Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2680▼ 660 respecto a la semana anterior
Críticas / altas1277▼ 279 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)228▼ 274 respecto a la semana anterior
2424 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (7.3) | 0.24% | — | Siemens Tecnomatix Plant Simulation | 8/10/2024 | 17/6/2026 | A vulnerability has been identified in Teamcenter Visualization V14.2 (All versions < V14.2.0.14), Teamcenter Visualization V14.3 (All versions < V14.3.0.12), Teamcenter Visualization V2312 (All versions < V2312.0008), Tecnomatix Plant Simulation V2302 (All versions < V2302.0016), Tecnomatix Plant Simulation V2404… | |
| Modificada | Alta (7.3) | 0.24% | — | Siemens Tecnomatix Plant Simulation | 8/10/2024 | 17/6/2026 | A vulnerability has been identified in Teamcenter Visualization V14.2 (All versions < V14.2.0.14), Teamcenter Visualization V14.3 (All versions < V14.3.0.12), Teamcenter Visualization V2312 (All versions < V2312.0008), Tecnomatix Plant Simulation V2302 (All versions < V2302.0016), Tecnomatix Plant Simulation V2404… | |
| Modificada | Alta (7.3) | 0.24% | — | Siemens Tecnomatix Plant Simulation | 8/10/2024 | 17/6/2026 | A vulnerability has been identified in Teamcenter Visualization V14.2 (All versions < V14.2.0.14), Teamcenter Visualization V14.3 (All versions < V14.3.0.12), Teamcenter Visualization V2312 (All versions < V2312.0008), Tecnomatix Plant Simulation V2302 (All versions < V2302.0016), Tecnomatix Plant Simulation V2404… | |
| Modificada | Alta (7.3) | 0.26% | — | Siemens Tecnomatix Plant Simulation | 8/10/2024 | 17/6/2026 | A vulnerability has been identified in Teamcenter Visualization V14.2 (All versions < V14.2.0.14), Teamcenter Visualization V14.3 (All versions < V14.3.0.12), Teamcenter Visualization V2312 (All versions < V2312.0008), Tecnomatix Plant Simulation V2302 (All versions < V2302.0016), Tecnomatix Plant Simulation V2404… | |
| Aplazada | Alta (7.3) | 0.22% | — | Siemens Simcenter FemapAI | 8/10/2024 | 17/6/2026 | A vulnerability has been identified in Simcenter Femap V2306 (All versions), Simcenter Femap V2401 (All versions), Simcenter Femap V2406 (All versions). The affected application is vulnerable to heap-based buffer overflow while parsing specially crafted BDF files. This could allow an attacker to execute code in the… | |
| Analizada | Alta (7.3) | 0.19% | — | Siemens Jt2go | 8/10/2024 | 17/6/2026 | A vulnerability has been identified in JT2Go (All versions < V2406.0003). The affected application contains a stack-based buffer overflow vulnerability that could be triggered while parsing specially crafted PDF files. This could allow an attacker to execute code in the context of the current process. | |
| Aplazada | Crítica (9.3) | 0.54% | — | Siemens Sentron 7KM Pac3200AI | 8/10/2024 | 17/6/2026 | A vulnerability has been identified in SENTRON 7KM PAC3200 (All versions). Affected devices only provide a 4-digit PIN to protect from administrative access via Modbus TCP interface. Attackers with access to the Modbus TCP interface could easily bypass this protection by brute-force attacks or by sniffing the Modbus… | |
| Analizada | Alta (7.5) | 0.44% | — | Trianglemicroworks IEC 61850 Source Code LibrarySiemens Sicam A8000 FirmwareSiemens Sicam SCC FirmwareSiemens Sicam EGS Firmware+2 | 18/9/2024 | 17/6/2026 | Triangle Microworks TMW IEC 61850 Client source code libraries before 12.2.0 lack a buffer size check when processing received messages. The resulting buffer overflow can cause a crash, resulting in a denial of service. | |
| Aplazada | Crítica (10) | 0.76% | — | Siemens Industrial Edge Management PROAISiemens Industrial Edge Management VirtualAI | 10/9/2024 | 17/6/2026 | A vulnerability has been identified in Industrial Edge Management Pro (All versions < V1.9.5), Industrial Edge Management Virtual (All versions < V2.3.1-1). Affected components do not properly validate the device tokens. This could allow an unauthenticated remote attacker to impersonate other devices onboarded to the… | |
| Aplazada | Crítica (9.2) | 11% | — | Siemens Automation License ManagerAI | 10/9/2024 | 17/6/2026 | A vulnerability has been identified in Automation License Manager V5 (All versions), Automation License Manager V6.0 (All versions < V6.0 SP12 Upd3), Automation License Manager V6.2 (All versions < V6.2 Upd3). Affected applications do not properly validate certain fields in incoming network packets on port 4410/tcp.… | |
| Aplazada | Media (6.8) | 0.15% | — | Siemens Sinumerik 828dAISiemens Sinumerik 840d SLAISiemens Sinumerik ONEAISiemens Create MyconfigAI | 10/9/2024 | 17/6/2026 | A vulnerability has been identified in SINUMERIK 828D V4 (All versions < V4.95 SP3), SINUMERIK 840D sl V4 (All versions < V4.95 SP3 in connection with using Create MyConfig (CMC) <= V4.8 SP1 HF6), SINUMERIK ONE (All versions < V6.23 in connection with using Create MyConfig (CMC) <= V6.6), SINUMERIK ONE (All versions <… | |
| Aplazada | Alta (8.7) | 0.56% | — | Siemens Simatic S7-200 Smart CPUAI | 10/9/2024 | 17/6/2026 | A vulnerability has been identified in SIMATIC S7-200 SMART CPU CR40 (6ES7288-1CR40-0AA0) (All versions), SIMATIC S7-200 SMART CPU CR60 (6ES7288-1CR60-0AA0) (All versions), SIMATIC S7-200 SMART CPU SR20 (6ES7288-1SR20-0AA0) (All versions), SIMATIC S7-200 SMART CPU SR20 (6ES7288-1SR20-0AA1) (All versions), SIMATIC… | |
| Analizada | Media (5.3) | 0.34% | — | Siemens Sinema Remote Connect Server | 10/9/2024 | 17/6/2026 | A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V3.2 SP2). The affected application does not properly handle user session establishment and invalidation. This could allow a remote attacker to circumvent the additional multi factor authentication for user session establishment. | |
| Analizada | Media (4.8) | 0.15% | — | Siemens Sinema Remote Connect Client | 10/9/2024 | 17/6/2026 | A vulnerability has been identified in SINEMA Remote Connect Client (All versions < V3.2 SP2). The affected application inserts sensitive information into a log file which is readable by all legitimate users of the underlying system. This could allow an authenticated attacker to compromise the confidentiality of other… | |
| Aplazada | Crítica (9.3) | 0.14% | — | Siemens Sinumerik 828dAISiemens Sinumerik 840d SLAISiemens Sinumerik ONEAI | 10/9/2024 | 17/6/2026 | A vulnerability has been identified in SINUMERIK 828D V4 (All versions), SINUMERIK 828D V5 (All versions < V5.24), SINUMERIK 840D sl V4 (All versions), SINUMERIK ONE (All versions < V6.24). Affected devices do not properly enforce access restrictions to scripts that are regularly executed by the system with elevated… | |
| Aplazada | Alta (7.3) | 0.17% | — | Siemens Tecnomatix Plant SimulationAI | 10/9/2024 | 17/6/2026 | A vulnerability has been identified in Tecnomatix Plant Simulation V2302 (All versions < V2302.0015), Tecnomatix Plant Simulation V2404 (All versions < V2404.0004). The affected applications contain a stack based overflow vulnerability while parsing specially crafted SPP files. This could allow an attacker to execute… | |
| Analizada | Baja (2.1) | 0.27% | — | Siemens Simatic Rf360r FirmwareSiemens Simatic Rf1170r FirmwareSiemens Simatic Rf1140r FirmwareSiemens Simatic Reader Rf685r FCC Firmware+23 | 10/9/2024 | 17/6/2026 | A vulnerability has been identified in SIMATIC Reader RF610R CMIIT (6GT2811-6BC10-2AA0) (All versions < V4.2), SIMATIC Reader RF610R ETSI (6GT2811-6BC10-0AA0) (All versions < V4.2), SIMATIC Reader RF610R FCC (6GT2811-6BC10-1AA0) (All versions < V4.2), SIMATIC Reader RF615R CMIIT (6GT2811-6CC10-2AA0) (All versions <… | |
| Analizada | Media (5.3) | 0.30% | — | Siemens Simatic Rf360r FirmwareSiemens Simatic Rf1170r FirmwareSiemens Simatic Rf1140r FirmwareSiemens Simatic Reader Rf685r FCC Firmware+23 | 10/9/2024 | 17/6/2026 | A vulnerability has been identified in SIMATIC Reader RF610R CMIIT (6GT2811-6BC10-2AA0) (All versions < V4.2), SIMATIC Reader RF610R ETSI (6GT2811-6BC10-0AA0) (All versions < V4.2), SIMATIC Reader RF610R FCC (6GT2811-6BC10-1AA0) (All versions < V4.2), SIMATIC Reader RF615R CMIIT (6GT2811-6CC10-2AA0) (All versions <… | |
| Analizada | Media (6.9) | 0.41% | — | Siemens Simatic Rf360r FirmwareSiemens Simatic Rf1170r FirmwareSiemens Simatic Rf1140r FirmwareSiemens Simatic Reader Rf685r FCC Firmware+23 | 10/9/2024 | 17/6/2026 | A vulnerability has been identified in SIMATIC Reader RF610R CMIIT (6GT2811-6BC10-2AA0) (All versions < V4.2), SIMATIC Reader RF610R ETSI (6GT2811-6BC10-0AA0) (All versions < V4.2), SIMATIC Reader RF610R FCC (6GT2811-6BC10-1AA0) (All versions < V4.2), SIMATIC Reader RF615R CMIIT (6GT2811-6CC10-2AA0) (All versions <… | |
| Analizada | Media (5.9) | 0.41% | — | Siemens Simatic Rf360r FirmwareSiemens Simatic Rf1170r FirmwareSiemens Simatic Rf1140r FirmwareSiemens Simatic Reader Rf685r FCC Firmware+23 | 10/9/2024 | 17/6/2026 | A vulnerability has been identified in SIMATIC Reader RF610R CMIIT (6GT2811-6BC10-2AA0) (All versions < V4.2), SIMATIC Reader RF610R ETSI (6GT2811-6BC10-0AA0) (All versions < V4.2), SIMATIC Reader RF610R FCC (6GT2811-6BC10-1AA0) (All versions < V4.2), SIMATIC Reader RF615R CMIIT (6GT2811-6CC10-2AA0) (All versions <… | |
| Analizada | Media (6) | 0.35% | — | Siemens Simatic Rf360r FirmwareSiemens Simatic Rf1170r FirmwareSiemens Simatic Rf1140r FirmwareSiemens Simatic Reader Rf685r FCC Firmware+23 | 10/9/2024 | 17/6/2026 | A vulnerability has been identified in SIMATIC Reader RF610R CMIIT (6GT2811-6BC10-2AA0) (All versions < V4.2), SIMATIC Reader RF610R ETSI (6GT2811-6BC10-0AA0) (All versions < V4.2), SIMATIC Reader RF610R FCC (6GT2811-6BC10-1AA0) (All versions < V4.2), SIMATIC Reader RF615R CMIIT (6GT2811-6CC10-2AA0) (All versions <… | |
| Analizada | Alta (7) | 0.41% | — | Siemens Simatic Rf360r FirmwareSiemens Simatic Rf1170r FirmwareSiemens Simatic Rf1140r FirmwareSiemens Simatic Reader Rf685r FCC Firmware+23 | 10/9/2024 | 17/6/2026 | A vulnerability has been identified in SIMATIC Reader RF610R CMIIT (6GT2811-6BC10-2AA0) (All versions < V4.2), SIMATIC Reader RF610R ETSI (6GT2811-6BC10-0AA0) (All versions < V4.2), SIMATIC Reader RF610R FCC (6GT2811-6BC10-1AA0) (All versions < V4.2), SIMATIC Reader RF615R CMIIT (6GT2811-6CC10-2AA0) (All versions <… | |
| Aplazada | Crítica (9.4) | 0.61% | — | Siemens Simatic BatchAISiemens Simatic Information ServerAISiemens Simatic PCS 7AISiemens Simatic Process HistorianAI+2 | 10/9/2024 | 17/6/2026 | A vulnerability has been identified in SIMATIC BATCH V9.1 (All versions), SIMATIC Information Server 2020 (All versions < V2020 SP2 Update 5), SIMATIC Information Server 2022 (All versions < V2022 SP1 Update 2), SIMATIC PCS 7 V9.1 (All versions < V9.1 SP2 UC06), SIMATIC Process Historian 2020 (All versions < V2020 SP2… | |
| Aplazada | Crítica (9.3) | 1.1% | — | Siemens Opcenter QualityAISiemens Opcenter RdnlAISiemens Simatic PCS NEOAISiemens Sinec NMSAI+2 | 10/9/2024 | 17/6/2026 | A vulnerability has been identified in Opcenter Quality (All versions < V2406), Opcenter RDnL (All versions < V2410), SIMATIC PCS neo V4.0 (All versions), SIMATIC PCS neo V4.1 (All versions < V4.1 Update 2), SIMATIC PCS neo V5.0 (All versions < V5.0 Update 1), SINEC NMS (All versions), SINEMA Remote Connect Client… | |
| Analizada | Media (5.3) | 0.29% | — | Siemens Sinema Remote Connect Client | 10/9/2024 | 17/6/2026 | A vulnerability has been identified in SINEMA Remote Connect Client (All versions < V3.2 SP2). The affected application does not expire the user session on reboot without logout. This could allow an attacker to bypass Multi-Factor Authentication. |