Search

Find a vulnerability

Search criteria

    2 vulnerabilities found for simatic_pcs_neo by siemens

    CVE-2024-33698 (GCVE-0-2024-33698)

    Vulnerability from cvelistv5 – Published: 2024-09-10 09:36 – Updated: 2025-10-14 09:15
    VLAI
    Summary
    A vulnerability has been identified in Opcenter Quality (All versions < V2406), Opcenter RDnL (All versions < V2410), SIMATIC PCS neo V4.0 (All versions), SIMATIC PCS neo V4.1 (All versions < V4.1 Update 2), SIMATIC PCS neo V5.0 (All versions < V5.0 Update 1), SINEC NMS (All versions), SINEMA Remote Connect Client (All versions < V3.2 SP3), Totally Integrated Automation Portal (TIA Portal) V16 (All versions), Totally Integrated Automation Portal (TIA Portal) V17 (All versions < V17 Update 8), Totally Integrated Automation Portal (TIA Portal) V18 (All versions < V18 Update 5), Totally Integrated Automation Portal (TIA Portal) V19 (All versions < V19 Update 3). Affected products contain a heap-based buffer overflow vulnerability in the integrated UMC component. This could allow an unauthenticated remote attacker to execute arbitrary code.
    SSVC
    Exploitation: none Automatable: yes Technical Impact: total
    CISA Coordinator · CISA-ADP (v2.0.3)
    Decision recorded 2024-09-10 17:32 UTC
    CWE
    • CWE-122 - Heap-based Buffer Overflow
    Impacted products
    Vendor Product Version
    Siemens Opcenter Quality Affected: 0 , < V2406 (custom)
    Create a notification for this product.
    Siemens Opcenter RDnL Affected: 0 , < V2410 (custom)
    Create a notification for this product.
    Siemens SIMATIC PCS neo V4.0 Affected: 0 , < * (custom)
    Create a notification for this product.
    Siemens SIMATIC PCS neo V4.1 Affected: 0 , < V4.1 Update 2 (custom)
    Create a notification for this product.
    Siemens SIMATIC PCS neo V5.0 Affected: 0 , < V5.0 Update 1 (custom)
    Create a notification for this product.
    Siemens SINEC NMS Affected: 0 , < * (custom)
    Create a notification for this product.
    Siemens SINEMA Remote Connect Client Affected: 0 , < V3.2 SP3 (custom)
    Create a notification for this product.
    Siemens Totally Integrated Automation Portal (TIA Portal) V16 Affected: 0 , < * (custom)
    Create a notification for this product.
    Siemens Totally Integrated Automation Portal (TIA Portal) V17 Affected: 0 , < V17 Update 8 (custom)
    Create a notification for this product.
    Siemens Totally Integrated Automation Portal (TIA Portal) V18 Affected: 0 , < V18 Update 5 (custom)
    Create a notification for this product.
    Siemens Totally Integrated Automation Portal (TIA Portal) V19 Affected: 0 , < V19 Update 3 (custom)
    Create a notification for this product.
    siemens simatic_pcs_neo Affected: 4.0 , < 4.1_update_2 (custom)
        cpe:2.3:a:siemens:simatic_pcs_neo:*:*:*:*:*:*:*:*
    Create a notification for this product.
    siemens simatic_information_server Affected: 0 , < * (custom)
        cpe:2.3:a:siemens:totally_integrated_automation_portal:16:*:*:*:*:*:*:*
        cpe:2.3:a:siemens:totally_integrated_automation_portal:18:*:*:*:*:*:*:*
        cpe:2.3:a:siemens:totally_integrated_automation_portal:19:*:*:*:*:*:*:*
        cpe:2.3:a:siemens:sinec_nms:*:*:*:*:*:*:*:*
        cpe:2.3:a:siemens:simatic_pcs_neo:5.0:*:*:*:*:*:*:*
        cpe:2.3:a:siemens:simatic_information_server:2022:*:*:*:*:*:*:*
        cpe:2.3:a:siemens:simatic_information_server:2024:*:*:*:*:*:*:*
    Create a notification for this product.
    siemens totally_integrated_automation_portal Affected: 17 , < 17_update_8 (custom)
        cpe:2.3:a:siemens:totally_integrated_automation_portal:17:*:*:*:*:*:*:*
    Create a notification for this product.
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "affected": [
              {
                "cpes": [
                  "cpe:2.3:a:siemens:simatic_pcs_neo:*:*:*:*:*:*:*:*"
                ],
                "defaultStatus": "unknown",
                "product": "simatic_pcs_neo",
                "vendor": "siemens",
                "versions": [
                  {
                    "lessThan": "4.1_update_2",
                    "status": "affected",
                    "version": "4.0",
                    "versionType": "custom"
                  }
                ]
              },
              {
                "cpes": [
                  "cpe:2.3:a:siemens:totally_integrated_automation_portal:16:*:*:*:*:*:*:*",
                  "cpe:2.3:a:siemens:totally_integrated_automation_portal:18:*:*:*:*:*:*:*",
                  "cpe:2.3:a:siemens:totally_integrated_automation_portal:19:*:*:*:*:*:*:*",
                  "cpe:2.3:a:siemens:sinec_nms:*:*:*:*:*:*:*:*",
                  "cpe:2.3:a:siemens:simatic_pcs_neo:5.0:*:*:*:*:*:*:*",
                  "cpe:2.3:a:siemens:simatic_information_server:2022:*:*:*:*:*:*:*",
                  "cpe:2.3:a:siemens:simatic_information_server:2024:*:*:*:*:*:*:*"
                ],
                "defaultStatus": "unknown",
                "product": "simatic_information_server",
                "vendor": "siemens",
                "versions": [
                  {
                    "lessThan": "*",
                    "status": "affected",
                    "version": "0",
                    "versionType": "custom"
                  }
                ]
              },
              {
                "cpes": [
                  "cpe:2.3:a:siemens:totally_integrated_automation_portal:17:*:*:*:*:*:*:*"
                ],
                "defaultStatus": "unknown",
                "product": "totally_integrated_automation_portal",
                "vendor": "siemens",
                "versions": [
                  {
                    "lessThan": "17_update_8",
                    "status": "affected",
                    "version": "17",
                    "versionType": "custom"
                  }
                ]
              }
            ],
            "metrics": [
              {
                "other": {
                  "content": {
                    "id": "CVE-2024-33698",
                    "options": [
                      {
                        "Exploitation": "none"
                      },
                      {
                        "Automatable": "yes"
                      },
                      {
                        "Technical Impact": "total"
                      }
                    ],
                    "role": "CISA Coordinator",
                    "timestamp": "2024-09-10T17:32:07.999463Z",
                    "version": "2.0.3"
                  },
                  "type": "ssvc"
                }
              }
            ],
            "providerMetadata": {
              "dateUpdated": "2024-09-10T18:26:36.889Z",
              "orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
              "shortName": "CISA-ADP"
            },
            "title": "CISA ADP Vulnrichment"
          }
        ],
        "cna": {
          "affected": [
            {
              "defaultStatus": "unknown",
              "product": "Opcenter Quality",
              "vendor": "Siemens",
              "versions": [
                {
                  "lessThan": "V2406",
                  "status": "affected",
                  "version": "0",
                  "versionType": "custom"
                }
              ]
            },
            {
              "defaultStatus": "unknown",
              "product": "Opcenter RDnL",
              "vendor": "Siemens",
              "versions": [
                {
                  "lessThan": "V2410",
                  "status": "affected",
                  "version": "0",
                  "versionType": "custom"
                }
              ]
            },
            {
              "defaultStatus": "unknown",
              "product": "SIMATIC PCS neo V4.0",
              "vendor": "Siemens",
              "versions": [
                {
                  "lessThan": "*",
                  "status": "affected",
                  "version": "0",
                  "versionType": "custom"
                }
              ]
            },
            {
              "defaultStatus": "unknown",
              "product": "SIMATIC PCS neo V4.1",
              "vendor": "Siemens",
              "versions": [
                {
                  "lessThan": "V4.1 Update 2",
                  "status": "affected",
                  "version": "0",
                  "versionType": "custom"
                }
              ]
            },
            {
              "defaultStatus": "unknown",
              "product": "SIMATIC PCS neo V5.0",
              "vendor": "Siemens",
              "versions": [
                {
                  "lessThan": "V5.0 Update 1",
                  "status": "affected",
                  "version": "0",
                  "versionType": "custom"
                }
              ]
            },
            {
              "defaultStatus": "unknown",
              "product": "SINEC NMS",
              "vendor": "Siemens",
              "versions": [
                {
                  "lessThan": "*",
                  "status": "affected",
                  "version": "0",
                  "versionType": "custom"
                }
              ]
            },
            {
              "defaultStatus": "unknown",
              "product": "SINEMA Remote Connect Client",
              "vendor": "Siemens",
              "versions": [
                {
                  "lessThan": "V3.2 SP3",
                  "status": "affected",
                  "version": "0",
                  "versionType": "custom"
                }
              ]
            },
            {
              "defaultStatus": "unknown",
              "product": "Totally Integrated Automation Portal (TIA Portal) V16",
              "vendor": "Siemens",
              "versions": [
                {
                  "lessThan": "*",
                  "status": "affected",
                  "version": "0",
                  "versionType": "custom"
                }
              ]
            },
            {
              "defaultStatus": "unknown",
              "product": "Totally Integrated Automation Portal (TIA Portal) V17",
              "vendor": "Siemens",
              "versions": [
                {
                  "lessThan": "V17 Update 8",
                  "status": "affected",
                  "version": "0",
                  "versionType": "custom"
                }
              ]
            },
            {
              "defaultStatus": "unknown",
              "product": "Totally Integrated Automation Portal (TIA Portal) V18",
              "vendor": "Siemens",
              "versions": [
                {
                  "lessThan": "V18 Update 5",
                  "status": "affected",
                  "version": "0",
                  "versionType": "custom"
                }
              ]
            },
            {
              "defaultStatus": "unknown",
              "product": "Totally Integrated Automation Portal (TIA Portal) V19",
              "vendor": "Siemens",
              "versions": [
                {
                  "lessThan": "V19 Update 3",
                  "status": "affected",
                  "version": "0",
                  "versionType": "custom"
                }
              ]
            }
          ],
          "descriptions": [
            {
              "lang": "en",
              "value": "A vulnerability has been identified in Opcenter Quality (All versions \u003c V2406), Opcenter RDnL (All versions \u003c V2410), SIMATIC PCS neo V4.0 (All versions), SIMATIC PCS neo V4.1 (All versions \u003c V4.1 Update 2), SIMATIC PCS neo V5.0 (All versions \u003c V5.0 Update 1), SINEC NMS (All versions), SINEMA Remote Connect Client (All versions \u003c V3.2 SP3), Totally Integrated Automation Portal (TIA Portal) V16 (All versions), Totally Integrated Automation Portal (TIA Portal) V17 (All versions \u003c V17 Update 8), Totally Integrated Automation Portal (TIA Portal) V18 (All versions \u003c V18 Update 5), Totally Integrated Automation Portal (TIA Portal) V19 (All versions \u003c V19 Update 3). Affected products contain a heap-based buffer overflow vulnerability in the integrated UMC component. This could allow an unauthenticated remote attacker to execute arbitrary code."
            }
          ],
          "metrics": [
            {
              "cvssV3_1": {
                "baseScore": 9.8,
                "baseSeverity": "CRITICAL",
                "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H",
                "version": "3.1"
              }
            },
            {
              "cvssV4_0": {
                "baseScore": 9.3,
                "baseSeverity": "CRITICAL",
                "vectorString": "CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N",
                "version": "4.0"
              }
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "cweId": "CWE-122",
                  "description": "CWE-122: Heap-based Buffer Overflow",
                  "lang": "en",
                  "type": "CWE"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2025-10-14T09:15:00.448Z",
            "orgId": "cec7a2ec-15b4-4faf-bd53-b40f371f3a77",
            "shortName": "siemens"
          },
          "references": [
            {
              "url": "https://cert-portal.siemens.com/productcert/html/ssa-039007.html"
            }
          ]
        }
      },
      "cveMetadata": {
        "assignerOrgId": "cec7a2ec-15b4-4faf-bd53-b40f371f3a77",
        "assignerShortName": "siemens",
        "cveId": "CVE-2024-33698",
        "datePublished": "2024-09-10T09:36:31.009Z",
        "dateReserved": "2024-04-26T12:32:09.263Z",
        "dateUpdated": "2025-10-14T09:15:00.448Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.1"
    }

    CVE-2022-45147 (GCVE-0-2022-45147)

    Vulnerability from cvelistv5 – Published: 2024-07-09 12:04 – Updated: 2025-08-27 20:32
    VLAI
    Summary
    A vulnerability has been identified in SIMATIC PCS neo V4.0 (All versions), SIMATIC STEP 7 V16 (All versions), SIMATIC STEP 7 V17 (All versions), SIMATIC STEP 7 V18 (All versions < V18 Update 2). Affected applications do not properly restrict the .NET BinaryFormatter when deserializing user-controllable input. This could allow an attacker to cause a type confusion and execute arbitrary code within the affected application. This is the same issue that exists for .NET BinaryFormatter https://docs.microsoft.com/en-us/visualstudio/code-quality/ca2300.
    SSVC
    Exploitation: none Automatable: no Technical Impact: total
    CISA Coordinator · CISA-ADP (v2.0.3)
    Decision recorded 2024-07-09 13:30 UTC
    CWE
    • CWE-502 - Deserialization of Untrusted Data
    Impacted products
    Vendor Product Version
    Siemens SIMATIC PCS neo V4.0 Affected: 0 , < * (custom)
    Create a notification for this product.
    Siemens SIMATIC STEP 7 V16 Affected: 0 , < * (custom)
    Create a notification for this product.
    Siemens SIMATIC STEP 7 V17 Affected: 0 , < * (custom)
    Create a notification for this product.
    Siemens SIMATIC STEP 7 V18 Affected: 0 , < V18 Update 2 (custom)
    Create a notification for this product.
    siemens simatic_pcs_neo Affected: 4.0 , < 5.0 (custom)
        cpe:2.3:a:siemens:simatic_pcs_neo:4.0:-:*:*:*:*:*:*
    Create a notification for this product.
    siemens simatic_step_7 Affected: 16 , < 17 (custom)
    Affected: 17 , < 18 (custom)
    Affected: 18 , < 18_update_2 (custom)
        cpe:2.3:h:siemens:simatic_step_7:-:*:*:*:*:*:*:*
    Create a notification for this product.
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "affected": [
              {
                "cpes": [
                  "cpe:2.3:a:siemens:simatic_pcs_neo:4.0:-:*:*:*:*:*:*"
                ],
                "defaultStatus": "unknown",
                "product": "simatic_pcs_neo",
                "vendor": "siemens",
                "versions": [
                  {
                    "lessThan": "5.0",
                    "status": "affected",
                    "version": "4.0",
                    "versionType": "custom"
                  }
                ]
              },
              {
                "cpes": [
                  "cpe:2.3:h:siemens:simatic_step_7:-:*:*:*:*:*:*:*"
                ],
                "defaultStatus": "unknown",
                "product": "simatic_step_7",
                "vendor": "siemens",
                "versions": [
                  {
                    "lessThan": "17",
                    "status": "affected",
                    "version": "16",
                    "versionType": "custom"
                  },
                  {
                    "lessThan": "18",
                    "status": "affected",
                    "version": "17",
                    "versionType": "custom"
                  },
                  {
                    "lessThan": "18_update_2",
                    "status": "affected",
                    "version": "18",
                    "versionType": "custom"
                  }
                ]
              },
              {
                "cpes": [
                  "cpe:2.3:h:siemens:simatic_step_7:-:*:*:*:*:*:*:*"
                ],
                "defaultStatus": "unknown",
                "product": "simatic_step_7",
                "vendor": "siemens",
                "versions": [
                  {
                    "lessThan": "17",
                    "status": "affected",
                    "version": "16",
                    "versionType": "custom"
                  },
                  {
                    "lessThan": "18",
                    "status": "affected",
                    "version": "17",
                    "versionType": "custom"
                  },
                  {
                    "lessThan": "18_update_2",
                    "status": "affected",
                    "version": "18",
                    "versionType": "custom"
                  }
                ]
              },
              {
                "cpes": [
                  "cpe:2.3:h:siemens:simatic_step_7:-:*:*:*:*:*:*:*"
                ],
                "defaultStatus": "unknown",
                "product": "simatic_step_7",
                "vendor": "siemens",
                "versions": [
                  {
                    "lessThan": "17",
                    "status": "affected",
                    "version": "16",
                    "versionType": "custom"
                  },
                  {
                    "lessThan": "18",
                    "status": "affected",
                    "version": "17",
                    "versionType": "custom"
                  },
                  {
                    "lessThan": "18_update_2",
                    "status": "affected",
                    "version": "18",
                    "versionType": "custom"
                  }
                ]
              }
            ],
            "metrics": [
              {
                "other": {
                  "content": {
                    "id": "CVE-2022-45147",
                    "options": [
                      {
                        "Exploitation": "none"
                      },
                      {
                        "Automatable": "no"
                      },
                      {
                        "Technical Impact": "total"
                      }
                    ],
                    "role": "CISA Coordinator",
                    "timestamp": "2024-07-09T13:30:52.115552Z",
                    "version": "2.0.3"
                  },
                  "type": "ssvc"
                }
              }
            ],
            "providerMetadata": {
              "dateUpdated": "2025-08-27T20:32:52.249Z",
              "orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
              "shortName": "CISA-ADP"
            },
            "title": "CISA ADP Vulnrichment"
          },
          {
            "providerMetadata": {
              "dateUpdated": "2024-08-03T14:09:56.615Z",
              "orgId": "af854a3a-2127-422b-91ae-364da2661108",
              "shortName": "CVE"
            },
            "references": [
              {
                "tags": [
                  "x_transferred"
                ],
                "url": "https://cert-portal.siemens.com/productcert/html/ssa-825651.html"
              }
            ],
            "title": "CVE Program Container"
          }
        ],
        "cna": {
          "affected": [
            {
              "defaultStatus": "unknown",
              "product": "SIMATIC PCS neo V4.0",
              "vendor": "Siemens",
              "versions": [
                {
                  "lessThan": "*",
                  "status": "affected",
                  "version": "0",
                  "versionType": "custom"
                }
              ]
            },
            {
              "defaultStatus": "unknown",
              "product": "SIMATIC STEP 7 V16",
              "vendor": "Siemens",
              "versions": [
                {
                  "lessThan": "*",
                  "status": "affected",
                  "version": "0",
                  "versionType": "custom"
                }
              ]
            },
            {
              "defaultStatus": "unknown",
              "product": "SIMATIC STEP 7 V17",
              "vendor": "Siemens",
              "versions": [
                {
                  "lessThan": "*",
                  "status": "affected",
                  "version": "0",
                  "versionType": "custom"
                }
              ]
            },
            {
              "defaultStatus": "unknown",
              "product": "SIMATIC STEP 7 V18",
              "vendor": "Siemens",
              "versions": [
                {
                  "lessThan": "V18 Update 2",
                  "status": "affected",
                  "version": "0",
                  "versionType": "custom"
                }
              ]
            }
          ],
          "descriptions": [
            {
              "lang": "en",
              "value": "A vulnerability has been identified in SIMATIC PCS neo V4.0 (All versions), SIMATIC STEP 7 V16 (All versions), SIMATIC STEP 7 V17 (All versions), SIMATIC STEP 7 V18 (All versions \u003c V18 Update 2). Affected applications do not properly restrict the .NET BinaryFormatter when deserializing user-controllable input. This could allow an attacker to cause a type confusion and execute arbitrary code within the affected application.\r\n\r\nThis is the same issue that exists for .NET BinaryFormatter https://docs.microsoft.com/en-us/visualstudio/code-quality/ca2300."
            }
          ],
          "metrics": [
            {
              "cvssV3_1": {
                "baseScore": 7.8,
                "baseSeverity": "HIGH",
                "vectorString": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H/E:P/RL:O/RC:C",
                "version": "3.1"
              }
            },
            {
              "cvssV4_0": {
                "baseScore": 8.5,
                "baseSeverity": "HIGH",
                "vectorString": "CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:P/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N",
                "version": "4.0"
              }
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "cweId": "CWE-502",
                  "description": "CWE-502: Deserialization of Untrusted Data",
                  "lang": "en",
                  "type": "CWE"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2024-07-09T12:04:22.545Z",
            "orgId": "cec7a2ec-15b4-4faf-bd53-b40f371f3a77",
            "shortName": "siemens"
          },
          "references": [
            {
              "url": "https://cert-portal.siemens.com/productcert/html/ssa-825651.html"
            }
          ]
        }
      },
      "cveMetadata": {
        "assignerOrgId": "cec7a2ec-15b4-4faf-bd53-b40f371f3a77",
        "assignerShortName": "siemens",
        "cveId": "CVE-2022-45147",
        "datePublished": "2024-07-09T12:04:22.545Z",
        "dateReserved": "2022-11-11T08:33:16.611Z",
        "dateUpdated": "2025-08-27T20:32:52.249Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.1"
    }