Vulnerabilities > Siemens > Telecontrol Server Basic

DATE CVE VULNERABILITY TITLE RISK
2024-11-12 CVE-2024-44102 Deserialization of Untrusted Data vulnerability in Siemens Telecontrol Server Basic 3.1
A vulnerability has been identified in PP TeleControl Server Basic 1000 to 5000 V3.1 (6NH9910-0AA31-0AE1) (All versions < V3.1.2.1 with redundancy configured), PP TeleControl Server Basic 256 to 1000 V3.1 (6NH9910-0AA31-0AD1) (All versions < V3.1.2.1 with redundancy configured), PP TeleControl Server Basic 32 to 64 V3.1 (6NH9910-0AA31-0AF1) (All versions < V3.1.2.1 with redundancy configured), PP TeleControl Server Basic 64 to 256 V3.1 (6NH9910-0AA31-0AC1) (All versions < V3.1.2.1 with redundancy configured), PP TeleControl Server Basic 8 to 32 V3.1 (6NH9910-0AA31-0AB1) (All versions < V3.1.2.1 with redundancy configured), TeleControl Server Basic 1000 V3.1 (6NH9910-0AA31-0AD0) (All versions < V3.1.2.1 with redundancy configured), TeleControl Server Basic 256 V3.1 (6NH9910-0AA31-0AC0) (All versions < V3.1.2.1 with redundancy configured), TeleControl Server Basic 32 V3.1 (6NH9910-0AA31-0AF0) (All versions < V3.1.2.1 with redundancy configured), TeleControl Server Basic 5000 V3.1 (6NH9910-0AA31-0AE0) (All versions < V3.1.2.1 with redundancy configured), TeleControl Server Basic 64 V3.1 (6NH9910-0AA31-0AB0) (All versions < V3.1.2.1 with redundancy configured), TeleControl Server Basic 8 V3.1 (6NH9910-0AA31-0AA0) (All versions < V3.1.2.1 with redundancy configured), TeleControl Server Basic Serv Upgr (6NH9910-0AA31-0GA1) (All versions < V3.1.2.1 with redundancy configured), TeleControl Server Basic Upgr V3.1 (6NH9910-0AA31-0GA0) (All versions < V3.1.2.1 with redundancy configured).
network
low complexity
siemens CWE-502
critical
10.0
2022-03-21 CVE-2021-45117 NULL Pointer Dereference vulnerability in multiple products
The OPC autogenerated ANSI C stack stubs (in the NodeSets) do not handle all error cases.
network
low complexity
opcfoundation siemens CWE-476
6.5
2021-08-27 CVE-2021-40142 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in multiple products
In OPC Foundation Local Discovery Server (LDS) before 1.04.402.463, remote attackers can cause a denial of service (DoS) by sending carefully crafted messages that lead to Access of a Memory Location After the End of a Buffer.
network
low complexity
opcfoundation siemens CWE-119
7.5
2019-04-17 CVE-2019-6575 Uncaught Exception vulnerability in Siemens products
A vulnerability has been identified in SIMATIC CP 443-1 OPC UA (All versions), SIMATIC ET 200SP Open Controller CPU 1515SP PC2 (incl.
network
low complexity
siemens CWE-248
7.5
2018-01-25 CVE-2018-4837 Unspecified vulnerability in Siemens Telecontrol Server Basic 3.0
A vulnerability has been identified in TeleControl Server Basic < V3.1.
network
low complexity
siemens
7.5
2018-01-25 CVE-2018-4836 Unspecified vulnerability in Siemens Telecontrol Server Basic 3.0
A vulnerability has been identified in TeleControl Server Basic < V3.1.
network
low complexity
siemens
8.8
2018-01-25 CVE-2018-4835 Information Exposure vulnerability in Siemens Telecontrol Server Basic 3.0
A vulnerability has been identified in TeleControl Server Basic < V3.1.
network
low complexity
siemens CWE-200
5.3