📦 Telecontrol Server Basic

by Siemens

🔍 What is Telecontrol Server Basic?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2025-40765

CRITICAL CVSS 9.8 Oct 14, 2025

An information disclosure vulnerability in TeleControl Server Basic V3.1 allows unauthenticated remote attackers to obtain password hashes and use them to authenticate to the database service. This af...

CVE-2025-27495

CRITICAL CVSS 9.8 Apr 16, 2025

This critical SQL injection vulnerability in TeleControl Server Basic allows unauthenticated remote attackers to bypass authorization, read/write to the database, and execute code with NetworkService ...

CVE-2025-27540

CRITICAL CVSS 9.8 Apr 16, 2025

An unauthenticated SQL injection vulnerability in TeleControl Server Basic allows remote attackers to bypass authentication, read/write to the database, and execute code with NetworkService permission...

CVE-2024-44102

CRITICAL CVSS 10.0 Nov 12, 2024

This vulnerability allows unauthenticated remote attackers to execute arbitrary code with SYSTEM privileges on Siemens TeleControl Server Basic systems by sending maliciously crafted serialized object...

CVE-2025-40942

HIGH CVSS 8.8 Jan 13, 2026

A local privilege escalation vulnerability in TeleControl Server Basic allows attackers with local access to execute arbitrary code with elevated privileges. All versions before V3.1.2.4 are affected....

CVE-2025-32867

HIGH CVSS 8.8 Apr 16, 2025

An SQL injection vulnerability in TeleControl Server Basic allows authenticated remote attackers to bypass authorization controls, read/write to the database, and execute code with NetworkService perm...

CVE-2025-32869

HIGH CVSS 8.8 Apr 16, 2025

An SQL injection vulnerability in TeleControl Server Basic allows authenticated remote attackers to bypass authorization, read/write to the database, and execute code with NetworkService permissions. ...

CVE-2025-32871

HIGH CVSS 8.8 Apr 16, 2025

An SQL injection vulnerability in TeleControl Server Basic allows authenticated remote attackers to bypass authorization controls, read/write to the database, and execute code with NetworkService perm...

CVE-2025-32861

HIGH CVSS 8.8 Apr 16, 2025

An SQL injection vulnerability in TeleControl Server Basic allows authenticated remote attackers to bypass authorization controls, read/write to the database, and execute code with NetworkService perm...

CVE-2025-32863

HIGH CVSS 8.8 Apr 16, 2025

This SQL injection vulnerability in TeleControl Server Basic allows authenticated attackers to bypass authorization, read/write to the database, and execute code with NetworkService permissions. It af...

CVE-2025-32865

HIGH CVSS 8.8 Apr 16, 2025

An SQL injection vulnerability in TeleControl Server Basic allows authenticated remote attackers to bypass authorization controls, read/write to the database, and execute code with NetworkService perm...

CVE-2025-32857

HIGH CVSS 8.8 Apr 16, 2025

An SQL injection vulnerability in TeleControl Server Basic allows authenticated remote attackers to bypass authorization controls, read/write to the database, and execute code with NetworkService perm...

CVE-2025-32859

HIGH CVSS 8.8 Apr 16, 2025

This SQL injection vulnerability in TeleControl Server Basic allows authenticated attackers to bypass authorization, read/write to the database, and execute code with NetworkService permissions. It af...

CVE-2025-32851

HIGH CVSS 8.8 Apr 16, 2025

An SQL injection vulnerability in TeleControl Server Basic allows authenticated remote attackers to bypass authorization controls, read/write to the database, and execute code with NetworkService perm...

CVE-2025-32853

HIGH CVSS 8.8 Apr 16, 2025

This SQL injection vulnerability in TeleControl Server Basic allows authenticated remote attackers to bypass authorization controls, read/write to the database, and execute code with NetworkService pe...

CVE-2025-32855

HIGH CVSS 8.8 Apr 16, 2025

An SQL injection vulnerability in TeleControl Server Basic allows authenticated remote attackers to bypass authorization controls, read/write to the database, and execute code with NetworkService perm...

CVE-2025-32847

HIGH CVSS 8.8 Apr 16, 2025

This SQL injection vulnerability in TeleControl Server Basic allows authenticated remote attackers to bypass authorization controls, read/write to the database, and execute code with NetworkService pe...

CVE-2025-32849

HIGH CVSS 8.8 Apr 16, 2025

This SQL injection vulnerability in TeleControl Server Basic allows authenticated remote attackers to bypass authorization controls, read/write to the database, and execute code with NetworkService pe...

CVE-2025-32845

HIGH CVSS 8.8 Apr 16, 2025

An SQL injection vulnerability in TeleControl Server Basic allows authenticated remote attackers to bypass authorization controls, read/write to the database, and execute code with NetworkService perm...

CVE-2025-32841

HIGH CVSS 8.8 Apr 16, 2025

This SQL injection vulnerability in TeleControl Server Basic allows authenticated remote attackers to bypass authorization controls, read/write to the database, and execute code with NetworkService pe...

CVE-2025-32843

HIGH CVSS 8.8 Apr 16, 2025

This SQL injection vulnerability in TeleControl Server Basic allows authenticated attackers to bypass authorization controls, read/write to the database, and execute code with NetworkService permissio...

CVE-2025-32837

HIGH CVSS 8.8 Apr 16, 2025

An SQL injection vulnerability in TeleControl Server Basic allows authenticated remote attackers to bypass authorization, read/write to the database, and execute code with NetworkService permissions. ...

CVE-2025-32839

HIGH CVSS 8.8 Apr 16, 2025

This SQL injection vulnerability in TeleControl Server Basic allows authenticated remote attackers to bypass authorization controls, read/write to the database, and execute code with NetworkService pe...

CVE-2025-32833

HIGH CVSS 8.8 Apr 16, 2025

This SQL injection vulnerability in TeleControl Server Basic allows authenticated remote attackers to bypass authorization controls, read/write to the database, and execute code with NetworkService pe...

CVE-2025-32835

HIGH CVSS 8.8 Apr 16, 2025

This SQL injection vulnerability in TeleControl Server Basic allows authenticated remote attackers to bypass authorization controls, read/write to the database, and execute code with NetworkService pe...

CVE-2025-32827

HIGH CVSS 8.8 Apr 16, 2025

This SQL injection vulnerability in TeleControl Server Basic allows authenticated attackers to bypass authorization, read/write database contents, and execute code with NetworkService permissions. It ...

CVE-2025-32829

HIGH CVSS 8.8 Apr 16, 2025

An SQL injection vulnerability in TeleControl Server Basic allows authenticated remote attackers to bypass authorization controls, read/write to the database, and execute code with NetworkService perm...

CVE-2025-32831

HIGH CVSS 8.8 Apr 16, 2025

This SQL injection vulnerability in TeleControl Server Basic allows authenticated attackers to bypass authorization controls, read/write to the database, and execute code with NetworkService permissio...

CVE-2025-32823

HIGH CVSS 8.8 Apr 16, 2025

This SQL injection vulnerability in TeleControl Server Basic allows authenticated attackers to bypass authorization, read/write to the database, and execute code with NetworkService permissions. It af...

CVE-2025-32825

HIGH CVSS 8.8 Apr 16, 2025

An SQL injection vulnerability in TeleControl Server Basic allows authenticated attackers to bypass authorization, read/write to the database, and execute code with NetworkService permissions. This af...

CVE-2025-31352

HIGH CVSS 8.8 Apr 16, 2025

This SQL injection vulnerability in TeleControl Server Basic allows authenticated attackers to bypass authorization, read/write to the database, and execute code with NetworkService permissions. It af...

CVE-2025-32475

HIGH CVSS 8.8 Apr 16, 2025

This SQL injection vulnerability in TeleControl Server Basic allows authenticated attackers to bypass authorization, read/write to the database, and execute code with NetworkService permissions. It af...

CVE-2025-31343

HIGH CVSS 8.8 Apr 16, 2025

This SQL injection vulnerability in TeleControl Server Basic allows authenticated remote attackers to bypass authorization controls, read/write to the database, and execute code with NetworkService pe...

CVE-2025-31350

HIGH CVSS 8.8 Apr 16, 2025

This SQL injection vulnerability in TeleControl Server Basic allows authenticated remote attackers to bypass authorization controls, read/write to the database, and execute code with NetworkService pe...

CVE-2025-30003

HIGH CVSS 8.8 Apr 16, 2025

This SQL injection vulnerability in TeleControl Server Basic allows authenticated remote attackers to bypass authorization controls, read/write to the database, and execute code with NetworkService pe...

CVE-2025-30031

HIGH CVSS 8.8 Apr 16, 2025

This SQL injection vulnerability in TeleControl Server Basic allows authenticated remote attackers to bypass authorization controls, read/write to the database, and execute code with NetworkService pe...