Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2797▼ 203 respecto a la semana anterior
Críticas / altas1352▲ 28 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)255▼ 266 respecto a la semana anterior
77 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Analizada | Alta (8.7) | 0.70% | — | Siemens Telecontrol Server Basic | 16/4/2025 | 17/6/2026 | A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is vulnerable to SQL injection through the internally used 'LockTcmSettings' method. This could allow an authenticated remote attacker to bypass authorization controls, to read from and write to the… | |
| Analizada | Alta (8.7) | 0.70% | — | Siemens Telecontrol Server Basic | 16/4/2025 | 17/6/2026 | A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is vulnerable to SQL injection through the internally used 'UnlockSmtpSettings' method. This could allow an authenticated remote attacker to bypass authorization controls, to read from and write to the… | |
| Analizada | Alta (8.7) | 0.70% | — | Siemens Telecontrol Server Basic | 16/4/2025 | 17/6/2026 | A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is vulnerable to SQL injection through the internally used 'LockSmtpSettings' method. This could allow an authenticated remote attacker to bypass authorization controls, to read from and write to the… | |
| Analizada | Alta (8.7) | 0.81% | — | Siemens Telecontrol Server Basic | 16/4/2025 | 17/6/2026 | A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is vulnerable to SQL injection through the internally used 'UnlockGeneralSettings' method. This could allow an authenticated remote attacker to bypass authorization controls, to read from and write to… | |
| Analizada | Alta (8.7) | 0.81% | — | Siemens Telecontrol Server Basic | 16/4/2025 | 17/6/2026 | A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is vulnerable to SQL injection through the internally used 'LockGeneralSettings' method. This could allow an authenticated remote attacker to bypass authorization controls, to read from and write to the… | |
| Analizada | Alta (8.7) | 0.81% | — | Siemens Telecontrol Server Basic | 16/4/2025 | 17/6/2026 | A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is vulnerable to SQL injection through the internally used 'UpdateGeneralSettings' method. This could allow an authenticated remote attacker to bypass authorization controls, to read from and write to… | |
| Analizada | Alta (8.7) | 0.81% | — | Siemens Telecontrol Server Basic | 16/4/2025 | 17/6/2026 | A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is vulnerable to SQL injection through the internally used 'UnlockUser' method. This could allow an authenticated remote attacker to bypass authorization controls, to read from and write to the… | |
| Analizada | Alta (8.7) | 0.81% | — | Siemens Telecontrol Server Basic | 16/4/2025 | 17/6/2026 | A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is vulnerable to SQL injection through the internally used 'LockUser' method. This could allow an authenticated remote attacker to bypass authorization controls, to read from and write to the… | |
| Analizada | Alta (8.7) | 0.81% | — | Siemens Telecontrol Server Basic | 16/4/2025 | 17/6/2026 | A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is vulnerable to SQL injection through the internally used 'GetUsers' method. This could allow an authenticated remote attacker to bypass authorization controls, to read from and write to the… | |
| Analizada | Alta (8.7) | 0.81% | — | Siemens Telecontrol Server Basic | 16/4/2025 | 17/6/2026 | A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is vulnerable to SQL injection through the internally used 'UnlockGateway' method. This could allow an authenticated remote attacker to bypass authorization controls, to read from and write to the… | |
| Analizada | Alta (8.7) | 0.81% | — | Siemens Telecontrol Server Basic | 16/4/2025 | 17/6/2026 | A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is vulnerable to SQL injection through the internally used 'LockGateway' method. This could allow an authenticated remote attacker to bypass authorization controls, to read from and write to the… | |
| Analizada | Alta (8.7) | 0.81% | — | Siemens Telecontrol Server Basic | 16/4/2025 | 17/6/2026 | A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is vulnerable to SQL injection through the internally used 'GetGateways' method. This could allow an authenticated remote attacker to bypass authorization controls, to read from and write to the… | |
| Analizada | Alta (8.7) | 0.81% | — | Siemens Telecontrol Server Basic | 16/4/2025 | 17/6/2026 | A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is vulnerable to SQL injection through the internally used 'ImportConnectionVariables' method. This could allow an authenticated remote attacker to bypass authorization controls, to read from and write… | |
| Analizada | Alta (8.7) | 0.81% | — | Siemens Telecontrol Server Basic | 16/4/2025 | 17/6/2026 | A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is vulnerable to SQL injection through the internally used 'GetActiveConnectionVariables' method. This could allow an authenticated remote attacker to bypass authorization controls, to read from and… | |
| Analizada | Alta (8.7) | 0.81% | — | Siemens Telecontrol Server Basic | 16/4/2025 | 17/6/2026 | A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is vulnerable to SQL injection through the internally used 'GetConnectionVariables' method. This could allow an authenticated remote attacker to bypass authorization controls, to read from and write to… | |
| Analizada | Alta (8.7) | 0.81% | — | Siemens Telecontrol Server Basic | 16/4/2025 | 17/6/2026 | A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is vulnerable to SQL injection through the internally used 'UpdateConnectionVariableArchivingBuffering' method. This could allow an authenticated remote attacker to bypass authorization controls, to read… | |
| Analizada | Alta (8.7) | 0.81% | — | Siemens Telecontrol Server Basic | 16/4/2025 | 17/6/2026 | A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is vulnerable to SQL injection through the internally used 'UpdateConnectionVariablesWithImport' method. This could allow an authenticated remote attacker to bypass authorization controls, to read from… | |
| Analizada | Alta (8.7) | 0.81% | — | Siemens Telecontrol Server Basic | 16/4/2025 | 17/6/2026 | A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is vulnerable to SQL injection through the internally used 'UnlockProjectUserRights' method. This could allow an authenticated remote attacker to bypass authorization controls, to read from and write to… | |
| Analizada | Alta (8.7) | 0.81% | — | Siemens Telecontrol Server Basic | 16/4/2025 | 17/6/2026 | A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is vulnerable to SQL injection through the internally used 'LockProjectUserRights' method. This could allow an authenticated remote attacker to bypass authorization controls, to read from and write to… | |
| Analizada | Alta (8.7) | 0.81% | — | Siemens Telecontrol Server Basic | 16/4/2025 | 17/6/2026 | A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is vulnerable to SQL injection through the internally used 'UpdateProjectUserRights' method. This could allow an authenticated remote attacker to bypass authorization controls, to read from and write to… | |
| Analizada | Alta (8.7) | 0.81% | — | Siemens Telecontrol Server Basic | 16/4/2025 | 17/6/2026 | A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is vulnerable to SQL injection through the internally used 'UnlockProject' method. This could allow an authenticated remote attacker to bypass authorization controls, to read from and write to the… | |
| Analizada | Alta (8.7) | 0.81% | — | Siemens Telecontrol Server Basic | 16/4/2025 | 17/6/2026 | A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is vulnerable to SQL injection through the internally used 'LockProjectCrossCommunications' method. This could allow an authenticated remote attacker to bypass authorization controls, to read from and… | |
| Analizada | Alta (8.7) | 0.81% | — | Siemens Telecontrol Server Basic | 16/4/2025 | 17/6/2026 | A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is vulnerable to SQL injection through the internally used 'UpdateProjectCrossCommunications' method. This could allow an authenticated remote attacker to bypass authorization controls, to read from and… | |
| Analizada | Alta (8.7) | 0.81% | — | Siemens Telecontrol Server Basic | 16/4/2025 | 17/6/2026 | A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is vulnerable to SQL injection through the internally used 'ActivateProject' method. This could allow an authenticated remote attacker to bypass authorization controls, to read from and write to the… | |
| Analizada | Alta (8.7) | 0.81% | — | Siemens Telecontrol Server Basic | 16/4/2025 | 17/6/2026 | A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is vulnerable to SQL injection through the internally used 'GetActiveProjects' method. This could allow an authenticated remote attacker to bypass authorization controls, to read from and write to the… |