CVE-2025-30033
- EPSS 0.02%
- Published 12.08.2025 11:16:56
- Last modified 12.08.2025 14:25:33
The affected setup component is vulnerable to DLL hijacking. This could allow an attacker to execute arbitrary code when a legitimate user installs an application that uses the affected setup component.
CVE-2024-44087
- EPSS 0.48%
- Published 10.09.2024 10:15:13
- Last modified 13.05.2025 10:15:20
A vulnerability has been identified in Automation License Manager V5 (All versions), Automation License Manager V6.0 (All versions < V6.0 SP12 Upd3), Automation License Manager V6.2 (All versions < V6.2 Upd3). Affected applications do not properly va...
CVE-2022-43513
- EPSS 0.17%
- Published 10.01.2023 12:15:23
- Last modified 21.11.2024 07:26:40
A vulnerability has been identified in Automation License Manager V5 (All versions), Automation License Manager V6 (All versions < V6.0 SP9 Upd4), TeleControl Server Basic V3 (All versions < V3.1.2). The affected components allow to rename license fi...
CVE-2022-43514
- EPSS 1.25%
- Published 10.01.2023 12:15:23
- Last modified 21.11.2024 07:26:40
A vulnerability has been identified in Automation License Manager V5 (All versions), Automation License Manager V6 (All versions < V6.0 SP9 Upd4), TeleControl Server Basic V3 (All versions < V3.1.2). The affected component does not correctly validate...
CVE-2021-25659
- EPSS 0.44%
- Published 10.08.2021 11:15:08
- Last modified 21.11.2024 05:55:14
A vulnerability has been identified in Automation License Manager 5 (All versions), Automation License Manager 6 (All versions < V6.0 SP9 Update 2). Sending specially crafted packets to port 4410/tcp of an affected system could lead to extensive memo...
CVE-2020-7583
- EPSS 0.04%
- Published 14.08.2020 16:15:17
- Last modified 21.11.2024 05:37:25
A vulnerability has been identified in Automation License Manager 5 (All versions), Automation License Manager 6 (All versions < V6.0.8). The application does not properly validate the users' privileges when executing some operations, which could all...
CVE-2018-11455
- EPSS 2.66%
- Published 07.08.2018 15:29:00
- Last modified 21.11.2024 03:43:24
A vulnerability has been identified in Automation License Manager 5 (All versions < 5.3.4.4), Automation License Manager 6 (All versions < 6.0.1). A directory traversal vulnerability could allow a remote attacker to move arbitrary files, which can re...
CVE-2018-11456
- EPSS 0.18%
- Published 07.08.2018 15:29:00
- Last modified 21.11.2024 03:43:24
A vulnerability has been identified in Automation License Manager 5 (All versions < 5.3.4.4). An attacker with network access to the device could send specially crafted network packets to determine whether or not a network port on another remote syst...
CVE-2016-8565
- EPSS 0.97%
- Published 13.10.2016 10:59:05
- Last modified 12.04.2025 10:46:40
Siemens Automation License Manager (ALM) before 5.3 SP3 allows remote attackers to write to files, rename files, create directories, or delete directories via crafted packets.
CVE-2016-8564
- EPSS 0.23%
- Published 13.10.2016 10:59:04
- Last modified 12.04.2025 10:46:40
SQL injection vulnerability in Siemens Automation License Manager (ALM) before 5.3 SP3 Update 1 allows remote attackers to execute arbitrary SQL commands via crafted traffic to TCP port 4410.