Known vulnerabilities in SIMATIC S7-1500 TM MFP - BIOS - page 3

Vendor: Siemens
Software CPE: cpe:2.3:a:siemens:simatic_s7-1500_tm_mfp_-_bios:*:*:*:*:*:*:*:*
Total vulnerabilities: 58
Public exploits: 4
Known exploited (KEV): 1
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting SIMATIC S7-1500 TM MFP - BIOS SIMATIC S7-1500 TM MFP - BIOS is affected by 58 known vulnerabilities: 8 high, 11 medium, 39 low Critical High Medium Low

Vulnerabilities (58)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU74123 - Memory corruption
CVE-2023-1073
CWE-119 Low
No
No
- 28.03.2023 SB2023032819
SB2023032832
SB20230418189
and 53 more
#VU71541 - Improper Access Control
CVE-2022-4662
CWE-284 Low
No
No
- 25.01.2023 SB2023012561
SB2023012565
SB2023012626
and 38 more
#VU71352 - NULL Pointer Dereference
CVE-2023-0394
CWE-476 Low
No
No
- 19.01.2023 SB2023011912
SB2023012450
SB2023022176
and 68 more
#VU71173 - Integer overflow
CVE-2023-0179
CWE-190 Low
Available
No
- 16.01.2023 SB2023011603
SB2023012450
SB2023021001
and 49 more
#VU70442 - Stack-based buffer overflow
CVE-2022-4378
CWE-121 Low
No
No
- 20.12.2022 SB2022122008
SB2022122123
SB2022122124
and 124 more
#VU69708 - Use After Free
CVE-2022-3586
CWE-416 Low
No
No
- 29.11.2022 SB2022112976
SB2022113032
SB2022113033
and 75 more
#VU69297 - Use After Free
CVE-2022-42703
CWE-416 Low
Available
No
- 14.11.2022 SB2022111444
SB2022111701
SB2022111702
and 87 more
#VU68422 - Use After Free
CVE-2022-41222
CWE-416 Low
No
No
- 18.10.2022 SB2022101862
SB2022101865
SB2022101866
and 26 more
#VU67915 - Use After Free
CVE-2022-40307
CWE-416 Low
No
No
- 05.10.2022 SB2022100504
SB2022101105
SB2022101994
and 41 more
#VU67865 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2022-20421
CWE-362 Low
Available
No
- 04.10.2022 SB2022100403
SB2022101994
SB2022120150
and 16 more
#VU67508 - Out-of-bounds read
CVE-2022-39190
CWE-125 Low
No
No
- 20.09.2022 SB2022092040
SB2022092046
SB2022092047
and 15 more
#VU67478 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2022-39188
CWE-362 Low
No
No
- 20.09.2022 SB2022092004
SB2022092006
SB2022092010
and 83 more
#VU66522 - Exposure of sensitive information to an unauthorized actor
CVE-2022-21233
CWE-200 Low
No
No
- 16.08.2022 SB2022081610
SB2022081724
SB2022081725
and 20 more
#VU66182 - Use After Free
CVE-2022-30065
CWE-416 High
No
No
- 08.08.2022 SB2022080820
SB2022080821
SB2022120201
and 8 more
#VU65004 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2022-28391
CWE-78 High
No
No
- 07.07.2022 SB2022070727
SB2022070729
SB2023051039
and 3 more
#VU61295 - Memory corruption
CVE-2022-23219
CWE-119 High
No
No
- 14.03.2022 SB2022031429
SB2022031430
SB2022031526
and 51 more
#VU61294 - Memory corruption
CVE-2022-23218
CWE-119 High
No
No
- 14.03.2022 SB2022031429
SB2022031430
SB2022031526
and 38 more
#VU58683 - Use After Free
CVE-2021-42385
CWE-416 Low
No
No
- 08.12.2021 SB2021120809
SB2021120810
SB2022012015
and 16 more


Showing elements 41 - 60 out of 58