Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2659▼ 692 respecto a la semana anterior
Críticas / altas1261▼ 300 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)250▼ 252 respecto a la semana anterior
2424 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Analizada | Alta (7.5) | 0.32% | — | Logpoint Siem | 7/11/2024 | 17/6/2026 | An issue was discovered in Logpoint before 7.5.0. Server-Side Request Forgery (SSRF) on SOAR can be used to leak Logpoint's API Token leading to authentication bypass. | |
| Analizada | Alta (7.5) | 0.33% | — | Logpoint Siem | 7/11/2024 | 17/6/2026 | An issue was discovered in Logpoint before 7.5.0. An endpoint used by Distributed Logpoint Setup was exposed, allowing unauthenticated attackers to bypass CSRF protections and authentication. | |
| Analizada | Alta (8.5) | 0.20% | — | Siemens Intermesh 7177 Hybrid 2.0 SubscriberSiemens Intermesh 7707 Fire Subscriber Firmware | 23/10/2024 | 17/6/2026 | A vulnerability has been identified in InterMesh 7177 Hybrid 2.0 Subscriber (All versions < V8.2.12), InterMesh 7707 Fire Subscriber (All versions < V7.2.12 only if the IP interface is enabled (which is not the default configuration)). The affected devices contain a SUID binary that could allow an authenticated local… | |
| Analizada | Media (6.9) | 0.37% | — | Siemens Intermesh 7177 Hybrid 2.0 SubscriberSiemens Intermesh 7707 Fire Subscriber Firmware | 23/10/2024 | 17/6/2026 | A vulnerability has been identified in InterMesh 7177 Hybrid 2.0 Subscriber (All versions < V8.2.12), InterMesh 7707 Fire Subscriber (All versions < V7.2.12 only if the IP interface is enabled (which is not the default configuration)). The web server of affected devices allows to write arbitrary files to the web… | |
| Analizada | Media (6.9) | 0.51% | — | Siemens Intermesh 7177 Hybrid 2.0 SubscriberSiemens Intermesh 7707 Fire Subscriber Firmware | 23/10/2024 | 17/6/2026 | A vulnerability has been identified in InterMesh 7177 Hybrid 2.0 Subscriber (All versions < V8.2.12), InterMesh 7707 Fire Subscriber (All versions < V7.2.12 only if the IP interface is enabled (which is not the default configuration)). The web server of affected devices does not authenticate GET requests that execute… | |
| Analizada | Crítica (10) | 1.2% | — | Siemens Intermesh 7177 Hybrid 2.0 SubscriberSiemens Intermesh 7707 Fire Subscriber Firmware | 23/10/2024 | 17/6/2026 | A vulnerability has been identified in InterMesh 7177 Hybrid 2.0 Subscriber (All versions < V8.2.12), InterMesh 7707 Fire Subscriber (All versions < V7.2.12 only if the IP interface is enabled (which is not the default configuration)). The web server of affected devices does not sanitize the input parameters in… | |
| Modificada | Alta (7.8) | 0.33% | — | Siemens Simatic S7-1500 TM MFP FirmwareDebian LinuxLinux KernelSiemens Sinec OS | 21/10/2024 | 4/8/2026 | In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Fix index out of bounds in degamma hardware format translation Fixes index out of bounds issue in `cm_helper_translate_curve_to_degamma_hw_format` function. The issue could occur when the index 'i' exceeds the number of transfer… | |
| Modificada | Media (5.3) | 0.38% | — | Siemens Sinec Security Monitor | 8/10/2024 | 17/6/2026 | A vulnerability has been identified in SINEC Security Monitor (All versions < V4.9.0). The affected application does not properly validate that user input complies with a list of allowed values. This could allow an authenticated remote attacker to compromise the integrity of the configuration of the affected… | |
| Modificada | Media (6.9) | 0.55% | — | Siemens Sinec Security Monitor | 8/10/2024 | 17/6/2026 | A vulnerability has been identified in SINEC Security Monitor (All versions < V4.9.0). The affected application does not properly validate a file path that is supplied to an endpoint intended to create CSR files. This could allow an unauthenticated remote attacker to create files in writable directories outside the… | |
| Modificada | Crítica (9.3) | 0.27% | — | Siemens Sinec Security Monitor | 8/10/2024 | 17/6/2026 | A vulnerability has been identified in SINEC Security Monitor (All versions < V4.9.0). The affected application does not properly neutralize special elements in user input to the ```ssmctl-client``` command. This could allow an authenticated, lowly privileged local attacker to execute privileged commands in the… | |
| Modificada | Crítica (9.4) | 0.85% | — | Siemens Sinec Security Monitor | 8/10/2024 | 17/6/2026 | A vulnerability has been identified in SINEC Security Monitor (All versions < V4.9.0). The affected application does not properly validate user input to the ```ssmctl-client``` command. This could allow an authenticated, lowly privileged remote attacker to execute arbitrary code with root privileges on the underlying… | |
| Modificada | Media (5.4) | 0.15% | — | Siemens ModelsimSiemens Questa | 8/10/2024 | 17/6/2026 | A vulnerability has been identified in ModelSim (All versions < V2025.2), Questa (All versions < V2025.2). vsimk.exe in affected applications allows a specific tcl file to be loaded from the current working directory. This could allow an authenticated local attacker to inject arbitrary code and escalate privileges in… | |
| Analizada | Media (5.4) | 0.15% | — | Siemens ModelsimSiemens Questa | 8/10/2024 | 17/6/2026 | A vulnerability has been identified in ModelSim (All versions < V2024.3), Questa (All versions < V2024.3). gdb.exe in affected applications allows a specific executable file to be loaded from the current working directory. This could allow an authenticated local attacker to inject arbitrary code and escalate… | |
| Analizada | Media (5.4) | 0.15% | — | Siemens ModelsimSiemens Questa | 8/10/2024 | 17/6/2026 | A vulnerability has been identified in ModelSim (All versions < V2024.3), Questa (All versions < V2024.3). vish2.exe in affected applications allows a specific DLL file to be loaded from the current working directory. This could allow an authenticated local attacker to inject arbitrary code and escalate privileges in… | |
| Analizada | Alta (7.3) | 0.24% | — | Siemens Simcenter Nastran | 8/10/2024 | 17/6/2026 | A vulnerability has been identified in Simcenter Femap V2306 (All versions), Simcenter Femap V2401 (All versions), Simcenter Femap V2406 (All versions). The affected application is vulnerable to memory corruption while parsing specially crafted BDF files. This could allow an attacker to execute code in the context of… | |
| Modificada | Media (4.8) | 0.17% | — | Siemens Tecnomatix Plant Simulation | 8/10/2024 | 17/6/2026 | A vulnerability has been identified in Teamcenter Visualization V14.2 (All versions < V14.2.0.14), Teamcenter Visualization V14.3 (All versions < V14.3.0.12), Teamcenter Visualization V2312 (All versions < V2312.0008), Tecnomatix Plant Simulation V2302 (All versions < V2302.0016), Tecnomatix Plant Simulation V2404… | |
| Modificada | Alta (7.3) | 0.24% | — | Siemens Tecnomatix Plant Simulation | 8/10/2024 | 17/6/2026 | A vulnerability has been identified in Teamcenter Visualization V14.2 (All versions < V14.2.0.14), Teamcenter Visualization V14.3 (All versions < V14.3.0.12), Teamcenter Visualization V2312 (All versions < V2312.0008), Tecnomatix Plant Simulation V2302 (All versions < V2302.0016), Tecnomatix Plant Simulation V2404… | |
| Modificada | Alta (7.3) | 0.24% | — | Siemens Tecnomatix Plant Simulation | 8/10/2024 | 17/6/2026 | A vulnerability has been identified in Teamcenter Visualization V14.2 (All versions < V14.2.0.14), Teamcenter Visualization V14.3 (All versions < V14.3.0.12), Teamcenter Visualization V2312 (All versions < V2312.0008), Tecnomatix Plant Simulation V2302 (All versions < V2302.0016), Tecnomatix Plant Simulation V2404… | |
| Modificada | Alta (7.3) | 0.24% | — | Siemens Tecnomatix Plant Simulation | 8/10/2024 | 17/6/2026 | A vulnerability has been identified in Teamcenter Visualization V14.2 (All versions < V14.2.0.14), Teamcenter Visualization V14.3 (All versions < V14.3.0.12), Teamcenter Visualization V2312 (All versions < V2312.0008), Tecnomatix Plant Simulation V2302 (All versions < V2302.0016), Tecnomatix Plant Simulation V2404… | |
| Modificada | Alta (7.3) | 0.24% | — | Siemens Tecnomatix Plant Simulation | 8/10/2024 | 17/6/2026 | A vulnerability has been identified in Teamcenter Visualization V14.2 (All versions < V14.2.0.14), Teamcenter Visualization V14.3 (All versions < V14.3.0.12), Teamcenter Visualization V2312 (All versions < V2312.0008), Tecnomatix Plant Simulation V2302 (All versions < V2302.0016), Tecnomatix Plant Simulation V2404… | |
| Modificada | Alta (7.3) | 0.25% | — | Siemens Tecnomatix Plant Simulation | 8/10/2024 | 17/6/2026 | A vulnerability has been identified in Teamcenter Visualization V14.2 (All versions < V14.2.0.14), Teamcenter Visualization V14.3 (All versions < V14.3.0.12), Teamcenter Visualization V2312 (All versions < V2312.0008), Tecnomatix Plant Simulation V2302 (All versions < V2302.0016), Tecnomatix Plant Simulation V2404… | |
| Modificada | Alta (7.3) | 0.24% | — | Siemens Tecnomatix Plant Simulation | 8/10/2024 | 17/6/2026 | A vulnerability has been identified in Teamcenter Visualization V14.2 (All versions < V14.2.0.14), Teamcenter Visualization V14.3 (All versions < V14.3.0.12), Teamcenter Visualization V2312 (All versions < V2312.0008), Tecnomatix Plant Simulation V2302 (All versions < V2302.0016), Tecnomatix Plant Simulation V2404… | |
| Modificada | Alta (7.3) | 0.25% | — | Siemens Tecnomatix Plant Simulation | 8/10/2024 | 17/6/2026 | A vulnerability has been identified in Teamcenter Visualization V14.2 (All versions < V14.2.0.14), Teamcenter Visualization V14.3 (All versions < V14.3.0.12), Teamcenter Visualization V2312 (All versions < V2312.0008), Tecnomatix Plant Simulation V2302 (All versions < V2302.0016), Tecnomatix Plant Simulation V2404… | |
| Modificada | Alta (7.3) | 0.24% | — | Siemens Tecnomatix Plant Simulation | 8/10/2024 | 17/6/2026 | A vulnerability has been identified in Teamcenter Visualization V14.2 (All versions < V14.2.0.14), Teamcenter Visualization V14.3 (All versions < V14.3.0.12), Teamcenter Visualization V2312 (All versions < V2312.0008), Tecnomatix Plant Simulation V2302 (All versions < V2302.0016), Tecnomatix Plant Simulation V2404… | |
| Modificada | Alta (7.3) | 0.24% | — | Siemens Tecnomatix Plant Simulation | 8/10/2024 | 17/6/2026 | A vulnerability has been identified in Teamcenter Visualization V14.2 (All versions < V14.2.0.14), Teamcenter Visualization V14.3 (All versions < V14.3.0.12), Teamcenter Visualization V2312 (All versions < V2312.0008), Tecnomatix Plant Simulation V2302 (All versions < V2302.0016), Tecnomatix Plant Simulation V2404… |