Summary
Simcenter Nastran is affected by a stack overflow vulnerability that could be triggered when an application binary reads arbitrary string as a file argument. If a user is tricked to run one of the impacted application binary with a malicious string, an attacker could leverage …
Summary
Successful exploitation of these vulnerabilities could allow an attacker to cause a denial-of-service condition or execute arbitrary code.
The following versions of CISA Malcolm are affected:
- Malcolm <26.06.1 (CVE-2026-55676)
- Malcolm <26.07.0 (CVE-2026-63133, CVE-2026-63134, CVE-2026-63177)
- Malcolm <=26.07.1 (CVE-2026-19670, CVE-2026-19671)
Summary
Siemens LOGO! Soft Comfort contains multiple vulnerabilities in its project-file encryption and password handling mechanisms. A local attacker could exploit these vulnerabilities to extract the master key, allowing them to decrypt project data or remove project passwords. The lack of password salting enables offline dictionary …
Summary
Successful exploitation of this vulnerability could allow an attacker within Bluetooth range to manipulate brain stimulation parameters and override safety limits.
The following versions of Flow Neuroscience FL-100 are affected:
- Flow Neuroscience FL-100
- Halo Neuroscience FL-100
Summary
Successful exploitation of these vulnerabilities could allow an attacker to read data from the device or gain access to affected workstations.
The following versions of ANDRITZ HIPASE-250 and 250 SCALA are affected:
- HIPASE-250 <=7.20 (CVE-2026-65309, CVE-2026-65310, CVE-2026-65311, CVE-2026-65313)
- 250 SCALA <=7.20 …
Summary
Successful exploitation of this vulnerability could allow a low-privilege user or attacker to inject a persistent malicious payload via a crafted URL that executes in the context of other users' sessions, including administrators, potentially leading to session hijacking and unauthorized access.
The following versions …
Summary
Successful exploitation of these vulnerabilities could allow an attacker to decrypt sensitive data, bypass authentication controls, gaining unauthorized access to read arbitrary files on the system, or gain unauthorized access to protected system resources.
The following versions of Johnson Controls Inc. Airwall are affected:
…Summary
Siveillance Video Management Servers contains a vulnerability that could allow a Remote Code Execution attack. Siemens has released new versions for the affected products and recommends to update to the latest versions.
The following versions of Siemens Siveillance Video are affected:
- Siveillance …