Vulnerabilities

Summary — last 7 days

New vulnerabilities3,070▲ 562 vs. last week
Critical / high1,457▲ 278 vs. last week
New active exploitation (KEV)5▼ 5 vs. last week
Unscored (no CVSS)383▲ 176 vs. last week
–

2 results, sorted by published date (most recent first)

CVEStatusSeverityEPSS Active exploitationAffected technologiesPublished ▼Modified Description
ModifiedHigh (7.5)0.88%—Siemens Simatic CFU DIQ FirmwareSiemens Simatic CFU PA FirmwareSiemens Simatic S7-300 CPU FirmwareSiemens Simatic S7-400h V6 Firmware+84/12/20226/17/2026
The PROFINET (PNIO) stack, when integrated with the Interniche IP stack, improperly handles internal resources for TCP segments where the minimum TCP-Header length is less than defined. This could allow an attacker to create a denial of service condition for TCP services on affected devices by sending specially…
ModifiedCritical (9.1)33%—Wibu CodemeterSiemens PSS CapeSiemens Sicam 230 FirmwareSiemens Simatic Information Server+66/16/20216/17/2026
A buffer over-read vulnerability exists in Wibu-Systems CodeMeter versions < 7.21a. An unauthenticated remote attacker can exploit this issue to disclose heap memory contents or crash the CodeMeter Runtime Server.