Vulnerabilities > Siemens

DATE CVE VULNERABILITY TITLE RISK
2021-03-29 CVE-2019-5317 Improper Authentication vulnerability in multiple products
A local authentication bypass vulnerability was discovered in some Aruba Instant Access Point (IAP) products in version(s): Aruba Instant 6.4.x: 6.4.4.8-4.2.4.18 and below; Aruba Instant 6.5.x: 6.5.4.15 and below; Aruba Instant 8.3.x: 8.3.0.11 and below; Aruba Instant 8.4.x: 8.4.0.5 and below; Aruba Instant 8.5.x: 8.5.0.6 and below; Aruba Instant 8.6.x: 8.6.0.2 and below.
low complexity
arubanetworks siemens CWE-287
6.8
2021-03-26 CVE-2020-7461 Out-of-bounds Write vulnerability in multiple products
In FreeBSD 12.1-STABLE before r365010, 11.4-STABLE before r365011, 12.1-RELEASE before p9, 11.4-RELEASE before p3, and 11.3-RELEASE before p13, dhclient(8) fails to handle certain malformed input related to handling of DHCP option 119 resulting a heap overflow.
network
low complexity
freebsd siemens CWE-787
7.3
2021-03-25 CVE-2021-3449 NULL Pointer Dereference vulnerability in multiple products
An OpenSSL TLS server may crash if sent a maliciously crafted renegotiation ClientHello message from a client.
5.9
2021-03-23 CVE-2021-23362 The package hosted-git-info before 3.0.8 are vulnerable to Regular Expression Denial of Service (ReDoS) via regular expression shortcutMatch in the fromUrl function in index.js.
network
low complexity
npmjs siemens
5.3
2021-03-18 CVE-2020-27827 A flaw was found in multiple versions of OpenvSwitch. 7.5
2021-03-15 CVE-2021-27381 Unspecified vulnerability in Siemens Solid Edge Se2020/Se2021
A vulnerability has been identified in Solid Edge SE2020 (All Versions < SE2020MP13), Solid Edge SE2021 (All Versions < SE2021MP3).
local
low complexity
siemens
7.8
2021-03-15 CVE-2021-27380 Unspecified vulnerability in Siemens Solid Edge Se2020/Se2021
A vulnerability has been identified in Solid Edge SE2020 (All versions < SE2020MP13), Solid Edge SE2021 (All Versions < SE2021MP4).
local
low complexity
siemens
7.8
2021-03-15 CVE-2021-25676 Unspecified vulnerability in Siemens products
A vulnerability has been identified in RUGGEDCOM RM1224 (V6.3), SCALANCE M-800 (V6.3), SCALANCE S615 (V6.3), SCALANCE SC-600 (All Versions >= V2.1 and < V2.1.3).
network
low complexity
siemens
7.5
2021-03-15 CVE-2021-25675 Unspecified vulnerability in Siemens Simatic S7-Plcsim 5.4
A vulnerability has been identified in SIMATIC S7-PLCSIM V5.4 (All versions).
local
low complexity
siemens
5.5
2021-03-15 CVE-2021-25674 Unspecified vulnerability in Siemens Simatic S7-Plcsim 5.4
A vulnerability has been identified in SIMATIC S7-PLCSIM V5.4 (All versions).
local
low complexity
siemens
5.5