Advisories

For CVSS 2.0, 3.0 and 3.2
VDE-2022-016
May 2, 2022, 12:00 PM
A service function in the stated TRUMPF products is exposed without necessary authentication. Execution of this function may result in unauthorized access to, change of data or disruption of the …
VDE-2022-015
April 27, 2022, 2:00 PM
The Miele Benchmark Programming Tool on a Microsoft Windows operating system, selects a folder by default upon installation that is writable for all users (C:\\MIELE_SERVICE). After the installation of the …
VDE-2021-054
April 26, 2022, 12:00 PM
Several Pilz products use Versions V2 and V3 of the CODESYS runtime system from CODESYS GmbH, which enables the execution of IEC 61131-3 PLC programs. These runtime environments contain several …
VDE-2021-055
April 26, 2022, 12:00 PM
The software product PMC programming tool from Pilz is based on the software CODESYS Development System from CODESYS GmbH. This software is affected by several vulnerabilities, which an attacker can …
VDE-2021-047
April 26, 2022, 12:00 PM
Bender is publishing this advisory to inform customers about multiple security vulnerabilities in the Charge Controller product families.Bender has analysed the weaknesses and determined that the electrical safety of the …
VDE-2021-061
April 26, 2022, 12:00 PM
The software product PMC programming tool from Pilz is based on the software CODESYS Development System from CODESYS GmbH. This software is affected by several vulnerabilities, which an attacker can …
VDE-2022-008
April 7, 2022, 8:00 AM
Multiple issues have been found in the affected products. See CVE descriptions for details.
VDE-2022-006
March 24, 2022, 11:48 AM
Possible memory corruption in BT controller when it receives an oversized LMP packet over 2-DH1 link and leads to denial of service.