VDB
CVE-2026-56451
CVE-2026-56451
PUBLISHED
CVSS 10 CRITICAL
Opcenter X before V2604 contain an authentication bypass vulnerability that could allow an attacker to gain full unauthorized access to the application. Siemens has released a new version for Opcenter X and recommends to update to the latest version. The following versions of Siemens Opcenter X are affected: Opcenter X vers:intdot/ CVSS Vendor Equipment Vulnerabilities v3 10 Siemens Siemens Opcenter X Improper Verification of Cryptographic Signature Background Critical Infrastructure Sectors: Critical Manufacturing Countries/Areas Deployed: Worldwide Company Headquarters Location: Germany
EPSS 0.30% · 22.8th percentile
Risk Scores
CVSS 3.1
10
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
EPSS Score
0.30%
22.8th percentile
Timeline
- Jul 14, 2026 EPSS Score
- Jul 14, 2026 CVE Published
- Jul 15, 2026 Coalition ESS Score
- Jul 15, 2026 CVE Updated
- Aug 7, 2026 EPSS Score
References
- https://www.cisa.gov/news-events/ics-advisories/icsa-26-202-03 advisory
- https://github.com/cisagov/CSAF/blob/develop/csaf_files/OT/white/2026/icsa-26-202-03.json advisory
- https://www.cve.org/CVERecord?id=CVE-2026-56451 technical
- https://support.sw.siemens.com/product/206159703/ vendor
- https://cwe.mitre.org/data/definitions/347.html technical
- https://www.first.org/cvss/calculator/3.1#CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H technical