Vulnerabilities > Siemens > Simatic HMI KTP Mobile Panels Firmware

DATE CVE VULNERABILITY TITLE RISK
2022-10-11 CVE-2022-40227 Improper Input Validation vulnerability in Siemens products
A vulnerability has been identified in SIMATIC HMI Comfort Panels (incl.
network
low complexity
siemens CWE-20
7.5
2021-05-12 CVE-2019-19276 Out-of-bounds Write vulnerability in Siemens products
A vulnerability has been identified in SIMATIC HMI Comfort Panels 1st Generation (incl.
network
low complexity
siemens CWE-787
5.3
2021-03-25 CVE-2021-3449 NULL Pointer Dereference vulnerability in multiple products
An OpenSSL TLS server may crash if sent a maliciously crafted renegotiation ClientHello message from a client.
5.9
2021-02-09 CVE-2020-15798 Missing Authentication for Critical Function vulnerability in Siemens products
A vulnerability has been identified in SIMATIC HMI Comfort Panels (incl.
network
low complexity
siemens CWE-306
critical
9.8
2019-10-10 CVE-2019-10936 Resource Exhaustion vulnerability in Siemens products
Affected devices improperly handle large amounts of specially crafted UDP packets. This could allow an unauthenticated remote attacker to trigger a denial of service condition.
network
low complexity
siemens CWE-400
7.5