#csaf

2025-07-03

#OT #Advisory VDE-2025-036
Endress+Hauser: Multiple vulnerabilities in Endress+Hauser MEAC300-FNADE4

#CVE CVE-2025-1708, CVE-2025-27461, CVE-2025-27460, CVE-2025-27449, CVE-2025-1710, CVE-2025-27456, CVE-2025-27447, CVE-2025-27448, CVE-2025-27458, CVE-2025-27450, CVE-2025-1709, CVE-2025-27457, CVE-2025-27451, CVE-2025-27453, CVE-2025-27452, CVE-2025-27459, CVE-2025-1711, CVE-2025-27454, CVE-2025-27455

certvde.com/en/advisories/VDE-

#CSAF endress-hauser.csaf-tp.certvde

2025-06-30

#OT #Advisory VDE-2025-046
Pilz: Authentication Bypass and Cross-Site-Scripting in PiCtory

#CVE CVE-2025-32011, CVE-2025-35996, CVE-2025-36558

certvde.com/en/advisories/VDE-

#CSAF pilz.csaf-tp.certvde.com/.well

2025-06-25

#OT #Advisory VDE-2025-043
Lenze: PLC Designer V4 with insecure storage of sensitive information

#CVE CVE-2025-41647

certvde.com/en/advisories/VDE-

#CSAF lenze.csaf-tp.certvde.com/.wel

2025-06-24

#OT #Advisory VDE-2025-035
MB connect line: Vulnerabilities in mbCONNECT24/mymbCONNECT24

#CVE CVE-2025-3091, CVE-2025-3092

certvde.com/en/advisories/VDE-

#CSAF mbconnectline.csaf-tp.certvde.

2025-06-16

#OT #Advisory VDE-2025-040
WAGO: Vulnerabilities in ctrlX OS app

#CVE CVE-2025-24351, CVE-2025-24344, CVE-2025-24338, CVE-2025-24343, CVE-2025-24350, CVE-2025-24346, CVE-2025-24347, CVE-2025-24348, CVE-2025-24349, CVE-2025-27532, CVE-2025-24340, CVE-2025-24341, CVE-2025-24342, CVE-2025-24345, CVE-2025-24339

certvde.com/en/advisories/VDE-

#CSAF wago.csaf-tp.certvde.com/.well

2025-06-11

#OT #Advisory VDE-2025-052
Weidmueller: Security routers IE-SR-2TX are affected by multiple vulnerabilities

#CVE CVE-2025-41661, CVE-2025-41662, CVE-2025-41663

certvde.com/en/advisories/VDE-

#CSAF weidmueller.csaf-tp.certvde.co

2025-05-27

#OT #Advisory VDE-2025-044
Weidmueller: Industrial ethernet switches are affected by multiple vulnerabilities

#CVE CVE-2025-41651, CVE-2025-41652, CVE-2025-41649, CVE-2025-41650, CVE-2025-41653

certvde.com/en/advisories/VDE-

#CSAF weidmueller.csaf-tp.certvde.co

2025-05-27

#OT #Advisory VDE-2025-042
Lenze: VPN Client Privilege Escalation in combination with Lenze x500 IoT Gateway

#CVE CVE-2025-26168, CVE-2025-26169

certvde.com/en/advisories/VDE-

#CSAF lenze.csaf-tp.certvde.com/.wel

2025-05-26

#OT #Advisory VDE-2025-011
PEPPERL+FUCHS: Profinet Gateway LB8122A.1.EL – Device is affected by XSS vulnerability and information disclosure

#CVE CVE-2025-41654, CVE-2025-41655, CVE-2025-1985

certvde.com/en/advisories/VDE-

#CSAF pepperl-fuchs.csaf-tp.certvde.

2025-05-19

#OT #Advisory VDE-2025-041
Weidmueller: ResMa is affected by a Vulnerability for ASP.NET AJAX

Weidmueller product ResMa is affected by ASP.NET AJAX vulnerability.
Weidmueller has released a new firmware for the affected product to fix the vulnerability.
#CVE CVE-2025-3600

certvde.com/en/advisories/VDE-

#CSAF weidmueller.csaf-tp.certvde.co

2025-05-13

#OT #Advisory VDE-2025-029
Phoenix Contact: Security Advisory for AXL F BK and IL BK bus couplers

A denial of service (DoS) attack targeting port 80 (http service) can overload the device (CWE-770). This behaviour has been observed when running network security scanners.
#CVE CVE-2025-2813

certvde.com/en/advisories/VDE-

#CSAF phoenixcontact.csaf-tp.certvde

Client Info

Server: https://mastodon.social
Version: 2025.04
Repository: https://github.com/cyevgeniy/lmst