Siemens
siemens
2,179 CVEs • 4,170 products
Products (4,170)
Click to collapseToggle
Products (4,170)
Click to collapse
CVEs (2,179)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
A vulnerability has been identified in Solid Edge SE2020 (All versions < SE2020MP13), Solid Edge SE2021 (All Versions < SE2021MP4). Affected applications lack proper validation of user-supplied data when parsing DFT file...Show more |
1Siemens 7Simatic Mv420 Sr B Body Firmware Simatic Mv420 Sr B FirmwareSimatic Mv420 Sr P Body Firmware+4 moreJun 17, 2026 Mar 15, 2021 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 A vulnerability has been identified in SIMATIC MV400 family (All Versions < V7.0.6). The underlying TCP stack of the affected products does not correctly validate the sequence number for incoming TCP RST packages. An att...Show more |
1Siemens 1Sinema Remote Connect Server Jun 17, 2026 Mar 15, 2021 N/A· v4 8.8 HIGH· v3 6.5 MEDIUM· v2 A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V3.0). Unpriviledged users can access services when guessing the url. An attacker could impact availability, integrity and gain informat...Show more |
1Siemens 1Sinema Remote Connect Server Jun 17, 2026 Mar 15, 2021 N/A· v4 8.8 HIGH· v3 6.5 MEDIUM· v2 A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V3.0). The webserver could allow unauthorized actions via special urls for unpriviledged users. The settings of the UMC authorization se...Show more |
1Siemens 1Logo! 8 Bm Firmware Jun 17, 2026 Mar 15, 2021 N/A· v4 5.5 MEDIUM· v3 4.9 MEDIUM· v2 A vulnerability has been identified in LOGO! 12/24RCE (6ED1052-1MD08-0BA1) (All versions), LOGO! 12/24RCEo (6ED1052-2MD08-0BA1) (All versions), LOGO! 230RCE (6ED1052-1FB08-0BA1) (All versions), LOGO! 230RCEo (6ED1052-2FB...Show more |
3Oracle SiemensSsri Project3Graalvm Sinec Infrastructure Network ServicesSsriJun 17, 2026 Mar 12, 2021 N/A· v4 7.5 HIGH· v3 4.3 MEDIUM· v2 ssri 5.2.2-8.0.0, fixed in 8.0.1, processes SRIs using a regular expression which is vulnerable to a denial of service. Malicious SRIs could take an extremely long time to process, leading to denial of service. This issu...Show more |
2Siemens Windriver8Sgt 100 Firmware Sgt 200 FirmwareSgt 300 Firmware+5 moreNov 21, 2024 Mar 11, 2021 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 A DNS client stack-based buffer overflow in ipdnsc_decode_name() affects Wind River VxWorks 6.5 through 7. NOTE: This vulnerability only affects products that are no longer supported by the maintainer |
1Siemens 2Simatic Mv420 Firmware Simatic Mv440 FirmwareJun 17, 2026 Mar 10, 2021 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 In SIMATIC MV400 family versions prior to v7.0.6, the ISN generator is initialized with a constant value and has constant increments. An attacker could predict and hijack TCP sessions. |
5Fedoraproject NetappNodejs+2 more13Active Iq Unified Manager E Series Performance AnalyzerFedora+10 moreJun 17, 2026 Mar 3, 2021 N/A· v4 7.5 HIGH· v3 5.1 MEDIUM· v2 Node.js before 10.24.0, 12.21.0, 14.16.0, and 15.10.0 is vulnerable to DNS rebinding attacks as the whitelist includes “localhost6”. When “localhost6” is not present in /etc/hosts, it is just an ordinary domain that is r...Show more |
5Fedoraproject NetappNodejs+2 more9E Series Performance Analyzer FedoraGraalvm+6 moreJun 17, 2026 Mar 3, 2021 N/A· v4 7.5 HIGH· v3 7.8 HIGH· v2 Node.js before 10.24.0, 12.21.0, 14.16.0, and 15.10.0 is vulnerable to a denial of service attack when too many connection attempts with an 'unknownProtocol' are established. This leads to a leak of file descriptors. If...Show more |
2Luxion Siemens6Keyshot Keyshot Network RenderingKeyshot Viewer+3 moreJun 17, 2026 Feb 23, 2021 N/A· v4 7.8 HIGH· v3 6.8 MEDIUM· v2 When loading a specially crafted file, Luxion KeyShot versions prior to 10.1, Luxion KeyShot Viewer versions prior to 10.1, Luxion KeyShot Network Rendering versions prior to 10.1, and Luxion KeyVR versions prior to 10.1...Show more |
2Luxion Siemens6Keyshot Keyshot Network RenderingKeyshot Viewer+3 moreJun 17, 2026 Feb 23, 2021 N/A· v4 7.8 HIGH· v3 6.8 MEDIUM· v2 Luxion KeyShot versions prior to 10.1, Luxion KeyShot Viewer versions prior to 10.1, Luxion KeyShot Network Rendering versions prior to 10.1, and Luxion KeyVR versions prior to 10.1 have multiple NULL pointer dereference...Show more |
2Luxion Siemens6Keyshot Keyshot Network RenderingKeyshot Viewer+3 moreJun 17, 2026 Feb 23, 2021 N/A· v4 7.8 HIGH· v3 6.8 MEDIUM· v2 Luxion KeyShot versions prior to 10.1, Luxion KeyShot Viewer versions prior to 10.1, Luxion KeyShot Network Rendering versions prior to 10.1, and Luxion KeyVR versions prior to 10.1 are vulnerable to multiple out-of-boun...Show more |
2Luxion Siemens6Keyshot Keyshot Network RenderingKeyshot Viewer+3 moreJun 17, 2026 Feb 23, 2021 N/A· v4 7.8 HIGH· v3 6.8 MEDIUM· v2 Luxion KeyShot versions prior to 10.1, Luxion KeyShot Viewer versions prior to 10.1, Luxion KeyShot Network Rendering versions prior to 10.1, and Luxion KeyVR versions prior to 10.1 are vulnerable to an attack because th...Show more |
2Luxion Siemens6Keyshot Keyshot Network RenderingKeyshot Viewer+3 moreJun 17, 2026 Feb 23, 2021 N/A· v4 7.8 HIGH· v3 6.8 MEDIUM· v2 Luxion KeyShot versions prior to 10.1, Luxion KeyShot Viewer versions prior to 10.1, Luxion KeyShot Network Rendering versions prior to 10.1, and Luxion KeyVR versions prior to 10.1 are vulnerable to an out-of-bounds rea...Show more |
5Debian FedoraprojectIsc+2 more7500f Firmware A250 FirmwareBind+4 moreJun 17, 2026 Feb 17, 2021 N/A· v4 8.1 HIGH· v3 6.8 MEDIUM· v2 BIND servers are vulnerable if they are running an affected version and are configured to use GSS-TSIG features. In a configuration which uses BIND's default settings the vulnerable code path is not exposed, but a server...Show more |
7Apple DebianNetapp+4 more23Business Intelligence Communications Cloud Native Core PolicyDebian Linux+20 moreJun 17, 2026 Feb 16, 2021 N/A· v4 5.9 MEDIUM· v3 4.3 MEDIUM· v2 The OpenSSL public API function X509_issuer_and_serial_hash() attempts to create a unique hash value based on the issuer and serial number data contained within an X509 certificate. However it fails to correctly handle a...Show more |
3Openssl OracleSiemens8Business Intelligence Enterprise Manager For Storage ManagementEnterprise Manager Ops Center+5 moreJun 17, 2026 Feb 16, 2021 N/A· v4 3.7 LOW· v3 4.3 MEDIUM· v2 OpenSSL 1.0.2 supports SSLv2. If a client attempts to negotiate SSLv2 with a server that is configured to support both SSLv2 and more recent SSL and TLS versions then a check is made for a version rollback attack when un...Show more |
4Lodash NetappOracle+1 more23Active Iq Unified Manager Banking Corporate Lending Process ManagementBanking Credit Facilities Process Management+20 moreJun 17, 2026 Feb 15, 2021 N/A· v4 7.2 HIGH· v3 6.5 MEDIUM· v2 Lodash versions prior to 4.17.21 are vulnerable to Command Injection via the template function. |
3Lodash OracleSiemens19Banking Corporate Lending Process Management Banking Credit Facilities Process ManagementBanking Extensibility Workbench+16 moreJun 17, 2026 Feb 15, 2021 N/A· v4 5.3 MEDIUM· v3 5.0 MEDIUM· v2 Lodash versions prior to 4.17.21 are vulnerable to Regular Expression Denial of Service (ReDoS) via the toNumber, trim and trimEnd functions. |