Advisories

Für CVSS 2.0, 3.0 und 3.2
VDE-2022-035
Aug. 17, 2022, 10:00 vorm.
Multiple WAGO product families are prone to multiple vulnerabilities affecting CODESYS control runtime system.
VDE-2022-034
Aug. 15, 2022, 12:00 nachm.
A number of TRUMPF software tools use the OPC UA Server in C++ based OPC UA SDK by Unified Automation. The application contains several vulnerabilities, which enable an attacker to …
VDE-2022-032
Aug. 9, 2022, 10:00 vorm.
The SIMA2 Master Station features an NTP service based on ntpd, a reference implementation of the Network Time Protocol (NTP). Affected SIMA2 Master Stations with software version < V2.6 include …
VDE-2022-022
Aug. 26, 2025, 12:00 nachm.
The Festo controller CECC product family is affected by multiple vulnerabilities in the CODESYS V3 runtime.
VDE-2022-027
Juli 10, 2025, 12:00 nachm.
The Festo controller CECC product family in firmware version 2.4.2.0 is affected by multiple vulnerabilities in the CODESYS V3 runtime.
VDE-2022-030
Juli 11, 2022, 12:00 nachm.
The machine controller of the cabinet series include an OPC-UA server which uses an user management to authenticate clients via anonymous or user/password authentication. If the user/password authentication is selected, …
VDE-2022-020
Juni 23, 2025, 10:00 vorm.
The Festo controller CECC-X-M1 product family in multiple versions are affected by a preauthentication command injection vulnerability. Update A, 2022-07-05 Remediation has been updated. Fixed firmwares are now available.
VDE-2021-004
Juni 21, 2022, 10:00 vorm.
A critical vulnerability has been discovered in the utilized component EtherNet/IP Adapter Development Kit (EADK) by Pyramid Solutions, Inc.. For details refer to CVE(s).This vulnerability may allow an attacker to …