Vulnerabilities > Siemens > Low

DATE CVE VULNERABILITY TITLE RISK
2013-03-21 CVE-2013-0672 Cross-Site Scripting vulnerability in Siemens Wincc TIA Portal 11.0
Cross-site scripting (XSS) vulnerability in the HMI web application in Siemens WinCC (TIA Portal) 11 allows remote authenticated users to inject arbitrary web script or HTML via unspecified data.
network
siemens CWE-79
3.5
2012-12-18 CVE-2012-4691 Resource Management Errors vulnerability in Siemens Automation License Manager 4.0/5.0/5.1
Memory leak in Siemens Automation License Manager (ALM) 4.x and 5.x before 5.2 allows remote attackers to cause a denial of service (memory consumption) via crafted packets.
low complexity
siemens CWE-399
3.3
2012-12-18 CVE-2012-4693 Cryptographic Issues vulnerability in multiple products
Invensys Wonderware InTouch 2012 R2 and earlier and Siemens ProcessSuite use a weak encryption algorithm for data in Ps_security.ini, which makes it easier for local users to discover passwords by reading this file.
1.9
2004-12-31 CVE-2004-2626 Unspecified vulnerability in Siemens S55 09.2179
GUI overlay vulnerability in the Java API in Siemens S55 cellular phones allows remote attackers to send unauthorized SMS messages by overlaying a confirmation message with a malicious message.
local
high complexity
siemens
3.7
2001-07-02 CVE-2001-0384 Unspecified vulnerability in Siemens Reliant Unix
ppd in Reliant Sinix allows local users to corrupt arbitrary files via a symlink attack in the /tmp/ppd.trace file.
local
low complexity
siemens
2.1