Advisories

Für CVSS 2.0, 3.0 und 3.2
VDE-2023-026
Mai 22, 2025, 3:03 nachm.
Multiple WAGO devices are prone to vulnerabilites in the used CODESYS V3 framework.
VDE-2023-014
Juli 31, 2023, 9:00 vorm.
A vulnerability allows Bluetooth LE pairing traffic to be sniffed and used to bypass authentication for pairing.
VDE-2023-024
Juli 28, 2023, 9:45 vorm.
In CODESYS Development System 3.5.9.0 to 3.5.17.0 and CODESYS Scripting 4.0.0.0 to 4.1.0.0 unsafe directory permissions would allow an attacker with local access to the workstation to place potentially harmful …
VDE-2023-013
Nov. 4, 2025, 12:00 nachm.
FactoryViews bundles many third-party applications which are used in background processes to provide the software's features. From time to time, vulnerabilities in these bundled applications are discovered. These are typically …
VDE-2023-011
Juli 5, 2023, 10:00 vorm.
Frauscher Diagnostic System FDS001 for FAdC R1 and FAdCi R1 v1.3.3 and all previous versions are vulnerable to a path traversal vulnerability of the web interface by a crafted URL …
VDE-2023-006
Juli 8, 2024, 12:00 nachm.
An authenticated attacker can send a malformed packet to trigger a device crash via the CODESYS V2 runtime commands parsing. Update: 08.07.2024 release date of the updates has been changed.
VDE-2023-005
Juni 25, 2023, 8:00 vorm.
An unauthenticated attacker with network access to port 502/TCP of the target device can cause a denial-of-service condition by sending multiple specially crafted packets. The MODBUS server does not properly …
VDE-2023-010
Mai 14, 2025, 3:00 nachm.
The FL MGUARD family of devices is affected by two vulnerabilities.