CVE-2025-30174
- EPSS 0.25%
- Veröffentlicht 13.05.2025 09:38:37
- Zuletzt bearbeitet 03.10.2025 19:52:23
A vulnerability has been identified in SIMATIC PCS neo V4.1 (All versions), SIMATIC PCS neo V5.0 (All versions), SINEC NMS (All versions < V4.0), SINEMA Remote Connect (All versions), Totally Integrated Automation Portal (TIA Portal) V17 (All version...
CVE-2024-49775
- EPSS 2.61%
- Veröffentlicht 16.12.2024 15:15:07
- Zuletzt bearbeitet 13.01.2026 10:15:56
A vulnerability has been identified in Opcenter Execution Foundation (All versions < V2501.0001), Opcenter Intelligence (All versions < V2501.0001), Opcenter Quality (All versions < V2512), Opcenter RDnL (All versions < V2410), SIMATIC PCS neo V4.0 (...
CVE-2024-47808
- EPSS 0.08%
- Veröffentlicht 12.11.2024 13:15:10
- Zuletzt bearbeitet 13.11.2024 23:14:07
A vulnerability has been identified in SINEC NMS (All versions < V3.0 SP1). The affected application contains a database function, that does not properly restrict the permissions of users to write to the filesystem of the host system. This could all...
CVE-2024-33698
- EPSS 3.29%
- Veröffentlicht 10.09.2024 10:15:09
- Zuletzt bearbeitet 14.10.2025 10:15:34
A vulnerability has been identified in Opcenter Quality (All versions < V2406), Opcenter RDnL (All versions < V2410), SIMATIC PCS neo V4.0 (All versions), SIMATIC PCS neo V4.1 (All versions < V4.1 Update 2), SIMATIC PCS neo V5.0 (All versions < V5.0 ...
CVE-2024-41941
- EPSS 0.07%
- Veröffentlicht 13.08.2024 08:15:15
- Zuletzt bearbeitet 14.08.2024 18:12:25
A vulnerability has been identified in SINEC NMS (All versions < V3.0). The affected application does not properly enforce authorization checks. This could allow an authenticated attacker to bypass the checks and modify settings in the application wi...
CVE-2024-41940
- EPSS 0.55%
- Veröffentlicht 13.08.2024 08:15:14
- Zuletzt bearbeitet 14.08.2024 18:10:36
A vulnerability has been identified in SINEC NMS (All versions < V3.0). The affected application does not properly validate user input to a privileged command queue. This could allow an authenticated attacker to execute OS commands with elevated priv...
CVE-2024-41939
- EPSS 0.08%
- Veröffentlicht 13.08.2024 08:15:14
- Zuletzt bearbeitet 14.08.2024 18:09:24
A vulnerability has been identified in SINEC NMS (All versions < V3.0). The affected application does not properly enforce authorization checks. This could allow an authenticated attacker to bypass the checks and elevate their privileges on the appli...
CVE-2024-41938
- EPSS 0.16%
- Veröffentlicht 13.08.2024 08:15:14
- Zuletzt bearbeitet 14.08.2024 18:08:42
A vulnerability has been identified in SINEC NMS (All versions < V3.0). The importCertificate function of the SINEC NMS Control web application contains a path traversal vulnerability. This could allow an authenticated attacker it to delete arbitrary...
CVE-2024-36398
- EPSS 0.14%
- Veröffentlicht 13.08.2024 08:15:10
- Zuletzt bearbeitet 14.08.2024 18:34:45
A vulnerability has been identified in SINEC NMS (All versions < V3.0). The affected application executes a subset of its services as `NT AUTHORITY\SYSTEM`. This could allow a local attacker to execute operating system commands with elevated privileg...
CVE-2023-46280
- EPSS 0.06%
- Veröffentlicht 14.05.2024 16:15:40
- Zuletzt bearbeitet 10.12.2024 14:30:35
A vulnerability has been identified in Security Configuration Tool (SCT) (All versions), SIMATIC Automation Tool (All versions < V5.0 SP2), SIMATIC BATCH V9.1 (All versions < V9.1 SP2 Upd5), SIMATIC NET PC Software V16 (All versions < V16 Update 8), ...