Advisories

For CVSS 2.0, 3.0 and 3.2
VDE-2025-079
March 10, 2026, 8:00 AM
An unauthenticated remote attacker can exploit several vulnerabilities in Janitza UMG 96RM-E devices to ultimately gain full system access and remote code execution.
VDE-2025-094
Nov. 24, 2025, 1:00 PM
A vulnerability in the devices UMG 96-PA and UMG 96-PA-MID+ enables an unauthenticated remote attacker to cause the device to become unavailable.