Advisories

Für CVSS 2.0, 3.0 und 3.2
VDE-2022-055
Feb. 16, 2023, 2:43 nachm.
An unknown and undocumented configuration interface with limited functionality was identified on the affected devices.
VDE-2022-054
Jan. 12, 2023, 8:52 vorm.
A vulnerability in the web-based management (WBM) of WAGOs programmable logic controller (PLC) could allow an unauthenticated remote attacker to retrieve sensitive information.
VDE-2022-040
Sept. 22, 2023, 2:39 nachm.
UPDATE A: Solution has updated release datesUPDATE B: Solution has updated release datesThis Advisory is published with reference to: CODESYS Advisory 2022-11 (Security update for CODESYS Control V2) CODESYS Advisory …
VDE-2022-042
Okt. 17, 2022, 10:00 vorm.
The MAC address filter as part of the firewall has a flaw, which prevents the MAC address filter to be active after restart. In this way a remote attacker is …
VDE-2022-047
Okt. 12, 2022, 10:00 vorm.
The FTP server does not properly release memory resources that were reserved for incomplete connection attempts by FTP clients. This could allow a remote attacker to generate a denial of …
VDE-2022-031
Aug. 17, 2022, 10:00 vorm.
Multiple WAGO product families are prone to multiple vulnerabilities affecting CODESYS control runtime system.
VDE-2022-035
Aug. 17, 2022, 10:00 vorm.
Multiple WAGO product families are prone to multiple vulnerabilities affecting CODESYS control runtime system.
VDE-2022-009
Mai 22, 2025, 3:03 nachm.
The Linux kernel starting from 5.8 has a flaw which can lead to privilege escalation for a local user. The kernel is used in several Versions of the FW of …