SPOJENO PŘES CVE EPSS 0.03 (nejvyšší)
ads-tec Industrial IT: Multiple Vulnerabilities in ADS-TEC IRF Products
[VDE-2026-076] The ADS-TEC IRF1000 and IRF3000 products are affected by multiple vulnerabilities in firmware releases prior to 2.3.0: authorization, robustness and redirect flaws in the proprietary configuration interface and web UI, and multiple vulnerabilities in the bundled third-party components dnsmasq, OpenSC and OpenSSL. All are fixed in firmware 2.3.0.
CVE v události 15
| CVE | hodnocení | KEV | EPSS |
|---|---|---|---|
| CVE-2025-68160 | 4.7 3.1 · CISA-ADP | – | 0.00 |
| CVE-2025-69418 | 4.0 3.1 · CISA-ADP | – | 0.00 |
| CVE-2025-69419 | 7.4 3.1 · CISA-ADP | – | 0.01 |
| CVE-2025-69420 | 7.5 3.1 · CISA-ADP | – | 0.01 |
| CVE-2025-69421 | 7.5 3.1 · CISA-ADP | – | 0.01 |
| CVE-2026-14167 | 8.8 3.1 · CERTVDE 8.7 4.0 · CERTVDE | – | 0.00 |
| CVE-2026-14168 | 8.8 3.1 · CERTVDE | – | 0.00 |
| CVE-2026-14169 | 8.1 3.1 · CERTVDE | – | 0.00 |
| CVE-2026-14171 | 6.1 3.1 · CERTVDE | – | 0.00 |
| CVE-2026-22795 | 5.5 3.1 · CISA-ADP | – | 0.00 |
| CVE-2026-22796 | 5.3 3.1 · CISA-ADP | – | 0.01 |
| CVE-2026-2291 | 7.3 3.1 · CISA-ADP | – | 0.01 |
| CVE-2026-40510 | 3.8 3.1 · VulnCheck 1.0 4.0 · VulnCheck | – | 0.00 |
| CVE-2026-4893 | 5.3 3.1 · CISA-ADP | – | 0.02 |
| CVE-2026-5172 | 7.5 3.1 · redhat-SADP 7.3 3.1 · CISA-ADP | – | 0.03 |
Hodnocení z katalogů, všechna, se stupnicí CVSS a vydavatelem. Rozpad vektoru je na stránce CVE.
Jak se o tom psalo 2
-
· CERT@VDE DE nadpis události
ads-tec Industrial IT: Multiple Vulnerabilities in ADS-TEC IRF Products
[VDE-2026-076] The ADS-TEC IRF1000 and IRF3000 products are affected by multiple vulnerabilities in firmware releases prior to 2.3.0: authorization, robustness and redirect flaws in the proprietary configuration interface and web UI, and multiple vulnerabilities in the bundled third-party components dnsmasq, OpenSC and OpenSSL. All are fixed in firmware 2.3.0.
-
· CERT@VDE DE
Weidmueller: Security routers IE-SR-4TX and IE-SR-4GT are affected by multiple vulnerabilities
[VDE-2026-081] Weidmueller security routers IE-SR-4TX and IE-SR-4GT are affected by multiple vulnerabilities (CVE-2026-14167, CVE-2026-14168, CVE-2026-14169, CVE-2026-14171, CVE-2026-2291, CVE-2026-4893, CVE-2026-5172, CVE-2026-40510, CVE-2025-68160, CVE-2025-69418, CVE-2025-69419, CVE-2025-69420, CVE-2025-69421, CVE-2026-22795, CVE-2026-22796) in firmware releases prior to V2.3.0 authorization, robustness and redirect flaws in the proprietary configuration interface and web UI, and multiple…