Siemens

Security Scorecard

Score

90C

Total CVEs

30

Patch Rate

87%

26 patched

Avg Response

38d

days to patch

Critical Gaps

0

exploitable, no detection

Severity Breakdown

Critical2
High14
Medium14
Low0

Patch Status

Patched26 (87%)
Partial/Workaround0 (0%)
Unpatched4 (13%)

CVEs (30)

CVE IDTitleSeverityScoreDaysPatch
CVE-2025-40805Siemens XA Security VulnerabilityCritical10.0-Patched
CVE-2025-40942TeleControl Server Basic Privilege EscalationHigh8.8-Patched
CVE-2025-40944SIMATIC ET 200AL IM 157-1 PN (6ES7157-1AB00-0AB0) Denial-of-Service VulnerabilityHigh7.5-Patched
CVE-2025-40829Simcenter Femap Uninitialized Memory VulnerabilityHigh7.8-Patched
CVE-2024-56835CVE-2024-56835High8.8-Patched
CVE-2025-40937SIMATIC CN 4100 API VulnerabilityHigh8.3-Patched
CVE-2025-40801COMOS V10.6 TLS VulnerabilityHigh8.1-Patched
CVE-2025-40938SIMATIC CN 4100 Firmware Bypass VulnerabilityHigh8.1-Patched
CVE-2024-56836RUGGEDCOM ROX II DNS InjectionHigh7.5-Patched
CVE-2025-40820Siemens TCP Sequence Number Validation BypassHigh7.523dUnpatched