Siemens Simatic Rtls Locating Manager vulnerabilities
20 known vulnerabilities affecting siemens/simatic_rtls_locating_manager.
Total CVEs
20
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL4HIGH5MEDIUM11
Vulnerabilities
Page 1 of 1
CVE-2025-40746CRITICALCVSS 9.4fixed in 3.2fixed in V3.22025-08-12
CVE-2025-40746 [CRITICAL] CWE-20 CVE-2025-40746: A vulnerability has been identified in SIMATIC RTLS Locating Manager (All versions < V3.2). Affected
A vulnerability has been identified in SIMATIC RTLS Locating Manager (All versions < V3.2). Affected products do not properly validate input for a backup script. This could allow an authenticated remote attacker with high privileges in the application to execute arbitrary code with 'NT Authority/SYSTEM' privileges.
cvelistv5nvd
CVE-2025-40751MEDIUMCVSS 4.8fixed in 3.3fixed in V3.32025-08-12
CVE-2025-40751 [MEDIUM] CWE-522 CVE-2025-40751: A vulnerability has been identified in SIMATIC RTLS Locating Manager (All versions < V3.3). Affected
A vulnerability has been identified in SIMATIC RTLS Locating Manager (All versions < V3.3). Affected SIMATIC RTLS Locating Manager Report Clients do not properly protect credentials that are used to authenticate to the server. This could allow an authenticated local attacker to extract the credentials and use them to escalate their access rights fro
cvelistv5nvd
CVE-2025-30034MEDIUMCVSS 6.9fixed in 3.3fixed in V3.32025-08-12
CVE-2025-30034 [MEDIUM] CWE-617 CVE-2025-30034: A vulnerability has been identified in SIMATIC RTLS Locating Manager (All versions < V3.3). Affected
A vulnerability has been identified in SIMATIC RTLS Locating Manager (All versions < V3.3). Affected devices do not properly validate input sent to its listening port on the local loopback interface. This could allow an unauthenticated local attacker to cause a denial of service condition.
cvelistv5nvd
CVE-2024-33499CRITICALCVSS 9.4fixed in V3.0.1.12024-05-14
CVE-2024-33499 [CRITICAL] CWE-732 CVE-2024-33499: A vulnerability has been identified in SIMATIC RTLS Locating Manager (6GT2780-0DA00) (All versions <
A vulnerability has been identified in SIMATIC RTLS Locating Manager (6GT2780-0DA00) (All versions < V3.0.1.1), SIMATIC RTLS Locating Manager (6GT2780-0DA10) (All versions < V3.0.1.1), SIMATIC RTLS Locating Manager (6GT2780-0DA20) (All versions < V3.0.1.1), SIMATIC RTLS Locating Manager (6GT2780-0DA30) (All versions < V3.0.1.1), SIMATIC RTLS Locat
cvelistv5nvd
CVE-2024-30207CRITICALCVSS 10.0fixed in V3.0.1.12024-05-14
CVE-2024-30207 [CRITICAL] CWE-321 CVE-2024-30207: A vulnerability has been identified in SIMATIC RTLS Locating Manager (6GT2780-0DA00) (All versions <
A vulnerability has been identified in SIMATIC RTLS Locating Manager (6GT2780-0DA00) (All versions < V3.0.1.1), SIMATIC RTLS Locating Manager (6GT2780-0DA10) (All versions < V3.0.1.1), SIMATIC RTLS Locating Manager (6GT2780-0DA20) (All versions < V3.0.1.1), SIMATIC RTLS Locating Manager (6GT2780-0DA30) (All versions < V3.0.1.1), SIMATIC RTLS Locat
cvelistv5nvd
CVE-2024-30209CRITICALCVSS 9.0fixed in V3.0.1.12024-05-14
CVE-2024-30209 [CRITICAL] CWE-319 CVE-2024-30209: A vulnerability has been identified in SIMATIC RTLS Locating Manager (6GT2780-0DA00) (All versions <
A vulnerability has been identified in SIMATIC RTLS Locating Manager (6GT2780-0DA00) (All versions < V3.0.1.1), SIMATIC RTLS Locating Manager (6GT2780-0DA10) (All versions < V3.0.1.1), SIMATIC RTLS Locating Manager (6GT2780-0DA20) (All versions < V3.0.1.1), SIMATIC RTLS Locating Manager (6GT2780-0DA30) (All versions < V3.0.1.1), SIMATIC RTLS Locat
cvelistv5nvd
CVE-2024-30206HIGHCVSS 8.8fixed in V3.0.1.12024-05-14
CVE-2024-30206 [HIGH] CWE-494 CVE-2024-30206: A vulnerability has been identified in SIMATIC RTLS Locating Manager (6GT2780-0DA00) (All versions <
A vulnerability has been identified in SIMATIC RTLS Locating Manager (6GT2780-0DA00) (All versions < V3.0.1.1), SIMATIC RTLS Locating Manager (6GT2780-0DA10) (All versions < V3.0.1.1), SIMATIC RTLS Locating Manager (6GT2780-0DA20) (All versions < V3.0.1.1), SIMATIC RTLS Locating Manager (6GT2780-0DA30) (All versions < V3.0.1.1), SIMATIC RTLS Locating
cvelistv5nvd
CVE-2024-33495HIGHCVSS 7.1fixed in V3.0.1.12024-05-14
CVE-2024-33495 [HIGH] CWE-770 CVE-2024-33495: A vulnerability has been identified in SIMATIC RTLS Locating Manager (6GT2780-0DA00) (All versions <
A vulnerability has been identified in SIMATIC RTLS Locating Manager (6GT2780-0DA00) (All versions < V3.0.1.1), SIMATIC RTLS Locating Manager (6GT2780-0DA10) (All versions < V3.0.1.1), SIMATIC RTLS Locating Manager (6GT2780-0DA20) (All versions < V3.0.1.1), SIMATIC RTLS Locating Manager (6GT2780-0DA30) (All versions < V3.0.1.1), SIMATIC RTLS Locating
cvelistv5nvd
CVE-2024-33497MEDIUMCVSS 4.8fixed in V3.0.1.12024-05-14
CVE-2024-33497 [MEDIUM] CWE-522 CVE-2024-33497: A vulnerability has been identified in SIMATIC RTLS Locating Manager (6GT2780-0DA00) (All versions <
A vulnerability has been identified in SIMATIC RTLS Locating Manager (6GT2780-0DA00) (All versions < V3.0.1.1), SIMATIC RTLS Locating Manager (6GT2780-0DA10) (All versions < V3.0.1.1), SIMATIC RTLS Locating Manager (6GT2780-0DA20) (All versions < V3.0.1.1), SIMATIC RTLS Locating Manager (6GT2780-0DA30) (All versions < V3.0.1.1), SIMATIC RTLS Locatin
cvelistv5nvd
CVE-2024-33494MEDIUMCVSS 6.9fixed in V3.0.1.12024-05-14
CVE-2024-33494 [MEDIUM] CWE-345 CVE-2024-33494: A vulnerability has been identified in SIMATIC RTLS Locating Manager (6GT2780-0DA00) (All versions <
A vulnerability has been identified in SIMATIC RTLS Locating Manager (6GT2780-0DA00) (All versions < V3.0.1.1), SIMATIC RTLS Locating Manager (6GT2780-0DA10) (All versions < V3.0.1.1), SIMATIC RTLS Locating Manager (6GT2780-0DA20) (All versions < V3.0.1.1), SIMATIC RTLS Locating Manager (6GT2780-0DA30) (All versions < V3.0.1.1), SIMATIC RTLS Locatin
cvelistv5nvd
CVE-2024-33496MEDIUMCVSS 4.8fixed in V3.0.1.12024-05-14
CVE-2024-33496 [MEDIUM] CWE-522 CVE-2024-33496: A vulnerability has been identified in SIMATIC RTLS Locating Manager (6GT2780-0DA00) (All versions <
A vulnerability has been identified in SIMATIC RTLS Locating Manager (6GT2780-0DA00) (All versions < V3.0.1.1), SIMATIC RTLS Locating Manager (6GT2780-0DA10) (All versions < V3.0.1.1), SIMATIC RTLS Locating Manager (6GT2780-0DA20) (All versions < V3.0.1.1), SIMATIC RTLS Locating Manager (6GT2780-0DA30) (All versions < V3.0.1.1), SIMATIC RTLS Locatin
cvelistv5nvd
CVE-2024-33583MEDIUMCVSS 4.8fixed in V3.0.1.12024-05-14
CVE-2024-33583 [MEDIUM] CWE-912 CVE-2024-33583: A vulnerability has been identified in SIMATIC RTLS Locating Manager (6GT2780-0DA00) (All versions <
A vulnerability has been identified in SIMATIC RTLS Locating Manager (6GT2780-0DA00) (All versions < V3.0.1.1), SIMATIC RTLS Locating Manager (6GT2780-0DA10) (All versions < V3.0.1.1), SIMATIC RTLS Locating Manager (6GT2780-0DA20) (All versions < V3.0.1.1), SIMATIC RTLS Locating Manager (6GT2780-0DA30) (All versions < V3.0.1.1), SIMATIC RTLS Locatin
cvelistv5nvd
CVE-2024-30208MEDIUMCVSS 5.2fixed in V3.0.1.12024-05-14
CVE-2024-30208 [MEDIUM] CWE-732 CVE-2024-30208: A vulnerability has been identified in SIMATIC RTLS Locating Manager (6GT2780-0DA00) (All versions <
A vulnerability has been identified in SIMATIC RTLS Locating Manager (6GT2780-0DA00) (All versions < V3.0.1.1), SIMATIC RTLS Locating Manager (6GT2780-0DA10) (All versions < V3.0.1.1), SIMATIC RTLS Locating Manager (6GT2780-0DA20) (All versions < V3.0.1.1), SIMATIC RTLS Locating Manager (6GT2780-0DA30) (All versions < V3.0.1.1), SIMATIC RTLS Locatin
cvelistv5nvd
CVE-2024-33498MEDIUMCVSS 6.9fixed in V3.0.1.12024-05-14
CVE-2024-33498 [MEDIUM] CWE-400 CVE-2024-33498: A vulnerability has been identified in SIMATIC RTLS Locating Manager (6GT2780-0DA00) (All versions <
A vulnerability has been identified in SIMATIC RTLS Locating Manager (6GT2780-0DA00) (All versions < V3.0.1.1), SIMATIC RTLS Locating Manager (6GT2780-0DA10) (All versions < V3.0.1.1), SIMATIC RTLS Locating Manager (6GT2780-0DA20) (All versions < V3.0.1.1), SIMATIC RTLS Locating Manager (6GT2780-0DA30) (All versions < V3.0.1.1), SIMATIC RTLS Locatin
cvelistv5nvd
CVE-2020-10052MEDIUMCVSS 5.5fixed in 2.12vAll versions < V2.122021-11-09
CVE-2020-10052 [MEDIUM] CWE-532 CVE-2020-10052: A vulnerability has been identified in SIMATIC RTLS Locating Manager (All versions < V2.12). The aff
A vulnerability has been identified in SIMATIC RTLS Locating Manager (All versions < V2.12). The affected application writes sensitive data, such as usernames and passwords in log files. A local attacker with access to the log files could use this information to launch further attacks.
cvelistv5nvd
CVE-2020-10053MEDIUMCVSS 5.5fixed in 2.12vAll versions < V2.122021-11-09
CVE-2020-10053 [MEDIUM] CWE-312 CVE-2020-10053: A vulnerability has been identified in SIMATIC RTLS Locating Manager (All versions < V2.12). The aff
A vulnerability has been identified in SIMATIC RTLS Locating Manager (All versions < V2.12). The affected application writes sensitive data, such as database credentials in configuration files. A local attacker with access to the configuration files could use this information to launch further attacks.
cvelistv5nvd
CVE-2020-10054MEDIUMCVSS 5.5fixed in 2.12vAll versions < V2.122021-11-09
CVE-2020-10054 [MEDIUM] CWE-20 CVE-2020-10054: A vulnerability has been identified in SIMATIC RTLS Locating Manager (All versions < V2.12). The aff
A vulnerability has been identified in SIMATIC RTLS Locating Manager (All versions < V2.12). The affected application does not properly handle the import of large configuration files. A local attacker could import a specially crafted file which could lead to a denial-of-service condition of the application service.
cvelistv5nvd
CVE-2020-10051HIGHCVSS 7.8fixed in 2.10.22020-09-09
CVE-2020-10051 [HIGH] CWE-428 CVE-2020-10051: A vulnerability has been identified in SIMATIC RTLS Locating Manager (All versions < V2.10.2). Multi
A vulnerability has been identified in SIMATIC RTLS Locating Manager (All versions < V2.10.2). Multiple services of the affected application are executed with SYSTEM privileges while the call path is not quoted. This could allow a local attacker to inject arbitrary commands that are execeuted instead of the legitimate service.
nvd
CVE-2020-10050HIGHCVSS 7.8fixed in 2.10.22020-09-09
CVE-2020-10050 [HIGH] CWE-276 CVE-2020-10050: A vulnerability has been identified in SIMATIC RTLS Locating Manager (All versions < V2.10.2). The d
A vulnerability has been identified in SIMATIC RTLS Locating Manager (All versions < V2.10.2). The directory of service executables of the affected application could allow a local attacker to include arbitrary commands that are executed with SYSTEM privileges when the system restarts.
nvd
CVE-2020-10049HIGHCVSS 7.3fixed in 2.10.22020-09-09
CVE-2020-10049 [HIGH] CWE-276 CVE-2020-10049: A vulnerability has been identified in SIMATIC RTLS Locating Manager (All versions < V2.10.2). The s
A vulnerability has been identified in SIMATIC RTLS Locating Manager (All versions < V2.10.2). The start-stop scripts for the services of the affected application could allow a local attacker to include arbitrary commands that are executed when services are started or stopped interactively by system administrators.
nvd