|
1781
|
2.2 |
LOW
Network
|
-
|
-
|
Se ha identificado una vulnerabilidad en Mendix OIDC SSO (compatible con Mendix 10) (todas las versiones anteriores a la V4.0.0) y Mendix OIDC SSO (compatible con Mendix 9) (todas las versiones). El …
|
CWE-266
Incorrect Privilege Assignment
|
CVE-2025-40571
|
2026-04-14 18:16 |
2025-05-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1782
|
8.2 |
HIGH
Local
|
-
|
-
|
A vulnerability has been identified in SIMATIC Field PG M5 (All versions), SIMATIC Field PG M6 (All versions < V26.01.12), SIMATIC IPC BX-21A (All versions < V31.01.07), SIMATIC IPC BX-32A (All versi…
|
CWE-693
Protection Mechanism Failure
|
CVE-2024-56182
|
2026-04-14 18:16 |
2025-03-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1783
|
8.2 |
HIGH
Local
|
-
|
-
|
Se ha identificado una vulnerabilidad en SIMATIC Field PG M5 (todas las versiones), SIMATIC Field PG M6 (todas las versiones < V26.01.12), SIMATIC IPC BX-21A (todas las versiones < V31.01.07), …
|
CWE-693
Protection Mechanism Failure
|
CVE-2024-56182
|
2026-04-14 18:16 |
2025-03-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1784
|
8.2 |
HIGH
Local
|
-
|
-
|
A vulnerability has been identified in SIMATIC Field PG M5 (All versions), SIMATIC IPC BX-21A (All versions < V31.01.07), SIMATIC IPC BX-32A (All versions < V29.01.07), SIMATIC IPC BX-39A (All versio…
|
CWE-693
Protection Mechanism Failure
|
CVE-2024-56181
|
2026-04-14 18:16 |
2025-03-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1785
|
8.2 |
HIGH
Local
|
-
|
-
|
Se ha identificado una vulnerabilidad en SIMATIC Field PG M5 (todas las versiones), SIMATIC IPC BX-21A (todas las versiones < V31.01.07), SIMATIC IPC BX-32A (todas las versiones < V29.01.07), S…
|
CWE-693
Protection Mechanism Failure
|
CVE-2024-56181
|
2026-04-14 18:16 |
2025-03-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1786
|
9.1 |
CRITICAL
Network
|
siemens
|
6gk5205-3bb00-2ab2_firmware 6gk5205-3bb00-2tb2_firmware 6gk5205-3bd00-2tb2_firmware 6gk5205-3bd00-2ab2_firmware 6gk5205-3bf00-2tb2_firmware 6gk5205-3bf00-2ab2_firmware 6gk5208-0ba00…
|
Affected devices do not properly sanitize an input field. This could allow an authenticated remote attacker with administrative privileges to inject code or spawn a system root shell. Follow-up of C…
|
CWE-74
Injection
|
CVE-2023-44373
|
2026-04-14 18:16 |
2023-11-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1787
|
9.1 |
CRITICAL
Network
|
siemens
|
6gk5205-3bb00-2ab2_firmware 6gk5205-3bb00-2tb2_firmware 6gk5205-3bd00-2tb2_firmware 6gk5205-3bd00-2ab2_firmware 6gk5205-3bf00-2tb2_firmware 6gk5205-3bf00-2ab2_firmware 6gk5208-0ba00…
|
Se ha identificado una vulnerabilidad en:
SCALANCE XB205-3 (SC, PN) (V < 4.5),
SCALANCE XB205-3 (ST, E/IP) (V < 4.5),
SCALANCE XB205-3 (ST , E/IP) (V < 4.5),
SCALANCE XB205-3 (ST, PN) (V…
|
CWE-74
Injection
|
CVE-2023-44373
|
2026-04-14 18:16 |
2023-11-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1788
|
4.8 |
MEDIUM
Network
|
siemens
|
scalance_m-800_firmware scalance_s615_firmware scalance_sc-600_firmware scalance_sc622-2c_firmware scalance_sc632-2c_firmware scalance_sc636-2c_firmware scalance_sc642-2c_firmware
|
Affected devices do not properly sanitize data introduced by an user when rendering the web interface. This could allow an authenticated remote attacker with administrative privileges to inject code …
|
CWE-80 NVD-CWE-Other
Basic XSS
|
CVE-2022-36325
|
2026-04-14 18:16 |
2022-08-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1789
|
4.8 |
MEDIUM
Network
|
siemens
|
scalance_m-800_firmware scalance_s615_firmware scalance_sc-600_firmware scalance_sc622-2c_firmware scalance_sc632-2c_firmware scalance_sc636-2c_firmware scalance_sc642-2c_firmware
|
Los dispositivos afectados no sanean correctamente los datos introducidos por un usuario al renderizar la interfaz web. Esto podría permitir a un atacante remoto autenticado con privilegios administr…
|
CWE-80 NVD-CWE-Other
Basic XSS
|
CVE-2022-36325
|
2026-04-14 18:16 |
2022-08-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1790
|
7.5 |
HIGH
Network
|
siemens
|
scalance_m-800_firmware scalance_s615_firmware scalance_w700_ieee_802.11ax_firmware scalance_w700_ieee_802.11n_firmware scalance_w700_ieee_802.11ac_firmware scalance_xb-200_firmware
|
Affected devices do not properly handle the renegotiation of SSL/TLS parameters. This could allow an unauthenticated remote attacker to bypass the TCP brute force prevention and lead to a denial of s…
|
CWE-770
Allocation of Resources Without Limits or Throttling
|
CVE-2022-36324
|
2026-04-14 18:16 |
2022-08-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|