Browse all 1603 CVE security advisories affecting Siemens. AI-powered Chinese analysis, POCs, and references for each vulnerability.
Siemens operates as a global industrial technology conglomerate, primarily manufacturing automation systems, power infrastructure, and medical imaging devices. Its extensive portfolio of programmable logic controllers and human-machine interfaces frequently exposes critical vulnerabilities, with recorded Common Vulnerabilities and Exposures numbering in the thousands. Historically, these systems have suffered from remote code execution flaws, buffer overflows, and insecure default configurations that allow unauthorized privilege escalation. Notable incidents include the Stuxnet worm, which exploited Siemens PLCs to disrupt Iranian nuclear centrifuges, highlighting the severe physical consequences of digital compromise in industrial control environments. The company has since strengthened its security posture through firmware updates and secure-by-design principles, yet legacy devices remain vulnerable due to long operational lifecycles and limited patching capabilities in isolated networks.
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2019-18304 | Siemens SPPA-T3000 输入验证错误漏洞 — SPPA-T3000 MS3000 Migration ServerCWE-190 | 7.5 | - | 2019-12-12 |
| CVE-2019-18305 | Siemens SPPA-T3000 输入验证错误漏洞 — SPPA-T3000 MS3000 Migration ServerCWE-190 | 7.5 | - | 2019-12-12 |
| CVE-2019-18306 | Siemens SPPA-T3000 缓冲区错误漏洞 — SPPA-T3000 MS3000 Migration ServerCWE-125 | 7.5 | - | 2019-12-12 |
| CVE-2019-13947 | Siemens SiNVR 3 安全漏洞 — Control Center Server (CCS)CWE-317 | 4.9 | Medium | 2019-12-12 |
| CVE-2019-10923 | 多款Siemens产品资源管理错误漏洞 — Development/Evaluation Kits for PROFINET IO: DK Standard Ethernet ControllerCWE-400 | 7.5 | High | 2019-10-10 |
| CVE-2019-10936 | 多款Siemens产品资源管理错误漏洞 — Development/Evaluation Kits for PROFINET IO: DK Standard Ethernet ControllerCWE-400 | 7.5 | High | 2019-10-10 |
| CVE-2019-10929 | 多款Siemens产品加密问题漏洞 — SIMATIC CP 1626CWE-327 | 5.9 | - | 2019-08-13 |
| CVE-2019-10942 | Siemens SCALANCE X-200IRT 资源管理错误漏洞 — SCALANCE X-200 switch family (incl. SIPLUS NET variants)CWE-400 | 7.5 | - | 2019-08-13 |
| CVE-2019-10943 | 多款Siemens产品数据伪造问题漏洞 — SIMATIC Drive Controller familyCWE-353 | - | - | 2019-08-13 |
| CVE-2019-10925 | Siemens SIMATIC Ident MV420和Siemens SIMATIC Ident MV440 访问控制错误漏洞 — SIMATIC MV400 familyCWE-284 | 7.1 | - | 2019-06-12 |
| CVE-2019-10926 | Siemens SIMATIC Ident MV420和Siemens SIMATIC Ident MV440 加密问题漏洞 — SIMATIC MV400 familyCWE-319 | 5.3 | - | 2019-06-12 |
| CVE-2019-6567 | Siemens Scalance X-300 信任管理问题漏洞 — SCALANCE X-200 switch family (incl. SIPLUS NET variants)CWE-257 | 9.1 | - | 2019-06-12 |
| CVE-2019-10919 | Siemens LOGO!8 BM 访问控制错误漏洞 — LOGO! 8 BM (incl. SIPLUS variants)CWE-306 | 9.8 | - | 2019-05-14 |
| CVE-2019-10920 | Siemens LOGO!8 BM 信任管理问题漏洞 — LOGO! 8 BM (incl. SIPLUS variants)CWE-321 | 7.5 | - | 2019-05-14 |
| CVE-2019-10921 | Siemens LOGO!8 BM 信任管理问题漏洞 — LOGO! 8 BM (incl. SIPLUS variants)CWE-256 | 7.5 | - | 2019-05-14 |
| CVE-2019-10924 | Siemens LOGO! Soft Comfort 代码问题漏洞 — LOGO! Soft ComfortCWE-502 | 7.8 | - | 2019-05-14 |
| CVE-2019-6568 | Siemens SIMATIC S7-1500 CPU 缓冲区错误漏洞 — SIMATIC CP 1604CWE-125 | 7.5 | High | 2019-04-17 |
| CVE-2019-6570 | Siemens SINEMA Remote Connect Server 权限许可和访问控制问题漏洞 — SINEMA Remote Connect ServerCWE-280 | 8.1 | - | 2019-04-17 |
| CVE-2019-6575 | 多款Siemens产品输入验证错误漏洞 — SIMATIC CP 443-1 OPC UACWE-248 | 7.5 | - | 2019-04-17 |
| CVE-2018-13808 | Siemens CP1604和CP1616 信息泄露漏洞 — CP 1604 | 9.1 | - | 2019-04-17 |
| CVE-2018-13809 | Siemens CP1604和CP1616 跨站脚本漏洞 — CP 1604 | 6.1 | - | 2019-04-17 |
| CVE-2018-13810 | Siemens CP1604和CP1616 跨站请求伪造漏洞 — CP 1604 | 6.5 | - | 2019-04-17 |
| CVE-2018-16558 | Siemens SIMATIC S7-1500 CPU 输入验证错误漏洞 — SIMATIC S7-1500 CPU | 7.5 | - | 2019-04-17 |
| CVE-2018-16559 | Siemens SIMATIC S7-1500 CPU 输入验证错误漏洞 — SIMATIC S7-1500 CPU | 7.5 | - | 2019-04-17 |
| CVE-2018-16561 | Siemens SIMATIC S7-300 CPUs 资源管理错误漏洞 — SIMATIC S7-300 CPUs | 7.5 | - | 2019-04-17 |
| CVE-2019-6569 | 多款Siemens产品安全漏洞 — SCALANCE X204-2CWE-440 | - | - | 2019-03-26 |
| CVE-2018-16563 | Siemens EN100 Ethernet Communication module和SIPROTEC 5 Relays 安全漏洞 — Firmware variant IEC 61850 for EN100 Ethernet module | 5.9 | - | 2019-03-21 |
| CVE-2018-16556 | Siemens SIMATIC S7-400 输入验证错误漏洞 — SIMATIC S7-400 CPU 412-1 DP V7CWE-20 | 7.5 | High | 2018-12-13 |
| CVE-2018-16557 | Siemens SIMATIC S7-400 数据伪造问题漏洞 — SIMATIC S7-400 CPU 412-1 DP V7CWE-347 | 8.2 | High | 2018-12-13 |
| CVE-2018-4833 | 多款Siemens产品输入验证错误漏洞 — RFID 181EIPCWE-122 | 8.8 | - | 2018-06-14 |
This page lists every published CVE security advisory associated with Siemens. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.