cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,poc,trended,trended_no_1,published,trended_score CVE-2024-35783,https://securityvulnerability.io/vulnerability/CVE-2024-35783,Elevated Privileges Vulnerability Affects Siemens' Industrial Automation Products,"A vulnerability affects various Siemens SIMATIC products, specifically allowing the database server to operate with elevated privileges. This situation provides a potential opportunity for authenticated attackers to execute arbitrary operating system commands, posing a significant security risk to the affected systems. Products including SIMATIC BATCH, SIMATIC Information Server, and multiple versions of SIMATIC WinCC have been identified as vulnerable. Proper mitigation measures should be employed to safeguard against potential exploitation.",Siemens,"Simatic Batch V9.1,Simatic Information Server 2020,Simatic Information Server 2022,Simatic Pcs 7 V9.1,Simatic Process Historian 2020,Simatic Process Historian 2022,Simatic Wincc Runtime Professional V18,Simatic Wincc Runtime Professional V19,Simatic Wincc V7.4,Simatic Wincc V7.5,Simatic Wincc V8.0",9.1,CRITICAL,0.0004299999854993075,false,,false,false,false,,false,false,2024-09-10T09:36:32.225Z,0 CVE-2021-27395,https://securityvulnerability.io/vulnerability/CVE-2021-27395,,"A vulnerability has been identified in SIMATIC Process Historian 2013 and earlier (All versions), SIMATIC Process Historian 2014 (All versions < SP3 Update 6), SIMATIC Process Historian 2019 (All versions), SIMATIC Process Historian 2020 (All versions). An interface in the software that is used for critical functionalities lacks authentication, which could allow a malicious user to maliciously insert, modify or delete data.",Siemens,"Simatic Process Historian 2013 And Earlier,Simatic Process Historian 2014,Simatic Process Historian 2019,Simatic Process Historian 2020",8.1,HIGH,0.0008099999977275729,false,,false,false,false,,false,false,2021-10-12T09:49:20.000Z,0