« Back to list

Siemens

Siemens Telecontrol Server Basic: vulnerabilities and CVEs

Siemens Telecontrol Server Basic has 77 published vulnerabilities, 2 of them in the last 12 months. 5 are rated critical and 0 are listed by CISA as actively exploited.

CVEs77
Last 12 months2
Critical5
Actively exploited0

All vulnerabilities in the catalogue →⭐ Follow this technology

Latest vulnerabilities

CVESeverityEPSSActive exploitationPublishedDescription
CVE-2025-40942High (7.3)0.16%—Jan 13, 2026
A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.4). Affected application contains a local privilege escalation vulnerability that could allow an attacker to run arbitrary code with…
CVE-2025-40765Critical (9.3)0.53%—Oct 14, 2025
A vulnerability has been identified in TeleControl Server Basic V3.1 (All versions >= V3.1.2.2 < V3.1.2.3). The affected application contains an information disclosure vulnerability. This could allow an unauthenticated…
CVE-2025-29931Medium (6.3)0.44%—Apr 17, 2025
A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected product does not properly validate a length field in a serialized message which it uses to determine the amount of…
CVE-2025-32872High (8.7)0.70%—Apr 16, 2025
A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is vulnerable to SQL injection through the internally used 'GetOverview' method. This could allow an…
CVE-2025-32871High (8.7)0.70%—Apr 16, 2025
A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is vulnerable to SQL injection through the internally used 'MigrateDatabase' method. This could allow…
CVE-2025-32870High (8.7)0.74%—Apr 16, 2025
A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is vulnerable to SQL injection through the internally used 'GetTraces' method. This could allow an…
CVE-2025-32869High (8.7)0.45%—Apr 16, 2025
A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is vulnerable to SQL injection through the internally used 'ImportCertificate' method. This could allow…
CVE-2025-32868High (8.7)0.45%—Apr 16, 2025
A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is vulnerable to SQL injection through the internally used 'ExportCertificate' method. This could allow…
CVE-2025-32867High (8.7)0.70%—Apr 16, 2025
A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is vulnerable to SQL injection through the internally used 'CreateBackup' method. This could allow an…
CVE-2025-32866High (8.7)0.70%—Apr 16, 2025
A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is vulnerable to SQL injection through the internally used 'GetLogs' method. This could allow an…
CVE-2025-32865High (8.7)0.70%—Apr 16, 2025
A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is vulnerable to SQL injection through the internally used 'CreateLog' method. This could allow an…
CVE-2025-32864High (8.7)0.70%—Apr 16, 2025
A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is vulnerable to SQL injection through the internally used 'GetSettings' method. This could allow an…
CVE-2025-32863High (8.7)0.65%—Apr 16, 2025
A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is vulnerable to SQL injection through the internally used 'UnlockTraceLevelSettings' method. This…
CVE-2025-32862High (8.7)0.65%—Apr 16, 2025
A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is vulnerable to SQL injection through the internally used 'LockTraceLevelSettings' method. This could…
CVE-2025-32861High (8.7)0.65%—Apr 16, 2025
A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is vulnerable to SQL injection through the internally used 'UpdateTraceLevelSettings' method. This…
CVE-2025-32860High (8.7)0.65%—Apr 16, 2025
A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is vulnerable to SQL injection through the internally used 'UnlockWebServerGatewaySettings' method.…
CVE-2025-32859High (8.7)0.65%—Apr 16, 2025
A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is vulnerable to SQL injection through the internally used 'LockWebServerGatewaySettings' method. This…
CVE-2025-32858High (8.7)0.65%—Apr 16, 2025
A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is vulnerable to SQL injection through the internally used 'UpdateWebServerGatewaySettings' method.…
CVE-2025-32857High (8.7)0.69%—Apr 16, 2025
A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is vulnerable to SQL injection through the internally used 'UnlockBufferingSettings' method. This could…
CVE-2025-32856High (8.7)0.65%—Apr 16, 2025
A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is vulnerable to SQL injection through the internally used 'LockBufferingSettings' method. This could…
CVE-2025-32855High (8.7)0.65%—Apr 16, 2025
A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is vulnerable to SQL injection through the internally used 'UnlockOpcSettings' method. This could allow…
CVE-2025-32854High (8.7)0.70%—Apr 16, 2025
A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is vulnerable to SQL injection through the internally used 'LockOpcSettings' method. This could allow…
CVE-2025-32853High (8.7)0.70%—Apr 16, 2025
A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is vulnerable to SQL injection through the internally used 'UnlockDatabaseSettings' method. This could…
CVE-2025-32852High (8.7)0.70%—Apr 16, 2025
A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is vulnerable to SQL injection through the internally used 'LockDatabaseSettings' method. This could…
CVE-2025-32851High (8.7)0.70%—Apr 16, 2025
A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is vulnerable to SQL injection through the internally used 'UnlockTcmSettings' method. This could allow…
CVE-2025-32850High (8.7)0.70%—Apr 16, 2025
A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is vulnerable to SQL injection through the internally used 'LockTcmSettings' method. This could allow…
CVE-2025-32849High (8.7)0.70%—Apr 16, 2025
A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is vulnerable to SQL injection through the internally used 'UnlockSmtpSettings' method. This could…
CVE-2025-32848High (8.7)0.70%—Apr 16, 2025
A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is vulnerable to SQL injection through the internally used 'LockSmtpSettings' method. This could allow…
CVE-2025-32847High (8.7)0.81%—Apr 16, 2025
A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is vulnerable to SQL injection through the internally used 'UnlockGeneralSettings' method. This could…
CVE-2025-32846High (8.7)0.81%—Apr 16, 2025
A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is vulnerable to SQL injection through the internally used 'LockGeneralSettings' method. This could…

Other products by Siemens