Advisories

Für CVSS 2.0, 3.0 und 3.2
VDE-2020-013
März 27, 2020, 10:48 vorm.
If the software runs as a service, a user with limited access can gain administrator privileges by starting a shell with administrator rights from the Import / Export configuration dialog.
VDE-2018-015
Sept. 21, 2018, 9:03 vorm.
Incorrect handling request with non-standard symbols allows remote attackers to initiate a complete lock up of the bus coupler. Authentication of the request is not required.
VDE-2018-012
Aug. 13, 2018, 1:55 nachm.
The processing program of the IEC 61131 program can be slowed down or stopped completely by creating a large amount of network traffic that needs to be handled by the …
VDE-2018-005
Mai 16, 2018, 7:35 vorm.
Web interface CGI applications may copy the contents of the running configuration file to a commonly accessed file. Clever manipulation of a web login request can expose the contents of …