Siemens Desigo Cc vulnerabilities

4 known vulnerabilities affecting siemens/desigo_cc.

Total CVEs
4
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL3HIGH1

Vulnerabilities

Page 1 of 1
CVE-2024-23815HIGHCVSS 8.7fixed in *2025-05-13
CVE-2024-23815 [HIGH] CWE-306 CVE-2024-23815: A vulnerability has been identified in Desigo CC (All versions if access from Installed Clients to D A vulnerability has been identified in Desigo CC (All versions if access from Installed Clients to Desigo CC server is allowed from networks outside of a highly protected zone), Desigo CC (All versions if access from Installed Clients to Desigo CC server is only allowed within highly protected zones). The affected server application fails to authentic
cvelistv5nvd
CVE-2022-33139CRITICALCVSS 9.8vAll versions2022-06-21
CVE-2022-33139 [CRITICAL] CWE-603 CVE-2022-33139: A vulnerability has been identified in Cerberus DMS (All versions), Desigo CC (All versions), Desigo A vulnerability has been identified in Cerberus DMS (All versions), Desigo CC (All versions), Desigo CC Compact (All versions), SIMATIC WinCC OA V3.16 (All versions in default configuration), SIMATIC WinCC OA V3.17 (All versions in non-default configuration), SIMATIC WinCC OA V3.18 (All versions in non-default configuration). Affected applications
cvelistv5nvd
CVE-2021-31891CRITICALCVSS 10.0vAll versions with OIS Extension Module2021-09-14
CVE-2021-31891 [CRITICAL] CWE-78 CVE-2021-31891: A vulnerability has been identified in Desigo CC (All versions with OIS Extension Module), GMA-Manag A vulnerability has been identified in Desigo CC (All versions with OIS Extension Module), GMA-Manager (All versions with OIS running on Debian 9 or earlier), Operation Scheduler (All versions with OIS running on Debian 9 or earlier), Siveillance Control (All versions with OIS running on Debian 9 or earlier), Siveillance Control Pro (All versions).
cvelistv5nvd
CVE-2021-37181CRITICALCVSS 10.0v4.0v4.1+2 more2021-09-14
CVE-2021-37181 [CRITICAL] CWE-502 CVE-2021-37181: A vulnerability has been identified in Cerberus DMS V4.0 (All versions), Cerberus DMS V4.1 (All vers A vulnerability has been identified in Cerberus DMS V4.0 (All versions), Cerberus DMS V4.1 (All versions), Cerberus DMS V4.2 (All versions), Cerberus DMS V5.0 (All versions < v5.0 QU1), Desigo CC Compact V4.0 (All versions), Desigo CC Compact V4.1 (All versions), Desigo CC Compact V4.2 (All versions), Desigo CC Compact V5.0 (All versions < V5.0 QU
nvd