Vulnerabilities > Siemens > Medium

DATE CVE VULNERABILITY TITLE RISK
2019-09-13 CVE-2019-13920 Cross-Site Request Forgery (CSRF) vulnerability in Siemens Sinema Remote Connect Server 1.1/2.0
A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V2.0 SP1).
network
siemens CWE-352
4.3
2019-09-13 CVE-2019-13919 Unspecified vulnerability in Siemens Sinema Remote Connect Server
A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V2.0 SP1).
network
low complexity
siemens
4.0
2019-09-13 CVE-2019-10937 Improper Input Validation vulnerability in Siemens Simatic TDC Cp51M1 Firmware
A vulnerability has been identified in SIMATIC TDC CP51M1 (All versions < V1.1.7).
network
low complexity
siemens CWE-20
5.0
2019-08-13 CVE-2019-10943 Missing Support for Integrity Check vulnerability in Siemens products
A vulnerability has been identified in SIMATIC Drive Controller family (All versions), SIMATIC ET 200SP Open Controller CPU 1515SP PC (incl.
network
low complexity
siemens CWE-353
5.0
2019-08-13 CVE-2019-10942 Resource Exhaustion vulnerability in Siemens products
A vulnerability has been identified in SCALANCE X-200 switch family (incl.
network
low complexity
siemens CWE-400
5.0
2019-08-13 CVE-2019-10929 Use of a Broken or Risky Cryptographic Algorithm vulnerability in Siemens products
A vulnerability has been identified in SIMATIC CP 1626 (All versions), SIMATIC ET 200SP Open Controller CPU 1515SP PC (incl.
network
siemens CWE-327
4.3
2019-08-13 CVE-2019-10928 Command Injection vulnerability in Siemens Scalance Sc-600 Firmware 2.0
A vulnerability has been identified in SCALANCE SC-600 (V2.0).
local
low complexity
siemens CWE-77
4.6
2019-08-13 CVE-2019-10927 Unspecified vulnerability in Siemens products
A vulnerability has been identified in SCALANCE SC-600 (V2.0), SCALANCE XB-200 (V4.1), SCALANCE XC-200 (V4.1), SCALANCE XF-200BA (V4.1), SCALANCE XP-200 (V4.1), SCALANCE XR-300WG (V4.1).
network
low complexity
siemens
4.0
2019-08-09 CVE-2019-12258 Session Fixation vulnerability in multiple products
Wind River VxWorks 6.6 through vx7 has Session Fixation in the TCP component.
network
low complexity
windriver sonicwall siemens netapp belden CWE-384
5.0
2019-08-09 CVE-2019-12265 Memory Leak vulnerability in multiple products
Wind River VxWorks 6.5, 6.6, 6.7, 6.8, 6.9.3 and 6.9.4 has a Memory Leak in the IGMPv3 client component.
network
low complexity
windriver sonicwall siemens netapp belden CWE-401
5.0