Vulnerabilities > Siemens > Comos > 10.3
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2023-11-14 | CVE-2023-43503 | Cleartext Transmission of Sensitive Information vulnerability in Siemens Comos A vulnerability has been identified in COMOS (All versions < V10.4.4). | 7.5 |
2023-11-14 | CVE-2023-43504 | Classic Buffer Overflow vulnerability in Siemens Comos A vulnerability has been identified in COMOS (All versions < V10.4.4). | 9.8 |
2023-02-14 | CVE-2023-24482 | Classic Buffer Overflow vulnerability in Siemens Comos A vulnerability has been identified in COMOS V10.2 (All versions), COMOS V10.3.3.1 (All versions < V10.3.3.1.45), COMOS V10.3.3.2 (All versions < V10.3.3.2.33), COMOS V10.3.3.3 (All versions < V10.3.3.3.9), COMOS V10.3.3.4 (All versions < V10.3.3.4.6), COMOS V10.4.0.0 (All versions < V10.4.0.0.31), COMOS V10.4.1.0 (All versions < V10.4.1.0.32), COMOS V10.4.2.0 (All versions < V10.4.2.0.25). | 9.8 |
2022-02-09 | CVE-2021-37194 | Unrestricted Upload of File with Dangerous Type vulnerability in Siemens Comos A vulnerability has been identified in COMOS V10.2 (All versions only if web components are used), COMOS V10.3 (All versions < V10.3.3.3 only if web components are used), COMOS V10.4 (All versions < V10.4.1 only if web components are used). | 5.0 |
2021-06-17 | CVE-2021-32936 | Out-of-bounds Write vulnerability in multiple products An out-of-bounds write issue exists in the DXF file-recovering procedure in the Drawings SDK (All versions prior to 2022.4) resulting from the lack of proper validation of user-supplied data. | 7.8 |
2021-06-17 | CVE-2021-32938 | Out-of-bounds Read vulnerability in multiple products Drawings SDK (All versions prior to 2022.4) are vulnerable to an out-of-bounds read due to parsing of DWG files resulting from the lack of proper validation of user-supplied data. | 7.1 |
2021-06-17 | CVE-2021-32940 | Out-of-bounds Read vulnerability in multiple products An out-of-bounds read issue exists in the DWG file-recovering procedure in the Drawings SDK (All versions prior to 2022.5) resulting from the lack of proper validation of user-supplied data. | 7.1 |
2021-06-17 | CVE-2021-32948 | Out-of-bounds Write vulnerability in multiple products An out-of-bounds write issue exists in the DWG file-reading procedure in the Drawings SDK (All versions prior to 2022.4) resulting from the lack of proper validation of user-supplied data. | 7.8 |
2021-06-17 | CVE-2021-32952 | Out-of-bounds Write vulnerability in multiple products An out-of-bounds write issue exists in the DGN file-reading procedure in the Drawings SDK (Version 2022.4 and prior) resulting from the lack of proper validation of user-supplied data. | 6.8 |