Known vulnerabilities in Siemens SIMATIC WinCC 16

Vendor: Siemens
Version: 16
Software CPE: cpe:2.3:a:siemens:siemens_simatic_wincc:*:*:*:*:*:*:*:*
Total vulnerabilities: 5
Public exploits: 0
Known exploited (KEV): 0
Highest CVSSv4 Score: 8.7

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting Siemens SIMATIC WinCC version 16 Siemens SIMATIC WinCC 16 is affected by 5 vulnerabilities: 2 medium, 3 low Critical High Medium Low

Vulnerabilities (5)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU60534 - Exposure of sensitive information to an unauthorized actor
CVE-2021-40360
CWE-200 Low
No
No
7.5 SP2 Update 6, 16 Update 5, 17 Update 2 11.02.2022 SB2022021107
#VU60533 - File And Directory Information Exposure
CVE-2021-40363
CWE-538 Low
No
No
7.5 SP2 Update 6, 16 Update 5 11.02.2022 SB2022021106
#VU58237 - Information Exposure Through Log Files
CVE-2021-40364
CWE-532 Low
No
No
- 18.11.2021 SB2021111815
#VU58236 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2021-40359
CWE-22 Medium
No
No
- 18.11.2021 SB2021111815
#VU58235 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2021-40358
CWE-22 Medium
No
No
- 18.11.2021 SB2021111815