Advisories

Für CVSS 2.0, 3.0 und 3.2
VDE-2022-043
Nov. 7, 2022, 1:14 nachm.
Multiple Wiesemann & Theis product families are affected by multiple vulnerabilities in the web interface.
VDE-2022-023
Okt. 17, 2022, 12:00 nachm.
During the installation of specific TRUMPF Windows applications, privileged local users with default usernames and passwords are created. An adversary could use these users to access and compromise the affected …
VDE-2022-042
Okt. 17, 2022, 10:00 vorm.
The MAC address filter as part of the firewall has a flaw, which prevents the MAC address filter to be active after restart. In this way a remote attacker is …
VDE-2022-047
Okt. 12, 2022, 10:00 vorm.
The FTP server does not properly release memory resources that were reserved for incomplete connection attempts by FTP clients. This could allow a remote attacker to generate a denial of …
VDE-2022-011
Sept. 7, 2022, 2:50 nachm.
An issue was discovered in the mymbCONNECT24 and mbCONNECT24 software in all versions through V2.11.2.
VDE-2022-039
Sept. 7, 2022, 12:56 nachm.
Multiple vulnerabilities have been found in myREX24 and myREX24.virtual.
VDE-2021-003
Sept. 7, 2022, 12:46 nachm.
Multiple vulnerabilities have been found in mymbCONNECT24 and mbCONNECT24. Update A, 2022-09-07: Affected Products: updated affected versions due to incomplete fixes of some CVEs. See Solution for details. Solution: updated …
VDE-2022-031
Aug. 17, 2022, 10:00 vorm.
Multiple WAGO product families are prone to multiple vulnerabilities affecting CODESYS control runtime system.