Vulnerabilities > Siemens

DATE CVE VULNERABILITY TITLE RISK
2020-10-13 CVE-2020-7590 Use of Hard-coded Password vulnerability in Siemens DCA Vantage Analyzer Firmware
A vulnerability has been identified in DCA Vantage Analyzer (All versions < V4.5 are affected by CVE-2020-7590.
local
low complexity
siemens CWE-259
4.6
2020-09-09 CVE-2020-15791 Insufficiently Protected Credentials vulnerability in Siemens products
A vulnerability has been identified in SIMATIC S7-300 CPU family (incl.
low complexity
siemens CWE-522
3.3
2020-09-09 CVE-2020-15790 Information Exposure vulnerability in Siemens Spectrum Power 4 4.70
A vulnerability has been identified in Spectrum Power 4 (All versions < V4.70 SP8).
network
low complexity
siemens CWE-200
5.0
2020-09-09 CVE-2020-15789 Cross-Site Request Forgery (CSRF) vulnerability in Siemens Polarion Subversion Webclient
A vulnerability has been identified in Polarion Subversion Webclient (All versions).
network
siemens CWE-352
5.8
2020-09-09 CVE-2020-15788 Cross-site Scripting vulnerability in Siemens Polarion Subversion Webclient
A vulnerability has been identified in Polarion Subversion Webclient (All versions).
network
siemens CWE-79
4.3
2020-09-09 CVE-2020-15787 Authentication Bypass by Primary Weakness vulnerability in Siemens Simatic HMI United Comfort Panels Firmware
A vulnerability has been identified in SIMATIC HMI Unified Comfort Panels (All versions <= V16).
network
low complexity
siemens CWE-305
5.0
2020-09-09 CVE-2020-15786 Improper Restriction of Excessive Authentication Attempts vulnerability in Siemens products
A vulnerability has been identified in SIMATIC HMI Basic Panels 2nd Generation (incl.
network
low complexity
siemens CWE-307
5.0
2020-09-09 CVE-2020-15785 Cleartext Transmission of Sensitive Information vulnerability in Siemens Siveillance Video Client
A vulnerability has been identified in Siveillance Video Client (All versions).
network
low complexity
siemens CWE-319
5.3
2020-09-09 CVE-2020-15784 Cleartext Storage of Sensitive Information vulnerability in Siemens Spectrum Power 4 4.70
A vulnerability has been identified in Spectrum Power 4 (All versions < V4.70 SP8).
network
low complexity
siemens CWE-312
5.0
2020-09-09 CVE-2020-10056 Execution with Unnecessary Privileges vulnerability in Siemens License Management Utility 2.3.745
A vulnerability has been identified in License Management Utility (LMU) (All versions < V2.4).
local
low complexity
siemens CWE-250
7.8