Siemens Sinec Nms vulnerabilities

58 known vulnerabilities affecting siemens/sinec_nms.

Total CVEs
58
CISA KEV
1
actively exploited
Public exploits
1
Exploited in wild
1
Severity breakdown
CRITICAL8HIGH40MEDIUM10

Vulnerabilities

Page 1 of 3
CVE-2026-25655HIGHCVSS 8.5fixed in 4.0v4.0+1 more2026-02-10
CVE-2026-25655 [HIGH] CWE-427 CVE-2026-25655: A vulnerability has been identified in SINEC NMS (All versions < V4.0 SP2). The affected application A vulnerability has been identified in SINEC NMS (All versions < V4.0 SP2). The affected application permits improper modification of a configuration file by a low-privileged user. This could allow an attacker to load malicious DLLs, potentially leading to arbitrary code execution with administrative privilege.(ZDI-CAN-28107)
cvelistv5nvd
CVE-2026-25656HIGHCVSS 8.5fixed in *2026-02-10
CVE-2026-25656 [HIGH] CWE-427 CVE-2026-25656: A vulnerability has been identified in SINEC NMS (All versions), User Management Component (UMC) (Al A vulnerability has been identified in SINEC NMS (All versions), User Management Component (UMC) (All versions < V2.15.2.1). The affected application permits improper modification of a configuration file by a low-privileged user. This could allow an attacker to load malicious DLLs, potentially leading to arbitrary code execution with SYSTEM privileges
cvelistv5nvd
CVE-2025-40755HIGHCVSS 8.7fixed in 4.0v4.0+1 more2025-10-14
CVE-2025-40755 [HIGH] CWE-89 CVE-2025-40755: A vulnerability has been identified in SINEC NMS (All versions < V4.0 SP1). Affected applications ar A vulnerability has been identified in SINEC NMS (All versions < V4.0 SP1). Affected applications are vulnerable to SQL injection through getTotalAndFilterCounts endpoint. An authenticated low privileged attacker could exploit to insert data and achieve privilege escalation. (ZDI-CAN-26570)
cvelistv5nvd
CVE-2025-30033HIGHCVSS 8.5fixed in V4.02025-08-12
CVE-2025-30033 [HIGH] CWE-427 CVE-2025-30033: The affected setup component is vulnerable to DLL hijacking. This could allow an attacker to execute The affected setup component is vulnerable to DLL hijacking. This could allow an attacker to execute arbitrary code when a legitimate user installs an application that uses the affected setup component.
cvelistv5nvd
CVE-2025-40736CRITICALCVSS 9.3fixed in 4.0fixed in V4.02025-07-08
CVE-2025-40736 [CRITICAL] CWE-306 CVE-2025-40736: A vulnerability has been identified in SINEC NMS (All versions < V4.0). The affected application exp A vulnerability has been identified in SINEC NMS (All versions < V4.0). The affected application exposes an endpoint that allows an unauthorized modification of administrative credentials. This could allow an unauthenticated attacker to reset the superadmin password and gain full control of the application (ZDI-CAN-26569).
cvelistv5nvd
CVE-2025-40738HIGHCVSS 8.7fixed in 4.0fixed in V4.02025-07-08
CVE-2025-40738 [HIGH] CWE-22 CVE-2025-40738: A vulnerability has been identified in SINEC NMS (All versions < V4.0). The affected application doe A vulnerability has been identified in SINEC NMS (All versions < V4.0). The affected application does not properly validate file paths when extracting uploaded ZIP files. This could allow an attacker to write arbitrary files to restricted locations and potentially execute code with elevated privileges (ZDI-CAN-26572).
cvelistv5nvd
CVE-2025-40737HIGHCVSS 8.7fixed in 4.0fixed in V4.02025-07-08
CVE-2025-40737 [HIGH] CWE-22 CVE-2025-40737: A vulnerability has been identified in SINEC NMS (All versions < V4.0). The affected application doe A vulnerability has been identified in SINEC NMS (All versions < V4.0). The affected application does not properly validate file paths when extracting uploaded ZIP files. This could allow an attacker to write arbitrary files to restricted locations and potentially execute code with elevated privileges (ZDI-CAN-26571).
cvelistv5nvd
CVE-2025-40735HIGHCVSS 8.7fixed in 4.0fixed in V4.02025-07-08
CVE-2025-40735 [HIGH] CWE-89 CVE-2025-40735: A vulnerability has been identified in SINEC NMS (All versions < V4.0). The affected devices are vul A vulnerability has been identified in SINEC NMS (All versions < V4.0). The affected devices are vulnerable to SQL injection. This could allow an unauthenticated remote attacker to execute arbitrary SQL queries on the server database.
cvelistv5nvd
CVE-2025-30175HIGHCVSS 8.7fixed in 4.0fixed in V4.02025-05-13
CVE-2025-30175 [HIGH] CWE-787 CVE-2025-30175: A vulnerability has been identified in SIMATIC PCS neo V4.1 (All versions), SIMATIC PCS neo V5.0 (Al A vulnerability has been identified in SIMATIC PCS neo V4.1 (All versions), SIMATIC PCS neo V5.0 (All versions), SINEC NMS (All versions < V4.0), SINEMA Remote Connect (All versions), Totally Integrated Automation Portal (TIA Portal) V17 (All versions), Totally Integrated Automation Portal (TIA Portal) V18 (All versions), Totally Integrated Automation
cvelistv5nvd
CVE-2025-30176HIGHCVSS 8.7fixed in 4.0fixed in V4.02025-05-13
CVE-2025-30176 [HIGH] CWE-125 CVE-2025-30176: A vulnerability has been identified in SIMATIC PCS neo V4.1 (All versions), SIMATIC PCS neo V5.0 (Al A vulnerability has been identified in SIMATIC PCS neo V4.1 (All versions), SIMATIC PCS neo V5.0 (All versions), SINEC NMS (All versions < V4.0), SINEMA Remote Connect (All versions), Totally Integrated Automation Portal (TIA Portal) V17 (All versions), Totally Integrated Automation Portal (TIA Portal) V18 (All versions), Totally Integrated Automation
cvelistv5nvd
CVE-2025-30174HIGHCVSS 8.7fixed in 4.0fixed in V4.02025-05-13
CVE-2025-30174 [HIGH] CWE-125 CVE-2025-30174: A vulnerability has been identified in SIMATIC PCS neo V4.1 (All versions), SIMATIC PCS neo V5.0 (Al A vulnerability has been identified in SIMATIC PCS neo V4.1 (All versions), SIMATIC PCS neo V5.0 (All versions), SINEC NMS (All versions < V4.0), SINEMA Remote Connect (All versions), Totally Integrated Automation Portal (TIA Portal) V17 (All versions), Totally Integrated Automation Portal (TIA Portal) V18 (All versions), Totally Integrated Automation
cvelistv5nvd
CVE-2024-49775CRITICALCVSS 9.3fixed in *2024-12-16
CVE-2024-49775 [CRITICAL] CWE-122 CVE-2024-49775: A vulnerability has been identified in Opcenter Execution Foundation (All versions < V2501.0001), Op A vulnerability has been identified in Opcenter Execution Foundation (All versions < V2501.0001), Opcenter Intelligence (All versions < V2501.0001), Opcenter Quality (All versions < V2512), Opcenter RDnL (All versions < V2410), SIMATIC PCS neo V4.0 (All versions), SIMATIC PCS neo V4.1 (All versions < V4.1 Update 3), SIMATIC PCS neo V5.0 (All versi
cvelistv5nvd
CVE-2024-47808HIGHCVSS 8.3fixed in 3.0v3.0+1 more2024-11-12
CVE-2024-47808 [HIGH] CWE-732 CVE-2024-47808: A vulnerability has been identified in SINEC NMS (All versions < V3.0 SP1). The affected application A vulnerability has been identified in SINEC NMS (All versions < V3.0 SP1). The affected application contains a database function, that does not properly restrict the permissions of users to write to the filesystem of the host system. This could allow an authenticated medium-privileged attacker to write arbitrary content to any location in the filesys
cvelistv5nvd
CVE-2024-33698CRITICALCVSS 9.3fixed in *2024-09-10
CVE-2024-33698 [CRITICAL] CWE-122 CVE-2024-33698: A vulnerability has been identified in Opcenter Quality (All versions < V2406), Opcenter RDnL (All v A vulnerability has been identified in Opcenter Quality (All versions < V2406), Opcenter RDnL (All versions < V2410), SIMATIC PCS neo V4.0 (All versions), SIMATIC PCS neo V4.1 (All versions < V4.1 Update 2), SIMATIC PCS neo V5.0 (All versions < V5.0 Update 1), SINEC NMS (All versions), SINEMA Remote Connect Client (All versions < V3.2 SP3), Totall
cvelistv5nvd
CVE-2024-41940CRITICALCVSS 9.4fixed in 3.0fixed in V3.02024-08-13
CVE-2024-41940 [CRITICAL] CWE-20 CVE-2024-41940: A vulnerability has been identified in SINEC NMS (All versions < V3.0). The affected application doe A vulnerability has been identified in SINEC NMS (All versions < V3.0). The affected application does not properly validate user input to a privileged command queue. This could allow an authenticated attacker to execute OS commands with elevated privileges.
cvelistv5nvd
CVE-2024-36398HIGHCVSS 8.5fixed in 3.0fixed in V3.02024-08-13
CVE-2024-36398 [HIGH] CWE-250 CVE-2024-36398: A vulnerability has been identified in SINEC NMS (All versions < V3.0). The affected application exe A vulnerability has been identified in SINEC NMS (All versions < V3.0). The affected application executes a subset of its services as `NT AUTHORITY\SYSTEM`. This could allow a local attacker to execute operating system commands with elevated privileges.
cvelistv5nvd
CVE-2024-41939HIGHCVSS 8.7fixed in 3.0fixed in V3.02024-08-13
CVE-2024-41939 [HIGH] CWE-863 CVE-2024-41939: A vulnerability has been identified in SINEC NMS (All versions < V3.0). The affected application doe A vulnerability has been identified in SINEC NMS (All versions < V3.0). The affected application does not properly enforce authorization checks. This could allow an authenticated attacker to bypass the checks and elevate their privileges on the application.
cvelistv5nvd
CVE-2024-41938MEDIUMCVSS 5.1fixed in 3.0fixed in V3.02024-08-13
CVE-2024-41938 [MEDIUM] CWE-22 CVE-2024-41938: A vulnerability has been identified in SINEC NMS (All versions < V3.0). The importCertificate functi A vulnerability has been identified in SINEC NMS (All versions < V3.0). The importCertificate function of the SINEC NMS Control web application contains a path traversal vulnerability. This could allow an authenticated attacker it to delete arbitrary certificate files on the drive SINEC NMS is installed on.
cvelistv5nvd
CVE-2024-41941MEDIUMCVSS 5.3fixed in 3.0fixed in V3.02024-08-13
CVE-2024-41941 [MEDIUM] CWE-863 CVE-2024-41941: A vulnerability has been identified in SINEC NMS (All versions < V3.0). The affected application doe A vulnerability has been identified in SINEC NMS (All versions < V3.0). The affected application does not properly enforce authorization checks. This could allow an authenticated attacker to bypass the checks and modify settings in the application without authorization.
cvelistv5nvd
CVE-2023-46280HIGHCVSS 8.2fixed in V3.0fixed in V3.0 SP12024-05-14
CVE-2023-46280 [HIGH] CWE-125 CVE-2023-46280: A vulnerability has been identified in Security Configuration Tool (SCT) (All versions), SIMATIC Aut A vulnerability has been identified in Security Configuration Tool (SCT) (All versions), SIMATIC Automation Tool (All versions < V5.0 SP2), SIMATIC BATCH V9.1 (All versions < V9.1 SP2 Upd5), SIMATIC NET PC Software V16 (All versions < V16 Update 8), SIMATIC NET PC Software V17 (All versions), SIMATIC NET PC Software V18 (All versions < V18 SP1), SIMAT
cvelistv5nvd