Advisories

For CVSS 2.0, 3.0 and 3.2
VDE-2026-059
May 27, 2026, 1:00 PM
Two command injection vulnerabilities have been discovered in Helmholz REX100/REX200/REX250.
VDE-2026-058
May 27, 2026, 1:00 PM
Multiple SQLi vulnerabilities have been discovered in Helmholz myREX24V2/myREX24V2.virtual
VDE-2026-015
April 21, 2026, 2:00 PM
Vulnerabilities in WALL IE devices with firmware <= V1.10.210 that allow an attacker to gain control over the device.
VDE-2026-043
May 22, 2026, 3:00 PM
Multiple vulnerabilities have been discovered in Helmholz myREX24V2/myREX24V2.virtual that could allow RCE, SQLi or information leakage.
VDE-2026-013
April 7, 2026, 10:00 AM
Vulnerabilities in PROFINET-Switch devices with firmware <= V1.12.010 that allow an attacker to gain control over the device.
VDE-2026-025
March 23, 2026, 1:00 PM
Multiple vulnerabilities have been discovered in Helmholz myREX24V2 / myREX24V2.virtual that could allow unauthenticated RCE or SQLi.
VDE-2025-069
July 31, 2025, 12:00 PM
An authenticated remote attacker can exploit an undocumented method to escape the LUA sandbox in REX200/250 devices, enabling the execution of arbitrary operating system commands and leading to full system …
VDE-2025-059
July 21, 2025, 12:00 PM
Multiple vulnerabilities in all REX 100 devices with firmware <= 2.3.2 that allow an attacker to gain full control over the device.