VYPR

TIA Administrator

by Siemens Foundation

CVEs (5)

  • CVE-2024-45386HigFeb 11, 2025
    risk 0.57cvss 8.8epss 0.01

    A vulnerability has been identified in SIMATIC PCS neo V4.0 (All versions), SIMATIC PCS neo V4.1 (All versions < V4.1 Update 2), SIMATIC PCS neo V5.0 (All versions < V5.0 Update 1), SIMOCODE ES V19 (All versions < V19 Update 1), SIRIUS Safety ES V19 (TIA Portal) (All versions <…

  • CVE-2025-23365HigJul 8, 2025
    risk 0.51cvss 7.8epss 0.00

    A vulnerability has been identified in TIA Administrator (All versions < V3.0.6). The affected application allows low-privileged users to trigger installations by overwriting cache files and modifying the downloads path. This would allow an attacker to escalate privilege and…

  • CVE-2019-10915HigJul 11, 2019
    risk 0.51cvss 7.8epss 0.01

    A vulnerability has been identified in TIA Administrator (All versions < V1.0 SP1 Upd1). The integrated configuration web application (TIA Administrator) allows to execute certain application commands without proper authentication. The vulnerability could be exploited by an…

  • CVE-2025-23364MedJul 8, 2025
    risk 0.40cvss 6.2epss 0.00

    A vulnerability has been identified in TIA Administrator (All versions < V3.0.6). The affected application improperly validates code signing certificates. This could allow an attacker to bypass the check and exceute arbitrary code during installations.

  • CVE-2023-38533LowJun 11, 2024
    risk 0.21cvss 3.3epss 0.00

    A vulnerability has been identified in TIA Administrator (All versions < V3 SP2). The affected component creates temporary download files in a directory with insecure permissions. This could allow any authenticated attacker on Windows to disrupt the update process.