Advisories

For CVSS 2.0, 3.0 and 3.2
VDE-2024-067
May 14, 2025, 3:00 PM
Vulnerabilities in .NET and Visual Studio functions System.Text.Json, System.Formats.Asn1, OPCFoundation.NetStandard.Opc.Ua.Core allow an remote attacker to execute a Denial-of-Servce attack.
VDE-2024-051
May 14, 2025, 3:00 PM
mGuards use an OpenSSH server for SSH access. This server is vulnerable to a remote code injection.
VDE-2024-039
Aug. 27, 2025, 12:00 PM
Confidential data in HTTP query string of user requests. Incomplete sanitation of user input in administrative web interface.
VDE-2024-052
May 14, 2025, 3:00 PM
The pathfinder TCP encapsulation service is vulnerable to a drain of open file descriptors.
VDE-2024-022
Aug. 27, 2025, 12:00 PM
Start sequence for firewall service allows attack during the boot process. Password is reset to default when the device undergoes a firmware upgrade.
VDE-2024-029
June 11, 2024, 8:00 AM
The OpenSSL library used in the affected products is vulnerable to an unbounded growth of the session cache in the TLSv1.3 implementation.
VDE-2024-019
May 14, 2024, 8:00 AM
Multiple vulnerabilities have been discovered in the Firmware of CHARX SEC charge controllers. Update: credis have been updated 
VDE-2024-011
March 12, 2024, 8:00 AM
Multiple vulnerabilities have been discovered in the Firmware of CHARX SEC charge controllers. These vulnerabilities were discovered as part of a PWN2OWN competition initiated by Trend Micro Zero Day Initiative …