VDE-2025-060
      Okt. 21, 2025, 12:00 nachm.
    
      Vulnerabilities have been discovered in the embedded firmware of SAUTER modulo 6 devices. These vulnerabilities affect the embedded web server as well as the interface to the SAUTER CASE Suite …
    
    
      
        
      
    
  VDE-2025-093
      Okt. 20, 2025, 12:00 nachm.
    
      The PASvisu Runtime is affected by a vulnerability in a third-party component which can be exploited by a malicious web request.
    
    
      
        
      
    
  VDE-2025-074
      Okt. 15, 2025, 12:00 nachm.
    
      A vulnerability in the firmware of CHARX SEC-3xxx charging controllers has been discovered.
    
    
      
        
      
    
  VDE-2025-091
      Okt. 14, 2025, 12:00 nachm.
    
      The embedded web interface of the MURRELEKTRONIK IMPACT67 Pro PN DIO8 IOL8 transmits login credentials over unencrypted HTTP using a GET request. The device does not offer HTTPS/TLS support, exposing …
    
    
      
        
      
    
  VDE-2025-072
      Okt. 14, 2025, 8:00 vorm.
    
      Multiple vulnerabilities were discovered in the firmware of QUINT4-UPS EIP devices that can be used by an unauthenticated remote attacker to perform Denial of Service attacks and to gather login …
    
    
      
        
      
    
  VDE-2025-087
      Sept. 24, 2025, 11:00 vorm.
    
      Due to a missing authentication check, the WAGO Solution Builder and the WAGO Device Sphere are vulnerable to a potential information exposure.
    
    
      
        
      
    
  VDE-2025-083
      Sept. 15, 2025, 10:00 vorm.
    
      The vulnerability in the Ethernet switch circuit is caused by a PullUp resistor at the reset input, leading to premature activation and undefined operation. Switching to a PullDown resistor keeps …
    
    
      
        
      
    
  VDE-2025-085
      Sept. 22, 2025, 10:00 vorm.
    
      A path traversal flaw in the SmartEMS upload handling allows authenticated users to direct upload data outside of the intended directory via the 'Upload-Key' header. In deployments where writable, code-interpreted …