Simatic Energy Manager Basic Siemens Simatic Energy Manager Basic

Do you want an email whenever new security vulnerabilities are reported in Siemens Simatic Energy Manager Basic?

By the Year

In 2024 there have been 0 vulnerabilities in Siemens Simatic Energy Manager Basic . Simatic Energy Manager Basic did not have any published security vulnerabilities last year.

Year Vulnerabilities Average Score
2024 0 0.00
2023 0 0.00
2022 3 8.30
2021 0 0.00
2020 0 0.00
2019 0 0.00
2018 0 0.00

It may take a day or so for new Simatic Energy Manager Basic vulnerabilities to show up in the stats or in the list of recent security vulnerabilties. Additionally vulnerabilities may be tagged under a different product or component name.

Recent Siemens Simatic Energy Manager Basic Security Vulnerabilities

A vulnerability has been identified in SIMATIC Energy Manager Basic (All versions < V7.3 Update 1)

CVE-2022-23450 9.8 - Critical - April 12, 2022

A vulnerability has been identified in SIMATIC Energy Manager Basic (All versions < V7.3 Update 1), SIMATIC Energy Manager PRO (All versions < V7.3 Update 1). The affected system allows remote users to send maliciously crafted objects. Due to insecure deserialization of user-supplied content by the affected software, an unauthenticated attacker could exploit this vulnerability by sending a maliciously crafted serialized object. This could allow the attacker to execute arbitrary code on the device with SYSTEM privileges.

Marshaling, Unmarshaling

A vulnerability has been identified in SIMATIC Energy Manager Basic (All versions < V7.3 Update 1)

CVE-2022-23449 7.3 - High - April 12, 2022

A vulnerability has been identified in SIMATIC Energy Manager Basic (All versions < V7.3 Update 1), SIMATIC Energy Manager PRO (All versions < V7.3 Update 1). A DLL Hijacking vulnerability could allow a local attacker to execute code with elevated privileges by placing a malicious DLL in one of the directories on the DLL search path.

DLL preloading

A vulnerability has been identified in SIMATIC Energy Manager Basic (All versions < V7.3 Update 1)

CVE-2022-23448 7.8 - High - April 12, 2022

A vulnerability has been identified in SIMATIC Energy Manager Basic (All versions < V7.3 Update 1), SIMATIC Energy Manager PRO (All versions < V7.3 Update 1). Affected applications improperly assign permissions to critical directories and files used by the application processes. This could allow a local unprivileged attacker to achieve code execution with ADMINISTRATOR or even NT AUTHORITY/SYSTEM privileges.

Incorrect Permission Assignment for Critical Resource

Stay on top of Security Vulnerabilities

Want an email whenever new vulnerabilities are published for Siemens Simatic Energy Manager Pro or by Siemens? Click the Watch button to subscribe.

Siemens
Vendor

subscribe