📦 Sipass Integrated

by Siemens

🔍 What is Sipass Integrated?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2021-45046

CRITICAL CVSS 9.0 Dec 14, 2021

CVE-2021-45046 is an incomplete fix for the Log4Shell vulnerability (CVE-2021-44228) in Apache Log4j 2.15.0 that allows attackers to execute arbitrary code via JNDI lookups in certain non-default logg...

CVE-2021-44523

CRITICAL CVSS 9.1 Dec 14, 2021

This vulnerability allows unauthenticated remote attackers to read, modify, or delete activity feed entries in Siemens SiPass integrated and Siveillance Identity systems. The affected applications ins...

CVE-2021-44228

CRITICAL CVSS 10.0 Dec 10, 2021

CVE-2021-44228 (Log4Shell) is a critical remote code execution vulnerability in Apache Log4j2 that allows attackers to execute arbitrary code by exploiting JNDI lookups in log messages. This affects a...

CVE-2025-40772

HIGH CVSS 7.4 Oct 14, 2025

A stored Cross-Site Scripting vulnerability in SiPass integrated allows attackers to inject malicious scripts that execute when other users visit affected pages. This enables session hijacking, accoun...

CVE-2022-31810

HIGH CVSS 7.5 Jul 11, 2023

A stack-based buffer overflow vulnerability in SiPass integrated server applications allows unauthenticated remote attackers to crash the server by sending specially crafted configuration client login...

CVE-2021-44522

HIGH CVSS 7.5 Dec 14, 2021

This vulnerability allows unauthenticated remote attackers to subscribe to arbitrary message broker queues in Siemens SiPass and Siveillance Identity systems. This could enable eavesdropping on intern...

CVE-2025-40774

MEDIUM CVSS 4.4 Oct 14, 2025

This vulnerability in SiPass integrated allows administrators to decrypt and recover user passwords stored in the database. All SiPass integrated versions before V3.0 are affected, enabling attackers ...