Advisories

Für CVSS 2.0, 3.0 und 3.2
VDE-2021-028
Mai 14, 2025, 3:00 nachm.
Critical vulnerabilities have been discovered in the utilized component TRECK TCP/IP Stack by Digi International Inc. For more information see advisory by Digi International Inc.: Digi International Security Notice - …
VDE-2021-033
Aug. 12, 2021, 3:02 nachm.
VDE-2021-035
Mai 22, 2025, 3:03 nachm.
Access to the Apache web server being installed as part of the FL MGUARD DM on Microsoft Windows does not require login credentials even if configured during installation.
VDE-2021-029
Mai 14, 2025, 2:28 nachm.
A device on the same network as the controller sending a special crafted JSON request to the /auth/access-token endpoint may cause the controller to restart (CWE-20). UPDATE A The CVSS …
VDE-2021-032
Mai 22, 2025, 3:03 nachm.
Third party Niche Ethernet stack has several vulnerabilities announced by the security researcher's community. Phoenix Contact Classic Line industrial controllers are developed and designed for the use in closed industrial …
VDE-2021-036
Mai 14, 2025, 2:28 nachm.
Please consult the CVE entries above for more details.
VDE-2021-034
Juli 30, 2021, 9:55 vorm.
A remote code execution vulnerability exists when the Windows Print Spooler service improperly performs privileged file operations. An attacker who successfully exploited this vulnerability could run arbitrary code with SYSTEM …
VDE-2021-017
Mai 14, 2025, 2:28 nachm.
Multiple Vulnerabilities in mbConnect24serv (a software service of mbDIALUP) can lead to arbitrary code execution due to improper privilege management. Update A, 2021-11-24 corrected fixed version in solution from 3.9R0.4 …