Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2729▼ 513 respecto a la semana anterior
Críticas / altas1298▼ 212 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)225▼ 276 respecto a la semana anterior
–

2356 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
AnalizadaCrítica (10)0.62%—Siemens 7KT Pac1260 Data Manager Firmware8/4/202517/6/2026
A vulnerability has been identified in SENTRON 7KT PAC1260 Data Manager (All versions). Affected devices contain hardcoded credentials for remote access to the device operating system with root privileges. This could allow unauthenticated remote attackers to gain full access to a device, if they are in possession of…
AnalizadaAlta (7.7)0.54%—Siemens 7KT Pac1260 Data Manager Firmware8/4/202517/6/2026
A vulnerability has been identified in SENTRON 7KT PAC1260 Data Manager (All versions). The web interface of affected devices provides an endpoint that allows to enable the ssh service without authentication. This could allow an unauthenticated remote attacker to enable remote access to the device via ssh.
AnalizadaCrítica (9.2)0.57%—Siemens 7KT Pac1260 Data Manager Firmware8/4/202517/6/2026
A vulnerability has been identified in SENTRON 7KT PAC1260 Data Manager (All versions). The web interface of affected devices contains a path traversal vulnerability. This could allow an unauthenticated attacker it to access arbitrary files on the device with root privileges.
AnalizadaMedia (6.9)0.38%—Siemens 7KT Pac1260 Data Manager Firmware8/4/202517/6/2026
A vulnerability has been identified in SENTRON 7KT PAC1260 Data Manager (All versions). The web interface of affected devices does not authenticate report creation requests. This could allow an unauthenticated remote attacker to read or clear the log files on the device, reset the device or set the date and time.
AnalizadaCrítica (9.4)0.89%—Siemens 7KT Pac1260 Data Manager Firmware8/4/202517/6/2026
A vulnerability has been identified in SENTRON 7KT PAC1260 Data Manager (All versions). The web interface of affected devices does not sanitize the region parameter in specific POST requests. This could allow an authenticated remote attacker to execute arbitrary code with root privileges.
AnalizadaCrítica (9.4)0.89%—Siemens 7KT Pac1260 Data Manager Firmware8/4/202517/6/2026
A vulnerability has been identified in SENTRON 7KT PAC1260 Data Manager (All versions). The web interface of affected devices does not sanitize the language parameter in specific POST requests. This could allow an authenticated remote attacker to execute arbitrary code with root privileges.
AnalizadaCrítica (9.4)0.89%—Siemens 7KT Pac1260 Data Manager Firmware8/4/202517/6/2026
A vulnerability has been identified in SENTRON 7KT PAC1260 Data Manager (All versions). The web interface of affected devices does not sanitize the input parameters in specific GET requests. This could allow an authenticated remote attacker to execute arbitrary code with root privileges.
AnalizadaAlta (7.3)0.37%—Siemens Simcenter Femap13/3/202517/6/2026
A vulnerability has been identified in Simcenter Femap V2401 (All versions < V2401.0003), Simcenter Femap V2406 (All versions < V2406.0002). The affected application contains a memory corruption vulnerability while parsing specially crafted .NEU files. This could allow an attacker to execute code in the context of the…
AnalizadaCrítica (9.4)0.50%—Siemens Sipass Integrated Ac5102 (acc-g2) FirmwareSiemens Sipass Integrated Acc-ap Firmware11/3/202517/6/2026
A vulnerability has been identified in SiPass integrated AC5102 (ACC-G2) (All versions < V6.4.9), SiPass integrated ACC-AP (All versions < V6.4.9). Affected devices improperly sanitize input for the pubkey endpoint of the REST API. This could allow an authenticated remote administrator to escalate privileges by…
AnalizadaCrítica (9.3)0.18%—Siemens Sipass Integrated Ac5102 (acc-g2) FirmwareSiemens Sipass Integrated Acc-ap Firmware11/3/202517/6/2026
A vulnerability has been identified in SiPass integrated AC5102 (ACC-G2) (All versions < V6.4.9), SiPass integrated ACC-AP (All versions < V6.4.9). Affected devices improperly sanitize user input for specific commands on the telnet command line interface. This could allow an authenticated local administrator to…
AnalizadaAlta (7.3)0.16%—Siemens Teamcenter VisualizationSiemens Tecnomatix Plant Simulation11/3/202517/6/2026
A vulnerability has been identified in Teamcenter Visualization V14.3 (All versions < V14.3.0.13), Teamcenter Visualization V2312 (All versions < V2312.0009), Teamcenter Visualization V2406 (All versions < V2406.0007), Teamcenter Visualization V2412 (All versions < V2412.0002), Tecnomatix Plant Simulation V2302 (All…
AnalizadaBaja (2.1)0.34%—Siemens Scalance Lpe9403 Firmware11/3/202517/6/2026
A vulnerability has been identified in SCALANCE LPE9403 (6GK5998-3GS00-2AC2) (All versions < V4.0). Affected devices do not properly neutralize special characters when interpreting user controlled log paths. This could allow an authenticated highly-privileged remote attacker to execute a limited set of binaries that…
AnalizadaMedia (5.1)0.41%—Siemens Scalance Lpe9403 Firmware11/3/202517/6/2026
A vulnerability has been identified in SCALANCE LPE9403 (6GK5998-3GS00-2AC2) (All versions < V4.0). Affected devices do not properly limit user controlled paths to which logs are written and from where they are read. This could allow an authenticated highly-privileged remote attacker to read and write arbitrary files…
AnalizadaAlta (8.7)0.44%—Siemens Scalance Lpe9403 Firmware11/3/202517/6/2026
A vulnerability has been identified in SCALANCE LPE9403 (6GK5998-3GS00-2AC2) (All versions < V4.0). Affected devices do not properly limit the elevation of privileges required to perform certain valid functionality. This could allow an authenticated lowly-privileged remote attacker to escalate their privileges.
AnalizadaAlta (8.6)0.66%—Siemens Scalance Lpe9403 Firmware11/3/202517/6/2026
A vulnerability has been identified in SCALANCE LPE9403 (6GK5998-3GS00-2AC2) (All versions < V4.0). Affected devices do not properly limit the scope of files accessible through and the privileges of the SFTP functionality. This could allow an authenticated highly-privileged remote attacker to read and write arbitrary…
AnalizadaAlta (8.6)0.73%—Siemens Scalance Lpe9403 Firmware11/3/202517/6/2026
A vulnerability has been identified in SCALANCE LPE9403 (6GK5998-3GS00-2AC2) (All versions < V4.0). Affected devices do not properly sanitize user input when creating new SNMP users. This could allow an authenticated highly-privileged remote attacker to execute arbitrary code on the device.
AnalizadaAlta (8.6)0.73%—Siemens Scalance Lpe9403 Firmware11/3/202517/6/2026
A vulnerability has been identified in SCALANCE LPE9403 (6GK5998-3GS00-2AC2) (All versions < V4.0). Affected devices do not properly sanitize user input when creating new users. This could allow an authenticated highly-privileged remote attacker to execute arbitrary code on the device.
AnalizadaAlta (8.6)0.73%—Siemens Scalance Lpe9403 Firmware11/3/202517/6/2026
A vulnerability has been identified in SCALANCE LPE9403 (6GK5998-3GS00-2AC2) (All versions < V4.0). Affected devices do not properly sanitize user input when creating new VXLAN configurations. This could allow an authenticated highly-privileged remote attacker to execute arbitrary code on the device.
AnalizadaMedia (6.9)0.17%—Siemens Tecnomatix Plant Simulation11/3/202517/6/2026
A vulnerability has been identified in Tecnomatix Plant Simulation V2302 (All versions < V2302.0021), Tecnomatix Plant Simulation V2404 (All versions < V2404.0010). The affected application does not properly restrict the scope of files accessible to the simulation model. This could allow an unauthorized attacker to…
AnalizadaAlta (7)0.15%—Siemens Tecnomatix Plant Simulation11/3/202517/6/2026
A vulnerability has been identified in Tecnomatix Plant Simulation V2302 (All versions < V2302.0021), Tecnomatix Plant Simulation V2404 (All versions < V2404.0010). The affected application does not properly restrict access to the file deletion functionality. This could allow an unauthorized attacker to delete files…
AnalizadaAlta (7.3)0.17%—Siemens Teamcenter VisualizationSiemens Tecnomatix Plant Simulation11/3/202517/6/2026
A vulnerability has been identified in Teamcenter Visualization V14.3 (All versions < V14.3.0.13), Teamcenter Visualization V2312 (All versions < V2312.0009), Teamcenter Visualization V2406 (All versions < V2406.0007), Teamcenter Visualization V2412 (All versions < V2412.0002), Tecnomatix Plant Simulation V2302 (All…
AnalizadaAlta (7.3)0.16%—Siemens Teamcenter VisualizationSiemens Tecnomatix Plant Simulation11/3/202517/6/2026
A vulnerability has been identified in Teamcenter Visualization V14.3 (All versions < V14.3.0.13), Teamcenter Visualization V2312 (All versions < V2312.0009), Teamcenter Visualization V2406 (All versions < V2406.0007), Teamcenter Visualization V2412 (All versions < V2412.0002), Tecnomatix Plant Simulation V2302 (All…
AnalizadaAlta (7.3)0.16%—Siemens Teamcenter VisualizationSiemens Tecnomatix Plant Simulation11/3/202517/6/2026
A vulnerability has been identified in Teamcenter Visualization V14.3 (All versions < V14.3.0.13), Teamcenter Visualization V2312 (All versions < V2312.0009), Teamcenter Visualization V2406 (All versions < V2406.0007), Teamcenter Visualization V2412 (All versions < V2412.0002), Tecnomatix Plant Simulation V2302 (All…
AnalizadaAlta (7.3)0.16%—Siemens Teamcenter VisualizationSiemens Tecnomatix Plant Simulation11/3/202517/6/2026
A vulnerability has been identified in Teamcenter Visualization V14.3 (All versions < V14.3.0.13), Teamcenter Visualization V2312 (All versions < V2312.0009), Teamcenter Visualization V2406 (All versions < V2406.0007), Teamcenter Visualization V2412 (All versions < V2412.0002), Tecnomatix Plant Simulation V2302 (All…
AnalizadaAlta (7.3)0.16%—Siemens Teamcenter VisualizationSiemens Tecnomatix Plant Simulation11/3/202517/6/2026
A vulnerability has been identified in Teamcenter Visualization V14.3 (All versions < V14.3.0.13), Teamcenter Visualization V2312 (All versions < V2312.0009), Teamcenter Visualization V2406 (All versions < V2406.0007), Teamcenter Visualization V2412 (All versions < V2412.0002), Tecnomatix Plant Simulation V2302 (All…