Siemens
siemens
2,161 CVEs • 4,155 products
Products (4,155)
Click to collapseToggle
Products (4,155)
Click to collapse
CVEs (2,161)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Siemens 1Sinema Remote Connect Server Nov 21, 2024 Jul 9, 2024 5.3 MEDIUM· v4 5.4 MEDIUM· v3 N/A· v2 A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V3.2 SP1). Affected applications do not properly separate the rights to edit device settings and to edit settings for communication rela...Show more |
1Siemens 1Sinema Remote Connect Server Nov 21, 2024 Jul 9, 2024 7.1 HIGH· v4 7.8 HIGH· v3 N/A· v2 A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V3.2 SP1). The affected applications can be configured to allow users to manage own users. A local authenticated user with this privileg...Show more |
1Siemens 1Sinema Remote Connect Server Nov 21, 2024 Jul 9, 2024 7.1 HIGH· v4 6.5 MEDIUM· v3 N/A· v2 A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V3.2 SP1). Affected products allow to upload certificates. An authenticated attacker could upload a crafted certificates leading to a pe...Show more |
1Siemens 1Sinema Remote Connect Server Nov 21, 2024 Jul 9, 2024 7.2 HIGH· v4 7.3 HIGH· v3 N/A· v2 A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V3.2 SP1). Affected devices do not properly validate the authentication when performing certain actions in the web interface allowing an...Show more |
1Siemens 1Sinema Remote Connect Server Nov 21, 2024 Jul 9, 2024 7.2 HIGH· v4 7.3 HIGH· v3 N/A· v2 A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V3.2 SP1). Affected devices do not properly validate the authentication when performing certain actions in the web interface allowing an...Show more |
1Siemens 1Sinema Remote Connect Server Nov 21, 2024 Jul 9, 2024 8.7 HIGH· v4 8.8 HIGH· v3 N/A· v2 A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V3.2 SP1). The affected application allows users to upload encrypted backup files. This could allow an attacker with access to the backu...Show more |
1Siemens 1Sinema Remote Connect Server Nov 21, 2024 Jul 9, 2024 8.7 HIGH· v4 8.8 HIGH· v3 N/A· v2 A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V3.2 SP1). The affected application allows users to upload encrypted backup files. As part of this backup, files can be restored without...Show more |
1Siemens 1Sinema Remote Connect Server Nov 21, 2024 Jul 9, 2024 8.7 HIGH· v4 8.8 HIGH· v3 N/A· v2 A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V3.2 HF1). Affected applications are vulnerable to command injection due to missing server side input sanitation when loading SNMP confi...Show more |
1Siemens 1Sinema Remote Connect Server Nov 21, 2024 Jul 9, 2024 8.7 HIGH· v4 8.8 HIGH· v3 N/A· v2 A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V3.2 HF1). Affected applications are vulnerable to command injection due to missing server side input sanitation when loading VxLAN conf...Show more |
1Siemens 1Sinema Remote Connect Client Nov 21, 2024 Jul 9, 2024 7.5 HIGH· v4 7.2 HIGH· v3 N/A· v2 A vulnerability has been identified in SINEMA Remote Connect Client (All versions < V3.2 HF1). The system service of affected applications is vulnerable to command injection due to missing server side input sanitation wh...Show more |
1Siemens 1Sinema Remote Connect Client Nov 21, 2024 Jul 9, 2024 8.5 HIGH· v4 7.8 HIGH· v3 N/A· v2 A vulnerability has been identified in SINEMA Remote Connect Client (All versions < V3.2 HF1). The system service of affected applications is vulnerable to command injection due to missing server side input sanitation wh...Show more |
1Siemens 1Sinema Remote Connect Client Aug 21, 2025 Jul 9, 2024 8.5 HIGH· v4 7.8 HIGH· v3 N/A· v2 A vulnerability has been identified in SINEMA Remote Connect Client (All versions < V3.2 HF1). The system service of affected applications is vulnerable to command injection due to missing server side input sanitation wh...Show more |
A vulnerability has been identified in Simcenter Femap (All versions < V2406). The affected applications contain an out of bounds read past the end of an allocated structure while parsing specially crafted BMP files. Thi...Show more |
A vulnerability has been identified in Simcenter Femap (All versions < V2406). The affected applications contain an out of bounds read past the end of an allocated structure while parsing specially crafted BMP files. Thi...Show more |
A vulnerability has been identified in Simcenter Femap (All versions < V2406). The affected application contains an out of bounds write past the end of an allocated buffer while parsing a specially crafted IGS part file....Show more |
1Siemens 1Medicalis Workflow Orchestrator Nov 21, 2024 Jul 8, 2024 8.5 HIGH· v4 7.8 HIGH· v3 N/A· v2 A vulnerability has been identified in Medicalis Workflow Orchestrator (All versions). The affected application executes as a trusted account with high privileges and network access. This could allow an authenticated loc...Show more |
A vulnerability has been identified in PowerSys (All versions < V3.11). The affected application insufficiently protects responses to authentication requests. This could allow a local attacker to bypass authentication, t...Show more |
1Siemens 1Sinec Traffic Analyzer Feb 11, 2025 Jun 11, 2024 6.9 MEDIUM· v4 7.5 HIGH· v3 N/A· v2 A vulnerability has been identified in SINEC Traffic Analyzer (6GK8822-1BG01-0BA0) (All versions < V1.2). The affected application lacks input validation due to which an attacker can gain access to the Database entries. |
1Siemens 1Sinec Traffic Analyzer Feb 11, 2025 Jun 11, 2024 6.8 MEDIUM· v4 6.5 MEDIUM· v3 N/A· v2 A vulnerability has been identified in SINEC Traffic Analyzer (6GK8822-1BG01-0BA0) (All versions < V1.2). The affected web server, after a successful login, sets the session cookie on the browser, without applying any se...Show more |
1Siemens 1Sinec Traffic Analyzer Feb 11, 2025 Jun 11, 2024 5.1 MEDIUM· v4 7.5 HIGH· v3 N/A· v2 A vulnerability has been identified in SINEC Traffic Analyzer (6GK8822-1BG01-0BA0) (All versions < V1.2). The affected web server is not enforcing HSTS. This could allow an attacker to perform downgrade attacks exposing...Show more |