Vulnerabilities > Siemens

DATE CVE VULNERABILITY TITLE RISK
2023-01-10 CVE-2022-43514 Path Traversal vulnerability in Siemens Automation License Manager
A vulnerability has been identified in Automation License Manager V5 (All versions), Automation License Manager V6 (All versions < V6.0 SP9 Upd4), TeleControl Server Basic V3 (All versions < V3.1.2).
network
low complexity
siemens CWE-22
critical
9.8
2023-01-10 CVE-2022-45092 Path Traversal vulnerability in Siemens Sinec INS 1.0
A vulnerability has been identified in SINEC INS (All versions < V1.0 SP2 Update 1).
network
low complexity
siemens CWE-22
8.8
2023-01-10 CVE-2022-45093 Path Traversal vulnerability in Siemens Sinec INS 1.0
A vulnerability has been identified in SINEC INS (All versions < V1.0 SP2 Update 1).
network
low complexity
siemens CWE-22
8.8
2023-01-10 CVE-2022-45094 Command Injection vulnerability in Siemens Sinec INS 1.0
A vulnerability has been identified in SINEC INS (All versions < V1.0 SP2 Update 1).
network
low complexity
siemens CWE-77
8.8
2023-01-10 CVE-2022-47935 Out-of-bounds Write vulnerability in Siemens JT Open Toolkit, JT Utilities and Solid Edge
A vulnerability has been identified in JT Open (All versions < V11.1.1.0), JT Utilities (All versions < V13.1.1.0), Solid Edge (All versions < V2023).
local
low complexity
siemens CWE-787
7.8
2023-01-10 CVE-2022-47967 Out-of-bounds Write vulnerability in Siemens Solid Edge
A vulnerability has been identified in Solid Edge (All versions < V2023 MP1).
local
low complexity
siemens CWE-787
7.8
2022-12-13 CVE-2021-40365 Improper Input Validation vulnerability in Siemens products
Affected devices don't process correctly certain special crafted packets sent to port 102/tcp, which could allow an attacker to cause a denial of service in the device.
network
low complexity
siemens CWE-20
7.5
2022-12-13 CVE-2021-44693 Improper Validation of Specified Quantity in Input vulnerability in Siemens products
Affected devices don't process correctly certain special crafted packets sent to port 102/tcp, which could allow an attacker to cause a denial of service in the device.
network
low complexity
siemens CWE-1284
4.9
2022-12-13 CVE-2021-44694 Improper Validation of Specified Type of Input vulnerability in Siemens products
Affected devices don't process correctly certain special crafted packets sent to port 102/tcp, which could allow an attacker to cause a denial of service in the device.
network
low complexity
siemens CWE-1287
5.5
2022-12-13 CVE-2021-44695 Improper Validation of Syntactic Correctness of Input vulnerability in Siemens products
Affected devices don't process correctly certain special crafted packets sent to port 102/tcp, which could allow an attacker to cause a denial of service in the device.
network
low complexity
siemens CWE-1286
4.9