Siemens
siemens
2,179 CVEs • 4,160 products
Products (4,160)
Click to collapseToggle
Products (4,160)
Click to collapse
CVEs (2,179)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Siemens 9Scalance X 200 Scalance X 200 Series FirmwareScalance X 200rna+6 moreApr 29, 2026 Sep 17, 2013 N/A· v4 N/A· v3 8.3 HIGH· v2 The authentication implementation in the web server on Siemens SCALANCE X-200 switches with firmware before 5.0.0 does not use a sufficient source of entropy for generating values of random numbers, which makes it easier...Show more |
The client application in Siemens COMOS before 9.1 Update 458, 9.2 before 9.2.0.6.37, and 10.0 before 10.0.3.0.19 allows local users to gain privileges and bypass intended database-operation restrictions by leveraging CO...Show more |
Open redirect vulnerability in Siemens WinCC (TIA Portal) 11 and 12 before 12 SP1 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks by leveraging improper configuration of SIMA...Show more |
Cross-site request forgery (CSRF) vulnerability in Siemens WinCC (TIA Portal) 11 and 12 before 12 SP1 allows remote attackers to hijack the authentication of unspecified victims by leveraging improper configuration of SI...Show more |
1Siemens 17Scalance W700 Series Firmware Scalance W744 1Scalance W744 1pro+14 moreApr 29, 2026 Aug 1, 2013 N/A· v4 N/A· v3 10.0 HIGH· v2 Unspecified vulnerability in the command-line management interface on Siemens Scalance W7xx devices with firmware before 4.5.4 allows remote attackers to bypass authentication and execute arbitrary code via a (1) SSH or...Show more |
1Siemens 17Scalance W700 Series Firmware Scalance W744 1Scalance W744 1pro+14 moreApr 29, 2026 Aug 1, 2013 N/A· v4 N/A· v3 6.6 MEDIUM· v2 Siemens Scalance W7xx devices with firmware before 4.5.4 use the same hardcoded X.509 certificate across different customers' installations, which makes it easier for remote attackers to conduct man-in-the-middle attacks...Show more |
1Siemens 2Enterprise Openscape Branch Openscape Session Border ControllerApr 29, 2026 Jul 18, 2013 N/A· v4 N/A· v3 10.0 HIGH· v2 core/getLog.php on the Siemens Enterprise OpenScape Branch appliance and OpenScape Session Border Controller (SBC) before 2 R0.32.0, and 7 before 7 R1.7.0, allows remote attackers to execute arbitrary commands via unspec...Show more |
1Siemens 2Enterprise Openscape Branch Openscape Session Border ControllerApr 29, 2026 Jul 18, 2013 N/A· v4 N/A· v3 7.8 HIGH· v2 core/getLog.php on the Siemens Enterprise OpenScape Branch appliance and OpenScape Session Border Controller (SBC) before 2 R0.32.0, and 7 before 7 R1.7.0, allows remote attackers to read arbitrary files via unspecified...Show more |
1Siemens 2Enterprise Openscape Branch Openscape Session Border ControllerApr 29, 2026 Jul 18, 2013 N/A· v4 N/A· v3 4.3 MEDIUM· v2 Cross-site scripting (XSS) vulnerability in core/handleTw.php on the Siemens Enterprise OpenScape Branch appliance and OpenScape Session Border Controller (SBC) before 2 R0.32.0, and 7 before 7 R1.7.0, allows remote atta...Show more |
1Siemens 2Enterprise Openscape Branch Openscape Session Border ControllerApr 29, 2026 Jul 18, 2013 N/A· v4 N/A· v3 7.8 HIGH· v2 core/getLog.php on the Siemens Enterprise OpenScape Branch appliance and OpenScape Session Border Controller (SBC) before 2 R0.32.0, and 7 before 7 R1.7.0, allows remote attackers to obtain sensitive server and statistic...Show more |
Unspecified vulnerability in the client library in Siemens COMOS 9.2 before 9.2.0.6.10 and 10.0 before 10.0.3.0.4 allows local users to obtain unintended write access to the database by leveraging read access. |
The Web Navigator in Siemens WinCC before 7.2 Update 1, as used in SIMATIC PCS7 8.0 SP1 and earlier and other products, exhibits different behavior for NetBIOS user names depending on whether the user account exists, whi...Show more |
The login implementation in the Web Navigator in Siemens WinCC before 7.2 Update 1, as used in SIMATIC PCS7 8.0 SP1 and earlier and other products, has a hardcoded account, which makes it easier for remote attackers to o...Show more |
SQL injection vulnerability in the login screen in the Web Navigator in Siemens WinCC before 7.2 Update 1, as used in SIMATIC PCS7 8.0 SP1 and earlier and other products, allows remote attackers to execute arbitrary SQL...Show more |
1Siemens 7Scalance X200 4p Irt Scalance X200irt FirmwareScalance X201 3p Irt+4 moreApr 29, 2026 May 24, 2013 N/A· v4 N/A· v3 7.5 HIGH· v2 A vulnerability has been identified in SCALANCE X-200 switch family (incl. SIPLUS NET variants) (Versions < V5.0.0 for CVE-2013-3633 and versions < V4.5.0 for CVE-2013-3634), SCALANCE X-200IRT switch family (incl. SIPLUS...Show more |
1Siemens 7Scalance X200 4p Irt Scalance X200irt FirmwareScalance X201 3p Irt+4 moreApr 29, 2026 May 24, 2013 N/A· v4 N/A· v3 8.0 HIGH· v2 A vulnerability has been identified in SCALANCE X-200 switch family (incl. SIPLUS NET variants) (Versions < V5.0.0 for CVE-2013-3633 and versions < V4.5.0 for CVE-2013-3634), SCALANCE X-200IRT switch family (incl. SIPLUS...Show more |
1Siemens 9Simatic S7 1200 Cpu 1211c Firmware Simatic S7 1200 Cpu 1212c FirmwareSimatic S7 1200 Cpu 1212fc Firmware+6 moreApr 29, 2026 Apr 22, 2013 N/A· v4 N/A· v3 7.8 HIGH· v2 Siemens SIMATIC S7-1200 PLCs 2.x and 3.x allow remote attackers to cause a denial of service (defect-mode transition and control outage) via crafted packets to UDP port 161 (aka the SNMP port). |
1Siemens 9Simatic S7 1200 Cpu 1211c Firmware Simatic S7 1200 Cpu 1212c FirmwareSimatic S7 1200 Cpu 1212fc Firmware+6 moreApr 29, 2026 Apr 22, 2013 N/A· v4 N/A· v3 7.8 HIGH· v2 Siemens SIMATIC S7-1200 PLCs 2.x and 3.x allow remote attackers to cause a denial of service (defect-mode transition and control outage) via crafted packets to TCP port 102 (aka the ISO-TSAP port). |
1Siemens 4Cp 1604 Cp 1604 FirmwareCp 1616+1 moreApr 29, 2026 Apr 1, 2013 N/A· v4 N/A· v3 10.0 HIGH· v2 The debugging feature on the Siemens CP 1604 and CP 1616 interface cards with firmware before 2.5.2 allows remote attackers to execute arbitrary code via a crafted packet to UDP port 17185. |
Directory traversal vulnerability in the web server in Siemens WinCC before 7.2, as used in SIMATIC PCS7 before 8.0 SP1 and other products, allows remote authenticated users to read arbitrary files via vectors involving...Show more |