Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2703▼ 615 respecto a la semana anterior
Críticas / altas1293▼ 208 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)291▼ 219 respecto a la semana anterior
291 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Analizada | Alta (8.7) | 0.65% | — | Siemens Telecontrol Server Basic | 16/4/2025 | 17/6/2026 | A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is vulnerable to SQL injection through the internally used 'LockBufferingSettings' method. This could allow an authenticated remote attacker to bypass authorization controls, to read from and write to… | |
| Analizada | Alta (8.7) | 0.65% | — | Siemens Telecontrol Server Basic | 16/4/2025 | 17/6/2026 | A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is vulnerable to SQL injection through the internally used 'UnlockOpcSettings' method. This could allow an authenticated remote attacker to bypass authorization controls, to read from and write to the… | |
| Analizada | Alta (8.7) | 0.70% | — | Siemens Telecontrol Server Basic | 16/4/2025 | 17/6/2026 | A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is vulnerable to SQL injection through the internally used 'LockOpcSettings' method. This could allow an authenticated remote attacker to bypass authorization controls, to read from and write to the… | |
| Analizada | Alta (8.7) | 0.70% | — | Siemens Telecontrol Server Basic | 16/4/2025 | 17/6/2026 | A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is vulnerable to SQL injection through the internally used 'UnlockDatabaseSettings' method. This could allow an authenticated remote attacker to bypass authorization controls, to read from and write to… | |
| Analizada | Alta (8.7) | 0.70% | — | Siemens Telecontrol Server Basic | 16/4/2025 | 17/6/2026 | A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is vulnerable to SQL injection through the internally used 'LockDatabaseSettings' method. This could allow an authenticated remote attacker to bypass authorization controls, to read from and write to the… | |
| Analizada | Alta (8.7) | 0.70% | — | Siemens Telecontrol Server Basic | 16/4/2025 | 17/6/2026 | A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is vulnerable to SQL injection through the internally used 'UnlockTcmSettings' method. This could allow an authenticated remote attacker to bypass authorization controls, to read from and write to the… | |
| Analizada | Alta (8.7) | 0.70% | — | Siemens Telecontrol Server Basic | 16/4/2025 | 17/6/2026 | A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is vulnerable to SQL injection through the internally used 'LockTcmSettings' method. This could allow an authenticated remote attacker to bypass authorization controls, to read from and write to the… | |
| Analizada | Alta (8.7) | 0.70% | — | Siemens Telecontrol Server Basic | 16/4/2025 | 17/6/2026 | A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is vulnerable to SQL injection through the internally used 'UnlockSmtpSettings' method. This could allow an authenticated remote attacker to bypass authorization controls, to read from and write to the… | |
| Analizada | Alta (8.7) | 0.70% | — | Siemens Telecontrol Server Basic | 16/4/2025 | 17/6/2026 | A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is vulnerable to SQL injection through the internally used 'LockSmtpSettings' method. This could allow an authenticated remote attacker to bypass authorization controls, to read from and write to the… | |
| Analizada | Alta (8.7) | 0.81% | — | Siemens Telecontrol Server Basic | 16/4/2025 | 17/6/2026 | A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is vulnerable to SQL injection through the internally used 'UnlockGeneralSettings' method. This could allow an authenticated remote attacker to bypass authorization controls, to read from and write to… | |
| Analizada | Alta (8.7) | 0.81% | — | Siemens Telecontrol Server Basic | 16/4/2025 | 17/6/2026 | A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is vulnerable to SQL injection through the internally used 'LockGeneralSettings' method. This could allow an authenticated remote attacker to bypass authorization controls, to read from and write to the… | |
| Analizada | Alta (8.7) | 0.81% | — | Siemens Telecontrol Server Basic | 16/4/2025 | 17/6/2026 | A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is vulnerable to SQL injection through the internally used 'UpdateGeneralSettings' method. This could allow an authenticated remote attacker to bypass authorization controls, to read from and write to… | |
| Analizada | Alta (8.7) | 0.81% | — | Siemens Telecontrol Server Basic | 16/4/2025 | 17/6/2026 | A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is vulnerable to SQL injection through the internally used 'UnlockUser' method. This could allow an authenticated remote attacker to bypass authorization controls, to read from and write to the… | |
| Analizada | Alta (8.7) | 0.81% | — | Siemens Telecontrol Server Basic | 16/4/2025 | 17/6/2026 | A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is vulnerable to SQL injection through the internally used 'LockUser' method. This could allow an authenticated remote attacker to bypass authorization controls, to read from and write to the… | |
| Analizada | Alta (8.7) | 0.81% | — | Siemens Telecontrol Server Basic | 16/4/2025 | 17/6/2026 | A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is vulnerable to SQL injection through the internally used 'GetUsers' method. This could allow an authenticated remote attacker to bypass authorization controls, to read from and write to the… | |
| Analizada | Alta (8.7) | 0.81% | — | Siemens Telecontrol Server Basic | 16/4/2025 | 17/6/2026 | A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is vulnerable to SQL injection through the internally used 'UnlockGateway' method. This could allow an authenticated remote attacker to bypass authorization controls, to read from and write to the… | |
| Analizada | Alta (8.7) | 0.81% | — | Siemens Telecontrol Server Basic | 16/4/2025 | 17/6/2026 | A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is vulnerable to SQL injection through the internally used 'LockGateway' method. This could allow an authenticated remote attacker to bypass authorization controls, to read from and write to the… | |
| Analizada | Alta (8.7) | 0.81% | — | Siemens Telecontrol Server Basic | 16/4/2025 | 17/6/2026 | A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is vulnerable to SQL injection through the internally used 'GetGateways' method. This could allow an authenticated remote attacker to bypass authorization controls, to read from and write to the… | |
| Analizada | Alta (8.7) | 0.81% | — | Siemens Telecontrol Server Basic | 16/4/2025 | 17/6/2026 | A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is vulnerable to SQL injection through the internally used 'ImportConnectionVariables' method. This could allow an authenticated remote attacker to bypass authorization controls, to read from and write… | |
| Analizada | Alta (8.7) | 0.81% | — | Siemens Telecontrol Server Basic | 16/4/2025 | 17/6/2026 | A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is vulnerable to SQL injection through the internally used 'GetActiveConnectionVariables' method. This could allow an authenticated remote attacker to bypass authorization controls, to read from and… | |
| Analizada | Alta (8.7) | 0.81% | — | Siemens Telecontrol Server Basic | 16/4/2025 | 17/6/2026 | A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is vulnerable to SQL injection through the internally used 'GetConnectionVariables' method. This could allow an authenticated remote attacker to bypass authorization controls, to read from and write to… | |
| Analizada | Alta (8.7) | 0.81% | — | Siemens Telecontrol Server Basic | 16/4/2025 | 17/6/2026 | A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is vulnerable to SQL injection through the internally used 'UpdateConnectionVariableArchivingBuffering' method. This could allow an authenticated remote attacker to bypass authorization controls, to read… | |
| Analizada | Alta (8.7) | 0.81% | — | Siemens Telecontrol Server Basic | 16/4/2025 | 17/6/2026 | A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is vulnerable to SQL injection through the internally used 'UpdateConnectionVariablesWithImport' method. This could allow an authenticated remote attacker to bypass authorization controls, to read from… | |
| Analizada | Alta (8.7) | 0.81% | — | Siemens Telecontrol Server Basic | 16/4/2025 | 17/6/2026 | A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is vulnerable to SQL injection through the internally used 'UnlockProjectUserRights' method. This could allow an authenticated remote attacker to bypass authorization controls, to read from and write to… | |
| Analizada | Alta (8.7) | 0.81% | — | Siemens Telecontrol Server Basic | 16/4/2025 | 17/6/2026 | A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is vulnerable to SQL injection through the internally used 'LockProjectUserRights' method. This could allow an authenticated remote attacker to bypass authorization controls, to read from and write to… |