Skip to main content

Vendor/product archive

siemens / sipass_integrated CVEs

Beta · best-effort

14 CVEs tagged to siemens / sipass_integrated5 Critical, 7 High, 2 Medium, 0 Low, 0 Unrated.

CVE-2025-40774

Published Oct 14, 2025

A vulnerability has been identified in SiPass integrated (All versions < V3.0). Affected server applications store user passwords encrypted in its database. Decryption keys are ac…

CVSS 6.7 · Medium
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2025-40773

Published Oct 14, 2025

A vulnerability has been identified in SiPass integrated (All versions < V3.0). Affected server applications contains a broken access control vulnerability. The authorization mech…

CVSS 5.1 · Medium
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2025-40772

Published Oct 14, 2025

A vulnerability has been identified in SiPass integrated (All versions < V3.0). Affected server applications are vulnerable to stored Cross-Site Scripting (XSS), allowing an attac…

CVSS 7.0 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2022-31812

Published May 23, 2025

A vulnerability has been identified in SiPass integrated (All versions < V2.95.3.18). Affected server applications contain an out of bounds read past the end of an allocated buffe…

CVSS 8.7 · High
Vendor/product tagsBeta · best-effort

CVE-2022-31810

Published Jul 11, 2023

A vulnerability has been identified in SiPass integrated (All versions < V2.90.3.8). Affected server applications improperly check the size of data packets received for the config…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2017-9942

Published Aug 8, 2017

A vulnerability was discovered in Siemens SiPass integrated (All versions before V2.70) that could allow an attacker with local access to the SiPass integrated server or SiPass in…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2017-9941

Published Aug 8, 2017

A vulnerability was discovered in Siemens SiPass integrated (All versions before V2.70) that could allow an attacker in a Man-in-the-Middle position between the SiPass integrated…

CVSS 7.4 · High
Vendor/product tagsBeta · best-effort

CVE-2017-9940

Published Aug 8, 2017

A vulnerability was discovered in Siemens SiPass integrated (All versions before V2.70) that could allow an attacker with access to a low-privileged user account to read or write…

CVSS 8.1 · High
Vendor/product tagsBeta · best-effort

CVE-2017-9939

Published Aug 8, 2017

A vulnerability was discovered in Siemens SiPass integrated (All versions before V2.70) that could allow an attacker with network access to the SiPass integrated server to bypass…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2012-5409

Published Nov 1, 2012

AscoServer.exe in the server in Siemens SiPass integrated MP2.6 and earlier does not properly handle IOCP RPC messages received over an Ethernet network, which allows remote attac…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort
Showing 1-14 of 14 CVEsPage 1 of 1