Vulnerabilities > Siemens > Critical

DATE CVE VULNERABILITY TITLE RISK
2014-04-19 CVE-2014-2731 Remote Code Execution vulnerability in Siemens Sinema Server 12.0
Multiple unspecified vulnerabilities in the integrated web server in Siemens SINEMA Server before 12 SP1 allow remote attackers to execute arbitrary code via HTTP traffic to port (1) 4999 or (2) 80.
network
siemens
critical
9.3
2013-12-07 CVE-2013-6920 Improper Authentication vulnerability in Siemens products
Siemens SINAMICS S/G controllers with firmware before 4.6.11 do not require authentication for FTP and TELNET sessions, which allows remote attackers to bypass intended access restrictions via TCP traffic to port (1) 21 or (2) 23.
network
low complexity
siemens CWE-287
critical
10.0
2013-10-03 CVE-2013-5944 Improper Authentication vulnerability in Siemens products
The integrated web server on Siemens SCALANCE X-200 switches with firmware before 4.5.0 and X-200IRT switches with firmware before 5.1.0 does not properly enforce authentication requirements, which allows remote attackers to perform administrative actions via requests to the management interface.
network
low complexity
siemens CWE-287
critical
10.0
2013-08-01 CVE-2013-4652 Authentication Bypass vulnerability in Siemens Scalance W-700 Series
Unspecified vulnerability in the command-line management interface on Siemens Scalance W7xx devices with firmware before 4.5.4 allows remote attackers to bypass authentication and execute arbitrary code via a (1) SSH or (2) TELNET connection.
network
low complexity
siemens
critical
10.0
2013-07-18 CVE-2013-4781 OS Command Injection vulnerability in Siemens products
core/getLog.php on the Siemens Enterprise OpenScape Branch appliance and OpenScape Session Border Controller (SBC) before 2 R0.32.0, and 7 before 7 R1.7.0, allows remote attackers to execute arbitrary commands via unspecified vectors.
network
low complexity
siemens CWE-78
critical
10.0
2013-04-01 CVE-2013-0659 Unspecified vulnerability in Siemens products
The debugging feature on the Siemens CP 1604 and CP 1616 interface cards with firmware before 2.5.2 allows remote attackers to execute arbitrary code via a crafted packet to UDP port 17185.
network
low complexity
siemens
critical
10.0
2012-11-01 CVE-2012-5409 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Siemens Sipass Integrated
AscoServer.exe in the server in Siemens SiPass integrated MP2.6 and earlier does not properly handle IOCP RPC messages received over an Ethernet network, which allows remote attackers to write data to any memory location and consequently execute arbitrary code via crafted messages, as demonstrated by an arbitrary pointer dereference attack or a buffer overflow attack.
network
low complexity
siemens CWE-119
critical
10.0
2012-04-18 CVE-2012-1799 Improper Authentication vulnerability in Siemens products
The web server on the Siemens Scalance S Security Module firewall S602 V2, S612 V2, and S613 V2 with firmware before 2.3.0.3 does not limit the rate of authentication attempts, which makes it easier for remote attackers to obtain access via a brute-force attack on the administrative password.
network
low complexity
siemens CWE-287
critical
10.0
2012-02-03 CVE-2011-4876 Path Traversal vulnerability in Siemens products
Directory traversal vulnerability in HmiLoad in the runtime loader in Siemens WinCC flexible 2004, 2005, 2007, and 2008; WinCC V11 (aka TIA portal); the TP, OP, MP, Comfort Panels, and Mobile Panels SIMATIC HMI panels; WinCC V11 Runtime Advanced; and WinCC flexible Runtime, when Transfer Mode is enabled, allows remote attackers to execute, read, create, modify, or delete arbitrary files via a ..
network
siemens CWE-22
critical
9.3
2012-02-03 CVE-2011-4875 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Siemens products
Stack-based buffer overflow in HmiLoad in the runtime loader in Siemens WinCC flexible 2004, 2005, 2007, and 2008; WinCC V11 (aka TIA portal); the TP, OP, MP, Comfort Panels, and Mobile Panels SIMATIC HMI panels; WinCC V11 Runtime Advanced; and WinCC flexible Runtime, when Transfer Mode is enabled, allows remote attackers to execute arbitrary code via vectors related to Unicode strings.
network
siemens CWE-119
critical
9.3