Advisories

Für CVSS 2.0, 3.0 und 3.2
VDE-2021-027
Mai 14, 2025, 3:00 nachm.
Critical vulnerabilities have been discovered in the product and in the utilized components jQuery by jQuery Team and TLS Version 1.0/1.1. The impact of the vulnerabilities on the affected device …
VDE-2025-005
Mai 14, 2025, 3:00 nachm.
A vulnerability has been found in a cryptographic library of Infineon Technologies that is part of the firmware of the CmDongles. The exploitation of this vulnerability has been classified as …
VDE-2020-031
Mai 14, 2025, 3:00 nachm.
For further Information please refer to WIBU Advisories directly at https://wibu.com/support/security-advisories.html and the aforementioned CVE-IDs.
VDE-2023-002
Mai 14, 2025, 3:00 nachm.
Two vulnerabilites have been discovered in mbCONNECT24 and mbCONNECT24 in all versions through 2.13.3.
VDE-2021-006
Mai 14, 2025, 3:00 nachm.
TruControl laser control software from versions 2.14.0 to 3.14.0 use sudo versions affected by CVE-2021-3156. The affected sudo has a heap-based buffer overflow, allowing privilege escalation to root via "sudoedit …
VDE-2021-038
Mai 14, 2025, 2:53 nachm.
WAGO controllers have always been designed for easy connection to IT infrastructure. Even controllers from legacy product lines support encryption standards to ensure secure communication. With special crafted requests it …
VDE-2020-045
Mai 14, 2025, 2:53 nachm.
The reported vulnerability allows an attacker who has network access to the device to execute code with specially crafted packets.
VDE-2020-008
Mai 14, 2025, 2:53 nachm.
The Cloud Connectivity of the WAGO PLCs is used to connect the device with the cloud services from different providers. It also supports maintenance functionality with the firmware update function …