Advisories

Für CVSS 2.0, 3.0 und 3.2
VDE-2022-045
Mai 22, 2025, 3:03 nachm.
PAS4000 is the software platform for the Automation System PSS 4000. PAS 4000 does not properly check pathnames contained in archives. An attacker can utilise this vulnerability to write arbitrary …
VDE-2022-005
Mai 22, 2025, 3:03 nachm.
Several vulnerabilities have been discovered in the Expat XML parser library (aka libexpat).This open-source component is widely used in a lot of products worldwide.A remote, anonymous attacker could use an …
VDE-2025-002
Mai 22, 2025, 3:03 nachm.
An unauthenticated attacker could repeatedly send IPv6 packets, that include specially crafted packets, to a Windows machine which could enable remote code execution.
VDE-2022-009
Mai 22, 2025, 3:03 nachm.
The Linux kernel starting from 5.8 has a flaw which can lead to privilege escalation for a local user. The kernel is used in several Versions of the FW of …
VDE-2021-041
Mai 22, 2025, 3:03 nachm.
Critical vulnerabilities have been discovered in the utilized component log4net by Apache Software Foundation. UPDATE A: Remediation: added fixed VisuNet Products
VDE-2023-048
Mai 22, 2025, 3:03 nachm.
Several Pilz products use the 3rd-party component 'libwebp' for decoding of images in WebP format. This component is affected by a vulnerability, which may enable an attacker to gain full …
VDE-2018-007
Mai 22, 2025, 3:03 nachm.
An attacker may exploit a 'long cookie' related vulnerability to cause a buffer overflow that allows unauthorized access to the switches operating system files. The attacker can then insert executable …
VDE-2023-033
Mai 22, 2025, 3:03 nachm.
Several Pilz products use the 3rd party component "CodeMeter Runtime" from WIBU-SYSTEM AG to manage software licenses. This component is affected by a vulnerability, which may enable an attacker to …