Advisories

For CVSS 2.0, 3.0 and 3.2
VDE-2024-064
April 11, 2025, 9:00 AM
Beckhoff's TwinCAT 3.1 Build 4026 software is modularized and is installed with different packages depending on user requirements. These packages are selected and installed using either the command line utility …
VDE-2021-008
May 22, 2025, 3:03 PM
The affected products can act as OPC UA client or server and are vulnerable to two different kind of attacks via the OPC UA protocol. For both cases the attacker …
VDE-2024-054
May 22, 2025, 3:03 PM
Several vulnerabilities have been identified in the web-based management of WAGO devices utilized in Endress+Hauser IoT solutions. WAGO has provided fixes for these vulnerabilities, which have been integrated into the …
VDE-2024-069
Nov. 6, 2024, 12:27 PM
Multiple vulnerabilities have been discovered in Helmholz products that could allow RCE or unauthorized file access. CVE-2024-45272 affects the myREX24 V2 and myREX24.virtual products, while CVE-2024-45273 affects the REX200/250, myREX24 …
VDE-2024-056
Aug. 27, 2025, 12:00 PM
Multiple vulnerabilities have been discovered in MB connect line mbNET.mini product allowing for RCE or unauthorized file access.
VDE-2024-066
Aug. 27, 2025, 12:00 PM
Multiple vulnerabilities have been discovered in REX100 allowing for RCE or unauthorized file access.
VDE-2024-068
May 14, 2025, 2:28 PM
Multiple vulnerabilities have been discovered in MB connect line products that could allow RCE or unauthorized file access. CVE-2024-45272 affects the mbCONNECT24 and mymbCONNECT24 products, while CVE-2024-45273 affects the mbNET/mbNET.rokey, …
VDE-2024-067
May 14, 2025, 3:00 PM
Vulnerabilities in .NET and Visual Studio functions System.Text.Json, System.Formats.Asn1, OPCFoundation.NetStandard.Opc.Ua.Core allow an remote attacker to execute a Denial-of-Servce attack.