Advisories

Für CVSS 2.0, 3.0 und 3.2
VDE-2023-017
Mai 22, 2025, 3:03 nachm.
Two vulnerabilities have been discovered in the firmware of TC ROUTER and TC CLOUD CLIENT devices. Update A, 2024-08-12 Added a summary text Added details to impact
VDE-2023-010
Mai 14, 2025, 3:00 nachm.
The FL MGUARD family of devices is affected by two vulnerabilities.
VDE-2023-004
April 11, 2023, 10:00 vorm.
A Directory Traversal Vulnerability enables arbitrary file access in ENERGY AXC PU Web service.An authenticated restricted user of the web frontend can access, read, write and create files throughout the …
VDE-2023-003
Mai 14, 2025, 3:00 nachm.
Multiple vulnerabilities have been discovered in CODESYS Control V3 runtime system. For details regarding the single vulnerabilities please refer to the security advisories issued by CODESYS: - CODESYS Security Advisory …
VDE-2022-053
Mai 14, 2025, 3:00 nachm.
Two Vulnerabilities have been discovered in TC ROUTER 4000 series and CLOUD CLIENT 2000 series up to firmware version 4.5.7x.107. The web administration interface is vulnerable for authenticated admin users …
VDE-2023-001
Juni 5, 2025, 3:28 nachm.
A new LTS Firmware release fixes known vulnerabilities in used open-source libraries. In addition, the following improvements have been implemented: HMI - Hardening against DoS attacks. - Hardening against memory …
VDE-2022-058
Mai 14, 2025, 3:00 nachm.
Two vulnerabilities have been discovered in the Expat XML parser library (aka libexpat). This open-source component is widely used in a lot of products worldwide. An attacker could cause a …
VDE-2022-051
Mai 22, 2025, 3:03 nachm.
A denial of service of the HTTPS management interface of PHOENIX CONTACT FL MGUARD and TC MGUARD devices can be triggered by a larger number of unauthenticated HTTPS connections originating …