Advisories

Für CVSS 2.0, 3.0 und 3.2
VDE-2020-036
Mai 14, 2025, 3:00 nachm.
Multiple vulnerabilities in the WAGO I/O-Check Service were reported.
VDE-2021-014
Mai 22, 2025, 3:03 nachm.
Multiple vulnerabilities were reported in CODESYS 2.3 Runtime. The CODESYS 2.3 Runtime is an essential component in several WAGO PLC's.
VDE-2021-013
Mai 14, 2025, 2:28 nachm.
The Web-Based Management (WBM) of WAGOs industrial managed switches is typically used for administration, commissioning and updates. The reported vulnerabilities allow an attacker with access to the device and the …
VDE-2020-048
Jan. 14, 2021, 3:57 nachm.
The fdtCONTAINER component is integrated into an application (host application). The fdtCONTAINER application is a specific host application which integrates the fdtCONTAINER component. The fdtCONTAINER component exchanges binary data blobs …
VDE-2020-045
Mai 14, 2025, 2:53 nachm.
The reported vulnerability allows an attacker who has network access to the device to execute code with specially crafted packets.
VDE-2020-042
Mai 14, 2025, 3:00 nachm.
The Web-Based Management (WBM) of WAGOs programmable logic controller (PLC) is typically used for administration, commissioning and updates. Older firmware versions of the PLC family 750-88x and 750-352 are vulnerable …
VDE-2020-029
Mai 14, 2025, 3:00 nachm.
The Web-Based Management (WBM) of WAGOs programmable logic controller (PLC) is typically used for administration, commissioning and updates. The SNMP configuration page of the device is vulnerable for a persistent …
VDE-2020-028
Mai 14, 2025, 3:00 nachm.
The Web-Based Management (WBM) of WAGOs programmable logic controller (PLC) is typically used for administration, commissioning and updates. With special crafted requests it is possible to change some special parameters …