VDE-2025-001
June 5, 2025, 3:31 PM
The CODESYS Key USB dongle, which is based on WIBU CodeMeter technology, is affected by a physical side-channel vulnerability.
VDE-2024-070
May 14, 2025, 3:00 PM
Improper file permission handling allows an authenticated low privileged user to gain root access.
VDE-2025-005
May 14, 2025, 3:00 PM
A vulnerability has been found in a cryptographic library of Infineon Technologies that is part of the firmware of the CmDongles. The exploitation of this vulnerability has been classified as …
VDE-2024-073
May 22, 2025, 3:03 PM
Multiple Linux component vulnerabilities fixed in latest PLCnext Firmware release 2024.0.6 LTS
VDE-2024-071
May 22, 2025, 3:03 PM
Multiple Linux component vulnerabilities fixed in latest PLCnext Firmware release 2024.0.6 LTS
VDE-2024-072
Dec. 3, 2024, 12:00 PM
The following firmware versions installed on several devices are vulnerable due to a vulnerability in the CODESYS Control V3 web server.
VDE-2024-059
Dec. 3, 2024, 3:00 PM
An unauthenticated attacker would be able to send crafted requests to cause the CODESYS Gateway Server V2 to allocate excessive memory or consume all available TCP client connections. Besides, passwords …
VDE-2024-074
May 14, 2025, 2:28 PM
A security researcher discovered that in the affected products an authenticated (administration privileges) SQL injection has been found on the administration panel allowing access to a database. The database that …