Vulnerabilities > Siemens > High

DATE CVE VULNERABILITY TITLE RISK
2021-05-12 CVE-2021-27398 Stack-based Buffer Overflow vulnerability in Siemens Tecnomatix Plant Simulation
A vulnerability has been identified in Tecnomatix Plant Simulation (All versions < V16.0.5).
local
low complexity
siemens CWE-121
7.8
2021-04-29 CVE-2021-25215 Reachable Assertion vulnerability in multiple products
In BIND 9.0.0 -> 9.11.29, 9.12.0 -> 9.16.13, and versions BIND 9.9.3-S1 -> 9.11.29-S1 and 9.16.8-S1 -> 9.16.13-S1 of BIND Supported Preview Edition, as well as release versions 9.17.0 -> 9.17.11 of the BIND 9.17 development branch, when a vulnerable version of named receives a query for a record triggering the flaw described above, the named process will terminate due to a failed assertion check.
7.5
2021-04-26 CVE-2021-31784 Out-of-bounds Write vulnerability in multiple products
An out-of-bounds write vulnerability exists in the file-reading procedure in Open Design Alliance Drawings SDK before 2021.6 on all supported by ODA platforms in static configuration.
local
low complexity
opendesign siemens CWE-787
7.8
2021-04-22 CVE-2020-27738 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Siemens products
A vulnerability has been identified in APOGEE PXC Compact (BACnet) (All versions < V3.5.5), APOGEE PXC Compact (P2 Ethernet) (All versions < V2.8.20), APOGEE PXC Modular (BACnet) (All versions < V3.5.5), APOGEE PXC Modular (P2 Ethernet) (All versions < V2.8.20), Nucleus NET (All versions), Nucleus ReadyStart V3 (All versions < V2017.02.3), Nucleus ReadyStart V4 (All versions < V4.1.0), Nucleus Source Code (Versions including affected DNS modules), SIMOTICS CONNECT 400 (All versions < V0.5.0.0), TALON TC Compact (BACnet) (All versions < V3.5.5), TALON TC Modular (BACnet) (All versions < V3.5.5).
network
high complexity
siemens CWE-119
7.4
2021-04-22 CVE-2020-27009 Out-of-bounds Write vulnerability in Siemens Nucleus NET and Nucleus Source Code
A vulnerability has been identified in APOGEE PXC Compact (BACnet) (All versions < V3.5.5), APOGEE PXC Compact (P2 Ethernet) (All versions < V2.8.20), APOGEE PXC Modular (BACnet) (All versions < V3.5.5), APOGEE PXC Modular (P2 Ethernet) (All versions < V2.8.20), Nucleus NET (All versions < V5.2), Nucleus Source Code (Versions including affected DNS modules), TALON TC Compact (BACnet) (All versions < V3.5.5), TALON TC Modular (BACnet) (All versions < V3.5.5).
network
high complexity
siemens CWE-787
8.1
2021-04-22 CVE-2020-26997 Untrusted Pointer Dereference vulnerability in Siemens Solid Edge Se2020 and Solid Edge Se2021
A vulnerability has been identified in Solid Edge SE2020 (All versions < SE2020MP13), Solid Edge SE2020 (All versions < SE2020MP14), Solid Edge SE2021 (All Versions < SE2021MP4).
local
low complexity
siemens CWE-822
7.8
2021-04-22 CVE-2020-25244 Uncontrolled Search Path Element vulnerability in Siemens Logo! Soft Comfort
A vulnerability has been identified in LOGO! Soft Comfort (All versions < V8.4).
local
low complexity
siemens CWE-427
8.4
2021-04-22 CVE-2020-15795 Out-of-bounds Write vulnerability in Siemens Nucleus NET and Nucleus Source Code
A vulnerability has been identified in APOGEE PXC Compact (BACnet) (All versions < V3.5.5), APOGEE PXC Compact (P2 Ethernet) (All versions < V2.8.20), APOGEE PXC Modular (BACnet) (All versions < V3.5.5), APOGEE PXC Modular (P2 Ethernet) (All versions < V2.8.20), Nucleus NET (All versions < V5.2), Nucleus Source Code (Versions including affected DNS modules), TALON TC Compact (BACnet) (All versions < V3.5.5), TALON TC Modular (BACnet) (All versions < V3.5.5).
network
high complexity
siemens CWE-787
8.1
2021-04-22 CVE-2021-27392 Use of Hard-coded Credentials vulnerability in Siemens Siveillance Video Open Network Bridge 2018/2019/2020
A vulnerability has been identified in Siveillance Video Open Network Bridge (2020 R3), Siveillance Video Open Network Bridge (2020 R2), Siveillance Video Open Network Bridge (2020 R1), Siveillance Video Open Network Bridge (2019 R3), Siveillance Video Open Network Bridge (2019 R2), Siveillance Video Open Network Bridge (2019 R1), Siveillance Video Open Network Bridge (2018 R3), Siveillance Video Open Network Bridge (2018 R2).
network
low complexity
siemens CWE-798
8.8
2021-04-22 CVE-2021-27382 Stack-based Buffer Overflow vulnerability in Siemens Solid Edge Se2020 and Solid Edge Se2021
A vulnerability has been identified in Solid Edge SE2020 (All versions < SE2020MP13), Solid Edge SE2020 (All versions < SE2020MP14), Solid Edge SE2021 (All Versions < SE2021MP4).
local
low complexity
siemens CWE-121
7.8