Suchergebnisse (106)

Zeige nur:
Advisory
VDE-2025-048
08.09.2025 09:00
A design flaw in the file system management exposes internal system partitions - intended to be hidden - during brief moments when they are mounted by the firmware. These partitions …
Advisory
VDE-2025-040
16.06.2025 12:00
The base ctrlX OS apps Device Admin and Solutions contain multiple vulnerabilities. In a worst case scenario, a remote authenticated (low-privileged) attacker might be able to execute arbitrary OS commands …
Advisory
VDE-2020-011
22.05.2025 15:03
An attacker needs an authorized login on the device in order to exploit the herein mentioned vulnerabilities. The reported vulnerabilities allow a local attacker with valid login credentials who is …
Advisory
VDE-2020-008
14.05.2025 14:53
The Cloud Connectivity of the WAGO PLCs is used to connect the device with the cloud services from different providers. It also supports maintenance functionality with the firmware update function …
Advisory
VDE-2023-044
05.12.2023 08:00
The Library WagoAppRTU which is part of the Wago Telecontrol Configurator is prone to improper input validation. By sending specifically crafted MMS packets an attacker can trigger a denial-of-service condition.
Advisory
VDE-2020-036
14.05.2025 15:00
Multiple vulnerabilities in the WAGO I/O-Check Service were reported.
Advisory
VDE-2021-038
14.05.2025 14:53
WAGO controllers have always been designed for easy connection to IT infrastructure. Even controllers from legacy product lines support encryption standards to ensure secure communication. With special crafted requests it …
Advisory
VDE-2024-014
05.06.2025 15:28
Several WAGO Firmwares are vulnerable to a to a remote attack which allows to bypass the integrity check through OpenSSH. This called Terrapin attack occurs because of mishandled handshake phase.