These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.
CVE-2024-52567 is a high-severity out-of-bounds read vulnerability in Siemens Teamcenter Visualization affecting versions V14.2, V14.3, V2312, and V2406. The flaw occurs when parsing specially crafted WRL (VRML) files, allowing an attacker to execute arbitrary code in the context of the current process. Published on December 10, 2024, this vulnerability was reported through the Zero Day Initiative (ZDI-CA [truncated]
CVE-2024-52566 is a high-severity out-of-bounds write vulnerability in Siemens Teamcenter Visualization affecting versions V14.2, V14.3, V2312, and V2406. The flaw occurs when parsing specially crafted WRL (VRML) files, which could allow an attacker to execute arbitrary code in the context of the current process. This vulnerability was disclosed on December 10, 2024, and was reported through the Zero Day [truncated]
CVE-2024-52565 is a high-severity out-of-bounds write vulnerability in Siemens Teamcenter Visualization affecting versions V14.2, V14.3, V2312, and V2406. The flaw exists in the parsing of specially crafted WRL (VRML) files and can lead to arbitrary code execution in the context of the current process. The vulnerability was disclosed on December 10, 2024, and carries a CVSS 3.1 score of 7.8 (HIGH). Siemen [truncated]
CVE-2024-52051 is a high-severity local command injection vulnerability affecting 34 Siemens TIA Portal engineering products, including SIMATIC S7-PLCSIM, STEP 7, WinCC, and related components across versions V17-V19. The vulnerability stems from improper sanitization of user-controllable input during user settings parsing, enabling an authenticated local attacker to execute arbitrary OS commands with use [truncated]
A type confusion vulnerability in Siemens TIA Portal engineering software allows arbitrary code execution when parsing malicious log files. The flaw stems from insufficient sanitization of user-controllable input during log file parsing operations. An attacker can exploit this by convincing a user to open a crafted log file in affected products, triggering type confusion and resulting in arbitrary code ex [truncated]
## Summary CVE-2024-49704 is a medium-severity XML External Entity (XXE) vulnerability affecting Siemens COMOS V10.3 and multiple V10.4.x versions. The flaw resides in the Generic Data Mapper, Engineering Adapter, and Engineering Interface components, which improperly handle XXE entries when parsing configuration and mapping files. An attacker could exploit this by persuading a user to open a maliciously [truncated]
A cross-site request forgery (CSRF) vulnerability in the CLI feature of the Siemens RUGGEDCOM ROX II web interface allows attackers to read or modify device configuration by tricking authenticated users into accessing malicious links. The vulnerability carries a HIGH severity CVSS 8.8 score with network attack vector, low attack complexity, and high impact on confidentiality, integrity, and availability. [truncated]
CVE-2024-53063 describes a risk of out-of-memory access in the Linux kernel's media subsystem, specifically within the dvbdev component. The vulnerability was published on 2025-08-12 and last modified on 2026-02-25. Siemens ProductCERT issued advisory SSA-355557 addressing this CVE, which CISA subsequently republished as ICSA-25-226-07 on 2025-08-12 with updates through 2026-02-25. The advisory covers Sie [truncated]
A session fixation vulnerability in Fortinet FortiOS affects Siemens RUGGEDCOM APE1808 deployments that incorporate Fortinet NGFW components. The vulnerability exists in FortiOS versions 7.4.0 through 7.4.3, 7.2.0 through 7.2.7, and 7.0.0 through 7.0.13. An attacker can exploit this weakness by delivering a phishing link that leverages SAML authentication to hijack a user's session, potentially enabling e [truncated]
CVE-2024-5594 affects Siemens SINEMA Remote Connect Server and was publicly disclosed on 2025-03-11 in Siemens/CISA advisories. The issue is in control-channel message handling: messages containing nonprintable characters should be refused, but the advisory notes that a malicious OpenVPN peer could otherwise cause garbage to be written to the OpenVPN log or trigger high CPU load. Siemens provides a fixed [truncated]
CVE-2024-50572 affects multiple Siemens SCALANCE W700-series devices. According to CISA and Siemens, an authenticated remote attacker with administrative privileges could exploit improper input sanitization to inject code or spawn a system root shell. Siemens lists an update to V3.0.0 or later as the fix.
CVE-2024-50561 is a Siemens SCALANCE W700 issue in which affected devices do not properly sanitize filenames before upload. Siemens and CISA state this could let an authenticated remote attacker compromise system integrity. The advisory lists 19 affected SCALANCE WAB/WAM/WUB/WUM product variants and recommends updating to V3.0.0 or later.
CVE-2024-50560 is a Siemens SCALANCE W700 issue where usernames longer than 15 characters can be truncated when users connect over SSH or Telnet. According to the advisory, this may let an attacker affect system integrity. CISA lists the issue as low severity, but it still matters because it involves remote management access on affected industrial devices.
A medium-severity vulnerability in Siemens SCALANCE M-800 family and RUGGEDCOM RM1224 industrial routers allows authenticated remote attackers to compromise system integrity by appending arbitrary values to certificate filenames due to improper input validation. The flaw was disclosed on November 12, 2024, with a vendor fix available requiring update to firmware version 8.2 or later.
CVE-2024-50558 is a medium-severity access control vulnerability affecting 26 Siemens industrial networking devices across the SCALANCE M-800 family, RUGGEDCOM RM1224 series, and SCALANCE S615 product lines. Published on November 12, 2024, and last modified on May 6, 2025, this vulnerability stems from improper access control management for read-only user accounts. An authenticated attacker with low privi [truncated]
CVE-2024-50557 is a high-severity vulnerability in Siemens SCALANCE M-800 family industrial routers and related devices, published on November 12, 2024. The flaw stems from improper input validation in the iperf functionality configuration fields, enabling unauthenticated remote attackers to execute arbitrary code on affected devices. The vulnerability carries a CVSS 3.1 score of 7.2 (HIGH severity) with [truncated]
A race condition in the basic authentication implementation of Siemens Mendix Runtime allows unauthenticated remote attackers to bypass default account lockout protections. The vulnerability affects Mendix Runtime V8, V9, and multiple V10 branches. Siemens has released patches for V9 and V10 variants; V8 has no planned fix and requires mitigation.
A high-severity authorization bypass vulnerability in Siemens SIMATIC CP 1543-1 V4.0 industrial communication processors allows unauthenticated remote attackers to access the device filesystem. Published November 12, 2024, this flaw stems from improper authorization handling on TCP port 8448. The vulnerability carries a CVSS 3.1 score of 7.5 (HIGH) with network attack vector, low complexity, and no privil [truncated]
A DLL hijacking vulnerability in Siemens Solid Edge SE2024 allows local attackers to execute arbitrary code by placing a crafted DLL file on the system. The vulnerability was disclosed on November 12, 2024, with a CVSS 3.1 score of 7.3 (HIGH). The attack requires local access, low privileges, and user interaction, but successful exploitation grants high impact across confidentiality, integrity, and availa [truncated]
CVE-2024-47941 is a high-severity out-of-bounds read vulnerability in Siemens Solid Edge SE2024, published on November 12, 2024. The flaw occurs when parsing specially crafted PAR (part) files, allowing an attacker to execute arbitrary code within the context of the current process. The vulnerability stems from reading past the end of an allocated structure during PAR file parsing. With a CVSS 3.1 score o [truncated]
CVE-2024-47940 is a high-severity vulnerability in Siemens Solid Edge SE2024, published on November 12, 2024. The vulnerability stems from an out-of-bounds read past the end of an allocated structure when parsing specially crafted PSM (ParSolid Model) files. This memory safety defect could allow an attacker to execute arbitrary code within the context of the current process. The CVSS 3.1 score of 7.8 refl [truncated]
CVE-2024-47808 is a high-severity vulnerability in Siemens SINEC NMS, published on November 12, 2024. The affected application contains a database function that fails to properly restrict user permissions for writing to the host filesystem. An authenticated attacker with medium privileges can exploit this flaw to write arbitrary content to any location on the host filesystem, potentially leading to comple [truncated]
CVE-2024-47783 is a high-severity local privilege escalation vulnerability in Siemens SIPORT, an industrial control system access management solution. Published on November 12, 2024, and last modified on May 6, 2025, this vulnerability stems from improper file permission assignments on installation folders. The flaw allows a local attacker with an unprivileged account to modify or override service executa [truncated]
CVE-2024-46894 is a medium-severity authorization bypass vulnerability in Siemens SINEC INS, published on 2024-11-12. The affected application fails to properly validate user authorization for the /api/sftp/users endpoint, allowing an authenticated remote attacker to enumerate configured SFTP service users and modify that configuration. The vulnerability carries a CVSS 3.1 score of 6.3 (MEDIUM), with netw [truncated]
CVE-2024-46891 is a medium-severity vulnerability in Siemens SINEC INS, published on November 12, 2024. The affected application fails to properly restrict the size of generated log files, allowing an unauthenticated remote attacker to trigger excessive logged events that exhaust system resources and cause a denial of service condition. The vulnerability has a CVSS 3.1 score of 5.3 (Medium) with the vecto [truncated]
A critical input validation vulnerability in Siemens SINEC INS allows authenticated remote attackers with high privileges to execute arbitrary code on the underlying operating system. The flaw exists in specific web API endpoints that fail to properly validate input. Published November 12, 2024, this vulnerability carries a CVSS 9.1 score and requires immediate patching.
## Summary Siemens SINEC INS contains a hard-coded cryptographic key vulnerability (CVE-2024-46889, CVSS 5.3 Medium) published 2024-11-12. The application uses embedded key material to obfuscate configuration files, enabling attackers who reverse-engineer the binary to extract keys and decrypt arbitrary backup files. ## Technical Details The vulnerability stems from **hard-coded cryptographic key material [truncated]
A critical path traversal vulnerability in Siemens SINEC INS allows authenticated remote attackers to manipulate arbitrary files and achieve code execution via unsanitized SFTP file paths. Published 2024-11-12.
A stored cross-site scripting (XSS) vulnerability exists in the user accounts tab of Siemens OZW672 and OZW772 Web Server devices. An authenticated remote attacker can inject arbitrary JavaScript code that executes when another authenticated user—potentially with higher privileges—views the affected page. The vulnerability was disclosed on November 12, 2024, with a revision on May 6, 2025, to correct typo [truncated]
A local privilege escalation vulnerability exists in Siemens Spectrum Power 7 due to multiple root-owned SUID binaries. An authenticated attacker with local access can exploit these misconfigured binaries to escalate privileges to root. The vulnerability was disclosed on November 12, 2024, with a CVSS 3.1 score of 7.8 (HIGH). Siemens has released a vendor fix in version V24Q3 or later.