Elektrine
Log in Register
Paige Chat Timeline Gallery Friends Email Drive DNS Private DNS Domains VPN Kairo Nerve
Remote

CERT@VDE

@certvde@infosec.exchange
mastodon 4.8.0-alpha.3+glitch
  • Open on infosec.exchange

est. 2017
Supporting OT/ICS Security.
#CVE #CSAF #Advisory #OT
We are the #CNA for:
365FarmNet, ads-tec Industrial IT, AKG, AMX, Auma, Beckhoff, Bender, Bucher Automation, Carlo Gavazzi Controls, CLAAS, Codesys, Dräger, DURAG, Endress+Hauser, Etherwan Systems, Euchner, Festo, Festo Didactic, Frauscher, Futronic, GEA, Harman International, Helmholz, Hilscher, HIMA, HYDAC, HYDAC Electronic GmbH, HYDAC Software GmbH, HYDAC Filter Systems GmbH, TTControl, ifm, Innominate, JBL, Jetter, JUMO, K4 DIGITAL, KEB, Kendrion, KEBA, KROHNE, KUKA, KUHNKE, Lenze, M&M Software, MB connect line, Miele, Murrelektronik, NEOCEPTION, Pepperl+Fuchs, PHOENIX CONTACT, Pilz, Red Lion Europe, Satinfo, SMA, SWARCO, Sysmik, TRUMPF, VARTA Storage, VEGA, VMT Vision Machine Technic, WAGO, Weidmueller, Welotec, Wiesemann & Theis.
See https://certvde.com/en/cna/ for details.

0 Followers
0 Following
10 Posts
Joined March 06, 2025
Website:
https://certvde.com
Advisories:
https://certvde.com/en/advisories/
GitHub:
https://github.com/CERTVDE
Open post
CERT@VDE @certvde@infosec.exchange
· 2mo ago
#OT #Advisory VDE-2026-031 WAGO: Early-Boot Diagnostic Exposure in WAGO System I/O Field Devices Certain devices in the WAGO System I/O Field series enable an internal diagnostic capability during the initial stages of system startup. This behavior, which is not part of the publicly documented feature set, briefly allows access to system functions before the main operating environment becomes fully active. Under specific conditions, this could permit interactions with system components that are normally protected during regular operation. #CVE CVE-2026-4769 https://certvde.com/en/advisories/vde-2026-031/ #CSAF https://wago.csaf-tp.certvde.com/.well-known/csaf/white/2026/vde-2026-031.json
certvde.com
0
0
0
0
Open post
CERT@VDE @certvde@infosec.exchange
· 2mo ago
#OT #Advisory VDE-2026-077 Lenze: Incorrect signature validation in the enable SSH routine The affected products belong to the Controller or Servo Drive product family and contain a vulnerability in a security-critical activation mechanism for service access. The signature verification of a file used for SSH activation can be compromised, which could allow unauthorized access to the device. #CVE CVE-2026-14837 https://certvde.com/en/advisories/vde-2026-077/ #CSAF https://lenze.csaf-tp.certvde.com/.well-known/csaf/white/2026/vde-2026-077.json
certvde.com
0
0
0
0
Open post
CERT@VDE @certvde@infosec.exchange
· 2mo ago
#OT #Advisory VDE-2026-076 ads-tec Industrial IT: Multiple Vulnerabilities in ADS-TEC IRF Products The ADS-TEC IRF1000 and IRF3000 products are affected by multiple vulnerabilities in firmware releases prior to 2.3.0: authorization, robustness and redirect flaws in the proprietary configuration interface and web UI, and multiple vulnerabilities in the bundled third-party components dnsmasq, OpenSC and OpenSSL. All are fixed in firmware 2.3.0. #CVE CVE-2026-14168, CVE-2026-14167, CVE-2026-14169, CVE-2025-69421, CVE-2025-69420, CVE-2025-69419, CVE-2026-5172, CVE-2026-2291, CVE-2026-14171, CVE-2026-22795, CVE-2026-22796, CVE-2026-4893, CVE-2025-68160, CVE-2025-69418, CVE-2026-40510 https://certvde.com/en/advisories/vde-2026-076/ #CSAF https://ads-tec-iit.csaf-tp.certvde.com/.well-known/csaf/white/2026/vde-2026-076.json
ads-tec Industrial IT: Multiple Vulnerabilities in ADS-TEC IRF Products
certvde.com

ads-tec Industrial IT: Multiple Vulnerabilities in ADS-TEC IRF Products

0
0
0
0
Open post
CERT@VDE @certvde@infosec.exchange
· 2mo ago
#OT #Advisory VDE-2026-081 Weidmueller: Security routers IE-SR-4TX and IE-SR-4GT are affected by multiple vulnerabilities Weidmueller security routers IE-SR-4TX and IE-SR-4GT are affected by multiple vulnerabilities (CVE-2026-14167, CVE-2026-14168, CVE-2026-14169, CVE-2026-14171, CVE-2026-2291, CVE-2026-4893, CVE-2026-5172, CVE-2026-40510, CVE-2025-68160, CVE-2025-69418, CVE-2025-69419, CVE-2025-69420, CVE-2025-69421, CVE-2026-22795, CVE-2026-22796) in firmware releases prior to V2.3.0 authorization, robustness and redirect flaws in the proprietary configuration interface and web UI, and multiple vulnerabilities in the bundled third-party components dnsmasq, OpenSC and OpenSSL. All are fixed in firmware V2.3.0. #CVE CVE-2026-14168, CVE-2026-14167, CVE-2026-14169, CVE-2025-69421, CVE-2025-69420, CVE-2025-69419, CVE-2026-5172, CVE-2026-2291, CVE-2026-14171, CVE-2026-22795, CVE-2026-22796, CVE-2026-4893, CVE-2025-68160, CVE-2025-69418, CVE-2026-40510 https://certvde.com/en/advisories/vde-2026-081/ #CSAF https://weidmueller.csaf-tp.certvde.com/.well-known/csaf/white/2026/vde-2026-081.json
Weidmueller: Security routers IE-SR-4TX and IE-SR-4GT are affected by multiple vulnerabilities
certvde.com

Weidmueller: Security routers IE-SR-4TX and IE-SR-4GT are affected by multiple vulnerabilities

0
0
0
0
Open post
CERT@VDE @certvde@infosec.exchange
· 2mo ago
#OT #Advisory VDE-2026-085 Weidmueller: SQL Injection Vulnerability in PROCON-WEB SCADA A remote unauthenticated attacker can exploit a SQL injection vulnerability in PROCON-WEB SCADA to execute arbitrary commands. #CVE CVE-2026-16462 https://certvde.com/en/advisories/vde-2026-085/ #CSAF https://weidmueller.csaf-tp.certvde.com/.well-known/csaf/white/2026/vde-2026-085.json
Weidmueller: SQL Injection Vulnerability in PROCON-WEB SCADA
certvde.com

Weidmueller: SQL Injection Vulnerability in PROCON-WEB SCADA

0
0
0
0
Open post
CERT@VDE @certvde@infosec.exchange
· 2mo ago
#OT #Advisory VDE-2026-041 CODESYS PROFINET Controller - Out-of-bounds Write CODESYS PROFINET is an add‑on for the CODESYS Development System that provides a fully integrated PROFINET protocol stack along with diagnostic capabilities. When a PROFINET Controller is configured, this vulnerable protocol stack is downloaded to and executed by CODESYS Control runtime systems. #CVE CVE-2026-35226 https://certvde.com/en/advisories/vde-2026-041/ #CSAF https://codesys.csaf-tp.certvde.com/.well-known/csaf/white/2026/advisory2026-06_vde-2026-041.json
CODESYS PROFINET Controller - Out-of-bounds Write
certvde.com

CODESYS PROFINET Controller - Out-of-bounds Write

0
0
0
0
Open post
CERT@VDE @certvde@infosec.exchange
· 2mo ago
#OT #Advisory VDE-2026-008 Phoenix Contact: Multiple vulnerabilities in the firmware of CHARX SEC3xxx charging controllers Multiple vulnerabilities have been identified in the firmware of CHARX SEC-3xxx EV charging controllers, including the CHARX SEC-3000, SEC-3050, SEC-3100, and SEC-3150 models. The flaws could allow attackers to compromise the devices remotely, resulting in a complete loss of confidentiality, integrity, and availability. #CVE CVE-2026-7849, CVE-2026-44108, CVE-2026-44104, CVE-2026-44101, CVE-2026-44090, CVE-2026-44100, CVE-2026-44092, CVE-2026-44091, CVE-2026-44098, CVE-2026-44094, CVE-2026-44106, CVE-2026-44099, CVE-2026-44096, CVE-2026-44095, CVE-2026-44093, CVE-2026-44107, CVE-2026-44097, CVE-2026-44105, CVE-2026-44103, CVE-2026-44102 https://certvde.com/en/advisories/vde-2026-008/ #CSAF https://phoenixcontact.csaf-tp.certvde.com/.well-known/csaf/white/2026/vde-2026-008.json
Phoenix Contact: Multiple vulnerabilities in the firmware of CHARX SEC3xxx charging controllers
certvde.com

Phoenix Contact: Multiple vulnerabilities in the firmware of CHARX SEC3xxx charging controllers

0
0
0
0
Open post
CERT@VDE @certvde@infosec.exchange
· 2mo ago
#OT #Advisory VDE-2026-065 Endress+Hauser: iDTM Debug Interface Vulnerability in the FDI Package Library A vulnerability in the iDTM FDI allows an attacker with elevated privileges and access to the host system to enable the debug interface by placing a crafted file in the application directory. #CVE CVE-2026-9593 https://certvde.com/en/advisories/vde-2026-065/ #CSAF https://endress-hauser.csaf-tp.certvde.com/.well-known/csaf/white/2026/vde-2026-065.json
Endress+Hauser: iDTM Debug Interface Vulnerability in the FDI Package Library
certvde.com

Endress+Hauser: iDTM Debug Interface Vulnerability in the FDI Package Library

0
0
0
0
Open post
CERT@VDE @certvde@infosec.exchange
· 1mo ago
🔄 CSAF advisory updated (version 2.0.0) VDE-2026-051 iba: Deserialization vulnerability in ibaPDA and ibaDatCoordinator CVE-2026-8024 Changes: Added ibaLogic to the affected products and the mitigation for this product. HTML: https://certvde.com/en/advisories/VDE-2026-051 CSAF JSON: https://iba.csaf-tp.certvde.com/.well-known/csaf/white/2026/vde-2026-051.json #OT #Advisory
iba: Deserialization vulnerability in ibaPDA and ibaDatCoordinator
certvde.com

iba: Deserialization vulnerability in ibaPDA and ibaDatCoordinator

0
0
0
0
Open post
CERT@VDE @certvde@infosec.exchange
· 3w ago
🔒 New CSAF advisory published VDE-2026-091 TRUMPF: Multiple products affected by Wibu CodeMeter vulnerabilities CVE-2026-81572, CVE-2026-81573, CVE-2026-81574, CVE-2026-81575, CVE-2026-81576 The TRUMPF product versions listed below include a Wibu CodeMeter Runtime version that contains several vulnerabilities, e.g. potentially allowin… HTML: https://certvde.com/en/advisories/VDE-2026-091 CSAF JSON: https://trumpf.csaf-tp.certvde.com/.well-known/csaf/white/2026/vde-2026-091.json #OT #Advisory
TRUMPF: Multiple products affected by Wibu CodeMeter vulnerabilities
certvde.com

TRUMPF: Multiple products affected by Wibu CodeMeter vulnerabilities

0
0
0
0
Back
313k7r1n3
Elektrine

Tor hidden service

elekhj7afj4qnrr4yd3bkzslsyo5jgfxw3orgjkhlcxifueodybyiiad.onion

I2P eepsite

j6b6cyk6gjmepjih7jjadxgxvvf3lzzujljuu2v4biemzpg3naya.b32.i2p

Platform

  • Email
  • Chat
  • Timeline
  • VPN
  • DNS

Company

  • About
  • Contact
  • FAQ
  • Lite (no JS)

Legal

  • Terms of Service
  • Privacy Policy
  • Transparency Report
  • Report Abuse
  • Warrant Canary
  • VPN Policy

Support

  • support@elektrine.com
  • Report Security Issue
Mail client setup IMAP mail.elektrine.com:993 POP3 mail.elektrine.com:995 SMTP mail.elektrine.com:465
© 2026 Elektrine. All rights reserved. Server: 11:21:00 UTC