Advisories

For CVSS 2.0, 3.0 and 3.2
VDE-2024-033
May 14, 2025, 4:34 PM
Vulnerabilities have been discovered in the product, mainly caused by HTML injection and crosssite-scripting. The impact of the vulnerability on the affected device may result in an information disclosure and …
VDE-2024-022
Aug. 27, 2025, 12:00 PM
Start sequence for firewall service allows attack during the boot process. Password is reset to default when the device undergoes a firmware upgrade.
VDE-2024-044
May 14, 2025, 2:28 PM
Several Helmholz products are vulnerable to a possible race condition vulnerability in OpenSSH named "regreSSHion".
VDE-2024-038
Aug. 27, 2025, 12:00 PM
Critical vulnerabilities has been discovered in the product, mainly caused by ananonymous FTP server and Telnet access.The impact of the vulnerabilities on the affected device may result in Information disclosure …
VDE-2024-037
July 10, 2024, 8:00 AM
A critical security vulnerability was discovered in the products, which is caused by the IPv6 stack in the Linux kernel.The impact of the vulnerability on the affected products may result …
VDE-2024-012
Aug. 27, 2025, 12:00 PM
In ifm Smart PLC firmware up to version 4.3.17 for Smart PLC controllers AC14xx and AC4xxS, an attacker can access the configuration by using the hardcoded credentials. The endpoint hosts …
VDE-2024-032
July 3, 2024, 3:33 PM
There exists a vulnerability in all REX 100 devices with firmware <= 2.2.11 that allows an authenticated attacker to execute arbitrary system commands via GET requests. Update: 03.07.2024 3:30pm …
VDE-2024-030
July 3, 2024, 11:00 AM
There exists a vulnerability in all mbNET.mini devices with firmware <= 2.2.11 that allows an authenticated attacker to execute arbitrary system commands via GET requests. Update: 03.07.2024 3:30 pm …