Перейти к содержимому
Noroxi

Записи siemens

2 243 опубликованных записей вендора siemens.

Профиль для исследователя

Попали в KEV
29 · 1,3 %
С эксплойтом
38 · 1,7 %
Pre-auth RCE
108
С записью об исправлении
10,1 %
Медиана: публикация → KEV
150 дн.

Все записи

2 243 записей
  • CVE-2021-44228
    100Срочно

    Apache Log4j2 JNDI features do not protect against attacker controlled LDAP and other JNDI related endpoints

    КритическаяCVSS 10,0KEVГотовый эксплойтEPSS 100 %

    apache · log4j10 дек. 2021 г.

  • CVE-2019-0708
    99Срочно

    A remote code execution vulnerability exists in Remote Desktop Services formerly known as Terminal Services when an unauthenticated attacker

    КритическаяCVSS 9,8KEVГотовый эксплойтEPSS 100 %

    microsoft · windows 716 мая 2019 г.

  • CVE-2022-22965
    99Срочно

    A Spring MVC or Spring WebFlux application running on JDK 9+ may be vulnerable to remote code execution (RCE) via data binding.

    КритическаяCVSS 9,8KEVГотовый эксплойтEPSS 100 %

    vmware · spring framework1 апр. 2022 г.

  • CVE-2017-5689
    97Срочно

    An unprivileged network attacker could gain system privileges to provisioned Intel manageability SKUs: Intel Active Management Technology (A

    КритическаяCVSS 9,8KEVГотовый эксплойтEPSS 92 %

    intel · active management technology firmware2 мая 2017 г.

  • CVE-2021-40438
    96Срочно

    A crafted request uri-path can cause mod_proxy to forward the request to an origin server choosen by the remote user.

    КритическаяCVSS 9,0KEVГотовый эксплойтEPSS 100 %

    resf · rocky linux16 сент. 2021 г.

  • CVE-2021-45046
    96Срочно

    Apache Log4j2 Thread Context Message Pattern and Context Lookup Pattern vulnerable to a denial of service attack

    КритическаяCVSS 9,0KEVГотовый эксплойтEPSS 100 %

    apache · log4j14 дек. 2021 г.

  • CVE-2017-0144
    95Срочно

    The SMBv1 server in Microsoft Windows Vista SP2; Windows Server 2008 SP2 and R2 SP1; Windows 7 SP1; Windows 8.1; Windows Server 2012 Gold an

    ВысокаяCVSS 8,8KEVГотовый эксплойтEPSS 99 %

    microsoft · server message block16 мар. 2017 г.

  • CVE-2026-24858
    95Срочно

    An Authentication Bypass Using an Alternate Path or Channel vulnerability [CWE-288] vulnerability in Fortinet FortiAnalyzer 7.6.0 through 7.

    КритическаяCVSS 9,8KEVГотовый эксплойтEPSS 86 %

    fortinet · fortianalyzer27 янв. 2026 г.

  • CVE-2017-0143
    93Срочно

    The SMBv1 server in Microsoft Windows Vista SP2; Windows Server 2008 SP2 and R2 SP1; Windows 7 SP1; Windows 8.1; Windows Server 2012 Gold an

    ВысокаяCVSS 8,8KEVГотовый эксплойтEPSS 93 %

    microsoft · server message block16 мар. 2017 г.

  • CVE-2017-0148
    92Срочно

    The SMBv1 server in Microsoft Windows Vista SP2; Windows Server 2008 SP2 and R2 SP1; Windows 7 SP1; Windows 8.1; Windows Server 2012 Gold an

    ВысокаяCVSS 8,1KEVГотовый эксплойтEPSS 99 %

    microsoft · server message block16 мар. 2017 г.

  • CVE-2017-0146
    92Срочно

    The SMBv1 server in Microsoft Windows Vista SP2; Windows Server 2008 SP2 and R2 SP1; Windows 7 SP1; Windows 8.1; Windows Server 2012 Gold an

    ВысокаяCVSS 8,8KEVГотовый эксплойтEPSS 90 %

    microsoft · server message block16 мар. 2017 г.

  • CVE-2017-0145
    92Срочно

    The SMBv1 server in Microsoft Windows Vista SP2; Windows Server 2008 SP2 and R2 SP1; Windows 7 SP1; Windows 8.1; Windows Server 2012 Gold an

    ВысокаяCVSS 8,8KEVГотовый эксплойтEPSS 90 %

    microsoft · server message block16 мар. 2017 г.

  • CVE-2014-0160
    90Срочно

    The (1) TLS and (2) DTLS implementations in OpenSSL 1.0.1 before 1.0.1g do not properly handle Heartbeat Extension packets, which allows rem

    ВысокаяCVSS 7,5KEVГотовый эксплойтEPSS 100 %

    openssl · openssl7 апр. 2014 г.

  • CVE-2023-44487
    90Срочно

    The HTTP/2 protocol allows a denial of service (server resource consumption) because request cancellation can reset many streams quickly, as

    ВысокаяCVSS 7,5KEVГотовый эксплойтEPSS 100 %

    siemens · simatic s7-1500 cpu 1518f-4 pn\/dp mfp firmware10 окт. 2023 г.

  • CVE-2017-0147
    90Срочно

    The SMBv1 server in Microsoft Windows Vista SP2; Windows Server 2008 SP2 and R2 SP1; Windows 7 SP1; Windows 8.1; Windows Server 2012 Gold an

    ВысокаяCVSS 7,5KEVГотовый эксплойтEPSS 100 %

    microsoft · windows 10 150716 мар. 2017 г.

  • CVE-2026-0257
    90Срочно

    PAN-OS: GlobalProtect Authentication Bypass Vulnerabilities

    ВысокаяCVSS 7,8KEVГотовый эксплойтEPSS 96 %

    paloaltonetworks · pan-os13 мая 2026 г.

  • CVE-2021-4034
    89Срочно

    A local privilege escalation vulnerability was found on polkit's pkexec utility.

    ВысокаяCVSS 7,8KEVГотовый эксплойтEPSS 94 %

    polkit project · polkit28 янв. 2022 г.

  • CVE-2022-0847
    89Срочно

    A flaw was found in the way the "flags" member of the new pipe buffer structure was lacking proper initialization in copy_page_to_iter_pipe

    ВысокаяCVSS 7,8KEVГотовый эксплойтEPSS 93 %

    linux · linux kernel10 мар. 2022 г.

  • CVE-2025-59718
    89Срочно

    A improper verification of cryptographic signature vulnerability in Fortinet FortiOS 7.6.0 through 7.6.3, FortiOS 7.4.0 through 7.4.8, Forti

    КритическаяCVSS 9,8KEVГотовый эксплойтEPSS 68 %

    fortinet · fortiproxy9 дек. 2025 г.

  • CVE-2023-4911
    85Срочно

    Glibc: buffer overflow in ld.so leading to privilege escalation

    ВысокаяCVSS 7,8KEVГотовый эксплойтEPSS 81 %

    gnu · glibc3 окт. 2023 г.

  • CVE-2026-0300
    77На этой неделе

    PAN-OS: Unauthenticated user initiated Buffer Overflow Vulnerability in User-ID™ Authentication Portal

    КритическаяCVSS 9,3KEVГотовый эксплойтEPSS 32 %

    paloaltonetworks · pan-os6 мая 2026 г.

  • CVE-2025-10585
    71На этой неделе

    Type confusion in V8 in Google Chrome prior to 140.0.7339.185 allowed a remote attacker to potentially exploit heap corruption via a crafted

    КритическаяCVSS 9,8KEVГотовый эксплойтEPSS 5 %

    google · chrome24 сент. 2025 г.

  • CVE-2025-25249
    70На этой неделе

    A heap-based buffer overflow vulnerability in Fortinet FortiOS 7.6.0 through 7.6.3, FortiOS 7.4.0 through 7.4.8, FortiOS 7.2.0 through 7.2.1

    КритическаяCVSS 9,8KEVГотовый эксплойтEPSS 4 %

    fortinet · fortios13 янв. 2026 г.

  • CVE-2025-39682
    70На этой неделе

    tls: fix handling of zero-length records on the rx_list

    КритическаяCVSS 9,8KEVГотовый эксплойтEPSS 3 %

    linux · linux kernel5 сент. 2025 г.

  • CVE-2025-13223
    67На этой неделе

    Type Confusion in V8 in Google Chrome prior to 142.0.7444.175 allowed a remote attacker to potentially exploit heap corruption via a crafted

    ВысокаяCVSS 8,8KEVГотовый эксплойтEPSS 5 %

    google · chrome17 нояб. 2025 г.