Vulnerabilities > Siemens

DATE CVE VULNERABILITY TITLE RISK
2022-07-12 CVE-2022-29560 Command Injection vulnerability in Siemens products
A vulnerability has been identified in RUGGEDCOM ROX MX5000 (All versions < 2.15.1), RUGGEDCOM ROX MX5000RE (All versions < 2.15.1), RUGGEDCOM ROX RX1400 (All versions < 2.15.1), RUGGEDCOM ROX RX1500 (All versions < 2.15.1), RUGGEDCOM ROX RX1501 (All versions < 2.15.1), RUGGEDCOM ROX RX1510 (All versions < 2.15.1), RUGGEDCOM ROX RX1511 (All versions < 2.15.1), RUGGEDCOM ROX RX1512 (All versions < 2.15.1), RUGGEDCOM ROX RX1524 (All versions < 2.15.1), RUGGEDCOM ROX RX1536 (All versions < 2.15.1), RUGGEDCOM ROX RX5000 (All versions < 2.15.1).
network
low complexity
siemens CWE-77
7.2
2022-07-12 CVE-2022-29884 Missing Release of Resource after Effective Lifetime vulnerability in Siemens products
A vulnerability has been identified in CP-8000 MASTER MODULE WITH I/O -25/+70°C (All versions < CPC80 V16.30), CP-8000 MASTER MODULE WITH I/O -40/+70°C (All versions < CPC80 V16.30), CP-8021 MASTER MODULE (All versions < CPC80 V16.30), CP-8022 MASTER MODULE WITH GPRS (All versions < CPC80 V16.30).
network
low complexity
siemens CWE-772
7.5
2022-07-12 CVE-2022-30938 Out-of-bounds Write vulnerability in Siemens products
A vulnerability has been identified in EN100 Ethernet module DNP3 IP variant (All versions), EN100 Ethernet module IEC 104 variant (All versions), EN100 Ethernet module IEC 61850 variant (All versions < V4.40), EN100 Ethernet module Modbus TCP variant (All versions), EN100 Ethernet module PROFINET IO variant (All versions).
network
low complexity
siemens CWE-787
7.5
2022-07-12 CVE-2022-33137 Insufficient Session Expiration vulnerability in Siemens products
A vulnerability has been identified in SIMATIC MV540 H (All versions < V3.3), SIMATIC MV540 S (All versions < V3.3), SIMATIC MV550 H (All versions < V3.3), SIMATIC MV550 S (All versions < V3.3), SIMATIC MV560 U (All versions < V3.3), SIMATIC MV560 X (All versions < V3.3).
network
low complexity
siemens CWE-613
8.0
2022-07-12 CVE-2022-33138 Missing Authentication for Critical Function vulnerability in Siemens products
A vulnerability has been identified in SIMATIC MV540 H (All versions < V3.3), SIMATIC MV540 S (All versions < V3.3), SIMATIC MV550 H (All versions < V3.3), SIMATIC MV550 S (All versions < V3.3), SIMATIC MV560 U (All versions < V3.3), SIMATIC MV560 X (All versions < V3.3).
network
low complexity
siemens CWE-306
7.5
2022-07-12 CVE-2022-33736 Improper Authentication vulnerability in Siemens Opcenter Quality
A vulnerability has been identified in Opcenter Quality V13.1 (All versions < V13.1.20220624), Opcenter Quality V13.2 (All versions < V13.2.20220624).
network
low complexity
siemens CWE-287
7.5
2022-07-12 CVE-2022-34272 Out-of-bounds Read vulnerability in Siemens Pads Viewer
A vulnerability has been identified in PADS Standard/Plus Viewer (All versions).
local
low complexity
siemens CWE-125
7.8
2022-07-12 CVE-2022-34273 Out-of-bounds Write vulnerability in Siemens Pads Viewer
A vulnerability has been identified in PADS Standard/Plus Viewer (All versions).
local
low complexity
siemens CWE-787
7.8
2022-07-12 CVE-2022-34274 Out-of-bounds Write vulnerability in Siemens Pads Viewer
A vulnerability has been identified in PADS Standard/Plus Viewer (All versions).
local
low complexity
siemens CWE-787
7.8
2022-07-12 CVE-2022-34275 Out-of-bounds Write vulnerability in Siemens Pads Viewer
A vulnerability has been identified in PADS Standard/Plus Viewer (All versions).
local
low complexity
siemens CWE-787
7.8