Vulnerabilities > Siemens > Medium

DATE CVE VULNERABILITY TITLE RISK
2020-04-14 CVE-2020-7574 Cross-site Scripting vulnerability in Siemens Climatix Pol908 Firmware and Climatix Pol909 Firmware
A vulnerability has been identified in Climatix POL908 (BACnet/IP module) (All versions), Climatix POL909 (AWM module) (All versions < V11.32).
network
low complexity
siemens CWE-79
6.1
2020-03-10 CVE-2020-7579 Cross-site Scripting vulnerability in Siemens Spectrum Power 5 5.50
A vulnerability has been identified in Spectrum Power™ 5 (All versions < v5.50 HF02).
network
low complexity
siemens CWE-79
6.1
2020-03-10 CVE-2019-6585 Unspecified vulnerability in Siemens products
A vulnerability has been identified in SCALANCE S602 (All versions >= V3.0 and < V4.1), SCALANCE S612 (All versions >= V3.0 and < V4.1), SCALANCE S623 (All versions >= V3.0 and < V4.1), SCALANCE S627-2M (All versions >= V3.0 and < V4.1).
network
low complexity
siemens
6.1
2020-03-10 CVE-2019-19295 Unspecified vulnerability in Siemens products
A vulnerability has been identified in Control Center Server (CCS) (All versions < V1.5.0).
network
low complexity
siemens
4.3
2020-03-10 CVE-2019-19277 Unspecified vulnerability in Siemens Siport MP 2.2/3.0.3
A vulnerability has been identified in SIPORT MP (All versions < 3.1.4).
network
low complexity
siemens
6.5
2020-02-11 CVE-2019-13924 Unspecified vulnerability in Siemens products
A vulnerability has been identified in SCALANCE S602 (All versions < V4.1), SCALANCE S612 (All versions < V4.1), SCALANCE S623 (All versions < V4.1), SCALANCE S627-2M (All versions < V4.1), SCALANCE X-200 switch family (incl.
network
low complexity
siemens
5.4
2020-01-16 CVE-2019-19278 Race Condition vulnerability in Siemens Sinamics Perfect Harmony Gh180 Firmware
A vulnerability has been identified in SINAMICS PERFECT HARMONY GH180 Drives MLFB 6SR32..-.....-....
low complexity
siemens CWE-362
6.8
2019-12-24 CVE-2019-19924 Improper Handling of Exceptional Conditions vulnerability in multiple products
SQLite 3.30.1 mishandles certain parser-tree rewriting, related to expr.c, vdbeaux.c, and window.c.
network
low complexity
sqlite siemens apache oracle netapp CWE-755
5.3
2019-12-12 CVE-2019-18335 Information Exposure vulnerability in Siemens Sppa-T3000 Application Server R8.2
A vulnerability has been identified in SPPA-T3000 Application Server (All versions < Service Pack R8.2 SP2).
network
low complexity
siemens CWE-200
5.3
2019-12-12 CVE-2019-18334 Information Exposure vulnerability in Siemens Sppa-T3000 Application Server R8.2
A vulnerability has been identified in SPPA-T3000 Application Server (All versions < Service Pack R8.2 SP2).
network
low complexity
siemens CWE-200
5.3