect Permission Assignment in SICAM PAS/PQS
SIEMENS-SSA-035466
SSA-035466 V1.1 (Last Update: 2024-06-11): Incorrect Permission Assignment in SICAM PAS/PQS
2024-06-11
MEDIUM 0 SSA-024584 V1.0: Authentication Bypass Vulnerability in PowerSys before V3.11
SIEMENS-SSA-024584
SSA-024584 V1.0: Authentication Bypass Vulnerability in PowerSys before V3.11
2024-06-11
CRITICAL 10.0 Siemens SIMATIC STEP 7 and Derived Products
ICSA-23-166-08 · 1 CVE
SIMATIC PCS 7, SIMATIC S7-PM, SIMATIC S7-PM +1 more
2024-05-14
CRITICAL 9.0 Siemans WIBU Systems CodeMeter
ICSA-23-257-06 · 1 CVE
PSS(R)CAPE V14, PSS(R)CAPE V15, PSS(R)E V34 +11 more
2024-05-14
HIGH 7.1 Siemens RUGGEDCOM APE180
ICSA-23-285-07 · 7 CVEs
RUGGEDCOM APE1808
2024-05-14
HIGH 8.1 Siemens RUGGEDCOM APE1808 Devices
ICSA-23-320-14 · 3 CVEs
RUGGEDCOM APE1808
2024-05-14
HIGH 7.5 Siemens Simantic S7-1500 CPU family
ICSA-23-348-09 · 1 CVE
SIMATIC Drive Controller CPU 1504D TF (6ES7615-4DF10-0AB0), SIMATIC Drive Controller CPU 1507D TF (6ES7615-7DF10-0AB0), SIMATIC ET 200SP Open Controller CPU 1515SP PC2 (incl. SIPLUS variants) +148 more
2024-05-14
MEDIUM 5.3 Siemens RUGGEDCOM APE1808
ICSA-24-046-08 · 1 CVE
RUGGEDCOM APE1808
2024-05-14
HIGH 7.8 Siemens Polarion ALM
ICSA-24-046-14 · 2 CVEs
Polarion ALM
2024-05-14
HIGH 7.8 Siemens Solid Edge
ICSA-24-074-02 · 1 CVE
Solid Edge SE2023, Solid Edge SE2024
2024-05-14
CRITICAL 10.0 Siemens Sinteso EN Cerberus PRO EN Fire Protection Systems
ICSA-24-074-09 · 3 CVEs
Cerberus PRO EN Engineering Tool, Cerberus PRO EN Engineering Tool, Cerberus PRO EN Fire Panel FC72x IP6 +29 more
2024-05-14
HIGH 7.8 Siemens Parasolid
ICSA-24-137-01 · 3 CVEs
Parasolid V35.1, Parasolid V36.0, Parasolid V36.1
2024-05-14
HIGH 7.8 Siemens Teamcenter Visualization and JT2Go
ICSA-24-137-03 · 2 CVEs
JT2Go, Teamcenter Visualization V14.1, Teamcenter Visualization V14.2 +2 more
2024-05-14
MEDIUM 6.5 Siemens Polarion ALM
ICSA-24-137-04 · 1 CVE
Polarion ALM
2024-05-14
HIGH 7.8 Siemens Simcenter Nastran
ICSA-24-137-05 · 1 CVE
Simcenter Nastran 2306, Simcenter Nastran 2312, Simcenter Nastran 2406
2024-05-14
CRITICAL 10.0 Siemens SIMATIC CN 4100
ICSA-24-137-06 · 3 CVEs
SIMATIC CN 4100
2024-05-14
HIGH 7.8 Siemens PS/IGES Parasolid Translator Component
ICSA-24-137-08 · 11 CVEs
PS/IGES Parasolid Translator Component
2024-05-14
HIGH 7.8 Siemens Solid Edge
ICSA-24-137-09 · 8 CVEs
Solid Edge, Solid Edge, Solid Edge
2024-05-14
CRITICAL 9.8 Siemens RUGGEDCOM CROSSBOW
ICSA-24-137-10 · 9 CVEs
RUGGEDCOM CROSSBOW
2024-05-14
HIGH 7.5 Siemens RUGGEDCOM APE1808
ICSA-24-137-11 · 2 CVEs
RUGGEDCOM APE1808LNX (6GK6015-0AL20-0GH0), RUGGEDCOM APE1808LNX CC (6GK6015-0AL20-0GH1)
2024-05-14
CRITICAL 10.0 Siemens Desigo Fire Safety UL and Cerberus PRO UL Fire Protection Systems
ICSA-24-137-12 · 3 CVEs
Cerberus PRO UL Compact Panel FC922/924, Cerberus PRO UL Engineering Tool, Cerberus PRO UL X300 Cloud Distribution +3 more
2024-05-14
MEDIUM 0 SSA-976324 V1.0: Multiple IGS File Parsing Vulnerabilities in PS/IGES Parasolid Translator Component before V27.1.215
SIEMENS-SSA-976324
SSA-976324 V1.0: Multiple IGS File Parsing Vulnerabilities in PS/IGES Parasolid Translator Component before V27.1.215
2024-05-14
MEDIUM 0 SSA-968170 V1.3 (Last Update: 2024-05-14): Remote Code Execution Vulnerability in SIMATIC STEP 7 V5.x and Derived Products
SIEMENS-SSA-968170
SSA-968170 V1.3 (Last Update: 2024-05-14): Remote Code Execution Vulnerability in SIMATIC STEP 7 V5.x and Derived Products
2024-05-14
CRITICAL 10.0 SSA-953710 V1.0: Vulnerabilities in the Network Communication Stack in Desigo Fire Safety UL and Cerberus PRO UL Fire Protection Systems
SIEMENS-SSA-953710 · 3 CVEs
SSA-953710 V1.0: Vulnerabilities in the Network Communication Stack in Desigo Fire Safety UL and Cerberus PRO UL Fire Protection Systems
2024-05-14
MEDIUM 0 SSA-925850 V1.0: Improper Access Control in Polarion ALM
SIEMENS-SSA-925850
SSA-925850 V1.0: Improper Access Control in Polarion ALM
2024-05-14
MEDIUM 0 SSA-923361 V1.0: MODEL File Parsing Vulnerability in Tecnomatix Plant Simulation before V2302.0011
SIEMENS-SSA-923361
SSA-923361 V1.0: MODEL File Parsing Vulnerability in Tecnomatix Plant Simulation before V2302.0011
2024-05-14
MEDIUM 0 SSA-916916 V1.0: Security Vulnerabilities Fixed in RUGGEDCOM CROSSBOW V5.5
SIEMENS-SSA-916916
SSA-916916 V1.0: Security Vulnerabilities Fixed in RUGGEDCOM CROSSBOW V5.5
2024-05-14
MEDIUM 0 SSA-871717 V1.2 (Last Update: 2024-05-14): Multiple Vulnerabilities in Polarion ALM
SIEMENS-SSA-871717
SSA-871717 V1.2 (Last Update: 2024-05-14): Multiple Vulnerabilities in Polarion ALM
2024-05-14
MEDIUM 0 SSA-665034 V1.1 (Last Update: 2024-05-14): Vulnerability in Nozomi Guardian/CMC before 23.3.0 on RUGGEDCOM APE1808 devices
SIEMENS-SSA-665034
SSA-665034 V1.1 (Last Update: 2024-05-14): Vulnerability in Nozomi Guardian/CMC before 23.3.0 on RUGGEDCOM APE1808 devices
2024-05-14
MEDIUM 0 SSA-661579 V1.0: Multiple File Parsing Vulnerabilities in Teamcenter Visualization and JT2Go
SIEMENS-SSA-661579
SSA-661579 V1.0: Multiple File Parsing Vulnerabilities in Teamcenter Visualization and JT2Go
2024-05-14
MEDIUM 0 SSA-647455 V1.2 (Last Update: 2024-05-14): Multiple Vulnerabilities in Nozomi Guardian/CMC before 22.6.2 on RUGGEDCOM APE1808 devices
SIEMENS-SSA-647455
SSA-647455 V1.2 (Last Update: 2024-05-14): Multiple Vulnerabilities in Nozomi Guardian/CMC before 22.6.2 on RUGGEDCOM APE1808 devices
2024-05-14
MEDIUM 0 SSA-592380 V1.2 (Last Update: 2024-05-14): Denial of Service Vulnerability in SIMATIC S7-1500 CPUs and related products
SIEMENS-SSA-592380
SSA-592380 V1.2 (Last Update: 2024-05-14): Denial of Service Vulnerability in SIMATIC S7-1500 CPUs and related products
2024-05-14
MEDIUM 0 SSA-589937 V1.0: Multiple Memory Corruption Vulnerabilities in Solid Edge
SIEMENS-SSA-589937
SSA-589937 V1.0: Multiple Memory Corruption Vulnerabilities in Solid Edge
2024-05-14
MEDIUM 0 SSA-489698 V1.0: X_T File Parsing Vulnerability in Parasolid
SIEMENS-SSA-489698
SSA-489698 V1.0: X_T File Parsing Vulnerability in Parasolid
2024-05-14
MEDIUM 0 SSA-382651 V1.1 (Last Update: 2024-05-14): File Parsing Vulnerability in Solid Edge
SIEMENS-SSA-382651
SSA-382651 V1.1 (Last Update: 2024-05-14): File Parsing Vulnerability in Solid Edge
2024-05-14
MEDIUM 0 SSA-292063 V1.1 (Last Update: 2024-05-14): Multiple Vulnerabilities in Nozomi Guardian/CMC before 22.6.3 and 23.1.0 on RUGGEDCOM APE1808 devices
SIEMENS-SSA-292063
SSA-292063 V1.1 (Last Update: 2024-05-14): Multiple Vulnerabilities in Nozomi Guardian/CMC before 22.6.3 and 23.1.0 on RUGGEDCOM APE1808 devices
2024-05-14
MEDIUM 0 SSA-292022 V1.0: Vulnerability in Nozomi Guardian/CMC before 23.4.1 on RUGGEDCOM APE1808 devices
SIEMENS-SSA-292022
SSA-292022 V1.0: Vulnerability in Nozomi Guardian/CMC before 23.4.1 on RUGGEDCOM APE1808 devices
2024-05-14
MEDIUM 0 SSA-273900 V1.0: Multiple Vulnerabilities in SIMATIC CN 4100 before V3.0
SIEMENS-SSA-273900
SSA-273900 V1.0: Multiple Vulnerabilities in SIMATIC CN 4100 before V3.0
2024-05-14
MEDIUM 0 SSA-258494 V1.0: Stack Overflow Vulnerability in Simcenter Nastran before 2406.90
SIEMENS-SSA-258494
SSA-258494 V1.0: Stack Overflow Vulnerability in Simcenter Nastran before 2406.90
2024-05-14
CRITICAL 9.8 SSA-240541 V1.3 (Last Update: 2024-05-14): WIBU Systems CodeMeter Heap Buffer Overflow Vulnerability in Industrial Products
SIEMENS-SSA-240541 · 1 CVE
SSA-240541 V1.3 (Last Update: 2024-05-14): WIBU Systems CodeMeter Heap Buffer Overflow Vulnerability in Industrial Products
2024-05-14
CRITICAL 10.0 SSA-225840 V1.1 (Last Update: 2024-05-14): Vulnerabilities in the Network Communication Stack in Sinteso EN and Cerberus PRO EN Fire Protection Systems
SIEMENS-SSA-225840 · 3 CVEs
SSA-225840 V1.1 (Last Update: 2024-05-14): Vulnerabilities in the Network Communication Stack in Sinteso EN and Cerberus PRO EN Fire Protection Systems
2024-05-14
MEDIUM 0 SSA-046364 V1.0: X_T File Parsing Vulnerabilities in Parasolid
SIEMENS-SSA-046364
SSA-046364 V1.0: X_T File Parsing Vulnerabilities in Parasolid
2024-05-14
HIGH 7.4 Siemens SCALANCE W1750D Devices
ICSA-23-075-04 · 4 CVEs
SCALANCE W1750D (JP) (6GK5750-2HX01-1AD0), SCALANCE W1750D (ROW) (6GK5750-2HX01-1AA0), SCALANCE W1750D (USA) (6GK5750-2HX01-1AB0)
2024-04-09
CRITICAL 9.8 Siemens SIMATIC S7-1500 TM MFP BIOS
ICSA-23-166-10 · 72 CVEs
SIMATIC S7-1500 TM MFP - BIOS
2024-04-09
CRITICAL 9.8 Siemens SIMATIC S7-1500 TM MFP Linux Kernel
ICSA-23-166-11 · 168 CVEs
SIMATIC S7-1500 TM MFP - GNU/Linux subsystem
2024-04-09
HIGH 8.4 Siemens SCALANCE W700
ICSA-23-320-05 · 3 CVEs
SCALANCE W721-1 RJ45 (6GK5721-1FC00-0AA0), SCALANCE W721-1 RJ45 (6GK5721-1FC00-0AB0), SCALANCE W722-1 RJ45 (6GK5722-1FC00-0AA0) +61 more
2024-04-09
CRITICAL 9.8 Siemens SCALANCE W1750D
ICSA-24-046-01 · 14 CVEs
SCALANCE W1750D (JP) (6GK5750-2HX01-1AD0), SCALANCE W1750D (ROW) (6GK5750-2HX01-1AA0), SCALANCE W1750D (USA) (6GK5750-2HX01-1AB0)
2024-04-09
CRITICAL 9.8 Siemens Scalance W1750D
ICSA-24-102-05 · 3 CVEs
SCALANCE W1750D (JP) (6GK5750-2HX01-1AD0), SCALANCE W1750D (ROW) (6GK5750-2HX01-1AA0), SCALANCE W1750D (USA) (6GK5750-2HX01-1AB0)
2024-04-09
HIGH 7.8 Siemens Parasolid
ICSA-24-102-06 · 3 CVEs
Parasolid V35.1, Parasolid V36.0, Parasolid V36.1
2024-04-09
HIGH 7.6 Siemens SINEC NMS
ICSA-24-102-07 · 2 CVEs
SINEC NMS
2024-04-09
MEDIUM 0 SSA-885980 V1.0: Multiple Vulnerabilities in Scalance W1750D
SIEMENS-SSA-885980
SSA-885980 V1.0: Multiple Vulnerabilities in Scalance W1750D
2024-04-09
MEDIUM 0 SSA-831302 V1.4 (Last Update: 2024-04-09): Vulnerabilities in the BIOS of the SIMATIC S7-1500 TM MFP before V1.3.0
SIEMENS-SSA-831302
SSA-831302 V1.4 (Last Update: 2024-04-09): Vulnerabilities in the BIOS of the SIMATIC S7-1500 TM MFP before V1.3.0
2024-04-09
MEDIUM 0 SSA-794697 V1.8 (Last Update: 2024-04-09): Vulnerabilities in the additional GNU/Linux subsystem of the SIMATIC S7-1500 TM MFP before V1.1
SIEMENS-SSA-794697
SSA-794697 V1.8 (Last Update: 2024-04-09): Vulnerabilities in the additional GNU/Linux subsystem of the SIMATIC S7-1500 TM MFP before V1.1
2024-04-09
MEDIUM 0 SSA-716164 V1.1 (Last Update: 2024-04-09): Multiple Vulnerabilities in Scalance W1750D
SIEMENS-SSA-716164
SSA-716164 V1.1 (Last Update: 2024-04-09): Multiple Vulnerabilities in Scalance W1750D
2024-04-09
MEDIUM 0 SSA-556635 V1.0: Multiple Vulnerabilities in Telecontrol Server Basic before V3.1.2.0
SIEMENS-SSA-556635
SSA-556635 V1.0: Multiple Vulnerabilities in Telecontrol Server Basic before V3.1.2.0
2024-04-09
MEDIUM 0 SSA-457702 V1.1 (Last Update: 2024-04-09): Wi-Fi Encryption Bypass Vulnerabilities in SCALANCE W700 Product Family
SIEMENS-SSA-457702
SSA-457702 V1.1 (Last Update: 2024-04-09): Wi-Fi Encryption Bypass Vulnerabilities in SCALANCE W700 Product Family
2024-04-09
MEDIUM 0 SSA-222019 V1.0: X_T File Parsing Vulnerabilities in Parasolid
SIEMENS-SSA-222019
SSA-222019 V1.0: X_T File Parsing Vulnerabilities in Parasolid
2024-04-09
MEDIUM 0 SSA-203374 V1.2 (Last Update: 2024-04-09): Multiple OpenSSL Vulnerabilities in SCALANCE W1750D Devices
SIEMENS-SSA-203374
SSA-203374 V1.2 (Last Update: 2024-04-09): Multiple OpenSSL Vulnerabilities in SCALANCE W1750D Devices
2024-04-09
MEDIUM 0 SSA-128433 V1.0: Multiple Vulnerabilities in SINEC NMS before V2.0 SP2
SIEMENS-SSA-128433
SSA-128433 V1.0: Multiple Vulnerabilities in SINEC NMS before V2.0 SP2
2024-04-09
CRITICAL 9.8 Siemens SIMATIC
ICSA-24-074-07 · 157 CVEs
SIMATIC RF160B (6GT2003-0FA00)
2024-03-14
CRITICAL 9.1 Siemens SCALANCE Family Products
ICSA-23-320-08 · 13 CVEs
SCALANCE XB205-3 (SC, PN) (6GK5205-3BB00-2AB2), SCALANCE XB205-3 (ST, E/IP) (6GK5205-3BB00-2TB2), SCALANCE XB205-3 (ST, E/IP) (6GK5205-3BD00-2TB2) +68 more
2024-03-12
HIGH 7.5 Siemens Web Server of Industrial Products
ICSA-23-348-08 · 1 CVE
SIMATIC CP 1242-7 V2 (incl. SIPLUS variants), SIMATIC CP 1243-1 (incl. SIPLUS variants), SIMATIC CP 1243-1 DNP3 (incl. SIPLUS variants) +6 more
2024-03-12
HIGH 7.8 Siemens Simcenter Femap
ICSA-24-046-10 · 7 CVEs
Simcenter Femap, Simcenter Femap, Simcenter Femap
2024-03-12
CRITICAL 9.8 Siemens SINEC NMS
ICSA-24-046-15 · 62 CVEs
SINEC NMS
2024-03-12
CRITICAL 9.8 Siemens SINEMA Remote Connect Server
ICSA-24-074-03 · 2 CVEs
SINEMA Remote Connect Server, SINEMA Remote Connect Server
2024-03-12
HIGH 7.6 Siemens SINEMA Remote Connect Client
ICSA-24-074-04 · 1 CVE
SINEMA Remote Connect Client
2024-03-12
HIGH 7.5 Siemens SENTRON
ICSA-24-074-06 · 1 CVE
SENTRON 3KC ATC6 Expansion Module Ethernet (3KC9000-8TL75)
2024-03-12
MEDIUM 5.5 Siemens Siveillance Control
ICSA-24-074-10 · 1 CVE
Siveillance Control
2024-03-12
MEDIUM 0 SSA-943925 V1.1 (Last Update: 2024-03-12): Multiple Vulnerabilities in SINEC NMS before V2.0 SP1
SIEMENS-SSA-943925
SSA-943925 V1.1 (Last Update: 2024-03-12): Multiple Vulnerabilities in SINEC NMS before V2.0 SP1
2024-03-12
MEDIUM 0 SSA-918992 V1.0: Unused HTTP Service on SENTRON 3KC ATC6 Ethernet Module
SIEMENS-SSA-918992
SSA-918992 V1.0: Unused HTTP Service on SENTRON 3KC ATC6 Ethernet Module
2024-03-12
MEDIUM 0 SSA-770721 V1.0: Multiple Vulnerabilities in SIMATIC RF160B before V2.2
SIEMENS-SSA-770721
SSA-770721 V1.0: Multiple Vulnerabilities in SIMATIC RF160B before V2.2
2024-03-12
MEDIUM 0 SSA-699386 V1.2 (Last Update: 2024-03-12): Multiple Vulnerabilities in SCALANCE XB-200 / XC-200 / XP-200 / XF-200BA / XR-300WG Family before V4.5
SIEMENS-SSA-699386
SSA-699386 V1.2 (Last Update: 2024-03-12): Multiple Vulnerabilities in SCALANCE XB-200 / XC-200 / XP-200 / XF-200BA / XR-300WG Family before V4.5
2024-03-12
MEDIUM 0 SSA-693975 V1.1 (Last Update: 2024-03-12): Denial-of-Service Vulnerability in the Web Server of Industrial Products
SIEMENS-SSA-693975
SSA-693975 V1.1 (Last Update: 2024-03-12): Denial-of-Service Vulnerability in the Web Server of Industrial Products
2024-03-12
MEDIUM 0 SSA-653855 V1.0: Information Disclosure vulnerability in SINEMA Remote Connect Client before V3.1 SP1
SIEMENS-SSA-653855
SSA-653855 V1.0: Information Disclosure vulnerability in SINEMA Remote Connect Client before V3.1 SP1
2024-03-12
MEDIUM 0 SSA-576771 V1.0: Multiple Vulnerabilities in SINEMA Remote Connect Server before V3.2
SIEMENS-SSA-576771
SSA-576771 V1.0: Multiple Vulnerabilities in SINEMA Remote Connect Server before V3.2
2024-03-12
MEDIUM 0 SSA-145196 V1.0: Authorization Bypass Vulnerability in Siveillance Control
SIEMENS-SSA-145196
SSA-145196 V1.0: Authorization Bypass Vulnerability in Siveillance Control
2024-03-12
MEDIUM 0 SSA-000072 V1.1 (Last Update: 2024-03-12): Multiple File Parsing Vulnerabilities in Simcenter Femap
SIEMENS-SSA-000072
SSA-000072 V1.1 (Last Update: 2024-03-12): Multiple File Parsing Vulnerabilities in Simcenter Femap
2024-03-12
HIGH 7.5 Siemens Industrial Products Intel CPUs (Update F)
ICSA-21-222-05 · 12 CVEs
SIMATIC Drive Controller CPU 1504D TF (6ES7615-4DF10-0AB0), SIMATIC Drive Controller CPU 1507D TF (6ES7615-7DF10-0AB0), SIMATIC ET 200SP Open Controller CPU 1515SP PC2 (incl. SIPLUS variants) +22 more
2024-02-13
HIGH 7.5 Siemens SIDIS Prime
ICSA-24-046-02 · 5 CVEs
SIDIS Prime
2024-02-13
HIGH 7.5 Siemens SIMATIC RTLS Gateways
ICSA-24-046-03 · 1 CVE
SIMATIC RTLS Gateway RTLS4030G, CMIIT (6GT2701-5DB23), SIMATIC RTLS Gateway RTLS4030G, ETSI (6GT2701-5DB03), SIMATIC RTLS Gateway RTLS4030G, FCC (6GT2701-5DB13) +2 more
2024-02-13
HIGH 7.5 Siemens CP343-1 Devices
ICSA-24-046-04 · 1 CVE
SIMATIC CP 343-1 (6GK7343-1EX30-0XE0), SIMATIC CP 343-1 Lean (6GK7343-1CX10-0XE0), SIPLUS NET CP 343-1 (6AG1343-1EX30-7XE0) +1 more
2024-02-13
CRITICAL 9.8 Siemens Location Intelligence
ICSA-24-046-05 · 1 CVE
Location Intelligence Perpetual Large (9DE5110-8CA13-1AX0), Location Intelligence Perpetual Medium (9DE5110-8CA12-1AX0), Location Intelligence Perpetual Non-Prod (9DE5110-8CA10-1AX0) +5 more
2024-02-13
HIGH 7.8 Siemens Unicam FX
ICSA-24-046-06 · 1 CVE
Unicam FX
2024-02-13
HIGH 7.8 Siemens Tecnomatix Plant Simulation
ICSA-24-046-07 · 10 CVEs
Tecnomatix Plant Simulation V2201, Tecnomatix Plant Simulation V2201, Tecnomatix Plant Simulation V2302 +1 more
2024-02-13
CRITICAL 9.1 Siemens SCALANCE SC-600 Family
ICSA-24-046-09 · 8 CVEs
SCALANCE SC622-2C (6GK5622-2GS00-2AC2), SCALANCE SC622-2C (6GK5622-2GS00-2AC2), SCALANCE SC622-2C (6GK5622-2GS00-2AC2) +15 more
2024-02-13
CRITICAL 9.8 Siemens SCALANCE XCM-/XRM-300
ICSA-24-046-11 · 160 CVEs
SCALANCE XCH328 (6GK5328-4TS01-2EC2), SCALANCE XCM324 (6GK5324-8TS01-2AC2), SCALANCE XCM328 (6GK5328-4TS01-2AC2) +8 more
2024-02-13
HIGH 7.8 Siemens Parasolid
ICSA-24-046-13 · 2 CVEs
Parasolid V35.0, Parasolid V35.0, Parasolid V35.1 +2 more
2024-02-13
MEDIUM 0 SSA-806742 V1.0: Multiple Vulnerabilities in SCALANCE XCM-/XRM-300 before V2.4
SIEMENS-SSA-806742
SSA-806742 V1.0: Multiple Vulnerabilities in SCALANCE XCM-/XRM-300 before V2.4
2024-02-13
MEDIUM 0 SSA-797296 V1.0: XT File Parsing Vulnerability in Parasolid
SIEMENS-SSA-797296
SSA-797296 V1.0: XT File Parsing Vulnerability in Parasolid
2024-02-13
MEDIUM 0 SSA-647068 V1.0: Ripple20 in SIMATIC RTLS Gateways
SIEMENS-SSA-647068
SSA-647068 V1.0: Ripple20 in SIMATIC RTLS Gateways
2024-02-13
MEDIUM 0 SSA-602936 V1.0: Multiple Vulnerabilities in SCALANCE SC-600 Family before V3.1
SIEMENS-SSA-602936
SSA-602936 V1.0: Multiple Vulnerabilities in SCALANCE SC-600 Family before V3.1
2024-02-13
MEDIUM 0 SSA-580228 V1.0: Use of Hard-Coded Credentials Vulnerability in Location Intelligence before V4.3
SIEMENS-SSA-580228
SSA-580228 V1.0: Use of Hard-Coded Credentials Vulnerability in Location Intelligence before V4.3
2024-02-13
MEDIUM 0 SSA-543502 V1.0: Local Privilege Escalation Vulnerability in Unicam FX
SIEMENS-SSA-543502
SSA-543502 V1.0: Local Privilege Escalation Vulnerability in Unicam FX
2024-02-13
MEDIUM 0 SSA-516818 V1.0: TCP Sequence Number Validation Vulnerability in the TCP/IP Stack of CP343-1 Devices
SIEMENS-SSA-516818
SSA-516818 V1.0: TCP Sequence Number Validation Vulnerability in the TCP/IP Stack of CP343-1 Devices
2024-02-13
MEDIUM 0 SSA-309571 V2.0 (Last Update: 2024-02-13): IPU 2021.1 Vulnerabilities in Siemens Industrial Products using Intel CPUs (June 2021)
SIEMENS-SSA-309571
SSA-309571 V2.0 (Last Update: 2024-02-13): IPU 2021.1 Vulnerabilities in Siemens Industrial Products using Intel CPUs (June 2021)
2024-02-13
MEDIUM 0 SSA-108696 V1.0: Multiple Vulnerabilities in SIDIS Prime before V4.0.400
SIEMENS-SSA-108696
SSA-108696 V1.0: Multiple Vulnerabilities in SIDIS Prime before V4.0.400
2024-02-13
MEDIUM 0 SSA-017796 V1.0: Multiple File Parsing Vulnerabilities in Tecnomatix Plant Simulation
SIEMENS-SSA-017796
SSA-017796 V1.0: Multiple File Parsing Vulnerabilities in Tecnomatix Plant Simulation
2024-02-13
CRITICAL 9.9 ICSA-20-070-01_Siemens and PKE SiNVR/SiVMS Video Server (Update B)
ICSA-20-070-01 · 12 CVEs
Control Center Server (CCS), Control Center Server (CCS)
2024-01-09
MEDIUM 5.9 Siemens OpenSSL Vulnerabilities in Industrial Products
ICSA-22-104-05 · 1 CVE
RUGGEDCOM CROSSBOW Station Access Controller (SAC), RUGGEDCOM RM1224 LTE(4G) EU (6GK6108-4AM00-2BA2), RUGGEDCOM RM1224 LTE(4G) NAM (6GK6108-4AM00-2DA2) +92 more
2024-01-09
CRITICAL 9.9 Siemens SICAM Q100
ICSA-22-314-11 · 4 CVEs
POWER METER SICAM Q100 (7KG9501-0AA01-0AA1), POWER METER SICAM Q100 (7KG9501-0AA01-2AA1), POWER METER SICAM Q100 (7KG9501-0AA31-0AA1) +1 more
2024-01-09
MEDIUM 5.5 Siemens SICAM Q100 Devices
ICSA-23-348-13 · 2 CVEs
POWER METER SICAM Q100 (7KG9501-0AA01-0AA1), POWER METER SICAM Q100 (7KG9501-0AA01-2AA1), POWER METER SICAM Q100 (7KG9501-0AA31-0AA1) +1 more
2024-01-09
HIGH 7.8 Siemens Teamcenter Visualization and JT2Go
ICSA-24-011-06 · 4 CVEs
JT2Go, Teamcenter Visualization V13.3, Teamcenter Visualization V14.1 +2 more
2024-01-09
HIGH 7.8 Siemens Spectrum Power 7
ICSA-24-011-07 · 1 CVE
Spectrum Power 7
2024-01-09
MEDIUM 6.6 Siemens SICAM A8000
ICSA-24-011-08 · 1 CVE
CP-8031 MASTER MODULE (6MF2803-1AA00), CP-8050 MASTER MODULE (6MF2805-0AA00)
2024-01-09
CRITICAL 9.8 Siemens SIMATIC CN 4100
ICSA-24-011-09 · 3 CVEs
SIMATIC CN 4100
2024-01-09
CRITICAL 10.0 Siemens SIMATIC
ICSA-24-011-10 · 1 CVE
SIMATIC IPC647E, SIMATIC IPC847E, SIMATIC IPC1047E
2024-01-09
HIGH 7.8 Siemens Solid Edge
ICSA-24-011-11 · 11 CVEs
Solid Edge SE2023
2024-01-09
HIGH 7.5 SSA-844761 V1.3 (Last Update: 2024-01-09): Multiple Vulnerabilities in SiNVR/SiVMS Video Server
SIEMENS-SSA-844761 · 5 CVEs
SSA-844761 V1.3 (Last Update: 2024-01-09): Multiple Vulnerabilities in SiNVR/SiVMS Video Server
2024-01-09
MEDIUM 0 SSA-794653 V1.0: Multiple File Parsing Vulnerabilities in Teamcenter Visualization and JT2Go
SIEMENS-SSA-794653
SSA-794653 V1.0: Multiple File Parsing Vulnerabilities in Teamcenter Visualization and JT2Go
2024-01-09
MEDIUM 0 SSA-786191 V1.0: Local Privilege Escalation Vulnerability in Spectrum Power 7
SIEMENS-SSA-786191
SSA-786191 V1.0: Local Privilege Escalation Vulnerability in Spectrum Power 7
2024-01-09
MEDIUM 0 SSA-777015 V1.0: Multiple Vulnerabilities in SIMATIC CN 4100 before V2.7
SIEMENS-SSA-777015
SSA-777015 V1.0: Multiple Vulnerabilities in SIMATIC CN 4100 before V2.7
2024-01-09
MEDIUM 0 SSA-772220 V2.3 (Last Update: 2024-01-09): OpenSSL Vulnerabilities in Industrial Products
SIEMENS-SSA-772220
SSA-772220 V2.3 (Last Update: 2024-01-09): OpenSSL Vulnerabilities in Industrial Products
2024-01-09
CRITICAL 9.9 SSA-761844 V1.1 (Last Update: 2024-01-09): Multiple Vulnerabilities in Control Center Server (CCS)
SIEMENS-SSA-761844 · 12 CVEs
SSA-761844 V1.1 (Last Update: 2024-01-09): Multiple Vulnerabilities in Control Center Server (CCS)
2024-01-09
CRITICAL 9.8 SSA-761617 V1.2 (Last Update: 2024-01-09): Authentication Bypass and Information Disclosure Vulnerabilities in SiNVR/SiVMS Video Server
SIEMENS-SSA-761617 · 2 CVEs
SSA-761617 V1.2 (Last Update: 2024-01-09): Authentication Bypass and Information Disclosure Vulnerabilities in SiNVR/SiVMS Video Server
2024-01-09
MEDIUM 0 SSA-702935 V1.0: Redfish Server Vulnerability in maxView Storage Manager
SIEMENS-SSA-702935
SSA-702935 V1.0: Redfish Server Vulnerability in maxView Storage Manager
2024-01-09
MEDIUM 0 SSA-589891 V1.0: Multiple PAR File Parsing Vulnerabilities in Solid Edge
SIEMENS-SSA-589891
SSA-589891 V1.0: Multiple PAR File Parsing Vulnerabilities in Solid Edge
2024-01-09
MEDIUM 0 SSA-583634 V1.0: Command Injection Vulnerability in the CPCI85 Firmware of SICAM A8000 Devices
SIEMENS-SSA-583634
SSA-583634 V1.0: Command Injection Vulnerability in the CPCI85 Firmware of SICAM A8000 Devices
2024-01-09
MEDIUM 0 SSA-570294 V1.1 (Last Update: 2024-01-09): Multiple Vulnerabilities in SICAM Q100 Before V2.50
SIEMENS-SSA-570294
SSA-570294 V1.1 (Last Update: 2024-01-09): Multiple Vulnerabilities in SICAM Q100 Before V2.50
2024-01-09
MEDIUM 0 SSA-480095 V1.1 (Last Update: 2024-01-09): Vulnerabilities in the Web Interface of SICAM Q100 Devices before V2.60
SIEMENS-SSA-480095
SSA-480095 V1.1 (Last Update: 2024-01-09): Vulnerabilities in the Web Interface of SICAM Q100 Devices before V2.60
2024-01-09
HIGH 7.8 Siemens RUGGEDCOM ROS (Update A)
ICSA-19-344-03 · 2 CVEs
RUGGEDCOM RMC8388 V4.X, RUGGEDCOM RMC8388 V5.X, RUGGEDCOM RMC8388NC V4.X +29 more
2023-12-12
HIGH 8.4 Siemens LOGO! Soft Comfort
ICSA-21-103-09 · 2 CVEs
LOGO! Soft Comfort
2023-12-12
HIGH 7.5 Siemens SIMATIC and SIPLUS Products
ICSA-23-348-05 · 2 CVEs
SIMATIC S7-400 CPU 412-2 PN V7 (6ES7412-2EK07-0AB0), SIMATIC S7-400 CPU 414-3 PN/DP V7 (6ES7414-3EM07-0AB0), SIMATIC S7-400 CPU 414F-3 PN/DP V7 (6ES7414-3FM07-0AB0) +6 more
2023-12-12
HIGH 7.5 Siemens OPC UA Implementation in SINUMERIK ONE and SINUMERIK MC
ICSA-23-348-06 · 1 CVE
SINUMERIK MC, SINUMERIK ONE
2023-12-12
MEDIUM 4.2 Siemens SIMATIC STEP 7 (TIA Portal)
ICSA-23-348-07 · 1 CVE
SIMATIC STEP 7 (TIA Portal)
2023-12-12
HIGH 8.1 Siemens SINEC INS
ICSA-23-348-16 · 7 CVEs
SINEC INS
2023-12-12
MEDIUM 0 SSA-983300 V1.1 (Last Update: 2023-12-12): Vulnerabilities in LOGO! Soft Comfort
SIEMENS-SSA-983300
SSA-983300 V1.1 (Last Update: 2023-12-12): Vulnerabilities in LOGO! Soft Comfort
2023-12-12
MEDIUM 0 SSA-892915 V1.0: Multiple Denial of Service Vulnerabilities in the Webserver of Industrial Products
SIEMENS-SSA-892915
SSA-892915 V1.0: Multiple Denial of Service Vulnerabilities in the Webserver of Industrial Products
2023-12-12
MEDIUM 0 SSA-887801 V1.0: Information Disclosure Vulnerability in SIMATIC STEP 7 (TIA Portal)
SIEMENS-SSA-887801
SSA-887801 V1.0: Information Disclosure Vulnerability in SIMATIC STEP 7 (TIA Portal)
2023-12-12
MEDIUM 0 SSA-618620 V1.2 (Last Update: 2023-12-12): Vulnerabilities in Boot Loader (U-Boot) of RUGGEDCOM ROS Devices
SIEMENS-SSA-618620
SSA-618620 V1.2 (Last Update: 2023-12-12): Vulnerabilities in Boot Loader (U-Boot) of RUGGEDCOM ROS Devices
2023-12-12
MEDIUM 0 SSA-118850 V1.0: Denial of Service Vulnerability in the OPC UA Implementation in SINUMERIK ONE and SINUMERIK MC
SIEMENS-SSA-118850
SSA-118850 V1.0: Denial of Service Vulnerability in the OPC UA Implementation in SINUMERIK ONE and SINUMERIK MC
2023-12-12
MEDIUM 0 SSA-077170 V1.0: Multiple Vulnerabilities in SINEC INS before V1.0 SP2 Update 2
SIEMENS-SSA-077170
SSA-077170 V1.0: Multiple Vulnerabilities in SINEC INS before V1.0 SP2 Update 2
2023-12-12
HIGH 7.8 Siemens SIMATIC WinCC
ICSA-22-132-06 · 1 CVE
SIMATIC PCS 7 V8.2, SIMATIC PCS 7 V9.0, SIMATIC PCS 7 V9.1 +5 more
2023-11-14
HIGH 7.8 Siemens Solid Edge
ICSA-23-166-09 · 1 CVE
Solid Edge SE2023
2023-11-14
MEDIUM 6.8 Siemens Mendix Runtime
ICSA-23-320-04 · 1 CVE
Mendix Applications using Mendix 7, Mendix Applications using Mendix 8, Mendix Applications using Mendix 9 +1 more
2023-11-14
HIGH 8.0 Siemens SIMATIC PCS neo
ICSA-23-320-06 · 4 CVEs
SIMATIC PCS neo
2023-11-14
HIGH 7.5 Siemens OPC UA Modeling Editor (SiOME)
ICSA-23-320-07 · 1 CVE
Siemens OPC UA Modelling Editor (SiOME)
2023-11-14
CRITICAL 9.8 Siemens COMOS
ICSA-23-320-09 · 16 CVEs
COMOS, COMOS
2023-11-14
CRITICAL 9.8 Siemens SIPROTEC 4 7SJ66
ICSA-23-320-10 · 9 CVEs
SIPROTEC 4 7SJ66
2023-11-14
HIGH 7.5 Siemens Mendix Studio Pro
ICSA-23-320-11 · 1 CVE
Mendix Studio Pro 7, Mendix Studio Pro 8, Mendix Studio Pro 9 +1 more
2023-11-14
CRITICAL 9.8 Siemens PNI
ICSA-23-320-12 · 13 CVEs
SINEC PNI
2023-11-14
CRITICAL 9.8 Siemens SIMATIC MV500
ICSA-23-320-13 · 8 CVEs
SIMATIC MV500 family
2023-11-14
MEDIUM 0 SSA-975766 V1.1 (Last Update: 2023-11-14): Open Design Alliance Drawings SDK Vulnerability in Solid Edge
SIEMENS-SSA-975766
SSA-975766 V1.1 (Last Update: 2023-11-14): Open Design Alliance Drawings SDK Vulnerability in Solid Edge
2023-11-14
MEDIUM 0 SSA-887122 V1.0: X_T File Parsing Vulnerabilities in Simcenter Femap
SIEMENS-SSA-887122
SSA-887122 V1.0: X_T File Parsing Vulnerabilities in Simcenter Femap
2023-11-14
MEDIUM 0 SSA-617233 V1.0: Urgent/11 TCP/IP Stack Vulnerabilities in SIPROTEC 4 7SJ66 Devices
SIEMENS-SSA-617233
SSA-617233 V1.0: Urgent/11 TCP/IP Stack Vulnerabilities in SIPROTEC 4 7SJ66 Devices
2023-11-14
MEDIUM 0 SSA-478780 V1.0: Multiple WRL File Parsing Vulnerabilities in Tecnomatix Plant Simulation
SIEMENS-SSA-478780
SSA-478780 V1.0: Multiple WRL File Parsing Vulnerabilities in Tecnomatix Plant Simulation
2023-11-14
MEDIUM 0 SSA-456933 V1.0: Multiple Vulnerabilities in SIMATIC PCS neo before V4.1
SIEMENS-SSA-456933
SSA-456933 V1.0: Multiple Vulnerabilities in SIMATIC PCS neo before V4.1
2023-11-14
MEDIUM 0 SSA-363107 V1.4 (Last Update: 2023-11-14): An Improper Initialization Vulnerability Affects SIMATIC WinCC Kiosk Mode
SIEMENS-SSA-363107
SSA-363107 V1.4 (Last Update: 2023-11-14): An Improper Initialization Vulnerability Affects SIMATIC WinCC Kiosk Mode
2023-11-14
HIGH 8.8 SSA-268517 V1.0: Code Execution Vulnerability (libwebp CVE-2023-4863) in Mendix Studio Pro
SIEMENS-SSA-268517 · 1 CVE
SSA-268517 V1.0: Code Execution Vulnerability (libwebp CVE-2023-4863) in Mendix Studio Pro
2023-11-14
MEDIUM 0 SSA-197270 V1.0: Information Disclosure Vulnerability in Siemens OPC UA Modeling Editor (SiOME)
SIEMENS-SSA-197270
SSA-197270 V1.0: Information Disclosure Vulnerability in Siemens OPC UA Modeling Editor (SiOME)
2023-11-14
MEDIUM 0 SSA-150063 V1.0: Multiple Vulnerabilities in SINEC PNI before V2.0
SIEMENS-SSA-150063
SSA-150063 V1.0: Multiple Vulnerabilities in SINEC PNI before V2.0
2023-11-14
MEDIUM 0 SSA-137900 V1.0: Multiple Vulnerabilities in COMOS
SIEMENS-SSA-137900
SSA-137900 V1.0: Multiple Vulnerabilities in COMOS
2023-11-14
MEDIUM 0 SSA-099606 V1.0: Multiple Vulnerabilities in SIMATIC MV500 before V3.3.5
SIEMENS-SSA-099606
SSA-099606 V1.0: Multiple Vulnerabilities in SIMATIC MV500 before V3.3.5
2023-11-14
MEDIUM 0 SSA-084182 V1.0: Privilege Escalation Vulnerability in Mendix Runtime
SIEMENS-SSA-084182
SSA-084182 V1.0: Privilege Escalation Vulnerability in Mendix Runtime
2023-11-14
HIGH 7.3 Siemens SINEC NMS
ICSA-22-069-03 · 3 CVEs
SINEC NMS, SINEC NMS, SINEMA Server V14
2023-10-10
MEDIUM 6.5 Siemens Industrial Products with OPC UA
ICSA-22-132-08 · 1 CVE
SIMATIC HMI Comfort Outdoor Panels (incl. SIPLUS variants), SIMATIC HMI Comfort Panels (incl. SIPLUS variants), SIMATIC HMI KTP Mobile Panels KTP400F, KTP700, KTP700F, KTP900 and KTP900F +6 more
2023-10-10
CRITICAL 9.1 Siemens SCALANCE (Update A)
ICSA-22-223-07 · 3 CVEs
RUGGEDCOM RM1224 LTE(4G) EU (6GK6108-4AM00-2BA2), RUGGEDCOM RM1224 LTE(4G) NAM (6GK6108-4AM00-2DA2), SCALANCE M804PB (6GK5804-0AP00-2AA2) +182 more
2023-10-10
HIGH 8.4 Siemens SCALANCE W1750D
ICSA-23-131-02 · 1 CVE
SCALANCE W1750D (JP) (6GK5750-2HX01-1AD0), SCALANCE W1750D (ROW) (6GK5750-2HX01-1AA0), SCALANCE W1750D (USA) (6GK5750-2HX01-1AB0)
2023-10-10
MEDIUM 6.7 Siemens SIMATIC CP products
ICSA-23-285-01 · 2 CVEs
SIMATIC CP 1604 (6GK1160-4AA01), SIMATIC CP 1616 (6GK1161-6AA02), SIMATIC CP 1623 (6GK1162-3AA00) +2 more
2023-10-10
CRITICAL 9.8 Siemens SCALANCE W1750D
ICSA-23-285-02 · 13 CVEs
SCALANCE W1750D (JP) (6GK5750-2HX01-1AD0), SCALANCE W1750D (ROW) (6GK5750-2HX01-1AA0), SCALANCE W1750D (USA) (6GK5750-2HX01-1AB0)
2023-10-10
HIGH 7.5 Siemens SICAM A8000 Devices
ICSA-23-285-03 · 1 CVE
CP-8031 MASTER MODULE (6MF2803-1AA00), CP-8050 MASTER MODULE (6MF2805-0AA00)
2023-10-10
HIGH 7.8 Siemens Xpedition Layout Browser
ICSA-23-285-04 · 1 CVE
Xpedition Layout Browser
2023-10-10
CRITICAL 9.8 Siemens Simcenter Amesim
ICSA-23-285-05 · 1 CVE
Simcenter Amesim
2023-10-10
CRITICAL 9.8 Siemens CPCI85 Firmware of SICAM A8000 Devices
ICSA-23-285-09 · 1 CVE
CP-8031 MASTER MODULE (6MF2803-1AA00), CP-8050 MASTER MODULE (6MF2805-0AA00)
2023-10-10
HIGH 7.8 Siemens Tecnomatix Plant Simulation
ICSA-23-285-10 · 9 CVEs
Parasolid V35.0, Parasolid V35.1, Parasolid V36.0 +2 more
2023-10-10
MEDIUM 5.3 Siemens Mendix Forgot Password Module
ICSA-23-285-11 · 1 CVE
Mendix Forgot Password (Mendix 7 compatible), Mendix Forgot Password (Mendix 8 compatible), Mendix Forgot Password (Mendix 9 compatible) +1 more
2023-10-10
MEDIUM 0 SSA-843070 V1.0: Multiple Vulnerabilities in SCALANCE W1750D
SIEMENS-SSA-843070
SSA-843070 V1.0: Multiple Vulnerabilities in SCALANCE W1750D
2023-10-10
MEDIUM 0 SSA-829656 V1.0: Stack Overflow Vulnerability in Xpedition Layout Browser
SIEMENS-SSA-829656
SSA-829656 V1.0: Stack Overflow Vulnerability in Xpedition Layout Browser
2023-10-10
MEDIUM 0 SSA-784849 V1.0: Direct Memory Access Vulnerabilities in SIMATIC CP Devices
SIEMENS-SSA-784849
SSA-784849 V1.0: Direct Memory Access Vulnerabilities in SIMATIC CP Devices
2023-10-10
MEDIUM 0 SSA-770890 V1.0: Path Traversal Vulnerability in the Web Server of CPCI85 Firmware of SICAM A8000 Devices
SIEMENS-SSA-770890
SSA-770890 V1.0: Path Traversal Vulnerability in the Web Server of CPCI85 Firmware of SICAM A8000 Devices
2023-10-10
MEDIUM 0 SSA-710008 V1.4 (Last Update: 2023-10-10): Multiple Web Vulnerabilities in SCALANCE Products
SIEMENS-SSA-710008
SSA-710008 V1.4 (Last Update: 2023-10-10): Multiple Web Vulnerabilities in SCALANCE Products
2023-10-10
MEDIUM 0 SSA-594373 V1.0: Cross-Site-Scripting (XSS) Vulnerability in SINEMA Server V14
SIEMENS-SSA-594373
SSA-594373 V1.0: Cross-Site-Scripting (XSS) Vulnerability in SINEMA Server V14
2023-10-10
MEDIUM 0 SSA-524778 V1.0: File Parsing Vulnerabilities in Tecnomatix Plant Simulation
SIEMENS-SSA-524778
SSA-524778 V1.0: File Parsing Vulnerabilities in Tecnomatix Plant Simulation
2023-10-10
MEDIUM 0 SSA-516174 V1.1 (Last Update: 2023-10-10): Wi-Fi Encryption Bypass Vulnerabilities in SCALANCE W1750D
SIEMENS-SSA-516174
SSA-516174 V1.1 (Last Update: 2023-10-10): Wi-Fi Encryption Bypass Vulnerabilities in SCALANCE W1750D
2023-10-10
MEDIUM 0 SSA-386812 V1.0: Remote Code Execution Vulnerability in Simcenter Amesim before V2021.1
SIEMENS-SSA-386812
SSA-386812 V1.0: Remote Code Execution Vulnerability in Simcenter Amesim before V2021.1
2023-10-10
MEDIUM 0 SSA-295483 V1.0: User Enumeration Vulnerability in Mendix Forgot Password Module
SIEMENS-SSA-295483
SSA-295483 V1.0: User Enumeration Vulnerability in Mendix Forgot Password Module
2023-10-10
MEDIUM 0 SSA-285795 V1.4 (Last Update: 2023-10-10): Denial of Service in OPC-UA in Industrial Products
SIEMENS-SSA-285795
SSA-285795 V1.4 (Last Update: 2023-10-10): Denial of Service in OPC-UA in Industrial Products
2023-10-10
MEDIUM 0 SSA-250085 V1.3 (Last Update: 2023-10-10): Multiple Vulnerabilities in SINEC NMS and SINEMA Server
SIEMENS-SSA-250085
SSA-250085 V1.3 (Last Update: 2023-10-10): Multiple Vulnerabilities in SINEC NMS and SINEMA Server
2023-10-10
MEDIUM 0 SSA-134651 V1.0: Hard Coded SSH ID in CPCI85 Firmware of SICAM A8000 Devices
SIEMENS-SSA-134651
SSA-134651 V1.0: Hard Coded SSH ID in CPCI85 Firmware of SICAM A8000 Devices
2023-10-10
MEDIUM 5.5 Siemens SIMATIC PCS neo Administration Console
ICSA-23-262-01 · 1 CVE
SIMATIC PCS neo (Administration Console) V4.0, SIMATIC PCS neo (Administration Console) V4.0 Update 1
2023-09-14
MEDIUM 0 SSA-646240 V1.0: Sensitive Information Disclosure in SIMATIC PCS neo Administration Console
SIEMENS-SSA-646240
SSA-646240 V1.0: Sensitive Information Disclosure in SIMATIC PCS neo Administration Console
2023-09-14
MEDIUM 0 SSA-357182 V1.0: Local Privilege Escalation Vulnerability in Spectrum Power 7
SIEMENS-SSA-357182
SSA-357182 V1.0: Local Privilege Escalation Vulnerability in Spectrum Power 7
2023-09-14
HIGH 7.0 Siemens RUGGEDCOM APE1808
ICSA-23-047-08 · 6 CVEs
RUGGEDCOM APE1808 ADM (6GK6015-0AL20-0GL0), RUGGEDCOM APE1808 ADM CC (6GK6015-0AL20-0GL1), RUGGEDCOM APE1808 CKP (6GK6015-0AL20-0GK0) +19 more
2023-09-12
HIGH 8.2 Siemens RUGGEDCOM APE1808 Products
ICSA-23-257-04 · 23 CVEs
RUGGEDCOM APE1808 ADM (6GK6015-0AL20-0GL0), RUGGEDCOM APE1808 ADM CC (6GK6015-0AL20-0GL1), RUGGEDCOM APE1808 CKP (6GK6015-0AL20-0GK0) +19 more
2023-09-12
MEDIUM 0 SSA-957369 V1.0: Insyde BIOS Vulnerabilities in RUGGEDCOM APE1808 Product Family
SIEMENS-SSA-957369
SSA-957369 V1.0: Insyde BIOS Vulnerabilities in RUGGEDCOM APE1808 Product Family
2023-09-12
MEDIUM 0 SSA-764801 V1.2 (Last Update: 2023-09-12): File Parsing Vulnerabilities in Tecnomatix Plant Simulation
SIEMENS-SSA-764801
SSA-764801 V1.2 (Last Update: 2023-09-12): File Parsing Vulnerabilities in Tecnomatix Plant Simulation
2023-09-12
MEDIUM 0 SSA-587547 V1.1 (Last Update: 2023-09-12): Unencrypted Storage of User Credentials in QMS Automotive
SIEMENS-SSA-587547
SSA-587547 V1.1 (Last Update: 2023-09-12): Unencrypted Storage of User Credentials in QMS Automotive
2023-09-12
MEDIUM 0 SSA-478960 V1.7 (Last Update: 2023-09-12): Missing CSRF Protection in the Web Server Login Page of Industrial Controllers
SIEMENS-SSA-478960
SSA-478960 V1.7 (Last Update: 2023-09-12): Missing CSRF Protection in the Web Server Login Page of Industrial Controllers
2023-09-12
MEDIUM 0 SSA-450613 V1.1 (Last Update: 2023-09-12): Insyde BIOS Vulnerabilities in RUGGEDCOM APE1808 Product Family
SIEMENS-SSA-450613
SSA-450613 V1.1 (Last Update: 2023-09-12): Insyde BIOS Vulnerabilities in RUGGEDCOM APE1808 Product Family
2023-09-12
MEDIUM 0 SSA-382653 V1.5 (Last Update: 2023-09-12): Multiple Denial of Service Vulnerabilities in Industrial Products
SIEMENS-SSA-382653
SSA-382653 V1.5 (Last Update: 2023-09-12): Multiple Denial of Service Vulnerabilities in Industrial Products
2023-09-12
MEDIUM 0 SSA-278349 V1.0: Multiple WRL File Parsing Vulnerabilities in Teamcenter Visualization and JT2Go
SIEMENS-SSA-278349
SSA-278349 V1.0: Multiple WRL File Parsing Vulnerabilities in Teamcenter Visualization and JT2Go
2023-09-12
MEDIUM 0 SSA-190839 V1.0: X_T File Parsing Vulnerabilities in Parasolid
SIEMENS-SSA-190839
SSA-190839 V1.0: X_T File Parsing Vulnerabilities in Parasolid
2023-09-12
MEDIUM 0 SSA-147266 V1.0: Multiple Vulnerabilities in QMS Automotive before V12.39
SIEMENS-SSA-147266
SSA-147266 V1.0: Multiple Vulnerabilities in QMS Automotive before V12.39
2023-09-12
HIGH 7.8 Siemens Solid Edge
ICSA-23-131-01 · 4 CVEs
Solid Edge SE2023, Solid Edge SE2023
2023-08-08
HIGH 7.8 Siemens Parasolid Installer
ICSA-23-222-02 · 1 CVE
Parasolid V35.0, Parasolid V35.1
2023-08-08
HIGH 7.8 Siemens Solid Edge SE2023
ICSA-23-222-11 · 9 CVEs
Solid Edge SE2023
2023-08-08
MEDIUM 0 SSA-975961 V1.0: Privilege Escalation Vulnerabilities in SICAM TOOLBOX II before V07.10
SIEMENS-SSA-975961
SSA-975961 V1.0: Privilege Escalation Vulnerabilities in SICAM TOOLBOX II before V07.10
2023-08-08
MEDIUM 0 SSA-932528 V1.1 (Last Update: 2023-08-08): Multiple File Parsing Vulnerabilities in Solid Edge
SIEMENS-SSA-932528
SSA-932528 V1.1 (Last Update: 2023-08-08): Multiple File Parsing Vulnerabilities in Solid Edge
2023-08-08
CRITICAL 9.1 SSA-851884 V1.2 (Last Update: 2023-08-08): Authentication Bypass Vulnerability in Mendix SAML Module
SIEMENS-SSA-851884 · 2 CVEs
SSA-851884 V1.2 (Last Update: 2023-08-08): Authentication Bypass Vulnerability in Mendix SAML Module
2023-08-08
MEDIUM 0 SSA-811403 V1.0: Multiple File Parsing Vulnerabilities in Solid Edge before V223 Update 7
SIEMENS-SSA-811403
SSA-811403 V1.0: Multiple File Parsing Vulnerabilities in Solid Edge before V223 Update 7
2023-08-08
MEDIUM 0 SSA-472630 V1.0: Security Vulnerabilities Fixed in RUGGEDCOM CROSSBOW V5.4
SIEMENS-SSA-472630
SSA-472630 V1.0: Security Vulnerabilities Fixed in RUGGEDCOM CROSSBOW V5.4
2023-08-08
MEDIUM 0 SSA-223771 V1.3 (Last Update: 2023-08-08): SISCO Stack Vulnerability in SIPROTEC 5 Devices
SIEMENS-SSA-223771
SSA-223771 V1.3 (Last Update: 2023-08-08): SISCO Stack Vulnerability in SIPROTEC 5 Devices
2023-08-08
MEDIUM 0 SSA-188491 V1.0: DLL Hijacking Vulnerabilities in Siemens Software Center
SIEMENS-SSA-188491
SSA-188491 V1.0: DLL Hijacking Vulnerabilities in Siemens Software Center
2023-08-08
HIGH 8.8 SSA-180579 V1.1 (Last Update: 2023-08-08): Privilege Management Vulnerability and Multiple Nucleus RTOS Vulnerabilities in APOGEE/TALON Field Panels before V3.5.5/V2.8.20
SIEMENS-SSA-180579 · 2 CVEs
SSA-180579 V1.1 (Last Update: 2023-08-08): Privilege Management Vulnerability and Multiple Nucleus RTOS Vulnerabilities in APOGEE/TALON Field Panels before V3.5.5/V2.8.20
2023-08-08
MEDIUM 0 SSA-131450 V1.0: File parsing Vulnerabilities in Solid Edge, JT2Go and Teamcenter Visualization
SIEMENS-SSA-131450
SSA-131450 V1.0: File parsing Vulnerabilities in Solid Edge, JT2Go and Teamcenter Visualization
2023-08-08
MEDIUM 5.3 SSA-116172 V1.0: Nullsoft Scriptable Install System (NSIS) Vulnerability (CVE-2023-37378) in Parasolid Installer
SIEMENS-SSA-116172 · 1 CVE
SSA-116172 V1.0: Nullsoft Scriptable Install System (NSIS) Vulnerability (CVE-2023-37378) in Parasolid Installer
2023-08-08
MEDIUM 0 SSA-001569 V1.0: JT File Parsing Vulnerabilities in JT Open, JT Utilities and Parasolid
SIEMENS-SSA-001569
SSA-001569 V1.0: JT File Parsing Vulnerabilities in JT Open, JT Utilities and Parasolid
2023-08-08
MEDIUM 0 SSA-930100 V1.1 (Last Update: 2023-07-11): Privilege Escalation Vulnerability in Simcenter STAR-CCM+
SIEMENS-SSA-930100
SSA-930100 V1.1 (Last Update: 2023-07-11): Privilege Escalation Vulnerability in Simcenter STAR-CCM+
2023-07-11
MEDIUM 0 SSA-924149 V1.0: Stack Overflow Vulnerability in SiPass Integrated before V2.90.3.8
SIEMENS-SSA-924149
SSA-924149 V1.0: Stack Overflow Vulnerability in SiPass Integrated before V2.90.3.8
2023-07-11
MEDIUM 0 SSA-561322 V1.0: Multiple Vulnerabilities in SIMATIC MV500 Devices before V3.3.4
SIEMENS-SSA-561322
SSA-561322 V1.0: Multiple Vulnerabilities in SIMATIC MV500 Devices before V3.3.4
2023-07-11
MEDIUM 0 SSA-313488 V1.0: Multiple Vulnerabilities in SIMATIC CN 4100 before V2.5
SIEMENS-SSA-313488
SSA-313488 V1.0: Multiple Vulnerabilities in SIMATIC CN 4100 before V2.5
2023-07-11
CRITICAL 9.8 SSA-146325 V1.0: Multiple Vulnerabilities in RUGGEDCOM ROX before V2.16
SIEMENS-SSA-146325 · 8 CVEs
SSA-146325 V1.0: Multiple Vulnerabilities in RUGGEDCOM ROX before V2.16
2023-07-11
CRITICAL 9.8 Siemens SINAMICS Medium Voltage Products
ICSA-23-166-12 · 23 CVEs
SINAMICS PERFECT HARMONY GH180 6SR5
2023-06-14
MEDIUM 0 SSA-942865 V1.1 (Last Update: 2023-06-14): Multiple Vulnerabilities in the Integrated SCALANCE S615 of SINAMICS Medium Voltage Products
SIEMENS-SSA-942865
SSA-942865 V1.1 (Last Update: 2023-06-14): Multiple Vulnerabilities in the Integrated SCALANCE S615 of SINAMICS Medium Voltage Products
2023-06-14
LOW 3.9 Siemens SIMATIC WinCC
ICSA-23-166-05 · 1 CVE
SIMATIC NET PC Software V14, SIMATIC NET PC Software V15, SIMATIC PCS 7 V8.2 +4 more
2023-06-13
HIGH 7.2 Siemens SICAM A8000 Devices
ICSA-23-166-13 · 3 CVEs
CP-8031 MASTER MODULE (6MF2803-1AA00), CP-8050 MASTER MODULE (6MF2805-0AA00)
2023-06-13
MEDIUM 0 SSA-988345 V1.1 (Last Update: 2023-06-13): Local Privilege Escalation Vulnerability in Xpedition Designer
SIEMENS-SSA-988345
SSA-988345 V1.1 (Last Update: 2023-06-13): Local Privilege Escalation Vulnerability in Xpedition Designer
2023-06-13
MEDIUM 0 SSA-914026 V1.0: Local Code Execution Vulnerability in SIMATIC WinCC V7
SIEMENS-SSA-914026
SSA-914026 V1.0: Local Code Execution Vulnerability in SIMATIC WinCC V7
2023-06-13
MEDIUM 0 SSA-887249 V1.0: Multiple Vulnerabilities in the Web Interface of SICAM Q200 Devices
SIEMENS-SSA-887249
SSA-887249 V1.0: Multiple Vulnerabilities in the Web Interface of SICAM Q200 Devices
2023-06-13
MEDIUM 0 SSA-824231 V1.4 (Last Update: 2023-06-13): Unauthenticated Firmware Upload Vulnerability in Desigo PX Controllers
SIEMENS-SSA-824231
SSA-824231 V1.4 (Last Update: 2023-06-13): Unauthenticated Firmware Upload Vulnerability in Desigo PX Controllers
2023-06-13
MEDIUM 0 SSA-731916 V1.0: Multiple Vulnerabilities in CPCI85 Firmware of SICAM A8000 Devices
SIEMENS-SSA-731916
SSA-731916 V1.0: Multiple Vulnerabilities in CPCI85 Firmware of SICAM A8000 Devices
2023-06-13
MEDIUM 0 SSA-572005 V1.2 (Last Update: 2023-06-13): Vulnerabilities in the Web Server of SICAM P850 and SICAM P855 Devices
SIEMENS-SSA-572005
SSA-572005 V1.2 (Last Update: 2023-06-13): Vulnerabilities in the Web Server of SICAM P850 and SICAM P855 Devices
2023-06-13
MEDIUM 0 SSA-538795 V1.0: Multiple File Parsing Vulnerabilities in Teamcenter Visualization and JT2Go
SIEMENS-SSA-538795
SSA-538795 V1.0: Multiple File Parsing Vulnerabilities in Teamcenter Visualization and JT2Go
2023-06-13
MEDIUM 0 SSA-508677 V1.0: Use of Obsolete Function Vulnerability in SIMATIC WinCC before V8
SIEMENS-SSA-508677
SSA-508677 V1.0: Use of Obsolete Function Vulnerability in SIMATIC WinCC before V8
2023-06-13
MEDIUM 0 SSA-482956 V1.0: Information Disclosure Vulnerability in SIMOTION before V5.5
SIEMENS-SSA-482956
SSA-482956 V1.0: Information Disclosure Vulnerability in SIMOTION before V5.5
2023-06-13
MEDIUM 0 SSA-120378 V1.2 (Last Update: 2023-06-13): Multiple File Parsing Vulnerabilities in Teamcenter Visualization and JT2Go
SIEMENS-SSA-120378
SSA-120378 V1.2 (Last Update: 2023-06-13): Multiple File Parsing Vulnerabilities in Teamcenter Visualization and JT2Go
2023-06-13
MEDIUM 6.5 Siemens SIMATIC, SINUMERIK, and PROFINET IO (Update D)
ICSA-18-079-02 · 1 CVE
SIMATIC S7-400 CPU 414-3 PN/DP V7 (6ES7414-3EM07-0AB0), SIMATIC S7-400 CPU 414F-3 PN/DP V7 (6ES7414-3FM07-0AB0), SIMATIC S7-400 CPU 416-3 PN/DP V7 (6ES7416-3ES07-0AB0) +42 more
2023-05-09
HIGH 8.2 Siemens S7-400 CPUs (Update B)
ICSA-18-317-02 · 2 CVEs
SIMATIC S7-400 CPU 412-1 DP V7 (6ES7412-1XJ07-0AB0), SIMATIC S7-400 CPU 412-2 DP V7 (6ES7412-2XK07-0AB0), SIMATIC S7-400 CPU 414-2 DP V7 (6ES7414-2XL07-0AB0) +18 more
2023-05-09
CRITICAL 9.9 Siemens Siveillance
ICSA-23-131-03 · 2 CVEs
Siveillance Video 2020 R2, Siveillance Video 2020 R3, Siveillance Video 2021 R1 +5 more
2023-05-09
MEDIUM 0 SSA-892048 V1.0: Third-Party Component Vulnerabilities in SINEC NMS before V1.0.3.1
SIEMENS-SSA-892048
SSA-892048 V1.0: Third-Party Component Vulnerabilities in SINEC NMS before V1.0.3.1
2023-05-09
MEDIUM 0 SSA-789345 V1.0: Code Execution Vulnerabilities in Siveillance Video Event and Management Servers
SIEMENS-SSA-789345
SSA-789345 V1.0: Code Execution Vulnerabilities in Siveillance Video Event and Management Servers
2023-05-09
MEDIUM 0 SSA-632164 V1.1 (Last Update: 2023-05-09): External Entity Injection Vulnerability in Polarion ALM
SIEMENS-SSA-632164
SSA-632164 V1.1 (Last Update: 2023-05-09): External Entity Injection Vulnerability in Polarion ALM
2023-05-09
MEDIUM 0 SSA-592007 V2.1 (Last Update: 2023-05-09): Denial of Service Vulnerability in Industrial Products
SIEMENS-SSA-592007
SSA-592007 V2.1 (Last Update: 2023-05-09): Denial of Service Vulnerability in Industrial Products
2023-05-09
MEDIUM 0 SSA-555292 V1.0: Security Vulnerabilities Fixed in SIMATIC Cloud Connect 7 V2.1
SIEMENS-SSA-555292
SSA-555292 V1.0: Security Vulnerabilities Fixed in SIMATIC Cloud Connect 7 V2.1
2023-05-09
MEDIUM 0 SSA-480230 V2.7 (Last Update: 2023-05-09): Denial of Service Vulnerability in Webserver of Industrial Products
SIEMENS-SSA-480230
SSA-480230 V2.7 (Last Update: 2023-05-09): Denial of Service Vulnerability in Webserver of Industrial Products
2023-05-09
MEDIUM 0 SSA-325383 V1.0: Multiple Vulnerabilities in SCALANCE LPE9403 before V2.1
SIEMENS-SSA-325383
SSA-325383 V1.0: Multiple Vulnerabilities in SCALANCE LPE9403 before V2.1
2023-05-09
MEDIUM 0 SSA-113131 V1.5 (Last Update: 2023-05-09): Denial of Service Vulnerabilities in SIMATIC S7-400 CPUs
SIEMENS-SSA-113131
SSA-113131 V1.5 (Last Update: 2023-05-09): Denial of Service Vulnerabilities in SIMATIC S7-400 CPUs
2023-05-09
HIGH 7.5 Siemens SIMATIC PCS 7, SIMATIC WinCC, and SIMATIC NET PC (Update G)
ICSA-20-042-06 · 1 CVE
OpenPCS 7 V8.1, OpenPCS 7 V8.2, OpenPCS 7 V9.0 +19 more
2023-04-11
CRITICAL 9.9 Siemens SIMATIC WinCC (Update E)
ICSA-21-315-03 · 3 CVEs
OpenPCS 7 V8.2, OpenPCS 7 V9.0, OpenPCS 7 V9.1 +18 more
2023-04-11
HIGH 7.5 Siemens SIMATIC S7-400
ICSA-22-104-12 · 1 CVE
SIMATIC S7-400 CPU 412-1 DP V7 (6ES7412-1XJ07-0AB0), SIMATIC S7-400 CPU 412-2 DP V7 (6ES7412-2XK07-0AB0), SIMATIC S7-400 CPU 412-2 PN/DP V7 (6ES7412-2EK07-0AB0) +17 more
2023-04-11
MEDIUM 6.2 Siemens Adaptec Maxview Application
ICSA-23-103-01 · 1 CVE
SIMATIC IPC1047, SIMATIC IPC1047E, SIMATIC IPC647D +3 more
2023-04-11
CRITICAL 9.8 Siemens CPCI85 Firmware of SICAM A8000 Devices
ICSA-23-103-07 · 1 CVE
CP-8031 MASTER MODULE (6MF2803-1AA00), CP-8050 MASTER MODULE (6MF2805-0AA00)
2023-04-11
MEDIUM 0 SSA-978220 V1.8 (Last Update: 2023-04-11): Denial of Service Vulnerability over SNMP in Multiple Industrial Products
SIEMENS-SSA-978220
SSA-978220 V1.8 (Last Update: 2023-04-11): Denial of Service Vulnerability over SNMP in Multiple Industrial Products
2023-04-11
HIGH 7.7 SSA-840188 V1.6 (Last Update: 2023-04-11): Multiple Vulnerabilities in SIMATIC WinCC Affecting Other SIMATIC Software Products
SIEMENS-SSA-840188 · 1 CVE
SSA-840188 V1.6 (Last Update: 2023-04-11): Multiple Vulnerabilities in SIMATIC WinCC Affecting Other SIMATIC Software Products
2023-04-11
MEDIUM 0 SSA-838121 V1.3 (Last Update: 2023-04-11): Multiple Denial of Service Vulnerabilities in Industrial Products
SIEMENS-SSA-838121
SSA-838121 V1.3 (Last Update: 2023-04-11): Multiple Denial of Service Vulnerabilities in Industrial Products
2023-04-11
MEDIUM 0 SSA-792594 V1.1 (Last Update: 2023-04-11): Host Header Injection Vulnerability in Polarion ALM
SIEMENS-SSA-792594
SSA-792594 V1.1 (Last Update: 2023-04-11): Host Header Injection Vulnerability in Polarion ALM
2023-04-11
MEDIUM 0 SSA-700053 V1.2 (Last Update: 2023-04-11): Multiple File Parsing Vulnerabilities in Teamcenter Visualization and JT2Go
SIEMENS-SSA-700053
SSA-700053 V1.2 (Last Update: 2023-04-11): Multiple File Parsing Vulnerabilities in Teamcenter Visualization and JT2Go
2023-04-11
MEDIUM 0 SSA-699404 V1.0: Observable Response Discrepancy in Mendix Forgot Password Module
SIEMENS-SSA-699404
SSA-699404 V1.0: Observable Response Discrepancy in Mendix Forgot Password Module
2023-04-11
MEDIUM 0 SSA-676336 V1.2 (Last Update: 2023-04-11): OpenSSH Vulnerabilities in SCALANCE X-200 and X-300/X408 Switches
SIEMENS-SSA-676336
SSA-676336 V1.2 (Last Update: 2023-04-11): OpenSSH Vulnerabilities in SCALANCE X-200 and X-300/X408 Switches
2023-04-11
MEDIUM 0 SSA-642810 V1.0: JT File Parsing Vulnerability in JT Open and JT Utilities
SIEMENS-SSA-642810
SSA-642810 V1.0: JT File Parsing Vulnerability in JT Open and JT Utilities
2023-04-11
MEDIUM 0 SSA-629917 V1.0: Datalogics File Parsing Vulnerability in Teamcenter Visualization and JT2Go
SIEMENS-SSA-629917
SSA-629917 V1.0: Datalogics File Parsing Vulnerability in Teamcenter Visualization and JT2Go
2023-04-11
MEDIUM 0 SSA-603476 V1.4 (Last Update: 2023-04-11): Web Vulnerabilities in SIMATIC NET CP 343-1/CP 443-1 Modules and SIMATIC S7-300/S7-400 CPUs
SIEMENS-SSA-603476
SSA-603476 V1.4 (Last Update: 2023-04-11): Web Vulnerabilities in SIMATIC NET CP 343-1/CP 443-1 Modules and SIMATIC S7-300/S7-400 CPUs
2023-04-11
MEDIUM 0 SSA-572164 V1.0: Luxion KeyShot Vulnerability in Solid Edge
SIEMENS-SSA-572164
SSA-572164 V1.0: Luxion KeyShot Vulnerability in Solid Edge
2023-04-11
MEDIUM 0 SSA-558014 V1.0: Third-Party Component Vulnerabilities in SCALANCE XCM332 before V2.2
SIEMENS-SSA-558014
SSA-558014 V1.0: Third-Party Component Vulnerabilities in SCALANCE XCM332 before V2.2
2023-04-11
MEDIUM 0 SSA-557541 V1.2 (Last Update: 2023-04-11): Denial-of-Service Vulnerability in SIMATIC S7-400 CPUs
SIEMENS-SSA-557541
SSA-557541 V1.2 (Last Update: 2023-04-11): Denial-of-Service Vulnerability in SIMATIC S7-400 CPUs
2023-04-11
MEDIUM 0 SSA-552702 V1.5 (Last Update: 2023-04-11): Privilege Escalation Vulnerability in the Web Interface of SCALANCE and RUGGEDCOM Products
SIEMENS-SSA-552702
SSA-552702 V1.5 (Last Update: 2023-04-11): Privilege Escalation Vulnerability in the Web Interface of SCALANCE and RUGGEDCOM Products
2023-04-11
MEDIUM 0 SSA-549234 V1.3 (Last Update: 2023-04-11): Denial-of-Service Vulnerability in SIMATIC NET CP Modules
SIEMENS-SSA-549234
SSA-549234 V1.3 (Last Update: 2023-04-11): Denial-of-Service Vulnerability in SIMATIC NET CP Modules
2023-04-11
MEDIUM 0 SSA-511182 V1.0: Use of Static TLS Certificate Known Hard Coded Private Keys in Adaptec Maxview Application
SIEMENS-SSA-511182
SSA-511182 V1.0: Use of Static TLS Certificate Known Hard Coded Private Keys in Adaptec Maxview Application
2023-04-11
MEDIUM 0 SSA-479249 V1.0: Weak Encryption Vulnerability in SCALANCE X-200IRT Devices
SIEMENS-SSA-479249
SSA-479249 V1.0: Weak Encryption Vulnerability in SCALANCE X-200IRT Devices
2023-04-11
MEDIUM 0 SSA-472454 V1.0: Command Injection Vulnerability in CPCI85 Firmware of SICAM A8000 Devices
SIEMENS-SSA-472454
SSA-472454 V1.0: Command Injection Vulnerability in CPCI85 Firmware of SICAM A8000 Devices
2023-04-11
MEDIUM 0 SSA-462066 V3.1 (Last Update: 2023-04-11): Vulnerability known as TCP SACK PANIC in Industrial Products
SIEMENS-SSA-462066
SSA-462066 V3.1 (Last Update: 2023-04-11): Vulnerability known as TCP SACK PANIC in Industrial Products
2023-04-11
MEDIUM 0 SSA-459643 V1.2 (Last Update: 2023-04-11): Denial of Service Vulnerability in RUGGEDCOM ROS before V5.6.0
SIEMENS-SSA-459643
SSA-459643 V1.2 (Last Update: 2023-04-11): Denial of Service Vulnerability in RUGGEDCOM ROS before V5.6.0
2023-04-11
MEDIUM 0 SSA-310038 V1.1 (Last Update: 2023-04-11): Multiple Vulnerabilities in SCALANCE X Switch Devices
SIEMENS-SSA-310038
SSA-310038 V1.1 (Last Update: 2023-04-11): Multiple Vulnerabilities in SCALANCE X Switch Devices
2023-04-11
MEDIUM 0 SSA-270778 V1.8 (Last Update: 2023-04-11): Denial-of-Service Vulnerability in SIMATIC PCS 7, SIMATIC WinCC and SIMATIC NET PC Software
SIEMENS-SSA-270778
SSA-270778 V1.8 (Last Update: 2023-04-11): Denial-of-Service Vulnerability in SIMATIC PCS 7, SIMATIC WinCC and SIMATIC NET PC Software
2023-04-11
MEDIUM 0 SSA-244969 V2.0 (Last Update: 2023-04-11): OpenSSL Vulnerability in Industrial Products
SIEMENS-SSA-244969
SSA-244969 V2.0 (Last Update: 2023-04-11): OpenSSL Vulnerability in Industrial Products
2023-04-11
MEDIUM 0 SSA-102233 V2.1 (Last Update: 2023-04-11): SegmentSmack in VxWorks-based Industrial Devices
SIEMENS-SSA-102233
SSA-102233 V2.1 (Last Update: 2023-04-11): SegmentSmack in VxWorks-based Industrial Devices
2023-04-11
HIGH 7.4 Siemens Linux-based Products (Update J)
ICSA-21-131-03 · 1 CVE
RUGGEDCOM RM1224 family (6GK6108-4AM00), SCALANCE M-800 family, SCALANCE S615 (6GK5615-0AA00-2AA2) +29 more
2023-03-14
CRITICAL 9.8 Siemens Industrial Products LLDP (Update D)
ICSA-21-194-07 · 2 CVEs
SIMATIC CP 1243-1 (6GK7243-1BX30-0XE0), SIMATIC CP 1243-8 IRC (6GK7243-8RX30-0XE0), SIMATIC CP 1542SP-1 (6GK7542-6UX00-0XE0) +14 more
2023-03-14
CRITICAL 10.0 Siemens SRCS VPN Feature in SIMATIC CP Devices
ICSA-22-195-12 · 3 CVEs
SIMATIC CP 1242-7 V2 (6GK7242-7KX31-0XE0), SIMATIC CP 1243-1 (6GK7243-1BX30-0XE0), SIMATIC CP 1243-7 LTE EU (6GK7243-7KX30-0XE0) +12 more
2023-03-14
HIGH 8.2 Siemens Automation License Manager
ICSA-23-012-10 · 2 CVEs
Automation License Manager V5, Automation License Manager V6
2023-03-14
HIGH 7.8 Siemens Solid Edge
ICSA-23-047-01 · 37 CVEs
Solid Edge SE2022, Solid Edge SE2022, Solid Edge SE2023
2023-03-14
CRITICAL 9.8 Siemens SCALANCE, RUGGEDCOM Third-Party
ICSA-23-075-01 · 65 CVEs
RUGGEDCOM RM1224 LTE(4G) EU (6GK6108-4AM00-2BA2), RUGGEDCOM RM1224 LTE(4G) NAM (6GK6108-4AM00-2DA2), SCALANCE M804PB (6GK5804-0AP00-2AA2) +17 more
2023-03-14
HIGH 8.8 Siemens RUGGEDCOM CROSSBOW V5.3
ICSA-23-075-02 · 2 CVEs
RUGGEDCOM CROSSBOW
2023-03-14
MEDIUM 6.6 Siemens RUGGEDCOM CROSSBOW V5.2
ICSA-23-075-03 · 2 CVEs
RUGGEDCOM CROSSBOW
2023-03-14
HIGH 7.5 Siemens RADIUS Client of SIPROTEC 5 Devices
ICSA-23-080-04 · 1 CVE
SIPROTEC 5 6MD85 (CP300), SIPROTEC 5 6MD86 (CP300), SIPROTEC 5 6MD89 (CP300) +25 more
2023-03-14
HIGH 8.1 Siemens SCALANCE Third-Party
ICSA-23-080-07 · 17 CVEs
SCALANCE WAM763-1 (6GK5763-1AL00-7DA0), SCALANCE WAM766-1 (EU) (6GK5766-1GE00-7DA0), SCALANCE WAM766-1 (US) (6GK5766-1GE00-7DB0) +6 more
2023-03-14
MEDIUM 0 SSA-941426 V1.4 (Last Update: 2023-03-14): Multiple LLDP Vulnerabilities in Industrial Products
SIEMENS-SSA-941426
SSA-941426 V1.4 (Last Update: 2023-03-14): Multiple LLDP Vulnerabilities in Industrial Products
2023-03-14
MEDIUM 0 SSA-847261 V1.1 (Last Update: 2023-03-14): Multiple SPP File Parsing Vulnerabilities in Tecnomatix Plant Simulation
SIEMENS-SSA-847261
SSA-847261 V1.1 (Last Update: 2023-03-14): Multiple SPP File Parsing Vulnerabilities in Tecnomatix Plant Simulation
2023-03-14
MEDIUM 0 SSA-726834 V1.0: Denial of Service Vulnerability in the RADIUS Client of SIPROTEC 5 Devices
SIEMENS-SSA-726834
SSA-726834 V1.0: Denial of Service Vulnerability in the RADIUS Client of SIPROTEC 5 Devices
2023-03-14
MEDIUM 0 SSA-565386 V1.0: Third-Party Component Vulnerabilities in SCALANCE W-700 IEEE 802.11ax devices before V2.0
SIEMENS-SSA-565386
SSA-565386 V1.0: Third-Party Component Vulnerabilities in SCALANCE W-700 IEEE 802.11ax devices before V2.0
2023-03-14
MEDIUM 0 SSA-539476 V1.4 (Last Update: 2023-03-14): Siemens SIMATIC NET CP, SINEMA and SCALANCE Products Affected by Vulnerabilities in Third-Party Component strongSwan
SIEMENS-SSA-539476
SSA-539476 V1.4 (Last Update: 2023-03-14): Siemens SIMATIC NET CP, SINEMA and SCALANCE Products Affected by Vulnerabilities in Third-Party Component strongSwan
2023-03-14
MEDIUM 0 SSA-517377 V1.2 (Last Update: 2023-03-14): Multiple Vulnerabilities in the SRCS VPN Feature in SIMATIC CP Devices
SIEMENS-SSA-517377
SSA-517377 V1.2 (Last Update: 2023-03-14): Multiple Vulnerabilities in the SRCS VPN Feature in SIMATIC CP Devices
2023-03-14
MEDIUM 0 SSA-491245 V1.1 (Last Update: 2023-03-14): Multiple File Parsing Vulnerabilities in Solid Edge
SIEMENS-SSA-491245
SSA-491245 V1.1 (Last Update: 2023-03-14): Multiple File Parsing Vulnerabilities in Solid Edge
2023-03-14
MEDIUM 0 SSA-476715 V1.1 (Last Update: 2023-03-14): Two Vulnerabilities in Automation License Manager
SIEMENS-SSA-476715
SSA-476715 V1.1 (Last Update: 2023-03-14): Two Vulnerabilities in Automation License Manager
2023-03-14
MEDIUM 0 SSA-419740 V1.0: Multiple Third-Party Component Vulnerabilities in RUGGEDCOM and SCALANCE Products before V7.2
SIEMENS-SSA-419740
SSA-419740 V1.0: Multiple Third-Party Component Vulnerabilities in RUGGEDCOM and SCALANCE Products before V7.2
2023-03-14
MEDIUM 0 SSA-324955 V2.0 (Last Update: 2023-03-14): SAD DNS Attack in Linux Based Products
SIEMENS-SSA-324955
SSA-324955 V2.0 (Last Update: 2023-03-14): SAD DNS Attack in Linux Based Products
2023-03-14
MEDIUM 0 SSA-320629 V1.0: Security Vulnerabilities Fixed in RUGGEDCOM CROSSBOW V5.3
SIEMENS-SSA-320629
SSA-320629 V1.0: Security Vulnerabilities Fixed in RUGGEDCOM CROSSBOW V5.3
2023-03-14
MEDIUM 6.6 SSA-260625 V1.0: Security Vulnerabilities Fixed in RUGGEDCOM CROSSBOW V5.2
SIEMENS-SSA-260625 · 2 CVEs
SSA-260625 V1.0: Security Vulnerabilities Fixed in RUGGEDCOM CROSSBOW V5.2
2023-03-14
HIGH 7.5 Siemens Nucleus RTOS FTP Server
ICSA-22-286-07 · 1 CVE
Nucleus NET for Nucleus PLUS V1, Nucleus NET for Nucleus PLUS V2, Nucleus ReadyStart V3 V2012 +2 more
2023-02-14
CRITICAL 9.3 Siemens SINUMERIK ONE and SINUMERIK MC
ICSA-22-314-04 · 1 CVE
SINUMERIK MC, SINUMERIK ONE
2023-02-14
CRITICAL 9.8 Siemens SCALANCE W1750D
ICSA-22-314-10 · 13 CVEs
SCALANCE W1750D (JP) (6GK5750-2HX01-1AD0), SCALANCE W1750D (ROW) (6GK5750-2HX01-1AA0), SCALANCE W1750D (USA) (6GK5750-2HX01-1AB0)
2023-02-14
HIGH 7.5 Siemens SCALANCE X200 IRT
ICSA-23-047-02 · 1 CVE
SCALANCE X200-4P IRT (6GK5200-4AH00-2BA3), SCALANCE X201-3P IRT (6GK5201-3BH00-2BA3), SCALANCE X201-3P IRT PRO (6GK5201-3JR00-2BA6) +10 more
2023-02-14
CRITICAL 9.8 Siemens Brownfield Connectivity Client
ICSA-23-047-03 · 4 CVEs
Brownfield Connectivity - Client
2023-02-14
HIGH 7.5 Siemens Brownfield Connectivity Gateway
ICSA-23-047-04 · 8 CVEs
Brownfield Connectivity - Gateway, Brownfield Connectivity - Gateway
2023-02-14
HIGH 7.8 Siemens SiPass integrated AC5102 / ACC-G2 and ACC-AP
ICSA-23-047-05 · 1 CVE
SiPass integrated AC5102 (ACC-G2), SiPass integrated ACC-AP
2023-02-14
HIGH 7.8 Siemens Simcenter Femap before V2023.1
ICSA-23-047-06 · 2 CVEs
Simcenter Femap
2023-02-14
CRITICAL 10.0 Siemens COMOS
ICSA-23-047-10 · 1 CVE
COMOS V10.2, COMOS V10.3.3.1, COMOS V10.3.3.2 +5 more
2023-02-14
MEDIUM 5.9 Siemens Mendix
ICSA-23-047-11 · 1 CVE
Mendix Applications using Mendix 7, Mendix Applications using Mendix 8, Mendix Applications using Mendix 9 +3 more
2023-02-14
HIGH 7.8 Siemens JT Open, JT Utilities, and Parasolid
ICSA-23-047-12 · 3 CVEs
JT Open, JT Utilities, Parasolid V34.0 +4 more
2023-02-14
MEDIUM 0 SSA-953464 V1.0: Multiple Vulnerabilites in Siemens Brownfield Connectivity - Client before V2.15
SIEMENS-SSA-953464
SSA-953464 V1.0: Multiple Vulnerabilites in Siemens Brownfield Connectivity - Client before V2.15
2023-02-14
MEDIUM 0 SSA-836777 V1.0: JT File Parsing Vulnerabilities in JT Open, JT Utilities and Parasolid
SIEMENS-SSA-836777
SSA-836777 V1.0: JT File Parsing Vulnerabilities in JT Open, JT Utilities and Parasolid
2023-02-14
MEDIUM 0 SSA-744259 V1.0: Golang Vulnerabilities in Brownfield Connectivity - Gateway before V1.10.1
SIEMENS-SSA-744259
SSA-744259 V1.0: Golang Vulnerabilities in Brownfield Connectivity - Gateway before V1.10.1
2023-02-14
MEDIUM 0 SSA-693110 V1.0: Buffer Overflow Vulnerability in COMOS
SIEMENS-SSA-693110
SSA-693110 V1.0: Buffer Overflow Vulnerability in COMOS
2023-02-14
MEDIUM 0 SSA-658793 V1.0: Command Injection Vulnerability in SiPass integrated AC5102 / ACC-G2 and ACC-AP
SIEMENS-SSA-658793
SSA-658793 V1.0: Command Injection Vulnerability in SiPass integrated AC5102 / ACC-G2 and ACC-AP
2023-02-14
MEDIUM 0 SSA-617755 V1.0: Denial of Service Vulnerability in the SNMP Agent of SCALANCE X-200IRT Products
SIEMENS-SSA-617755
SSA-617755 V1.0: Denial of Service Vulnerability in the SNMP Agent of SCALANCE X-200IRT Products
2023-02-14
MEDIUM 0 SSA-568428 V1.1 (Last Update: 2023-02-14): Weak Key Protection Vulnerability in SINUMERIK ONE and SINUMERIK MC
SIEMENS-SSA-568428
SSA-568428 V1.1 (Last Update: 2023-02-14): Weak Key Protection Vulnerability in SINUMERIK ONE and SINUMERIK MC
2023-02-14
MEDIUM 0 SSA-565356 V1.0: X_T File Parsing Vulnerabilities in Simcenter Femap before V2023.1
SIEMENS-SSA-565356
SSA-565356 V1.0: X_T File Parsing Vulnerabilities in Simcenter Femap before V2023.1
2023-02-14
MEDIUM 0 SSA-506569 V1.1 (Last Update: 2023-02-14): Multiple Vulnerabilities in SCALANCE W1750D
SIEMENS-SSA-506569
SSA-506569 V1.1 (Last Update: 2023-02-14): Multiple Vulnerabilities in SCALANCE W1750D
2023-02-14
MEDIUM 0 SSA-313313 V1.2 (Last Update: 2023-02-14): Denial of Service Vulnerability in the FTP Server of Nucleus RTOS
SIEMENS-SSA-313313
SSA-313313 V1.2 (Last Update: 2023-02-14): Denial of Service Vulnerability in the FTP Server of Nucleus RTOS
2023-02-14
MEDIUM 0 SSA-252808 V1.0: XPath Constraint Vulnerability in Mendix Runtime
SIEMENS-SSA-252808
SSA-252808 V1.0: XPath Constraint Vulnerability in Mendix Runtime
2023-02-14
MEDIUM 5.3 Siemens SIMATIC S7 (Update B)
ICSA-20-042-05 · 1 CVE
SIMATIC ET 200pro IM154-8 PN/DP CPU (6ES7154-8AB01-0AB0), SIMATIC ET 200pro IM154-8F PN/DP CPU (6ES7154-8FB01-0AB0), SIMATIC ET 200pro IM154-8FX PN/DP CPU (6ES7154-8FX00-0AB0) +24 more
2023-01-10
MEDIUM 5.4 Siemens SIMATIC WinCC OA Ultralight Client
ICSA-22-349-06 · 1 CVE
SIMATIC WinCC OA V3.15, SIMATIC WinCC OA V3.16, SIMATIC WinCC OA V3.17 +1 more
2023-01-10
HIGH 8.1 Siemens Mendix Workflow Commons
ICSA-22-349-13 · 1 CVE
Mendix Workflow Commons, Mendix Workflow Commons V2.1, Mendix Workflow Commons V2.3
2023-01-10
CRITICAL 9.3 Siemens Mendix SAML Module
ICSA-23-012-09 · 1 CVE
Mendix SAML (Mendix 8 compatible), Mendix SAML (Mendix 9 compatible, New Track), Mendix SAML (Mendix 9 compatible, Upgrade Track)
2023-01-10
HIGH 7.8 Siemens Solid Edge before V2023 MP1
ICSA-23-012-11 · 1 CVE
Solid Edge
2023-01-10
CRITICAL 9.9 Siemens SINEC INS
ICSA-23-017-03 · 12 CVEs
SINEC INS
2023-01-10
MEDIUM 0 SSA-997779 V1.0: File Parsing Vulnerability in Solid Edge before V2023 MP1
SIEMENS-SSA-997779
SSA-997779 V1.0: File Parsing Vulnerability in Solid Edge before V2023 MP1
2023-01-10
MEDIUM 0 SSA-936212 V1.0: JT File Parsing Vulnerabilities in JT Open, JT Utilities and Solid Edge
SIEMENS-SSA-936212
SSA-936212 V1.0: JT File Parsing Vulnerabilities in JT Open, JT Utilities and Solid Edge
2023-01-10
MEDIUM 0 SSA-547714 V1.1 (Last Update: 2023-01-10): Argument Injection Vulnerability in SIMATIC WinCC OA Ultralight Client
SIEMENS-SSA-547714
SSA-547714 V1.1 (Last Update: 2023-01-10): Argument Injection Vulnerability in SIMATIC WinCC OA Ultralight Client
2023-01-10
MEDIUM 0 SSA-496604 V1.0: Cross-Site Scripting Vulnerability in Mendix SAML Module
SIEMENS-SSA-496604
SSA-496604 V1.0: Cross-Site Scripting Vulnerability in Mendix SAML Module
2023-01-10
MEDIUM 0 SSA-431678 V1.4 (Last Update: 2023-01-10): Denial of Service Vulnerability in SIMATIC S7 CPU Families
SIEMENS-SSA-431678
SSA-431678 V1.4 (Last Update: 2023-01-10): Denial of Service Vulnerability in SIMATIC S7 CPU Families
2023-01-10
MEDIUM 0 SSA-332410 V1.0: Multiple Vulnerabilities in SINEC INS before V1.0 SP2 Update 1
SIEMENS-SSA-332410
SSA-332410 V1.0: Multiple Vulnerabilities in SINEC INS before V1.0 SP2 Update 1
2023-01-10
MEDIUM 0 SSA-210822 V1.1 (Last Update: 2023-01-10): Improper Access Control Vulnerability in Mendix Workflow Commons Module
SIEMENS-SSA-210822
SSA-210822 V1.1 (Last Update: 2023-01-10): Improper Access Control Vulnerability in Mendix Workflow Commons Module
2023-01-10
MEDIUM 5.8 Siemens SCALANCE X Switches (Update A)
ICSA-18-163-02 · 2 CVEs
SCALANCE X-200 switch family (incl. SIPLUS NET variants), SCALANCE X-200IRT switch family (incl. SIPLUS NET variants), SCALANCE X-200RNA switch family +1 more
2022-12-13
HIGH 8.8 Siemens SCALANCE X Switches (Update B)
ICSA-20-014-03 · 1 CVE
SCALANCE X204RNA (HSR) (6GK5204-0BA00-2MB2), SCALANCE X204RNA (PRP) (6GK5204-0BA00-2KB2), SCALANCE X204RNA EEC (HSR) (6GK5204-0BS00-2NA3) +77 more
2022-12-13
MEDIUM 4.2 Siemens SCALANCE X Switches (Update B)
ICSA-20-042-07 · 1 CVE
SCALANCE S602, SCALANCE S612, SCALANCE S623 +5 more
2022-12-13
HIGH 8.8 Siemens SIMATIC, SINAMICS, SINEC, SINEMA, SINUMERIK (Update J)
ICSA-20-161-04 · 1 CVE
SIMATIC Automation Tool, SIMATIC NET PC Software V14, SIMATIC NET PC Software V15 +24 more
2022-12-13
CRITICAL 9.1 Siemens SCALANCE X Switches (Update B)
ICSA-21-012-02 · 2 CVEs
SCALANCE X-200 switch family (incl. SIPLUS NET variants), SCALANCE X-200IRT switch family (incl. SIPLUS NET variants), SCALANCE X-200RNA switch family +1 more
2022-12-13
HIGH 7.8 Siemens Industrial PCs and CNC devices
ICSA-22-132-05 · 4 CVEs
SIMATIC Drive Controller family, SIMATIC ET 200SP Open Controller CPU 1515SP PC2 (incl. SIPLUS variants), SIMATIC Field PG M5 +17 more
2022-12-13
HIGH 7.4 Siemens Mendix SAML Module
ICSA-22-258-04 · 2 CVEs
Mendix SAML (Mendix 7 compatible), Mendix SAML (Mendix 7 compatible), Mendix SAML (Mendix 8 compatible) +5 more
2022-12-13
MEDIUM 6.1 Siemens PLM Help Server
ICSA-22-346-05 · 1 CVE
PLM Help Server V4.2
2022-12-13
HIGH 8.8 Siemens SCALANCE X-200RNA Switch Devices
ICSA-22-349-02 · 6 CVEs
SCALANCE X204RNA (HSR) (6GK5204-0BA00-2MB2), SCALANCE X204RNA (PRP) (6GK5204-0BA00-2KB2), SCALANCE X204RNA EEC (HSR) (6GK5204-0BS00-2NA3) +2 more
2022-12-13
HIGH 7.8 Siemens Teamcenter Visualization and JT2Go
ICSA-22-349-15 · 3 CVEs
JT2Go, Teamcenter Visualization V13.3, Teamcenter Visualization V14.0 +1 more
2022-12-13
HIGH 8.1 Siemens Mendix Email Connector
ICSA-22-349-17 · 1 CVE
Mendix Email Connector
2022-12-13
HIGH 7.8 Siemens SCALANCE SC-600 Family
ICSA-22-349-18 · 4 CVEs
SCALANCE SC622-2C (6GK5622-2GS00-2AC2), SCALANCE SC626-2C (6GK5626-2GS00-2AC2), SCALANCE SC632-2C (6GK5632-2GS00-2AC2) +3 more
2022-12-13
HIGH 8.8 Siemens SICAM PAS
ICSA-22-349-19 · 3 CVEs
SICAM PAS/PQS, SICAM PAS/PQS
2022-12-13
CRITICAL 9.8 Siemens SCALANCE X-200RNA Switch Devices
ICSA-22-349-21 · 83 CVEs
SCALANCE X204RNA (HSR) (6GK5204-0BA00-2MB2), SCALANCE X204RNA (PRP) (6GK5204-0BA00-2KB2), SCALANCE X204RNA EEC (HSR) (6GK5204-0BS00-2NA3) +2 more
2022-12-13
MEDIUM 0 SSA-951513 V1.3 (Last Update: 2022-12-13): Clickjacking Vulnerability in SCALANCE S, SCALANCE X-300, X-200IRT, X-200RNA and X-200 Switch Families
SIEMENS-SSA-951513
SSA-951513 V1.3 (Last Update: 2022-12-13): Clickjacking Vulnerability in SCALANCE S, SCALANCE X-300, X-200IRT, X-200RNA and X-200 Switch Families
2022-12-13
MEDIUM 0 SSA-849072 V1.0: Several Vulnerabilities in SICAM PAS before V8.06
SIEMENS-SSA-849072
SSA-849072 V1.0: Several Vulnerabilities in SICAM PAS before V8.06
2022-12-13
HIGH 7.8 SSA-678983 V1.6 (Last Update: 2022-12-13): Vulnerabilities in Industrial PCs and CNC devices using Intel CPUs (November 2020)
SIEMENS-SSA-678983 · 4 CVEs
SSA-678983 V1.6 (Last Update: 2022-12-13): Vulnerabilities in Industrial PCs and CNC devices using Intel CPUs (November 2020)
2022-12-13
CRITICAL 9.8 SSA-638652 V1.2 (Last Update: 2022-12-13): Authentication Bypass Vulnerability in Mendix SAML Module
SIEMENS-SSA-638652 · 2 CVEs
SSA-638652 V1.2 (Last Update: 2022-12-13): Authentication Bypass Vulnerability in Mendix SAML Module
2022-12-13
MEDIUM 0 SSA-588101 V1.0: Multiple File Parsing Vulnerabilities in Parasolid
SIEMENS-SSA-588101
SSA-588101 V1.0: Multiple File Parsing Vulnerabilities in Parasolid
2022-12-13
MEDIUM 0 SSA-480829 V1.2 (Last Update: 2022-12-13): Cross-Site Scripting Vulnerabilities in SCALANCE X Switches
SIEMENS-SSA-480829
SSA-480829 V1.2 (Last Update: 2022-12-13): Cross-Site Scripting Vulnerabilities in SCALANCE X Switches
2022-12-13
MEDIUM 0 SSA-443566 V1.3 (Last Update: 2022-12-13): Authentication Bypass in SCALANCE X Switches Families
SIEMENS-SSA-443566
SSA-443566 V1.3 (Last Update: 2022-12-13): Authentication Bypass in SCALANCE X Switches Families
2022-12-13
MEDIUM 0 SSA-436469 V1.0: TCP Vulnerability in APOGEE/TALON Field Panels
SIEMENS-SSA-436469
SSA-436469 V1.0: TCP Vulnerability in APOGEE/TALON Field Panels
2022-12-13
MEDIUM 0 SSA-412672 V1.0: Multiple OpenSSL and OpenSSH Vulnerabilities in SCALANCE X-200RNA Switch Devices before V3.2.7
SIEMENS-SSA-412672
SSA-412672 V1.0: Multiple OpenSSL and OpenSSH Vulnerabilities in SCALANCE X-200RNA Switch Devices before V3.2.7
2022-12-13
MEDIUM 0 SSA-363821 V1.0: Multiple Vulnerabilities in SCALANCE X-200RNA Switch Devices before V3.2.7
SIEMENS-SSA-363821
SSA-363821 V1.0: Multiple Vulnerabilities in SCALANCE X-200RNA Switch Devices before V3.2.7
2022-12-13
MEDIUM 0 SSA-360681 V1.0: Datalogics File Parsing Vulnerabilities in Teamcenter Visualization and JT2Go
SIEMENS-SSA-360681
SSA-360681 V1.0: Datalogics File Parsing Vulnerabilities in Teamcenter Visualization and JT2Go
2022-12-13
MEDIUM 0 SSA-333517 V1.0: Multiple Vulnerabilities in SCALANCE SC-600 Family before V3.0
SIEMENS-SSA-333517
SSA-333517 V1.0: Multiple Vulnerabilities in SCALANCE SC-600 Family before V3.0
2022-12-13
MEDIUM 0 SSA-312271 V2.1 (Last Update: 2022-12-13): Unquoted Search Path Vulnerability in Windows-based Industrial Software Applications
SIEMENS-SSA-312271
SSA-312271 V2.1 (Last Update: 2022-12-13): Unquoted Search Path Vulnerability in Windows-based Industrial Software Applications
2022-12-13
MEDIUM 0 SSA-274900 V1.3 (Last Update: 2022-12-13): Use of Hardcoded Key in SCALANCE X Devices Under Certain Conditions
SIEMENS-SSA-274900
SSA-274900 V1.3 (Last Update: 2022-12-13): Use of Hardcoded Key in SCALANCE X Devices Under Certain Conditions
2022-12-13
MEDIUM 0 SSA-274282 V1.0: Cross Site Scripting Vulnerability in PLM Help Server V4.2
SIEMENS-SSA-274282
SSA-274282 V1.0: Cross Site Scripting Vulnerability in PLM Help Server V4.2
2022-12-13
MEDIUM 0 SSA-224632 V1.0: Improper Access Control Vulnerability in Mendix Email Connector Module
SIEMENS-SSA-224632
SSA-224632 V1.0: Improper Access Control Vulnerability in Mendix Email Connector Module
2022-12-13
CRITICAL 9.6 Siemens SCALANCE X-200 and X-200IRT Families (Update A)
ICSA-22-286-15 · 1 CVE
SCALANCE X200-4P IRT (6GK5200-4AH00-2BA3), SCALANCE X201-3P IRT (6GK5201-3BH00-2BA3), SCALANCE X201-3P IRT PRO (6GK5201-3JR00-2BA6) +27 more
2022-11-08
HIGH 7.8 Siemens Parasolid
ICSA-22-314-01 · 2 CVEs
Parasolid V34.0, Parasolid V34.0, Parasolid V34.1 +3 more
2022-11-08
MEDIUM 6.6 Siemens SINEC Network Management System Logback Component
ICSA-22-314-03 · 1 CVE
SINEC NMS
2022-11-08
MEDIUM 0 SSA-853037 V1.0: File Parsing Vulnerabilities in Parasolid
SIEMENS-SSA-853037
SSA-853037 V1.0: File Parsing Vulnerabilities in Parasolid
2022-11-08
MEDIUM 0 SSA-501891 V1.1 (Last Update: 2022-11-08): Cross-Site Scripting Vulnerability in SCALANCE X-200 and X-200IRT Families
SIEMENS-SSA-501891
SSA-501891 V1.1 (Last Update: 2022-11-08): Cross-Site Scripting Vulnerability in SCALANCE X-200 and X-200IRT Families
2022-11-08
MEDIUM 0 SSA-400332 V1.1 (Last Update: 2022-11-08): Insufficient Design IP Protection in IEEE 1735 Recommended Practice - Impact to Questa and ModelSim
SIEMENS-SSA-400332
SSA-400332 V1.1 (Last Update: 2022-11-08): Insufficient Design IP Protection in IEEE 1735 Recommended Practice - Impact to Questa and ModelSim
2022-11-08
MEDIUM 6.6 SSA-371761 V1.0: Arbitrary Code Execution Vulnerability in the Logback Component of SINEC NMS before V1.0.3
SIEMENS-SSA-371761 · 1 CVE
SSA-371761 V1.0: Arbitrary Code Execution Vulnerability in the Logback Component of SINEC NMS before V1.0.3
2022-11-08
MEDIUM 0 SSA-362164 V1.2 (Last Update: 2022-11-08): Predictable Initial Sequence Numbers in the TCP/IP Stack of Nucleus RTOS
SIEMENS-SSA-362164
SSA-362164 V1.2 (Last Update: 2022-11-08): Predictable Initial Sequence Numbers in the TCP/IP Stack of Nucleus RTOS
2022-11-08
CRITICAL 9.4 Siemens Siveillance Video Mobile Server
ICSA-22-298-03 · 1 CVE
Siveillance Video Mobile Server V2022 R2
2022-10-21
MEDIUM 0 SSA-640732 V1.0: Authentication Bypass Vulnerability in Siveillance Video Mobile Server
SIEMENS-SSA-640732
SSA-640732 V1.0: Authentication Bypass Vulnerability in Siveillance Video Mobile Server
2022-10-21
HIGH 7.4 Siemens Industrial Edge Management
ICSA-22-286-02 · 1 CVE
Industrial Edge Management
2022-10-13
CRITICAL 9.8 Siemens SCALANCE
ICSA-21-287-07 · 15 CVEs
SCALANCE W1750D, SCALANCE W1750D, SCALANCE W1750D
2022-10-11
CRITICAL 9.8 Siemens SCALANCE W1750D
ICSA-21-315-06 · 6 CVEs
SCALANCE W1750D, SCALANCE W1750D
2022-10-11
CRITICAL 9.8 Siemens Apache HTTP Server
ICSA-22-167-06 · 3 CVEs
RUGGEDCOM NMS, SINEC NMS, SINEMA Remote Connect Server +1 more
2022-10-11
MEDIUM 6.1 Siemens LOGO!
ICSA-22-286-01 · 1 CVE
LOGO! 8 BM (incl. SIPLUS variants)
2022-10-11
HIGH 7.8 Siemens Solid Edge
ICSA-22-286-03 · 1 CVE
Solid Edge
2022-10-11
CRITICAL 9.3 Siemens SIMATIC S7-1200 and S7-1500 CPU Families
ICSA-22-286-04 · 1 CVE
SIMATIC Drive Controller family, SIMATIC ET 200SP Open Controller CPU 1515SP PC (incl. SIPLUS variants), SIMATIC ET 200SP Open Controller CPU 1515SP PC2 (incl. SIPLUS variants) +4 more
2022-10-11
HIGH 8.8 Siemens Desigo PXM Devices
ICSA-22-286-06 · 7 CVEs
Desigo PXM30-1, Desigo PXM30.E, Desigo PXM40-1 +7 more
2022-10-11
HIGH 7.8 Siemens JT Open Toolkit and Simcenter Femap
ICSA-22-286-10 · 1 CVE
JTTK, Simcenter Femap V2022.1, Simcenter Femap V2022.2
2022-10-11
HIGH 7.5 Siemens SIMATIC HMI Panels
ICSA-22-286-14 · 1 CVE
SIMATIC HMI Comfort Panels (incl. SIPLUS variants), SIMATIC HMI KTP Mobile Panels, SIMATIC HMI KTP1200 Basic (6AV2123-2MB03-0AX0) +7 more
2022-10-11
CRITICAL 9.8 Siemens Desigo CC and Cerberus DMS
ICSA-22-286-16 · 1 CVE
Cerberus DMS, Desigo CC, Desigo CC Compact
2022-10-11
MEDIUM 0 SSA-928782 V1.0: Firmware Authenticity Vulnerability in LOGO! 8 BM Devices
SIEMENS-SSA-928782
SSA-928782 V1.0: Firmware Authenticity Vulnerability in LOGO! 8 BM Devices
2022-10-11
MEDIUM 0 SSA-917476 V1.1 (Last Update: 2022-10-11): Multiple Vulnerabilities in SCALANCE W1750D
SIEMENS-SSA-917476
SSA-917476 V1.1 (Last Update: 2022-10-11): Multiple Vulnerabilities in SCALANCE W1750D
2022-10-11
MEDIUM 0 SSB-898115 V1.0: Remarks Regarding SSA-568427 (Weak Key Protection Vulnerability in SIMATIC S7-1200 and S7-1500 CPU Families)
SIEMENS-SSA-568427
SSB-898115 V1.0: Remarks Regarding SSA-568427 (Weak Key Protection Vulnerability in SIMATIC S7-1200 and S7-1500 CPU Families)
2022-10-11
MEDIUM 0 SSA-836027 V1.0: Client-side Authentication in Desigo CC and Cerberus DMS
SIEMENS-SSA-836027
SSA-836027 V1.0: Client-side Authentication in Desigo CC and Cerberus DMS
2022-10-11
MEDIUM 0 SSA-685781 V1.1 (Last Update: 2022-10-11): Multiple Vulnerabilities in Apache HTTP Server Affecting Siemens Products
SIEMENS-SSA-685781
SSA-685781 V1.1 (Last Update: 2022-10-11): Multiple Vulnerabilities in Apache HTTP Server Affecting Siemens Products
2022-10-11
MEDIUM 0 SSA-649853 V1.0: Improper Certificate Validation Vulnerability in Industrial Edge Management
SIEMENS-SSA-649853
SSA-649853 V1.0: Improper Certificate Validation Vulnerability in Industrial Edge Management
2022-10-11
MEDIUM 0 SSA-611756 V1.0: JT File Parsing Vulnerability in JTTK and Simcenter Femap
SIEMENS-SSA-611756
SSA-611756 V1.0: JT File Parsing Vulnerability in JTTK and Simcenter Femap
2022-10-11
MEDIUM 0 SSA-384224 V1.0: Denial of Service Vulnerability in SIMATIC HMI Panels
SIEMENS-SSA-384224
SSA-384224 V1.0: Denial of Service Vulnerability in SIMATIC HMI Panels
2022-10-11
MEDIUM 0 SSA-360783 V1.0: Multiple Webserver Vulnerabilities in Desigo PXM Devices
SIEMENS-SSA-360783
SSA-360783 V1.0: Multiple Webserver Vulnerabilities in Desigo PXM Devices
2022-10-11
MEDIUM 0 SSA-280624 V1.1 (Last Update: 2022-10-11): Multiple Vulnerabilities in SCALANCE W1750D
SIEMENS-SSA-280624
SSA-280624 V1.1 (Last Update: 2022-10-11): Multiple Vulnerabilities in SCALANCE W1750D
2022-10-11
MEDIUM 0 SSA-258115 V1.0: DWG File Parsing Vulnerability in Solid Edge before SE2022MP9
SIEMENS-SSA-258115
SSA-258115 V1.0: DWG File Parsing Vulnerability in Solid Edge before SE2022MP9
2022-10-11
CRITICAL 9.8 SSA-254054 V1.3 (Last Update: 2022-10-11): Spring Framework Vulnerability (Spring4Shell or SpringShell, CVE-2022-22965) - Impact to Siemens Products
SIEMENS-SSA-254054 · 1 CVE
SSA-254054 V1.3 (Last Update: 2022-10-11): Spring Framework Vulnerability (Spring4Shell or SpringShell, CVE-2022-22965) - Impact to Siemens Products
2022-10-11
MEDIUM 5.9 Siemens OpenSSL Vulnerability in Industrial Products (Update E)
ICSA-18-226-02 · 1 CVE
MindConnect IoT2040, MindConnect Nano (IPC227D), SIMATIC ET 200SP Open Controller CPU 1515SP PC (incl. SIPLUS variants) +17 more
2022-09-13
HIGH 7.8 Simcenter Femap and Parasolid
ICSA-22-195-09 · 1 CVE
Parasolid V33.1, Parasolid V34.0, Parasolid V34.1 +2 more
2022-09-13
HIGH 7.8 Open Design Alliance Drawings SDK
ICSA-22-195-11 · 3 CVEs
JT2Go, Teamcenter Visualization V12.4, Teamcenter Visualization V13.2 +2 more
2022-09-13
HIGH 7.8 Siemens Mobility CoreShield OWG Software
ICSA-22-258-01 · 1 CVE
CoreShield One-Way Gateway (OWG) Software
2022-09-13
HIGH 7.8 Siemens Simcenter Femap and Parasolid
ICSA-22-258-02 · 20 CVEs
Parasolid V33.1, Parasolid V33.1, Parasolid V34.0 +5 more
2022-09-13
HIGH 8.8 Siemens SINEC INS
ICSA-22-258-05 · 14 CVEs
SINEC INS
2022-09-13
MEDIUM 0 SSA-637483 V1.0: Third-Party Component Vulnerabilities in SINEC INS before V1.0 SP2
SIEMENS-SSA-637483
SSA-637483 V1.0: Third-Party Component Vulnerabilities in SINEC INS before V1.0 SP2
2022-09-13
MEDIUM 0 SSA-589975 V1.0: Improper Access Control Vulnerability in CoreShield OWG Software
SIEMENS-SSA-589975
SSA-589975 V1.0: Improper Access Control Vulnerability in CoreShield OWG Software
2022-09-13
MEDIUM 0 SSA-518824 V1.0: Multiple File Parsing Vulnerabilities in Simcenter Femap and Parasolid
SIEMENS-SSA-518824
SSA-518824 V1.0: Multiple File Parsing Vulnerabilities in Simcenter Femap and Parasolid
2022-09-13
MEDIUM 0 SSA-429204 V1.2 (Last Update: 2022-09-13): Open Design Alliance Drawings SDK Vulnerabilities in JT2Go and Teamcenter Visualization
SIEMENS-SSA-429204
SSA-429204 V1.2 (Last Update: 2022-09-13): Open Design Alliance Drawings SDK Vulnerabilities in JT2Go and Teamcenter Visualization
2022-09-13
MEDIUM 0 SSA-243317 V1.2 (Last Update: 2022-09-13): File Parsing Vulnerability in Simcenter Femap and Parasolid
SIEMENS-SSA-243317
SSA-243317 V1.2 (Last Update: 2022-09-13): File Parsing Vulnerability in Simcenter Femap and Parasolid
2022-09-13
MEDIUM 0 SSA-179516 V1.7 (Last Update: 2022-09-13): OpenSSL Vulnerability in Industrial Products
SIEMENS-SSA-179516
SSA-179516 V1.7 (Last Update: 2022-09-13): OpenSSL Vulnerability in Industrial Products
2022-09-13
CRITICAL 9.9 Siemens SICAM TOOLBOX II
ICSA-22-223-06 · 1 CVE
SICAM TOOLBOX II
2022-08-11
HIGH 7.5 Siemens SIMATIC Panels and WinCC (TIA Portal)
ICSA-19-134-09 · 1 CVE
SIMATIC CP 443-1 OPC UA, SIMATIC ET 200SP Open Controller CPU 1515SP PC2 (incl. SIPLUS variants), SIMATIC HMI Comfort Outdoor Panels 7" & 15" (incl. SIPLUS variants) +16 more
2022-08-09
MEDIUM 6.7 Siemens UMC Stack (Update H)
ICSA-20-196-05 · 3 CVEs
Opcenter Execution Discrete, Opcenter Execution Foundation, Opcenter Execution Process +13 more
2022-08-09
MEDIUM 5.9 Siemens SIMATIC S7-300 CPUs and SINUMERIK Controller (Update A)
ICSA-20-315-04 · 1 CVE
SIMATIC S7-300 CPU family (incl. related ET200 CPUs and SIPLUS variants), SIMATIC TDC CPU555, SINUMERIK 840D sl
2022-08-09
HIGH 7.3 Siemens SIMATIC Software Products (Update B)
ICSA-21-194-06 · 1 CVE
SIMATIC PCS 7 V8.2 and earlier, SIMATIC PCS 7 V9.X, SIMATIC PDM +2 more
2022-08-09
MEDIUM 6.3 Siemens SIMATIC WinCC and PCS
ICSA-22-041-02 · 2 CVEs
SIMATIC PCS 7 V8.2, SIMATIC PCS 7 V9.0, SIMATIC PCS 7 V9.1 +6 more
2022-08-09
CRITICAL 9.9 Siemens SICAM TOOLBOX II (Update A)
ICSA-22-041-05 · 1 CVE
SICAM TOOLBOX II
2022-08-09
HIGH 8.1 Siemens Industrial Devices using libcurl
ICSA-22-132-13 · 2 CVEs
LOGO! CMR family, RUGGEDCOM RM1224 LTE(4G) EU, RUGGEDCOM RM1224 LTE(4G) NAM +31 more
2022-08-09
HIGH 7.8 Siemens Teamcenter
ICSA-22-132-16 · 2 CVEs
Teamcenter V12.4, Teamcenter V13.0, Teamcenter V13.1 +3 more
2022-08-09
CRITICAL 9.9 Siemens Teamcenter
ICSA-22-167-13 · 1 CVE
Teamcenter V12.4, Teamcenter V13.0, Teamcenter V13.1 +3 more
2022-08-09
HIGH 7.8 Siemens Datalogics File Parsing Vulnerability
ICSA-22-195-07 · 1 CVE
JT2Go, Teamcenter Visualization V13.3, Teamcenter Visualization V14.0
2022-08-09
CRITICAL 10.0 Siemens SIMATIC eaSie Core Package
ICSA-22-195-15 · 2 CVEs
SIMATIC eaSie Core Package
2022-08-09
MEDIUM 5.3 Siemens Simcenter STAR-CCM+
ICSA-22-223-01 · 1 CVE
Simcenter STAR-CCM+
2022-08-09
HIGH 7.6 Siemens Teamcenter
ICSA-22-223-02 · 2 CVEs
Teamcenter V12.4, Teamcenter V13.0, Teamcenter V13.1 +3 more
2022-08-09
MEDIUM 4.3 Siemens SICAM A8000 Web Server Module
ICSA-22-223-05 · 1 CVE
CP-8000 MASTER MODULE WITH I/O -25/+70°C, CP-8000 MASTER MODULE WITH I/O -40/+70°C, CP-8021 MASTER MODULE +1 more
2022-08-09
MEDIUM 0 SSA-914168 V1.3 (Last Update: 2022-08-09): Multiple Vulnerabilities in SIMATIC WinCC Affecting Other SIMATIC Software Products
SIEMENS-SSA-914168
SSA-914168 V1.3 (Last Update: 2022-08-09): Multiple Vulnerabilities in SIMATIC WinCC Affecting Other SIMATIC Software Products
2022-08-09
MEDIUM 0 SSA-841348 V1.9 (Last Update: 2022-08-09): Multiple Vulnerabilities in the UMC Component
SIEMENS-SSA-841348
SSA-841348 V1.9 (Last Update: 2022-08-09): Multiple Vulnerabilities in the UMC Component
2022-08-09
MEDIUM 0 SSA-829738 V1.1 (Last Update: 2022-08-09): Datalogics File Parsing Vulnerability in Teamcenter Visualization and JT2Go
SIEMENS-SSA-829738
SSA-829738 V1.1 (Last Update: 2022-08-09): Datalogics File Parsing Vulnerability in Teamcenter Visualization and JT2Go
2022-08-09
HIGH 7.5 SSA-789162 V1.2 (Last Update: 2022-08-09): Vulnerabilities in Teamcenter
SIEMENS-SSA-789162 · 2 CVEs
SSA-789162 V1.2 (Last Update: 2022-08-09): Vulnerabilities in Teamcenter
2022-08-09
MEDIUM 0 SSA-759952 V1.0: Command Injection and Denial of Service Vulnerability in Teamcenter
SIEMENS-SSA-759952
SSA-759952 V1.0: Command Injection and Denial of Service Vulnerability in Teamcenter
2022-08-09
MEDIUM 0 SSA-732250 V1.2 (Last Update: 2022-08-09): Libcurl Vulnerabilities in Industrial Devices
SIEMENS-SSA-732250
SSA-732250 V1.2 (Last Update: 2022-08-09): Libcurl Vulnerabilities in Industrial Devices
2022-08-09
MEDIUM 0 SSA-669737 V1.2 (Last Update: 2022-08-09): Improper Access Control Vulnerability in SICAM TOOLBOX II
SIEMENS-SSA-669737
SSA-669737 V1.2 (Last Update: 2022-08-09): Improper Access Control Vulnerability in SICAM TOOLBOX II
2022-08-09
LOW 3.7 SSA-661247 V3.0 (Last Update: 2022-08-09): Apache Log4j Vulnerabilities (Log4Shell, CVE-2021-44228, CVE-2021-45046) - Impact to Siemens Products
SIEMENS-SSA-661247 · 4 CVEs
SSA-661247 V3.0 (Last Update: 2022-08-09): Apache Log4j Vulnerabilities (Log4Shell, CVE-2021-44228, CVE-2021-45046) - Impact to Siemens Products
2022-08-09
MEDIUM 0 SSA-661034 V1.2 (Last Update: 2022-08-09): Incorrect Permission Assignment in Multiple SIMATIC Software Products
SIEMENS-SSA-661034
SSA-661034 V1.2 (Last Update: 2022-08-09): Incorrect Permission Assignment in Multiple SIMATIC Software Products
2022-08-09
MEDIUM 0 SSA-629512 V1.6 (Last Update: 2022-08-09): Local Privilege Escalation Vulnerability in TIA Portal
SIEMENS-SSA-629512
SSA-629512 V1.6 (Last Update: 2022-08-09): Local Privilege Escalation Vulnerability in TIA Portal
2022-08-09
HIGH 7.1 SSA-580693 V1.3 (Last Update: 2022-08-09): WIBU Systems CodeMeter Runtime Denial-of-Service Vulnerability in Siemens Products
SIEMENS-SSA-580693 · 1 CVE
SSA-580693 V1.3 (Last Update: 2022-08-09): WIBU Systems CodeMeter Runtime Denial-of-Service Vulnerability in Siemens Products
2022-08-09
MEDIUM 0 SSA-580125 V1.1 (Last Update: 2022-08-09): Multiple Vulnerabilities in SIMATIC eaSie
SIEMENS-SSA-580125
SSA-580125 V1.1 (Last Update: 2022-08-09): Multiple Vulnerabilities in SIMATIC eaSie
2022-08-09
MEDIUM 0 SSA-555707 V1.0: Information Disclosure Vulnerability in Simcenter STAR-CCM+
SIEMENS-SSA-555707
SSA-555707 V1.0: Information Disclosure Vulnerability in Simcenter STAR-CCM+
2022-08-09
MEDIUM 0 SSA-492828 V1.2 (Last Update: 2022-08-09): Denial-of-Service Vulnerability in SIMATIC S7-300 CPUs and SINUMERIK Controller
SIEMENS-SSA-492828
SSA-492828 V1.2 (Last Update: 2022-08-09): Denial-of-Service Vulnerability in SIMATIC S7-300 CPUs and SINUMERIK Controller
2022-08-09
MEDIUM 0 SSA-307392 V1.9 (Last Update: 2022-08-09): Denial of Service in OPC UA in Industrial Products
SIEMENS-SSA-307392
SSA-307392 V1.9 (Last Update: 2022-08-09): Denial of Service in OPC UA in Industrial Products
2022-08-09
HIGH 7.5 SSA-232418 V1.4 (Last Update: 2022-08-09): Vulnerabilities in SIMATIC S7-1200 and SIMATIC S7-1500 CPU Families
SIEMENS-SSA-232418 · 2 CVEs
SSA-232418 V1.4 (Last Update: 2022-08-09): Vulnerabilities in SIMATIC S7-1200 and SIMATIC S7-1500 CPU Families
2022-08-09
MEDIUM 0 SSA-220589 V1.2 (Last Update: 2022-08-09): Hard Coded Default Credential Vulnerability in Teamcenter
SIEMENS-SSA-220589
SSA-220589 V1.2 (Last Update: 2022-08-09): Hard Coded Default Credential Vulnerability in Teamcenter
2022-08-09
MEDIUM 0 SSA-185638 V1.0: Authentication Bypass Vulnerability in SICAM A8000 Web Server Module
SIEMENS-SSA-185638
SSA-185638 V1.0: Authentication Bypass Vulnerability in SICAM A8000 Web Server Module
2022-08-09
MEDIUM 5.4 Siemens SCALANCE X (Update D)
ICSA-19-085-01 · 1 CVE
SCALANCE X204-2, SCALANCE X204-2FM, SCALANCE X204-2LD +156 more
2022-07-12
MEDIUM 5.3 Siemens Mendix
ICSA-22-104-07 · 1 CVE
Mendix Applications using Mendix 7, Mendix Applications using Mendix 8, Mendix Applications using Mendix 9 +1 more
2022-07-12
HIGH 7.5 Siemens TIA Administrator
ICSA-22-104-16 · 1 CVE
SIMATIC PCS neo (Administration Console), SINETPLAN, TIA Portal
2022-07-12
HIGH 8.0 Siemens SIMATIC MV500 Devices
ICSA-22-195-03 · 2 CVEs
SIMATIC MV540 H, SIMATIC MV540 S, SIMATIC MV550 H +3 more
2022-07-12
HIGH 7.8 Siemens Simcenter Femap
ICSA-22-195-04 · 1 CVE
Simcenter Femap
2022-07-12
HIGH 7.2 Siemens RUGGEDCOM ROX
ICSA-22-195-05 · 1 CVE
RUGGEDCOM ROX MX5000, RUGGEDCOM ROX MX5000RE, RUGGEDCOM ROX RX1400 +8 more
2022-07-12
MEDIUM 6.5 Siemens Mendix Excel Importer
ICSA-22-195-06 · 1 CVE
Mendix Excel Importer Module (Mendix 8 compatible), Mendix Excel Importer Module (Mendix 9 compatible)
2022-07-12
HIGH 7.8 Siemens PADS Standard/Plus Viewer
ICSA-22-195-08 · 20 CVEs
PADS Standard/Plus Viewer
2022-07-12
MEDIUM 6.5 Siemens Mendix Applications
ICSA-22-195-10 · 1 CVE
Mendix Applications using Mendix 9, Mendix Applications using Mendix 9 (V9.12)
2022-07-12
MEDIUM 4.9 Siemens Mendix
ICSA-22-195-13 · 1 CVE
Mendix Applications using Mendix 7, Mendix Applications using Mendix 8, Mendix Applications using Mendix 9 +2 more
2022-07-12
HIGH 7.5 Siemens CPC80 Firmware of SICAM A8000
ICSA-22-195-14 · 1 CVE
CP-8000 MASTER MODULE WITH I/O -25/+70°C, CP-8000 MASTER MODULE WITH I/O -40/+70°C, CP-8021 MASTER MODULE +1 more
2022-07-12
HIGH 8.6 Siemens EN100 Ethernet Module
ICSA-22-195-16 · 1 CVE
EN100 Ethernet module DNP3 IP variant, EN100 Ethernet module IEC 104 variant, EN100 Ethernet module IEC 61850 variant +2 more
2022-07-12
CRITICAL 9.6 Siemens Opcenter Quality
ICSA-22-195-17 · 1 CVE
Opcenter Quality V13.1, Opcenter Quality V13.2
2022-07-12
MEDIUM 0 SSA-944952 V1.0: Authentication Bypass Vulnerability in Opcenter Quality
SIEMENS-SSA-944952
SSA-944952 V1.0: Authentication Bypass Vulnerability in Opcenter Quality
2022-07-12
CRITICAL 9.8 SSA-910883 V1.0: DHCP Client Vulnerability in SINAMICS PERFECT HARMONY GH180 Drives
SIEMENS-SSA-910883 · 1 CVE
SSA-910883 V1.0: DHCP Client Vulnerability in SINAMICS PERFECT HARMONY GH180 Drives
2022-07-12
HIGH 7.5 SSA-865333 V1.0: Memory Corruption Vulnerability in EN100 Ethernet Module
SIEMENS-SSA-865333 · 1 CVE
SSA-865333 V1.0: Memory Corruption Vulnerability in EN100 Ethernet Module
2022-07-12
MEDIUM 0 SSA-711829 V1.1 (Last Update: 2022-07-12): Denial of Service Vulnerability in TIA Administrator
SIEMENS-SSA-711829
SSA-711829 V1.1 (Last Update: 2022-07-12): Denial of Service Vulnerability in TIA Administrator
2022-07-12
MEDIUM 0 SSA-610768 V1.0: XML Entity Expansion Injection Vulnerability in Mendix Excel Importer Module
SIEMENS-SSA-610768
SSA-610768 V1.0: XML Entity Expansion Injection Vulnerability in Mendix Excel Importer Module
2022-07-12
MEDIUM 0 SSA-599506 V1.0: Command Injection in RUGGEDCOM ROX
SIEMENS-SSA-599506
SSA-599506 V1.0: Command Injection in RUGGEDCOM ROX
2022-07-12
MEDIUM 0 SSA-557804 V1.4 (Last Update: 2022-07-12): Mirror Port Isolation Vulnerability in SCALANCE X Switches
SIEMENS-SSA-557804
SSA-557804 V1.4 (Last Update: 2022-07-12): Mirror Port Isolation Vulnerability in SCALANCE X Switches
2022-07-12
MEDIUM 0 SSA-492173 V1.0: Expression Injection Vulnerability in Mendix Applications
SIEMENS-SSA-492173
SSA-492173 V1.0: Expression Injection Vulnerability in Mendix Applications
2022-07-12
MEDIUM 0 SSA-491621 V1.0: Denial of Service Vulnerability in CPC80 Firmware of SICAM A8000 Devices
SIEMENS-SSA-491621
SSA-491621 V1.0: Denial of Service Vulnerability in CPC80 Firmware of SICAM A8000 Devices
2022-07-12
MEDIUM 0 SSA-474231 V1.0: File Parsing Vulnerability in Simcenter Femap before V2022.2
SIEMENS-SSA-474231
SSA-474231 V1.0: File Parsing Vulnerability in Simcenter Femap before V2022.2
2022-07-12
MEDIUM 0 SSA-439148 V1.0: File Parsing Vulnerabilities in PADS Standard/Plus Viewer
SIEMENS-SSA-439148
SSA-439148 V1.0: File Parsing Vulnerabilities in PADS Standard/Plus Viewer
2022-07-12
MEDIUM 0 SSA-433782 V1.0: Improper Access Control Vulnerability in Mendix
SIEMENS-SSA-433782
SSA-433782 V1.0: Improper Access Control Vulnerability in Mendix
2022-07-12
MEDIUM 0 SSA-414513 V1.2 (Last Update: 2022-07-12): Information Disclosure Vulnerability in Mendix
SIEMENS-SSA-414513
SSA-414513 V1.2 (Last Update: 2022-07-12): Information Disclosure Vulnerability in Mendix
2022-07-12
HIGH 8.0 SSA-348662 V1.0: Multiple Vulnerabilities in SIMATIC MV500 Devices before V3.3
SIEMENS-SSA-348662 · 2 CVEs
SSA-348662 V1.0: Multiple Vulnerabilities in SIMATIC MV500 Devices before V3.3
2022-07-12
CRITICAL 9.8 Siemens WinCC OA
ICSA-22-172-06 · 1 CVE
SIMATIC WinCC OA V3.16, SIMATIC WinCC OA V3.17, SIMATIC WinCC OA V3.18
2022-06-21
MEDIUM 0 SSA-111512 V1.0: Client-side Authentication in SIMATIC WinCC OA
SIEMENS-SSA-111512
SSA-111512 V1.0: Client-side Authentication in SIMATIC WinCC OA
2022-06-21
HIGH 7.8 Siemens TIA Portal (Update F)
ICSA-20-014-05 · 1 CVE
TIA Portal v15, TIA Portal v17, TIA Portal v14 +1 more
2022-06-16
CRITICAL 9.0 Siemens Desigo PXC and DXR Devices
ICSA-22-132-10 · 8 CVEs
Desigo DXR2, Desigo PXC3, Desigo PXC4 +1 more
2022-06-16
HIGH 7.5 Siemens BACnet Field Panels (Update A)
ICSA-17-285-05 · 2 CVEs
APOGEE PXC Compact (BACnet), APOGEE PXC Compact (P2 Ethernet), APOGEE PXC Modular (BACnet) +3 more
2022-06-14
HIGH 8.8 Siemens SIMATIC CP (Update A)
ICSA-21-222-07 · 2 CVEs
SIMATIC CP 1543-1 (incl. SIPLUS variants), SIMATIC CP 1545-1
2022-06-14
MEDIUM 6.5 Siemens SIMATIC CP (Update A)
ICSA-21-257-06 · 1 CVE
SIMATIC CP 1543-1 (incl. SIPLUS variants), SIMATIC CP 1545-1
2022-06-14
HIGH 7.8 Siemens Solid Edge, JT2Go, and Teamcenter Visualization
ICSA-22-041-07 · 5 CVEs
JT2Go, Solid Edge SE2021, Solid Edge SE2022 +5 more
2022-06-14
HIGH 8.3 Siemens Mendix SAML Module
ICSA-22-167-04 · 2 CVEs
Mendix SAML Module (Mendix 7 compatible), Mendix SAML Module (Mendix 8 compatible), Mendix SAML Module (Mendix 9 compatible)
2022-06-14
HIGH 8.6 Siemens EN100 Ethernet Module
ICSA-22-167-05 · 1 CVE
EN100 Ethernet module DNP3 IP variant, EN100 Ethernet module IEC 104 variant, EN100 Ethernet module IEC 61850 variant +2 more
2022-06-14
MEDIUM 4.2 Siemens SINEMA Remote Connect Server
ICSA-22-167-07 · 2 CVEs
SINEMA Remote Connect Server
2022-06-14
CRITICAL 9.8 Siemens SCALANCE LPE9403 Third-Party Vulnerabilities
ICSA-22-167-09 · 10 CVEs
SCALANCE LPE9403
2022-06-14
MEDIUM 5.9 Siemens SCALANCE XM-400 and XR-500
ICSA-22-167-10 · 1 CVE
SCALANCE XM408-4C, SCALANCE XM408-4C (L3 int.), SCALANCE XM408-8C +23 more
2022-06-14
HIGH 8.8 Siemens Spectrum Power Systems
ICSA-22-167-12 · 1 CVE
Spectrum Power 4, Spectrum Power 7, Spectrum Power MGMS
2022-06-14
MEDIUM 6.1 Siemens Teamcenter Active Workspace
ICSA-22-167-15 · 1 CVE
Teamcenter Active Workspace V5.2, Teamcenter Active Workspace V6.0
2022-06-14
HIGH 7.8 Siemens SCALANCE LPE 4903 and SINUMERIK Edge
ICSA-22-167-16 · 1 CVE
SCALANCE LPE9403, SINUMERIK Edge
2022-06-14
MEDIUM 0 SSA-911567 V1.0: Missing HTTP headers in SINEMA Remote Connect Server before V3.0 SP2
SIEMENS-SSA-911567
SSA-911567 V1.0: Missing HTTP headers in SINEMA Remote Connect Server before V3.0 SP2
2022-06-14
MEDIUM 0 SSA-740594 V1.0: Privilege Escalation Vulnerability in Mendix SAML Module
SIEMENS-SSA-740594
SSA-740594 V1.0: Privilege Escalation Vulnerability in Mendix SAML Module
2022-06-14
HIGH 7.5 SSA-693555 V1.0: Memory Corruption Vulnerability in EN100 Ethernet Module
SIEMENS-SSA-693555 · 1 CVE
SSA-693555 V1.0: Memory Corruption Vulnerability in EN100 Ethernet Module
2022-06-14
MEDIUM 0 SSA-679335 V1.1 (Last Update: 2022-06-14): Multiple Vulnerabilities in Embedded FTP Server of SIMATIC CP Modules
SIEMENS-SSA-679335
SSA-679335 V1.1 (Last Update: 2022-06-14): Multiple Vulnerabilities in Embedded FTP Server of SIMATIC CP Modules
2022-06-14
MEDIUM 0 SSA-662649 V1.1 (Last Update: 2022-06-14): Denial of Service Vulnerability in Desigo DXR and PXC Controllers
SIEMENS-SSA-662649
SSA-662649 V1.1 (Last Update: 2022-06-14): Denial of Service Vulnerability in Desigo DXR and PXC Controllers
2022-06-14
MEDIUM 0 SSA-626968 V1.1 (Last Update: 2022-06-14): Multiple Webserver Vulnerabilities in Desigo PXC and DXR Devices
SIEMENS-SSA-626968
SSA-626968 V1.1 (Last Update: 2022-06-14): Multiple Webserver Vulnerabilities in Desigo PXC and DXR Devices
2022-06-14
MEDIUM 0 SSA-535997 V1.1 (Last Update: 2022-06-14): Cleartext Storage of Sensitive Information in Multiple SIMATIC Products
SIEMENS-SSA-535997
SSA-535997 V1.1 (Last Update: 2022-06-14): Cleartext Storage of Sensitive Information in Multiple SIMATIC Products
2022-06-14
MEDIUM 0 SSA-401167 V1.0: Cross-site scripting Vulnerability in Teamcenter Active Workspace
SIEMENS-SSA-401167
SSA-401167 V1.0: Cross-site scripting Vulnerability in Teamcenter Active Workspace
2022-06-14
MEDIUM 0 SSA-388239 V1.0: Default Password Leakage affecting the Component Shared HIS used in Spectrum Power Systems
SIEMENS-SSA-388239
SSA-388239 V1.0: Default Password Leakage affecting the Component Shared HIS used in Spectrum Power Systems
2022-06-14
HIGH 7.8 SSA-330556 V1.0: PwnKit Vulnerability in SCALANCE LPE9403 and SINUMERIK Edge Products (CVE-2021-4034)
SIEMENS-SSA-330556 · 1 CVE
SSA-330556 V1.0: PwnKit Vulnerability in SCALANCE LPE9403 and SINUMERIK Edge Products (CVE-2021-4034)
2022-06-14
MEDIUM 0 SSA-301589 V1.3 (Last Update: 2022-06-14): Multiple File Parsing Vulnerabilities in Solid Edge, JT2Go and Teamcenter Visualization
SIEMENS-SSA-301589
SSA-301589 V1.3 (Last Update: 2022-06-14): Multiple File Parsing Vulnerabilities in Solid Edge, JT2Go and Teamcenter Visualization
2022-06-14
MEDIUM 0 SSA-222547 V1.0: Third-Party Component Vulnerabilities in SCALANCE LPE9403 before V2.0
SIEMENS-SSA-222547
SSA-222547 V1.0: Third-Party Component Vulnerabilities in SCALANCE LPE9403 before V2.0
2022-06-14
MEDIUM 0 SSA-148078 V1.1 (Last Update: 2022-06-14): Multiple Vulnerabilities in APOGEE/TALON Field Panels
SIEMENS-SSA-148078
SSA-148078 V1.1 (Last Update: 2022-06-14): Multiple Vulnerabilities in APOGEE/TALON Field Panels
2022-06-14
MEDIUM 0 SSA-145224 V1.0: Vulnerability in OSPF Packet Handling of SCALANCE XM-400 and XR-500 Devices
SIEMENS-SSA-145224
SSA-145224 V1.0: Vulnerability in OSPF Packet Handling of SCALANCE XM-400 and XR-500 Devices
2022-06-14
HIGH 7.5 ICSA-19-253-03_Siemens Industrial Products (Update P)
ICSA-19-253-03 · 4 CVEs
SIMATIC ITC2200 PRO, SIMATIC RF188C, SIMATIC S7-1500 CPU 1518-4 PN/DP MFP (MLFB- 6ES7518-4AX00-1AC0 6AG1518-4AX00-4AC0 incl. SIPLUS variant) +104 more
2022-05-12
MEDIUM 5.9 Siemens VxWorks-based Industrial Products (Update C)
ICSA-21-194-12 · 1 CVE
SCALANCE X208PRO (6GK5208-0HA10-2AA6), SCALANCE X202-2P IRT PRO (6GK5202-2JR00-2BA6), SCALANCE X308-2M (6GK5308-2GG00-2AA2) +107 more
2022-05-12
MEDIUM 0 SSA-162616 V1.0: File Parsing Vulnerabilities in Simcenter Femap before V2022.2
SIEMENS-SSA-162616
SSA-162616 V1.0: File Parsing Vulnerabilities in Simcenter Femap before V2022.2
2022-05-10
MEDIUM 0 SSA-165073 V1.0: Multiple Vulnerabilities in the Webinterface of SICAM P850 and SICAM P855 Devices
SIEMENS-SSA-165073
SSA-165073 V1.0: Multiple Vulnerabilities in the Webinterface of SICAM P850 and SICAM P855 Devices
2022-05-10
MEDIUM 0 SSA-480937 V1.0: Denial of Service Vulnerability in CP 44x-1 RNA before V1.5.18
SIEMENS-SSA-480937
SSA-480937 V1.0: Denial of Service Vulnerability in CP 44x-1 RNA before V1.5.18
2022-05-10
MEDIUM 0 SSA-553086 V1.0: Multiple File Parsing Vulnerabilities in JT2Go and Teamcenter Visualization
SIEMENS-SSA-553086
SSA-553086 V1.0: Multiple File Parsing Vulnerabilities in JT2Go and Teamcenter Visualization
2022-05-10
MEDIUM 0 SSA-736385 V1.0: Memory Corruption Vulnerability in OpenV2G
SIEMENS-SSA-736385
SSA-736385 V1.0: Memory Corruption Vulnerability in OpenV2G
2022-05-10
MEDIUM 0 SSA-114589 V1.3 (Last Update: 2022-05-10): Multiple Vulnerabilities in Nucleus RTOS based APOGEE, TALON and Desigo PXC/PXM Products
SIEMENS-SSA-114589
SSA-114589 V1.3 (Last Update: 2022-05-10): Multiple Vulnerabilities in Nucleus RTOS based APOGEE, TALON and Desigo PXC/PXM Products
2022-05-10
MEDIUM 0 SSA-560465 V1.2 (Last Update: 2022-05-10): DHCP Client Vulnerability in VxWorks-based Industrial Products
SIEMENS-SSA-560465
SSA-560465 V1.2 (Last Update: 2022-05-10): DHCP Client Vulnerability in VxWorks-based Industrial Products
2022-05-10
MEDIUM 0 SSA-756638 V1.1 (Last Update: 2022-05-10): Vulnerabilities in Third-Party Component Mbed TLS of LOGO! CMR Family and SIMATIC RTU 3000 Family
SIEMENS-SSA-756638
SSA-756638 V1.1 (Last Update: 2022-05-10): Vulnerabilities in Third-Party Component Mbed TLS of LOGO! CMR Family and SIMATIC RTU 3000 Family
2022-05-10
MEDIUM 0 SSA-787292 V1.2 (Last Update: 2022-05-10): Denial of Service Vulnerability in SIMATIC RFID Readers
SIEMENS-SSA-787292
SSA-787292 V1.2 (Last Update: 2022-05-10): Denial of Service Vulnerability in SIMATIC RFID Readers
2022-05-10
HIGH 7.5 Siemens Industrial Products with OPC UA (Update H)
ICSA-19-099-03 · 1 CVE
SIMATIC CP 443-1 OPC UA, SIMATIC ET 200SP Open Controller CPU 1515SP PC2 (incl. SIPLUS variants), SIMATIC HMI Comfort Outdoor Panels 7" & 15" (incl. SIPLUS variants) +16 more
2022-04-14
MEDIUM 0 SSA-316850 V1.0: Unauthenticated File Access in SICAM A8000 Devices
SIEMENS-SSA-316850
SSA-316850 V1.0: Unauthenticated File Access in SICAM A8000 Devices
2022-04-12
MEDIUM 0 SSA-350757 V1.0: Improper Access Control Vulnerability in TIA Portal Affecting S7-1200 and S7-1500 CPUs Web Server (Incl. Related ET200 CPUs and SIPLUS variants)
SIEMENS-SSA-350757
SSA-350757 V1.0: Improper Access Control Vulnerability in TIA Portal Affecting S7-1200 and S7-1500 CPUs Web Server (Incl. Related ET200 CPUs and SIPLUS variants)
2022-04-12
MEDIUM 0 SSA-392912 V1.0: Multiple Denial Of Service Vulnerabilities in SCALANCE W1700 Devices
SIEMENS-SSA-392912
SSA-392912 V1.0: Multiple Denial Of Service Vulnerabilities in SCALANCE W1700 Devices
2022-04-12
MEDIUM 0 SSA-655554 V1.0: Multiple Vulnerabilities in SIMATIC Energy Manager before V7.3 Update 1
SIEMENS-SSA-655554
SSA-655554 V1.0: Multiple Vulnerabilities in SIMATIC Energy Manager before V7.3 Update 1
2022-04-12
MEDIUM 0 SSA-836527 V1.0: Multiple Vulnerabilities in SCALANCE X-300 Switch Family Devices
SIEMENS-SSA-836527
SSA-836527 V1.0: Multiple Vulnerabilities in SCALANCE X-300 Switch Family Devices
2022-04-12
MEDIUM 0 SSA-870917 V1.0: Improper Access Control Vulnerability in Mendix
SIEMENS-SSA-870917
SSA-870917 V1.0: Improper Access Control Vulnerability in Mendix
2022-04-12
MEDIUM 0 SSA-998762 V1.0: File Parsing Vulnerabilities in Simcenter Femap before V2022.1.2
SIEMENS-SSA-998762
SSA-998762 V1.0: File Parsing Vulnerabilities in Simcenter Femap before V2022.1.2
2022-04-12
MEDIUM 0 SSA-273799 V1.3 (Last Update: 2022-04-12): Message Integrity Protection Bypass Vulnerability in SIMATIC Products
SIEMENS-SSA-273799
SSA-273799 V1.3 (Last Update: 2022-04-12): Message Integrity Protection Bypass Vulnerability in SIMATIC Products
2022-04-12
MEDIUM 0 SSA-348629 V1.9 (Last Update: 2022-04-12): Denial-of-Service Vulnerability in SIMATIC PCS 7, SIMATIC WinCC, SIMATIC WinCC Runtime Professional and SIMATIC NET PC Software
SIEMENS-SSA-348629
SSA-348629 V1.9 (Last Update: 2022-04-12): Denial-of-Service Vulnerability in SIMATIC PCS 7, SIMATIC WinCC, SIMATIC WinCC Runtime Professional and SIMATIC NET PC Software
2022-04-12
HIGH 8.2 SSA-535640 V1.5 (Last Update: 2022-04-12): Vulnerability in Industrial Products
SIEMENS-SSA-535640 · 1 CVE
SSA-535640 V1.5 (Last Update: 2022-04-12): Vulnerability in Industrial Products
2022-04-12
MEDIUM 0 SSA-562051 V1.1 (Last Update: 2022-04-12): Cross-Site Scripting Vulnerability in Polarion ALM
SIEMENS-SSA-562051
SSA-562051 V1.1 (Last Update: 2022-04-12): Cross-Site Scripting Vulnerability in Polarion ALM
2022-04-12
MEDIUM 0 SSA-672373 V1.2 (Last Update: 2022-04-12): Vulnerabilities in CP 1543-1 before V2.0.28
SIEMENS-SSA-672373
SSA-672373 V1.2 (Last Update: 2022-04-12): Vulnerabilities in CP 1543-1 before V2.0.28
2022-04-12
MEDIUM 0 SSA-995338 V1.2 (Last Update: 2022-04-12): Multiple Vulnerabilities in COMOS Web
SIEMENS-SSA-995338
SSA-995338 V1.2 (Last Update: 2022-04-12): Multiple Vulnerabilities in COMOS Web
2022-04-12
MEDIUM 6.4 Siemens Climatix POL909 (Update A)
ICSA-21-315-09 · 1 CVE
Climatix POL909 (AWM module), Climatix POL909 (AWB module)
2022-03-10
MEDIUM 0 SSA-134279 V1.0: Vulnerability in Mendix Forgot Password Appstore module
SIEMENS-SSA-134279
SSA-134279 V1.0: Vulnerability in Mendix Forgot Password Appstore module
2022-03-08
MEDIUM 0 SSA-155599 V1.0: File Parsing Vulnerabilities in COMOS
SIEMENS-SSA-155599
SSA-155599 V1.0: File Parsing Vulnerabilities in COMOS
2022-03-08
MEDIUM 0 SSA-166747 V1.0: Scene File Parsing Vulnerability in Simcenter STAR-CCM+ Viewer before V2022.1
SIEMENS-SSA-166747
SSA-166747 V1.0: Scene File Parsing Vulnerability in Simcenter STAR-CCM+ Viewer before V2022.1
2022-03-08
MEDIUM 0 SSA-223353 V1.0: Multiple Vulnerabilities in Nucleus RTOS based SIMOTICS CONNECT 400
SIEMENS-SSA-223353
SSA-223353 V1.0: Multiple Vulnerabilities in Nucleus RTOS based SIMOTICS CONNECT 400
2022-03-08
MEDIUM 0 SSA-252466 V1.0: Multiple Vulnerabilities in Climatix POL909 (AWM and AWB)
SIEMENS-SSA-252466
SSA-252466 V1.0: Multiple Vulnerabilities in Climatix POL909 (AWM and AWB)
2022-03-08
MEDIUM 0 SSA-337210 V1.0: Privilege Escalation Vulnerability in SINUMERIK MC
SIEMENS-SSA-337210
SSA-337210 V1.0: Privilege Escalation Vulnerability in SINUMERIK MC
2022-03-08
MEDIUM 0 SSA-389290 V1.0: Third-Party Component Vulnerabilities in SINEC INS
SIEMENS-SSA-389290
SSA-389290 V1.0: Third-Party Component Vulnerabilities in SINEC INS
2022-03-08
MEDIUM 0 SSA-406691 V1.0: Buffer Vulnerabilities in DHCP function of RUGGEDCOM ROX products
SIEMENS-SSA-406691
SSA-406691 V1.0: Buffer Vulnerabilities in DHCP function of RUGGEDCOM ROX products
2022-03-08
MEDIUM 0 SSA-415938 V1.0: Improper Access Control Vulnerability in Mendix
SIEMENS-SSA-415938
SSA-415938 V1.0: Improper Access Control Vulnerability in Mendix
2022-03-08
MEDIUM 0 SSA-594438 V1.0: Remote Code Execution and Denial-of-Service Vulnerability in multiple RUGGEDCOM ROX products
SIEMENS-SSA-594438
SSA-594438 V1.0: Remote Code Execution and Denial-of-Service Vulnerability in multiple RUGGEDCOM ROX products
2022-03-08
HIGH 7.8 SSA-501073 V1.1 (Last Update: 2022-03-08): Vulnerabilities in Controllers CPU 1518 MFP using Intel CPUs (November 2020)
SIEMENS-SSA-501073 · 2 CVEs
SSA-501073 V1.1 (Last Update: 2022-03-08): Vulnerabilities in Controllers CPU 1518 MFP using Intel CPUs (November 2020)
2022-03-08
MEDIUM 0 SSA-534763 V1.6 (Last Update: 2022-03-08): Special Register Buffer Data Sampling (SRBDS) aka Crosstalk in Industrial Products
SIEMENS-SSA-534763
SSA-534763 V1.6 (Last Update: 2022-03-08): Special Register Buffer Data Sampling (SRBDS) aka Crosstalk in Industrial Products
2022-03-08
HIGH 8.2 SSA-541018 V1.5 (Last Update: 2022-03-08): Embedded TCP/IP Stack Vulnerabilities (AMNESIA:33) in SENTRON PAC / 3VA Devices (Part 2)
SIEMENS-SSA-541018 · 3 CVEs
SSA-541018 V1.5 (Last Update: 2022-03-08): Embedded TCP/IP Stack Vulnerabilities (AMNESIA:33) in SENTRON PAC / 3VA Devices (Part 2)
2022-03-08
MEDIUM 0 SSA-669158 V1.1 (Last Update: 2022-03-08): DNS Client Vulnerabilities in SIMOTICS CONNECT 400
SIEMENS-SSA-669158
SSA-669158 V1.1 (Last Update: 2022-03-08): DNS Client Vulnerabilities in SIMOTICS CONNECT 400
2022-03-08
MEDIUM 0 SSA-703715 V1.1 (Last Update: 2022-03-08): Information Disclosure Vulnerability in Climatix POL909 (AWM and AWB)
SIEMENS-SSA-703715
SSA-703715 V1.1 (Last Update: 2022-03-08): Information Disclosure Vulnerability in Climatix POL909 (AWM and AWB)
2022-03-08
CRITICAL 9.8 SSA-455843 V1.7 (Last Update: 2022-02-17): WIBU Systems CodeMeter Runtime Vulnerabilities in Siemens Products
SIEMENS-SSA-455843 · 6 CVEs
SSA-455843 V1.7 (Last Update: 2022-02-17): WIBU Systems CodeMeter Runtime Vulnerabilities in Siemens Products
2022-02-17
MEDIUM 0 SSA-949188 V1.0: File Parsing Vulnerabilities in Simcenter Femap before V2022.1.1
SIEMENS-SSA-949188
SSA-949188 V1.0: File Parsing Vulnerabilities in Simcenter Femap before V2022.1.1
2022-02-17
HIGH 8.6 ICSA-19-225-03_Siemens SCALANCE X Switches (Update D)
ICSA-19-225-03 · 1 CVE
SCALANCE X-200RNA, SCALANCE X204RNA EEC (PRP) (6GK5204-0BS00-3LA3), SCALANCE X204RNA (PRP) (6GK5204-0BA00-2KB2) +4 more
2022-02-10
MEDIUM 0 SSA-609880 V1.0: File Parsing Vulnerabilities in Simcenter Femap before V2022.1
SIEMENS-SSA-609880
SSA-609880 V1.0: File Parsing Vulnerabilities in Simcenter Femap before V2022.1
2022-02-08
MEDIUM 0 SSA-654775 V1.0: Open Redirect Vulnerability in SINEMA Remote Connect Server
SIEMENS-SSA-654775
SSA-654775 V1.0: Open Redirect Vulnerability in SINEMA Remote Connect Server
2022-02-08
MEDIUM 0 SSA-831168 V1.0: Cross-Site Scripting Vulnerability in Spectrum Power 4
SIEMENS-SSA-831168
SSA-831168 V1.0: Cross-Site Scripting Vulnerability in Spectrum Power 4
2022-02-08
MEDIUM 0 SSA-100232 V1.4 (Last Update: 2022-02-08): Denial-of-Service vulnerability in SCALANCE X Switches
SIEMENS-SSA-100232
SSA-100232 V1.4 (Last Update: 2022-02-08): Denial-of-Service vulnerability in SCALANCE X Switches
2022-02-08
MEDIUM 0 SSA-211752 V1.1 (Last Update: 2022-02-08): Multiple NTP-Client Related Vulnerabilities in SIMATIC CP 443-1 OPC UA
SIEMENS-SSA-211752
SSA-211752 V1.1 (Last Update: 2022-02-08): Multiple NTP-Client Related Vulnerabilities in SIMATIC CP 443-1 OPC UA
2022-02-08
MEDIUM 0 SSA-316383 V1.1 (Last Update: 2022-02-08): NumberJack Vulnerability in LOGO! CMR and SIMATIC RTU 3000 devices
SIEMENS-SSA-316383
SSA-316383 V1.1 (Last Update: 2022-02-08): NumberJack Vulnerability in LOGO! CMR and SIMATIC RTU 3000 devices
2022-02-08
CRITICAL 9.1 SSA-675303 V1.3 (Last Update: 2022-02-08): WIBU Systems CodeMeter Runtime Vulnerabilities in Siemens Products
SIEMENS-SSA-675303 · 2 CVEs
SSA-675303 V1.3 (Last Update: 2022-02-08): WIBU Systems CodeMeter Runtime Vulnerabilities in Siemens Products
2022-02-08
MEDIUM 0 SSA-173318 V1.0: Unquoted Search Path Vulnerability in SICAM PQ Analyzer
SIEMENS-SSA-173318
SSA-173318 V1.0: Unquoted Search Path Vulnerability in SICAM PQ Analyzer
2022-01-11
MEDIUM 0 SSA-324998 V1.0: Multiple Vulnerabilities in SICAM A8000
SIEMENS-SSA-324998
SSA-324998 V1.0: Multiple Vulnerabilities in SICAM A8000
2022-01-11
MEDIUM 0 SSA-439673 V1.0: Information Disclosure Vulnerability in SIPROTEC 5 Devices
SIEMENS-SSA-439673
SSA-439673 V1.0: Information Disclosure Vulnerability in SIPROTEC 5 Devices
2022-01-11
MEDIUM 0 SSA-845392 V1.0: Multiple Vulnerabilities in Nucleus RTOS based Siemens Energy PLUSCONTROL 1st Gen Devices
SIEMENS-SSA-845392
SSA-845392 V1.0: Multiple Vulnerabilities in Nucleus RTOS based Siemens Energy PLUSCONTROL 1st Gen Devices
2022-01-11
MEDIUM 0 SSA-185699 V1.2 (Last Update: 2022-01-11): Out of Bounds Write Vulnerabilities (NAME:WRECK) in the DNS Module of Nucleus RTOS
SIEMENS-SSA-185699
SSA-185699 V1.2 (Last Update: 2022-01-11): Out of Bounds Write Vulnerabilities (NAME:WRECK) in the DNS Module of Nucleus RTOS
2022-01-11
MEDIUM 0 SSA-201384 V1.2 (Last Update: 2022-01-11): Predictable UDP Port Number Vulnerability (NAME:WRECK) in the DNS Module of Nucleus RTOS
SIEMENS-SSA-201384
SSA-201384 V1.2 (Last Update: 2022-01-11): Predictable UDP Port Number Vulnerability (NAME:WRECK) in the DNS Module of Nucleus RTOS
2022-01-11
MEDIUM 0 SSA-705111 V1.2 (Last Update: 2022-01-11): Multiple Vulnerabilities (NAME:WRECK) in the DNS Module of Nucleus RTOS
SIEMENS-SSA-705111
SSA-705111 V1.2 (Last Update: 2022-01-11): Multiple Vulnerabilities (NAME:WRECK) in the DNS Module of Nucleus RTOS
2022-01-11
MEDIUM 0 SSA-766247 V1.1 (Last Update: 2022-01-11): Authentication Vulnerability in SIMATIC Process Historian
SIEMENS-SSA-766247
SSA-766247 V1.1 (Last Update: 2022-01-11): Authentication Vulnerability in SIMATIC Process Historian
2022-01-11
MEDIUM 0 SSA-789208 V1.2 (Last Update: 2022-01-11): Multiple Vulnerabilities (INFRA:HALT) in Interniche IP-Stack based Low Voltage Devices
SIEMENS-SSA-789208
SSA-789208 V1.2 (Last Update: 2022-01-11): Multiple Vulnerabilities (INFRA:HALT) in Interniche IP-Stack based Low Voltage Devices
2022-01-11
MEDIUM 6.6 SSA-784507 V1.0: Apache Log4j Vulnerability (CVE-2021-44832) via JDBC Appender - Impact to Siemens Products
SIEMENS-SSA-784507 · 1 CVE
SSA-784507 V1.0: Apache Log4j Vulnerability (CVE-2021-44832) via JDBC Appender - Impact to Siemens Products
2021-12-28
LOW 3.7 SSA-479842 V1.1 (Last Update: 2021-12-23): Apache Log4j Vulnerabilities - Impact to Siemens Energy Sensformer / Sensgear (Platform, Basic and Advanced)
SIEMENS-SSA-479842 · 3 CVEs
SSA-479842 V1.1 (Last Update: 2021-12-23): Apache Log4j Vulnerabilities - Impact to Siemens Energy Sensformer / Sensgear (Platform, Basic and Advanced)
2021-12-23
LOW 3.7 SSA-397453 V1.0: Apache Log4j Vulnerabilities (Log4Shell, CVE-2021-44228, CVE-2021-45046) - Impact to Siemens Energy TraceAlertServerPLUS
SIEMENS-SSA-397453 · 2 CVEs
SSA-397453 V1.0: Apache Log4j Vulnerabilities (Log4Shell, CVE-2021-44228, CVE-2021-45046) - Impact to Siemens Energy TraceAlertServerPLUS
2021-12-20
MEDIUM 5.9 SSA-501673 V1.0: Apache Log4j Denial of Service Vulnerability (CVE-2021-45105) - Impact to Siemens Products
SIEMENS-SSA-501673 · 1 CVE
SSA-501673 V1.0: Apache Log4j Denial of Service Vulnerability (CVE-2021-45105) - Impact to Siemens Products
2021-12-19
CRITICAL 9.0 Siemens Questa and ModelSim
ICSA-21-350-13 · 1 CVE
ModelSim Simulation, Questa Simulation
2021-12-16
CRITICAL 10.0 SSA-714170 V1.0: Apache Log4j Vulnerabilities (Log4Shell, CVE-2021-44228, CVE-2021-45046) - Impact to SPPA-T3000
SIEMENS-SSA-714170 · 2 CVEs
SSA-714170 V1.0: Apache Log4j Vulnerabilities (Log4Shell, CVE-2021-44228, CVE-2021-45046) - Impact to SPPA-T3000
2021-12-16
MEDIUM 0 SSA-133772 V1.0: Zip Path Traversal Vulnerability in Teamcenter Active Workspace
SIEMENS-SSA-133772
SSA-133772 V1.0: Zip Path Traversal Vulnerability in Teamcenter Active Workspace
2021-12-14
MEDIUM 0 SSA-160202 V1.0: Multiple Access Control Vulnerabilities in SiPass Integrated
SIEMENS-SSA-160202
SSA-160202 V1.0: Multiple Access Control Vulnerabilities in SiPass Integrated
2021-12-14
MEDIUM 0 SSA-161331 V1.0: Scene File Parsing Vulnerability in Simcenter STAR-CCM+ Viewer before V2021.3.1
SIEMENS-SSA-161331
SSA-161331 V1.0: Scene File Parsing Vulnerability in Simcenter STAR-CCM+ Viewer before V2021.3.1
2021-12-14
MEDIUM 0 SSA-199605 V1.0: Arbitrary File Download Vulnerability in SIMATIC eaSie PCS 7 Skill Package
SIEMENS-SSA-199605
SSA-199605 V1.0: Arbitrary File Download Vulnerability in SIMATIC eaSie PCS 7 Skill Package
2021-12-14
MEDIUM 0 SSA-352143 V1.0: Multiple File Parsing Vulnerabilities in JTTK before V11.0.3.0 and JT Utilities before V13.0.3.0
SIEMENS-SSA-352143
SSA-352143 V1.0: Multiple File Parsing Vulnerabilities in JTTK before V11.0.3.0 and JT Utilities before V13.0.3.0
2021-12-14
MEDIUM 0 SSA-390195 V1.0: LibVNC Vulnerabilities in SIMATIC ITC Products
SIEMENS-SSA-390195
SSA-390195 V1.0: LibVNC Vulnerabilities in SIMATIC ITC Products
2021-12-14
MEDIUM 0 SSA-396621 V1.0: Multiple File Parsing Vulnerabilities in JTTK before V10.8.1.1 and JT Utilities before V12.8.1.1
SIEMENS-SSA-396621
SSA-396621 V1.0: Multiple File Parsing Vulnerabilities in JTTK before V10.8.1.1 and JT Utilities before V12.8.1.1
2021-12-14
MEDIUM 0 SSA-463116 V1.0: Multiple Access Control Vulnerabilities in Siveillance Identity before V1.6.284.0
SIEMENS-SSA-463116
SSA-463116 V1.0: Multiple Access Control Vulnerabilities in Siveillance Identity before V1.6.284.0
2021-12-14
MEDIUM 0 SSA-496292 V1.0: Remote Code Execution Vulnerability in POWER METER SICAM Q100
SIEMENS-SSA-496292
SSA-496292 V1.0: Remote Code Execution Vulnerability in POWER METER SICAM Q100
2021-12-14
MEDIUM 0 SSA-523250 V1.0: Improper Certificate Validation Vulnerability in SINUMERIK Edge
SIEMENS-SSA-523250
SSA-523250 V1.0: Improper Certificate Validation Vulnerability in SINUMERIK Edge
2021-12-14
MEDIUM 0 SSA-595101 V1.0: Multiple File Parsing Vulnerabilities in JT2Go and Teamcenter Visualization before V13.2.0.5
SIEMENS-SSA-595101
SSA-595101 V1.0: Multiple File Parsing Vulnerabilities in JT2Go and Teamcenter Visualization before V13.2.0.5
2021-12-14
MEDIUM 0 SSA-802578 V1.0: Multiple File Parsing Vulnerabilities in JTTK before V11.1.1.0 and JT Utilities before V13.1.1.0
SIEMENS-SSA-802578
SSA-802578 V1.0: Multiple File Parsing Vulnerabilities in JTTK before V11.1.1.0 and JT Utilities before V13.1.1.0
2021-12-14
MEDIUM 0 SSA-044112 V1.1 (Last Update: 2021-12-14): Multiple Vulnerabilities (NUCLEUS:13) in the TCP/IP Stack of Nucleus RTOS
SIEMENS-SSA-044112
SSA-044112 V1.1 (Last Update: 2021-12-14): Multiple Vulnerabilities (NUCLEUS:13) in the TCP/IP Stack of Nucleus RTOS
2021-12-14
MEDIUM 0 SSA-145157 V1.0: Multiple Vulnerabilities in SIMATIC RTLS Locating Manager before V2.12
SIEMENS-SSA-145157
SSA-145157 V1.0: Multiple Vulnerabilities in SIMATIC RTLS Locating Manager before V2.12
2021-11-09
MEDIUM 0 SSA-328042 V1.0: File Parsing Vulnerabilities in OBJ Translator in NX
SIEMENS-SSA-328042
SSA-328042 V1.0: File Parsing Vulnerabilities in OBJ Translator in NX
2021-11-09
MEDIUM 0 SSA-338732 V1.0: Information Disclosure Vulnerability in Mendix
SIEMENS-SSA-338732
SSA-338732 V1.0: Information Disclosure Vulnerability in Mendix
2021-11-09
MEDIUM 0 SSA-537983 V1.0: Local Code Execution Vulnerability in SENTRON powermanager V3
SIEMENS-SSA-537983
SSA-537983 V1.0: Local Code Execution Vulnerability in SENTRON powermanager V3
2021-11-09
MEDIUM 0 SSA-740908 V1.0: File Parsing Vulnerabilities in JT Translator in NX
SIEMENS-SSA-740908
SSA-740908 V1.0: File Parsing Vulnerabilities in JT Translator in NX
2021-11-09
MEDIUM 0 SSA-755517 V1.0: Path Traversal Vulnerability in Siveillance Video DLNA Server
SIEMENS-SSA-755517
SSA-755517 V1.0: Path Traversal Vulnerability in Siveillance Video DLNA Server
2021-11-09
MEDIUM 0 SSA-779699 V1.0: Two Incorrect Authorization Vulnerabilities in Mendix
SIEMENS-SSA-779699
SSA-779699 V1.0: Two Incorrect Authorization Vulnerabilities in Mendix
2021-11-09
MEDIUM 0 SSA-163251 V1.0: Multiple Vulnerabilities in SINEC NMS
SIEMENS-SSA-163251
SSA-163251 V1.0: Multiple Vulnerabilities in SINEC NMS
2021-10-12
MEDIUM 0 SSA-173565 V1.0: Denial-of-Service Vulnerability in RUGGEDCOM ROX Devices
SIEMENS-SSA-173565
SSA-173565 V1.0: Denial-of-Service Vulnerability in RUGGEDCOM ROX Devices
2021-10-12
MEDIUM 0 SSA-178380 V1.0: Denial-of-Service Vulnerability in SINUMERIK Controllers
SIEMENS-SSA-178380
SSA-178380 V1.0: Denial-of-Service Vulnerability in SINUMERIK Controllers
2021-10-12
MEDIUM 0 SSA-150692 V1.1 (Last Update: 2021-10-12): Multiple Vulnerabilities in RUGGEDCOM ROX
SIEMENS-SSA-150692
SSA-150692 V1.1 (Last Update: 2021-10-12): Multiple Vulnerabilities in RUGGEDCOM ROX
2021-10-12
MEDIUM 0 SSA-500748 V1.1 (Last Update: 2021-10-12): Denial-of-Service Vulnerabilities in SIPROTEC 5 Devices
SIEMENS-SSA-500748
SSA-500748 V1.1 (Last Update: 2021-10-12): Denial-of-Service Vulnerabilities in SIPROTEC 5 Devices
2021-10-12
MEDIUM 0 SSA-538778 V1.2 (Last Update: 2021-10-12): SmartVNC Vulnerabilities in SIMATIC HMI/WinCC Products
SIEMENS-SSA-538778
SSA-538778 V1.2 (Last Update: 2021-10-12): SmartVNC Vulnerabilities in SIMATIC HMI/WinCC Products
2021-10-12
MEDIUM 0 SSA-723417 V1.2 (Last Update: 2021-10-12): Multiple Vulnerabilities in SCALANCE W1750D
SIEMENS-SSA-723417
SSA-723417 V1.2 (Last Update: 2021-10-12): Multiple Vulnerabilities in SCALANCE W1750D
2021-10-12
MEDIUM 0 SSA-847986 V1.1 (Last Update: 2021-10-12): Denial-of-Service Vulnerabilities in SIPROTEC 5 relays
SIEMENS-SSA-847986
SSA-847986 V1.1 (Last Update: 2021-10-12): Denial-of-Service Vulnerabilities in SIPROTEC 5 relays
2021-10-12
MEDIUM 0 SSA-728618 V1.0: Multiple Vulnerabilities in Solid Edge before SE2021MP8
SIEMENS-SSA-728618
SSA-728618 V1.0: Multiple Vulnerabilities in Solid Edge before SE2021MP8
2021-09-28
HIGH 8.1 Siemens SINAMICS PERFECT HARMONY GH180 (Update A)
ICSA-21-194-13 · 1 CVE
SINAMICS PERFECT HARMONY GH180 Drives, SINAMICS PERFECT HARMONY model 6SR4, SINAMICS PERFECT HARMONY model 6SR5
2021-09-14
HIGH 7.5 Siemens LOGO! CMR and SIMATIC RTU 3000
ICSA-21-257-20 · 2 CVEs
LOGO! CMR2040, SIMATIC RTU 3000 family, LOGO! CMR2020
2021-09-14
CRITICAL 9.8 Siemens Industrial Edge
ICSA-21-257-21 · 1 CVE
Industrial Edge Management
2021-09-14
MEDIUM 0 SSA-109294 V1.0: Scene File Parsing Vulnerability in Simcenter STAR-CCM+ Viewer
SIEMENS-SSA-109294
SSA-109294 V1.0: Scene File Parsing Vulnerability in Simcenter STAR-CCM+ Viewer
2021-09-14
MEDIUM 0 SSA-208530 V1.0: File parsing vulnerabilities in IFC adapter in NX
SIEMENS-SSA-208530
SSA-208530 V1.0: File parsing vulnerabilities in IFC adapter in NX
2021-09-14
MEDIUM 0 SSA-288459 V1.0: Heap Overflow Vulnerability in RFID terminals
SIEMENS-SSA-288459
SSA-288459 V1.0: Heap Overflow Vulnerability in RFID terminals
2021-09-14
MEDIUM 0 SSA-330339 V1.0: Web Vulnerabilities in SINEC NMS
SIEMENS-SSA-330339
SSA-330339 V1.0: Web Vulnerabilities in SINEC NMS
2021-09-14
MEDIUM 0 SSA-334944 V1.0: Vulnerability in SINEMA Remote Connect Server
SIEMENS-SSA-334944
SSA-334944 V1.0: Vulnerability in SINEMA Remote Connect Server
2021-09-14
MEDIUM 0 SSA-413407 V1.0: Path Traversal Vulnerability in Teamcenter Active Workspace
SIEMENS-SSA-413407
SSA-413407 V1.0: Path Traversal Vulnerability in Teamcenter Active Workspace
2021-09-14
MEDIUM 0 SSA-453715 V1.0: Deserialization Vulnerability in CCOM Communication Component of Desigo CC Family
SIEMENS-SSA-453715
SSA-453715 V1.0: Deserialization Vulnerability in CCOM Communication Component of Desigo CC Family
2021-09-14
MEDIUM 0 SSA-535380 V1.0: Command Injection Vulnerability in Siveillance OIS Affecting Several Building Management Systems
SIEMENS-SSA-535380
SSA-535380 V1.0: Command Injection Vulnerability in Siveillance OIS Affecting Several Building Management Systems
2021-09-14
MEDIUM 0 SSA-692317 V1.0: Authorization Bypass Vulnerability in Industrial Edge
SIEMENS-SSA-692317
SSA-692317 V1.0: Authorization Bypass Vulnerability in Industrial Edge
2021-09-14
MEDIUM 0 SSA-835377 V1.0: Missing Authentication Vulnerability in SINEMA Server
SIEMENS-SSA-835377
SSA-835377 V1.0: Missing Authentication Vulnerability in SINEMA Server
2021-09-14
MEDIUM 0 SSA-944498 V1.0: Buffer Overflow Vulnerability in Web Server of APOGEE and TALON Automation Devices
SIEMENS-SSA-944498
SSA-944498 V1.0: Buffer Overflow Vulnerability in Web Server of APOGEE and TALON Automation Devices
2021-09-14
MEDIUM 0 SSA-987403 V1.0: Multiple Vulnerabilities in Teamcenter
SIEMENS-SSA-987403
SSA-987403 V1.0: Multiple Vulnerabilities in Teamcenter
2021-09-14
MEDIUM 0 SSA-997732 V1.0: Modfem File Parsing Vulnerability in Simcenter Femap before V2021.2
SIEMENS-SSA-997732
SSA-997732 V1.0: Modfem File Parsing Vulnerability in Simcenter Femap before V2021.2
2021-09-14
MEDIUM 0 SSA-139628 V1.2 (Last Update: 2021-09-14): Vulnerabilities in Web Server for Scalance X Products
SIEMENS-SSA-139628
SSA-139628 V1.2 (Last Update: 2021-09-14): Vulnerabilities in Web Server for Scalance X Products
2021-09-14
MEDIUM 0 SSA-187092 V1.1 (Last Update: 2021-09-14): Several Buffer-Overflow Vulnerabilities in Web Server of SCALANCE X-200
SIEMENS-SSA-187092
SSA-187092 V1.1 (Last Update: 2021-09-14): Several Buffer-Overflow Vulnerabilities in Web Server of SCALANCE X-200
2021-09-14
MEDIUM 0 SSA-428051 V1.1 (Last Update: 2021-09-14): Privilege Escalation Vulnerability in TIA Administrator
SIEMENS-SSA-428051
SSA-428051 V1.1 (Last Update: 2021-09-14): Privilege Escalation Vulnerability in TIA Administrator
2021-09-14
MEDIUM 0 SSA-434534 V1.1 (Last Update: 2021-09-14): Memory Protection Bypass Vulnerability in SIMATIC S7-1200 and S7-1500 CPU Families
SIEMENS-SSA-434534
SSA-434534 V1.1 (Last Update: 2021-09-14): Memory Protection Bypass Vulnerability in SIMATIC S7-1200 and S7-1500 CPU Families
2021-09-14
MEDIUM 0 SSA-434535 V1.1 (Last Update: 2021-09-14): Memory Protection Bypass Vulnerability in SINAMICS PERFECT HARMONY GH180 Drives
SIEMENS-SSA-434535
SSA-434535 V1.1 (Last Update: 2021-09-14): Memory Protection Bypass Vulnerability in SINAMICS PERFECT HARMONY GH180 Drives
2021-09-14
MEDIUM 0 SSA-434536 V1.1 (Last Update: 2021-09-14): Memory Protection Bypass Vulnerability in SINUMERIK ONE and SINUMERIK MC
SIEMENS-SSA-434536
SSA-434536 V1.1 (Last Update: 2021-09-14): Memory Protection Bypass Vulnerability in SINUMERIK ONE and SINUMERIK MC
2021-09-14
MEDIUM 0 SSA-756744 V1.1 (Last Update: 2021-09-14): OS Command Injection Vulnerability in SINEC NMS
SIEMENS-SSA-756744
SSA-756744 V1.1 (Last Update: 2021-09-14): OS Command Injection Vulnerability in SINEC NMS
2021-09-14
MEDIUM 0 SSA-830194 V1.1 (Last Update: 2021-09-14): Missing Authentication Vulnerability in S7-1200 Devices
SIEMENS-SSA-830194
SSA-830194 V1.1 (Last Update: 2021-09-14): Missing Authentication Vulnerability in S7-1200 Devices
2021-09-14
MEDIUM 0 SSA-865327 V1.1 (Last Update: 2021-09-14): Incorrect Authorization Vulnerability in Industrial Products
SIEMENS-SSA-865327
SSA-865327 V1.1 (Last Update: 2021-09-14): Incorrect Authorization Vulnerability in Industrial Products
2021-09-14
MEDIUM 0 SSA-936080 V1.2 (Last Update: 2021-09-14): Multiple Vulnerabilities in Third-Party Component libcurl
SIEMENS-SSA-936080
SSA-936080 V1.2 (Last Update: 2021-09-14): Multiple Vulnerabilities in Third-Party Component libcurl
2021-09-14
MEDIUM 0 SSA-938030 V1.1 (Last Update: 2021-09-14): DGN and PAR File Parsing Vulnerabilities in JT2Go and Teamcenter Visualization before V13.2.0.2
SIEMENS-SSA-938030
SSA-938030 V1.1 (Last Update: 2021-09-14): DGN and PAR File Parsing Vulnerabilities in JT2Go and Teamcenter Visualization before V13.2.0.2
2021-09-14
MEDIUM 0 SSA-816035 V1.0: Code Execution Vulnerability in SINEMA Remote Connect Client
SIEMENS-SSA-816035
SSA-816035 V1.0: Code Execution Vulnerability in SINEMA Remote Connect Client
2021-08-19
HIGH 8.1 Siemens SINAMICS Medium Voltage Products Telnet (Update A)
ICSA-21-131-13 · 1 CVE
SINAMICS GH150, SINAMICS SH150, SINAMICS GL150 (with option X30) +5 more
2021-08-10
HIGH 7.8 ICSA-21-222-08_Siemens Solid Edge
ICSA-21-222-08 · 3 CVEs
Solid Edge SE2021
2021-08-10
MEDIUM 0 SSA-158827 V1.0: Denial-of-Service Vulnerability in Automation License Manager
SIEMENS-SSA-158827
SSA-158827 V1.0: Denial-of-Service Vulnerability in Automation License Manager
2021-08-10
MEDIUM 0 SSA-365397 V1.0: Multiple File Parsing Vulnerabilities in JT2Go and Teamcenter Visualization before V13.2.0.1
SIEMENS-SSA-365397
SSA-365397 V1.0: Multiple File Parsing Vulnerabilities in JT2Go and Teamcenter Visualization before V13.2.0.1
2021-08-10
MEDIUM 0 SSA-553445 V1.0: DNS "Name:Wreck" Vulnerabilities in Multiple Siemens Energy AGT and SGT solutions
SIEMENS-SSA-553445
SSA-553445 V1.0: DNS "Name:Wreck" Vulnerabilities in Multiple Siemens Energy AGT and SGT solutions
2021-08-10
MEDIUM 0 SSA-818688 V1.0: Multiple Vulnerabilities in Solid Edge before SE2021MP7
SIEMENS-SSA-818688
SSA-818688 V1.0: Multiple Vulnerabilities in Solid Edge before SE2021MP7
2021-08-10
MEDIUM 0 SSA-286838 V1.1 (Last Update: 2021-08-10): Multiple Vulnerabilities in SINAMICS Medium Voltage Products
SIEMENS-SSA-286838
SSA-286838 V1.1 (Last Update: 2021-08-10): Multiple Vulnerabilities in SINAMICS Medium Voltage Products
2021-08-10
MEDIUM 0 SSA-752103 V1.1 (Last Update: 2021-08-10): Telnet Authentication Vulnerability in SINAMICS Medium Voltage Products
SIEMENS-SSA-752103
SSA-752103 V1.1 (Last Update: 2021-08-10): Telnet Authentication Vulnerability in SINAMICS Medium Voltage Products
2021-08-10
HIGH 7.8 ICSA-21-194-15_Siemens JT2Go and Teamcenter Visualization
ICSA-21-194-15 · 43 CVEs
Teamcenter Visualization, JT2Go
2021-07-13
MEDIUM 0 SSA-173615 V1.0: Multiple PAR and ASM File Parsing Vulnerabilities in Solid Edge
SIEMENS-SSA-173615
SSA-173615 V1.0: Multiple PAR and ASM File Parsing Vulnerabilities in Solid Edge
2021-07-13
MEDIUM 0 SSA-209268 V1.0: Multiple JT File Parsing Vulnerabilities in JT Utilities before V13.0.2.0
SIEMENS-SSA-209268
SSA-209268 V1.0: Multiple JT File Parsing Vulnerabilities in JT Utilities before V13.0.2.0
2021-07-13
MEDIUM 0 SSA-352521 V1.0: Access Check Bypass Vulnerability in Mendix
SIEMENS-SSA-352521
SSA-352521 V1.0: Access Check Bypass Vulnerability in Mendix
2021-07-13
MEDIUM 0 SSA-448291 V1.0: Denial-of-Service Vulnerability in ARP Protocol of RWG Universal Controllers
SIEMENS-SSA-448291
SSA-448291 V1.0: Denial-of-Service Vulnerability in ARP Protocol of RWG Universal Controllers
2021-07-13
MEDIUM 0 SSA-483182 V1.0: Multiple File Parsing Vulnerabilities in JT2Go and Teamcenter Visualization before V13.2
SIEMENS-SSA-483182
SSA-483182 V1.0: Multiple File Parsing Vulnerabilities in JT2Go and Teamcenter Visualization before V13.2
2021-07-13
MEDIUM 0 SSA-622535 V1.0: Multiple Vulnerabilities in Teamcenter Active Workspace
SIEMENS-SSA-622535
SSA-622535 V1.0: Multiple Vulnerabilities in Teamcenter Active Workspace
2021-07-13
MEDIUM 0 SSA-641963 V1.0: Remote Code Execution Vulnerability in Multiple SIMATIC Software Products
SIEMENS-SSA-641963
SSA-641963 V1.0: Remote Code Execution Vulnerability in Multiple SIMATIC Software Products
2021-07-13
MEDIUM 0 SSA-729965 V1.0: TLS Certificate Validation Vulnerability in SINUMERIK Integrate Operate Client
SIEMENS-SSA-729965
SSA-729965 V1.0: TLS Certificate Validation Vulnerability in SINUMERIK Integrate Operate Client
2021-07-13
MEDIUM 0 SSA-203306 V1.5 (Last Update: 2021-07-13): Password Vulnerabilities in SIPROTEC 4 and SIPROTEC Compact Relay Families
SIEMENS-SSA-203306
SSA-203306 V1.5 (Last Update: 2021-07-13): Password Vulnerabilities in SIPROTEC 4 and SIPROTEC Compact Relay Families
2021-07-13
MEDIUM 0 SSA-133038 V1.0: Multiple Modfem File Parsing Vulnerabilities in Simcenter Femap
SIEMENS-SSA-133038
SSA-133038 V1.0: Multiple Modfem File Parsing Vulnerabilities in Simcenter Femap
2021-06-08
MEDIUM 0 SSA-200951 V1.0: Multiple Vulnerabilities in Third-Party Component libcurl of TIM Devices
SIEMENS-SSA-200951
SSA-200951 V1.0: Multiple Vulnerabilities in Third-Party Component libcurl of TIM Devices
2021-06-08
MEDIUM 0 SSA-208356 V1.0: DFT File Parsing Vulnerabilities in Solid Edge
SIEMENS-SSA-208356
SSA-208356 V1.0: DFT File Parsing Vulnerabilities in Solid Edge
2021-06-08
MEDIUM 0 SSA-419820 V1.0: Denial-of-Service Vulnerability in TIM 1531 IRC
SIEMENS-SSA-419820
SSA-419820 V1.0: Denial-of-Service Vulnerability in TIM 1531 IRC
2021-06-08
MEDIUM 0 SSA-522654 V1.0: Privilege Escalation Vulnerability in Mendix SAML Module
SIEMENS-SSA-522654
SSA-522654 V1.0: Privilege Escalation Vulnerability in Mendix SAML Module
2021-06-08
MEDIUM 0 SSA-645530 V1.0: TIFF File Parsing Vulnerability in JT2Go and Teamcenter Visualization before V13.1.0.3
SIEMENS-SSA-645530
SSA-645530 V1.0: TIFF File Parsing Vulnerability in JT2Go and Teamcenter Visualization before V13.1.0.3
2021-06-08
MEDIUM 0 SSA-542525 V1.3 (Last Update: 2021-06-08): Authentication Vulnerabilities in SIMATIC HMI Products
SIEMENS-SSA-542525
SSA-542525 V1.3 (Last Update: 2021-06-08): Authentication Vulnerabilities in SIMATIC HMI Products
2021-06-08
MEDIUM 0 SSA-574442 V1.1 (Last Update: 2021-06-08): Multiple PAR and DFT File Parsing Vulnerabilities in Solid Edge
SIEMENS-SSA-574442
SSA-574442 V1.1 (Last Update: 2021-06-08): Multiple PAR and DFT File Parsing Vulnerabilities in Solid Edge
2021-06-08
HIGH 7.8 Siemens JT2Go and Teamcenter Visualization (Update B)
ICSA-21-012-03 · 14 CVEs
JT2Go, Teamcenter Visualization, JT2Go +1 more
2021-05-27
HIGH 7.8 Siemens JT2Go and Teamcenter Visualization
ICSA-21-147-04 · 5 CVEs
JT2Go, Teamcenter Visualization
2021-05-27
MEDIUM 0 SSA-119468 V1.0: Luxion KeyShot Vulnerabilities in Solid Edge
SIEMENS-SSA-119468
SSA-119468 V1.0: Luxion KeyShot Vulnerabilities in Solid Edge
2021-05-25
HIGH 8.8 SSA-622830 V1.2 (Last Update: 2021-05-17): Multiple File Parsing Vulnerabilities in JT2Go and Teamcenter Visualization before V13.1.0
SIEMENS-SSA-622830 · 4 CVEs
SSA-622830 V1.2 (Last Update: 2021-05-17): Multiple File Parsing Vulnerabilities in JT2Go and Teamcenter Visualization before V13.1.0
2021-05-17
HIGH 8.8 SSA-663999 V1.1 (Last Update: 2021-05-17): Multiple File Parsing Vulnerabilities in JT2Go and Teamcenter Visualization before V13.1.0.1
SIEMENS-SSA-663999 · 7 CVEs
SSA-663999 V1.1 (Last Update: 2021-05-17): Multiple File Parsing Vulnerabilities in JT2Go and Teamcenter Visualization before V13.1.0.1
2021-05-17
MEDIUM 0 SSA-695540 V1.0: ASM and PAR File Parsing Vulnerabilities in JT2Go and Teamcenter Visualization before V13.1.0.2
SIEMENS-SSA-695540
SSA-695540 V1.0: ASM and PAR File Parsing Vulnerabilities in JT2Go and Teamcenter Visualization before V13.1.0.2
2021-05-17
MEDIUM 4.4 Siemens SIMARIS Configuration (Update A)
ICSA-21-040-08 · 1 CVE
SIMARIS configuration
2021-05-11
MEDIUM 0 SSA-116379 V1.0: Denial-of-Service Vulnerability in OSPF Packet Handling of SCALANCE XM-400 and XR-500 Devices
SIEMENS-SSA-116379
SSA-116379 V1.0: Denial-of-Service Vulnerability in OSPF Packet Handling of SCALANCE XM-400 and XR-500 Devices
2021-05-11
MEDIUM 0 SSA-594364 V1.0: Denial-of-Service Vulnerability in SNMP Implementation of WinCC Runtime
SIEMENS-SSA-594364
SSA-594364 V1.0: Denial-of-Service Vulnerability in SNMP Implementation of WinCC Runtime
2021-05-11
MEDIUM 0 SSA-676775 V1.0: Denial-of-Service Vulnerability in SIMATIC NET CP 343-1 Devices
SIEMENS-SSA-676775
SSA-676775 V1.0: Denial-of-Service Vulnerability in SIMATIC NET CP 343-1 Devices
2021-05-11
MEDIUM 0 SSA-854248 V1.0: Information Disclosure Vulnerability in Mendix Excel Importer Module
SIEMENS-SSA-854248
SSA-854248 V1.0: Information Disclosure Vulnerability in Mendix Excel Importer Module
2021-05-11
MEDIUM 0 SSA-919955 V1.0: Information Disclosure Vulnerability in Mendix Database Replication Module
SIEMENS-SSA-919955
SSA-919955 V1.0: Information Disclosure Vulnerability in Mendix Database Replication Module
2021-05-11
MEDIUM 0 SSA-940818 V1.0: UltraVNC Vulnerabilities in SIMATIC HMIs/WinCC Products
SIEMENS-SSA-940818
SSA-940818 V1.0: UltraVNC Vulnerabilities in SIMATIC HMIs/WinCC Products
2021-05-11
MEDIUM 0 SSA-983548 V1.0: Multiple SPP File Parsing Vulnerabilities in Tecnomatix Plant Simulation
SIEMENS-SSA-983548
SSA-983548 V1.0: Multiple SPP File Parsing Vulnerabilities in Tecnomatix Plant Simulation
2021-05-11
MEDIUM 0 SSA-478893 V1.1 (Last Update: 2021-05-11): TightVNC Vulnerabilities in Industrial Products (Revoked)
SIEMENS-SSA-478893
SSA-478893 V1.1 (Last Update: 2021-05-11): TightVNC Vulnerabilities in Industrial Products (Revoked)
2021-05-11
HIGH 8.1 SSA-646763 V1.3 (Last Update: 2021-05-11): DNSpooq - Dnsmasq Vulnerabilities in SCALANCE and RUGGEDCOM Devices
SIEMENS-SSA-646763 · 4 CVEs
SSA-646763 V1.3 (Last Update: 2021-05-11): DNSpooq - Dnsmasq Vulnerabilities in SCALANCE and RUGGEDCOM Devices
2021-05-11
MEDIUM 0 SSA-794542 V1.1 (Last Update: 2021-05-11): Insecure Folder Permissions in SIMARIS Configuration
SIEMENS-SSA-794542
SSA-794542 V1.1 (Last Update: 2021-05-11): Insecure Folder Permissions in SIMARIS Configuration
2021-05-11
MEDIUM 0 SSA-875726 V1.0: Privilege Escalation Vulnerability in Mendix
SIEMENS-SSA-875726
SSA-875726 V1.0: Privilege Escalation Vulnerability in Mendix
2021-04-14
CRITICAL 9.8 Siemens and PKE SiNVR, SiVMS Video Server (Update A)
ICSA-19-344-02 · 2 CVEs
SiNVR/SiVMS Video Server, SiNVR 3 Central Control Server (CCS), SiNVR/SiVMS Video Server
2021-04-13
CRITICAL 9.9 Siemens and PKE Control Center Server
ICSA-21-103-10 · 12 CVEs
Control Center Server (CCS), Control Center Server (CCS)
2021-04-13
MEDIUM 0 SSA-163226 V1.0: CELL File Parsing Vulnerability in Tecnomatix RobotExpert
SIEMENS-SSA-163226
SSA-163226 V1.0: CELL File Parsing Vulnerability in Tecnomatix RobotExpert
2021-04-13
MEDIUM 0 SSA-292794 V1.0: Multiple Denial-of-Service Vulnerabilities in SINEMA Remote Connect Server
SIEMENS-SSA-292794
SSA-292794 V1.0: Multiple Denial-of-Service Vulnerabilities in SINEMA Remote Connect Server
2021-04-13
MEDIUM 0 SSA-788287 V1.0: Disclosure of Private Data
SIEMENS-SSA-788287
SSA-788287 V1.0: Disclosure of Private Data
2021-04-13
MEDIUM 0 SSA-853866 V1.0: User Credentials Disclosure Vulnerability in Siveillance Video Open Network Bridge (ONVIF)
SIEMENS-SSA-853866
SSA-853866 V1.0: User Credentials Disclosure Vulnerability in Siveillance Video Open Network Bridge (ONVIF)
2021-04-13
MEDIUM 0 SSA-296266 V1.1 (Last Update: 2021-04-13): Denial-of-Service Vulnerability in SCALANCE and RUGGEDCOM Devices
SIEMENS-SSA-296266
SSA-296266 V1.1 (Last Update: 2021-04-13): Denial-of-Service Vulnerability in SCALANCE and RUGGEDCOM Devices
2021-04-13
HIGH 7.5 SSA-541017 V1.3 (Last Update: 2021-04-13): Embedded TCP/IP Stack Vulnerabilities (AMNESIA:33) in SIRIUS 3RW5 Modbus TCP and SENTRON PAC / 3VA Devices
SIEMENS-SSA-541017 · 1 CVE
SSA-541017 V1.3 (Last Update: 2021-04-13): Embedded TCP/IP Stack Vulnerabilities (AMNESIA:33) in SIRIUS 3RW5 Modbus TCP and SENTRON PAC / 3VA Devices
2021-04-13
MEDIUM 0 SSA-591405 V1.2 (Last Update: 2021-04-13): Web Vulnerabilities in SCALANCE S-600 Family
SIEMENS-SSA-591405
SSA-591405 V1.2 (Last Update: 2021-04-13): Web Vulnerabilities in SCALANCE S-600 Family
2021-04-13
MEDIUM 0 SSA-689942 V1.3 (Last Update: 2021-04-13): Denial-of-Service and DLL Hijacking Vulnerabilities in Multiple SIMATIC Software Products
SIEMENS-SSA-689942
SSA-689942 V1.3 (Last Update: 2021-04-13): Denial-of-Service and DLL Hijacking Vulnerabilities in Multiple SIMATIC Software Products
2021-04-13
MEDIUM 0 SSA-715184 V1.1 (Last Update: 2021-04-13): Multiple File Parsing Vulnerabilities in Solid Edge
SIEMENS-SSA-715184
SSA-715184 V1.1 (Last Update: 2021-04-13): Multiple File Parsing Vulnerabilities in Solid Edge
2021-04-13
MEDIUM 0 SSA-979775 V1.1 (Last Update: 2021-04-13): Stack Overflow Vulnerability in SCALANCE and RUGGEDCOM Devices
SIEMENS-SSA-979775
SSA-979775 V1.1 (Last Update: 2021-04-13): Stack Overflow Vulnerability in SCALANCE and RUGGEDCOM Devices
2021-04-13
HIGH 8.3 Siemens SINEMA Remote Connect (Update A)
ICSA-19-099-04 · 5 CVEs
SINEMA Remote Connect Client, SINEMA Remote Connect Server
2021-03-09
HIGH 7.1 Siemens SIMATIC Ident MV440 Family (Update A)
ICSA-19-162-02 · 2 CVEs
SIMATIC MV400 family
2021-03-09
MEDIUM 5.5 Siemens SIMATIC S7-PLCSIM
ICSA-21-068-01 · 3 CVEs
SIMATIC S7-PLCSIM V5.4
2021-03-09
HIGH 8.8 Siemens SINEMA Remote Connect Server
ICSA-21-068-04 · 2 CVEs
SINEMA Remote Connect Server
2021-03-09
HIGH 7.5 Siemens TCP Stack of SIMATIC MV400
ICSA-21-068-07 · 2 CVEs
SIMATIC MV400 family
2021-03-09
MEDIUM 6.5 Siemens Energy PLUSCONTROL 1st Gen
ICSA-21-068-08 · 1 CVE
PLUSCONTROL 1st Gen
2021-03-09
HIGH 8.3 Siemens SCALANCE and SIMATIC libcurl (Update B)
ICSA-21-068-10 · 5 CVEs
SINEMA Remote Connect Client, SINEMA Remote Connect Server
2021-03-09
MEDIUM 0 SSA-231216 V1.0: Luxion KeyShot Vulnerabilities in Solid Edge
SIEMENS-SSA-231216
SSA-231216 V1.0: Luxion KeyShot Vulnerabilities in Solid Edge
2021-03-09
MEDIUM 0 SSA-256092 V1.0: Multiple local Denial-of-Service Vulnerabilities in SIMATIC S7-PLCSIM V5.4
SIEMENS-SSA-256092
SSA-256092 V1.0: Multiple local Denial-of-Service Vulnerabilities in SIMATIC S7-PLCSIM V5.4
2021-03-09
MEDIUM 0 SSA-344238 V1.0: TCP Session Hijacking Vulnerability in Siemens Energy PLUSCONTROL 1st Gen Devices
SIEMENS-SSA-344238
SSA-344238 V1.0: TCP Session Hijacking Vulnerability in Siemens Energy PLUSCONTROL 1st Gen Devices
2021-03-09
MEDIUM 0 SSA-599268 V1.0: Several Vulnerabilities in TCP Stack of SIMATIC MV400 family
SIEMENS-SSA-599268
SSA-599268 V1.0: Several Vulnerabilities in TCP Stack of SIMATIC MV400 family
2021-03-09
MEDIUM 0 SSA-731317 V1.0: Multiple vulnerabilities in SINEMA Remote Connect Web Based Management
SIEMENS-SSA-731317
SSA-731317 V1.0: Multiple vulnerabilities in SINEMA Remote Connect Web Based Management
2021-03-09
MEDIUM 0 SSA-917115 V1.0: Mendix Forgot Password Appstore module
SIEMENS-SSA-917115
SSA-917115 V1.0: Mendix Forgot Password Appstore module
2021-03-09
MEDIUM 0 SSA-398519 V1.6 (Last Update: 2021-03-09): Vulnerabilities in Intel CPUs (November 2019)
SIEMENS-SSA-398519
SSA-398519 V1.6 (Last Update: 2021-03-09): Vulnerabilities in Intel CPUs (November 2019)
2021-03-09
MEDIUM 0 SSA-436177 V1.1 (Last Update: 2021-03-09): Multiple Vulnerabilities in SINEMA Remote Connect
SIEMENS-SSA-436177
SSA-436177 V1.1 (Last Update: 2021-03-09): Multiple Vulnerabilities in SINEMA Remote Connect
2021-03-09
MEDIUM 0 SSA-816980 V1.1 (Last Update: 2021-03-09): Multiple Web Vulnerabilities in SIMATIC MV400 Family
SIEMENS-SSA-816980
SSA-816980 V1.1 (Last Update: 2021-03-09): Multiple Web Vulnerabilities in SIMATIC MV400 Family
2021-03-09
HIGH 7.1 Siemens SCALANCE X (Update B)
ICSA-19-162-04 · 1 CVE
SCALANCE X-200 switch family (incl.'SIPLUS NET variants), SCALANCE X-200IRT switch family (incl.'SIPLUS NET variants), SCALANCE X-300 switch family (incl.'X408 and SIPLUS NET variants) +1 more
2021-02-09
MEDIUM 6.1 Siemens Climatix (Update A)
ICSA-20-105-04 · 2 CVEs
Climatix POL908 (BACnet/IP module), Climatix POL909 (AWM module)
2021-02-09
HIGH 8.8 Siemens SINEMA Server & SINEC NMS
ICSA-21-040-03 · 1 CVE
SINEC NMS, SINEMA Server
2021-02-09
CRITICAL 9.8 Siemens RUGGEDCOM ROX II
ICSA-21-040-04 · 6 CVEs
RUGGEDCOM ROX MX5000, RUGGEDCOM ROX RX1400, RUGGEDCOM ROX RX1500 +5 more
2021-02-09
MEDIUM 4.3 Siemens SCALANCE W780 and W740
ICSA-21-040-07 · 1 CVE
SCALANCE W780 and W740 (IEEE 802.11n) family
2021-02-09
MEDIUM 6.2 SIMATIC WinCC Graphics Designer
ICSA-21-040-09 · 1 CVE
SIMATIC PCS 7, SIMATIC WinCC
2021-02-09
HIGH 7.8 Siemens DIGSI 4
ICSA-21-040-10 · 1 CVE
DIGSI 4
2021-02-09
MEDIUM 0 SSA-156833 V1.0: Zip-Slip Directory Traversal Vulnerability in SINEMA Server and SINEC NMS
SIEMENS-SSA-156833
SSA-156833 V1.0: Zip-Slip Directory Traversal Vulnerability in SINEMA Server and SINEC NMS
2021-02-09
MEDIUM 0 SSA-379803 V1.0: Vulnerabilities in RUGGEDCOM ROX II
SIEMENS-SSA-379803
SSA-379803 V1.0: Vulnerabilities in RUGGEDCOM ROX II
2021-02-09
MEDIUM 0 SSA-536315 V1.0: Privilege escalation vulnerability in DIGSI 4
SIEMENS-SSA-536315
SSA-536315 V1.0: Privilege escalation vulnerability in DIGSI 4
2021-02-09
MEDIUM 0 SSA-686152 V1.0: Denial-of-Service Vulnerability in ARP Protocol of SCALANCE W780 and W740
SIEMENS-SSA-686152
SSA-686152 V1.0: Denial-of-Service Vulnerability in ARP Protocol of SCALANCE W780 and W740
2021-02-09
MEDIUM 0 SSA-944678 V1.0: Potential Password Protection Bypass in SIMATIC WinCC
SIEMENS-SSA-944678
SSA-944678 V1.0: Potential Password Protection Bypass in SIMATIC WinCC
2021-02-09
MEDIUM 0 SSA-646841 V1.2 (Last Update: 2021-02-09): Recoverable Password from Configuration Storage in SCALANCE X Switches
SIEMENS-SSA-646841
SSA-646841 V1.2 (Last Update: 2021-02-09): Recoverable Password from Configuration Storage in SCALANCE X Switches
2021-02-09
MEDIUM 0 SSA-886514 V1.1 (Last Update: 2021-02-09): Persistent XSS Vulnerabilities in the Web Interface of Climatix POL908 and POL909 Modules
SIEMENS-SSA-886514
SSA-886514 V1.1 (Last Update: 2021-02-09): Persistent XSS Vulnerabilities in the Web Interface of Climatix POL908 and POL909 Modules
2021-02-09
HIGH 8.1 Siemens SIMATIC HMI Comfort Panels & SIMATIC HMI KTP Mobile Panels
ICSA-21-033-02 · 1 CVE
SIMATIC HMI Comfort Panels (incl.'SIPLUS variants), SIMATIC HMI KTP Mobile Panels
2021-01-28
MEDIUM 0 SSA-520004 V1.0: Telnet Authentication Vulnerability in SIMATIC HMI Comfort Panels
SIEMENS-SSA-520004
SSA-520004 V1.0: Telnet Authentication Vulnerability in SIMATIC HMI Comfort Panels
2021-01-28
HIGH 7.8 Siemens Solid Edge
ICSA-21-012-04 · 6 CVEs
Solid Edge SE2020, Solid Edge SE2021
2021-01-15
MEDIUM 0 SSA-979834 V1.1 (Last Update: 2021-01-15): Multiple vulnerabilities in Solid Edge
SIEMENS-SSA-979834
SSA-979834 V1.1 (Last Update: 2021-01-15): Multiple vulnerabilities in Solid Edge
2021-01-15
HIGH 8.1 SSA-604937 V1.2 (Last Update: 2021-01-12): Multiple Web Server Vulnerabilities in Opcenter Execution Core
SIEMENS-SSA-604937 · 4 CVEs
SSA-604937 V1.2 (Last Update: 2021-01-12): Multiple Web Server Vulnerabilities in Opcenter Execution Core
2021-01-12
HIGH 7.5 Siemens LOGO! (Update A)
ICSA-17-243-02 · 2 CVEs
LOGO! 8 BM (incl.'SIPLUS variants), LOGO! 8 BM (incl.'SIPLUS variants)
2020-12-08
HIGH 7.5 Siemens SCALANCE X Switches, RUGGEDCOM WiMAX, RFID 181-EIP, and SIMATIC RF182C (Update D)
ICSA-18-165-01 · 1 CVE
RFID 181EIP, RUGGEDCOM Win, SCALANCE X-200 switch family (incl.'SIPLUS NET variants) +6 more
2020-12-08
HIGH 7.8 Siemens LOGO! Soft Comfort (Update A)
ICSA-19-134-03 · 1 CVE
LOGO! Soft Comfort
2020-12-08
CRITICAL 9.4 Siemens LOGO! 8 BM (Update A)
ICSA-19-134-04 · 3 CVEs
LOGO! 8 BM (incl.'SIPLUS variants)
2020-12-08
CRITICAL 9.4 Siemens LOGO! (Update A)
ICSA-20-161-03 · 1 CVE
LOGO! 8 BM (incl.'SIPLUS variants)
2020-12-08
LOW 3.1 Siemens SIMATIC, SIMOTICS (Update A)
ICSA-20-224-05 · 1 CVE
SIMATIC RF350M, SIMATIC RF650M, SIMOTICS CONNECT 400
2020-12-08
MEDIUM 5.9 Siemens SIMATIC S7-300 and S7-400 CPUs (Update C)
ICSA-20-252-02 · 1 CVE
SINUMERIK 840D sl, SIMATIC S7-300 CPU family (incl. related ET200 CPUs and SIPLUS variants), SIMATIC S7-400 CPU family (incl. SIPLUS variants) +1 more
2020-12-08
HIGH 8.1 Siemens XHQ Operations Intelligence
ICSA-20-343-06 · 7 CVEs
XHQ
2020-12-08
HIGH 8.1 Siemens SICAM A8000 RTUs
ICSA-20-343-07 · 1 CVE
SICAM A8000 CP-8000, SICAM A8000 CP-8021, SICAM A8000 CP-8022
2020-12-08
MEDIUM 5.3 Siemens SIMATIC Controller Web Servers
ICSA-20-343-09 · 1 CVE
SIMATIC ET 200SP Open Controller (incl. SIPLUS variants), SIMATIC S7-1500 Software Controller
2020-12-08
CRITICAL 9.8 Siemens LOGO! 8 BM
ICSA-20-343-10 · 8 CVEs
LOGO! 8 BM (incl.'SIPLUS variants), LOGO! Soft Comfort
2020-12-08
MEDIUM 0 SSA-415783 V1.0: Insecure SSL configuration in SICAM A8000 CP-8000, CP-8021 and CP-8022
SIEMENS-SSA-415783
SSA-415783 V1.0: Insecure SSL configuration in SICAM A8000 CP-8000, CP-8021 and CP-8022
2020-12-08
MEDIUM 0 SSA-480824 V1.0: Multiple Vulnerabilities in LOGO! 8 BM
SIEMENS-SSA-480824
SSA-480824 V1.0: Multiple Vulnerabilities in LOGO! 8 BM
2020-12-08
MEDIUM 0 SSA-700697 V1.0: Denial-of-Service Vulnerability in Web Server of SIMATIC Controllers
SIEMENS-SSA-700697
SSA-700697 V1.0: Denial-of-Service Vulnerability in Web Server of SIMATIC Controllers
2020-12-08
MEDIUM 0 SSA-712690 V1.0: Vulnerabilities in XHQ Operations Intelligence
SIEMENS-SSA-712690
SSA-712690 V1.0: Vulnerabilities in XHQ Operations Intelligence
2020-12-08
MEDIUM 0 SSA-087240 V1.2 (Last Update: 2020-12-08): Vulnerabilities in SIEMENS LOGO!
SIEMENS-SSA-087240
SSA-087240 V1.2 (Last Update: 2020-12-08): Vulnerabilities in SIEMENS LOGO!
2020-12-08
MEDIUM 0 SSA-102144 V1.1 (Last Update: 2020-12-08): Code Execution Vulnerability in LOGO! Soft Comfort
SIEMENS-SSA-102144
SSA-102144 V1.1 (Last Update: 2020-12-08): Code Execution Vulnerability in LOGO! Soft Comfort
2020-12-08
MEDIUM 0 SSA-181018 V1.6 (Last Update: 2020-12-08): Heap Overflow Vulnerability in SCALANCE X switches, RUGGEDCOM Win, RFID 181EIP, and SIMATIC RF182C
SIEMENS-SSA-181018
SSA-181018 V1.6 (Last Update: 2020-12-08): Heap Overflow Vulnerability in SCALANCE X switches, RUGGEDCOM Win, RFID 181EIP, and SIMATIC RF182C
2020-12-08
MEDIUM 0 SSA-381684 V1.3 (Last Update: 2020-12-08): Improper Password Protection during Authentication in SIMATIC S7-300 and S7-400 CPUs and Derived Products
SIEMENS-SSA-381684
SSA-381684 V1.3 (Last Update: 2020-12-08): Improper Password Protection during Authentication in SIMATIC S7-300 and S7-400 CPUs and Derived Products
2020-12-08
MEDIUM 0 SSA-542701 V1.2 (Last Update: 2020-12-08): Vulnerabilities in SIEMENS LOGO!
SIEMENS-SSA-542701
SSA-542701 V1.2 (Last Update: 2020-12-08): Vulnerabilities in SIEMENS LOGO!
2020-12-08
MEDIUM 0 SSA-616472 V1.7 (Last Update: 2020-12-08): ZombieLoad and Microarchitectural Data Sampling Vulnerabilities in Industrial Products
SIEMENS-SSA-616472
SSA-616472 V1.7 (Last Update: 2020-12-08): ZombieLoad and Microarchitectural Data Sampling Vulnerabilities in Industrial Products
2020-12-08
LOW 3.1 SSA-712518 V1.1 (Last Update: 2020-12-08): Information Disclosure Vulnerability (Kr00k) in Industrial Wi-Fi Products
SIEMENS-SSA-712518 · 1 CVE
SSA-712518 V1.1 (Last Update: 2020-12-08): Information Disclosure Vulnerability (Kr00k) in Industrial Wi-Fi Products
2020-12-08
MEDIUM 0 SSA-817401 V1.1 (Last Update: 2020-12-08): Missing Authentication Vulnerability in SIEMENS LOGO!
SIEMENS-SSA-817401
SSA-817401 V1.1 (Last Update: 2020-12-08): Missing Authentication Vulnerability in SIEMENS LOGO!
2020-12-08
CRITICAL 9.8 Siemens SCALANCE W 1750D
ICSA-20-315-05 · 1 CVE
SCALANCE W1750D
2020-11-10
CRITICAL 9.8 SSA-431802 (Last Update: 2020-11-10): Multiple Vulnerabilities in SCALANCE W1750D
SIEMENS-SSA-431802 · 1 CVE
SSA-431802 (Last Update: 2020-11-10): Multiple Vulnerabilities in SCALANCE W1750D
2020-11-10
MEDIUM 5.4 Siemens Desigo Insight
ICSA-20-287-05 · 3 CVEs
Desigo Insight
2020-10-13
HIGH 8.8 Siemens SIPORT MP
ICSA-20-287-06 · 1 CVE
SIPORT MP
2020-10-13
MEDIUM 5.4 SSA-226339 (Last Update: 2020-10-13): Multiple Web Application Vulnerabilities in Desigo Insight
SIEMENS-SSA-226339 · 3 CVEs
SSA-226339 (Last Update: 2020-10-13): Multiple Web Application Vulnerabilities in Desigo Insight
2020-10-13
MEDIUM 0 SSA-384879 (Last Update: 2020-10-13): Authentication Bypass Vulnerability in SIPORT MP
SIEMENS-SSA-384879
SSA-384879 (Last Update: 2020-10-13): Authentication Bypass Vulnerability in SIPORT MP
2020-10-13
MEDIUM 0 SSA-689071 (Last Update: 2020-10-13): DNSMasq Vulnerabilities in SCALANCE W1750D, SCALANCE M-800 / S615 and RUGGEDCOM RM1224
SIEMENS-SSA-689071
SSA-689071 (Last Update: 2020-10-13): DNSMasq Vulnerabilities in SCALANCE W1750D, SCALANCE M-800 / S615 and RUGGEDCOM RM1224
2020-10-13
HIGH 7.5 Siemens RUGGEDCOM, SCALANCE, SIMATIC, SINEMA (Update B)
ICSA-20-105-05 · 2 CVEs
RUGGEDCOM RM1224, RUGGEDCOM ROX II, SCALANCE M-800 / S615 +18 more
2020-09-08
HIGH 8.4 Siemens SIMATIC RTLS Locating Manager
ICSA-20-252-01 · 3 CVEs
SIMATIC RTLS Locating Manager
2020-09-08
HIGH 7.8 Siemens License Management Utility
ICSA-20-252-03 · 1 CVE
License Management Utility (LMU)
2020-09-08
LOW 3.7 Siemens Spectrum Power
ICSA-20-252-04 · 2 CVEs
Spectrum Power' 4
2020-09-08
MEDIUM 5.3 Siemens Siveillance Video Client
ICSA-20-252-05 · 1 CVE
Siveillance Video Client
2020-09-08
HIGH 8.1 Siemens Polarion Subversion Webclient
ICSA-20-252-08 · 2 CVEs
Polarion Subversion Webclient
2020-09-08
MEDIUM 0 SSA-251935 (Last Update: 2020-09-08): Multiple Privilege Escalation Vulnerabilities in SIMATIC RTLS Locating Manager
SIEMENS-SSA-251935
SSA-251935 (Last Update: 2020-09-08): Multiple Privilege Escalation Vulnerabilities in SIMATIC RTLS Locating Manager
2020-09-08
MEDIUM 0 SSA-436520 (Last Update: 2020-09-08): XSS and CSRF Vulnerabilities in Polarion Subversion Webclient
SIEMENS-SSA-436520
SSA-436520 (Last Update: 2020-09-08): XSS and CSRF Vulnerabilities in Polarion Subversion Webclient
2020-09-08
MEDIUM 0 SSA-568969 (Last Update: 2020-09-08): Insecure Storage of Sensitive Information in Spectrum Power™ 4
SIEMENS-SSA-568969
SSA-568969 (Last Update: 2020-09-08): Insecure Storage of Sensitive Information in Spectrum Power™ 4
2020-09-08
MEDIUM 0 SSA-709003 (Last Update: 2020-09-08): Privilege Escalation Vulnerability in License Management Utility (LMU)
SIEMENS-SSA-709003
SSA-709003 (Last Update: 2020-09-08): Privilege Escalation Vulnerability in License Management Utility (LMU)
2020-09-08
MEDIUM 0 SSA-770698 (Last Update: 2020-09-08): User Information Disclosure Vulnerability in Siveillance Video Client
SIEMENS-SSA-770698
SSA-770698 (Last Update: 2020-09-08): User Information Disclosure Vulnerability in Siveillance Video Client
2020-09-08
MEDIUM 0 SSA-377115 (Last Update: 2020-09-08): SegmentSmack in Linux IP-Stack based Industrial Devices
SIEMENS-SSA-377115
SSA-377115 (Last Update: 2020-09-08): SegmentSmack in Linux IP-Stack based Industrial Devices
2020-09-08
HIGH 8.5 Siemens Opcenter Execution Core (Update B)
ICSA-20-196-07 · 4 CVEs
Camstar Enterprise Platform, Opcenter Execution Core, Opcenter Execution Core +1 more
2020-08-11
CRITICAL 9.8 Siemens SCALANCE, RUGGEDCOM
ICSA-20-224-04 · 1 CVE
RUGGEDCOM RM1224, SCALANCE M-800 / S615
2020-08-11
CRITICAL 9.8 Siemens Desigo CC
ICSA-20-224-06 · 1 CVE
Desigo CC, Desigo CC, Desigo CC Compact +1 more
2020-08-11
HIGH 7.3 Siemens Automation License Manager
ICSA-20-224-07 · 1 CVE
Automation License Manager 5, Automation License Manager 6
2020-08-11
HIGH 8.3 Siemens SICAM A8000 RTUs
ICSA-20-224-08 · 1 CVE
SICAM WEB firmware for SICAM A8000 RTUs
2020-08-11
MEDIUM 0 SSA-370042 (Last Update: 2020-08-11): Cross-Site-Scripting (XSS) in SICAM A8000 RTUs
SIEMENS-SSA-370042
SSA-370042 (Last Update: 2020-08-11): Cross-Site-Scripting (XSS) in SICAM A8000 RTUs
2020-08-11
MEDIUM 0 SSA-388646 (Last Update: 2020-08-11): Local Privilege Escalation in Automation License Manager
SIEMENS-SSA-388646
SSA-388646 (Last Update: 2020-08-11): Local Privilege Escalation in Automation License Manager
2020-08-11
MEDIUM 0 SSA-786743 (Last Update: 2020-08-11): Code Injection Vulnerability in Advanced Reporting for Desigo CC and Desigo CC Compact
SIEMENS-SSA-786743
SSA-786743 (Last Update: 2020-08-11): Code Injection Vulnerability in Advanced Reporting for Desigo CC and Desigo CC Compact
2020-08-11
MEDIUM 0 SSA-809841 (Last Update: 2020-08-11): Buffer Overflow Vulnerability in Third-Party Component pppd
SIEMENS-SSA-809841
SSA-809841 (Last Update: 2020-08-11): Buffer Overflow Vulnerability in Third-Party Component pppd
2020-08-11
MEDIUM 6.6 Siemens SCALANCE Products (Update A)
ICSA-19-227-03 · 2 CVEs
SCALANCE SC-600, SCALANCE XB-200, SCALANCE XC-200 +3 more
2020-07-14
MEDIUM 6.8 Siemens S7-1200 and S7-200 SMART CPUs (Update B)
ICSA-19-318-02 · 1 CVE
SIMATIC S7-1200 CPU family V4.x (incl.'SIPLUS variants), SIMATIC S7-1200 CPU family < V4.x (incl.'SIPLUS variants), SIMATIC S7-200 SMART CPU ST20 (6ES7 288-1ST20-0AA0) +13 more
2020-07-14
CRITICAL 9.8 Siemens SICAM MMU, SICAM T, and SICAM SGU
ICSA-20-196-03 · 9 CVEs
SICAM MMU, SICAM SGU, SICAM T
2020-07-14
MEDIUM 5.7 Siemens SIMATIC HMI Panels
ICSA-20-196-04 · 1 CVE
SIMATIC HMI Basic Panels 1st Generation (incl.'SIPLUS variants), SIMATIC HMI Basic Panels 2nd Generation (incl.'SIPLUS variants), SIMATIC HMI Comfort Panels (incl.'SIPLUS variants) +3 more
2020-07-14
HIGH 7.5 Siemens SIMATIC S7-200 SMART CPU Family
ICSA-20-196-06 · 1 CVE
SIMATIC S7-200 SMART CPU family
2020-07-14
CRITICAL 9.8 Siemens LOGO! Web Server
ICSA-20-196-08 · 1 CVE
LOGO! 8 BM (incl.'SIPLUS variants), LOGO! 8 BM (incl.'SIPLUS variants), LOGO! 8 BM (incl.'SIPLUS variants)
2020-07-14
MEDIUM 0 SSA-305120 (Last Update: 2020-07-14): Vulnerabilities in SICAM MMU, SICAM T and SICAM SGU
SIEMENS-SSA-305120
SSA-305120 (Last Update: 2020-07-14): Vulnerabilities in SICAM MMU, SICAM T and SICAM SGU
2020-07-14
MEDIUM 0 SSA-364335 (Last Update: 2020-07-14): Clear Text Transmission Vulnerability on SIMATIC HMI Panels
SIEMENS-SSA-364335
SSA-364335 (Last Update: 2020-07-14): Clear Text Transmission Vulnerability on SIMATIC HMI Panels
2020-07-14
MEDIUM 0 SSA-508982 (Last Update: 2020-07-14): Denial-of-Service Vulnerability in SIMATIC S7-300 CPUs, SIMATIC TDC, and SINUMERIK Controller over Profinet
SIEMENS-SSA-508982
SSA-508982 (Last Update: 2020-07-14): Denial-of-Service Vulnerability in SIMATIC S7-300 CPUs, SIMATIC TDC, and SINUMERIK Controller over Profinet
2020-07-14
MEDIUM 0 SSA-573753 (Last Update: 2020-07-14): Remote Code Execution in Siemens LOGO! Web Server
SIEMENS-SSA-573753
SSA-573753 (Last Update: 2020-07-14): Remote Code Execution in Siemens LOGO! Web Server
2020-07-14
MEDIUM 0 SSA-589181 (Last Update: 2020-07-14): Denial-Of-Service in SIMATIC S7-200 SMART CPU Family Devices
SIEMENS-SSA-589181
SSA-589181 (Last Update: 2020-07-14): Denial-Of-Service in SIMATIC S7-200 SMART CPU Family Devices
2020-07-14
MEDIUM 0 SSA-631949 (Last Update: 2020-07-14): Ripple20 and Intel SPS Vulnerabilities in SPPA-T3000 Solutions
SIEMENS-SSA-631949
SSA-631949 (Last Update: 2020-07-14): Ripple20 and Intel SPS Vulnerabilities in SPPA-T3000 Solutions
2020-07-14
MEDIUM 0 SSA-671286 (Last Update: 2020-07-14): Multiple Vulnerabilities in SCALANCE Products
SIEMENS-SSA-671286
SSA-671286 (Last Update: 2020-07-14): Multiple Vulnerabilities in SCALANCE Products
2020-07-14
MEDIUM 0 SSA-686531 (Last Update: 2020-07-14): Hardware based manufacturing access on S7-1200 and S7-200 SMART
SIEMENS-SSA-686531
SSA-686531 (Last Update: 2020-07-14): Hardware based manufacturing access on S7-1200 and S7-200 SMART
2020-07-14
CRITICAL 9.8 Siemens SINUMERIK
ICSA-20-161-06 · 22 CVEs
SINUMERIK Access MyMachine /P2P, SINUMERIK PCU base Win10 software /IPC, SINUMERIK PCU base Win7 software /IPC
2020-06-09
MEDIUM 0 SSA-927095 (Last Update: 2020-06-09): UltraVNC Vulnerabilities in SINUMERIK Products
SIEMENS-SSA-927095
SSA-927095 (Last Update: 2020-06-09): UltraVNC Vulnerabilities in SINUMERIK Products
2020-06-09
MEDIUM 0 SSA-352504 (Last Update: 2020-06-09): Urgent/11 TCP/IP Stack Vulnerabilities in Siemens Power Meters
SIEMENS-SSA-352504
SSA-352504 (Last Update: 2020-06-09): Urgent/11 TCP/IP Stack Vulnerabilities in Siemens Power Meters
2020-06-09
HIGH 7.5 Siemens SIPROTEC 5 and DIGSI 5 (Update C)
ICSA-19-190-05 · 2 CVEs
SIPROTEC 5 device types 6MD85, 6MD86, 6MD89, 7UM85, 7SA87, 7SD87, 7SL87, 7VK87, 7SA82, 7SA86, 7SD82, 7SD86, 7SL82, 7SL86, 7SJ86, 7SK82, 7SK85, 7SJ82, 7SJ85, 7UT82, 7UT85, 7UT86, 7UT87 and 7VE85 with CPU variants CP300 and CP100 and the respective Ethernet communication modules, SIPROTEC 5 device types 7SS85 and 7KE85, All other SIPROTEC 5 device types with CPU variants CP300 and CP100 and the respective Ethernet communication modules +3 more
2020-05-12
HIGH 7.5 Siemens SINAMICS (Update C)
ICSA-19-227-04 · 1 CVE
SINAMICS GH150 V4.7 (Control Unit), SINAMICS GH150 V4.8 (Control Unit), SINAMICS GL150 V4.7 (Control Unit) +8 more
2020-05-12
MEDIUM 0 SSA-530931 (Last Update: 2020-05-12): Denial-of-Service in Webserver of Industrial Products
SIEMENS-SSA-530931
SSA-530931 (Last Update: 2020-05-12): Denial-of-Service in Webserver of Industrial Products
2020-05-12
MEDIUM 0 SSA-899560 (Last Update: 2020-05-12): Vulnerabilities in SIPROTEC 5 relays and DIGSI 5
SIEMENS-SSA-899560
SSA-899560 (Last Update: 2020-05-12): Vulnerabilities in SIPROTEC 5 relays and DIGSI 5
2020-05-12
CRITICAL 9.0 Siemens TIM 3V-IE and 4R-IE Family Devices
ICSA-20-105-09 · 1 CVE
TIM 3V-IE (incl. SIPLUS NET variants), TIM 3V-IE Advanced (incl. SIPLUS NET variants), TIM 3V-IE DNP3 (incl. SIPLUS NET variants) +2 more
2020-04-14
MEDIUM 0 SSA-359303 (Last Update: 2020-04-14): Debug Port in TIM 3V-IE and 4R-IE Family Devices
SIEMENS-SSA-359303
SSA-359303 (Last Update: 2020-04-14): Debug Port in TIM 3V-IE and 4R-IE Family Devices
2020-04-14
MEDIUM 0 SSA-589272 (Last Update: 2020-04-13): Security vulnerability in SIMATIC S7-400 V6 PN CPUs
SIEMENS-SSA-589272
SSA-589272 (Last Update: 2020-04-13): Security vulnerability in SIMATIC S7-400 V6 PN CPUs
2020-04-13
MEDIUM 0 SSA-617264 (Last Update: 2020-04-13): Multiple Security Vulnerabilities in SIMATIC S7-400 V5 PN CPUs
SIEMENS-SSA-617264
SSA-617264 (Last Update: 2020-04-13): Multiple Security Vulnerabilities in SIMATIC S7-400 V5 PN CPUs
2020-04-13
MEDIUM 5.3 Siemens SIMATIC S7-1200 and S7-1500 CPU Families (Update B)
ICSA-19-344-06 · 2 CVEs
SIMATIC Drive Controller family, SIMATIC S7-1500 CPU family (incl. related ET200 CPUs and SIPLUS variants), SIMATIC S7-PLCSIM Advanced +10 more
2020-03-10
HIGH 7.5 Siemens SIMATIC S7-1500 (Update A)
ICSA-20-042-11 · 1 CVE
SIMATIC ET 200SP Open Controller CPU 1515SP PC2 (incl. SIPLUS variants), SIMATIC S7-1500 CPU family (incl. related ET200 CPUs and SIPLUS variants), SIMATIC S7-1500 Software Controller
2020-03-10
HIGH 7.5 Siemens SIMATIC S7-300 CPUs and SINUMERIK Controller over Profinet (Update A)
ICSA-20-070-02 · 1 CVE
SIMATIC S7-300 CPU family (incl.'related ET200 CPUs and SIPLUS variants), SIMATIC TDC CP51M1, SIMATIC TDC CPU555 +2 more
2020-03-10
MEDIUM 6.1 Siemens Spectrum Power 5
ICSA-20-070-03 · 1 CVE
Spectrum Power™ 5
2020-03-10
MEDIUM 0 SSA-938930 (Last Update: 2020-03-10): Cross-Site Scripting Vulnerability in Spectrum Power™ 5
SIEMENS-SSA-938930
SSA-938930 (Last Update: 2020-03-10): Cross-Site Scripting Vulnerability in Spectrum Power™ 5
2020-03-10
MEDIUM 0 SSA-451445 (Last Update: 2020-03-10): Multiple Vulnerabilities in SPPA-T3000
SIEMENS-SSA-451445
SSA-451445 (Last Update: 2020-03-10): Multiple Vulnerabilities in SPPA-T3000
2020-03-10
MEDIUM 0 SSA-750824 (Last Update: 2020-03-10): Denial-of-Service Vulnerability in Profinet Devices
SIEMENS-SSA-750824
SSA-750824 (Last Update: 2020-03-10): Denial-of-Service Vulnerability in Profinet Devices
2020-03-10
MEDIUM 0 SSA-731239 (Last Update: 2020-03-10): Vulnerabilities in SIMATIC S7-300 and S7-400 CPUs
SIEMENS-SSA-731239
SSA-731239 (Last Update: 2020-03-10): Vulnerabilities in SIMATIC S7-300 and S7-400 CPUs
2020-03-10
CRITICAL 9.8 Siemens SIMATIC CP 1543-1
ICSA-20-042-03 · 2 CVEs
SIMATIC CP 1543-1 (incl. SIPLUS NET variants)
2020-02-11
MEDIUM 6.5 Siemens SIPORT MP
ICSA-20-042-08 · 1 CVE
SIPORT MP
2020-02-11
MEDIUM 5.3 Siemens OZW Web Server
ICSA-20-042-09 · 1 CVE
OZW672, OZW772
2020-02-11
HIGH 7.5 Siemens SIPROTEC 4 and SIPROTEC Compact
ICSA-20-042-12 · 1 CVE
SIPROTEC 4 and SIPROTEC Compact relays equipped with EN100 Ethernet communication modules
2020-02-11
MEDIUM 0 SSA-940889 (Last Update: 2020-02-11): Vulnerabilities in the embedded FTP server of SIMATIC CP 1543-1
SIEMENS-SSA-940889
SSA-940889 (Last Update: 2020-02-11): Vulnerabilities in the embedded FTP server of SIMATIC CP 1543-1
2020-02-11
MEDIUM 0 SSA-974843 (Last Update: 2020-02-11): Denial-of-Service Vulnerability in SIPROTEC 4 and SIPROTEC Compact Relay Families
SIEMENS-SSA-974843
SSA-974843 (Last Update: 2020-02-11): Denial-of-Service Vulnerability in SIPROTEC 4 and SIPROTEC Compact Relay Families
2020-02-11
MEDIUM 0 SSA-978558 (Last Update: 2020-02-11): Insufficient Logging Vulnerability in SIPORT MP
SIEMENS-SSA-978558
SSA-978558 (Last Update: 2020-02-11): Insufficient Logging Vulnerability in SIPORT MP
2020-02-11
MEDIUM 0 SSA-986695 (Last Update: 2020-02-11): Information Disclosure Vulnerability in the OZW Web Server
SIEMENS-SSA-986695
SSA-986695 (Last Update: 2020-02-11): Information Disclosure Vulnerability in the OZW Web Server
2020-02-11
MEDIUM 5.9 Siemens SIMATIC Industrial PCs (Update A)
ICSA-18-058-01A · 1 CVE
SIMATIC Field-PG M5, SIMATIC IPC227E, SIMATIC IPC277E +4 more
2020-02-10
CRITICAL 9.8 Siemens TIM 1531 IRC
ICSA-18-088-02 · 1 CVE
TIM 1531 IRC (incl. SIPLUS NET variants)
2020-02-10
HIGH 7.5 Siemens Medium Voltage SINAMICS Products (Update A)
ICSA-18-128-01 · 2 CVEs
SIMOTION D4xx V4.4 for SINAMICS SM150i-2 w. PROFINET (incl. SIPLUS variants), SINAMICS GH150 V4.7 w. PROFINET, SINAMICS GL150 V4.7 w. PROFINET +5 more
2020-02-10
HIGH 7.5 Siemens SIMATIC S7-400 CPU (Update A)
ICSA-18-137-03 · 1 CVE
SIMATIC S7-400 CPU hardware version 4.0 and below (incl. SIPLUS variants), SIMATIC S7-400 CPU hardware version 5.0 (incl. SIPLUS variants), SIMATIC S7-400 H CPU hardware version 4.5 and below (incl. SIPLUS variants)
2020-02-10
HIGH 8.6 Siemens SCALANCE X Switches
ICSA-18-254-05 · 1 CVE
SCALANCE X-300 switch family (incl. SIPLUS NET variants), SCALANCE X408, SCALANCE X414
2020-02-10
HIGH 7.5 Siemens SIMATIC S7-1200 CPU Family Version 4
ICSA-18-282-04 · 1 CVE
SIMATIC S7-1200 CPU family version 4 (incl. SIPLUS variants)
2020-02-10
MEDIUM 5.3 Siemens SIMATIC S7-1500, SIMATIC S7-1500 Software Controller and SIMATIC ET 200SP OpenController (Update A)
ICSA-18-282-05 · 1 CVE
SIMATIC ET 200SP Open Controller (incl. SIPLUS variants), SIMATIC S7-1500 CPU family (incl. related ET200 CPUs and SIPLUS variants), SIMATIC S7-1500 Software Controller
2020-02-10
MEDIUM 4.3 Siemens SIMATIC Panels and SIMATIC WinCC (TIA Portal)
ICSA-18-317-03 · 1 CVE
SIMATIC HMI Comfort Panels 4" - 22" (incl. SIPLUS variants), SIMATIC HMI Comfort Outdoor Panels 7" & 15" (incl. SIPLUS variants), SIMATIC HMI KTP Mobile Panels KTP400F, KTP700, KTP700F, KTP900 and KTP900F +4 more
2020-02-10
MEDIUM 5.3 Siemens SIMATIC S7 (Update A)
ICSA-18-317-05 · 1 CVE
SIMATIC S7-1200 CPU family (incl. SIPLUS variants), SIMATIC S7-1500 CPU family (incl. related ET200 CPUs and SIPLUS variants)
2020-02-10
HIGH 7.5 Siemens SIMATIC Panels
ICSA-18-317-08 · 2 CVEs
SIMATIC HMI Comfort Panels 4" - 22" (incl. SIPLUS variants), SIMATIC HMI Comfort Outdoor Panels 7" & 15" (incl. SIPLUS variants), SIMATIC HMI KTP Mobile Panels KTP400F +4 more
2020-02-10
CRITICAL 10.0 Siemens TIM 1531 IRC Modules
ICSA-18-352-05 · 1 CVE
TIM 1531 IRC (incl. SIPLUS NET variants)
2020-02-10
HIGH 7.5 Siemens SIMATIC S7-1500 CPU
ICSA-19-036-04 · 2 CVEs
SIMATIC S7-1500 CPU family (incl. related ET200 CPUs and SIPLUS variants), SIMATIC S7-1500 CPU family (incl. related ET200 CPUs and SIPLUS variants)
2020-02-10
HIGH 7.5 Siemens SIMATIC S7-300 CPU
ICSA-19-043-04 · 1 CVE
SIMATIC S7-300 CPU family (incl. related ET200 CPUs and SIPLUS variants)
2020-02-10
MEDIUM 6.7 Siemens Intel Active Management Technology of SIMATIC IPCs
ICSA-19-043-05 · 3 CVEs
SIMATIC FieldPG M5, SIMATIC IPC427E (incl. SIPLUS variants), SIMATIC IPC477E +8 more
2020-02-10
HIGH 7.5 Siemens SIMOCODE pro V EIP
ICSA-19-099-01 · 1 CVE
SIMOCODE pro V EIP (incl. SIPLUS variants)
2020-02-10
HIGH 7.5 Siemens LOGO!8 Devices
ICSA-19-162-03 · 2 CVEs
SIEMENS LOGO!8 (incl. SIPLUS variants), SIEMENS LOGO!8 (incl. SIPLUS variants)
2020-02-10
MEDIUM 0 SSA-110922 (Last Update: 2020-02-10): Web Vulnerability in TIM 1531 IRC
SIEMENS-SSA-110922
SSA-110922 (Last Update: 2020-02-10): Web Vulnerability in TIM 1531 IRC
2020-02-10
MEDIUM 0 SSA-134003 (Last Update: 2020-02-10): Web Vulnerability in SIMATIC S7-1200 Family
SIEMENS-SSA-134003
SSA-134003 (Last Update: 2020-02-10): Web Vulnerability in SIMATIC S7-1200 Family
2020-02-10
MEDIUM 0 SSA-141614 (Last Update: 2020-02-10): Denial-of-Service in SIMOCODE pro V EIP
SIEMENS-SSA-141614
SSA-141614 (Last Update: 2020-02-10): Denial-of-Service in SIMOCODE pro V EIP
2020-02-10
MEDIUM 0 SSA-168644 (Last Update: 2020-02-10): Spectre and Meltdown Vulnerabilities in Industrial Products
SIEMENS-SSA-168644
SSA-168644 (Last Update: 2020-02-10): Spectre and Meltdown Vulnerabilities in Industrial Products
2020-02-10
MEDIUM 0 SSA-176087 (Last Update: 2020-02-10): Unauthenticated Access to Critical Services in SCALANCE X-200 Switch Family
SIEMENS-SSA-176087
SSA-176087 (Last Update: 2020-02-10): Unauthenticated Access to Critical Services in SCALANCE X-200 Switch Family
2020-02-10
MEDIUM 0 SSA-180635 (Last Update: 2020-02-10): Denial-of-Service Vulnerabilities in SIMATIC S7-1500 CPU Family
SIEMENS-SSA-180635
SSA-180635 (Last Update: 2020-02-10): Denial-of-Service Vulnerabilities in SIMATIC S7-1500 CPU Family
2020-02-10
MEDIUM 0 SSA-233109 (Last Update: 2020-02-10): Web Vulnerabilities in SIMATIC Panels
SIEMENS-SSA-233109
SSA-233109 (Last Update: 2020-02-10): Web Vulnerabilities in SIMATIC Panels
2020-02-10
MEDIUM 0 SSA-234763 (Last Update: 2020-02-10): OpenSSL Vulnerabilities in Siemens Industrial Products
SIEMENS-SSA-234763
SSA-234763 (Last Update: 2020-02-10): OpenSSL Vulnerabilities in Siemens Industrial Products
2020-02-10
MEDIUM 0 SSA-253230 (Last Update: 2020-02-10): Vulnerabilities in SIMATIC S7-1500 CPU family
SIEMENS-SSA-253230
SSA-253230 (Last Update: 2020-02-10): Vulnerabilities in SIMATIC S7-1500 CPU family
2020-02-10
MEDIUM 0 SSA-254686 (Last Update: 2020-02-10): Foreshadow / L1 Terminal Fault Vulnerabilities in Industrial Products
SIEMENS-SSA-254686
SSA-254686 (Last Update: 2020-02-10): Foreshadow / L1 Terminal Fault Vulnerabilities in Industrial Products
2020-02-10
MEDIUM 0 SSA-268644 (Last Update: 2020-02-10): Spectre-NG (Variants 3a and 4) Vulnerabilities in Industrial Products
SIEMENS-SSA-268644
SSA-268644 (Last Update: 2020-02-10): Spectre-NG (Variants 3a and 4) Vulnerabilities in Industrial Products
2020-02-10
MEDIUM 0 SSA-306710 (Last Update: 2020-02-10): Denial-of-Service Vulnerability in SIMATIC S7-300 CPU Family
SIEMENS-SSA-306710
SSA-306710 (Last Update: 2020-02-10): Denial-of-Service Vulnerability in SIMATIC S7-300 CPU Family
2020-02-10
MEDIUM 0 SSA-310688 (Last Update: 2020-02-10): Denial-of-Service Vulnerability in SIMATIC S7-1500 CPU
SIEMENS-SSA-310688
SSA-310688 (Last Update: 2020-02-10): Denial-of-Service Vulnerability in SIMATIC S7-1500 CPU
2020-02-10
MEDIUM 0 SSA-321046 (Last Update: 2020-02-10): Denial-of-Service Vulnerability in SCALANCE X-300/X408 Switch Family
SIEMENS-SSA-321046
SSA-321046 (Last Update: 2020-02-10): Denial-of-Service Vulnerability in SCALANCE X-300/X408 Switch Family
2020-02-10
MEDIUM 0 SSA-347726 (Last Update: 2020-02-10): Denial-of-Service Vulnerability in SIMATIC S7-1500, SIMATIC S7-1500 Software Controller and SIMATIC ET 200SP Open Controller
SIEMENS-SSA-347726
SSA-347726 (Last Update: 2020-02-10): Denial-of-Service Vulnerability in SIMATIC S7-1500, SIMATIC S7-1500 Software Controller and SIMATIC ET 200SP Open Controller
2020-02-10
MEDIUM 0 SSA-377318 (Last Update: 2020-02-10): Multiple vulnerabilities in Intel Active Management Technology (AMT) of SIMATIC IPCs
SIEMENS-SSA-377318
SSA-377318 (Last Update: 2020-02-10): Multiple vulnerabilities in Intel Active Management Technology (AMT) of SIMATIC IPCs
2020-02-10
MEDIUM 0 SSA-447396 (Last Update: 2020-02-10): Denial-of-Service in SCALANCE X-300, SCALANCE X408 and SCALANCE X414
SIEMENS-SSA-447396
SSA-447396 (Last Update: 2020-02-10): Denial-of-Service in SCALANCE X-300, SCALANCE X408 and SCALANCE X414
2020-02-10
MEDIUM 0 SSA-456423 (Last Update: 2020-02-10): Vulnerabilities in SIMATIC S7-1500 CPU family
SIEMENS-SSA-456423
SSA-456423 (Last Update: 2020-02-10): Vulnerabilities in SIMATIC S7-1500 CPU family
2020-02-10
MEDIUM 0 SSA-470231 (Last Update: 2020-02-10): TPM Vulnerability in SIMATIC IPCs
SIEMENS-SSA-470231
SSA-470231 (Last Update: 2020-02-10): TPM Vulnerability in SIMATIC IPCs
2020-02-10
MEDIUM 0 SSA-487246 (Last Update: 2020-02-10): Vulnerabilities in SIMATIC HMI Devices
SIEMENS-SSA-487246
SSA-487246 (Last Update: 2020-02-10): Vulnerabilities in SIMATIC HMI Devices
2020-02-10
MEDIUM 0 SSA-507847 (Last Update: 2020-02-10): Cross-Site Request Forgery Vulnerability in SIMATIC S7-1200 CPU Family Version 4
SIEMENS-SSA-507847
SSA-507847 (Last Update: 2020-02-10): Cross-Site Request Forgery Vulnerability in SIMATIC S7-1200 CPU Family Version 4
2020-02-10
MEDIUM 0 SSA-546832 (Last Update: 2020-02-10): Vulnerabilities in Medium Voltage SINAMICS and SIMOTION Products
SIEMENS-SSA-546832
SSA-546832 (Last Update: 2020-02-10): Vulnerabilities in Medium Voltage SINAMICS and SIMOTION Products
2020-02-10
MEDIUM 0 SSA-584286 (Last Update: 2020-02-10): Denial-of-Service Vulnerability in SIMATIC S7-1200 CPU and SIMATIC S7-1500 CPU
SIEMENS-SSA-584286
SSA-584286 (Last Update: 2020-02-10): Denial-of-Service Vulnerability in SIMATIC S7-1200 CPU and SIMATIC S7-1500 CPU
2020-02-10
MEDIUM 0 SSA-597212 (Last Update: 2020-02-10): Web Vulnerability in SIMATIC S7-1200 CPU Family
SIEMENS-SSA-597212
SSA-597212 (Last Update: 2020-02-10): Web Vulnerability in SIMATIC S7-1200 CPU Family
2020-02-10
MEDIUM 5.9 SSA-623229 (Last Update: 2020-02-10): DROWN Vulnerability in Industrial Products
SIEMENS-SSA-623229 · 1 CVE
SSA-623229 (Last Update: 2020-02-10): DROWN Vulnerability in Industrial Products
2020-02-10
HIGH 7.5 SSA-635659 (Last Update: 2020-02-10): Heartbleed Vulnerability in Siemens Industrial Products
SIEMENS-SSA-635659 · 1 CVE
SSA-635659 (Last Update: 2020-02-10): Heartbleed Vulnerability in Siemens Industrial Products
2020-02-10
MEDIUM 0 SSA-654382 (Last Update: 2020-02-10): Vulnerabilities in SIMATIC S7-1200 CPU Familiy
SIEMENS-SSA-654382
SSA-654382 (Last Update: 2020-02-10): Vulnerabilities in SIMATIC S7-1200 CPU Familiy
2020-02-10
MEDIUM 0 SSA-724606 (Last Update: 2020-02-10): Denial-of-Service Vulnerabilities in SIMATIC S7-1200 CPU Family
SIEMENS-SSA-724606
SSA-724606 (Last Update: 2020-02-10): Denial-of-Service Vulnerabilities in SIMATIC S7-1200 CPU Family
2020-02-10
MEDIUM 0 SSA-742938 (Last Update: 2020-02-10): Open Ports in SINAMICS S/G Firmware
SIEMENS-SSA-742938
SSA-742938 (Last Update: 2020-02-10): Open Ports in SINAMICS S/G Firmware
2020-02-10
MEDIUM 0 SSA-774850 (Last Update: 2020-02-10): Vulnerabilities in SIEMENS LOGO!8 devices
SIEMENS-SSA-774850
SSA-774850 (Last Update: 2020-02-10): Vulnerabilities in SIEMENS LOGO!8 devices
2020-02-10
MEDIUM 0 SSA-804486 (Last Update: 2020-02-10): Multiple Vulnerabilities in SIMATIC Panels and SIMATIC WinCC (TIA Portal)
SIEMENS-SSA-804486
SSA-804486 (Last Update: 2020-02-10): Multiple Vulnerabilities in SIMATIC Panels and SIMATIC WinCC (TIA Portal)
2020-02-10
MEDIUM 0 SSA-818183 (Last Update: 2020-02-10): Denial-of-Service Vulnerability in SIMATIC S7-300 CPU Family
SIEMENS-SSA-818183
SSA-818183 (Last Update: 2020-02-10): Denial-of-Service Vulnerability in SIMATIC S7-300 CPU Family
2020-02-10
MEDIUM 0 SSA-833048 (Last Update: 2020-02-10): Vulnerability in SIMATIC S7-1200 CPU Family
SIEMENS-SSA-833048
SSA-833048 (Last Update: 2020-02-10): Vulnerability in SIMATIC S7-1200 CPU Family
2020-02-10
MEDIUM 0 SSA-850708 (Last Update: 2020-02-10): Authentication Bypass in SCALANCE X-200 Switch Family
SIEMENS-SSA-850708
SSA-850708 (Last Update: 2020-02-10): Authentication Bypass in SCALANCE X-200 Switch Family
2020-02-10
CRITICAL 9.8 SSA-874235 (Last Update: 2020-02-10): Intel Vulnerability in Siemens Industrial Products
SIEMENS-SSA-874235 · 1 CVE
SSA-874235 (Last Update: 2020-02-10): Intel Vulnerability in Siemens Industrial Products
2020-02-10
MEDIUM 0 SSA-892012 (Last Update: 2020-02-10): Web Vulnerabilities in SIMATIC S7-1200 CPU Family
SIEMENS-SSA-892012
SSA-892012 (Last Update: 2020-02-10): Web Vulnerabilities in SIMATIC S7-1200 CPU Family
2020-02-10
MEDIUM 0 SSA-892715 (Last Update: 2020-02-10): ME, SPS and TXE Vulnerabilities in SIMATIC IPCs
SIEMENS-SSA-892715
SSA-892715 (Last Update: 2020-02-10): ME, SPS and TXE Vulnerabilities in SIMATIC IPCs
2020-02-10
MEDIUM 0 SSA-914382 (Last Update: 2020-02-10): Denial-of-Service Vulnerability in SIMATIC S7-400 CPU Family
SIEMENS-SSA-914382
SSA-914382 (Last Update: 2020-02-10): Denial-of-Service Vulnerability in SIMATIC S7-400 CPU Family
2020-02-10
MEDIUM 0 SSA-944083 (Last Update: 2020-02-10): HTTP Header Injection in SIMATIC Panels and SIMATIC WinCC (TIA Portal)
SIEMENS-SSA-944083
SSA-944083 (Last Update: 2020-02-10): HTTP Header Injection in SIMATIC Panels and SIMATIC WinCC (TIA Portal)
2020-02-10
MEDIUM 0 SSA-954136 (Last Update: 2020-02-10): User Impersonation Vulnerability in SCALANCE X-200IRT Switch Family
SIEMENS-SSA-954136
SSA-954136 (Last Update: 2020-02-10): User Impersonation Vulnerability in SCALANCE X-200IRT Switch Family
2020-02-10
MEDIUM 0 SSA-982399 (Last Update: 2020-02-10): Missing Authentication in TIM 1531 IRC Modules
SIEMENS-SSA-982399
SSA-982399 (Last Update: 2020-02-10): Missing Authentication in TIM 1531 IRC Modules
2020-02-10
MEDIUM 0 SSA-987029 (Last Update: 2020-02-10): Denial-of-Service Vulnerability in SIMATIC S7-300 CPU Family
SIEMENS-SSA-987029
SSA-987029 (Last Update: 2020-02-10): Denial-of-Service Vulnerability in SIMATIC S7-300 CPU Family
2020-02-10
CRITICAL 10.0 SSA-994726 (Last Update: 2020-02-10): GHOST Vulnerability in Siemens Industrial Products
SIEMENS-SSA-994726 · 1 CVE
SSA-994726 (Last Update: 2020-02-10): GHOST Vulnerability in Siemens Industrial Products
2020-02-10
HIGH 7.5 Siemens SIMATIC WinAC RTX (F) 2010 (Update A)
ICSA-19-281-03 · 1 CVE
SIMATIC WinAC RTX (F) 2010
2020-01-14
HIGH 7.5 Siemens EN100 Ethernet Module (Update A)
ICSA-19-344-07 · 3 CVEs
EN100 Ethernet module IEC 61850 variant, EN100 Ethernet module PROFINET IO variant, EN100 Ethernet module Modbus TCP variant +2 more
2020-01-14
CRITICAL 9.9 Siemens SINEMA Server
ICSA-20-014-02 · 1 CVE
SINEMA Server
2020-01-14
MEDIUM 6.8 Siemens SINAMICS PERFECT HARMONY GH180
ICSA-20-014-04 · 1 CVE
SINAMICS PERFECT HARMONY GH180 Drives, SINAMICS PERFECT HARMONY GH180 Drives
2020-01-14
MEDIUM 0 SSA-880233 (Last Update: 2020-01-14): Incorrect Session Validation Vulnerability in SINEMA Server
SIEMENS-SSA-880233
SSA-880233 (Last Update: 2020-01-14): Incorrect Session Validation Vulnerability in SINEMA Server
2020-01-14
MEDIUM 0 SSA-242353 (Last Update: 2020-01-14): Access Control Vulnerability in SINAMICS PERFECT HARMONY GH180
SIEMENS-SSA-242353
SSA-242353 (Last Update: 2020-01-14): Access Control Vulnerability in SINAMICS PERFECT HARMONY GH180
2020-01-14
MEDIUM 0 SSA-878278 (Last Update: 2020-01-14): Denial-of-Service Vulnerability in SIMATIC WinAC RTX (F) 2010
SIEMENS-SSA-878278
SSA-878278 (Last Update: 2020-01-14): Denial-of-Service Vulnerability in SIMATIC WinAC RTX (F) 2010
2020-01-14
HIGH 8.8 SSA-632562 (Last Update: 2020-01-14): Vulnerabilities in SIPROTEC 5 Ethernet plug-in communication modules and devices
SIEMENS-SSA-632562 · 2 CVEs
SSA-632562 (Last Update: 2020-01-14): Vulnerabilities in SIPROTEC 5 Ethernet plug-in communication modules and devices
2020-01-14
MEDIUM 0 SSA-418979 (Last Update: 2020-01-14): Vulnerabilities in EN100 Ethernet Communication Module
SIEMENS-SSA-418979
SSA-418979 (Last Update: 2020-01-14): Vulnerabilities in EN100 Ethernet Communication Module
2020-01-14
MEDIUM 0 SSA-616199 (Last Update: 2020-01-14): BlueKeep Vulnerability Identified in RAPIDPoint® 500 Operating on Windows XP
SIEMENS-SSA-616199
SSA-616199 (Last Update: 2020-01-14): BlueKeep Vulnerability Identified in RAPIDPoint® 500 Operating on Windows XP
2020-01-14
MEDIUM 6.5 Siemens SCALANCE W700 and W1700
ICSA-19-344-01 · 1 CVE
SCALANCE W1700, SCALANCE W700
2019-12-10
HIGH 8.8 Siemens XHQ Operations Intelligence
ICSA-19-344-05 · 3 CVEs
XHQ
2019-12-10
MEDIUM 0 SSA-525454 (Last Update: 2019-12-10): Vulnerabilities in XHQ Operations Intelligence
SIEMENS-SSA-525454
SSA-525454 (Last Update: 2019-12-10): Vulnerabilities in XHQ Operations Intelligence
2019-12-10
MEDIUM 0 SSA-344983 (Last Update: 2019-12-10): Vulnerability in WPA2 Key Handling affecting SCALANCE W700 and SCALANCE W1700 Devices
SIEMENS-SSA-344983
SSA-344983 (Last Update: 2019-12-10): Vulnerability in WPA2 Key Handling affecting SCALANCE W700 and SCALANCE W1700 Devices
2019-12-10
MEDIUM 0 SSA-189842 (Last Update: 2019-12-10): TCP URGENT/11 Vulnerabilities in RUGGEDCOM Win
SIEMENS-SSA-189842
SSA-189842 (Last Update: 2019-12-10): TCP URGENT/11 Vulnerabilities in RUGGEDCOM Win
2019-12-10
MEDIUM 0 SSA-170686 (Last Update: 2019-12-10): Vulnerabilities in SCALANCE X-200 and X-200IRT Switch Families
SIEMENS-SSA-170686
SSA-170686 (Last Update: 2019-12-10): Vulnerabilities in SCALANCE X-200 and X-200IRT Switch Families
2019-12-10
MEDIUM 5.3 Siemens Desigo PX Devices
ICSA-19-318-03 · 1 CVE
Desigo PX automation controllers PXC00-E.D, Desigo PX automation controllers PXC00-U, Desigo PX automation controllers PXC22.1-E.D
2019-11-12
MEDIUM 0 SSA-898181 (Last Update: 2019-11-12): Desigo PX Web Remote Denial of Service Vulnerability
SIEMENS-SSA-898181
SSA-898181 (Last Update: 2019-11-12): Desigo PX Web Remote Denial of Service Vulnerability
2019-11-12
MEDIUM 6.5 ICSA-17-129-01 Siemens devices using the PROFINET Discovery and Configuration Protocol (Update K)
ICSA-17-129-01 · 1 CVE
Primary Setup Tool (PST), SIMATIC Automation Tool, SIMATIC NET PC-Software +18 more
2019-10-08
CRITICAL 9.1 ICSA-19-134-08 Siemens SIMATIC PCS7, WinCC, TIA Portal (Update D)
ICSA-19-134-08 · 3 CVEs
SIMATIC PCS 7 V8.0 and earlier, SIMATIC PCS 7 V8.1, SIMATIC PCS 7 V8.2 +11 more
2019-10-08
HIGH 7.2 ICSA-19-192-02 Siemens SIMATIC WinCC and PCS7 (Update C)
ICSA-19-192-02 · 1 CVE
SIMATIC PCS 7 V8.0 and earlier, SIMATIC PCS 7 V8.1, SIMATIC PCS 7 V8.2 +11 more
2019-10-08
MEDIUM 6.8 ICSA-19-281-04 Siemens SIMATIC IT UADM
ICSA-19-281-04 · 1 CVE
SIMATIC IT UADM
2019-10-08
MEDIUM 0 SSA-121293 (Last Update: 2019-10-08): Code Upload Vulnerability in SIMATIC WinCC and SIMATIC PCS 7
SIEMENS-SSA-121293
SSA-121293 (Last Update: 2019-10-08): Code Upload Vulnerability in SIMATIC WinCC and SIMATIC PCS 7
2019-10-08
MEDIUM 0 SSA-275839 (Last Update: 2019-10-08): Denial-of-Service Vulnerability in Industrial Products
SIEMENS-SSA-275839
SSA-275839 (Last Update: 2019-10-08): Denial-of-Service Vulnerability in Industrial Products
2019-10-08
MEDIUM 0 SSA-608355 (Last Update: 2019-10-08): Processor Vulnerabilities Affecting SIMATIC WinAC RTX (F) 2010
SIEMENS-SSA-608355
SSA-608355 (Last Update: 2019-10-08): Processor Vulnerabilities Affecting SIMATIC WinAC RTX (F) 2010
2019-10-08
MEDIUM 0 SSA-697412 (Last Update: 2019-10-08): Multiple Vulnerabilities in SIMATIC WinCC, SIMATIC WinCC Runtime, SIMATIC PCS 7, SIMATIC TIA Portal
SIEMENS-SSA-697412
SSA-697412 (Last Update: 2019-10-08): Multiple Vulnerabilities in SIMATIC WinCC, SIMATIC WinCC Runtime, SIMATIC PCS 7, SIMATIC TIA Portal
2019-10-08
MEDIUM 0 SSA-701708 (Last Update: 2019-10-08): Local Privilege Escalation in Industrial Products
SIEMENS-SSA-701708
SSA-701708 (Last Update: 2019-10-08): Local Privilege Escalation in Industrial Products
2019-10-08
MEDIUM 0 SSA-984700 (Last Update: 2019-10-08): Password Storage Vulnerability in SIMATIC IT UADM
SIEMENS-SSA-984700
SSA-984700 (Last Update: 2019-10-08): Password Storage Vulnerability in SIMATIC IT UADM
2019-10-08
HIGH 8.0 ICSA-19-253-02 Siemens SINETPLAN
ICSA-19-253-02 · 1 CVE
SINETPLAN
2019-09-10
HIGH 7.5 ICSA-19-253-04 Siemens IE-WSN-PA Link WirelessHART Gateway
ICSA-19-253-04 · 1 CVE
IE/WSN-PA Link WirelessHART Gateway
2019-09-10
HIGH 7.5 ICSA-19-253-05 Siemens SIMATIC TDC CP51M1
ICSA-19-253-05 · 1 CVE
SIMATIC TDC CP51M1
2019-09-10
HIGH 8.1 ICSA-19-260-02 Siemens SINEMA Remote Connect Server
ICSA-19-260-02 · 4 CVEs
SINEMA Remote Connect Server
2019-09-10
MEDIUM 0 SSA-187667 (Last Update: 2019-09-10): DejaBlue Vulnerabilities - Siemens Healthineers Products
SIEMENS-SSA-187667
SSA-187667 (Last Update: 2019-09-10): DejaBlue Vulnerabilities - Siemens Healthineers Products
2019-09-10
MEDIUM 0 SSA-191683 (Last Update: 2019-09-10): Cross-Site Scripting Vulnerability in IE/WSN-PA Link WirelessHART Gateway
SIEMENS-SSA-191683
SSA-191683 (Last Update: 2019-09-10): Cross-Site Scripting Vulnerability in IE/WSN-PA Link WirelessHART Gateway
2019-09-10
MEDIUM 0 SSA-250618 (Last Update: 2019-09-10): Denial-of-Service Vulnerability in SIMATIC TDC CP51M1
SIEMENS-SSA-250618
SSA-250618 (Last Update: 2019-09-10): Denial-of-Service Vulnerability in SIMATIC TDC CP51M1
2019-09-10
MEDIUM 0 SSA-834884 (Last Update: 2019-09-10): Vulnerability in SINETPLAN
SIEMENS-SSA-834884
SSA-834884 (Last Update: 2019-09-10): Vulnerability in SINETPLAN
2019-09-10
MEDIUM 0 SSA-884497 (Last Update: 2019-09-10): Multiple Vulnerabilities in SINEMA Remote Connect Server
SIEMENS-SSA-884497
SSA-884497 (Last Update: 2019-09-10): Multiple Vulnerabilities in SINEMA Remote Connect Server
2019-09-10
MEDIUM 4.7 ICSA-19-190-04 Siemens Spectrum Power (Update A)
ICSA-19-190-04 · 1 CVE
Spectrum Power 3 (Corporate User Interface), Spectrum Power 4 (Corporate User Interface), Spectrum Power 5 (Corporate User Interface) +1 more
2019-08-13
MEDIUM 0 SSA-747162 (Last Update: 2019-08-13): Cross-Site Scripting Vulnerability in Spectrum Power™
SIEMENS-SSA-747162
SSA-747162 (Last Update: 2019-08-13): Cross-Site Scripting Vulnerability in Spectrum Power™
2019-08-13
CRITICAL 9.1 ICSA-19-043-06 Siemens CP1604 and CP1616 (Update A)
ICSA-19-043-06 · 3 CVEs
CP 1604, CP 1616
2019-07-09
HIGH 8.0 ICSA-19-192-03 Siemens TIA Administrator (TIA Portal)
ICSA-19-192-03 · 1 CVE
TIA Administrator
2019-07-09
MEDIUM 5.9 ICSA-19-192-04 Siemens SIMATIC RF6XXR
ICSA-19-192-04 · 3 CVEs
SIMATIC RF615R, SIMATIC RF68XR
2019-07-09
MEDIUM 0 SSA-166360 (Last Update: 2019-07-09): Vulnerability in Advanced Therapy Products from Siemens Healthineers
SIEMENS-SSA-166360
SSA-166360 (Last Update: 2019-07-09): Vulnerability in Advanced Therapy Products from Siemens Healthineers
2019-07-09
MEDIUM 0 SSA-556833 (Last Update: 2019-07-09): TLS Vulnerabilities in SIMATIC RF6XXR
SIEMENS-SSA-556833
SSA-556833 (Last Update: 2019-07-09): TLS Vulnerabilities in SIMATIC RF6XXR
2019-07-09
MEDIUM 0 SSA-559174 (Last Update: 2019-07-09): Multiple Vulnerabilities in CP1604 and CP1616 devices
SIEMENS-SSA-559174
SSA-559174 (Last Update: 2019-07-09): Multiple Vulnerabilities in CP1604 and CP1616 devices
2019-07-09
MEDIUM 0 SSA-721298 (Last Update: 2019-07-09): Missing Authentication Vulnerability in TIA Administrator (TIA Portal)
SIEMENS-SSA-721298
SSA-721298 (Last Update: 2019-07-09): Missing Authentication Vulnerability in TIA Administrator (TIA Portal)
2019-07-09
MEDIUM 0 SSA-832947 (Last Update: 2019-07-09): Vulnerability in Laboratory Diagnostics Products from Siemens Healthineers
SIEMENS-SSA-832947
SSA-832947 (Last Update: 2019-07-09): Vulnerability in Laboratory Diagnostics Products from Siemens Healthineers
2019-07-09
HIGH 8.8 ICSA-19-162-01 Siemens Siveillance VMS
ICSA-19-162-01 · 3 CVEs
Siveillance VMS 2017 R2, Siveillance VMS 2018 R1, Siveillance VMS 2018 R2 +2 more
2019-06-11
MEDIUM 0 SSA-212009 (Last Update: 2019-06-11): Vulnerabilities in Siveillance VMS
SIEMENS-SSA-212009
SSA-212009 (Last Update: 2019-06-11): Vulnerabilities in Siveillance VMS
2019-06-11
MEDIUM 0 SSA-406175 (Last Update: 2019-05-24): Vulnerability in Siemens Healthineers Software Products
SIEMENS-SSA-406175
SSA-406175 (Last Update: 2019-05-24): Vulnerability in Siemens Healthineers Software Products
2019-05-24
MEDIUM 0 SSA-433987 (Last Update: 2019-05-24): Vulnerability in Radiation Oncology Products from Siemens Healthineers
SIEMENS-SSA-433987
SSA-433987 (Last Update: 2019-05-24): Vulnerability in Radiation Oncology Products from Siemens Healthineers
2019-05-24
MEDIUM 0 SSA-932041 (Last Update: 2019-05-24): Vulnerability in Radiography and Mobile X-ray Products from Siemens Healthineers
SIEMENS-SSA-932041
SSA-932041 (Last Update: 2019-05-24): Vulnerability in Radiography and Mobile X-ray Products from Siemens Healthineers
2019-05-24
CRITICAL 9.8 ICSA-19-134-02 Siemens SIMATIC WinCC and SIMATIC PCS 7
ICSA-19-134-02 · 1 CVE
SIMATIC PCS 7 V8.0 and earlier, SIMATIC PCS 7 V8.1 and newer, SIMATIC WinCC V7.2 and earlier +1 more
2019-05-14
HIGH 7.5 ICSA-19-134-05 Siemens SINAMICS PERFECT HARMONY GH180 Drives NXG I and NXG II
ICSA-19-134-05 · 1 CVE
SINAMICS PERFECT HARMONY GH180 with NXG I control, MLFBs: 6SR2...-, 6SR3...-, 6SR4...-, SINAMICS PERFECT HARMONY GH180 with NXG II control, MLFBs: 6SR2...-,6SR3...-, 6SR4...-
2019-05-14
HIGH 7.5 ICSA-19-134-06 Siemens SINAMICS PERFECT HARMONY GH180 Fieldbus Network
ICSA-19-134-06 · 1 CVE
SINAMICS PERFECT HARMONY GH180 with NXG I control, MLFBs: 6SR2...-,, SINAMICS PERFECT HARMONY GH180 with NXG II control, MLFBs: 6SR2...-,
2019-05-14
CRITICAL 9.8 ICSA-19-134-07 Siemens SCALANCE W1750D
ICSA-19-134-07 · 5 CVEs
SCALANCE W1750D
2019-05-14
MEDIUM 0 SSA-549547 (Last Update: 2019-05-14): Multiple Vulnerabilites in SCALANCE W1750D
SIEMENS-SSA-549547
SSA-549547 (Last Update: 2019-05-14): Multiple Vulnerabilites in SCALANCE W1750D
2019-05-14
MEDIUM 0 SSA-606525 (Last Update: 2019-05-14): Denial-of-Service Vulnerability in SINAMICS PERFECT HARMONY GH180 Ethernet Modbus Interface (G28)
SIEMENS-SSA-606525
SSA-606525 (Last Update: 2019-05-14): Denial-of-Service Vulnerability in SINAMICS PERFECT HARMONY GH180 Ethernet Modbus Interface (G28)
2019-05-14
MEDIUM 0 SSA-705517 (Last Update: 2019-05-14): Remote Code Execution Vulnerability in SIMATIC WinCC and SIMATIC PCS 7
SIEMENS-SSA-705517
SSA-705517 (Last Update: 2019-05-14): Remote Code Execution Vulnerability in SIMATIC WinCC and SIMATIC PCS 7
2019-05-14
MEDIUM 0 SSA-865156 (Last Update: 2019-05-14): Denial-of-Service Vulnerability in SINAMICS PERFECT HARMONY GH180 Fieldbus Network
SIEMENS-SSA-865156
SSA-865156 (Last Update: 2019-05-14): Denial-of-Service Vulnerability in SINAMICS PERFECT HARMONY GH180 Fieldbus Network
2019-05-14
MEDIUM 0 SSA-902727 (Last Update: 2019-05-14): Multiple Vulnerabilities in Licensing Software for SISHIP Automation Solutions
SIEMENS-SSA-902727
SSA-902727 (Last Update: 2019-05-14): Multiple Vulnerabilities in Licensing Software for SISHIP Automation Solutions
2019-05-14
MEDIUM 6.8 ICSA-17-318-01_Siemens SCALANCE, SIMATIC, RUGGEDCOM, and SINAMICS Products (Update F)
ICSA-17-318-01 · 10 CVEs
SIMATIC RF650M, SCALANCE W-700 (IEEE 802.11a/b/g), SIMATIC Mobile Panel 277(F) IWLAN +10 more
2019-04-09
CRITICAL 10.0 ICSA-19-099-02 Siemens Spectrum Power 4.7
ICSA-19-099-02 · 1 CVE
Spectrum Power 4
2019-04-09
CRITICAL 9.8 ICSA-19-099-05 Siemens RUGGEDCOM ROX II
ICSA-19-099-05 · 3 CVEs
RUGGEDCOM ROX II
2019-04-09
MEDIUM 0 SSA-324467 (Last Update: 2019-04-09): OS Command Injection in Spectrum Power 4.7
SIEMENS-SSA-324467
SSA-324467 (Last Update: 2019-04-09): OS Command Injection in Spectrum Power 4.7
2019-04-09
MEDIUM 0 SSA-451142 (Last Update: 2019-04-09): Multiple Vulnerabilities in RUGGEDCOM ROX II
SIEMENS-SSA-451142
SSA-451142 (Last Update: 2019-04-09): Multiple Vulnerabilities in RUGGEDCOM ROX II
2019-04-09
MEDIUM 0 SSA-844562 (Last Update: 2019-04-09): Multiple Vulnerabilities in Licensing Software for WinCC OA
SIEMENS-SSA-844562
SSA-844562 (Last Update: 2019-04-09): Multiple Vulnerabilities in Licensing Software for WinCC OA
2019-04-09
MEDIUM 0 SSA-901333 (Last Update: 2019-04-09): KRACK Attacks Vulnerabilities in Industrial Products
SIEMENS-SSA-901333
SSA-901333 (Last Update: 2019-04-09): KRACK Attacks Vulnerabilities in Industrial Products
2019-04-09
CRITICAL 10.0 ICSA-18-345-02 Siemens SINUMERIK Controllers (Update A)
ICSA-18-345-02 · 10 CVEs
SINUMERIK 808D V4.7, SINUMERIK 808D V4.8, SINUMERIK 828D V4.7 +2 more
2019-03-12
MEDIUM 0 SSA-170881 (Last Update: 2019-03-12): Vulnerabilities in SINUMERIK Controllers
SIEMENS-SSA-170881
SSA-170881 (Last Update: 2019-03-12): Vulnerabilities in SINUMERIK Controllers
2019-03-12
MEDIUM 6.5 ICSA-18-023-02 Siemens Industrial Products (Update A)
ICSA-18-023-02 · 1 CVE
Extension Unit 12" PROFINET, Extension Unit 15" PROFINET, Extension Unit 19" PROFINET +5 more
2019-02-12
HIGH 7.5 ICSA-18-067-02_Siemens SIPROTEC 4, SIPROTEC Compact, and Reyrolle Devices using the EN100 Ethernet Communication Module Extension (Update B)
ICSA-18-067-02 · 1 CVE
EN100 Ethernet module DNP3 variant, EN100 Ethernet module IEC 61850 variant, EN100 Ethernet module Modbus TCP variant +2 more
2019-02-12
HIGH 7.5 ICSA-18-347-02 Siemens EN100 Ethernet Communication Module and SIPROTEC 5 Relays (Update A)
ICSA-18-347-02 · 2 CVEs
Firmware variant IEC 61850 for EN100 Ethernet module, Firmware variant PROFINET IO for EN100 Ethernet module, Firmware variant Modbus TCP for EN100 Ethernet module +4 more
2019-02-12
MEDIUM 5.3 ICSA-19-038-01 Siemens SICAM A8000 RTU Series
ICSA-19-038-01 · 1 CVE
SICAM A8000 CP-8000, SICAM A8000 CP-802X, SICAM A8000 CP-8050
2019-02-12
HIGH 7.5 ICSA-19-043-02 Siemens EN100 Ethernet Communication Module and SIPROTEC 5 Relays
ICSA-19-043-02 · 1 CVE
Firmware variant IEC 61850 for EN100 Ethernet module, Firmware variant MODBUS TCP for EN100 Ethernet module, Firmware variant DNP3 TCP for EN100 Ethernet module +4 more
2019-02-12
MEDIUM 0 SSA-505225 (Last Update: 2019-02-12): Spectre Vulnerabilities in SIMATIC Industrial Thin Client V3
SIEMENS-SSA-505225
SSA-505225 (Last Update: 2019-02-12): Spectre Vulnerabilities in SIMATIC Industrial Thin Client V3
2019-02-12
MEDIUM 0 SSA-760124 (Last Update: 2019-02-12): Multiple Vulnerabilities in Licensing Software for SICAM 230
SIEMENS-SSA-760124
SSA-760124 (Last Update: 2019-02-12): Multiple Vulnerabilities in Licensing Software for SICAM 230
2019-02-12
MEDIUM 0 SSA-104088 (Last Update: 2019-02-12): Denial-of-Service Vulnerabilities in EN100 Ethernet Communication Module and SIPROTEC 5 relays
SIEMENS-SSA-104088
SSA-104088 (Last Update: 2019-02-12): Denial-of-Service Vulnerabilities in EN100 Ethernet Communication Module and SIPROTEC 5 relays
2019-02-12
MEDIUM 0 SSA-284673 (Last Update: 2019-02-12): Vulnerability in Industrial Products
SIEMENS-SSA-284673
SSA-284673 (Last Update: 2019-02-12): Vulnerability in Industrial Products
2019-02-12
MEDIUM 0 SSA-579309 (Last Update: 2019-02-12): Denial-of-Service in SICAM A8000 Series
SIEMENS-SSA-579309
SSA-579309 (Last Update: 2019-02-12): Denial-of-Service in SICAM A8000 Series
2019-02-12
MEDIUM 0 SSA-635129 (Last Update: 2019-02-12): Denial-of-Service Vulnerabilities in EN100 Ethernet Communication Module and SIPROTEC 5 relays
SIEMENS-SSA-635129
SSA-635129 (Last Update: 2019-02-12): Denial-of-Service Vulnerabilities in EN100 Ethernet Communication Module and SIPROTEC 5 relays
2019-02-12
MEDIUM 0 SSA-845879 (Last Update: 2019-02-12): Firmware Downgrade Vulnerability in EN100 Ethernet Communication Module for SIPROTEC 4, SIPROTEC Compact and Reyrolle
SIEMENS-SSA-845879
SSA-845879 (Last Update: 2019-02-12): Firmware Downgrade Vulnerability in EN100 Ethernet Communication Module for SIPROTEC 4, SIPROTEC Compact and Reyrolle
2019-02-12
HIGH 7.5 ICSA-19-038-02 Siemens EN100 Ethernet Module
ICSA-19-038-02 · 2 CVEs
Firmware variant IEC 61850 for EN100 Ethernet module
2019-01-08
MEDIUM 0 SSA-325546 (Last Update: 2019-01-08): Denial-of-Service Vulnerabilities in EN100 Ethernet Communication Module of SWT3000
SIEMENS-SSA-325546
SSA-325546 (Last Update: 2019-01-08): Denial-of-Service Vulnerabilities in EN100 Ethernet Communication Module of SWT3000
2019-01-08
HIGH 7.1 ICSA-18-345-01 McAfee SINAMICS PERFECT HARMONY GH180
ICSA-18-345-01 · 1 CVE
SINAMICS PERFECT HARMONY GH180 Drives, SINAMICS PERFECT HARMONY GH180 Drives, SINAMICS PERFECT HARMONY GH180 Drives +5 more
2018-12-11
MEDIUM 0 SSA-674165 (Last Update: 2018-12-11): Vulnerability in McAfee MACC product for SINAMICS PERFECT HARMONY GH180 drives
SIEMENS-SSA-674165
SSA-674165 (Last Update: 2018-12-11): Vulnerability in McAfee MACC product for SINAMICS PERFECT HARMONY GH180 drives
2018-12-11
MEDIUM 4.2 ICSA-18-317-01 Siemens IEC 61850 System Configurator, DIGSI 5, DIGSI 4, SICAM PAS/PQS, SICAM PQ Analyzer, and SICAM SCC
ICSA-18-317-01 · 1 CVE
IEC 61850 system configurator, DIGSI 5 (affected as IEC 61850 system configurator is incorporated), DIGSI 4 +3 more
2018-11-13
MEDIUM 4.7 ICSA-18-317-04 Siemens SCALANCE S
ICSA-18-317-04 · 1 CVE
SCALANCE S602, SCALANCE S612, SCALANCE S623 +1 more
2018-11-13
MEDIUM 4.0 ICSA-18-317-06 Siemens SIMATIC STEP 7 (TIA Portal)
ICSA-18-317-06 · 1 CVE
SIMATIC STEP 7 (TIA Portal)
2018-11-13
HIGH 7.7 ICSA-18-317-07 Siemens SIMATIC IT Production Suite
ICSA-18-317-07 · 1 CVE
SIMATIC IT LMS, SIMATIC IT Production Suite, SIMATIC IT UA Discrete Manufacturing +4 more
2018-11-13
MEDIUM 0 SSA-242982 (Last Update: 2018-11-13): Cross-Site Scripting Vulnerability in SCALANCE S
SIEMENS-SSA-242982
SSA-242982 (Last Update: 2018-11-13): Cross-Site Scripting Vulnerability in SCALANCE S
2018-11-13
MEDIUM 0 SSA-621493 (Last Update: 2018-11-13): Password Storage Vulnerability in SIMATIC STEP7 (TIA Portal)
SIEMENS-SSA-621493
SSA-621493 (Last Update: 2018-11-13): Password Storage Vulnerability in SIMATIC STEP7 (TIA Portal)
2018-11-13
MEDIUM 0 SSA-886615 (Last Update: 2018-11-13): Vulnerability in SIMATIC IT Production Suite
SIEMENS-SSA-886615
SSA-886615 (Last Update: 2018-11-13): Vulnerability in SIMATIC IT Production Suite
2018-11-13
MEDIUM 0 SSA-159860 (Last Update: 2018-11-13): Access Control Vulnerability in IEC 61850 system configurator, DIGSI 5, DIGSI 4, SICAM PAS/PQS, SICAM PQ Analyzer, and SICAM SCC
SIEMENS-SSA-159860
SSA-159860 (Last Update: 2018-11-13): Access Control Vulnerability in IEC 61850 system configurator, DIGSI 5, DIGSI 4, SICAM PAS/PQS, SICAM PQ Analyzer, and SICAM SCC
2018-11-13
MEDIUM 4.0 Siemens SIMATIC WinCC OA Operator IOS App (Update A)
ICSA-18-109-01 · 1 CVE
SIMATIC WinCC OA Operator iOS App
2018-10-09
HIGH 8.6 ICSA-18-226-01 Siemens SIMATIC STEP 7 and SIMATIC WinCC (Update A)
ICSA-18-226-01 · 2 CVEs
SIMATIC STEP 7 (TIA Portal) and WinCC (TIA Portal) V10, V11, V12, SIMATIC STEP 7 (TIA Portal) and WinCC (TIA Portal) V13, SIMATIC STEP 7 (TIA Portal) and WinCC (TIA Portal) V14 +1 more
2018-10-09
MEDIUM 5.9 ICSA-18-282-02 Siemens SCALANCE W1750D
ICSA-18-282-02 · 1 CVE
SCALANCE W1750D
2018-10-09
HIGH 8.8 ICSA-18-282-03 Siemens ROX II
ICSA-18-282-03 · 2 CVEs
ROX II
2018-10-09
MEDIUM 0 SSA-493830 (Last Update: 2018-10-09): Privilege Escalation in ROX II
SIEMENS-SSA-493830
SSA-493830 (Last Update: 2018-10-09): Privilege Escalation in ROX II
2018-10-09
MEDIUM 0 SSA-464260 (Last Update: 2018-10-09): TLS ROBOT vulnerability in SCALANCE W1750D
SIEMENS-SSA-464260
SSA-464260 (Last Update: 2018-10-09): TLS ROBOT vulnerability in SCALANCE W1750D
2018-10-09
MEDIUM 0 SSA-597741 (Last Update: 2018-10-09): Vulnerability in iOS App SIMATIC WinCC OA Operator
SIEMENS-SSA-597741
SSA-597741 (Last Update: 2018-10-09): Vulnerability in iOS App SIMATIC WinCC OA Operator
2018-10-09
MEDIUM 0 SSA-979106 (Last Update: 2018-10-09): Vulnerabilities in SIMATIC STEP 7 (TIA Portal) and SIMATIC WinCC (TIA Portal)
SIEMENS-SSA-979106
SSA-979106 (Last Update: 2018-10-09): Vulnerabilities in SIMATIC STEP 7 (TIA Portal) and SIMATIC WinCC (TIA Portal)
2018-10-09
HIGH 7.3 ICSA-18-254-03 Siemens TD Keypad Designer
ICSA-18-254-03 · 1 CVE
SIEMENS TD Keypad Designer
2018-09-11
CRITICAL 9.1 ICSA-18-254-04 Siemens SIMATIC WinCC OA
ICSA-18-254-04 · 1 CVE
SIMATIC WinCC OA V3.14 and prior
2018-09-11
MEDIUM 0 SSA-346256 (Last Update: 2018-09-11): Vulnerability in SIMATIC WinCC OA V3.14 and prior
SIEMENS-SSA-346256
SSA-346256 (Last Update: 2018-09-11): Vulnerability in SIMATIC WinCC OA V3.14 and prior
2018-09-11
MEDIUM 0 SSA-198330 (Last Update: 2018-09-11): Local Privilege Escalation in TD Keypad Designer
SIEMENS-SSA-198330
SSA-198330 (Last Update: 2018-09-11): Local Privilege Escalation in TD Keypad Designer
2018-09-11
HIGH 8.8 ICSA-18-226-03 Siemens Automation License Manager
ICSA-18-226-03 · 2 CVEs
Automation License Manager 5, Automation License Manager 6
2018-08-07
MEDIUM 0 SSA-920962 (Last Update: 2018-08-07): Vulnerabilities in Automation License Manager
SIEMENS-SSA-920962
SSA-920962 (Last Update: 2018-08-07): Vulnerabilities in Automation License Manager
2018-08-07
MEDIUM 0 SSA-197012 (Last Update: 2018-07-03): Vulnerabilities in SICLOCK central plant clocks
SIEMENS-SSA-197012
SSA-197012 (Last Update: 2018-07-03): Vulnerabilities in SICLOCK central plant clocks
2018-07-03
MEDIUM 0 SSA-755010 (Last Update: 2018-06-26): Vulnerability in RAPIDLab 1200 and RAPIDPoint 400/500 Blood Gas Analyzers
SIEMENS-SSA-755010
SSA-755010 (Last Update: 2018-06-26): Vulnerability in RAPIDLab 1200 and RAPIDPoint 400/500 Blood Gas Analyzers
2018-06-26
MEDIUM 0 SSA-966341 (Last Update: 2018-06-19): SMBv1 Vulnerabilities in Molecular Diagnostics Products from Siemens Healthineers
SIEMENS-SSA-966341
SSA-966341 (Last Update: 2018-06-19): SMBv1 Vulnerabilities in Molecular Diagnostics Products from Siemens Healthineers
2018-06-19
CRITICAL 9.0 ICSA-17-045-03 Siemens SIMATIC Authentication Bypass (Update D)
ICSA-17-045-03 · 1 CVE
SIMATIC Logon, SIMATIC WinCC, SIMATIC WinCC Runtime Professional +3 more
2018-06-12
HIGH 8.6 ICSA-17-187-03F Siemens SIPROTEC 4 and SIPROTEC Compact (Update F)
ICSA-17-187-03F · 6 CVEs
Firmware variant PROFINET IO for EN100 Ethernet module, Firmware variant Modbus TCP for EN100 Ethernet module, Firmware variant DNP3 TCP for EN100 Ethernet module +10 more
2018-06-12
MEDIUM 4.9 ICSA-17-306-01 Siemens SIMATIC PCS 7 (Update A)
ICSA-17-306-01 · 1 CVE
SIMATIC PCS 7 V8.1, SIMATIC PCS 7 V8.2
2018-06-12
MEDIUM 0 SSA-323211 (Last Update: 2018-06-12): Vulnerabilities in SIPROTEC 4 and SIPROTEC Compact Devices
SIEMENS-SSA-323211
SSA-323211 (Last Update: 2018-06-12): Vulnerabilities in SIPROTEC 4 and SIPROTEC Compact Devices
2018-06-12
MEDIUM 0 SSA-977428 (Last Update: 2018-06-12): Vulnerabilities in SCALANCE M875
SIEMENS-SSA-977428
SSA-977428 (Last Update: 2018-06-12): Vulnerabilities in SCALANCE M875
2018-06-12
MEDIUM 0 SSA-566773 (Last Update: 2018-06-12): Vulnerabilities in Building Technologies Products
SIEMENS-SSA-566773
SSA-566773 (Last Update: 2018-06-12): Vulnerabilities in Building Technologies Products
2018-06-12
MEDIUM 0 SSA-523365 (Last Update: 2018-06-12): Vulnerability in SIMATIC PCS 7
SIEMENS-SSA-523365
SSA-523365 (Last Update: 2018-06-12): Vulnerability in SIMATIC PCS 7
2018-06-12
MEDIUM 0 SSA-931064 (Last Update: 2018-06-12): Authentication Bypass in SIMATIC Logon
SIEMENS-SSA-931064
SSA-931064 (Last Update: 2018-06-12): Authentication Bypass in SIMATIC Logon
2018-06-12
HIGH 8.1 ICSA-18-128-02 Siemens Siveillance VMS (Update A)
ICSA-18-128-02 · 1 CVE
Siveillance VMS 2016 R1 and prior, Siveillance VMS 2016 R2, Siveillance VMS 2016 R3 +3 more
2018-05-23
MEDIUM 0 SSA-457058 (Last Update: 2018-05-23): .NET Security Vulnerability in Siveillance VMS
SIEMENS-SSA-457058
SSA-457058 (Last Update: 2018-05-23): .NET Security Vulnerability in Siveillance VMS
2018-05-23
MEDIUM 0 SSA-547990 (Last Update: 2018-05-15): Information Disclosure Vulnerabilities in SIPROTEC 4 and SIPROTEC Compact
SIEMENS-SSA-547990
SSA-547990 (Last Update: 2018-05-15): Information Disclosure Vulnerabilities in SIPROTEC 4 and SIPROTEC Compact
2018-05-15
HIGH 8.1 Siemens SCALANCE W1750D, M800, S615, and RUGGEDCOM RM1224 (Update C)
ICSA-17-332-01 · 4 CVEs
RUGGEDCOM RM1224, SCALANCE M-800 / S615, SCALANCE W1750D
2018-05-09
MEDIUM 4.8 ICSA-18-128-03 Siemens Siveillance VMS Video Mobile App
ICSA-18-128-03 · 1 CVE
Siveillance VMS Video for Android, Siveillance VMS Video for iOS
2018-05-03
MEDIUM 0 SSA-468514 (Last Update: 2018-05-03): Improper Certificate Validation Vulnerability in Siveillance VMS Video Mobile App for Android and iOS
SIEMENS-SSA-468514
SSA-468514 (Last Update: 2018-05-03): Improper Certificate Validation Vulnerability in Siveillance VMS Video Mobile App for Android and iOS
2018-05-03
HIGH 8.2 ICSA-18-060-01_Siemens SIMATIC, SIMOTION, and SINUMERIK (Update A)
ICSA-18-060-01 · 3 CVEs
SINUMERIK PCU50.5-P WINXP, SINUMERIK PCU50.5-C WINXP, SIMATIC IPC477D PRO +24 more
2018-04-19
CRITICAL 9.8 ICSA-18-093-01 Siemens Building Technologies Products (Update A)
ICSA-18-093-01 · 8 CVEs
License Management System (LMS), Annual Shading, Desigo ABT +5 more
2018-04-03
MEDIUM 0 SSA-727467 (Last Update: 2018-04-03): Vulnerabilities in Building Technologies Products
SIEMENS-SSA-727467
SSA-727467 (Last Update: 2018-04-03): Vulnerabilities in Building Technologies Products
2018-04-03
MEDIUM 5.1 ICSA-18-081-01 Siemens SIMATIC WinCC OA UI Mobile App
ICSA-18-081-01 · 1 CVE
SIMATIC WinCC OA UI for Android, SIMATIC WinCC OA UI for iOS
2018-03-20
MEDIUM 0 SSA-822928 (Last Update: 2018-03-20): Access Control Vulnerability in SIMATIC WinCC OA UI Mobile App for Android and iOS
SIEMENS-SSA-822928
SSA-822928 (Last Update: 2018-03-20): Access Control Vulnerability in SIMATIC WinCC OA UI Mobile App for Android and iOS
2018-03-20
CRITICAL 9.8 ICSA-18-018-01A Siemens SIMATIC WinCC Add-On (Update A)
ICSA-18-018-01A · 8 CVEs
SIMATIC WinCC Add-On Historian CONNECT ALARM, SIMATIC WinCC Add-On PI CONNECT ALARM, SIMATIC WinCC Add-On PI CONNECT AUDIT TRAIL +13 more
2018-02-22
MEDIUM 0 SSA-701903 (Last Update: 2018-02-22): SMBv1 Vulnerabilities in Ultrasound Products from Siemens Healthineers
SIEMENS-SSA-701903
SSA-701903 (Last Update: 2018-02-22): SMBv1 Vulnerabilities in Ultrasound Products from Siemens Healthineers
2018-02-22
MEDIUM 0 SSA-127490 (Last Update: 2018-02-22): Vulnerabilities in SIMATIC WinCC Add-Ons
SIEMENS-SSA-127490
SSA-127490 (Last Update: 2018-02-22): Vulnerabilities in SIMATIC WinCC Add-Ons
2018-02-22
HIGH 8.8 Siemens TeleControl Server Basic
ICSA-18-030-02 · 3 CVEs
TeleControl Server Basic
2018-01-30
MEDIUM 0 SSA-651454 (Last Update: 2018-01-25): Vulnerabilities in TeleControl Server Basic
SIEMENS-SSA-651454
SSA-651454 (Last Update: 2018-01-25): Vulnerabilities in TeleControl Server Basic
2018-01-25
MEDIUM 5.9 Siemens LOGO! Soft Comfort
ICSA-17-353-04 · 1 CVE
LOGO! Soft Comfort
2017-12-19
MEDIUM 5.3 Siemens SWT3000
ICSA-17-334-01 · 5 CVEs
TPOP firmware, IEC 61850 firmware
2017-11-30
CRITICAL 9.8 Siemens SICAM
ICSA-17-320-02 · 3 CVEs
SICAM RTUs SM-2556 COM Modules with the firmware variants ENOS00 ERAC00 ETA2 ETLS00 MODi00 DNPi00
2017-11-16
CRITICAL 9.8 Siemens 7KT PAC1200 Data Manager
ICSA-17-278-02 · 1 CVE
7KT PAC1200 data manager
2017-10-05
MEDIUM 4.3 Siemens 7KM PAC Switched Ethernet
ICSA-17-243-03 · 1 CVE
7KM PAC Switched Ethernet PROFINET expansion module
2017-08-31
CRITICAL 9.8 ICSMA-17-215-01_Siemens Molecular Imaging Vulnerabilities
ICSMA-17-215-01 · 2 CVEs
Siemens SPECT Workplaces/Symbia.net Windows XP-Based, Siemens SPECT/CT Systems Windows XP-Based, Siemens SPECT Systems Windows XP-Based +1 more
2017-08-03
CRITICAL 9.8 ICSMA-17-215-02_Siemens Molecular Imaging Vulnerabilities
ICSMA-17-215-02 · 4 CVEs
Siemens PET/CT Systems Windows 7-Based, Siemens SPECT/CT Systems Windows 7-Based, Siemens SPECT Workplaces/Symbia.net Windows 7-Based +1 more
2017-08-03
CRITICAL 9.8 Siemens SiPass integrated
ICSA-17-194-01 · 4 CVEs
SiPass integrated
2017-07-13
HIGH 7.4 Siemens SIMATIC Sm@rtClient Android App
ICSA-17-194-03 · 2 CVEs
SIMATIC WinCC Sm@rtClient Lite for Android, SIMATIC WinCC Sm@rtClient for Android
2017-07-13
CRITICAL 9.8 ICSA-17-180-01A_Siemens SIMATIC Industrial PCs, SINUMERIK Panel Control Unit, and SIMOTION P320 (Update A)
ICSA-17-180-01A · 1 CVE
SINUMERIK Panel Control Unit (PCU), SIMATIC Industrial PCs, SIMOTION P320
2017-07-11
MEDIUM 5.3 Siemens SIMATIC Logon
ICSA-17-192-01 · 1 CVE
SIMATIC Logon
2017-07-11
HIGH 7.4 Siemens OZW672 and OZW772
ICSA-17-187-01 · 2 CVEs
OZW672, OZW772
2017-07-06
HIGH 7.5 Siemens Reyrolle
ICSA-17-187-02 · 5 CVEs
EN100 Ethernet modules as optional for Reyrolle
2017-07-06
CRITICAL 9.8 Siemens Viewport for Web Office Portal
ICSA-17-180-03 · 1 CVE
ViewPort for Web Office Portal
2017-06-29
CRITICAL 9.8 Siemens SIMATIC CP 44x-1 Redundant Network Access Modules
ICSA-17-173-01 · 1 CVE
SIMATIC CP 44x-1 RNA
2017-06-22
MEDIUM 6.5 Siemens XHQ
ICSA-17-173-02 · 1 CVE
XHQ 4, XHQ 5
2017-06-22
MEDIUM 4.9 Siemens SIMATIC WinCC and SIMATIC WinCC Runtime Professional
ICSA-17-129-03 · 1 CVE
SIMATIC WinCC Runtime Professional / SIMATIC WinCC (TIA Portal) Professional, SIMATIC WinCC Runtime Professional / SIMATIC WinCC (TIA Portal) Professional, SIMATIC WinCC +1 more
2017-05-09
HIGH 8.8 Siemens RUGGEDCOM ROX I
ICSA-17-087-01 · 5 CVEs
RUGGEDCOM ROX I
2017-03-28
HIGH 7.4 Siemens SINUMERIK Integrate and SINUMERIK Operate
ICSA-17-061-03 · 1 CVE
SINUMERIK Integrate Operate Client, SINUMERIK Integrate Operate client, SINUMERIK Integrate Operate client +2 more
2017-03-02
HIGH 8.8 Siemens RUGGEDCOM NMS
ICSA-17-059-01 · 2 CVEs
RUGGEDCOM NMS
2017-02-28

Get Siemens Vulnerability Alerts

Don't check manually — OTWarden emails you when CISA publishes new Siemens ICS advisories, filtered to your specific equipment.

Start 14-Day Free Trial →