Advisories

For CVSS 2.0, 3.0 and 3.2
VDE-2022-025
May 22, 2025, 3:03 PM
The affected devices insufficiently verify uploaded data.
VDE-2025-041
May 19, 2025, 11:00 AM
Weidmueller product ResMa is affected by ASP.NET AJAX vulnerability. Weidmueller has released a new firmware for the affected product to fix the vulnerability.
VDE-2020-014
May 14, 2025, 4:34 PM
Security researchers at ESET have reported a vulnerability called Kr00k (CVE-2019- 15126) which affects encrypted WiFi traffic for devices using Broadcom or Cypress chipsets. The vulnerability may allow an attacker …
VDE-2024-033
May 14, 2025, 4:34 PM
Vulnerabilities have been discovered in the product, mainly caused by HTML injection and crosssite-scripting. The impact of the vulnerability on the affected device may result in an information disclosure and …
VDE-2025-021
May 14, 2025, 3:26 PM
Weidmüller product PROCON-WIN is affected by hard-coded credentials. Weidmüller has released a new version of the affected product to fix the vulnerability.
VDE-2020-050
May 14, 2025, 3:00 PM
Critical vulnerability has been discovered in the utilized component 499ES EtherNet/IP Stack by Real Time Automation (RTA).
VDE-2024-024
May 14, 2025, 3:00 PM
Local attackers can cause affected CODESYS Development System V2.3 installations to crash or execute code by opening malicious project files. The CODESYS Development System V2.3 is an IEC 61131-3 programming …
VDE-2022-058
May 14, 2025, 3:00 PM
Two vulnerabilities have been discovered in the Expat XML parser library (aka libexpat). This open-source component is widely used in a lot of products worldwide. An attacker could cause a …