Vulnerabilities > Siemens > Medium

DATE CVE VULNERABILITY TITLE RISK
2021-09-14 CVE-2021-37202 Use After Free vulnerability in Siemens NX 1980 and Solid Edge
A vulnerability has been identified in NX 1980 Series (All versions < V1984), Solid Edge SE2021 (All versions < SE2021MP8).
network
siemens CWE-416
6.8
2021-09-14 CVE-2021-37203 Out-of-bounds Read vulnerability in Siemens NX 1980 and Solid Edge
A vulnerability has been identified in NX 1980 Series (All versions < V1984), Solid Edge SE2021 (All versions < SE2021MP8).
network
siemens CWE-125
5.8
2021-09-14 CVE-2021-37206 Improper Input Validation vulnerability in Siemens products
A vulnerability has been identified in SIPROTEC 5 relays with CPU variants CP050 (All versions < V8.80), SIPROTEC 5 relays with CPU variants CP100 (All versions < V8.80), SIPROTEC 5 relays with CPU variants CP300 (All versions < V8.80).
network
low complexity
siemens CWE-20
5.0
2021-09-14 CVE-2021-40354 Improper Privilege Management vulnerability in Siemens Teamcenter Visualization
A vulnerability has been identified in Teamcenter V12.4 (All versions < V12.4.0.8), Teamcenter V13.0 (All versions < V13.0.0.7), Teamcenter V13.1 (All versions < V13.1.0.5), Teamcenter V13.2 (All versions < 13.2.0.2).
network
low complexity
siemens CWE-269
5.5
2021-09-14 CVE-2021-40355 Authorization Bypass Through User-Controlled Key vulnerability in Siemens Teamcenter Visualization
A vulnerability has been identified in Teamcenter V12.4 (All versions < V12.4.0.8), Teamcenter V13.0 (All versions < V13.0.0.7), Teamcenter V13.1 (All versions < V13.1.0.5), Teamcenter V13.2 (All versions < 13.2.0.2).
network
low complexity
siemens CWE-639
6.5
2021-09-14 CVE-2021-40356 XXE vulnerability in Siemens Teamcenter Visualization
A vulnerability has been identified in Teamcenter V12.4 (All versions < V12.4.0.8), Teamcenter V13.0 (All versions < V13.0.0.7), Teamcenter V13.1 (All versions < V13.1.0.5), Teamcenter V13.2 (All versions < 13.2.0.2).
network
low complexity
siemens CWE-611
5.0
2021-09-14 CVE-2021-40357 Path Traversal vulnerability in Siemens Teamcenter Active Workspace
A vulnerability has been identified in Teamcenter Active Workspace V4.3 (All versions < V4.3.10), Teamcenter Active Workspace V5.0 (All versions < V5.0.8), Teamcenter Active Workspace V5.1 (All versions < V5.1.5), Teamcenter Active Workspace V5.2 (All versions < V5.2.1).
network
low complexity
siemens CWE-22
4.0
2021-09-07 CVE-2021-37729 Path Traversal vulnerability in multiple products
A remote path traversal vulnerability was discovered in Aruba SD-WAN Software and Gateways; Aruba Operating System Software version(s): Prior to 8.6.0.0-2.2.0.4; Prior to 8.7.1.3, 8.6.0.9, 8.5.0.12, 8.3.0.16, 6.5.4.19, 6.4.4.25.
network
low complexity
arubanetworks siemens CWE-22
5.5
2021-09-07 CVE-2021-37733 Path Traversal vulnerability in multiple products
A remote path traversal vulnerability was discovered in Aruba SD-WAN Software and Gateways; Aruba Operating System Software version(s): Prior to 8.6.0.4-2.2.0.4; Prior to 8.7.1.1, 8.6.0.7, 8.5.0.11, 8.3.0.16.
network
low complexity
arubanetworks siemens CWE-22
4.0
2021-08-31 CVE-2021-37713 Path Traversal vulnerability in multiple products
The npm package "tar" (aka node-tar) before versions 4.4.18, 5.0.10, and 6.1.9 has an arbitrary file creation/overwrite and arbitrary code execution vulnerability.
4.4