<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/csaf_siemens/10</id>
  <title>Most recent entries from csaf_siemens</title>
  <updated>2026-10-02T11:52:38.388256+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ssa-039007</id>
    <title>SSA-039007 — SSA-039007: Heap-based Buffer Overflow Vulnerability in User Management Component (UMC)</title>
    <updated>2025-10-14T00:00:00+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Affected products contain a heap-based buffer overflow vulnerability in the integrated UMC component. This could allow an unauthenticated remote attacker to execute arbitrary code.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ssa-039007"/>
    <published>2024-09-10T00:00:00+00:00</published>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ssa-054046</id>
    <title>SSA-054046 — SSA-054046: Unauthenticated Information Disclosure in Web Server of SIMATIC S7-1500 CPUs</title>
    <updated>2025-10-14T00:00:00+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>The web server of affected devices do not properly authenticate user request to the '/ClientArea/RuntimeInfoData.mwsl' endpoint. This could allow an unauthenticated remote attacker to gain knowledge about current actual and configured maximum cycle times as well as about configured maximum communication load.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ssa-054046"/>
    <published>2024-10-08T00:00:00+00:00</published>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ssa-062309</id>
    <title>SSA-062309 — SSA-062309: Information Disclosure Vulnerability in TeleControl Server Basic V3.1</title>
    <updated>2025-10-14T00:00:00+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>The affected application contains an information disclosure vulnerability. This could allow an unauthenticated remote attacker to obtain password hashes of users and to login to and perform authenticated operations of the database service.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ssa-062309"/>
    <published>2025-10-14T00:00:00+00:00</published>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ssa-083019</id>
    <title>SSA-083019 — SSA-083019: Multiple Vulnerabilities in RUGGEDCOM ROS Devices</title>
    <updated>2025-10-14T00:00:00+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>The affected products support insecure cryptographic algorithms. An attacker could leverage these legacy algorithms to achieve a man-in-the-middle attack or impersonate communicating parties. Affected devices do not properly handle malformed TLS handshake messages. This could allow an attacker with network access to the webserver to cause a denial of service resulting in the web server and the device to crash. The affected devices support the TLS_ECDHE_ECDSA_WITH_AES_128_CBC_SHA256 cipher suite, which uses CBC (Cipher Block Chaining) mode that is known to be vulnerable to timing attacks. This could allow an attacker to compromise the integrity and confidentiality of encrypted communications. The affected products do not properly enforce interface access restrictions when changing from management to non-management interface configurations until a system reboot occurs, despite configuration being saved. This could allow an attacker with network access and credentials to gain access to device through non-management and maintain SSH access to the device until reboot.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ssa-083019"/>
    <published>2025-07-08T00:00:00+00:00</published>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ssa-240718</id>
    <title>SSA-240718 — SSA-240718: Insecure Storage of HTTPS CA Certificate in SIMATIC S7-1200 CPU V2</title>
    <updated>2025-10-14T00:00:00+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Affected devices do not properly protect the private key of the integrated Certification Authority (CA) certificate. Possession of this key could allow remote attackers to spoof the device's web server by creating a forged web server certificate.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ssa-240718"/>
    <published>2012-09-13T00:00:00+00:00</published>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ssa-279823</id>
    <title>SSA-279823 — SSA-279823: Cross-Site Scripting Vulnerability in SIMATIC S7-1200 CPU V2/V3 Before V3.0.2</title>
    <updated>2025-10-14T00:00:00+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>The web server on affected devices contains a cross-site scripting (XSS) vulnerability that could allow remote attackers to inject arbitrary web script or HTML via a crafted URI.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ssa-279823"/>
    <published>2012-10-08T00:00:00+00:00</published>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ssa-318832</id>
    <title>SSA-318832 — SSA-318832: SQL Injection Vulnerability in SINEC NMS</title>
    <updated>2025-10-14T00:00:00+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Affected applications are vulnerable to SQL injection through getTotalAndFilterCounts endpoint. An authenticated low privileged attacker could exploit to insert data and achieve privilege escalation. (ZDI-CAN-26570)</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ssa-318832"/>
    <published>2025-10-14T00:00:00+00:00</published>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ssa-367714</id>
    <title>SSA-367714 — SSA-367714: Improper Integrity Check of Firmware Updates in SiPass integrated AC5102 / ACC-G2 and ACC-AP</title>
    <updated>2025-10-14T00:00:00+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Affected devices do not properly check the integrity of firmware updates. This could allow a local attacker to upload a maliciously modified firmware onto the device. In a second scenario, a remote attacker who is able to intercept the transfer of a valid firmware from the server to the device could modify the firmware "on the fly".</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ssa-367714"/>
    <published>2025-05-23T00:00:00+00:00</published>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ssa-373591</id>
    <title>SSA-373591 — SSA-373591: Buffer Overflow Vulnerability in RUGGEDCOM ROS Devices</title>
    <updated>2025-10-14T00:00:00+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>The DHCP client in affected devices fails to properly sanitize incoming DHCP packets. This could allow an unauthenticated remote attacker to cause memory to be overwritten, potentially allowing remote code execution.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ssa-373591"/>
    <published>2021-07-13T00:00:00+00:00</published>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ssa-486936</id>
    <title>SSA-486936 — SSA-486936: Authentication Vulnerability in SIMATIC ET 200SP Communication Processors</title>
    <updated>2025-10-14T00:00:00+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Affected devices do not properly authenticate configuration connections. This could allow an unauthenticated remote attacker to access the configuration data.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ssa-486936"/>
    <published>2025-10-14T00:00:00+00:00</published>
  </entry>
</feed>
