VYPR

Vendor CVEs

Siemens Foundation

All CVEs

2,449 total · sorted by risk
  • CVE-2014-2256Mar 24, 2014
    risk 0.00cvss —epss 0.04

    Siemens SIMATIC S7-1200 CPU PLC devices with firmware before 4.0 allow remote attackers to cause a denial of service (defect-mode transition) via crafted ISO-TSAP packets, a different vulnerability than CVE-2014-2257.

  • CVE-2014-2252Mar 24, 2014
    risk 0.00cvss —epss 0.01

    Siemens SIMATIC S7-1200 CPU PLC devices with firmware before 4.0 allow remote attackers to cause a denial of service (defect-mode transition) via crafted PROFINET packets, a different vulnerability than CVE-2014-2253.

  • CVE-2014-2250Mar 24, 2014
    risk 0.00cvss —epss 0.03

    The random-number generator on Siemens SIMATIC S7-1200 CPU PLC devices with firmware before 4.0 does not have sufficient entropy, which makes it easier for remote attackers to defeat cryptographic protection mechanisms and hijack sessions via unspecified vectors, a different…

  • CVE-2014-2259Mar 16, 2014
    risk 0.00cvss —epss 0.04

    Siemens SIMATIC S7-1500 CPU PLC devices with firmware before 1.5.0 allow remote attackers to cause a denial of service (defect-mode transition) via crafted HTTPS packets.

  • CVE-2014-2257Mar 16, 2014
    risk 0.00cvss —epss 0.03

    Siemens SIMATIC S7-1500 CPU PLC devices with firmware before 1.5.0 allow remote attackers to cause a denial of service (defect-mode transition) via crafted ISO-TSAP packets.

  • CVE-2014-2255Mar 16, 2014
    risk 0.00cvss —epss 0.04

    Siemens SIMATIC S7-1500 CPU PLC devices with firmware before 1.5.0 allow remote attackers to cause a denial of service (defect-mode transition) via crafted HTTP packets.

  • CVE-2014-2253Mar 16, 2014
    risk 0.00cvss —epss 0.01

    Siemens SIMATIC S7-1500 CPU PLC devices with firmware before 1.5.0 allow remote attackers to cause a denial of service (defect-mode transition) via crafted Profinet packets.

  • CVE-2014-2251Mar 16, 2014
    risk 0.00cvss —epss 0.03

    The random-number generator on Siemens SIMATIC S7-1500 CPU PLC devices with firmware before 1.5.0 does not have sufficient entropy, which makes it easier for remote attackers to defeat cryptographic protection mechanisms and hijack sessions via unspecified vectors.

  • CVE-2014-2249Mar 16, 2014
    risk 0.00cvss —epss 0.01

    Cross-site request forgery (CSRF) vulnerability on Siemens SIMATIC S7-1500 CPU PLC devices with firmware before 1.5.0 and SIMATIC S7-1200 CPU PLC devices with firmware before 4.0 allows remote attackers to hijack the authentication of unspecified victims via unknown vectors.

  • CVE-2014-2248Mar 16, 2014
    risk 0.00cvss —epss 0.02

    Open redirect vulnerability in the integrated web server on Siemens SIMATIC S7-1500 CPU PLC devices with firmware before 1.5.0 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via unspecified vectors.

  • CVE-2014-2247Mar 16, 2014
    risk 0.00cvss —epss 0.02

    The integrated web server on Siemens SIMATIC S7-1500 CPU PLC devices with firmware before 1.5.0 allows remote attackers to inject headers via unspecified vectors.

  • CVE-2014-2246Mar 16, 2014
    risk 0.00cvss —epss 0.02

    Cross-site scripting (XSS) vulnerability in the integrated web server on Siemens SIMATIC S7-1500 CPU PLC devices with firmware before 1.5.0 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

  • CVE-2014-1966Feb 24, 2014
    risk 0.00cvss —epss 0.02

    The SNMP implementation in Siemens RuggedCom ROS before 3.11, ROS 3.11 for RS950G, ROS 3.12 before 3.12.4, and ROS 4.0 for RSG2488 allows remote attackers to cause a denial of service (device outage) via crafted packets.

  • CVE-2014-1699Feb 7, 2014
    risk 0.00cvss —epss 0.02

    Siemens SIMATIC WinCC OA before 3.12 P002 January allows remote attackers to cause a denial of service (monitoring-service outage) via malformed HTTP requests to port 4999.

  • CVE-2014-1698Feb 7, 2014
    risk 0.00cvss —epss 0.04

    Directory traversal vulnerability in Siemens SIMATIC WinCC OA before 3.12 P002 January allows remote attackers to read arbitrary files via crafted packets to TCP port 4999.

  • CVE-2014-1697Feb 7, 2014
    risk 0.00cvss —epss 0.05

    The integrated web server in Siemens SIMATIC WinCC OA before 3.12 P002 January allows remote attackers to execute arbitrary code via crafted packets to TCP port 4999.

  • CVE-2014-1696Feb 7, 2014
    risk 0.00cvss —epss 0.02

    Siemens SIMATIC WinCC OA before 3.12 P002 January uses a weak hash algorithm for passwords, which makes it easier for remote attackers to obtain access via a brute-force attack.

  • CVE-2013-6926Dec 17, 2013
    risk 0.00cvss —epss 0.01

    The integrated HTTPS server in Siemens RuggedCom ROS before 3.12.2 allows remote authenticated users to bypass intended restrictions on administrative actions by leveraging access to a (1) guest or (2) operator account.

  • CVE-2013-6925Dec 17, 2013
    risk 0.00cvss —epss 0.02

    The integrated HTTPS server in Siemens RuggedCom ROS before 3.12.2 allows remote attackers to hijack web sessions by predicting a session id value.

  • CVE-2013-6840Dec 10, 2013
    risk 0.00cvss —epss 0.00

    Siemens COMOS before 9.2.0.8.1, 10.0 before 10.0.3.1.40, and 10.1 before 10.1.0.0.2 allows local users to gain database privileges via unspecified vectors.

  • CVE-2013-6920Dec 7, 2013
    risk 0.00cvss —epss 0.03

    Siemens SINAMICS S/G controllers with firmware before 4.6.11 do not require authentication for FTP and TELNET sessions, which allows remote attackers to bypass intended access restrictions via TCP traffic to port (1) 21 or (2) 23.

  • CVE-2013-5944Oct 3, 2013
    risk 0.00cvss —epss 0.03

    The integrated web server on Siemens SCALANCE X-200 switches with firmware before 4.5.0 and X-200IRT switches with firmware before 5.1.0 does not properly enforce authentication requirements, which allows remote attackers to perform administrative actions via requests to the…

  • CVE-2013-5709Sep 17, 2013
    risk 0.00cvss —epss 0.03

    The authentication implementation in the web server on Siemens SCALANCE X-200 switches with firmware before 5.0.0 does not use a sufficient source of entropy for generating values of random numbers, which makes it easier for remote attackers to hijack sessions by predicting a…

  • CVE-2013-4943Aug 9, 2013
    risk 0.00cvss —epss 0.00

    The client application in Siemens COMOS before 9.1 Update 458, 9.2 before 9.2.0.6.37, and 10.0 before 10.0.3.0.19 allows local users to gain privileges and bypass intended database-operation restrictions by leveraging COMOS project access.

  • CVE-2013-4912Aug 1, 2013
    risk 0.00cvss —epss 0.02

    Open redirect vulnerability in Siemens WinCC (TIA Portal) 11 and 12 before 12 SP1 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks by leveraging improper configuration of SIMATIC HMI panels by the WinCC product.

  • CVE-2013-4911Aug 1, 2013
    risk 0.00cvss —epss 0.01

    Cross-site request forgery (CSRF) vulnerability in Siemens WinCC (TIA Portal) 11 and 12 before 12 SP1 allows remote attackers to hijack the authentication of unspecified victims by leveraging improper configuration of SIMATIC HMI panels by the WinCC product.

  • CVE-2013-4652Aug 1, 2013
    risk 0.00cvss —epss 0.06

    Unspecified vulnerability in the command-line management interface on Siemens Scalance W7xx devices with firmware before 4.5.4 allows remote attackers to bypass authentication and execute arbitrary code via a (1) SSH or (2) TELNET connection.

  • CVE-2013-4651Aug 1, 2013
    risk 0.00cvss —epss 0.01

    Siemens Scalance W7xx devices with firmware before 4.5.4 use the same hardcoded X.509 certificate across different customers' installations, which makes it easier for remote attackers to conduct man-in-the-middle attacks against SSL sessions by leveraging the certificate's trust…

  • CVE-2013-4781Jul 18, 2013
    risk 0.00cvss —epss 0.03

    core/getLog.php on the Siemens Enterprise OpenScape Branch appliance and OpenScape Session Border Controller (SBC) before 2 R0.32.0, and 7 before 7 R1.7.0, allows remote attackers to execute arbitrary commands via unspecified vectors.

  • CVE-2013-4780Jul 18, 2013
    risk 0.00cvss —epss 0.01

    core/getLog.php on the Siemens Enterprise OpenScape Branch appliance and OpenScape Session Border Controller (SBC) before 2 R0.32.0, and 7 before 7 R1.7.0, allows remote attackers to read arbitrary files via unspecified vectors.

  • CVE-2013-4779Jul 18, 2013
    risk 0.00cvss —epss 0.01

    Cross-site scripting (XSS) vulnerability in core/handleTw.php on the Siemens Enterprise OpenScape Branch appliance and OpenScape Session Border Controller (SBC) before 2 R0.32.0, and 7 before 7 R1.7.0, allows remote attackers to inject arbitrary web script or HTML via…

  • CVE-2013-4778Jul 18, 2013
    risk 0.00cvss —epss 0.01

    core/getLog.php on the Siemens Enterprise OpenScape Branch appliance and OpenScape Session Border Controller (SBC) before 2 R0.32.0, and 7 before 7 R1.7.0, allows remote attackers to obtain sensitive server and statistics information via unspecified vectors.

  • CVE-2013-3927Jun 18, 2013
    risk 0.00cvss —epss 0.00

    Unspecified vulnerability in the client library in Siemens COMOS 9.2 before 9.2.0.6.10 and 10.0 before 10.0.3.0.4 allows local users to obtain unintended write access to the database by leveraging read access.

  • CVE-2013-3959Jun 14, 2013
    risk 0.00cvss —epss 0.01

    The Web Navigator in Siemens WinCC before 7.2 Update 1, as used in SIMATIC PCS7 8.0 SP1 and earlier and other products, exhibits different behavior for NetBIOS user names depending on whether the user account exists, which allows remote authenticated users to enumerate account…

  • CVE-2013-3958Jun 14, 2013
    risk 0.00cvss —epss 0.02

    The login implementation in the Web Navigator in Siemens WinCC before 7.2 Update 1, as used in SIMATIC PCS7 8.0 SP1 and earlier and other products, has a hardcoded account, which makes it easier for remote attackers to obtain access via an unspecified request.

  • CVE-2013-3957Jun 14, 2013
    risk 0.00cvss —epss 0.02

    SQL injection vulnerability in the login screen in the Web Navigator in Siemens WinCC before 7.2 Update 1, as used in SIMATIC PCS7 8.0 SP1 and earlier and other products, allows remote attackers to execute arbitrary SQL commands via unspecified vectors.

  • CVE-2013-3634May 24, 2013
    risk 0.00cvss —epss 0.01

    A vulnerability has been identified in SCALANCE X-200 switch family (incl. SIPLUS NET variants) (Versions < V5.0.0 for CVE-2013-3633 and versions < V4.5.0 for CVE-2013-3634), SCALANCE X-200IRT switch family (incl. SIPLUS NET variants) (All versions < V5.1.0). The implementation…

  • CVE-2013-3633May 24, 2013
    risk 0.00cvss —epss 0.01

    A vulnerability has been identified in SCALANCE X-200 switch family (incl. SIPLUS NET variants) (Versions < V5.0.0 for CVE-2013-3633 and versions < V4.5.0 for CVE-2013-3634), SCALANCE X-200IRT switch family (incl. SIPLUS NET variants) (All versions < V5.1.0). The user privileges…

  • CVE-2013-2780Apr 22, 2013
    risk 0.00cvss —epss 0.02

    Siemens SIMATIC S7-1200 PLCs 2.x and 3.x allow remote attackers to cause a denial of service (defect-mode transition and control outage) via crafted packets to UDP port 161 (aka the SNMP port).

  • CVE-2013-0700Apr 22, 2013
    risk 0.00cvss —epss 0.02

    Siemens SIMATIC S7-1200 PLCs 2.x and 3.x allow remote attackers to cause a denial of service (defect-mode transition and control outage) via crafted packets to TCP port 102 (aka the ISO-TSAP port).

  • CVE-2013-0659Apr 1, 2013
    risk 0.00cvss —epss 0.06

    The debugging feature on the Siemens CP 1604 and CP 1616 interface cards with firmware before 2.5.2 allows remote attackers to execute arbitrary code via a crafted packet to UDP port 17185.

  • CVE-2013-0679Mar 21, 2013
    risk 0.00cvss —epss 0.02

    Directory traversal vulnerability in the web server in Siemens WinCC before 7.2, as used in SIMATIC PCS7 before 8.0 SP1 and other products, allows remote authenticated users to read arbitrary files via vectors involving a query for a pathname.

  • CVE-2013-0678Mar 21, 2013
    risk 0.00cvss —epss 0.02

    Siemens WinCC before 7.2, as used in SIMATIC PCS7 before 8.0 SP1 and other products, does not properly represent WebNavigator credentials in a database, which makes it easier for remote authenticated users to obtain sensitive information via a SQL query.

  • CVE-2013-0677Mar 21, 2013
    risk 0.00cvss —epss 0.02

    The web server in Siemens WinCC before 7.2, as used in SIMATIC PCS7 before 8.0 SP1 and other products, allows remote attackers to obtain sensitive information or cause a denial of service via a crafted project file.

  • CVE-2013-0676Mar 21, 2013
    risk 0.00cvss —epss 0.02

    Siemens WinCC before 7.2, as used in SIMATIC PCS7 before 8.0 SP1 and other products, does not properly assign privileges for the database containing WebNavigator credentials, which allows remote authenticated users to obtain sensitive information via a SQL query.

  • CVE-2013-0675Mar 21, 2013
    risk 0.00cvss —epss 0.01

    Buffer overflow in CCEServer (aka the central communications component) in Siemens WinCC before 7.2, as used in SIMATIC PCS7 before 8.0 SP1 and other products, allows remote attackers to cause a denial of service via a crafted packet.

  • CVE-2013-0674Mar 21, 2013
    risk 0.00cvss —epss 0.03

    Buffer overflow in the RegReader ActiveX control in Siemens WinCC before 7.2, as used in SIMATIC PCS7 before 8.0 SP1 and other products, allows remote attackers to execute arbitrary code via a long parameter.

  • CVE-2013-0672Mar 21, 2013
    risk 0.00cvss —epss 0.01

    Cross-site scripting (XSS) vulnerability in the HMI web application in Siemens WinCC (TIA Portal) 11 allows remote authenticated users to inject arbitrary web script or HTML via unspecified data.

  • CVE-2013-0671Mar 21, 2013
    risk 0.00cvss —epss 0.02

    Directory traversal vulnerability in Siemens WinCC (TIA Portal) 11 allows remote authenticated users to read HMI web-application source code and user-defined scripts via a crafted URL.

  • CVE-2013-0670Mar 21, 2013
    risk 0.00cvss —epss 0.02

    CRLF injection vulnerability in the HMI web application in Siemens WinCC (TIA Portal) 11 allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via a crafted URL.

Page 48 of 49