Summary
Successful exploitation of this vulnerability could allow an attacker to hijack session cookies and issue state-changing requests as an operator which would allow the attacker to control the programmable logic controller and the physical processes it drives.
The following versions of OpenPLC Runtime v3 …
Summary
Multiple Siemens products are vulnerable to the "Copy Fail" vulnerability. Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not …
Summary
The products listed below contain a denial of service vulnerability that could allow an attacker to force the devices into protection mode under certain conditions. This disables remote connectivity functions (Web Access) to the devices. Siemens has released new versions for the affected products and …
Summary
Successful exploitation of this vulnerability could result in a system crash, a DoS, or memory corruption, which could lead to code execution on the victim system.
The following versions of lwIP (Lightweight IP) are affected:
- API >=2.0.1|<=2.2.1 (CVE-2026-91018)
Summary
Hitachi Energy is aware of vulnerabilities that affect the FACTS Control systems with GWS component listed in this document. An attacker exploiting these vulnerabilities can cause impact on confidentiality, integrity and availability of the product. Following FACTS Control systems with GWS component deployed from year …
Summary
Successful exploitation of these vulnerabilities could allow unauthorized access to telemetry data and firmware.
The following versions of Bransys ELD are affected:
- Android <11.00.00 (CVE-2026-86520, CVE-2026-86689, CVE-2026-77960)
- iOS <1.1.54 (CVE-2026-86520, CVE-2026-86689, CVE-2026-77960)
| CVSS | Vendor | …
|---|
Summary
Successful exploitation of this vulnerability could allow a local attacker to successfully authenticate even with an invalid block password by executing the affected product and modify part of the executable module in memory, and thereby allows the attacker to view, tamper with, destroy, or delete …