<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/csaf_weidmuellerinterfacegmbhcokg/10</id>
  <title>Most recent entries from csaf_weidmuellerinterfacegmbhcokg</title>
  <updated>2026-10-02T10:35:50.536459+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/vde-2019-018</id>
    <title>VDE-2019-018 — Weidmueller: multiple vulnerabilities in various Industrial Ethernet managed switches</title>
    <updated>2025-05-22T13:03:10+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Multiple issues have been found. Please check the CVEs for details.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/vde-2019-018"/>
    <published>2019-12-05T12:03:00+00:00</published>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/vde-2020-041</id>
    <title>VDE-2020-041 — Weidmueller: u-create studio &lt; 1.20.2 affected by WIBU-SYSTEMS CodeMeter vulnerabilities</title>
    <updated>2025-05-14T12:28:19+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>WIBU-SYSTEMS report multiple vulnerabilities in their CodeMeter Runtime software. As part of the Weidmüller u-create studio installation the WIBU-SYSTEMS CodeMeter is installed by default. As the u-create studio installation bundle contains vulnerable versions of WIBU-SYSTEMS CodeMeter, the u-create studio is affected by a subset of these vulnerabilities. For details refer to section "Impact".</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/vde-2020-041"/>
    <published>2020-10-12T09:14:00+00:00</published>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/vde-2021-002</id>
    <title>VDE-2021-002 — Weidmueller: WI Manager affected by fdtContainer vulnerability</title>
    <updated>2025-05-14T12:28:19+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p>A vulnerability has been discovered in the fdtCONTAINER component and application by M&amp;M Software GmbH.
As this software is part of the Weidmüller FDT/DTM Software with WI Manager, this Weidmueller software is affected by the above vulnerability as well.</p>
<p>The fdtCONTAINER component exchanges binary data blobs with the WI Manager. The WI Manager saves these binary data blobs into a project file.</p>
<p>If an attacker gets write access to the project file, the project file can be manipulated to contain malicious code.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/vde-2021-002"/>
    <published>2021-01-20T13:32:00+00:00</published>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/vde-2021-016</id>
    <title>VDE-2021-016 — Weidmueller: Accidentally open network port in u-controls and IoT-Gateways</title>
    <updated>2025-05-14T12:28:19+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>A network port intended only for device-internal usage is accidentally accessible via external network interfaces.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/vde-2021-016"/>
    <published>2021-05-04T08:17:00+00:00</published>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/vde-2021-026</id>
    <title>VDE-2021-026 — Weidmueller: Multiple vulnerabilities in Industrial WLAN devices</title>
    <updated>2025-05-14T13:00:15+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p>Multiple issues in Weidmueller Industrial WLAN devices have been found.</p>
<p>Initial publication date: 2021-06-23
Update A publication date: 2021-07-02</p>
<p>Update A</p>
<p>CVE-2021-33534</p>
<p>CVSS: 7.2 (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H)
Description: An exploitable command injection vulnerability exists in the hostname functionality of Weidmueller Industrial WLAN devices. A specially crafted entry to network configuration information can cause execution of arbitrary system commands, resulting in full control of the device. An attacker can send various requests while authenticated as a high privilege user to trigger this vulnerability.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/vde-2021-026"/>
    <published>2021-06-23T11:04:00+00:00</published>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/vde-2021-042</id>
    <title>VDE-2021-042 — Weidmueller: Remote I/O fieldbus couplers (IP20) affected by INFRA:HALT vulnerabilities</title>
    <updated>2025-05-14T13:00:14+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>The Weidmueller Remote I/O (IP20) fieldbus couplers (u-remote) are affected by several vulnerabilities of the third-party TCP/IP Niche stack. An attacker may use crafted IP packets to cause a denial of service or breach of integrity of the affected products. Weidmueller recommends restricting network access from the internet and also locally to reduce the attack vector to a manageable minimum.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/vde-2021-042"/>
    <published>2021-10-18T08:24:00+00:00</published>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/vde-2022-008</id>
    <title>VDE-2022-008 — WEIDMUELLER: Multiple vulnerabilities in Modbus TCP/RTU Gateways</title>
    <updated>2022-04-07T06:00:00+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Multiple issues have been found in the affected products. See CVE descriptions for details.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/vde-2022-008"/>
    <published>2022-04-07T06:00:00+00:00</published>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/vde-2021-004</id>
    <title>VDE-2021-004 — Weidmueller: EtherNet/IP Fieldbus Coupler out-of-bounds write</title>
    <updated>2022-06-21T08:00:00+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>A critical vulnerability has been discovered in the utilized component EtherNet/IP Adapter Development Kit (EADK) by Pyramid Solutions, Inc.. For details refer to CVE(s).This vulnerability may allow an attacker to send a specially crafted packet that may result in a denial-of-service condition of the affected products.
The indicated firmware versions are only used on products of hardware version 01.xx.xx.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/vde-2021-004"/>
    <published>2022-06-21T08:00:00+00:00</published>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/vde-2022-056</id>
    <title>VDE-2022-056 — Weidmueller: Multiple IoT and control products affected by JavaScript injection vulnerability</title>
    <updated>2022-12-14T07:00:00+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>A JavaScript injection vulnerability has been discovered in the XML editing system SCHEMA ST4 onlinehelp by Quanos Solutions GmbH. For details refer to CVE.This vulnerability may allow an attacker to inject JavaScript code via URL to the affected products</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/vde-2022-056"/>
    <published>2022-12-14T07:00:00+00:00</published>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/vde-2023-032</id>
    <title>VDE-2023-032 — Weidmueller: WIBU Vulnerability in multiple Products</title>
    <updated>2025-05-22T13:03:10+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Multiple Weidmueller products are affected by recent WIBU vulnerability.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/vde-2023-032"/>
    <published>2023-11-09T07:42:00+00:00</published>
  </entry>
</feed>
