Siemens
siemens
2,161 CVEs • 4,155 products
Products (4,155)
Click to collapseToggle
Products (4,155)
Click to collapse
CVEs (2,161)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Siemens 10Sinumerik Analyse Mycondition Firmware Sinumerik Analyze Myperformance FirmwareSinumerik Integrate Client Firmware+7 moreJun 17, 2026 Jul 13, 2021 N/A· v4 7.4 HIGH· v3 5.8 MEDIUM· v2 A vulnerability has been identified in SINUMERIK Analyse MyCondition (All versions), SINUMERIK Analyze MyPerformance (All versions), SINUMERIK Analyze MyPerformance /OEE-Monitor (All versions), SINUMERIK Analyze MyPerfor...Show more |
1Siemens 3Rwg1.m12 Firmware Rwg1.m12d FirmwareRwg1.m8 FirmwareJun 17, 2026 Jul 13, 2021 N/A· v4 4.3 MEDIUM· v3 3.3 LOW· v2 A vulnerability has been identified in RWG1.M12 (All versions < V1.16.16), RWG1.M12D (All versions < V1.16.16), RWG1.M8 (All versions < V1.16.16). Sending specially crafted ARP packets to an affected device could cause a...Show more |
1Siemens 78Dk Standard Ethernet Controller Evaluation Kit Firmware Ek Ertec 200 Evaulation Kit FirmwareEk Ertec 200p Evaluation Kit Firmware+75 moreJun 17, 2026 Jul 13, 2021 8.7 HIGH· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 Affected devices contain a vulnerability that allows an unauthenticated attacker to trigger a denial of service condition. The vulnerability can be triggered if a large amount of DCP reset packets are sent to the device. |
2Nodejs Siemens2Node.js Sinec Infrastructure Network ServicesJun 17, 2026 Jul 12, 2021 N/A· v4 7.8 HIGH· v3 4.4 MEDIUM· v2 Node.js before 16.4.1, 14.17.2, and 12.22.2 is vulnerable to local privilege escalation attacks under certain conditions on Windows platforms. More specifically, improper configuration of permissions in the installation...Show more |
2Nodejs Siemens2Node.js Sinec Infrastructure Network ServicesJun 17, 2026 Jul 12, 2021 N/A· v4 5.3 MEDIUM· v3 5.0 MEDIUM· v2 Node.js before 16.4.1, 14.17.2, 12.22.2 is vulnerable to an out-of-bounds read when uv__idna_toascii() is used to convert strings to ASCII. The pointer p is read and increased without checking whether it is beyond pe, wi...Show more |
1Siemens 3Sinamics Sl150 Firmware Sinamics Sm150 FirmwareSinamics Sm150i FirmwareJun 17, 2026 Jun 28, 2021 N/A· v4 9.8 CRITICAL· v3 6.8 MEDIUM· v2 The Telnet service of the SIMATIC HMI Comfort Panels system component in affected products does not require authentication, which may allow a remote attacker to gain access to the device if the service is enabled. Telnet...Show more |
2Opendesign Siemens4Comos Drawings SdkJt2go+1 moreJun 17, 2026 Jun 17, 2021 N/A· v4 7.8 HIGH· v3 6.8 MEDIUM· v2 An out-of-bounds write issue exists in the DGN file-reading procedure in the Drawings SDK (Version 2022.4 and prior) resulting from the lack of proper validation of user-supplied data. This can result in a write past the...Show more |
2Opendesign Siemens4Comos Drawings SdkJt2go+1 moreJun 17, 2026 Jun 17, 2021 N/A· v4 7.1 HIGH· v3 5.8 MEDIUM· v2 An out-of-bounds read issue exists within the parsing of DXF files in the Drawings SDK (All versions prior to 2022.4) resulting from the lack of proper validation of user-supplied data. This can result in a read past the...Show more |
2Opendesign Siemens4Comos Drawings SdkJt2go+1 moreJun 17, 2026 Jun 17, 2021 N/A· v4 7.8 HIGH· v3 6.8 MEDIUM· v2 An out-of-bounds write issue exists in the DWG file-reading procedure in the Drawings SDK (All versions prior to 2022.4) resulting from the lack of proper validation of user-supplied data. This can result in a write past...Show more |
2Opendesign Siemens4Comos Drawings SdkJt2go+1 moreJun 17, 2026 Jun 17, 2021 N/A· v4 7.8 HIGH· v3 6.8 MEDIUM· v2 A use-after-free issue exists in the DGN file-reading procedure in the Drawings SDK (All versions prior to 2022.4) resulting from the lack of proper validation of user-supplied data. This can result in a memory corruptio...Show more |
2Opendesign Siemens4Comos Drawings SdkJt2go+1 moreJun 17, 2026 Jun 17, 2021 N/A· v4 7.1 HIGH· v3 5.8 MEDIUM· v2 An out-of-bounds read issue exists in the DWG file-recovering procedure in the Drawings SDK (All versions prior to 2022.5) resulting from the lack of proper validation of user-supplied data. This can result in a read pas...Show more |
2Opendesign Siemens4Comos Drawings SdkJt2go+1 moreJun 17, 2026 Jun 17, 2021 N/A· v4 7.1 HIGH· v3 5.8 MEDIUM· v2 Drawings SDK (All versions prior to 2022.4) are vulnerable to an out-of-bounds read due to parsing of DWG files resulting from the lack of proper validation of user-supplied data. This can result in a read past the end o...Show more |
2Opendesign Siemens4Comos Drawings SdkJt2go+1 moreJun 17, 2026 Jun 17, 2021 N/A· v4 7.8 HIGH· v3 6.8 MEDIUM· v2 An out-of-bounds write issue exists in the DXF file-recovering procedure in the Drawings SDK (All versions prior to 2022.4) resulting from the lack of proper validation of user-supplied data. This can result in a write p...Show more |
2Opendesign Siemens4Comos Drawings SdkJt2go+1 moreJun 17, 2026 Jun 17, 2021 N/A· v4 7.8 HIGH· v3 6.8 MEDIUM· v2 An improper check for unusual or exceptional conditions issue exists within the parsing DGN files from Drawings SDK (Version 2022.4 and prior) resulting from the lack of proper validation of the user-supplied data. This...Show more |
2Insyde Siemens17Insydeh2o Ruggedcom Apr1808 FirmwareSimatic Field Pg M5 Firmware+14 moreJun 17, 2026 Jun 16, 2021 N/A· v4 6.7 MEDIUM· v3 7.2 HIGH· v2 In the kernel in Insyde InsydeH2O 5.x, certain SMM drivers did not correctly validate the CommBuffer and CommBufferSize parameters, allowing callers to corrupt either the firmware or the OS memory. The fixed versions for...Show more |
2Siemens Wibu3Codemeter Pss CapeSicam 230 FirmwareJun 17, 2026 Jun 16, 2021 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 A denial of service vulnerability exists in Wibu-Systems CodeMeter versions < 7.21a. An unauthenticated remote attacker can exploit this issue to crash the CodeMeter Runtime Server. |
2Siemens Wibu10Codemeter Pss CapeSicam 230 Firmware+7 moreJun 17, 2026 Jun 16, 2021 N/A· v4 9.1 CRITICAL· v3 6.4 MEDIUM· v2 A buffer over-read vulnerability exists in Wibu-Systems CodeMeter versions < 7.21a. An unauthenticated remote attacker can exploit this issue to disclose heap memory contents or crash the CodeMeter Runtime Server. |
1Siemens 3Sinamics Sl150 Firmware Sinamics Sm150 FirmwareSinamics Sm150i FirmwareJun 17, 2026 Jun 15, 2021 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 SINAMICS medium voltage routable products are affected by a vulnerability in the Sm@rtServer component for remote access that could allow an unauthenticated attacker to cause a denial-of-service condition, and/or executi...Show more |
5Haxx NetappOracle+2 more26Active Iq Unified Manager Cloud BackupCommunications Cloud Native Core Binding Support Function+23 moreJun 17, 2026 Jun 11, 2021 N/A· v4 8.1 HIGH· v3 6.8 MEDIUM· v2 curl 7.75.0 through 7.76.1 suffers from a use-after-free vulnerability resulting in already freed memory being used when a TLS 1.3 session ticket arrives over a connection. A malicious server can use this in rare unfortu...Show more |
6Debian FedoraprojectHaxx+3 more12Communications Cloud Native Core Binding Support Function Communications Cloud Native Core Network Function Cloud Native EnvironmentCommunications Cloud Native Core Network Repository Function+9 moreJun 17, 2026 Jun 11, 2021 N/A· v4 3.1 LOW· v3 2.6 LOW· v2 curl 7.7 through 7.76.1 suffers from an information disclosure when the `-t` command line option, known as `CURLOPT_TELNETOPTIONS` in libcurl, is used to send variable=content pairs to TELNET servers. Due to a flaw in th...Show more |