Vulnerable Assets Library
A searchable database of maritime OT equipment with known vulnerabilities — covering navigation systems, engine automation, power management, and vessel control CBS from major marine vendors. Search by vendor, product family, or CVE ID to check whether equipment on your vessel has documented vulnerabilities requiring attention or patch management action.
Searchable by vendor
CVE referenced
Marine OT vendors
Continuously updated
Audit Level: Tactical
Records optimised: 30.06.2026 17:00 UTC
CVE-2022-24044 — Siemens: Desigo DXR2
Published: 2022-05-10 | Updated: 2024-08-03
N/A 0A vulnerability has been identified in Desigo DXR2 (All versions < V01.21.142.5-22), Desigo PXC3 (All versions < V01.21.142.4-18), Desigo PXC4 (All versions < V02.20.142.10-10884), Desigo PXC5 (All versions < V02.20.142.10-10884). The login functionality of the application does not employ any countermeasures against Password Spraying attacks or Credential Stuffing attacks. An attacker could obtain a list of valid usernames on the device by exploiting the issue and then perform a precise Password Spraying or Credential Stuffing attack in order to obtain access to at least one account.
CVSS VECTOR: N/A
Get new CVE entries like these in your inbox weekly.
Subscribe →
Disclaimer & Methodology
The Marine OT Vulnerable Assets Library is a curated repository of security advisories identified through automated heuristic filtering. Users should verify hardware revisions with manufacturers before patching.
