Skip to main content

Vendor/product archive

siemens / comos CVEs

Beta · best-effort

31 CVEs tagged to siemens / comos6 Critical, 20 High, 4 Medium, 1 Low, 0 Unrated.

CVE-2023-46601

Published Nov 14, 2023

A vulnerability has been identified in COMOS (All versions). The affected application lacks proper access controls in making the SQLServer connection. This could allow an attacker…

CVSS 9.6 · Critical
Vendor/product tagsBeta · best-effort

CVE-2023-43505

Published Nov 14, 2023

A vulnerability has been identified in COMOS (All versions). The affected application lacks proper access controls in SMB shares. This could allow an attacker to access files that…

CVSS 9.6 · Critical
Vendor/product tagsBeta · best-effort

CVE-2023-43504

Published Nov 14, 2023

A vulnerability has been identified in COMOS (All versions < V10.4.4). Ptmcast executable used for testing cache validation service in affected application is vulnerable to Struct…

CVSS 9.6 · Critical
Vendor/product tagsBeta · best-effort

CVE-2023-43503

Published Nov 14, 2023

A vulnerability has been identified in COMOS (All versions < V10.4.4). Caching system in the affected application leaks sensitive information such as user and project information…

CVSS 3.5 · Low
Vendor/product tagsBeta · best-effort

CVE-2023-24482

Published Feb 14, 2023

A vulnerability has been identified in COMOS V10.2 (All versions), COMOS V10.3.3.1 (All versions < V10.3.3.1.45), COMOS V10.3.3.2 (All versions < V10.3.3.2.33), COMOS V10.3.3.3 (A…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2021-37194

Published Feb 9, 2022

A vulnerability has been identified in COMOS V10.2 (All versions only if web components are used), COMOS V10.3 (All versions < V10.3.3.3 only if web components are used), COMOS V1…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2021-37198

Published Jan 11, 2022

A vulnerability has been identified in COMOS V10.2 (All versions only if web components are used), COMOS V10.3 (All versions < V10.3.3.3 only if web components are used), COMOS V1…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2021-37197

Published Jan 11, 2022

A vulnerability has been identified in COMOS V10.2 (All versions only if web components are used), COMOS V10.3 (All versions < V10.3.3.3 only if web components are used), COMOS V1…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2021-37196

Published Jan 11, 2022

A vulnerability has been identified in COMOS V10.2 (All versions only if web components are used), COMOS V10.3 (All versions < V10.3.3.3 only if web components are used), COMOS V1…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-37195

Published Jan 11, 2022

A vulnerability has been identified in COMOS V10.2 (All versions only if web components are used), COMOS V10.3 (All versions < V10.3.3.3 only if web components are used), COMOS V1…

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-31784

Published Apr 26, 2021

An out-of-bounds write vulnerability exists in the file-reading procedure in Open Design Alliance Drawings SDK before 2021.6 on all supported by ODA platforms in static configurat…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort
Showing 1-25 of 31 CVEsPage 1 of 2