Vulnerabilities > Siemens > Simatic Process Device Manager > Medium

DATE CVE VULNERABILITY TITLE RISK
2020-06-10 CVE-2020-7586 Heap-based Buffer Overflow vulnerability in Siemens products
A vulnerability has been identified in SIMATIC PCS 7 V8.2 and earlier (All versions), SIMATIC PCS 7 V9.0 (All versions < V9.0 SP3), SIMATIC PDM (All versions), SIMATIC STEP 7 V5.X (All versions < V5.6 SP2 HF3), SINAMICS STARTER (containing STEP 7 OEM version) (All versions < V5.4 HF2).
local
low complexity
siemens CWE-122
4.6
2020-06-10 CVE-2020-7585 Uncontrolled Search Path Element vulnerability in Siemens products
A vulnerability has been identified in SIMATIC PCS 7 V8.2 and earlier (All versions), SIMATIC PCS 7 V9.0 (All versions < V9.0 SP3), SIMATIC PDM (All versions), SIMATIC STEP 7 V5.X (All versions < V5.6 SP2 HF3), SINAMICS STARTER (containing STEP 7 OEM version) (All versions < V5.4 HF2).
local
low complexity
siemens CWE-427
4.6