Advisories

Für CVSS 2.0, 3.0 und 3.2
VDE-2025-011
Aug. 27, 2025, 12:00 nachm.
A stored cross-site scripting vulnerability has been discovered in the profinet gateway LB8122A.1.EL. An attacker can write an HTML tag with up to 32 characters in the message field of …
VDE-2025-002
Mai 22, 2025, 3:03 nachm.
An unauthenticated attacker could repeatedly send IPv6 packets, that include specially crafted packets, to a Windows machine which could enable remote code execution.
VDE-2024-065
Mai 14, 2025, 2:28 nachm.
A vulnerability in the use of hard-coded Platform Keys (PK) within the UEFI framework, known as PKfail, has been discovered in several Pepperl+Fuchs devices.
VDE-2024-063
Mai 14, 2025, 2:28 nachm.
The affected devices run a SSH server that is affected by the regreSSHion vulnerability despite the fact that no user can actually log in through SSH. Attackers may exploit this …
VDE-2024-033
Mai 14, 2025, 4:34 nachm.
Vulnerabilities have been discovered in the product, mainly caused by HTML injection and crosssite-scripting. The impact of the vulnerability on the affected device may result in an information disclosure and …
VDE-2024-038
Aug. 27, 2025, 12:00 nachm.
Critical vulnerabilities has been discovered in the product, mainly caused by ananonymous FTP server and Telnet access.The impact of the vulnerabilities on the affected device may result in Information disclosure …
VDE-2024-037
Juli 10, 2024, 8:00 vorm.
A critical security vulnerability was discovered in the products, which is caused by the IPv6 stack in the Linux kernel.The impact of the vulnerability on the affected products may result …
VDE-2024-017
Mai 22, 2025, 3:03 nachm.
Critical vulnerabilities have been discovered in the product due to outdated software components.The impact of the vulnerabilities on the affected device may result in Denial of service Bypassing of authentication …