Vulnerability Intelligence

Siemens Security Advisories

Comprehensive database of security vulnerabilities affecting Siemens industrial products. Data sourced from Siemens ProductCERT.

Last updated: March 18, 2026 at 05:02 PM
92
Total Advisories
10
Critical
45
High Severity
2388
CVE IDs
92 of 92 shown
SSA ID
CVSS
Title
CVEs
Last Update
Links
SSA-201595
8.2
SSA-201595: Privilege Escalation Vulnerability in WIBU CodeMeter Runtime Affecting the Desigo CC Product Family and SENTRON Powermanager
1 CVE2026-03-10
SSA-868571
7.4
SSA-868571: Missing Server Certificate Validation in IAM Client
1 CVE2026-03-10
SSA-710408
8.1
SSA-710408: Missing Server Certificate Validation in Siemens Advanced Licensing (SALT) Toolkit
1 CVE2026-03-10
SSA-282044
7.8
SSA-282044: DLL Hijacking Vulnerability in Siemens Web Installer used by the Online Software Delivery
1 CVE2026-03-10
SSA-212953
8.1
SSA-212953: Multiple Vulnerabilities in COMOS
6 CVEs2026-03-10
SSA-613116
5.5
SSA-613116: Multiple Vulnerabilities in Third-Party Components in SINEC OS before V3.1
381 CVEs2026-02-24
SSA-355557
5.5
SSA-355557: Multiple Vulnerabilities in Third-Party Components in SINEC OS before V3.2
486 CVEs2026-02-24
SSA-089022
7.5
SSA-089022: Multiple Vulnerabilities in Third-Party Components in SINEC OS before V3.3
51 CVEs2026-02-24
SSA-965753
7.8
SSA-965753: Multiple File Parsing Vulnerabilities in Simcenter Femap and Nastran Before V2512
6 CVEs2026-02-10
SSA-864900
9.8
SSA-864900: Multiple Vulnerabilities in Fortigate NGFW on RUGGEDCOM APE1808 Devices
21 CVEs2026-02-10
SSA-674753
7.5
SSA-674753: Denial-of-Service Vulnerability in ET 200 Devices
1 CVE2026-02-10
SSA-625934
6.3
SSA-625934: Improper Access Control Vulnerability in the Webhooks Implementation of Siveillance Video Management Servers
1 CVE2026-02-10
SSA-599451
4.4
SSA-599451: Multiple Vulnerabilities in SiPass integrated
4 CVEs2026-02-10
SSA-507364
8.8
SSA-507364: Heap Based Buffer Overflow Vulnerability in WIBU CodeMeter Runtime Affecting the Desigo CC Product Family and SENTRON Powermanager
1 CVE2026-02-10
SSA-445819
7.8
SSA-445819: Out of Bounds Read in PS/IGES Parasolid Translator Component in Solid Edge
1 CVE2026-02-10
SSA-311973
7.8
SSA-311973: Multiple Local Privilege Escalation Vulnerabilities in SINEC NMS and User Management Component (UMC)
2 CVEs2026-02-10
SSA-265688
5.3
SSA-265688: Vulnerabilities in the additional GNU/Linux subsystem of the SIMATIC S7-1500 TM MFP V1.1
452 CVEs2026-02-10
SSA-216014
8.2
SSA-216014: Vulnerabilities in EFI variable of SIMATIC IPCs, SIMATIC Tablet PCs, and SIMATIC Field PGs
2 CVEs2026-02-10
SSA-035571
7.6
SSA-035571: Cross Site Scripting Vulnerability in Polarion Before V2506
1 CVE2026-02-10
SSA-192617
8.8
SSA-192617: Local Privilege Escalation Vulnerability in TeleControl Server Basic Before V3.1.2.4
1 CVE2026-01-13
SSA-014678
10.0
SSA-014678: Authorization Bypass Vulnerability in Industrial Edge Device Kit
1 CVE2026-01-13
SSA-001536
10.0
SSA-001536: Authorization Bypass Vulnerability in Siemens Industrial Edge Devices
1 CVE2026-01-13
SSA-978177
7.9
SSA-978177: Vulnerability in Nozomi Guardian/CMC Before 25.4.0 on RUGGEDCOM APE1808 Devices
11 CVEs2026-01-13
SSA-928984
9.8
SSA-928984: Heap-based Buffer Overflow Vulnerability in User Management Component (UMC)
1 CVE2026-01-13
SSA-858251
9.1
SSA-858251: Authentication Bypass Vulnerabilities in OPC UA
2 CVEs2026-01-13
Showing 1 to 25 of 92 results

Disclaimer: This data is aggregated from publicly available Siemens ProductCERT security advisories for informational purposes. Always refer to the official Siemens CERT Portal for the most current and authoritative information.