Siemens
siemens
2,161 CVEs • 4,155 products
Products (4,155)
Click to collapseToggle
Products (4,155)
Click to collapse
CVEs (2,161)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
A vulnerability has been identified in SINEC NMS (All versions < V3.0). The affected application does not properly enforce authorization checks. This could allow an authenticated attacker to bypass the checks and elevate...Show more |
A vulnerability has been identified in SINEC NMS (All versions < V3.0). The importCertificate function of the SINEC NMS Control web application contains a path traversal vulnerability. This could allow an authenticated a...Show more |
1Siemens 1Sinec Traffic Analyzer Aug 14, 2024 Aug 13, 2024 2.1 LOW· v4 5.4 MEDIUM· v3 N/A· v2 A vulnerability has been identified in SINEC Traffic Analyzer (6GK8822-1BG01-0BA0) (All versions < V2.0). The affected application is missing general HTTP security headers in the web server. This could allow an attacker...Show more |
1Siemens 1Sinec Traffic Analyzer Aug 14, 2024 Aug 13, 2024 6.3 MEDIUM· v4 6.5 MEDIUM· v3 N/A· v2 A vulnerability has been identified in SINEC Traffic Analyzer (6GK8822-1BG01-0BA0) (All versions < V2.0). The affected application does not properly handle cacheable HTTP responses in the web service. This could allow an...Show more |
1Siemens 1Sinec Traffic Analyzer Aug 14, 2024 Aug 13, 2024 7.6 HIGH· v4 6.5 MEDIUM· v3 N/A· v2 A vulnerability has been identified in SINEC Traffic Analyzer (6GK8822-1BG01-0BA0) (All versions < V2.0). The affected application do not have access control for accessing the files. This could allow an authenticated att...Show more |
1Siemens 1Sinec Traffic Analyzer Aug 14, 2024 Aug 13, 2024 8.7 HIGH· v4 7.5 HIGH· v3 N/A· v2 A vulnerability has been identified in SINEC Traffic Analyzer (6GK8822-1BG01-0BA0) (All versions < V2.0). The affected application do not properly enforce restriction of excessive authentication attempts. This could all...Show more |
1Siemens 1Sinec Traffic Analyzer Aug 14, 2024 Aug 13, 2024 7.5 HIGH· v4 7.2 HIGH· v3 N/A· v2 A vulnerability has been identified in SINEC Traffic Analyzer (6GK8822-1BG01-0BA0) (All versions < V2.0). The affected application mounts the container's root filesystem with read and write privileges. This could allow a...Show more |
1Siemens 1Location Intelligence Aug 14, 2024 Aug 13, 2024 6.9 MEDIUM· v4 5.3 MEDIUM· v3 N/A· v2 A vulnerability has been identified in Location Intelligence family (All versions < V4.4). Affected products do not properly enforce a strong user password policy. This could facilitate a brute force attack against legit...Show more |
1Siemens 1Location Intelligence Aug 14, 2024 Aug 13, 2024 6.9 MEDIUM· v4 5.3 MEDIUM· v3 N/A· v2 A vulnerability has been identified in Location Intelligence family (All versions < V4.4). Affected products do not properly enforce restriction of excessive authentication attempts. This could allow an unauthenticated...Show more |
1Siemens 1Location Intelligence Aug 14, 2024 Aug 13, 2024 6.0 MEDIUM· v4 7.5 HIGH· v3 N/A· v2 A vulnerability has been identified in Location Intelligence family (All versions < V4.4). The web server of affected products is configured to support weak ciphers by default. This could allow an unauthenticated attack...Show more |
A vulnerability has been identified in SINEC NMS (All versions < V3.0). The affected application executes a subset of its services as `NT AUTHORITY\SYSTEM`. This could allow a local attacker to execute operating system c...Show more |
1Siemens 1Omnivise T3000 Application Server Nov 3, 2025 Aug 2, 2024 8.7 HIGH· v4 9.8 CRITICAL· v3 N/A· v2 A vulnerability has been identified in Omnivise T3000 Application Server R9.2 (All versions), Omnivise T3000 R8.2 SP3 (All versions), Omnivise T3000 R8.2 SP4 (All versions). The affected system exposes the port of an int...Show more |
1Siemens 1Omnivise T3000 Application Server Nov 3, 2025 Aug 2, 2024 6.9 MEDIUM· v4 6.5 MEDIUM· v3 N/A· v2 A vulnerability has been identified in Omnivise T3000 Application Server R9.2 (All versions), Omnivise T3000 R8.2 SP3 (All versions), Omnivise T3000 R8.2 SP4 (All versions). Affected devices allow authenticated users to...Show more |
1Siemens 7Omnivise T3000 Application Server Omnivise T3000 Domain ControllerOmnivise T3000 Network Intrusion Detection System+4 moreNov 3, 2025 Aug 2, 2024 8.3 HIGH· v4 8.8 HIGH· v3 N/A· v2 A vulnerability has been identified in Omnivise T3000 Application Server R9.2 (All versions), Omnivise T3000 Domain Controller R9.2 (All versions), Omnivise T3000 Network Intrusion Detection System (NIDS) R9.2 (All versi...Show more |
1Siemens 6Omnivise T3000 Application Server Omnivise T3000 Domain ControllerOmnivise T3000 Product Data Management+3 moreNov 3, 2025 Aug 2, 2024 8.5 HIGH· v4 7.8 HIGH· v3 N/A· v2 A vulnerability has been identified in Omnivise T3000 Application Server R9.2 (All versions), Omnivise T3000 Domain Controller R9.2 (All versions), Omnivise T3000 Product Data Management (PDM) R9.2 (All versions), Omnivi...Show more |
1Siemens 1Sinema Remote Connect Server Nov 21, 2024 Jul 9, 2024 5.3 MEDIUM· v4 4.0 MEDIUM· v3 N/A· v2 A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V3.2 SP1). Affected applications do not properly handle log rotation. This could allow an unauthenticated remote attacker to cause a den...Show more |
1Siemens 1Sinema Remote Connect Server Nov 21, 2024 Jul 9, 2024 5.3 MEDIUM· v4 4.3 MEDIUM· v3 N/A· v2 A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V3.2 SP1). The affected application allows authenticated, low privilege users with the 'Manage own remote connections' permission to ret...Show more |
1Siemens 1Sinema Remote Connect Server Nov 21, 2024 Jul 9, 2024 8.7 HIGH· v4 7.5 HIGH· v3 N/A· v2 A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V3.2 SP1). The affected application does not properly implement brute force protection against user credentials in its Client Communicat...Show more |
1Siemens 1Sinema Remote Connect Server Nov 21, 2024 Jul 9, 2024 8.7 HIGH· v4 7.5 HIGH· v3 N/A· v2 A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V3.2 SP1). The affected application does not properly implement brute force protection against user credentials in its web API. This cou...Show more |
1Siemens 1Sinema Remote Connect Server Nov 21, 2024 Jul 9, 2024 9.3 CRITICAL· v4 9.9 CRITICAL· v3 N/A· v2 A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V3.2 SP1). The affected application does not properly assign rights to temporary files created during its update process. This could all...Show more |