Advisories

Für CVSS 2.0, 3.0 und 3.2
VDE-2021-019
Mai 14, 2025, 3:00 nachm.
Phoenix Contact Classic Line industrial controllers are developed and designed for the use in closed industrial networks. The communication protocols and device access do not feature authentication measures. Remote attackers …
VDE-2017-006
Mai 14, 2025, 3:00 nachm.
PHOENIX CONTACT FL SWITCH 3xxx series, FL SWITCH 4xxx series, and FL SWITCH 48xx series products running firmware version 1.0 to 1.32 allow unauthenticated users with network access to gain …
VDE-2024-067
Mai 14, 2025, 3:00 nachm.
Vulnerabilities in .NET and Visual Studio functions System.Text.Json, System.Formats.Asn1, OPCFoundation.NetStandard.Opc.Ua.Core allow an remote attacker to execute a Denial-of-Servce attack.
VDE-2024-070
Mai 14, 2025, 3:00 nachm.
Improper file permission handling allows an authenticated low privileged user to gain root access.
VDE-2024-052
Mai 14, 2025, 3:00 nachm.
The pathfinder TCP encapsulation service is vulnerable to a drain of open file descriptors.
VDE-2025-005
Mai 14, 2025, 3:00 nachm.
A vulnerability has been found in a cryptographic library of Infineon Technologies that is part of the firmware of the CmDongles. The exploitation of this vulnerability has been classified as …
VDE-2020-003
Mai 14, 2025, 2:28 nachm.
Multiple Vulnerabilities exist in components used by the aforementioned products. See CVE-Details for more information.
VDE-2017-004
Mai 14, 2025, 2:28 nachm.
A cross-site scripting (XSS) vulnerability affects PHOENIX CONTACT FL COMSERVER products running firmware versions prior to 1.99, 2.20, or 2.40.