siemens records
2,243 published records for vendor siemens.
Researcher profile
- Entered KEV
- 29 · 1.3%
- Weaponized
- 38 · 1.7%
- Pre-auth RCE
- 108
- With a fix record
- 10.1%
- Median publish → KEV
- 150 days
Recurring classes
- CWE-787 Out-of-bounds Write189
- CWE-125 Out-of-bounds Read184
- CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')97
- CWE-20 Improper Input Validation96
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer70
- CWE-122 Heap-based Buffer Overflow70
The weakness classes this vendor ships most often: where to look.
CWEAll records
2,243 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
100Now | CVE-2021-44228Weaponized | Apache Log4j2 JNDI features do not protect against attacker controlled LDAP and other JNDI related endpointsapache · log4j · CWE-20 | Critical10.0 | KEV | 100.0% | Dec 10, 2021 |
99Now | CVE-2019-0708Weaponized | A remote code execution vulnerability exists in Remote Desktop Services formerly known as Terminal Services when an unauthenticated attackermicrosoft · windows 7 · CWE-416 | Critical9.8 | KEV | 100.0% | May 16, 2019 |
99Now | CVE-2022-22965Weaponized | A Spring MVC or Spring WebFlux application running on JDK 9+ may be vulnerable to remote code execution (RCE) via data binding.vmware · spring framework · CWE-94 | Critical9.8 | KEV | 99.6% | Apr 1, 2022 |
97Now | CVE-2017-5689Weaponized | An unprivileged network attacker could gain system privileges to provisioned Intel manageability SKUs: Intel Active Management Technology (Aintel · active management technology firmware · CWE-269 | Critical9.8 | KEV | 92.2% | May 2, 2017 |
96Now | CVE-2021-40438Weaponized | A crafted request uri-path can cause mod_proxy to forward the request to an origin server choosen by the remote user.resf · rocky linux · CWE-918 | Critical9.0 | KEV | 100.0% | Sep 16, 2021 |
96Now | CVE-2021-45046Weaponized | Apache Log4j2 Thread Context Message Pattern and Context Lookup Pattern vulnerable to a denial of service attackapache · log4j · CWE-917 | Critical9.0 | KEV | 100.0% | Dec 14, 2021 |
95Now | CVE-2017-0144Weaponized | The SMBv1 server in Microsoft Windows Vista SP2; Windows Server 2008 SP2 and R2 SP1; Windows 7 SP1; Windows 8.1; Windows Server 2012 Gold anmicrosoft · server message block | High8.8 | KEV | 99.2% | Mar 16, 2017 |
95Now | CVE-2026-24858Weaponized | An Authentication Bypass Using an Alternate Path or Channel vulnerability [CWE-288] vulnerability in Fortinet FortiAnalyzer 7.6.0 through 7.fortinet · fortianalyzer · CWE-288 | Critical9.8 | KEV | 85.8% | Jan 27, 2026 |
93Now | CVE-2017-0143Weaponized | The SMBv1 server in Microsoft Windows Vista SP2; Windows Server 2008 SP2 and R2 SP1; Windows 7 SP1; Windows 8.1; Windows Server 2012 Gold anmicrosoft · server message block | High8.8 | KEV | 93.3% | Mar 16, 2017 |
92Now | CVE-2017-0148Weaponized | The SMBv1 server in Microsoft Windows Vista SP2; Windows Server 2008 SP2 and R2 SP1; Windows 7 SP1; Windows 8.1; Windows Server 2012 Gold anmicrosoft · server message block · CWE-20 | High8.1 | KEV | 99.4% | Mar 16, 2017 |
92Now | CVE-2017-0146Weaponized | The SMBv1 server in Microsoft Windows Vista SP2; Windows Server 2008 SP2 and R2 SP1; Windows 7 SP1; Windows 8.1; Windows Server 2012 Gold anmicrosoft · server message block | High8.8 | KEV | 89.9% | Mar 16, 2017 |
92Now | CVE-2017-0145Weaponized | The SMBv1 server in Microsoft Windows Vista SP2; Windows Server 2008 SP2 and R2 SP1; Windows 7 SP1; Windows 8.1; Windows Server 2012 Gold anmicrosoft · server message block | High8.8 | KEV | 89.9% | Mar 16, 2017 |
90Now | CVE-2014-0160Weaponized | The (1) TLS and (2) DTLS implementations in OpenSSL 1.0.1 before 1.0.1g do not properly handle Heartbeat Extension packets, which allows remopenssl · openssl · CWE-125 | High7.5 | KEV | 100.0% | Apr 7, 2014 |
90Now | CVE-2023-44487Weaponized | The HTTP/2 protocol allows a denial of service (server resource consumption) because request cancellation can reset many streams quickly, assiemens · simatic s7-1500 cpu 1518f-4 pn\/dp mfp firmware · CWE-400 | High7.5 | KEV | 100.0% | Oct 10, 2023 |
90Now | CVE-2017-0147Weaponized | The SMBv1 server in Microsoft Windows Vista SP2; Windows Server 2008 SP2 and R2 SP1; Windows 7 SP1; Windows 8.1; Windows Server 2012 Gold anmicrosoft · windows 10 1507 | High7.5 | KEV | 99.7% | Mar 16, 2017 |
90Now | CVE-2026-0257Weaponized | PAN-OS: GlobalProtect Authentication Bypass Vulnerabilitiespaloaltonetworks · pan-os · CWE-565 | High7.8 | KEV | 96.4% | May 13, 2026 |
89Now | CVE-2021-4034Weaponized | A local privilege escalation vulnerability was found on polkit's pkexec utility.polkit project · polkit · CWE-787 | High7.8 | KEV | 94.3% | Jan 28, 2022 |
89Now | CVE-2022-0847Weaponized | A flaw was found in the way the "flags" member of the new pipe buffer structure was lacking proper initialization in copy_page_to_iter_pipe linux · linux kernel · CWE-665 | High7.8 | KEV | 92.8% | Mar 10, 2022 |
89Now | CVE-2025-59718Weaponized | A improper verification of cryptographic signature vulnerability in Fortinet FortiOS 7.6.0 through 7.6.3, FortiOS 7.4.0 through 7.4.8, Fortifortinet · fortiproxy · CWE-347 | Critical9.8 | KEV | 68.3% | Dec 9, 2025 |
85Now | CVE-2023-4911Weaponized | Glibc: buffer overflow in ld.so leading to privilege escalationgnu · glibc · CWE-122 | High7.8 | KEV | 81.4% | Oct 3, 2023 |
77This week | CVE-2026-0300Weaponized | PAN-OS: Unauthenticated user initiated Buffer Overflow Vulnerability in User-ID™ Authentication Portalpaloaltonetworks · pan-os · CWE-787 | Critical9.3 | KEV | 31.7% | May 6, 2026 |
71This week | CVE-2025-10585Weaponized | Type confusion in V8 in Google Chrome prior to 140.0.7339.185 allowed a remote attacker to potentially exploit heap corruption via a craftedgoogle · chrome · CWE-843 | Critical9.8 | KEV | 5.4% | Sep 24, 2025 |
70This week | CVE-2025-25249Weaponized | A heap-based buffer overflow vulnerability in Fortinet FortiOS 7.6.0 through 7.6.3, FortiOS 7.4.0 through 7.4.8, FortiOS 7.2.0 through 7.2.1fortinet · fortios · CWE-122 | Critical9.8 | KEV | 3.9% | Jan 13, 2026 |
70This week | CVE-2025-39682Weaponized | tls: fix handling of zero-length records on the rx_listlinux · linux kernel · CWE-754 | Critical9.8 | KEV | 2.9% | Sep 5, 2025 |
67This week | CVE-2025-13223Weaponized | Type Confusion in V8 in Google Chrome prior to 142.0.7444.175 allowed a remote attacker to potentially exploit heap corruption via a craftedgoogle · chrome · CWE-843 | High8.8 | KEV | 5.0% | Nov 17, 2025 |
- CVE-2021-44228100Now
Apache Log4j2 JNDI features do not protect against attacker controlled LDAP and other JNDI related endpoints
CriticalCVSS 10.0KEVWeaponizedEPSS 100%apache · log4jDec 10, 2021
- CVE-2019-070899Now
A remote code execution vulnerability exists in Remote Desktop Services formerly known as Terminal Services when an unauthenticated attacker
CriticalCVSS 9.8KEVWeaponizedEPSS 100%microsoft · windows 7May 16, 2019
- CVE-2022-2296599Now
A Spring MVC or Spring WebFlux application running on JDK 9+ may be vulnerable to remote code execution (RCE) via data binding.
CriticalCVSS 9.8KEVWeaponizedEPSS 100%vmware · spring frameworkApr 1, 2022
- CVE-2017-568997Now
An unprivileged network attacker could gain system privileges to provisioned Intel manageability SKUs: Intel Active Management Technology (A
CriticalCVSS 9.8KEVWeaponizedEPSS 92%intel · active management technology firmwareMay 2, 2017
- CVE-2021-4043896Now
A crafted request uri-path can cause mod_proxy to forward the request to an origin server choosen by the remote user.
CriticalCVSS 9.0KEVWeaponizedEPSS 100%resf · rocky linuxSep 16, 2021
- CVE-2021-4504696Now
Apache Log4j2 Thread Context Message Pattern and Context Lookup Pattern vulnerable to a denial of service attack
CriticalCVSS 9.0KEVWeaponizedEPSS 100%apache · log4jDec 14, 2021
- CVE-2017-014495Now
The SMBv1 server in Microsoft Windows Vista SP2; Windows Server 2008 SP2 and R2 SP1; Windows 7 SP1; Windows 8.1; Windows Server 2012 Gold an
HighCVSS 8.8KEVWeaponizedEPSS 99%microsoft · server message blockMar 16, 2017
- CVE-2026-2485895Now
An Authentication Bypass Using an Alternate Path or Channel vulnerability [CWE-288] vulnerability in Fortinet FortiAnalyzer 7.6.0 through 7.
CriticalCVSS 9.8KEVWeaponizedEPSS 86%fortinet · fortianalyzerJan 27, 2026
- CVE-2017-014393Now
The SMBv1 server in Microsoft Windows Vista SP2; Windows Server 2008 SP2 and R2 SP1; Windows 7 SP1; Windows 8.1; Windows Server 2012 Gold an
HighCVSS 8.8KEVWeaponizedEPSS 93%microsoft · server message blockMar 16, 2017
- CVE-2017-014892Now
The SMBv1 server in Microsoft Windows Vista SP2; Windows Server 2008 SP2 and R2 SP1; Windows 7 SP1; Windows 8.1; Windows Server 2012 Gold an
HighCVSS 8.1KEVWeaponizedEPSS 99%microsoft · server message blockMar 16, 2017
- CVE-2017-014692Now
The SMBv1 server in Microsoft Windows Vista SP2; Windows Server 2008 SP2 and R2 SP1; Windows 7 SP1; Windows 8.1; Windows Server 2012 Gold an
HighCVSS 8.8KEVWeaponizedEPSS 90%microsoft · server message blockMar 16, 2017
- CVE-2017-014592Now
The SMBv1 server in Microsoft Windows Vista SP2; Windows Server 2008 SP2 and R2 SP1; Windows 7 SP1; Windows 8.1; Windows Server 2012 Gold an
HighCVSS 8.8KEVWeaponizedEPSS 90%microsoft · server message blockMar 16, 2017
- CVE-2014-016090Now
The (1) TLS and (2) DTLS implementations in OpenSSL 1.0.1 before 1.0.1g do not properly handle Heartbeat Extension packets, which allows rem
HighCVSS 7.5KEVWeaponizedEPSS 100%openssl · opensslApr 7, 2014
- CVE-2023-4448790Now
The HTTP/2 protocol allows a denial of service (server resource consumption) because request cancellation can reset many streams quickly, as
HighCVSS 7.5KEVWeaponizedEPSS 100%siemens · simatic s7-1500 cpu 1518f-4 pn\/dp mfp firmwareOct 10, 2023
- CVE-2017-014790Now
The SMBv1 server in Microsoft Windows Vista SP2; Windows Server 2008 SP2 and R2 SP1; Windows 7 SP1; Windows 8.1; Windows Server 2012 Gold an
HighCVSS 7.5KEVWeaponizedEPSS 100%microsoft · windows 10 1507Mar 16, 2017
- CVE-2026-025790Now
PAN-OS: GlobalProtect Authentication Bypass Vulnerabilities
HighCVSS 7.8KEVWeaponizedEPSS 96%paloaltonetworks · pan-osMay 13, 2026
- CVE-2021-403489Now
A local privilege escalation vulnerability was found on polkit's pkexec utility.
HighCVSS 7.8KEVWeaponizedEPSS 94%polkit project · polkitJan 28, 2022
- CVE-2022-084789Now
A flaw was found in the way the "flags" member of the new pipe buffer structure was lacking proper initialization in copy_page_to_iter_pipe
HighCVSS 7.8KEVWeaponizedEPSS 93%linux · linux kernelMar 10, 2022
- CVE-2025-5971889Now
A improper verification of cryptographic signature vulnerability in Fortinet FortiOS 7.6.0 through 7.6.3, FortiOS 7.4.0 through 7.4.8, Forti
CriticalCVSS 9.8KEVWeaponizedEPSS 68%fortinet · fortiproxyDec 9, 2025
- CVE-2023-491185Now
Glibc: buffer overflow in ld.so leading to privilege escalation
HighCVSS 7.8KEVWeaponizedEPSS 81%gnu · glibcOct 3, 2023
- CVE-2026-030077This week
PAN-OS: Unauthenticated user initiated Buffer Overflow Vulnerability in User-ID™ Authentication Portal
CriticalCVSS 9.3KEVWeaponizedEPSS 32%paloaltonetworks · pan-osMay 6, 2026
- CVE-2025-1058571This week
Type confusion in V8 in Google Chrome prior to 140.0.7339.185 allowed a remote attacker to potentially exploit heap corruption via a crafted
CriticalCVSS 9.8KEVWeaponizedEPSS 5%google · chromeSep 24, 2025
- CVE-2025-2524970This week
A heap-based buffer overflow vulnerability in Fortinet FortiOS 7.6.0 through 7.6.3, FortiOS 7.4.0 through 7.4.8, FortiOS 7.2.0 through 7.2.1
CriticalCVSS 9.8KEVWeaponizedEPSS 4%fortinet · fortiosJan 13, 2026
- CVE-2025-3968270This week
tls: fix handling of zero-length records on the rx_list
CriticalCVSS 9.8KEVWeaponizedEPSS 3%linux · linux kernelSep 5, 2025
- CVE-2025-1322367This week
Type Confusion in V8 in Google Chrome prior to 142.0.7444.175 allowed a remote attacker to potentially exploit heap corruption via a crafted
HighCVSS 8.8KEVWeaponizedEPSS 5%google · chromeNov 17, 2025