Browse all 1674 CVE security advisories affecting Siemens. AI-powered Chinese analysis, POCs, and references for each vulnerability.
Siemens operates as a global industrial technology conglomerate, primarily manufacturing automation systems, power infrastructure, and medical imaging devices. Its extensive portfolio of programmable logic controllers and human-machine interfaces frequently exposes critical vulnerabilities, with recorded Common Vulnerabilities and Exposures numbering in the thousands. Historically, these systems have suffered from remote code execution flaws, buffer overflows, and insecure default configurations that allow unauthorized privilege escalation. Notable incidents include the Stuxnet worm, which exploited Siemens PLCs to disrupt Iranian nuclear centrifuges, highlighting the severe physical consequences of digital compromise in industrial control environments. The company has since strengthened its security posture through firmware updates and secure-by-design principles, yet legacy devices remain vulnerable due to long operational lifecycles and limited patching capabilities in isolated networks.
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2024-41986 | Siemens多款产品 加密问题漏洞 — SmartClient modules Opcenter QL Home (SC) CWE-327 | 6.4 | Medium | 2025-08-12 |
| CVE-2024-41985 | Siemens多款产品 代码问题漏洞 — SmartClient modules Opcenter QL Home (SC) CWE-613 | 2.6 | Low | 2025-08-12 |
| CVE-2024-41984 | Siemens多款产品 安全漏洞 — SmartClient modules Opcenter QL Home (SC) CWE-209 | 2.6 | Low | 2025-08-12 |
| CVE-2024-41983 | Siemens SmartClient modules Opcenter QL Home 安全漏洞 — SmartClient modules Opcenter QL Home (SC) CWE-209 | 3.5 | Low | 2025-08-12 |
| CVE-2024-41982 | Siemens多款产品 安全漏洞 — SmartClient modules Opcenter QL Home (SC) CWE-311 | 4.8 | Medium | 2025-08-12 |
| CVE-2024-41980 | Siemens SmartClient modules Opcenter QL Home 安全漏洞 — SmartClient modules Opcenter QL Home (SC) CWE-311 | 3.1 | Low | 2025-08-12 |
| CVE-2024-41979 | Siemens多款产品 安全漏洞 — SmartClient modules Opcenter QL Home (SC) CWE-863 | 7.1 | High | 2025-08-12 |
| CVE-2025-41224 | Siemens多款产品 安全漏洞 — RUGGEDCOM RMC8388 V5.X CWE-693 | 8.8 | High | 2025-07-08 |
| CVE-2025-41223 | Siemens多款产品 加密问题漏洞 — RUGGEDCOM i800 CWE-327 | 4.8 | Medium | 2025-07-08 |
| CVE-2025-41222 | Siemens多款产品 安全漏洞 — RUGGEDCOM i800 CWE-755 | 5.3 | Medium | 2025-07-08 |
| CVE-2025-40742 | Siemens多款产品 安全漏洞 — SIPROTEC 5 6MD84 (CP300) CWE-598 | 5.3 | Medium | 2025-07-08 |
| CVE-2025-40741 | Siemens Solid Edge SE2025 安全漏洞 — Solid Edge SE2025 CWE-121 | 7.8 | High | 2025-07-08 |
| CVE-2025-40740 | Siemens Solid Edge SE2025 缓冲区错误漏洞 — Solid Edge SE2025 CWE-125 | 7.8 | High | 2025-07-08 |
| CVE-2025-40739 | Siemens Solid Edge SE2025 缓冲区错误漏洞 — Solid Edge SE2025 CWE-125 | 7.8 | High | 2025-07-08 |
| CVE-2025-40738 | Siemens SINEC NMS 路径遍历漏洞 — SINEC NMS CWE-22 | 8.8 | High | 2025-07-08 |
| CVE-2025-40737 | Siemens SINEC NMS 路径遍历漏洞 — SINEC NMS CWE-22 | 8.8 | High | 2025-07-08 |
| CVE-2025-40736 | Siemens SINEC NMS 访问控制错误漏洞 — SINEC NMS CWE-306 | 9.8 | Critical | 2025-07-08 |
| CVE-2025-40735 | Siemens SINEC NMS SQL注入漏洞 — SINEC NMS CWE-89 | 8.8 | High | 2025-07-08 |
| CVE-2025-40593 | Siemens SIMATIC CN 4100 输入验证错误漏洞 — SIMATIC CN 4100 CWE-20 | 6.5 | Medium | 2025-07-08 |
| CVE-2025-27127 | Siemens多款产品 代码问题漏洞 — TIA Project-Server CWE-434 | 4.3 | Medium | 2025-07-08 |
| CVE-2025-23365 | Siemens TIA Administrator 访问控制错误漏洞 — TIA Administrator CWE-284 | 7.8 | High | 2025-07-08 |
| CVE-2025-23364 | Siemens TIA Administrator 数据伪造问题漏洞 — TIA Administrator CWE-347 | 6.2 | Medium | 2025-07-08 |
| CVE-2024-31854 | Siemens SICAM TOOLBOX II 信任管理问题漏洞 — SICAM TOOLBOX II CWE-295 | 8.1 | High | 2025-07-08 |
| CVE-2024-31853 | Siemens SICAM TOOLBOX II 信任管理问题漏洞 — SICAM TOOLBOX II CWE-295 | 8.1 | High | 2025-07-08 |
| CVE-2023-52236 | Siemens多款产品 加密问题漏洞 — RUGGEDCOM i800 CWE-327 | 7.0 | High | 2025-07-08 |
| CVE-2025-40592 | Mendix Studio Pro 路径遍历漏洞 — Mendix Studio Pro 10 CWE-22 | 6.1 | Medium | 2025-06-12 |
| CVE-2025-40591 | Siemens多款产品 安全漏洞 — RUGGEDCOM ROX MX5000 CWE-602 | 7.7 | High | 2025-06-10 |
| CVE-2025-40585 | Siemens Energy Services 安全漏洞 — Energy Services CWE-276 | 9.9 | Critical | 2025-06-10 |
| CVE-2025-40569 | Siemens多款产品 竞争条件问题漏洞 — RUGGEDCOM RST2428P CWE-362 | 4.8 | Medium | 2025-06-10 |
| CVE-2025-40568 | Siemens多款产品 安全漏洞 — RUGGEDCOM RST2428P CWE-863 | 4.3 | Medium | 2025-06-10 |
This page lists every published CVE security advisory associated with Siemens. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.