Advisories

Für CVSS 2.0, 3.0 und 3.2
VDE-2023-046
April 28, 2025, 12:00 nachm.
An attacker with administrative privileges which can access sensitive files, can additionally access them in an unintended, undocumented way.
VDE-2023-047
Okt. 1, 2025, 8:00 vorm.
A vulnerability was reported in Siemens TIA Portal. TIA Portal is part of the installation packages of several Festo Didactic products. TP 260 before June 2023 and MES PC based …
VDE-2023-041
Okt. 16, 2023, 10:38 vorm.
In Red Lion Europe mbCONNECT24 and mymbCONNECT24 and Helmholz myREX24 and myREX24.virtual up to and including 2.14.2 an improperly implemented access validation allows an authenticated, low privileged attacker to gain …
VDE-2023-043
Okt. 16, 2023, 10:38 vorm.
A vulnerability in the affected products allows an authenticated, low-privileged attacker to gain unauthorized read access to limited, non-critical device information. The issue arises from improper access validation.
VDE-2023-033
Mai 22, 2025, 3:03 nachm.
Several Pilz products use the 3rd party component "CodeMeter Runtime" from WIBU-SYSTEM AG to manage software licenses. This component is affected by a vulnerability, which may enable an attacker to …
VDE-2023-042
Nov. 20, 2024, 12:00 nachm.
Critical vulnerability has been discovered in the utilized component PROFINET IO Device by Hilscher Gesellschaft für Systemautomation mbH. The impact of the vulnerability on the affected device is that it …
VDE-2023-038
Sept. 21, 2023, 8:00 vorm.
Frauscher Sensortechnik GmbH FDS101 for FAdC/FAdCi v1.4.24 and all previous versions are prone to multiple vulnerabilities which could lead up to a full compromise of the FDS101 device.
VDE-2023-030
Nov. 13, 2023, 12:00 nachm.
A Vulnerability in WIBU-SYSTEMS CodeMeter Runtime affects multiple Phoenix Contact products. Phoenix Contact devices using CodeMeter embedded are not affected by this vulnerability. Update A, 2023-11-13 Removed CVE-2023-4701 because it …