Known vulnerabilities in Siemens OZW672
Vendor:
Siemens
Software:
Siemens OZW672
Software CPE:
cpe:2.3:h:siemens:siemens_ozw672:*:*:*:*:*:*:*:*
Website:
https://www.siemens.com/
Total vulnerabilities:
5
Public exploits:
0
Known exploited (KEV):
0
Highest CVSSv4 Score:
9.3
Breakdown by Severity Chart
Vulnerabilities (5)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU109405 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') CVE-2025-26390 |
CWE-89 | High | 6.0 | 19.05.2025 |
SB2025051914 |
||
| #VU109404 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') CVE-2025-26389 |
CWE-78 | High | 8.0 | 19.05.2025 |
SB2025051913 |
||
| #VU25262 - Exposure of sensitive information to an unauthorized actor CVE-2019-13941 |
CWE-200 | Medium | 10.0 | 12.02.2020 |
SB2020021211 |
||
| #VU7373 - Improper Authentication CVE-2017-6873 |
CWE-287 | Medium | - | 07.07.2017 |
SB2017070701 |
||
| #VU7372 - Improper Authentication CVE-2017-6872 |
CWE-287 | Low | - | 07.07.2017 |
SB2017070701 |