VDE-2024-065
May 14, 2025, 2:28 PM
A vulnerability in the use of hard-coded Platform Keys (PK) within the UEFI framework, known as PKfail, has been discovered in several Pepperl+Fuchs devices.
VDE-2021-037
May 14, 2025, 2:28 PM
An issue was discovered in the mymbCONNECT24 and mbCONNECT24 software in all versions through V2.9.0.
VDE-2020-023
May 14, 2025, 2:28 PM
Manipulated PC Worx projects could lead to a remote code execution due to insufficient input data validation. The attacker needs to get access to an original PC Worx project to …
VDE-2019-007
May 14, 2025, 2:28 PM
A WebHMI utility may be exploited by any logged in user allowing the execution of arbitrary OS commands on the server. This provides the opportunity for a command injection attack.
VDE-2020-006
May 14, 2025, 2:28 PM
With special crafted requests it is possible to get sensitive information, in this case the password hashes, by measuring response delay. With a substantial amount of time this data can …
VDE-2021-021
May 14, 2025, 2:28 PM
An undocumented password protected FTP access to the root directory exists in certain devices of the AXL F BK and IL BK product families (CWE-798).
VDE-2024-044
May 14, 2025, 2:28 PM
Several Helmholz products are vulnerable to a possible race condition vulnerability in OpenSSH named "regreSSHion".
VDE-2021-002
May 14, 2025, 2:28 PM
A vulnerability has been discovered in the fdtCONTAINER component and application by M&M Software GmbH. As this software is part of the Weidmüller FDT/DTM Software with WI Manager, this Weidmueller …