Vulnerable Assets Library
A searchable database of maritime OT equipment with known vulnerabilities — covering navigation systems, engine automation, power management, and vessel control CBS from major marine vendors. Search by vendor, product family, or CVE ID to check whether equipment on your vessel has documented vulnerabilities requiring attention or patch management action.
Searchable by vendor
CVE referenced
Marine OT vendors
Continuously updated
Audit Level: Tactical
Records optimised: 30.06.2026 17:00 UTC
CVE-2022-37011 — Siemens: Mendix SAML (Mendix 7 compatible)
Published: 2022-09-13 | Updated: 2024-08-03
N/A 0A vulnerability has been identified in Mendix SAML (Mendix 7 compatible) (All versions < V1.17.0), Mendix SAML (Mendix 8 compatible) (All versions < V2.3.0), Mendix SAML (Mendix 9 compatible, New Track) (All versions < V3.3.1), Mendix SAML (Mendix 9 compatible, Upgrade Track) (All versions < V3.3.0). Affected versions of the module insufficiently protect from packet capture replay. This could allow unauthorized remote attackers to bypass authentication and get access to the application. For compatibility reasons, fix versions still contain this issue, but only when the not recommended, non default configuration option `'Allow Idp Initiated Authentication'` is enabled.
CVSS VECTOR: N/A
Get new CVE entries like these in your inbox weekly.
Subscribe →
Disclaimer & Methodology
The Marine OT Vulnerable Assets Library is a curated repository of security advisories identified through automated heuristic filtering. Users should verify hardware revisions with manufacturers before patching.
