← nejvýznamnější zprávy · všechny zprávy

SPOJENO PŘES CVE EPSS 0.03 (nejvyšší)

ads-tec Industrial IT: Multiple Vulnerabilities in ADS-TEC IRF Products

[VDE-2026-076] The ADS-TEC IRF1000 and IRF3000 products are affected by multiple vulnerabilities in firmware releases prior to 2.3.0: authorization, robustness and redirect flaws in the proprietary configuration interface and web UI, and multiple vulnerabilities in the bundled third-party components dnsmasq, OpenSC and OpenSSL. All are fixed in firmware 2.3.0.

Číst originál na CERT@VDE →

2 zprávy z 1 zdroje · první 28. 7. 11:00 · poslední 28. 7. 12:00 CZ · EN/orig

ads-tec Industrial IT Weidmüller DE

tg: zranitelnost tg: novinka v produktu tp: průmyslové systémy

CVE v události 15

CVEhodnoceníKEVEPSS
CVE-2025-68160 4.7 3.1 · CISA-ADP 0.00
CVE-2025-69418 4.0 3.1 · CISA-ADP 0.00
CVE-2025-69419 7.4 3.1 · CISA-ADP 0.01
CVE-2025-69420 7.5 3.1 · CISA-ADP 0.01
CVE-2025-69421 7.5 3.1 · CISA-ADP 0.01
CVE-2026-14167 8.8 3.1 · CERTVDE 8.7 4.0 · CERTVDE 0.00
CVE-2026-14168 8.8 3.1 · CERTVDE 0.00
CVE-2026-14169 8.1 3.1 · CERTVDE 0.00
CVE-2026-14171 6.1 3.1 · CERTVDE 0.00
CVE-2026-22795 5.5 3.1 · CISA-ADP 0.00
CVE-2026-22796 5.3 3.1 · CISA-ADP 0.01
CVE-2026-2291 7.3 3.1 · CISA-ADP 0.01
CVE-2026-40510 3.8 3.1 · VulnCheck 1.0 4.0 · VulnCheck 0.00
CVE-2026-4893 5.3 3.1 · CISA-ADP 0.02
CVE-2026-5172 7.5 3.1 · redhat-SADP 7.3 3.1 · CISA-ADP 0.03

Hodnocení z katalogů, všechna, se stupnicí CVSS a vydavatelem. Rozpad vektoru je na stránce CVE.

Jak se o tom psalo 2

  1. · CERT@VDE DE nadpis události

    ads-tec Industrial IT: Multiple Vulnerabilities in ADS-TEC IRF Products

    [VDE-2026-076] The ADS-TEC IRF1000 and IRF3000 products are affected by multiple vulnerabilities in firmware releases prior to 2.3.0: authorization, robustness and redirect flaws in the proprietary configuration interface and web UI, and multiple vulnerabilities in the bundled third-party components dnsmasq, OpenSC and OpenSSL. All are fixed in firmware 2.3.0.

  2. · CERT@VDE DE

    Weidmueller: Security routers IE-SR-4TX and IE-SR-4GT are affected by multiple vulnerabilities

    [VDE-2026-081] Weidmueller security routers IE-SR-4TX and IE-SR-4GT are affected by multiple vulnerabilities (CVE-2026-14167, CVE-2026-14168, CVE-2026-14169, CVE-2026-14171, CVE-2026-2291, CVE-2026-4893, CVE-2026-5172, CVE-2026-40510, CVE-2025-68160, CVE-2025-69418, CVE-2025-69419, CVE-2025-69420, CVE-2025-69421, CVE-2026-22795, CVE-2026-22796) in firmware releases prior to V2.3.0 authorization, robustness and redirect flaws in the proprietary configuration interface and web UI, and multiple…