Top technology
Linux 13140
Google 12530
Microsoft 12379
Oracle 6737
Apple 6692
Adobe 6387
Ibm 6330
Cisco 5757
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
HIGH 7.3
CVE-2016-9156
A vulnerability in Siemens SICAM PAS (all versions before V8.09) could allow a remote attacker to upload, download, or delete files in certain parts …
Sicam Pas\/pqs
8.09+
HIGH 8.8
CVE-2016-8673
A vulnerability has been identified in SIMATIC CP 343-1 Advanced (incl. SIPLUS NET variant) (All versions < V3.0.53), SIMATIC CP 443-1 Advanced (incl…
Simatic S7 300 Cpu Firmware
Mitigation only
MEDIUM 5.3
CVE-2016-8672
A vulnerability has been identified in SIMATIC CP 343-1 Advanced (incl. SIPLUS NET variant) (All versions < V3.0.53), SIMATIC CP 443-1 Advanced (incl…
Simatic Cp 343 1 Firmware
Mitigation only
CRITICAL 9.8
CVE-2016-9155
The following SIEMENS branded IP Camera Models CCMW3025, CVMW3025-IR, CFMW3025 prior to version 1.41_SP18_S1; CCPW3025, CCPW5025 prior to version 0.1…
Ccid1445 Dn18 Firmware
Patch available
HIGH 7.5
CVE-2016-8562 KEV
A vulnerability has been identified in SIMATIC CP 1543-1 (All versions < V2.0.28), SIPLUS NET CP 1543-1 (All versions < V2.0.28). Under special condi…
Simatic Cp 1543 1 Firmware
2.0.28+
MEDIUM 6.6
CVE-2016-8561
A vulnerability has been identified in SIMATIC CP 1543-1 (All versions < V2.0.28), SIPLUS NET CP 1543-1 (All versions < V2.0.28). Users with elevated…
Simatic Cp 1543 1 Firmware
Patch available
MEDIUM 6.4
CVE-2016-7165
A vulnerability has been identified in Primary Setup Tool (PST) (All versions < V4.2 HF1), SIMATIC IT Production Suite (All versions < V7.0 SP1 HFX 2…
Primary Setup Tool
after 14.0
CRITICAL 9.1
CVE-2016-8565
Siemens Automation License Manager (ALM) before 5.3 SP3 allows remote attackers to write to files, rename files, create directories, or delete direct…
Automation License Manager
after 5.3
MEDIUM 6.5
CVE-2016-8564
SQL injection vulnerability in Siemens Automation License Manager (ALM) before 5.3 SP3 Update 1 allows remote attackers to execute arbitrary SQL comm…
Automation License Manager
after 5.3
HIGH 7.5
CVE-2016-8563
Siemens Automation License Manager (ALM) before 5.3 SP3 Update 1 allows remote attackers to cause a denial of service (ALM service outage) via crafte…
Automation License Manager
after 5.3
HIGH 8.8
CVE-2016-7114
A vulnerability has been identified in Firmware variant PROFINET IO for EN100 Ethernet module : All versions < V1.04.01; Firmware variant Modbus TCP …
En100 Ethernet Module Firmware
Mitigation only
HIGH 7.5
CVE-2016-7113
A vulnerability has been identified in Firmware variant PROFINET IO for EN100 Ethernet module : All versions < V1.04.01; Firmware variant Modbus TCP …
En100 Ethernet Module Firmware
Mitigation only
CRITICAL 9.8
CVE-2016-7112
A vulnerability has been identified in Firmware variant PROFINET IO for EN100 Ethernet module : All versions < V1.04.01; Firmware variant Modbus TCP …
En100 Ethernet Module Firmware
after 4.28
HIGH 7.8
CVE-2016-6486
Siemens SINEMA Server uses weak permissions for the application folder, which allows local users to gain privileges via unspecified vectors.
Sinema Server
Mitigation only
MEDIUM 6.1
CVE-2016-6204
Cross-site scripting (XSS) vulnerability in the integrated web server in Siemens SINEMA Remote Connect Server before 1.2 allows remote attackers to i…
Sinema Remote Connect Server
after 1.1
HIGH 7.5
CVE-2016-5874
Siemens SIMATIC NET PC-Software before 13 SP2 allows remote attackers to cause a denial of service (OPC UA service outage) via crafted TCP packets.
Simatic Net Pc Software
after 13
HIGH 7.5
CVE-2016-5744
Siemens SIMATIC WinCC 7.0 through SP3 and 7.2 allows remote attackers to read arbitrary WinCC station files via crafted packets.
Simatic Wincc
Mitigation only
CRITICAL 9.8
CVE-2016-5743EPSS 10%
Siemens SIMATIC WinCC before 7.3 Update 10 and 7.4 before Update 1, SIMATIC BATCH before 8.1 SP1 Update 9 as distributed in SIMATIC PCS 7 through 8.1…
Simatic Batch
after 8.2
MEDIUM 6.7
CVE-2016-5848
Siemens SICAM PAS before 8.07 does not properly restrict password data in the database, which makes it easier for local users to calculate passwords …
Sicam Pas\/pqs
after 8.07
HIGH 7.5
CVE-2016-3949
Siemens SIMATIC S7-300 Profinet-enabled CPU devices with firmware before 3.2.12 and SIMATIC S7-300 Profinet-disabled CPU devices with firmware before…
Simatic S7 300 With Profitnet Support Firmware
Mitigation only
MEDIUM 5.3
CVE-2016-4785
A vulnerability has been identified in Firmware variant PROFINET IO for EN100 Ethernet module : All versions < V1.04.01; Firmware variant Modbus TCP …
Siprotec Firmware
Mitigation only
MEDIUM 5.3
CVE-2016-4784
A vulnerability has been identified in firmware variant PROFINET IO for EN100 Ethernet module : All versions < V1.04.01; Firmware variant Modbus TCP …
Siprotec Firmware
Mitigation only
MEDIUM 5.3
CVE-2016-3963EPSS 9%
Siemens SCALANCE S613 allows remote attackers to cause a denial of service (web-server outage) via traffic to TCP port 443.
Scalance S613
No fix yet
MEDIUM 6.5
CVE-2016-2846
Siemens SIMATIC S7-1200 CPU devices before 4.0 allow remote attackers to bypass a "user program block" protection mechanism via unspecified vectors.
Simatic S7 Cpu 1200 Firmware
after 3.0.2
MEDIUM 5.3
CVE-2016-2201
Siemens SIMATIC S7-1500 CPU devices before 1.8.3 allow remote attackers to bypass a replay protection mechanism via packets on TCP port 102.
Simatic S7 1500 Cpu Firmware
Mitigation only
HIGH 7.5
CVE-2016-2200EPSS 6%
Siemens SIMATIC S7-1500 CPU devices before 1.8.3 allow remote attackers to cause a denial of service (STOP mode transition) via crafted packets on TC…
Simatic S7 1500 Cpu Firmware
after 1.8.2
MEDIUM 6.1
CVE-2016-1488
Cross-site scripting (XSS) vulnerability in the login form in the integrated web server on Siemens OZW OZW672 devices before 6.00 and OZW772 devices …
Ozw672 Firmware
after 5.2
HIGH 9.7
CVE-2015-8214
A vulnerability has been identified in SIMATIC NET CP 342-5 (incl. SIPLUS variants) (All versions), SIMATIC NET CP 343-1 Advanced (incl. SIPLUS varia…
Simatic Cp 443 1 Firmware
after 3.0
MEDIUM 5.8
CVE-2015-5717
The Siemens COMPAS Mobile application before 1.6 for Android does not properly verify X.509 certificates from SSL servers, which allows man-in-the-mi…
Compas
after 1.5
HIGH 7.5
CVE-2015-5698
Cross-site request forgery (CSRF) vulnerability in the web server on Siemens SIMATIC S7-1200 CPU devices with firmware before 4.1.3 allows remote att…
Simatic S7 1200 Cpu Firmware
after 4.1.2