<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/csaf_helmholzgmbhcokg/10</id>
  <title>Most recent entries from csaf_helmholzgmbhcokg</title>
  <updated>2026-10-08T22:38:56.460334+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/vde-2026-070</id>
    <title>VDE-2026-070 — Helmholz: Authenticated unintended access to critical program parameters in myREX24V2/myREX24V2.virtual</title>
    <updated>2026-06-23T12:00:00+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>There is a vulnerability in myREX24V2/myREX24V2.virtual that allows an authenticated remote attacker to access a hidden configuration method, that should not be accessible by any user, to modify critical program parameters.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/vde-2026-070"/>
    <published>2026-06-23T11:00:00+00:00</published>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/vde-2026-059</id>
    <title>VDE-2026-059 — Helmholz: Multiple vulnerabilities in REX100/REX200/REX250</title>
    <updated>2026-05-27T11:00:00+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Two command injection vulnerabilities have been discovered in Helmholz REX100/REX200/REX250.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/vde-2026-059"/>
    <published>2026-05-27T11:00:00+00:00</published>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/vde-2026-058</id>
    <title>VDE-2026-058 — Helmholz: Multiple SQLi vulnerabilities in myREX24V2/myREX24V2.virtual</title>
    <updated>2026-07-20T13:30:00+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Helmholz: Multiple SQLi vulnerabilities in myREX24V2/myREX24V2.virtual</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/vde-2026-058"/>
    <published>2026-05-21T11:00:00+00:00</published>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/vde-2026-015</id>
    <title>VDE-2026-015 — Helmholz: Use of a Broken or Risky Cryptographic Algorithm</title>
    <updated>2026-04-21T12:00:00+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Vulnerabilities in WALL IE devices with firmware &lt;= V1.10.210 that allow an attacker to gain control over the device.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/vde-2026-015"/>
    <published>2026-04-21T10:00:00+00:00</published>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/vde-2026-043</id>
    <title>VDE-2026-043 — Helmholz: Multiple Vulnerabilities in myREX24V2/myREX24V2.virtual</title>
    <updated>2026-05-22T13:00:00+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Multiple vulnerabilities have been discovered in Helmholz myREX24V2/myREX24V2.virtual that could allow RCE, SQLi or information leakage.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/vde-2026-043"/>
    <published>2026-04-13T11:00:00+00:00</published>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/vde-2026-013</id>
    <title>VDE-2026-013 — Helmholz: Use of a Broken or Risky Cryptographic Algorithm</title>
    <updated>2026-04-07T08:00:00+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Vulnerabilities in PROFINET-Switch devices with firmware &lt;= V1.12.010 that allow an attacker to gain control over the device.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/vde-2026-013"/>
    <published>2026-04-07T08:00:00+00:00</published>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/vde-2026-025</id>
    <title>VDE-2026-025 — Helmholz: Multiple Vulnerabilities in myREX24V2 / myREX24V2.virtual</title>
    <updated>2026-03-23T12:00:00+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Multiple vulnerabilities have been discovered in Helmholz myREX24V2 / myREX24V2.virtual that could allow unauthenticated RCE or SQLi.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/vde-2026-025"/>
    <published>2026-03-23T12:00:00+00:00</published>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/vde-2025-069</id>
    <title>VDE-2025-069 — Helmholz: Sandbox escape in REX200/250 LUA interpreter</title>
    <updated>2025-07-31T10:00:00+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>An authenticated remote attacker can exploit an undocumented method to escape the LUA sandbox in REX200/250 devices, enabling the execution of arbitrary operating system commands and leading to full system compromise.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/vde-2025-069"/>
    <published>2025-07-31T10:00:00+00:00</published>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/vde-2025-059</id>
    <title>VDE-2025-059 — Helmholz: Multiple vulnerabilities in REX 100</title>
    <updated>2025-07-21T10:00:00+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Multiple vulnerabilities in all REX 100 devices with firmware &lt;= 2.3.2 that allow an attacker to gain full control over the device.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/vde-2025-059"/>
    <published>2025-07-21T10:00:00+00:00</published>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/vde-2025-038</id>
    <title>VDE-2025-038 — Vulnerabilities in myREX24/myREX24.virtual</title>
    <updated>2025-06-24T10:00:00+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Two vulnerabilities in myREX24/myREX24.virtual can lead to user enumeration an password bypass.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/vde-2025-038"/>
    <published>2025-06-24T10:00:00+00:00</published>
  </entry>
</feed>
