📦 Opcenter Quality

by Siemens

🔍 What is Opcenter Quality?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2021-27389

CRITICAL CVSS 9.8 Apr 22, 2021

This vulnerability involves Siemens Opcenter Quality and QMS Automotive shipping with a private signing key that lacks adequate protection. Attackers could use this key to sign malicious code or data,...

CVE-2024-41979

HIGH CVSS 7.1 Aug 12, 2025

This CVE describes an authorization bypass vulnerability in Siemens SmartClient modules where the server fails to enforce proper access controls on certain functionality. Authenticated attackers can e...

CVE-2023-46283

HIGH CVSS 7.5 Dec 12, 2023

This CVE describes a buffer overflow vulnerability in multiple Siemens industrial automation products. An attacker can send specially crafted requests to port 4002/tcp to cause an out-of-bounds write,...

CVE-2023-46285

HIGH CVSS 7.5 Dec 12, 2023

This vulnerability allows attackers to cause denial-of-service by sending specially crafted messages to port 4004/tcp on affected Siemens industrial software products. The service crashes but automati...

CVE-2023-46281

HIGH CVSS 7.1 Dec 12, 2023

This CVE describes an overly permissive CORS policy vulnerability in Siemens industrial software products. An attacker could exploit this by tricking legitimate users into visiting malicious websites,...

CVE-2024-41986

MEDIUM CVSS 6.4 Aug 12, 2025

This vulnerability affects Siemens SmartClient modules by supporting insecure TLS 1.0 and 1.1 protocols, allowing man-in-the-middle attacks that could compromise data confidentiality and integrity. Or...

CVE-2024-41982

MEDIUM CVSS 4.8 Aug 12, 2025

This vulnerability in Siemens SmartClient modules allows authenticated attackers to access sensitive information due to inadequate encryption. Affected systems include Opcenter QL Home (SC), SOA Audit...