Vulnerabilities > Siemens > High

DATE CVE VULNERABILITY TITLE RISK
2021-09-14 CVE-2021-33737 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Siemens products
A vulnerability has been identified in SIMATIC CP 343-1 (incl.
network
low complexity
siemens CWE-119
7.5
2021-09-14 CVE-2021-37173 Improper Privilege Management vulnerability in Siemens products
A vulnerability has been identified in RUGGEDCOM ROX MX5000 (All versions < V2.14.1), RUGGEDCOM ROX RX1400 (All versions < V2.14.1), RUGGEDCOM ROX RX1500 (All versions < V2.14.1), RUGGEDCOM ROX RX1501 (All versions < V2.14.1), RUGGEDCOM ROX RX1510 (All versions < V2.14.1), RUGGEDCOM ROX RX1511 (All versions < V2.14.1), RUGGEDCOM ROX RX1512 (All versions < V2.14.1), RUGGEDCOM ROX RX1524 (All versions < V2.14.1), RUGGEDCOM ROX RX1536 (All versions < V2.14.1), RUGGEDCOM ROX RX5000 (All versions < V2.14.1).
network
low complexity
siemens CWE-269
8.8
2021-09-14 CVE-2021-37174 Execution with Unnecessary Privileges vulnerability in Siemens products
A vulnerability has been identified in RUGGEDCOM ROX MX5000 (All versions < V2.14.1), RUGGEDCOM ROX RX1400 (All versions < V2.14.1), RUGGEDCOM ROX RX1500 (All versions < V2.14.1), RUGGEDCOM ROX RX1501 (All versions < V2.14.1), RUGGEDCOM ROX RX1510 (All versions < V2.14.1), RUGGEDCOM ROX RX1511 (All versions < V2.14.1), RUGGEDCOM ROX RX1512 (All versions < V2.14.1), RUGGEDCOM ROX RX1524 (All versions < V2.14.1), RUGGEDCOM ROX RX1536 (All versions < V2.14.1), RUGGEDCOM ROX RX5000 (All versions < V2.14.1).
network
low complexity
siemens CWE-250
8.8
2021-09-14 CVE-2021-37200 Path Traversal vulnerability in Siemens Sinec Network Management System 1.0
A vulnerability has been identified in SINEC NMS (All versions < V1.0 SP1).
network
low complexity
siemens CWE-22
7.7
2021-09-14 CVE-2021-37201 Cross-Site Request Forgery (CSRF) vulnerability in Siemens Sinec Network Management System 1.0
A vulnerability has been identified in SINEC NMS (All versions < V1.0 SP1).
network
low complexity
siemens CWE-352
8.8
2021-09-14 CVE-2021-37202 Use After Free vulnerability in Siemens NX 1980 and Solid Edge
A vulnerability has been identified in NX 1980 Series (All versions < V1984), Solid Edge SE2021 (All versions < SE2021MP8).
local
low complexity
siemens CWE-416
7.8
2021-09-14 CVE-2021-37203 Out-of-bounds Read vulnerability in Siemens NX 1980 and Solid Edge
A vulnerability has been identified in NX 1980 Series (All versions < V1984), Solid Edge SE2021 (All versions < SE2021MP8).
local
low complexity
siemens CWE-125
7.1
2021-09-14 CVE-2021-37206 Improper Input Validation vulnerability in Siemens products
A vulnerability has been identified in SIPROTEC 5 relays with CPU variants CP050 (All versions < V8.80), SIPROTEC 5 relays with CPU variants CP100 (All versions < V8.80), SIPROTEC 5 relays with CPU variants CP300 (All versions < V8.80).
network
low complexity
siemens CWE-20
7.5
2021-09-14 CVE-2021-40354 Improper Privilege Management vulnerability in Siemens Teamcenter Visualization
A vulnerability has been identified in Teamcenter V12.4 (All versions < V12.4.0.8), Teamcenter V13.0 (All versions < V13.0.0.7), Teamcenter V13.1 (All versions < V13.1.0.5), Teamcenter V13.2 (All versions < 13.2.0.2).
network
low complexity
siemens CWE-269
7.1
2021-09-14 CVE-2021-40355 Authorization Bypass Through User-Controlled Key vulnerability in Siemens Teamcenter Visualization
A vulnerability has been identified in Teamcenter V12.4 (All versions < V12.4.0.8), Teamcenter V13.0 (All versions < V13.0.0.7), Teamcenter V13.1 (All versions < V13.1.0.5), Teamcenter V13.2 (All versions < 13.2.0.2).
network
low complexity
siemens CWE-639
8.8