Search

Find a vulnerability

Search criteria

    34 vulnerabilities by Pepperl+Fuchs

    CVE-2026-27565 (GCVE-0-2026-27565)

    Vulnerability from cvelistv5 – Published: 2026-09-16 07:52 – Updated: 2026-09-16 19:03
    VLAI
    Title
    Remote code execution via uploading a malicious IODD file
    Summary
    An unauthenticated remote attacker can upload a malicious IODD file that places and executes a shell script with root privileges. The shell script remains active even after a reboot.
    SSVC
    Exploitation: none Automatable: yes Technical Impact: total
    CISA Coordinator · CISA-ADP (v2.0.3)
    Decision recorded 2026-09-16 19:03 UTC
    CWE
    • CWE-78 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
    Impacted products
    Vendor Product Version
    Pepperl+Fuchs ICE2-8IOL1-G65L-V1D Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE2-8IOL-G65L-V1D Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE2-8IOL-K45P-RJ45 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE2-8IOL-K45S-RJ45 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE3-8IOL1-G65L-V1D Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE3-8IOL-G65L-V1D Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE3-8IOL-G65L-V1D-Y Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE3-8IOL-K45P-RJ45 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE3-8IOL-K45S-RJ45 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Phoenix Contact IOL MA8 PN DI8 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Phoenix Contact IOL MA8 EIP DI8 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Carlo Gavazzi Automation YL212CEI8M1IO Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Carlo Gavazzi Automation YN115CEI8RPIO Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Carlo Gavazzi Automation YL212CPN8M1IO Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Carlo Gavazzi Automation YN115CPN8RPIO Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "metrics": [
              {
                "other": {
                  "content": {
                    "id": "CVE-2026-27565",
                    "options": [
                      {
                        "Exploitation": "none"
                      },
                      {
                        "Automatable": "yes"
                      },
                      {
                        "Technical Impact": "total"
                      }
                    ],
                    "role": "CISA Coordinator",
                    "timestamp": "2026-09-16T19:03:03.181861Z",
                    "version": "2.0.3"
                  },
                  "type": "ssvc"
                }
              }
            ],
            "providerMetadata": {
              "dateUpdated": "2026-09-16T19:03:09.926Z",
              "orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
              "shortName": "CISA-ADP"
            },
            "title": "CISA ADP Vulnrichment"
          }
        ],
        "cna": {
          "affected": [
            {
              "defaultStatus": "unaffected",
              "product": "ICE2-8IOL1-G65L-V1D",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE2-8IOL-G65L-V1D",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE2-8IOL-K45P-RJ45",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE2-8IOL-K45S-RJ45",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE3-8IOL1-G65L-V1D",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE3-8IOL-G65L-V1D",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE3-8IOL-G65L-V1D-Y",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE3-8IOL-K45P-RJ45",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE3-8IOL-K45S-RJ45",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "IOL MA8 PN DI8",
              "vendor": "Phoenix Contact",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "IOL MA8 EIP DI8",
              "vendor": "Phoenix Contact",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "YL212CEI8M1IO",
              "vendor": "Carlo Gavazzi Automation",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "YN115CEI8RPIO",
              "vendor": "Carlo Gavazzi Automation",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "YL212CPN8M1IO",
              "vendor": "Carlo Gavazzi Automation",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "YN115CPN8RPIO",
              "vendor": "Carlo Gavazzi Automation",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            }
          ],
          "cpeApplicability": [
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice2_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice2_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice2_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice2_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice3_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice3_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice3_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice3_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice3_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:phoenix_contact:iol_ma8_pn_di8_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:phoenix_contact:iol_ma8_eip_di8_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:carlo_gavazzi:yl212cei8m1io_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:carlo_gavazzi:yn115cei8rpio_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:carlo_gavazzi:yl212cpn8m1io_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:carlo_gavazzi:yn115cpn8rpio_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            }
          ],
          "credits": [
            {
              "lang": "en",
              "type": "finder",
              "value": "Gabriele Quagliarella from Nozomi Networks"
            },
            {
              "lang": "en",
              "type": "finder",
              "value": "Luca Borzacchiello from Nozomi Networks"
            }
          ],
          "descriptions": [
            {
              "lang": "en",
              "supportingMedia": [
                {
                  "base64": false,
                  "type": "text/html",
                  "value": "\u003cp\u003eAn unauthenticated remote attacker can upload a malicious IODD file that places and executes a shell script with root privileges. The shell script remains active even after a reboot.\u003c/p\u003e"
                }
              ],
              "value": "An unauthenticated remote attacker can upload a malicious IODD file that places and executes a shell script with root privileges. The shell script remains active even after a reboot."
            }
          ],
          "metrics": [
            {
              "cvssV3_1": {
                "attackComplexity": "LOW",
                "attackVector": "NETWORK",
                "availabilityImpact": "HIGH",
                "baseScore": 9.8,
                "baseSeverity": "CRITICAL",
                "confidentialityImpact": "HIGH",
                "integrityImpact": "HIGH",
                "privilegesRequired": "NONE",
                "scope": "UNCHANGED",
                "userInteraction": "NONE",
                "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H",
                "version": "3.1"
              },
              "format": "CVSS",
              "scenarios": [
                {
                  "lang": "en",
                  "value": "GENERAL"
                }
              ]
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "cweId": "CWE-78",
                  "description": "CWE-78 Improper Neutralization of Special Elements used in an OS Command (\u0027OS Command Injection\u0027)",
                  "lang": "en",
                  "type": "CWE"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2026-09-16T07:52:23.443Z",
            "orgId": "270ccfa6-a436-4e77-922e-914ec3a9685c",
            "shortName": "CERTVDE"
          },
          "references": [
            {
              "url": "https://www.certvde.com/en/advisories/VDE-2026-014/"
            },
            {
              "url": "https://www.certvde.com/en/advisories/VDE-2026-027/"
            },
            {
              "url": "https://www.certvde.com/en/advisories/VDE-2026-028/"
            }
          ],
          "source": {
            "advisory": "VDE-2026-014, VDE-2026-027, VDE-2026-028",
            "defect": [
              "CERT@VDE#641944"
            ],
            "discovery": "UNKNOWN"
          },
          "title": "Remote code execution via uploading a malicious IODD file",
          "x_generator": {
            "engine": "Vulnogram 0.4.0"
          }
        }
      },
      "cveMetadata": {
        "assignerOrgId": "270ccfa6-a436-4e77-922e-914ec3a9685c",
        "assignerShortName": "CERTVDE",
        "cveId": "CVE-2026-27565",
        "datePublished": "2026-09-16T07:52:23.443Z",
        "dateReserved": "2026-02-20T13:10:29.716Z",
        "dateUpdated": "2026-09-16T19:03:09.926Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.2"
    }

    CVE-2026-27564 (GCVE-0-2026-27564)

    Vulnerability from cvelistv5 – Published: 2026-09-16 07:52 – Updated: 2026-09-16 18:14
    VLAI
    Title
    Command Injection via PUT in /api/datastorage/data
    Summary
    A high-privileged remote attacker can exploit a command injection vulnerability in the /api/datastorage/data endpoint by sending a PUT request with admin credentials allowing execution of commands with root privileges on the device.
    SSVC
    Exploitation: none Automatable: no Technical Impact: total
    CISA Coordinator · CISA-ADP (v2.0.3)
    Decision recorded 2026-09-16 18:14 UTC
    CWE
    • CWE-78 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
    Impacted products
    Vendor Product Version
    Pepperl+Fuchs ICE2-8IOL1-G65L-V1D Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE2-8IOL-G65L-V1D Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE2-8IOL-K45P-RJ45 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE2-8IOL-K45S-RJ45 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE3-8IOL1-G65L-V1D Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE3-8IOL-G65L-V1D Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE3-8IOL-G65L-V1D-Y Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE3-8IOL-K45P-RJ45 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE3-8IOL-K45S-RJ45 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Phoenix Contact IOL MA8 PN DI8 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Phoenix Contact IOL MA8 EIP DI8 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Carlo Gavazzi Automation YL212CEI8M1IO Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Carlo Gavazzi Automation YN115CEI8RPIO Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Carlo Gavazzi Automation YL212CPN8M1IO Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Carlo Gavazzi Automation YN115CPN8RPIO Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "metrics": [
              {
                "other": {
                  "content": {
                    "id": "CVE-2026-27564",
                    "options": [
                      {
                        "Exploitation": "none"
                      },
                      {
                        "Automatable": "no"
                      },
                      {
                        "Technical Impact": "total"
                      }
                    ],
                    "role": "CISA Coordinator",
                    "timestamp": "2026-09-16T18:14:23.980772Z",
                    "version": "2.0.3"
                  },
                  "type": "ssvc"
                }
              }
            ],
            "providerMetadata": {
              "dateUpdated": "2026-09-16T18:14:39.275Z",
              "orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
              "shortName": "CISA-ADP"
            },
            "title": "CISA ADP Vulnrichment"
          }
        ],
        "cna": {
          "affected": [
            {
              "defaultStatus": "unaffected",
              "product": "ICE2-8IOL1-G65L-V1D",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE2-8IOL-G65L-V1D",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE2-8IOL-K45P-RJ45",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE2-8IOL-K45S-RJ45",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE3-8IOL1-G65L-V1D",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE3-8IOL-G65L-V1D",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE3-8IOL-G65L-V1D-Y",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE3-8IOL-K45P-RJ45",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE3-8IOL-K45S-RJ45",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "IOL MA8 PN DI8",
              "vendor": "Phoenix Contact",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "IOL MA8 EIP DI8",
              "vendor": "Phoenix Contact",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "YL212CEI8M1IO",
              "vendor": "Carlo Gavazzi Automation",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "YN115CEI8RPIO",
              "vendor": "Carlo Gavazzi Automation",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "YL212CPN8M1IO",
              "vendor": "Carlo Gavazzi Automation",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "YN115CPN8RPIO",
              "vendor": "Carlo Gavazzi Automation",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            }
          ],
          "cpeApplicability": [
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice2_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice2_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice2_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice2_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice3_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice3_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice3_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice3_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice3_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:phoenix_contact:iol_ma8_pn_di8_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:phoenix_contact:iol_ma8_eip_di8_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:carlo_gavazzi:yl212cei8m1io_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:carlo_gavazzi:yn115cei8rpio_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:carlo_gavazzi:yl212cpn8m1io_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:carlo_gavazzi:yn115cpn8rpio_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            }
          ],
          "credits": [
            {
              "lang": "en",
              "type": "finder",
              "value": "Gabriele Quagliarella from Nozomi Networks"
            },
            {
              "lang": "en",
              "type": "finder",
              "value": "Luca Borzacchiello from Nozomi Networks"
            }
          ],
          "descriptions": [
            {
              "lang": "en",
              "supportingMedia": [
                {
                  "base64": false,
                  "type": "text/html",
                  "value": "\u003cp\u003eA high-privileged remote attacker can exploit a command injection vulnerability in the /api/datastorage/data endpoint by sending a PUT request with admin credentials allowing execution of commands with root privileges on the device.\u003c/p\u003e"
                }
              ],
              "value": "A high-privileged remote attacker can exploit a command injection vulnerability in the /api/datastorage/data endpoint by sending a PUT request with admin credentials allowing execution of commands with root privileges on the device."
            }
          ],
          "metrics": [
            {
              "cvssV3_1": {
                "attackComplexity": "LOW",
                "attackVector": "NETWORK",
                "availabilityImpact": "HIGH",
                "baseScore": 7.2,
                "baseSeverity": "HIGH",
                "confidentialityImpact": "HIGH",
                "integrityImpact": "HIGH",
                "privilegesRequired": "HIGH",
                "scope": "UNCHANGED",
                "userInteraction": "NONE",
                "vectorString": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H",
                "version": "3.1"
              },
              "format": "CVSS",
              "scenarios": [
                {
                  "lang": "en",
                  "value": "GENERAL"
                }
              ]
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "cweId": "CWE-78",
                  "description": "CWE-78 Improper Neutralization of Special Elements used in an OS Command (\u0027OS Command Injection\u0027)",
                  "lang": "en",
                  "type": "CWE"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2026-09-16T07:52:14.929Z",
            "orgId": "270ccfa6-a436-4e77-922e-914ec3a9685c",
            "shortName": "CERTVDE"
          },
          "references": [
            {
              "url": "https://www.certvde.com/en/advisories/VDE-2026-014/"
            },
            {
              "url": "https://www.certvde.com/en/advisories/VDE-2026-027/"
            },
            {
              "url": "https://www.certvde.com/en/advisories/VDE-2026-028/"
            }
          ],
          "source": {
            "advisory": "VDE-2026-014, VDE-2026-027, VDE-2026-028",
            "defect": [
              "CERT@VDE#641944"
            ],
            "discovery": "UNKNOWN"
          },
          "title": "Command Injection via PUT in /api/datastorage/data",
          "x_generator": {
            "engine": "Vulnogram 0.4.0"
          }
        }
      },
      "cveMetadata": {
        "assignerOrgId": "270ccfa6-a436-4e77-922e-914ec3a9685c",
        "assignerShortName": "CERTVDE",
        "cveId": "CVE-2026-27564",
        "datePublished": "2026-09-16T07:52:14.929Z",
        "dateReserved": "2026-02-20T13:10:29.716Z",
        "dateUpdated": "2026-09-16T18:14:39.275Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.2"
    }

    CVE-2026-27563 (GCVE-0-2026-27563)

    Vulnerability from cvelistv5 – Published: 2026-09-16 07:52 – Updated: 2026-09-18 17:37
    VLAI
    Title
    Command Injection via GET in /api/datastorage/data
    Summary
    A high-privileged remote attacker can exploit a command injection vulnerability in the /api/datastorage/data endpoint by sending a crafted GET request with admin credentials allowing execution of commands with root privileges on the device.
    SSVC
    Exploitation: none Automatable: no Technical Impact: total
    CISA Coordinator · CISA-ADP (v2.0.3)
    Decision recorded 2026-09-18 17:37 UTC
    CWE
    • CWE-78 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
    Impacted products
    Vendor Product Version
    Pepperl+Fuchs ICE2-8IOL1-G65L-V1D Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE2-8IOL-G65L-V1D Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE2-8IOL-K45P-RJ45 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE2-8IOL-K45S-RJ45 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE3-8IOL1-G65L-V1D Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE3-8IOL-G65L-V1D Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE3-8IOL-G65L-V1D-Y Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE3-8IOL-K45P-RJ45 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE3-8IOL-K45S-RJ45 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Phoenix Contact IOL MA8 PN DI8 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Phoenix Contact IOL MA8 EIP DI8 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Carlo Gavazzi Automation YL212CEI8M1IO Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Carlo Gavazzi Automation YN115CEI8RPIO Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Carlo Gavazzi Automation YL212CPN8M1IO Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Carlo Gavazzi Automation YN115CPN8RPIO Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "metrics": [
              {
                "other": {
                  "content": {
                    "id": "CVE-2026-27563",
                    "options": [
                      {
                        "Exploitation": "none"
                      },
                      {
                        "Automatable": "no"
                      },
                      {
                        "Technical Impact": "total"
                      }
                    ],
                    "role": "CISA Coordinator",
                    "timestamp": "2026-09-18T17:37:01.272893Z",
                    "version": "2.0.3"
                  },
                  "type": "ssvc"
                }
              }
            ],
            "providerMetadata": {
              "dateUpdated": "2026-09-18T17:37:15.462Z",
              "orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
              "shortName": "CISA-ADP"
            },
            "title": "CISA ADP Vulnrichment"
          }
        ],
        "cna": {
          "affected": [
            {
              "defaultStatus": "unaffected",
              "product": "ICE2-8IOL1-G65L-V1D",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE2-8IOL-G65L-V1D",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE2-8IOL-K45P-RJ45",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE2-8IOL-K45S-RJ45",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE3-8IOL1-G65L-V1D",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE3-8IOL-G65L-V1D",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE3-8IOL-G65L-V1D-Y",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE3-8IOL-K45P-RJ45",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE3-8IOL-K45S-RJ45",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "IOL MA8 PN DI8",
              "vendor": "Phoenix Contact",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "IOL MA8 EIP DI8",
              "vendor": "Phoenix Contact",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "YL212CEI8M1IO",
              "vendor": "Carlo Gavazzi Automation",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "YN115CEI8RPIO",
              "vendor": "Carlo Gavazzi Automation",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "YL212CPN8M1IO",
              "vendor": "Carlo Gavazzi Automation",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "YN115CPN8RPIO",
              "vendor": "Carlo Gavazzi Automation",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            }
          ],
          "cpeApplicability": [
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice2_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice2_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice2_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice2_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice3_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice3_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice3_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice3_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice3_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:phoenix_contact:iol_ma8_pn_di8_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:phoenix_contact:iol_ma8_eip_di8_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:carlo_gavazzi:yl212cei8m1io_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:carlo_gavazzi:yn115cei8rpio_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:carlo_gavazzi:yl212cpn8m1io_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:carlo_gavazzi:yn115cpn8rpio_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            }
          ],
          "credits": [
            {
              "lang": "en",
              "type": "finder",
              "value": "Gabriele Quagliarella from Nozomi Networks"
            },
            {
              "lang": "en",
              "type": "finder",
              "value": "Luca Borzacchiello from Nozomi Networks"
            }
          ],
          "descriptions": [
            {
              "lang": "en",
              "supportingMedia": [
                {
                  "base64": false,
                  "type": "text/html",
                  "value": "\u003cp\u003eA high-privileged remote attacker can exploit a command injection vulnerability in the /api/datastorage/data endpoint by sending a crafted GET request with admin credentials allowing execution of commands with root privileges on the device.\u003c/p\u003e"
                }
              ],
              "value": "A high-privileged remote attacker can exploit a command injection vulnerability in the /api/datastorage/data endpoint by sending a crafted GET request with admin credentials allowing execution of commands with root privileges on the device."
            }
          ],
          "metrics": [
            {
              "cvssV3_1": {
                "attackComplexity": "LOW",
                "attackVector": "NETWORK",
                "availabilityImpact": "HIGH",
                "baseScore": 7.2,
                "baseSeverity": "HIGH",
                "confidentialityImpact": "HIGH",
                "integrityImpact": "HIGH",
                "privilegesRequired": "HIGH",
                "scope": "UNCHANGED",
                "userInteraction": "NONE",
                "vectorString": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H",
                "version": "3.1"
              },
              "format": "CVSS",
              "scenarios": [
                {
                  "lang": "en",
                  "value": "GENERAL"
                }
              ]
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "cweId": "CWE-78",
                  "description": "CWE-78 Improper Neutralization of Special Elements used in an OS Command (\u0027OS Command Injection\u0027)",
                  "lang": "en",
                  "type": "CWE"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2026-09-16T07:52:04.884Z",
            "orgId": "270ccfa6-a436-4e77-922e-914ec3a9685c",
            "shortName": "CERTVDE"
          },
          "references": [
            {
              "url": "https://www.certvde.com/en/advisories/VDE-2026-014/"
            },
            {
              "url": "https://www.certvde.com/en/advisories/VDE-2026-027/"
            },
            {
              "url": "https://www.certvde.com/en/advisories/VDE-2026-028/"
            }
          ],
          "source": {
            "advisory": "VDE-2026-014, VDE-2026-027, VDE-2026-028",
            "defect": [
              "CERT@VDE#641944"
            ],
            "discovery": "UNKNOWN"
          },
          "title": "Command Injection via GET in /api/datastorage/data",
          "x_generator": {
            "engine": "Vulnogram 0.4.0"
          }
        }
      },
      "cveMetadata": {
        "assignerOrgId": "270ccfa6-a436-4e77-922e-914ec3a9685c",
        "assignerShortName": "CERTVDE",
        "cveId": "CVE-2026-27563",
        "datePublished": "2026-09-16T07:52:04.884Z",
        "dateReserved": "2026-02-20T13:10:29.716Z",
        "dateUpdated": "2026-09-18T17:37:15.462Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.2"
    }

    CVE-2026-27562 (GCVE-0-2026-27562)

    Vulnerability from cvelistv5 – Published: 2026-09-16 07:51 – Updated: 2026-09-16 14:53
    VLAI
    Title
    Command Injection via PUT in /api/iodd/config
    Summary
    A high-privileged remote attacker can exploit a command injection vulnerability in the /api/iodd/config endpoint by sending a crafted PUT request with admin credentials allowing execution of commands with root privileges on the device.
    SSVC
    Exploitation: none Automatable: no Technical Impact: total
    CISA Coordinator · CISA-ADP (v2.0.3)
    Decision recorded 2026-09-16 14:53 UTC
    CWE
    • CWE-78 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
    Impacted products
    Vendor Product Version
    Pepperl+Fuchs ICE2-8IOL1-G65L-V1D Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE2-8IOL-G65L-V1D Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE2-8IOL-K45P-RJ45 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE2-8IOL-K45S-RJ45 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE3-8IOL1-G65L-V1D Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE3-8IOL-G65L-V1D Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE3-8IOL-G65L-V1D-Y Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE3-8IOL-K45P-RJ45 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE3-8IOL-K45S-RJ45 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Phoenix Contact IOL MA8 PN DI8 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Phoenix Contact IOL MA8 EIP DI8 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Carlo Gavazzi Automation YL212CEI8M1IO Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Carlo Gavazzi Automation YN115CEI8RPIO Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Carlo Gavazzi Automation YL212CPN8M1IO Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Carlo Gavazzi Automation YN115CPN8RPIO Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "metrics": [
              {
                "other": {
                  "content": {
                    "id": "CVE-2026-27562",
                    "options": [
                      {
                        "Exploitation": "none"
                      },
                      {
                        "Automatable": "no"
                      },
                      {
                        "Technical Impact": "total"
                      }
                    ],
                    "role": "CISA Coordinator",
                    "timestamp": "2026-09-16T14:53:22.589910Z",
                    "version": "2.0.3"
                  },
                  "type": "ssvc"
                }
              }
            ],
            "providerMetadata": {
              "dateUpdated": "2026-09-16T14:53:29.549Z",
              "orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
              "shortName": "CISA-ADP"
            },
            "title": "CISA ADP Vulnrichment"
          }
        ],
        "cna": {
          "affected": [
            {
              "defaultStatus": "unaffected",
              "product": "ICE2-8IOL1-G65L-V1D",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE2-8IOL-G65L-V1D",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE2-8IOL-K45P-RJ45",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE2-8IOL-K45S-RJ45",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE3-8IOL1-G65L-V1D",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE3-8IOL-G65L-V1D",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE3-8IOL-G65L-V1D-Y",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE3-8IOL-K45P-RJ45",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE3-8IOL-K45S-RJ45",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "IOL MA8 PN DI8",
              "vendor": "Phoenix Contact",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "IOL MA8 EIP DI8",
              "vendor": "Phoenix Contact",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "YL212CEI8M1IO",
              "vendor": "Carlo Gavazzi Automation",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "YN115CEI8RPIO",
              "vendor": "Carlo Gavazzi Automation",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "YL212CPN8M1IO",
              "vendor": "Carlo Gavazzi Automation",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "YN115CPN8RPIO",
              "vendor": "Carlo Gavazzi Automation",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            }
          ],
          "cpeApplicability": [
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice2_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice2_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice2_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice2_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice3_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice3_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice3_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice3_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice3_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:phoenix_contact:iol_ma8_pn_di8_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:phoenix_contact:iol_ma8_eip_di8_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:carlo_gavazzi:yl212cei8m1io_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:carlo_gavazzi:yn115cei8rpio_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:carlo_gavazzi:yl212cpn8m1io_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:carlo_gavazzi:yn115cpn8rpio_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            }
          ],
          "credits": [
            {
              "lang": "en",
              "type": "finder",
              "value": "Gabriele Quagliarella from Nozomi Networks"
            },
            {
              "lang": "en",
              "type": "finder",
              "value": "Luca Borzacchiello from Nozomi Networks"
            }
          ],
          "descriptions": [
            {
              "lang": "en",
              "supportingMedia": [
                {
                  "base64": false,
                  "type": "text/html",
                  "value": "\u003cp\u003eA high-privileged remote attacker can exploit a command injection vulnerability in the /api/iodd/config endpoint by sending a crafted PUT request with admin credentials allowing execution of commands with root privileges on the device.\u003c/p\u003e"
                }
              ],
              "value": "A high-privileged remote attacker can exploit a command injection vulnerability in the /api/iodd/config endpoint by sending a crafted PUT request with admin credentials allowing execution of commands with root privileges on the device."
            }
          ],
          "metrics": [
            {
              "cvssV3_1": {
                "attackComplexity": "LOW",
                "attackVector": "NETWORK",
                "availabilityImpact": "HIGH",
                "baseScore": 7.2,
                "baseSeverity": "HIGH",
                "confidentialityImpact": "HIGH",
                "integrityImpact": "HIGH",
                "privilegesRequired": "HIGH",
                "scope": "UNCHANGED",
                "userInteraction": "NONE",
                "vectorString": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H",
                "version": "3.1"
              },
              "format": "CVSS",
              "scenarios": [
                {
                  "lang": "en",
                  "value": "GENERAL"
                }
              ]
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "cweId": "CWE-78",
                  "description": "CWE-78 Improper Neutralization of Special Elements used in an OS Command (\u0027OS Command Injection\u0027)",
                  "lang": "en",
                  "type": "CWE"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2026-09-16T07:51:54.116Z",
            "orgId": "270ccfa6-a436-4e77-922e-914ec3a9685c",
            "shortName": "CERTVDE"
          },
          "references": [
            {
              "url": "https://www.certvde.com/en/advisories/VDE-2026-014/"
            },
            {
              "url": "https://www.certvde.com/en/advisories/VDE-2026-027/"
            },
            {
              "url": "https://www.certvde.com/en/advisories/VDE-2026-028/"
            }
          ],
          "source": {
            "advisory": "VDE-2026-014, VDE-2026-027, VDE-2026-028",
            "defect": [
              "CERT@VDE#641944"
            ],
            "discovery": "UNKNOWN"
          },
          "title": "Command Injection via PUT in /api/iodd/config",
          "x_generator": {
            "engine": "Vulnogram 0.4.0"
          }
        }
      },
      "cveMetadata": {
        "assignerOrgId": "270ccfa6-a436-4e77-922e-914ec3a9685c",
        "assignerShortName": "CERTVDE",
        "cveId": "CVE-2026-27562",
        "datePublished": "2026-09-16T07:51:54.116Z",
        "dateReserved": "2026-02-20T13:10:29.716Z",
        "dateUpdated": "2026-09-16T14:53:29.549Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.2"
    }

    CVE-2026-27561 (GCVE-0-2026-27561)

    Vulnerability from cvelistv5 – Published: 2026-09-16 07:51 – Updated: 2026-09-16 18:36
    VLAI
    Title
    Command Injection via GET in /api/iodd/config
    Summary
    A high-privileged remote attacker can exploit a command injection vulnerability in the /api/iodd/config endpoint by sending a crafted GET request with admin credentials allowing execution of commands with root privileges on the device.
    SSVC
    Exploitation: none Automatable: no Technical Impact: total
    CISA Coordinator · CISA-ADP (v2.0.3)
    Decision recorded 2026-09-16 18:21 UTC
    CWE
    • CWE-78 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
    Impacted products
    Vendor Product Version
    Pepperl+Fuchs ICE2-8IOL1-G65L-V1D Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE2-8IOL-G65L-V1D Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE2-8IOL-K45P-RJ45 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE2-8IOL-K45S-RJ45 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE3-8IOL1-G65L-V1D Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE3-8IOL-G65L-V1D Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE3-8IOL-G65L-V1D-Y Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE3-8IOL-K45P-RJ45 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE3-8IOL-K45S-RJ45 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Phoenix Contact IOL MA8 PN DI8 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Phoenix Contact IOL MA8 EIP DI8 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Carlo Gavazzi Automation YL212CEI8M1IO Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Carlo Gavazzi Automation YN115CEI8RPIO Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Carlo Gavazzi Automation YL212CPN8M1IO Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Carlo Gavazzi Automation YN115CPN8RPIO Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "metrics": [
              {
                "other": {
                  "content": {
                    "id": "CVE-2026-27561",
                    "options": [
                      {
                        "Exploitation": "none"
                      },
                      {
                        "Automatable": "no"
                      },
                      {
                        "Technical Impact": "total"
                      }
                    ],
                    "role": "CISA Coordinator",
                    "timestamp": "2026-09-16T18:21:19.534541Z",
                    "version": "2.0.3"
                  },
                  "type": "ssvc"
                }
              }
            ],
            "providerMetadata": {
              "dateUpdated": "2026-09-16T18:36:01.493Z",
              "orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
              "shortName": "CISA-ADP"
            },
            "title": "CISA ADP Vulnrichment"
          }
        ],
        "cna": {
          "affected": [
            {
              "defaultStatus": "unaffected",
              "product": "ICE2-8IOL1-G65L-V1D",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE2-8IOL-G65L-V1D",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE2-8IOL-K45P-RJ45",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE2-8IOL-K45S-RJ45",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE3-8IOL1-G65L-V1D",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE3-8IOL-G65L-V1D",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE3-8IOL-G65L-V1D-Y",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE3-8IOL-K45P-RJ45",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE3-8IOL-K45S-RJ45",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "IOL MA8 PN DI8",
              "vendor": "Phoenix Contact",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "IOL MA8 EIP DI8",
              "vendor": "Phoenix Contact",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "YL212CEI8M1IO",
              "vendor": "Carlo Gavazzi Automation",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "YN115CEI8RPIO",
              "vendor": "Carlo Gavazzi Automation",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "YL212CPN8M1IO",
              "vendor": "Carlo Gavazzi Automation",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "YN115CPN8RPIO",
              "vendor": "Carlo Gavazzi Automation",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            }
          ],
          "cpeApplicability": [
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice2_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice2_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice2_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice2_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice3_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice3_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice3_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice3_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice3_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:phoenix_contact:iol_ma8_pn_di8_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:phoenix_contact:iol_ma8_eip_di8_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:carlo_gavazzi:yl212cei8m1io_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:carlo_gavazzi:yn115cei8rpio_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:carlo_gavazzi:yl212cpn8m1io_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:carlo_gavazzi:yn115cpn8rpio_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            }
          ],
          "credits": [
            {
              "lang": "en",
              "type": "finder",
              "value": "Gabriele Quagliarella from Nozomi Networks"
            },
            {
              "lang": "en",
              "type": "finder",
              "value": "Luca Borzacchiello from Nozomi Networks"
            }
          ],
          "descriptions": [
            {
              "lang": "en",
              "supportingMedia": [
                {
                  "base64": false,
                  "type": "text/html",
                  "value": "\u003cp\u003eA high-privileged remote attacker can exploit a command injection vulnerability in the /api/iodd/config endpoint by sending a crafted GET request with admin credentials allowing execution of commands with root privileges on the device.\u003c/p\u003e"
                }
              ],
              "value": "A high-privileged remote attacker can exploit a command injection vulnerability in the /api/iodd/config endpoint by sending a crafted GET request with admin credentials allowing execution of commands with root privileges on the device."
            }
          ],
          "metrics": [
            {
              "cvssV3_1": {
                "attackComplexity": "LOW",
                "attackVector": "NETWORK",
                "availabilityImpact": "HIGH",
                "baseScore": 7.2,
                "baseSeverity": "HIGH",
                "confidentialityImpact": "HIGH",
                "integrityImpact": "HIGH",
                "privilegesRequired": "HIGH",
                "scope": "UNCHANGED",
                "userInteraction": "NONE",
                "vectorString": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H",
                "version": "3.1"
              },
              "format": "CVSS",
              "scenarios": [
                {
                  "lang": "en",
                  "value": "GENERAL"
                }
              ]
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "cweId": "CWE-78",
                  "description": "CWE-78 Improper Neutralization of Special Elements used in an OS Command (\u0027OS Command Injection\u0027)",
                  "lang": "en",
                  "type": "CWE"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2026-09-16T07:51:34.777Z",
            "orgId": "270ccfa6-a436-4e77-922e-914ec3a9685c",
            "shortName": "CERTVDE"
          },
          "references": [
            {
              "url": "https://www.certvde.com/en/advisories/VDE-2026-014/"
            },
            {
              "url": "https://www.certvde.com/en/advisories/VDE-2026-027/"
            },
            {
              "url": "https://www.certvde.com/en/advisories/VDE-2026-028/"
            }
          ],
          "source": {
            "advisory": "VDE-2026-014, VDE-2026-027, VDE-2026-028",
            "defect": [
              "CERT@VDE#641944"
            ],
            "discovery": "UNKNOWN"
          },
          "title": "Command Injection via GET in /api/iodd/config",
          "x_generator": {
            "engine": "Vulnogram 0.4.0"
          }
        }
      },
      "cveMetadata": {
        "assignerOrgId": "270ccfa6-a436-4e77-922e-914ec3a9685c",
        "assignerShortName": "CERTVDE",
        "cveId": "CVE-2026-27561",
        "datePublished": "2026-09-16T07:51:34.777Z",
        "dateReserved": "2026-02-20T13:10:29.716Z",
        "dateUpdated": "2026-09-16T18:36:01.493Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.2"
    }

    CVE-2026-27560 (GCVE-0-2026-27560)

    Vulnerability from cvelistv5 – Published: 2026-09-16 07:51 – Updated: 2026-09-16 19:04
    VLAI
    Title
    Command Injection via DELETE in /api/status/data
    Summary
    A high-privileged remote attacker can exploit a command injection vulnerability in the /api/status/data endpoint by sending a crafted DELETE request with admin credentials allowing execution of commands with root privileges on the device.
    SSVC
    Exploitation: none Automatable: no Technical Impact: total
    CISA Coordinator · CISA-ADP (v2.0.3)
    Decision recorded 2026-09-16 19:04 UTC
    CWE
    • CWE-78 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
    Impacted products
    Vendor Product Version
    Pepperl+Fuchs ICE2-8IOL1-G65L-V1D Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE2-8IOL-G65L-V1D Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE2-8IOL-K45P-RJ45 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE2-8IOL-K45S-RJ45 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE3-8IOL1-G65L-V1D Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE3-8IOL-G65L-V1D Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE3-8IOL-G65L-V1D-Y Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE3-8IOL-K45P-RJ45 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE3-8IOL-K45S-RJ45 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Phoenix Contact IOL MA8 PN DI8 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Phoenix Contact IOL MA8 EIP DI8 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Carlo Gavazzi Automation YL212CEI8M1IO Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Carlo Gavazzi Automation YN115CEI8RPIO Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Carlo Gavazzi Automation YL212CPN8M1IO Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Carlo Gavazzi Automation YN115CPN8RPIO Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "metrics": [
              {
                "other": {
                  "content": {
                    "id": "CVE-2026-27560",
                    "options": [
                      {
                        "Exploitation": "none"
                      },
                      {
                        "Automatable": "no"
                      },
                      {
                        "Technical Impact": "total"
                      }
                    ],
                    "role": "CISA Coordinator",
                    "timestamp": "2026-09-16T19:04:08.598951Z",
                    "version": "2.0.3"
                  },
                  "type": "ssvc"
                }
              }
            ],
            "providerMetadata": {
              "dateUpdated": "2026-09-16T19:04:16.072Z",
              "orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
              "shortName": "CISA-ADP"
            },
            "title": "CISA ADP Vulnrichment"
          }
        ],
        "cna": {
          "affected": [
            {
              "defaultStatus": "unaffected",
              "product": "ICE2-8IOL1-G65L-V1D",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE2-8IOL-G65L-V1D",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE2-8IOL-K45P-RJ45",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE2-8IOL-K45S-RJ45",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE3-8IOL1-G65L-V1D",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE3-8IOL-G65L-V1D",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE3-8IOL-G65L-V1D-Y",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE3-8IOL-K45P-RJ45",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE3-8IOL-K45S-RJ45",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "IOL MA8 PN DI8",
              "vendor": "Phoenix Contact",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "IOL MA8 EIP DI8",
              "vendor": "Phoenix Contact",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "YL212CEI8M1IO",
              "vendor": "Carlo Gavazzi Automation",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "YN115CEI8RPIO",
              "vendor": "Carlo Gavazzi Automation",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "YL212CPN8M1IO",
              "vendor": "Carlo Gavazzi Automation",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "YN115CPN8RPIO",
              "vendor": "Carlo Gavazzi Automation",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            }
          ],
          "cpeApplicability": [
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice2_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice2_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice2_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice2_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice3_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice3_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice3_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice3_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice3_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:phoenix_contact:iol_ma8_pn_di8_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:phoenix_contact:iol_ma8_eip_di8_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:carlo_gavazzi:yl212cei8m1io_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:carlo_gavazzi:yn115cei8rpio_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:carlo_gavazzi:yl212cpn8m1io_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:carlo_gavazzi:yn115cpn8rpio_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            }
          ],
          "credits": [
            {
              "lang": "en",
              "type": "finder",
              "value": "Gabriele Quagliarella from Nozomi Networks"
            },
            {
              "lang": "en",
              "type": "finder",
              "value": "Luca Borzacchiello from Nozomi Networks"
            }
          ],
          "descriptions": [
            {
              "lang": "en",
              "supportingMedia": [
                {
                  "base64": false,
                  "type": "text/html",
                  "value": "\u003cp\u003eA high-privileged remote attacker can exploit a command injection vulnerability in the /api/status/data endpoint by sending a crafted DELETE request with admin credentials allowing execution of commands with root privileges on the device.\u003c/p\u003e"
                }
              ],
              "value": "A high-privileged remote attacker can exploit a command injection vulnerability in the /api/status/data endpoint by sending a crafted DELETE request with admin credentials allowing execution of commands with root privileges on the device."
            }
          ],
          "metrics": [
            {
              "cvssV3_1": {
                "attackComplexity": "LOW",
                "attackVector": "NETWORK",
                "availabilityImpact": "HIGH",
                "baseScore": 7.2,
                "baseSeverity": "HIGH",
                "confidentialityImpact": "HIGH",
                "integrityImpact": "HIGH",
                "privilegesRequired": "HIGH",
                "scope": "UNCHANGED",
                "userInteraction": "NONE",
                "vectorString": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H",
                "version": "3.1"
              },
              "format": "CVSS",
              "scenarios": [
                {
                  "lang": "en",
                  "value": "GENERAL"
                }
              ]
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "cweId": "CWE-78",
                  "description": "CWE-78 Improper Neutralization of Special Elements used in an OS Command (\u0027OS Command Injection\u0027)",
                  "lang": "en",
                  "type": "CWE"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2026-09-16T07:51:18.570Z",
            "orgId": "270ccfa6-a436-4e77-922e-914ec3a9685c",
            "shortName": "CERTVDE"
          },
          "references": [
            {
              "url": "https://www.certvde.com/en/advisories/VDE-2026-014/"
            },
            {
              "url": "https://www.certvde.com/en/advisories/VDE-2026-027/"
            },
            {
              "url": "https://www.certvde.com/en/advisories/VDE-2026-028/"
            }
          ],
          "source": {
            "advisory": "VDE-2026-014, VDE-2026-027, VDE-2026-028",
            "defect": [
              "CERT@VDE#641944"
            ],
            "discovery": "UNKNOWN"
          },
          "title": "Command Injection via DELETE in /api/status/data",
          "x_generator": {
            "engine": "Vulnogram 0.4.0"
          }
        }
      },
      "cveMetadata": {
        "assignerOrgId": "270ccfa6-a436-4e77-922e-914ec3a9685c",
        "assignerShortName": "CERTVDE",
        "cveId": "CVE-2026-27560",
        "datePublished": "2026-09-16T07:51:18.570Z",
        "dateReserved": "2026-02-20T13:10:29.716Z",
        "dateUpdated": "2026-09-16T19:04:16.072Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.2"
    }

    CVE-2026-27559 (GCVE-0-2026-27559)

    Vulnerability from cvelistv5 – Published: 2026-09-16 07:50 – Updated: 2026-09-16 18:15
    VLAI
    Title
    Command Injection via GET in /api/status/data
    Summary
    A low-privileged remote attacker can exploit a command injection vulnerability in the /api/status/data endpoint by sending a crafted GET request with user credentials allowing execution of commands with root privileges on the device.
    SSVC
    Exploitation: none Automatable: no Technical Impact: total
    CISA Coordinator · CISA-ADP (v2.0.3)
    Decision recorded 2026-09-16 18:15 UTC
    CWE
    • CWE-78 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
    Impacted products
    Vendor Product Version
    Pepperl+Fuchs ICE2-8IOL1-G65L-V1D Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE2-8IOL-G65L-V1D Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE2-8IOL-K45P-RJ45 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE2-8IOL-K45S-RJ45 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE3-8IOL1-G65L-V1D Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE3-8IOL-G65L-V1D Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE3-8IOL-G65L-V1D-Y Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE3-8IOL-K45P-RJ45 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE3-8IOL-K45S-RJ45 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Phoenix Contact IOL MA8 PN DI8 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Phoenix Contact IOL MA8 EIP DI8 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Carlo Gavazzi Automation YL212CEI8M1IO Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Carlo Gavazzi Automation YN115CEI8RPIO Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Carlo Gavazzi Automation YL212CPN8M1IO Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Carlo Gavazzi Automation YN115CPN8RPIO Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "metrics": [
              {
                "other": {
                  "content": {
                    "id": "CVE-2026-27559",
                    "options": [
                      {
                        "Exploitation": "none"
                      },
                      {
                        "Automatable": "no"
                      },
                      {
                        "Technical Impact": "total"
                      }
                    ],
                    "role": "CISA Coordinator",
                    "timestamp": "2026-09-16T18:15:11.790739Z",
                    "version": "2.0.3"
                  },
                  "type": "ssvc"
                }
              }
            ],
            "providerMetadata": {
              "dateUpdated": "2026-09-16T18:15:31.190Z",
              "orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
              "shortName": "CISA-ADP"
            },
            "title": "CISA ADP Vulnrichment"
          }
        ],
        "cna": {
          "affected": [
            {
              "defaultStatus": "unaffected",
              "product": "ICE2-8IOL1-G65L-V1D",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE2-8IOL-G65L-V1D",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE2-8IOL-K45P-RJ45",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE2-8IOL-K45S-RJ45",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE3-8IOL1-G65L-V1D",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE3-8IOL-G65L-V1D",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE3-8IOL-G65L-V1D-Y",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE3-8IOL-K45P-RJ45",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE3-8IOL-K45S-RJ45",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "IOL MA8 PN DI8",
              "vendor": "Phoenix Contact",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "IOL MA8 EIP DI8",
              "vendor": "Phoenix Contact",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "YL212CEI8M1IO",
              "vendor": "Carlo Gavazzi Automation",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "YN115CEI8RPIO",
              "vendor": "Carlo Gavazzi Automation",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "YL212CPN8M1IO",
              "vendor": "Carlo Gavazzi Automation",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "YN115CPN8RPIO",
              "vendor": "Carlo Gavazzi Automation",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            }
          ],
          "cpeApplicability": [
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice2_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice2_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice2_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice2_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice3_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice3_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice3_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice3_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice3_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:phoenix_contact:iol_ma8_pn_di8_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:phoenix_contact:iol_ma8_eip_di8_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:carlo_gavazzi:yl212cei8m1io_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:carlo_gavazzi:yn115cei8rpio_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:carlo_gavazzi:yl212cpn8m1io_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:carlo_gavazzi:yn115cpn8rpio_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            }
          ],
          "credits": [
            {
              "lang": "en",
              "type": "finder",
              "value": "Gabriele Quagliarella from Nozomi Networks"
            },
            {
              "lang": "en",
              "type": "finder",
              "value": "Luca Borzacchiello from Nozomi Networks"
            }
          ],
          "descriptions": [
            {
              "lang": "en",
              "supportingMedia": [
                {
                  "base64": false,
                  "type": "text/html",
                  "value": "\u003cp\u003eA low-privileged remote attacker can exploit a command injection vulnerability in the /api/status/data endpoint by sending a crafted GET request with user credentials allowing execution of commands with root privileges on the device.\u003c/p\u003e"
                }
              ],
              "value": "A low-privileged remote attacker can exploit a command injection vulnerability in the /api/status/data endpoint by sending a crafted GET request with user credentials allowing execution of commands with root privileges on the device."
            }
          ],
          "metrics": [
            {
              "cvssV3_1": {
                "attackComplexity": "LOW",
                "attackVector": "NETWORK",
                "availabilityImpact": "HIGH",
                "baseScore": 8.8,
                "baseSeverity": "HIGH",
                "confidentialityImpact": "HIGH",
                "integrityImpact": "HIGH",
                "privilegesRequired": "LOW",
                "scope": "UNCHANGED",
                "userInteraction": "NONE",
                "vectorString": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H",
                "version": "3.1"
              },
              "format": "CVSS",
              "scenarios": [
                {
                  "lang": "en",
                  "value": "GENERAL"
                }
              ]
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "cweId": "CWE-78",
                  "description": "CWE-78 Improper Neutralization of Special Elements used in an OS Command (\u0027OS Command Injection\u0027)",
                  "lang": "en",
                  "type": "CWE"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2026-09-16T07:50:58.578Z",
            "orgId": "270ccfa6-a436-4e77-922e-914ec3a9685c",
            "shortName": "CERTVDE"
          },
          "references": [
            {
              "url": "https://www.certvde.com/en/advisories/VDE-2026-014/"
            },
            {
              "url": "https://www.certvde.com/en/advisories/VDE-2026-027/"
            },
            {
              "url": "https://www.certvde.com/en/advisories/VDE-2026-028/"
            }
          ],
          "source": {
            "advisory": "VDE-2026-014, VDE-2026-027, VDE-2026-028",
            "defect": [
              "CERT@VDE#641944"
            ],
            "discovery": "UNKNOWN"
          },
          "title": "Command Injection via GET in /api/status/data",
          "x_generator": {
            "engine": "Vulnogram 0.4.0"
          }
        }
      },
      "cveMetadata": {
        "assignerOrgId": "270ccfa6-a436-4e77-922e-914ec3a9685c",
        "assignerShortName": "CERTVDE",
        "cveId": "CVE-2026-27559",
        "datePublished": "2026-09-16T07:50:58.578Z",
        "dateReserved": "2026-02-20T13:10:29.716Z",
        "dateUpdated": "2026-09-16T18:15:31.190Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.2"
    }

    CVE-2026-27558 (GCVE-0-2026-27558)

    Vulnerability from cvelistv5 – Published: 2026-09-16 07:50 – Updated: 2026-09-18 17:35
    VLAI
    Title
    Command Injection in /index.php/attached_devices_tab/ajax_remove_uploaded_iodd_files
    Summary
    A low-privileged remote attacker can exploit a command injection vulnerability in the /index.php/attached_devices_tab/ajax_remove_uploaded_iodd_files endpoint using operator credentials allowing execution of commands with root privileges on the device.
    SSVC
    Exploitation: none Automatable: no Technical Impact: total
    CISA Coordinator · CISA-ADP (v2.0.3)
    Decision recorded 2026-09-18 17:35 UTC
    CWE
    • CWE-78 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
    Impacted products
    Vendor Product Version
    Pepperl+Fuchs ICE2-8IOL1-G65L-V1D Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE2-8IOL-G65L-V1D Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE2-8IOL-K45P-RJ45 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE2-8IOL-K45S-RJ45 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE3-8IOL1-G65L-V1D Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE3-8IOL-G65L-V1D Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE3-8IOL-G65L-V1D-Y Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE3-8IOL-K45P-RJ45 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE3-8IOL-K45S-RJ45 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Phoenix Contact IOL MA8 PN DI8 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Phoenix Contact IOL MA8 EIP DI8 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Carlo Gavazzi Automation YL212CEI8M1IO Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Carlo Gavazzi Automation YN115CEI8RPIO Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Carlo Gavazzi Automation YL212CPN8M1IO Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Carlo Gavazzi Automation YN115CPN8RPIO Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "metrics": [
              {
                "other": {
                  "content": {
                    "id": "CVE-2026-27558",
                    "options": [
                      {
                        "Exploitation": "none"
                      },
                      {
                        "Automatable": "no"
                      },
                      {
                        "Technical Impact": "total"
                      }
                    ],
                    "role": "CISA Coordinator",
                    "timestamp": "2026-09-18T17:35:37.217450Z",
                    "version": "2.0.3"
                  },
                  "type": "ssvc"
                }
              }
            ],
            "providerMetadata": {
              "dateUpdated": "2026-09-18T17:35:51.020Z",
              "orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
              "shortName": "CISA-ADP"
            },
            "title": "CISA ADP Vulnrichment"
          }
        ],
        "cna": {
          "affected": [
            {
              "defaultStatus": "unaffected",
              "product": "ICE2-8IOL1-G65L-V1D",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE2-8IOL-G65L-V1D",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE2-8IOL-K45P-RJ45",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE2-8IOL-K45S-RJ45",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE3-8IOL1-G65L-V1D",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE3-8IOL-G65L-V1D",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE3-8IOL-G65L-V1D-Y",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE3-8IOL-K45P-RJ45",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE3-8IOL-K45S-RJ45",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "IOL MA8 PN DI8",
              "vendor": "Phoenix Contact",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "IOL MA8 EIP DI8",
              "vendor": "Phoenix Contact",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "YL212CEI8M1IO",
              "vendor": "Carlo Gavazzi Automation",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "YN115CEI8RPIO",
              "vendor": "Carlo Gavazzi Automation",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "YL212CPN8M1IO",
              "vendor": "Carlo Gavazzi Automation",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "YN115CPN8RPIO",
              "vendor": "Carlo Gavazzi Automation",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            }
          ],
          "cpeApplicability": [
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice2_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice2_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice2_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice2_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice3_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice3_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice3_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice3_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice3_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:phoenix_contact:iol_ma8_pn_di8_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:phoenix_contact:iol_ma8_eip_di8_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:carlo_gavazzi:yl212cei8m1io_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:carlo_gavazzi:yn115cei8rpio_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:carlo_gavazzi:yl212cpn8m1io_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:carlo_gavazzi:yn115cpn8rpio_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            }
          ],
          "credits": [
            {
              "lang": "en",
              "type": "finder",
              "value": "Gabriele Quagliarella from Nozomi Networks"
            },
            {
              "lang": "en",
              "type": "finder",
              "value": "Luca Borzacchiello from Nozomi Networks"
            }
          ],
          "descriptions": [
            {
              "lang": "en",
              "supportingMedia": [
                {
                  "base64": false,
                  "type": "text/html",
                  "value": "\u003cp\u003eA low-privileged remote attacker can exploit a command injection vulnerability in the /index.php/attached_devices_tab/ajax_remove_uploaded_iodd_files endpoint using operator credentials allowing execution of commands with root privileges on the device.\u003c/p\u003e"
                }
              ],
              "value": "A low-privileged remote attacker can exploit a command injection vulnerability in the /index.php/attached_devices_tab/ajax_remove_uploaded_iodd_files endpoint using operator credentials allowing execution of commands with root privileges on the device."
            }
          ],
          "metrics": [
            {
              "cvssV3_1": {
                "attackComplexity": "LOW",
                "attackVector": "NETWORK",
                "availabilityImpact": "HIGH",
                "baseScore": 8.8,
                "baseSeverity": "HIGH",
                "confidentialityImpact": "HIGH",
                "integrityImpact": "HIGH",
                "privilegesRequired": "LOW",
                "scope": "UNCHANGED",
                "userInteraction": "NONE",
                "vectorString": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H",
                "version": "3.1"
              },
              "format": "CVSS",
              "scenarios": [
                {
                  "lang": "en",
                  "value": "GENERAL"
                }
              ]
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "cweId": "CWE-78",
                  "description": "CWE-78 Improper Neutralization of Special Elements used in an OS Command (\u0027OS Command Injection\u0027)",
                  "lang": "en",
                  "type": "CWE"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2026-09-16T07:50:45.553Z",
            "orgId": "270ccfa6-a436-4e77-922e-914ec3a9685c",
            "shortName": "CERTVDE"
          },
          "references": [
            {
              "url": "https://www.certvde.com/en/advisories/VDE-2026-014/"
            },
            {
              "url": "https://www.certvde.com/en/advisories/VDE-2026-027/"
            },
            {
              "url": "https://www.certvde.com/en/advisories/VDE-2026-028/"
            }
          ],
          "source": {
            "advisory": "VDE-2026-014, VDE-2026-027, VDE-2026-028",
            "defect": [
              "CERT@VDE#641944"
            ],
            "discovery": "UNKNOWN"
          },
          "title": "Command Injection in /index.php/attached_devices_tab/ajax_remove_uploaded_iodd_files",
          "x_generator": {
            "engine": "Vulnogram 0.4.0"
          }
        }
      },
      "cveMetadata": {
        "assignerOrgId": "270ccfa6-a436-4e77-922e-914ec3a9685c",
        "assignerShortName": "CERTVDE",
        "cveId": "CVE-2026-27558",
        "datePublished": "2026-09-16T07:50:45.553Z",
        "dateReserved": "2026-02-20T13:10:29.716Z",
        "dateUpdated": "2026-09-18T17:35:51.020Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.2"
    }

    CVE-2026-27557 (GCVE-0-2026-27557)

    Vulnerability from cvelistv5 – Published: 2026-09-16 07:50 – Updated: 2026-09-16 15:37
    VLAI
    Title
    Path Traversal in /index.php/view_uploaded_iodd_file
    Summary
    An unauthenticated remote attacker can exploit a path traversal vulnerability in the /index.php/view_uploaded_iodd_file endpoint allowing the SSH server's private keys to be read.
    SSVC
    Exploitation: none Automatable: yes Technical Impact: partial
    CISA Coordinator · CISA-ADP (v2.0.3)
    Decision recorded 2026-09-16 15:34 UTC
    CWE
    • CWE-35 - Path Traversal: '.../...//'
    Impacted products
    Vendor Product Version
    Pepperl+Fuchs ICE2-8IOL1-G65L-V1D Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE2-8IOL-G65L-V1D Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE2-8IOL-K45P-RJ45 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE2-8IOL-K45S-RJ45 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE3-8IOL1-G65L-V1D Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE3-8IOL-G65L-V1D Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE3-8IOL-G65L-V1D-Y Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE3-8IOL-K45P-RJ45 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE3-8IOL-K45S-RJ45 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Phoenix Contact IOL MA8 PN DI8 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Phoenix Contact IOL MA8 EIP DI8 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Carlo Gavazzi Automation YL212CEI8M1IO Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Carlo Gavazzi Automation YN115CEI8RPIO Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Carlo Gavazzi Automation YL212CPN8M1IO Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Carlo Gavazzi Automation YN115CPN8RPIO Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "metrics": [
              {
                "other": {
                  "content": {
                    "id": "CVE-2026-27557",
                    "options": [
                      {
                        "Exploitation": "none"
                      },
                      {
                        "Automatable": "yes"
                      },
                      {
                        "Technical Impact": "partial"
                      }
                    ],
                    "role": "CISA Coordinator",
                    "timestamp": "2026-09-16T15:34:14.196499Z",
                    "version": "2.0.3"
                  },
                  "type": "ssvc"
                }
              }
            ],
            "providerMetadata": {
              "dateUpdated": "2026-09-16T15:37:15.109Z",
              "orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
              "shortName": "CISA-ADP"
            },
            "title": "CISA ADP Vulnrichment"
          }
        ],
        "cna": {
          "affected": [
            {
              "defaultStatus": "unaffected",
              "product": "ICE2-8IOL1-G65L-V1D",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE2-8IOL-G65L-V1D",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE2-8IOL-K45P-RJ45",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE2-8IOL-K45S-RJ45",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE3-8IOL1-G65L-V1D",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE3-8IOL-G65L-V1D",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE3-8IOL-G65L-V1D-Y",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE3-8IOL-K45P-RJ45",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE3-8IOL-K45S-RJ45",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "IOL MA8 PN DI8",
              "vendor": "Phoenix Contact",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "IOL MA8 EIP DI8",
              "vendor": "Phoenix Contact",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "YL212CEI8M1IO",
              "vendor": "Carlo Gavazzi Automation",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "YN115CEI8RPIO",
              "vendor": "Carlo Gavazzi Automation",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "YL212CPN8M1IO",
              "vendor": "Carlo Gavazzi Automation",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "YN115CPN8RPIO",
              "vendor": "Carlo Gavazzi Automation",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            }
          ],
          "cpeApplicability": [
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice2_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice2_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice2_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice2_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice3_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice3_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice3_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice3_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice3_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:phoenix_contact:iol_ma8_pn_di8_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:phoenix_contact:iol_ma8_eip_di8_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:carlo_gavazzi:yl212cei8m1io_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:carlo_gavazzi:yn115cei8rpio_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:carlo_gavazzi:yl212cpn8m1io_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:carlo_gavazzi:yn115cpn8rpio_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            }
          ],
          "credits": [
            {
              "lang": "en",
              "type": "finder",
              "value": "Gabriele Quagliarella from Nozomi Networks"
            },
            {
              "lang": "en",
              "type": "finder",
              "value": "Luca Borzacchiello from Nozomi Networks"
            }
          ],
          "descriptions": [
            {
              "lang": "en",
              "supportingMedia": [
                {
                  "base64": false,
                  "type": "text/html",
                  "value": "\u003cp\u003eAn unauthenticated remote attacker can exploit a path traversal vulnerability in the /index.php/view_uploaded_iodd_file endpoint allowing the SSH server\u0026#x27;s private keys to be read.\u003c/p\u003e"
                }
              ],
              "value": "An unauthenticated remote attacker can exploit a path traversal vulnerability in the /index.php/view_uploaded_iodd_file endpoint allowing the SSH server\u0027s private keys to be read."
            }
          ],
          "metrics": [
            {
              "cvssV3_1": {
                "attackComplexity": "LOW",
                "attackVector": "NETWORK",
                "availabilityImpact": "NONE",
                "baseScore": 7.5,
                "baseSeverity": "HIGH",
                "confidentialityImpact": "HIGH",
                "integrityImpact": "NONE",
                "privilegesRequired": "NONE",
                "scope": "UNCHANGED",
                "userInteraction": "NONE",
                "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N",
                "version": "3.1"
              },
              "format": "CVSS",
              "scenarios": [
                {
                  "lang": "en",
                  "value": "GENERAL"
                }
              ]
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "cweId": "CWE-35",
                  "description": "CWE-35 Path Traversal: \u0027.../...//\u0027",
                  "lang": "en",
                  "type": "CWE"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2026-09-16T07:50:32.380Z",
            "orgId": "270ccfa6-a436-4e77-922e-914ec3a9685c",
            "shortName": "CERTVDE"
          },
          "references": [
            {
              "url": "https://www.certvde.com/en/advisories/VDE-2026-014/"
            },
            {
              "url": "https://www.certvde.com/en/advisories/VDE-2026-027/"
            },
            {
              "url": "https://www.certvde.com/en/advisories/VDE-2026-028/"
            }
          ],
          "source": {
            "advisory": "VDE-2026-014, VDE-2026-027, VDE-2026-028",
            "defect": [
              "CERT@VDE#641944"
            ],
            "discovery": "UNKNOWN"
          },
          "title": "Path Traversal in /index.php/view_uploaded_iodd_file",
          "x_generator": {
            "engine": "Vulnogram 0.4.0"
          }
        }
      },
      "cveMetadata": {
        "assignerOrgId": "270ccfa6-a436-4e77-922e-914ec3a9685c",
        "assignerShortName": "CERTVDE",
        "cveId": "CVE-2026-27557",
        "datePublished": "2026-09-16T07:50:32.380Z",
        "dateReserved": "2026-02-20T13:10:29.716Z",
        "dateUpdated": "2026-09-16T15:37:15.109Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.2"
    }

    CVE-2026-27556 (GCVE-0-2026-27556)

    Vulnerability from cvelistv5 – Published: 2026-09-16 07:50 – Updated: 2026-09-16 18:36
    VLAI
    Title
    Local File Inclusion in /index.php/ajax/save_iodd_parameters
    Summary
    A low-privileged remote attacker can exploit a local file inclusion vulnerability in the /index.php/ajax/save_iodd_parameters endpoint using a valid operator cookie allowing execution of arbitrary PHP code on the device.
    SSVC
    Exploitation: none Automatable: no Technical Impact: total
    CISA Coordinator · CISA-ADP (v2.0.3)
    Decision recorded 2026-09-16 18:21 UTC
    CWE
    • CWE-98 - Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion')
    Impacted products
    Vendor Product Version
    Pepperl+Fuchs ICE2-8IOL1-G65L-V1D Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE2-8IOL-G65L-V1D Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE2-8IOL-K45P-RJ45 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE2-8IOL-K45S-RJ45 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE3-8IOL1-G65L-V1D Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE3-8IOL-G65L-V1D Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE3-8IOL-G65L-V1D-Y Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE3-8IOL-K45P-RJ45 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE3-8IOL-K45S-RJ45 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Phoenix Contact IOL MA8 PN DI8 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Phoenix Contact IOL MA8 EIP DI8 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Carlo Gavazzi Automation YL212CEI8M1IO Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Carlo Gavazzi Automation YN115CEI8RPIO Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Carlo Gavazzi Automation YL212CPN8M1IO Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Carlo Gavazzi Automation YN115CPN8RPIO Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "metrics": [
              {
                "other": {
                  "content": {
                    "id": "CVE-2026-27556",
                    "options": [
                      {
                        "Exploitation": "none"
                      },
                      {
                        "Automatable": "no"
                      },
                      {
                        "Technical Impact": "total"
                      }
                    ],
                    "role": "CISA Coordinator",
                    "timestamp": "2026-09-16T18:21:18.194437Z",
                    "version": "2.0.3"
                  },
                  "type": "ssvc"
                }
              }
            ],
            "providerMetadata": {
              "dateUpdated": "2026-09-16T18:36:10.529Z",
              "orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
              "shortName": "CISA-ADP"
            },
            "title": "CISA ADP Vulnrichment"
          }
        ],
        "cna": {
          "affected": [
            {
              "defaultStatus": "unaffected",
              "product": "ICE2-8IOL1-G65L-V1D",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE2-8IOL-G65L-V1D",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE2-8IOL-K45P-RJ45",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE2-8IOL-K45S-RJ45",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE3-8IOL1-G65L-V1D",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE3-8IOL-G65L-V1D",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE3-8IOL-G65L-V1D-Y",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE3-8IOL-K45P-RJ45",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE3-8IOL-K45S-RJ45",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "IOL MA8 PN DI8",
              "vendor": "Phoenix Contact",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "IOL MA8 EIP DI8",
              "vendor": "Phoenix Contact",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "YL212CEI8M1IO",
              "vendor": "Carlo Gavazzi Automation",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "YN115CEI8RPIO",
              "vendor": "Carlo Gavazzi Automation",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "YL212CPN8M1IO",
              "vendor": "Carlo Gavazzi Automation",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "YN115CPN8RPIO",
              "vendor": "Carlo Gavazzi Automation",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            }
          ],
          "cpeApplicability": [
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice2_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice2_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice2_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice2_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice3_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice3_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice3_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice3_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice3_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:phoenix_contact:iol_ma8_pn_di8_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:phoenix_contact:iol_ma8_eip_di8_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:carlo_gavazzi:yl212cei8m1io_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:carlo_gavazzi:yn115cei8rpio_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:carlo_gavazzi:yl212cpn8m1io_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:carlo_gavazzi:yn115cpn8rpio_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            }
          ],
          "credits": [
            {
              "lang": "en",
              "type": "finder",
              "value": "Gabriele Quagliarella from Nozomi Networks"
            },
            {
              "lang": "en",
              "type": "finder",
              "value": "Luca Borzacchiello from Nozomi Networks"
            }
          ],
          "descriptions": [
            {
              "lang": "en",
              "supportingMedia": [
                {
                  "base64": false,
                  "type": "text/html",
                  "value": "\u003cp\u003eA low-privileged remote attacker can exploit a local file inclusion vulnerability in the /index.php/ajax/save_iodd_parameters endpoint using a valid operator cookie allowing execution of arbitrary PHP code on the device.\u003c/p\u003e"
                }
              ],
              "value": "A low-privileged remote attacker can exploit a local file inclusion vulnerability in the /index.php/ajax/save_iodd_parameters endpoint using a valid operator cookie allowing execution of arbitrary PHP code on the device."
            }
          ],
          "metrics": [
            {
              "cvssV3_1": {
                "attackComplexity": "LOW",
                "attackVector": "NETWORK",
                "availabilityImpact": "HIGH",
                "baseScore": 8.8,
                "baseSeverity": "HIGH",
                "confidentialityImpact": "HIGH",
                "integrityImpact": "HIGH",
                "privilegesRequired": "LOW",
                "scope": "UNCHANGED",
                "userInteraction": "NONE",
                "vectorString": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H",
                "version": "3.1"
              },
              "format": "CVSS",
              "scenarios": [
                {
                  "lang": "en",
                  "value": "GENERAL"
                }
              ]
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "cweId": "CWE-98",
                  "description": "CWE-98 Improper Control of Filename for Include/Require Statement in PHP Program (\u0027PHP Remote File Inclusion\u0027)",
                  "lang": "en",
                  "type": "CWE"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2026-09-16T07:50:20.465Z",
            "orgId": "270ccfa6-a436-4e77-922e-914ec3a9685c",
            "shortName": "CERTVDE"
          },
          "references": [
            {
              "url": "https://www.certvde.com/en/advisories/VDE-2026-014/"
            },
            {
              "url": "https://www.certvde.com/en/advisories/VDE-2026-027/"
            },
            {
              "url": "https://www.certvde.com/en/advisories/VDE-2026-028/"
            }
          ],
          "source": {
            "advisory": "VDE-2026-014, VDE-2026-027, VDE-2026-028",
            "defect": [
              "CERT@VDE#641944"
            ],
            "discovery": "UNKNOWN"
          },
          "title": "Local File Inclusion in /index.php/ajax/save_iodd_parameters",
          "x_generator": {
            "engine": "Vulnogram 0.4.0"
          }
        }
      },
      "cveMetadata": {
        "assignerOrgId": "270ccfa6-a436-4e77-922e-914ec3a9685c",
        "assignerShortName": "CERTVDE",
        "cveId": "CVE-2026-27556",
        "datePublished": "2026-09-16T07:50:20.465Z",
        "dateReserved": "2026-02-20T13:10:29.716Z",
        "dateUpdated": "2026-09-16T18:36:10.529Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.2"
    }

    CVE-2026-27555 (GCVE-0-2026-27555)

    Vulnerability from cvelistv5 – Published: 2026-09-16 07:50 – Updated: 2026-09-16 19:05
    VLAI
    Title
    Local File Inclusion in /index.php/ajax/get_iodd_port_info
    Summary
    A low-privileged remote attacker can exploit a local file inclusion vulnerability in the /index.php/ajax/get_iodd_port_info endpoint using a valid user cookie allowing execution of arbitrary PHP code on the device.
    SSVC
    Exploitation: none Automatable: no Technical Impact: total
    CISA Coordinator · CISA-ADP (v2.0.3)
    Decision recorded 2026-09-16 19:05 UTC
    CWE
    • CWE-98 - Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion')
    Impacted products
    Vendor Product Version
    Pepperl+Fuchs ICE2-8IOL1-G65L-V1D Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE2-8IOL-G65L-V1D Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE2-8IOL-K45P-RJ45 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE2-8IOL-K45S-RJ45 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE3-8IOL1-G65L-V1D Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE3-8IOL-G65L-V1D Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE3-8IOL-G65L-V1D-Y Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE3-8IOL-K45P-RJ45 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE3-8IOL-K45S-RJ45 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Phoenix Contact IOL MA8 PN DI8 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Phoenix Contact IOL MA8 EIP DI8 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Carlo Gavazzi Automation YL212CEI8M1IO Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Carlo Gavazzi Automation YN115CEI8RPIO Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Carlo Gavazzi Automation YL212CPN8M1IO Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Carlo Gavazzi Automation YN115CPN8RPIO Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "metrics": [
              {
                "other": {
                  "content": {
                    "id": "CVE-2026-27555",
                    "options": [
                      {
                        "Exploitation": "none"
                      },
                      {
                        "Automatable": "no"
                      },
                      {
                        "Technical Impact": "total"
                      }
                    ],
                    "role": "CISA Coordinator",
                    "timestamp": "2026-09-16T19:05:09.160663Z",
                    "version": "2.0.3"
                  },
                  "type": "ssvc"
                }
              }
            ],
            "providerMetadata": {
              "dateUpdated": "2026-09-16T19:05:15.954Z",
              "orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
              "shortName": "CISA-ADP"
            },
            "title": "CISA ADP Vulnrichment"
          }
        ],
        "cna": {
          "affected": [
            {
              "defaultStatus": "unaffected",
              "product": "ICE2-8IOL1-G65L-V1D",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE2-8IOL-G65L-V1D",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE2-8IOL-K45P-RJ45",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE2-8IOL-K45S-RJ45",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE3-8IOL1-G65L-V1D",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE3-8IOL-G65L-V1D",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE3-8IOL-G65L-V1D-Y",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE3-8IOL-K45P-RJ45",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE3-8IOL-K45S-RJ45",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "IOL MA8 PN DI8",
              "vendor": "Phoenix Contact",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "IOL MA8 EIP DI8",
              "vendor": "Phoenix Contact",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "YL212CEI8M1IO",
              "vendor": "Carlo Gavazzi Automation",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "YN115CEI8RPIO",
              "vendor": "Carlo Gavazzi Automation",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "YL212CPN8M1IO",
              "vendor": "Carlo Gavazzi Automation",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "YN115CPN8RPIO",
              "vendor": "Carlo Gavazzi Automation",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            }
          ],
          "cpeApplicability": [
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice2_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice2_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice2_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice2_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice3_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice3_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice3_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice3_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice3_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:phoenix_contact:iol_ma8_pn_di8_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:phoenix_contact:iol_ma8_eip_di8_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:carlo_gavazzi:yl212cei8m1io_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:carlo_gavazzi:yn115cei8rpio_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:carlo_gavazzi:yl212cpn8m1io_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:carlo_gavazzi:yn115cpn8rpio_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            }
          ],
          "credits": [
            {
              "lang": "en",
              "type": "finder",
              "value": "Gabriele Quagliarella from Nozomi Networks"
            },
            {
              "lang": "en",
              "type": "finder",
              "value": "Luca Borzacchiello from Nozomi Networks"
            }
          ],
          "descriptions": [
            {
              "lang": "en",
              "supportingMedia": [
                {
                  "base64": false,
                  "type": "text/html",
                  "value": "\u003cp\u003eA low-privileged remote attacker can exploit a local file inclusion vulnerability in the /index.php/ajax/get_iodd_port_info endpoint using a valid user cookie allowing execution of arbitrary PHP code on the device.\u003c/p\u003e"
                }
              ],
              "value": "A low-privileged remote attacker can exploit a local file inclusion vulnerability in the /index.php/ajax/get_iodd_port_info endpoint using a valid user cookie allowing execution of arbitrary PHP code on the device."
            }
          ],
          "metrics": [
            {
              "cvssV3_1": {
                "attackComplexity": "LOW",
                "attackVector": "NETWORK",
                "availabilityImpact": "HIGH",
                "baseScore": 8.8,
                "baseSeverity": "HIGH",
                "confidentialityImpact": "HIGH",
                "integrityImpact": "HIGH",
                "privilegesRequired": "LOW",
                "scope": "UNCHANGED",
                "userInteraction": "NONE",
                "vectorString": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H",
                "version": "3.1"
              },
              "format": "CVSS",
              "scenarios": [
                {
                  "lang": "en",
                  "value": "GENERAL"
                }
              ]
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "cweId": "CWE-98",
                  "description": "CWE-98 Improper Control of Filename for Include/Require Statement in PHP Program (\u0027PHP Remote File Inclusion\u0027)",
                  "lang": "en",
                  "type": "CWE"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2026-09-16T07:50:08.560Z",
            "orgId": "270ccfa6-a436-4e77-922e-914ec3a9685c",
            "shortName": "CERTVDE"
          },
          "references": [
            {
              "url": "https://www.certvde.com/en/advisories/VDE-2026-014/"
            },
            {
              "url": "https://www.certvde.com/en/advisories/VDE-2026-027/"
            },
            {
              "url": "https://www.certvde.com/en/advisories/VDE-2026-028/"
            }
          ],
          "source": {
            "advisory": "VDE-2026-014, VDE-2026-027, VDE-2026-028",
            "defect": [
              "CERT@VDE#641944"
            ],
            "discovery": "UNKNOWN"
          },
          "title": "Local File Inclusion in /index.php/ajax/get_iodd_port_info",
          "x_generator": {
            "engine": "Vulnogram 0.4.0"
          }
        }
      },
      "cveMetadata": {
        "assignerOrgId": "270ccfa6-a436-4e77-922e-914ec3a9685c",
        "assignerShortName": "CERTVDE",
        "cveId": "CVE-2026-27555",
        "datePublished": "2026-09-16T07:50:08.560Z",
        "dateReserved": "2026-02-20T13:10:29.716Z",
        "dateUpdated": "2026-09-16T19:05:15.954Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.2"
    }

    CVE-2026-27554 (GCVE-0-2026-27554)

    Vulnerability from cvelistv5 – Published: 2026-09-16 07:49 – Updated: 2026-09-16 18:23
    VLAI
    Title
    Command Injection in /index.php/ajax/save_iodd_parameters
    Summary
    A low-privileged remote attacker can exploit a command injection vulnerability in the /index.php/ajax/save_iodd_parameters endpoint using operator credentials allowing execution of commands with root privileges on the device.
    SSVC
    Exploitation: none Automatable: no Technical Impact: total
    CISA Coordinator · CISA-ADP (v2.0.3)
    Decision recorded 2026-09-16 18:16 UTC
    CWE
    • CWE-78 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
    Impacted products
    Vendor Product Version
    Pepperl+Fuchs ICE2-8IOL1-G65L-V1D Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE2-8IOL-G65L-V1D Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE2-8IOL-K45P-RJ45 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE2-8IOL-K45S-RJ45 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE3-8IOL1-G65L-V1D Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE3-8IOL-G65L-V1D Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE3-8IOL-G65L-V1D-Y Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE3-8IOL-K45P-RJ45 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE3-8IOL-K45S-RJ45 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Phoenix Contact IOL MA8 PN DI8 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Phoenix Contact IOL MA8 EIP DI8 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Carlo Gavazzi Automation YL212CEI8M1IO Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Carlo Gavazzi Automation YN115CEI8RPIO Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Carlo Gavazzi Automation YL212CPN8M1IO Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Carlo Gavazzi Automation YN115CPN8RPIO Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "metrics": [
              {
                "other": {
                  "content": {
                    "id": "CVE-2026-27554",
                    "options": [
                      {
                        "Exploitation": "none"
                      },
                      {
                        "Automatable": "no"
                      },
                      {
                        "Technical Impact": "total"
                      }
                    ],
                    "role": "CISA Coordinator",
                    "timestamp": "2026-09-16T18:16:33.694487Z",
                    "version": "2.0.3"
                  },
                  "type": "ssvc"
                }
              }
            ],
            "providerMetadata": {
              "dateUpdated": "2026-09-16T18:23:49.225Z",
              "orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
              "shortName": "CISA-ADP"
            },
            "title": "CISA ADP Vulnrichment"
          }
        ],
        "cna": {
          "affected": [
            {
              "defaultStatus": "unaffected",
              "product": "ICE2-8IOL1-G65L-V1D",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE2-8IOL-G65L-V1D",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE2-8IOL-K45P-RJ45",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE2-8IOL-K45S-RJ45",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE3-8IOL1-G65L-V1D",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE3-8IOL-G65L-V1D",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE3-8IOL-G65L-V1D-Y",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE3-8IOL-K45P-RJ45",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE3-8IOL-K45S-RJ45",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "IOL MA8 PN DI8",
              "vendor": "Phoenix Contact",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "IOL MA8 EIP DI8",
              "vendor": "Phoenix Contact",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "YL212CEI8M1IO",
              "vendor": "Carlo Gavazzi Automation",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "YN115CEI8RPIO",
              "vendor": "Carlo Gavazzi Automation",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "YL212CPN8M1IO",
              "vendor": "Carlo Gavazzi Automation",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "YN115CPN8RPIO",
              "vendor": "Carlo Gavazzi Automation",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            }
          ],
          "cpeApplicability": [
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice2_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice2_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice2_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice2_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice3_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice3_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice3_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice3_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice3_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:phoenix_contact:iol_ma8_pn_di8_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:phoenix_contact:iol_ma8_eip_di8_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:carlo_gavazzi:yl212cei8m1io_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:carlo_gavazzi:yn115cei8rpio_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:carlo_gavazzi:yl212cpn8m1io_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:carlo_gavazzi:yn115cpn8rpio_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            }
          ],
          "credits": [
            {
              "lang": "en",
              "type": "finder",
              "value": "Gabriele Quagliarella from Nozomi Networks"
            },
            {
              "lang": "en",
              "type": "finder",
              "value": "Luca Borzacchiello from Nozomi Networks"
            }
          ],
          "descriptions": [
            {
              "lang": "en",
              "supportingMedia": [
                {
                  "base64": false,
                  "type": "text/html",
                  "value": "\u003cp\u003eA low-privileged remote attacker can exploit a command injection vulnerability in the /index.php/ajax/save_iodd_parameters endpoint using operator credentials allowing execution of commands with root privileges on the device.\u003c/p\u003e"
                }
              ],
              "value": "A low-privileged remote attacker can exploit a command injection vulnerability in the /index.php/ajax/save_iodd_parameters endpoint using operator credentials allowing execution of commands with root privileges on the device."
            }
          ],
          "metrics": [
            {
              "cvssV3_1": {
                "attackComplexity": "LOW",
                "attackVector": "NETWORK",
                "availabilityImpact": "HIGH",
                "baseScore": 8.8,
                "baseSeverity": "HIGH",
                "confidentialityImpact": "HIGH",
                "integrityImpact": "HIGH",
                "privilegesRequired": "LOW",
                "scope": "UNCHANGED",
                "userInteraction": "NONE",
                "vectorString": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H",
                "version": "3.1"
              },
              "format": "CVSS",
              "scenarios": [
                {
                  "lang": "en",
                  "value": "GENERAL"
                }
              ]
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "cweId": "CWE-78",
                  "description": "CWE-78 Improper Neutralization of Special Elements used in an OS Command (\u0027OS Command Injection\u0027)",
                  "lang": "en",
                  "type": "CWE"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2026-09-16T07:49:58.795Z",
            "orgId": "270ccfa6-a436-4e77-922e-914ec3a9685c",
            "shortName": "CERTVDE"
          },
          "references": [
            {
              "url": "https://www.certvde.com/en/advisories/VDE-2026-014/"
            },
            {
              "url": "https://www.certvde.com/en/advisories/VDE-2026-027/"
            },
            {
              "url": "https://www.certvde.com/en/advisories/VDE-2026-028/"
            }
          ],
          "source": {
            "advisory": "VDE-2026-014, VDE-2026-027, VDE-2026-028",
            "defect": [
              "CERT@VDE#641944"
            ],
            "discovery": "UNKNOWN"
          },
          "title": "Command Injection in /index.php/ajax/save_iodd_parameters",
          "x_generator": {
            "engine": "Vulnogram 0.4.0"
          }
        }
      },
      "cveMetadata": {
        "assignerOrgId": "270ccfa6-a436-4e77-922e-914ec3a9685c",
        "assignerShortName": "CERTVDE",
        "cveId": "CVE-2026-27554",
        "datePublished": "2026-09-16T07:49:58.795Z",
        "dateReserved": "2026-02-20T13:10:29.716Z",
        "dateUpdated": "2026-09-16T18:23:49.225Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.2"
    }

    CVE-2026-27553 (GCVE-0-2026-27553)

    Vulnerability from cvelistv5 – Published: 2026-09-16 07:49 – Updated: 2026-09-19 02:20
    VLAI
    Title
    Information Disclosure via Schema Path Manipulation
    Summary
    A low-privileged remote attacker can manipulate the schema path parameter in the /index.php/diagnostics_tab/ajax_diag_table_rows endpoint using a valid user cookie allowing disclosure of all user password hashes.
    SSVC
    Exploitation: none Automatable: no Technical Impact: partial
    CISA Coordinator · CISA-ADP (v2.0.3)
    Decision recorded 2026-09-18 17:35 UTC
    CWE
    • CWE-497 - Exposure of Sensitive System Information to an Unauthorized Control Sphere
    Impacted products
    Vendor Product Version
    Pepperl+Fuchs ICE2-8IOL1-G65L-V1D Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE2-8IOL-G65L-V1D Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE2-8IOL-K45P-RJ45 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE2-8IOL-K45S-RJ45 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE3-8IOL1-G65L-V1D Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE3-8IOL-G65L-V1D Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE3-8IOL-G65L-V1D-Y Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE3-8IOL-K45P-RJ45 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE3-8IOL-K45S-RJ45 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Phoenix Contact IOL MA8 PN DI8 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Phoenix Contact IOL MA8 EIP DI8 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Carlo Gavazzi Automation YL212CEI8M1IO Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Carlo Gavazzi Automation YN115CEI8RPIO Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Carlo Gavazzi Automation YL212CPN8M1IO Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Carlo Gavazzi Automation YN115CPN8RPIO Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "metrics": [
              {
                "other": {
                  "content": {
                    "id": "CVE-2026-27553",
                    "options": [
                      {
                        "Exploitation": "none"
                      },
                      {
                        "Automatable": "no"
                      },
                      {
                        "Technical Impact": "partial"
                      }
                    ],
                    "role": "CISA Coordinator",
                    "timestamp": "2026-09-18T17:35:06.592429Z",
                    "version": "2.0.3"
                  },
                  "type": "ssvc"
                }
              }
            ],
            "providerMetadata": {
              "dateUpdated": "2026-09-19T02:20:02.863Z",
              "orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
              "shortName": "CISA-ADP"
            },
            "title": "CISA ADP Vulnrichment"
          }
        ],
        "cna": {
          "affected": [
            {
              "defaultStatus": "unaffected",
              "product": "ICE2-8IOL1-G65L-V1D",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE2-8IOL-G65L-V1D",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE2-8IOL-K45P-RJ45",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE2-8IOL-K45S-RJ45",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE3-8IOL1-G65L-V1D",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE3-8IOL-G65L-V1D",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE3-8IOL-G65L-V1D-Y",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE3-8IOL-K45P-RJ45",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE3-8IOL-K45S-RJ45",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "IOL MA8 PN DI8",
              "vendor": "Phoenix Contact",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "IOL MA8 EIP DI8",
              "vendor": "Phoenix Contact",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "YL212CEI8M1IO",
              "vendor": "Carlo Gavazzi Automation",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "YN115CEI8RPIO",
              "vendor": "Carlo Gavazzi Automation",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "YL212CPN8M1IO",
              "vendor": "Carlo Gavazzi Automation",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "YN115CPN8RPIO",
              "vendor": "Carlo Gavazzi Automation",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            }
          ],
          "cpeApplicability": [
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice2_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice2_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice2_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice2_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice3_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice3_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice3_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice3_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice3_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:phoenix_contact:iol_ma8_pn_di8_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:phoenix_contact:iol_ma8_eip_di8_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:carlo_gavazzi:yl212cei8m1io_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:carlo_gavazzi:yn115cei8rpio_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:carlo_gavazzi:yl212cpn8m1io_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:carlo_gavazzi:yn115cpn8rpio_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            }
          ],
          "credits": [
            {
              "lang": "en",
              "type": "finder",
              "value": "Gabriele Quagliarella from Nozomi Networks"
            },
            {
              "lang": "en",
              "type": "finder",
              "value": "Luca Borzacchiello from Nozomi Networks"
            }
          ],
          "descriptions": [
            {
              "lang": "en",
              "supportingMedia": [
                {
                  "base64": false,
                  "type": "text/html",
                  "value": "\u003cp\u003eA low-privileged remote attacker can manipulate the schema path parameter in the /index.php/diagnostics_tab/ajax_diag_table_rows endpoint using a valid user cookie allowing disclosure of all user password hashes.\u003c/p\u003e"
                }
              ],
              "value": "A low-privileged remote attacker can manipulate the schema path parameter in the /index.php/diagnostics_tab/ajax_diag_table_rows endpoint using a valid user cookie allowing disclosure of all user password hashes."
            }
          ],
          "metrics": [
            {
              "cvssV3_1": {
                "attackComplexity": "LOW",
                "attackVector": "NETWORK",
                "availabilityImpact": "NONE",
                "baseScore": 6.5,
                "baseSeverity": "MEDIUM",
                "confidentialityImpact": "HIGH",
                "integrityImpact": "NONE",
                "privilegesRequired": "LOW",
                "scope": "UNCHANGED",
                "userInteraction": "NONE",
                "vectorString": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N",
                "version": "3.1"
              },
              "format": "CVSS",
              "scenarios": [
                {
                  "lang": "en",
                  "value": "GENERAL"
                }
              ]
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "cweId": "CWE-497",
                  "description": "CWE-497 Exposure of Sensitive System Information to an Unauthorized Control Sphere",
                  "lang": "en",
                  "type": "CWE"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2026-09-16T07:49:48.547Z",
            "orgId": "270ccfa6-a436-4e77-922e-914ec3a9685c",
            "shortName": "CERTVDE"
          },
          "references": [
            {
              "url": "https://www.certvde.com/en/advisories/VDE-2026-014/"
            },
            {
              "url": "https://www.certvde.com/en/advisories/VDE-2026-027/"
            },
            {
              "url": "https://www.certvde.com/en/advisories/VDE-2026-028/"
            }
          ],
          "source": {
            "advisory": "VDE-2026-014, VDE-2026-027, VDE-2026-028",
            "defect": [
              "CERT@VDE#641944"
            ],
            "discovery": "UNKNOWN"
          },
          "title": "Information Disclosure via Schema Path Manipulation",
          "x_generator": {
            "engine": "Vulnogram 0.4.0"
          }
        }
      },
      "cveMetadata": {
        "assignerOrgId": "270ccfa6-a436-4e77-922e-914ec3a9685c",
        "assignerShortName": "CERTVDE",
        "cveId": "CVE-2026-27553",
        "datePublished": "2026-09-16T07:49:48.547Z",
        "dateReserved": "2026-02-20T13:10:29.716Z",
        "dateUpdated": "2026-09-19T02:20:02.863Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.2"
    }

    CVE-2026-27552 (GCVE-0-2026-27552)

    Vulnerability from cvelistv5 – Published: 2026-09-16 07:49 – Updated: 2026-09-16 14:53
    VLAI
    Title
    Unauthorized IODD File Upload due to Improper Authorization
    Summary
    A low-privileged remote attacker can exploit improper authorization in the /index.php/attached_devices_tab/do_upload endpoint to upload IODD files to the device, potentially altering device behavior or causing system crashes.
    SSVC
    Exploitation: none Automatable: no Technical Impact: partial
    CISA Coordinator · CISA-ADP (v2.0.3)
    Decision recorded 2026-09-16 14:53 UTC
    CWE
    • CWE-863 - Incorrect Authorization
    Impacted products
    Vendor Product Version
    Pepperl+Fuchs ICE2-8IOL1-G65L-V1D Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE2-8IOL-G65L-V1D Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE2-8IOL-K45P-RJ45 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE2-8IOL-K45S-RJ45 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE3-8IOL1-G65L-V1D Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE3-8IOL-G65L-V1D Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE3-8IOL-G65L-V1D-Y Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE3-8IOL-K45P-RJ45 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE3-8IOL-K45S-RJ45 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Phoenix Contact IOL MA8 PN DI8 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Phoenix Contact IOL MA8 EIP DI8 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Carlo Gavazzi Automation YL212CEI8M1IO Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Carlo Gavazzi Automation YN115CEI8RPIO Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Carlo Gavazzi Automation YL212CPN8M1IO Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Carlo Gavazzi Automation YN115CPN8RPIO Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "metrics": [
              {
                "other": {
                  "content": {
                    "id": "CVE-2026-27552",
                    "options": [
                      {
                        "Exploitation": "none"
                      },
                      {
                        "Automatable": "no"
                      },
                      {
                        "Technical Impact": "partial"
                      }
                    ],
                    "role": "CISA Coordinator",
                    "timestamp": "2026-09-16T14:53:40.774542Z",
                    "version": "2.0.3"
                  },
                  "type": "ssvc"
                }
              }
            ],
            "providerMetadata": {
              "dateUpdated": "2026-09-16T14:53:49.707Z",
              "orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
              "shortName": "CISA-ADP"
            },
            "title": "CISA ADP Vulnrichment"
          }
        ],
        "cna": {
          "affected": [
            {
              "defaultStatus": "unaffected",
              "product": "ICE2-8IOL1-G65L-V1D",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE2-8IOL-G65L-V1D",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE2-8IOL-K45P-RJ45",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE2-8IOL-K45S-RJ45",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE3-8IOL1-G65L-V1D",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE3-8IOL-G65L-V1D",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE3-8IOL-G65L-V1D-Y",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE3-8IOL-K45P-RJ45",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE3-8IOL-K45S-RJ45",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "IOL MA8 PN DI8",
              "vendor": "Phoenix Contact",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "IOL MA8 EIP DI8",
              "vendor": "Phoenix Contact",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "YL212CEI8M1IO",
              "vendor": "Carlo Gavazzi Automation",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "YN115CEI8RPIO",
              "vendor": "Carlo Gavazzi Automation",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "YL212CPN8M1IO",
              "vendor": "Carlo Gavazzi Automation",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "YN115CPN8RPIO",
              "vendor": "Carlo Gavazzi Automation",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            }
          ],
          "cpeApplicability": [
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice2_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice2_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice2_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice2_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice3_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice3_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice3_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice3_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice3_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:phoenix_contact:iol_ma8_pn_di8_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:phoenix_contact:iol_ma8_eip_di8_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:carlo_gavazzi:yl212cei8m1io_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:carlo_gavazzi:yn115cei8rpio_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:carlo_gavazzi:yl212cpn8m1io_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:carlo_gavazzi:yn115cpn8rpio_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            }
          ],
          "credits": [
            {
              "lang": "en",
              "type": "finder",
              "value": "Gabriele Quagliarella from Nozomi Networks"
            },
            {
              "lang": "en",
              "type": "finder",
              "value": "Luca Borzacchiello from Nozomi Networks"
            }
          ],
          "descriptions": [
            {
              "lang": "en",
              "supportingMedia": [
                {
                  "base64": false,
                  "type": "text/html",
                  "value": "\u003cp\u003eA low-privileged remote attacker can exploit improper authorization in the /index.php/attached_devices_tab/do_upload endpoint to upload IODD files to the device, potentially altering device behavior or causing system crashes.\u003c/p\u003e"
                }
              ],
              "value": "A low-privileged remote attacker can exploit improper authorization in the /index.php/attached_devices_tab/do_upload endpoint to upload IODD files to the device, potentially altering device behavior or causing system crashes."
            }
          ],
          "metrics": [
            {
              "cvssV3_1": {
                "attackComplexity": "LOW",
                "attackVector": "NETWORK",
                "availabilityImpact": "HIGH",
                "baseScore": 8.1,
                "baseSeverity": "HIGH",
                "confidentialityImpact": "NONE",
                "integrityImpact": "HIGH",
                "privilegesRequired": "LOW",
                "scope": "UNCHANGED",
                "userInteraction": "NONE",
                "vectorString": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:H",
                "version": "3.1"
              },
              "format": "CVSS",
              "scenarios": [
                {
                  "lang": "en",
                  "value": "GENERAL"
                }
              ]
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "cweId": "CWE-863",
                  "description": "CWE-863 Incorrect Authorization",
                  "lang": "en",
                  "type": "CWE"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2026-09-16T07:49:32.300Z",
            "orgId": "270ccfa6-a436-4e77-922e-914ec3a9685c",
            "shortName": "CERTVDE"
          },
          "references": [
            {
              "url": "https://www.certvde.com/en/advisories/VDE-2026-014/"
            },
            {
              "url": "https://www.certvde.com/en/advisories/VDE-2026-027/"
            },
            {
              "url": "https://www.certvde.com/en/advisories/VDE-2026-028/"
            }
          ],
          "source": {
            "advisory": "VDE-2026-014, VDE-2026-027, VDE-2026-028",
            "defect": [
              "CERT@VDE#641944"
            ],
            "discovery": "UNKNOWN"
          },
          "title": "Unauthorized IODD File Upload due to Improper Authorization",
          "x_generator": {
            "engine": "Vulnogram 0.4.0"
          }
        }
      },
      "cveMetadata": {
        "assignerOrgId": "270ccfa6-a436-4e77-922e-914ec3a9685c",
        "assignerShortName": "CERTVDE",
        "cveId": "CVE-2026-27552",
        "datePublished": "2026-09-16T07:49:32.300Z",
        "dateReserved": "2026-02-20T13:10:29.716Z",
        "dateUpdated": "2026-09-16T14:53:49.707Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.2"
    }

    CVE-2026-27551 (GCVE-0-2026-27551)

    Vulnerability from cvelistv5 – Published: 2026-09-16 07:49 – Updated: 2026-09-16 18:36
    VLAI
    Title
    Command Injection in /index.php/ajax/parameterManage
    Summary
    A low-privileged remote attacker can exploit a command injection vulnerability in the /index.php/ajax/parameterManage endpoint using user credentials allowing execution of commands with root privileges on the device.
    SSVC
    Exploitation: none Automatable: no Technical Impact: total
    CISA Coordinator · CISA-ADP (v2.0.3)
    Decision recorded 2026-09-16 18:21 UTC
    CWE
    • CWE-78 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
    Impacted products
    Vendor Product Version
    Pepperl+Fuchs ICE2-8IOL1-G65L-V1D Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE2-8IOL-G65L-V1D Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE2-8IOL-K45P-RJ45 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE2-8IOL-K45S-RJ45 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE3-8IOL1-G65L-V1D Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE3-8IOL-G65L-V1D Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE3-8IOL-G65L-V1D-Y Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE3-8IOL-K45P-RJ45 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE3-8IOL-K45S-RJ45 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Phoenix Contact IOL MA8 PN DI8 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Phoenix Contact IOL MA8 EIP DI8 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Carlo Gavazzi Automation YL212CEI8M1IO Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Carlo Gavazzi Automation YN115CEI8RPIO Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Carlo Gavazzi Automation YL212CPN8M1IO Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Carlo Gavazzi Automation YN115CPN8RPIO Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "metrics": [
              {
                "other": {
                  "content": {
                    "id": "CVE-2026-27551",
                    "options": [
                      {
                        "Exploitation": "none"
                      },
                      {
                        "Automatable": "no"
                      },
                      {
                        "Technical Impact": "total"
                      }
                    ],
                    "role": "CISA Coordinator",
                    "timestamp": "2026-09-16T18:21:16.930249Z",
                    "version": "2.0.3"
                  },
                  "type": "ssvc"
                }
              }
            ],
            "providerMetadata": {
              "dateUpdated": "2026-09-16T18:36:16.745Z",
              "orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
              "shortName": "CISA-ADP"
            },
            "title": "CISA ADP Vulnrichment"
          }
        ],
        "cna": {
          "affected": [
            {
              "defaultStatus": "unaffected",
              "product": "ICE2-8IOL1-G65L-V1D",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE2-8IOL-G65L-V1D",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE2-8IOL-K45P-RJ45",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE2-8IOL-K45S-RJ45",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE3-8IOL1-G65L-V1D",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE3-8IOL-G65L-V1D",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE3-8IOL-G65L-V1D-Y",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE3-8IOL-K45P-RJ45",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE3-8IOL-K45S-RJ45",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "IOL MA8 PN DI8",
              "vendor": "Phoenix Contact",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "IOL MA8 EIP DI8",
              "vendor": "Phoenix Contact",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "YL212CEI8M1IO",
              "vendor": "Carlo Gavazzi Automation",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "YN115CEI8RPIO",
              "vendor": "Carlo Gavazzi Automation",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "YL212CPN8M1IO",
              "vendor": "Carlo Gavazzi Automation",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "YN115CPN8RPIO",
              "vendor": "Carlo Gavazzi Automation",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            }
          ],
          "cpeApplicability": [
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice2_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice2_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice2_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice2_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice3_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice3_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice3_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice3_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice3_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:phoenix_contact:iol_ma8_pn_di8_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:phoenix_contact:iol_ma8_eip_di8_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:carlo_gavazzi:yl212cei8m1io_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:carlo_gavazzi:yn115cei8rpio_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:carlo_gavazzi:yl212cpn8m1io_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:carlo_gavazzi:yn115cpn8rpio_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            }
          ],
          "credits": [
            {
              "lang": "en",
              "type": "finder",
              "value": "Gabriele Quagliarella from Nozomi Networks"
            },
            {
              "lang": "en",
              "type": "finder",
              "value": "Luca Borzacchiello from Nozomi Networks"
            }
          ],
          "descriptions": [
            {
              "lang": "en",
              "supportingMedia": [
                {
                  "base64": false,
                  "type": "text/html",
                  "value": "\u003cp\u003eA low-privileged remote attacker can exploit a command injection vulnerability in the /index.php/ajax/parameterManage endpoint using user credentials allowing execution of commands with root privileges on the device.\u003c/p\u003e"
                }
              ],
              "value": "A low-privileged remote attacker can exploit a command injection vulnerability in the /index.php/ajax/parameterManage endpoint using user credentials allowing execution of commands with root privileges on the device."
            }
          ],
          "metrics": [
            {
              "cvssV3_1": {
                "attackComplexity": "LOW",
                "attackVector": "NETWORK",
                "availabilityImpact": "HIGH",
                "baseScore": 8.8,
                "baseSeverity": "HIGH",
                "confidentialityImpact": "HIGH",
                "integrityImpact": "HIGH",
                "privilegesRequired": "LOW",
                "scope": "UNCHANGED",
                "userInteraction": "NONE",
                "vectorString": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H",
                "version": "3.1"
              },
              "format": "CVSS",
              "scenarios": [
                {
                  "lang": "en",
                  "value": "GENERAL"
                }
              ]
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "cweId": "CWE-78",
                  "description": "CWE-78 Improper Neutralization of Special Elements used in an OS Command (\u0027OS Command Injection\u0027)",
                  "lang": "en",
                  "type": "CWE"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2026-09-16T07:49:22.734Z",
            "orgId": "270ccfa6-a436-4e77-922e-914ec3a9685c",
            "shortName": "CERTVDE"
          },
          "references": [
            {
              "url": "https://www.certvde.com/en/advisories/VDE-2026-014/"
            },
            {
              "url": "https://www.certvde.com/en/advisories/VDE-2026-027/"
            },
            {
              "url": "https://www.certvde.com/en/advisories/VDE-2026-028/"
            }
          ],
          "source": {
            "advisory": "VDE-2026-014, VDE-2026-027, VDE-2026-028",
            "defect": [
              "CERT@VDE#641944"
            ],
            "discovery": "UNKNOWN"
          },
          "title": "Command Injection in /index.php/ajax/parameterManage",
          "x_generator": {
            "engine": "Vulnogram 0.4.0"
          }
        }
      },
      "cveMetadata": {
        "assignerOrgId": "270ccfa6-a436-4e77-922e-914ec3a9685c",
        "assignerShortName": "CERTVDE",
        "cveId": "CVE-2026-27551",
        "datePublished": "2026-09-16T07:49:22.734Z",
        "dateReserved": "2026-02-20T13:10:29.716Z",
        "dateUpdated": "2026-09-16T18:36:16.745Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.2"
    }

    CVE-2026-27550 (GCVE-0-2026-27550)

    Vulnerability from cvelistv5 – Published: 2026-09-16 07:49 – Updated: 2026-09-16 19:06
    VLAI
    Title
    Command Injection in Field_Shadow_Password Class
    Summary
    A low-privileged remote attacker can exploit a command injection vulnerability in the Field_Shadow_Password class using operator credentials allowing execution of commands with root privileges on the device.
    SSVC
    Exploitation: none Automatable: no Technical Impact: total
    CISA Coordinator · CISA-ADP (v2.0.3)
    Decision recorded 2026-09-16 19:06 UTC
    CWE
    • CWE-78 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
    Impacted products
    Vendor Product Version
    Pepperl+Fuchs ICE2-8IOL1-G65L-V1D Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE2-8IOL-G65L-V1D Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE2-8IOL-K45P-RJ45 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE2-8IOL-K45S-RJ45 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE3-8IOL1-G65L-V1D Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE3-8IOL-G65L-V1D Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE3-8IOL-G65L-V1D-Y Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE3-8IOL-K45P-RJ45 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE3-8IOL-K45S-RJ45 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Phoenix Contact IOL MA8 PN DI8 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Phoenix Contact IOL MA8 EIP DI8 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Carlo Gavazzi Automation YL212CEI8M1IO Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Carlo Gavazzi Automation YN115CEI8RPIO Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Carlo Gavazzi Automation YL212CPN8M1IO Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Carlo Gavazzi Automation YN115CPN8RPIO Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "metrics": [
              {
                "other": {
                  "content": {
                    "id": "CVE-2026-27550",
                    "options": [
                      {
                        "Exploitation": "none"
                      },
                      {
                        "Automatable": "no"
                      },
                      {
                        "Technical Impact": "total"
                      }
                    ],
                    "role": "CISA Coordinator",
                    "timestamp": "2026-09-16T19:06:11.333631Z",
                    "version": "2.0.3"
                  },
                  "type": "ssvc"
                }
              }
            ],
            "providerMetadata": {
              "dateUpdated": "2026-09-16T19:06:21.541Z",
              "orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
              "shortName": "CISA-ADP"
            },
            "title": "CISA ADP Vulnrichment"
          }
        ],
        "cna": {
          "affected": [
            {
              "defaultStatus": "unaffected",
              "product": "ICE2-8IOL1-G65L-V1D",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE2-8IOL-G65L-V1D",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE2-8IOL-K45P-RJ45",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE2-8IOL-K45S-RJ45",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE3-8IOL1-G65L-V1D",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE3-8IOL-G65L-V1D",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE3-8IOL-G65L-V1D-Y",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE3-8IOL-K45P-RJ45",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE3-8IOL-K45S-RJ45",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "IOL MA8 PN DI8",
              "vendor": "Phoenix Contact",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "IOL MA8 EIP DI8",
              "vendor": "Phoenix Contact",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "YL212CEI8M1IO",
              "vendor": "Carlo Gavazzi Automation",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "YN115CEI8RPIO",
              "vendor": "Carlo Gavazzi Automation",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "YL212CPN8M1IO",
              "vendor": "Carlo Gavazzi Automation",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "YN115CPN8RPIO",
              "vendor": "Carlo Gavazzi Automation",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            }
          ],
          "cpeApplicability": [
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice2_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice2_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice2_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice2_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice3_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice3_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice3_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice3_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice3_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:phoenix_contact:iol_ma8_pn_di8_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:phoenix_contact:iol_ma8_eip_di8_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:carlo_gavazzi:yl212cei8m1io_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:carlo_gavazzi:yn115cei8rpio_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:carlo_gavazzi:yl212cpn8m1io_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:carlo_gavazzi:yn115cpn8rpio_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            }
          ],
          "credits": [
            {
              "lang": "en",
              "type": "finder",
              "value": "Gabriele Quagliarella from Nozomi Networks"
            },
            {
              "lang": "en",
              "type": "finder",
              "value": "Luca Borzacchiello from Nozomi Networks"
            }
          ],
          "descriptions": [
            {
              "lang": "en",
              "supportingMedia": [
                {
                  "base64": false,
                  "type": "text/html",
                  "value": "\u003cp\u003eA low-privileged remote attacker can exploit a command injection vulnerability in the Field_Shadow_Password class using operator credentials allowing execution of commands with root privileges on the device.\u003c/p\u003e"
                }
              ],
              "value": "A low-privileged remote attacker can exploit a command injection vulnerability in the Field_Shadow_Password class using operator credentials allowing execution of commands with root privileges on the device."
            }
          ],
          "metrics": [
            {
              "cvssV3_1": {
                "attackComplexity": "LOW",
                "attackVector": "NETWORK",
                "availabilityImpact": "HIGH",
                "baseScore": 8.8,
                "baseSeverity": "HIGH",
                "confidentialityImpact": "HIGH",
                "integrityImpact": "HIGH",
                "privilegesRequired": "LOW",
                "scope": "UNCHANGED",
                "userInteraction": "NONE",
                "vectorString": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H",
                "version": "3.1"
              },
              "format": "CVSS",
              "scenarios": [
                {
                  "lang": "en",
                  "value": "GENERAL"
                }
              ]
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "cweId": "CWE-78",
                  "description": "CWE-78 Improper Neutralization of Special Elements used in an OS Command (\u0027OS Command Injection\u0027)",
                  "lang": "en",
                  "type": "CWE"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2026-09-16T07:49:12.718Z",
            "orgId": "270ccfa6-a436-4e77-922e-914ec3a9685c",
            "shortName": "CERTVDE"
          },
          "references": [
            {
              "url": "https://www.certvde.com/en/advisories/VDE-2026-014/"
            },
            {
              "url": "https://www.certvde.com/en/advisories/VDE-2026-027/"
            },
            {
              "url": "https://www.certvde.com/en/advisories/VDE-2026-028/"
            }
          ],
          "source": {
            "advisory": "VDE-2026-014, VDE-2026-027, VDE-2026-028",
            "defect": [
              "CERT@VDE#641944"
            ],
            "discovery": "UNKNOWN"
          },
          "title": "Command Injection in Field_Shadow_Password Class",
          "x_generator": {
            "engine": "Vulnogram 0.4.0"
          }
        }
      },
      "cveMetadata": {
        "assignerOrgId": "270ccfa6-a436-4e77-922e-914ec3a9685c",
        "assignerShortName": "CERTVDE",
        "cveId": "CVE-2026-27550",
        "datePublished": "2026-09-16T07:49:12.718Z",
        "dateReserved": "2026-02-20T13:10:29.715Z",
        "dateUpdated": "2026-09-16T19:06:21.541Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.2"
    }

    CVE-2026-27549 (GCVE-0-2026-27549)

    Vulnerability from cvelistv5 – Published: 2026-09-16 07:48 – Updated: 2026-09-16 18:25
    VLAI
    Title
    Command Injection in /index.php/attached_devices_tab/do_upload
    Summary
    A low-privileged remote attacker can exploit a command injection vulnerability in the /index.php/attached_devices_tab/do_upload endpoint using operator credentials allowing execution of commands with root privileges on the device.
    SSVC
    Exploitation: none Automatable: no Technical Impact: total
    CISA Coordinator · CISA-ADP (v2.0.3)
    Decision recorded 2026-09-16 18:24 UTC
    CWE
    • CWE-78 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
    Impacted products
    Vendor Product Version
    Pepperl+Fuchs ICE2-8IOL1-G65L-V1D Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE2-8IOL-G65L-V1D Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE2-8IOL-K45P-RJ45 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE2-8IOL-K45S-RJ45 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE3-8IOL1-G65L-V1D Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE3-8IOL-G65L-V1D Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE3-8IOL-G65L-V1D-Y Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE3-8IOL-K45P-RJ45 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE3-8IOL-K45S-RJ45 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Phoenix Contact IOL MA8 PN DI8 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Phoenix Contact IOL MA8 EIP DI8 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Carlo Gavazzi Automation YL212CEI8M1IO Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Carlo Gavazzi Automation YN115CEI8RPIO Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Carlo Gavazzi Automation YL212CPN8M1IO Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Carlo Gavazzi Automation YN115CPN8RPIO Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "metrics": [
              {
                "other": {
                  "content": {
                    "id": "CVE-2026-27549",
                    "options": [
                      {
                        "Exploitation": "none"
                      },
                      {
                        "Automatable": "no"
                      },
                      {
                        "Technical Impact": "total"
                      }
                    ],
                    "role": "CISA Coordinator",
                    "timestamp": "2026-09-16T18:24:53.691070Z",
                    "version": "2.0.3"
                  },
                  "type": "ssvc"
                }
              }
            ],
            "providerMetadata": {
              "dateUpdated": "2026-09-16T18:25:16.526Z",
              "orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
              "shortName": "CISA-ADP"
            },
            "title": "CISA ADP Vulnrichment"
          }
        ],
        "cna": {
          "affected": [
            {
              "defaultStatus": "unaffected",
              "product": "ICE2-8IOL1-G65L-V1D",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE2-8IOL-G65L-V1D",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE2-8IOL-K45P-RJ45",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE2-8IOL-K45S-RJ45",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE3-8IOL1-G65L-V1D",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE3-8IOL-G65L-V1D",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE3-8IOL-G65L-V1D-Y",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE3-8IOL-K45P-RJ45",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE3-8IOL-K45S-RJ45",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "IOL MA8 PN DI8",
              "vendor": "Phoenix Contact",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "IOL MA8 EIP DI8",
              "vendor": "Phoenix Contact",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "YL212CEI8M1IO",
              "vendor": "Carlo Gavazzi Automation",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "YN115CEI8RPIO",
              "vendor": "Carlo Gavazzi Automation",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "YL212CPN8M1IO",
              "vendor": "Carlo Gavazzi Automation",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "YN115CPN8RPIO",
              "vendor": "Carlo Gavazzi Automation",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            }
          ],
          "cpeApplicability": [
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice2_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice2_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice2_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice2_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice3_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice3_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice3_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice3_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice3_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:phoenix_contact:iol_ma8_pn_di8_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:phoenix_contact:iol_ma8_eip_di8_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:carlo_gavazzi:yl212cei8m1io_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:carlo_gavazzi:yn115cei8rpio_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:carlo_gavazzi:yl212cpn8m1io_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:carlo_gavazzi:yn115cpn8rpio_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            }
          ],
          "credits": [
            {
              "lang": "en",
              "type": "finder",
              "value": "Gabriele Quagliarella from Nozomi Networks"
            },
            {
              "lang": "en",
              "type": "finder",
              "value": "Luca Borzacchiello from Nozomi Networks"
            }
          ],
          "descriptions": [
            {
              "lang": "en",
              "supportingMedia": [
                {
                  "base64": false,
                  "type": "text/html",
                  "value": "\u003cp\u003eA low-privileged remote attacker can exploit a command injection vulnerability in the /index.php/attached_devices_tab/do_upload endpoint using operator credentials allowing execution of commands with root privileges on the device.\u003c/p\u003e"
                }
              ],
              "value": "A low-privileged remote attacker can exploit a command injection vulnerability in the /index.php/attached_devices_tab/do_upload endpoint using operator credentials allowing execution of commands with root privileges on the device."
            }
          ],
          "metrics": [
            {
              "cvssV3_1": {
                "attackComplexity": "LOW",
                "attackVector": "NETWORK",
                "availabilityImpact": "HIGH",
                "baseScore": 8.8,
                "baseSeverity": "HIGH",
                "confidentialityImpact": "HIGH",
                "integrityImpact": "HIGH",
                "privilegesRequired": "LOW",
                "scope": "UNCHANGED",
                "userInteraction": "NONE",
                "vectorString": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H",
                "version": "3.1"
              },
              "format": "CVSS",
              "scenarios": [
                {
                  "lang": "en",
                  "value": "GENERAL"
                }
              ]
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "cweId": "CWE-78",
                  "description": "CWE-78 Improper Neutralization of Special Elements used in an OS Command (\u0027OS Command Injection\u0027)",
                  "lang": "en",
                  "type": "CWE"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2026-09-16T07:48:59.523Z",
            "orgId": "270ccfa6-a436-4e77-922e-914ec3a9685c",
            "shortName": "CERTVDE"
          },
          "references": [
            {
              "url": "https://www.certvde.com/en/advisories/VDE-2026-014/"
            },
            {
              "url": "https://www.certvde.com/en/advisories/VDE-2026-027/"
            },
            {
              "url": "https://www.certvde.com/en/advisories/VDE-2026-028/"
            }
          ],
          "source": {
            "advisory": "VDE-2026-014, VDE-2026-027, VDE-2026-028",
            "defect": [
              "CERT@VDE#641944"
            ],
            "discovery": "UNKNOWN"
          },
          "title": "Command Injection in /index.php/attached_devices_tab/do_upload",
          "x_generator": {
            "engine": "Vulnogram 0.4.0"
          }
        }
      },
      "cveMetadata": {
        "assignerOrgId": "270ccfa6-a436-4e77-922e-914ec3a9685c",
        "assignerShortName": "CERTVDE",
        "cveId": "CVE-2026-27549",
        "datePublished": "2026-09-16T07:48:59.523Z",
        "dateReserved": "2026-02-20T13:10:29.715Z",
        "dateUpdated": "2026-09-16T18:25:16.526Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.2"
    }

    CVE-2026-27548 (GCVE-0-2026-27548)

    Vulnerability from cvelistv5 – Published: 2026-09-16 07:48 – Updated: 2026-09-18 17:34
    VLAI
    Title
    Command Injection in /index.php/ajax/get_iodd_port_info
    Summary
    A low-privileged remote attacker can exploit a command injection vulnerability in the /index.php/ajax/get_iodd_port_info endpoint using user or operator credentials allowing execution of commands with root privileges on the device.
    SSVC
    Exploitation: none Automatable: no Technical Impact: total
    CISA Coordinator · CISA-ADP (v2.0.3)
    Decision recorded 2026-09-18 17:34 UTC
    CWE
    • CWE-78 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
    Impacted products
    Vendor Product Version
    Pepperl+Fuchs ICE2-8IOL1-G65L-V1D Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE2-8IOL-G65L-V1D Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE2-8IOL-K45P-RJ45 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE2-8IOL-K45S-RJ45 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE3-8IOL1-G65L-V1D Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE3-8IOL-G65L-V1D Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE3-8IOL-G65L-V1D-Y Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE3-8IOL-K45P-RJ45 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE3-8IOL-K45S-RJ45 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Phoenix Contact IOL MA8 PN DI8 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Phoenix Contact IOL MA8 EIP DI8 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Carlo Gavazzi Automation YL212CEI8M1IO Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Carlo Gavazzi Automation YN115CEI8RPIO Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Carlo Gavazzi Automation YL212CPN8M1IO Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Carlo Gavazzi Automation YN115CPN8RPIO Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "metrics": [
              {
                "other": {
                  "content": {
                    "id": "CVE-2026-27548",
                    "options": [
                      {
                        "Exploitation": "none"
                      },
                      {
                        "Automatable": "no"
                      },
                      {
                        "Technical Impact": "total"
                      }
                    ],
                    "role": "CISA Coordinator",
                    "timestamp": "2026-09-18T17:34:24.148955Z",
                    "version": "2.0.3"
                  },
                  "type": "ssvc"
                }
              }
            ],
            "providerMetadata": {
              "dateUpdated": "2026-09-18T17:34:40.584Z",
              "orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
              "shortName": "CISA-ADP"
            },
            "title": "CISA ADP Vulnrichment"
          }
        ],
        "cna": {
          "affected": [
            {
              "defaultStatus": "unaffected",
              "product": "ICE2-8IOL1-G65L-V1D",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE2-8IOL-G65L-V1D",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE2-8IOL-K45P-RJ45",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE2-8IOL-K45S-RJ45",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE3-8IOL1-G65L-V1D",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE3-8IOL-G65L-V1D",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE3-8IOL-G65L-V1D-Y",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE3-8IOL-K45P-RJ45",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE3-8IOL-K45S-RJ45",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "IOL MA8 PN DI8",
              "vendor": "Phoenix Contact",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "IOL MA8 EIP DI8",
              "vendor": "Phoenix Contact",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "YL212CEI8M1IO",
              "vendor": "Carlo Gavazzi Automation",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "YN115CEI8RPIO",
              "vendor": "Carlo Gavazzi Automation",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "YL212CPN8M1IO",
              "vendor": "Carlo Gavazzi Automation",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "YN115CPN8RPIO",
              "vendor": "Carlo Gavazzi Automation",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            }
          ],
          "cpeApplicability": [
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice2_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice2_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice2_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice2_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice3_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice3_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice3_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice3_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice3_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:phoenix_contact:iol_ma8_pn_di8_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:phoenix_contact:iol_ma8_eip_di8_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:carlo_gavazzi:yl212cei8m1io_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:carlo_gavazzi:yn115cei8rpio_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:carlo_gavazzi:yl212cpn8m1io_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:carlo_gavazzi:yn115cpn8rpio_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            }
          ],
          "credits": [
            {
              "lang": "en",
              "type": "finder",
              "value": "Gabriele Quagliarella from Nozomi Networks"
            },
            {
              "lang": "en",
              "type": "finder",
              "value": "Luca Borzacchiello from Nozomi Networks"
            }
          ],
          "descriptions": [
            {
              "lang": "en",
              "supportingMedia": [
                {
                  "base64": false,
                  "type": "text/html",
                  "value": "\u003cp\u003eA low-privileged remote attacker can exploit a command injection vulnerability in the /index.php/ajax/get_iodd_port_info endpoint using user or operator credentials allowing execution of commands with root privileges on the device.\u003c/p\u003e"
                }
              ],
              "value": "A low-privileged remote attacker can exploit a command injection vulnerability in the /index.php/ajax/get_iodd_port_info endpoint using user or operator credentials allowing execution of commands with root privileges on the device."
            }
          ],
          "metrics": [
            {
              "cvssV3_1": {
                "attackComplexity": "LOW",
                "attackVector": "NETWORK",
                "availabilityImpact": "HIGH",
                "baseScore": 8.8,
                "baseSeverity": "HIGH",
                "confidentialityImpact": "HIGH",
                "integrityImpact": "HIGH",
                "privilegesRequired": "LOW",
                "scope": "UNCHANGED",
                "userInteraction": "NONE",
                "vectorString": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H",
                "version": "3.1"
              },
              "format": "CVSS",
              "scenarios": [
                {
                  "lang": "en",
                  "value": "GENERAL"
                }
              ]
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "cweId": "CWE-78",
                  "description": "CWE-78 Improper Neutralization of Special Elements used in an OS Command (\u0027OS Command Injection\u0027)",
                  "lang": "en",
                  "type": "CWE"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2026-09-16T07:48:48.807Z",
            "orgId": "270ccfa6-a436-4e77-922e-914ec3a9685c",
            "shortName": "CERTVDE"
          },
          "references": [
            {
              "url": "https://www.certvde.com/en/advisories/VDE-2026-014/"
            },
            {
              "url": "https://www.certvde.com/en/advisories/VDE-2026-027/"
            },
            {
              "url": "https://www.certvde.com/en/advisories/VDE-2026-028/"
            }
          ],
          "source": {
            "advisory": "VDE-2026-014, VDE-2026-027, VDE-2026-028",
            "defect": [
              "CERT@VDE#641944"
            ],
            "discovery": "UNKNOWN"
          },
          "title": "Command Injection in /index.php/ajax/get_iodd_port_info",
          "x_generator": {
            "engine": "Vulnogram 0.4.0"
          }
        }
      },
      "cveMetadata": {
        "assignerOrgId": "270ccfa6-a436-4e77-922e-914ec3a9685c",
        "assignerShortName": "CERTVDE",
        "cveId": "CVE-2026-27548",
        "datePublished": "2026-09-16T07:48:48.807Z",
        "dateReserved": "2026-02-20T13:10:29.715Z",
        "dateUpdated": "2026-09-18T17:34:40.584Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.2"
    }

    CVE-2026-27547 (GCVE-0-2026-27547)

    Vulnerability from cvelistv5 – Published: 2026-09-16 07:48 – Updated: 2026-09-16 14:54
    VLAI
    Title
    Command Injection in /index.php/ajax/get_iodd_menu_info
    Summary
    A low-privileged remote attacker can exploit a command injection vulnerability in the /index.php/ajax/get_iodd_menu_info endpoint using valid user or operator credentials allowing execution of commands with root privileges on the device.
    SSVC
    Exploitation: none Automatable: no Technical Impact: total
    CISA Coordinator · CISA-ADP (v2.0.3)
    Decision recorded 2026-09-16 14:54 UTC
    CWE
    • CWE-78 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
    Impacted products
    Vendor Product Version
    Pepperl+Fuchs ICE2-8IOL1-G65L-V1D Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE2-8IOL-G65L-V1D Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE2-8IOL-K45P-RJ45 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE2-8IOL-K45S-RJ45 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE3-8IOL1-G65L-V1D Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE3-8IOL-G65L-V1D Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE3-8IOL-G65L-V1D-Y Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE3-8IOL-K45P-RJ45 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE3-8IOL-K45S-RJ45 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Phoenix Contact IOL MA8 PN DI8 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Phoenix Contact IOL MA8 EIP DI8 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Carlo Gavazzi Automation YL212CEI8M1IO Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Carlo Gavazzi Automation YN115CEI8RPIO Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Carlo Gavazzi Automation YL212CPN8M1IO Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Carlo Gavazzi Automation YN115CPN8RPIO Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "metrics": [
              {
                "other": {
                  "content": {
                    "id": "CVE-2026-27547",
                    "options": [
                      {
                        "Exploitation": "none"
                      },
                      {
                        "Automatable": "no"
                      },
                      {
                        "Technical Impact": "total"
                      }
                    ],
                    "role": "CISA Coordinator",
                    "timestamp": "2026-09-16T14:54:02.982738Z",
                    "version": "2.0.3"
                  },
                  "type": "ssvc"
                }
              }
            ],
            "providerMetadata": {
              "dateUpdated": "2026-09-16T14:54:12.706Z",
              "orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
              "shortName": "CISA-ADP"
            },
            "title": "CISA ADP Vulnrichment"
          }
        ],
        "cna": {
          "affected": [
            {
              "defaultStatus": "unaffected",
              "product": "ICE2-8IOL1-G65L-V1D",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE2-8IOL-G65L-V1D",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE2-8IOL-K45P-RJ45",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE2-8IOL-K45S-RJ45",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE3-8IOL1-G65L-V1D",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE3-8IOL-G65L-V1D",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE3-8IOL-G65L-V1D-Y",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE3-8IOL-K45P-RJ45",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE3-8IOL-K45S-RJ45",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "IOL MA8 PN DI8",
              "vendor": "Phoenix Contact",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "IOL MA8 EIP DI8",
              "vendor": "Phoenix Contact",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "YL212CEI8M1IO",
              "vendor": "Carlo Gavazzi Automation",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "YN115CEI8RPIO",
              "vendor": "Carlo Gavazzi Automation",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "YL212CPN8M1IO",
              "vendor": "Carlo Gavazzi Automation",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "YN115CPN8RPIO",
              "vendor": "Carlo Gavazzi Automation",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            }
          ],
          "cpeApplicability": [
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice2_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice2_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice2_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice2_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice3_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice3_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice3_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice3_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice3_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:phoenix_contact:iol_ma8_pn_di8_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:phoenix_contact:iol_ma8_eip_di8_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:carlo_gavazzi:yl212cei8m1io_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:carlo_gavazzi:yn115cei8rpio_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:carlo_gavazzi:yl212cpn8m1io_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:carlo_gavazzi:yn115cpn8rpio_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            }
          ],
          "credits": [
            {
              "lang": "en",
              "type": "finder",
              "value": "Gabriele Quagliarella from Nozomi Networks"
            },
            {
              "lang": "en",
              "type": "finder",
              "value": "Luca Borzacchiello from Nozomi Networks"
            }
          ],
          "descriptions": [
            {
              "lang": "en",
              "supportingMedia": [
                {
                  "base64": false,
                  "type": "text/html",
                  "value": "\u003cp\u003eA low-privileged remote attacker can exploit a command injection vulnerability in the /index.php/ajax/get_iodd_menu_info endpoint using valid user or operator credentials allowing execution of commands with root privileges on the device.\u003c/p\u003e"
                }
              ],
              "value": "A low-privileged remote attacker can exploit a command injection vulnerability in the /index.php/ajax/get_iodd_menu_info endpoint using valid user or operator credentials allowing execution of commands with root privileges on the device."
            }
          ],
          "metrics": [
            {
              "cvssV3_1": {
                "attackComplexity": "LOW",
                "attackVector": "NETWORK",
                "availabilityImpact": "HIGH",
                "baseScore": 8.8,
                "baseSeverity": "HIGH",
                "confidentialityImpact": "HIGH",
                "integrityImpact": "HIGH",
                "privilegesRequired": "LOW",
                "scope": "UNCHANGED",
                "userInteraction": "NONE",
                "vectorString": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H",
                "version": "3.1"
              },
              "format": "CVSS",
              "scenarios": [
                {
                  "lang": "en",
                  "value": "GENERAL"
                }
              ]
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "cweId": "CWE-78",
                  "description": "CWE-78 Improper Neutralization of Special Elements used in an OS Command (\u0027OS Command Injection\u0027)",
                  "lang": "en",
                  "type": "CWE"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2026-09-16T07:48:31.955Z",
            "orgId": "270ccfa6-a436-4e77-922e-914ec3a9685c",
            "shortName": "CERTVDE"
          },
          "references": [
            {
              "url": "https://www.certvde.com/en/advisories/VDE-2026-014/"
            },
            {
              "url": "https://www.certvde.com/en/advisories/VDE-2026-027/"
            },
            {
              "url": "https://www.certvde.com/en/advisories/VDE-2026-028/"
            }
          ],
          "source": {
            "advisory": "VDE-2026-014, VDE-2026-027, VDE-2026-028",
            "defect": [
              "CERT@VDE#641944"
            ],
            "discovery": "UNKNOWN"
          },
          "title": "Command Injection in /index.php/ajax/get_iodd_menu_info",
          "x_generator": {
            "engine": "Vulnogram 0.4.0"
          }
        }
      },
      "cveMetadata": {
        "assignerOrgId": "270ccfa6-a436-4e77-922e-914ec3a9685c",
        "assignerShortName": "CERTVDE",
        "cveId": "CVE-2026-27547",
        "datePublished": "2026-09-16T07:48:31.955Z",
        "dateReserved": "2026-02-20T13:10:29.715Z",
        "dateUpdated": "2026-09-16T14:54:12.706Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.2"
    }

    CVE-2026-27546 (GCVE-0-2026-27546)

    Vulnerability from cvelistv5 – Published: 2026-09-16 07:48 – Updated: 2026-09-16 18:36
    VLAI
    Title
    Authentication Bypass in _account_log
    Summary
    An unauthenticated remote attacker can exploit an authentication bypass in the _account_log function to log in as an admin, even when accounts are properly configured.
    SSVC
    Exploitation: none Automatable: yes Technical Impact: total
    CISA Coordinator · CISA-ADP (v2.0.3)
    Decision recorded 2026-09-16 18:29 UTC
    CWE
    • CWE-288 - Authentication Bypass Using an Alternate Path or Channel
    Impacted products
    Vendor Product Version
    Pepperl+Fuchs ICE2-8IOL1-G65L-V1D Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE2-8IOL-G65L-V1D Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE2-8IOL-K45P-RJ45 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE2-8IOL-K45S-RJ45 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE3-8IOL1-G65L-V1D Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE3-8IOL-G65L-V1D Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE3-8IOL-G65L-V1D-Y Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE3-8IOL-K45P-RJ45 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICE3-8IOL-K45S-RJ45 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Phoenix Contact IOL MA8 PN DI8 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Phoenix Contact IOL MA8 EIP DI8 Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Carlo Gavazzi Automation YL212CEI8M1IO Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Carlo Gavazzi Automation YN115CEI8RPIO Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Carlo Gavazzi Automation YL212CPN8M1IO Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Carlo Gavazzi Automation YN115CPN8RPIO Affected: 1.0.0 , < 1.7.4 (semver)
    Create a notification for this product.
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "metrics": [
              {
                "other": {
                  "content": {
                    "id": "CVE-2026-27546",
                    "options": [
                      {
                        "Exploitation": "none"
                      },
                      {
                        "Automatable": "yes"
                      },
                      {
                        "Technical Impact": "total"
                      }
                    ],
                    "role": "CISA Coordinator",
                    "timestamp": "2026-09-16T18:29:20.728448Z",
                    "version": "2.0.3"
                  },
                  "type": "ssvc"
                }
              }
            ],
            "providerMetadata": {
              "dateUpdated": "2026-09-16T18:36:22.205Z",
              "orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
              "shortName": "CISA-ADP"
            },
            "title": "CISA ADP Vulnrichment"
          }
        ],
        "cna": {
          "affected": [
            {
              "defaultStatus": "unaffected",
              "product": "ICE2-8IOL1-G65L-V1D",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE2-8IOL-G65L-V1D",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE2-8IOL-K45P-RJ45",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE2-8IOL-K45S-RJ45",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE3-8IOL1-G65L-V1D",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE3-8IOL-G65L-V1D",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE3-8IOL-G65L-V1D-Y",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE3-8IOL-K45P-RJ45",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICE3-8IOL-K45S-RJ45",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "IOL MA8 PN DI8",
              "vendor": "Phoenix Contact",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "IOL MA8 EIP DI8",
              "vendor": "Phoenix Contact",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "YL212CEI8M1IO",
              "vendor": "Carlo Gavazzi Automation",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "YN115CEI8RPIO",
              "vendor": "Carlo Gavazzi Automation",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "YL212CPN8M1IO",
              "vendor": "Carlo Gavazzi Automation",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "YN115CPN8RPIO",
              "vendor": "Carlo Gavazzi Automation",
              "versions": [
                {
                  "lessThan": "1.7.4",
                  "status": "affected",
                  "version": "1.0.0",
                  "versionType": "semver"
                }
              ]
            }
          ],
          "cpeApplicability": [
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice2_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice2_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice2_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice2_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice3_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice3_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice3_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice3_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:pepperl_fuchs:ice3_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:phoenix_contact:iol_ma8_pn_di8_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:phoenix_contact:iol_ma8_eip_di8_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:carlo_gavazzi:yl212cei8m1io_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:carlo_gavazzi:yn115cei8rpio_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:carlo_gavazzi:yl212cpn8m1io_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            },
            {
              "nodes": [
                {
                  "cpeMatch": [
                    {
                      "criteria": "cpe:2.3:o:carlo_gavazzi:yn115cpn8rpio_firmware:*:*:*:*:*:*:*:*",
                      "versionEndExcluding": "1.7.4",
                      "versionStartIncluding": "1.0.0",
                      "vulnerable": true
                    }
                  ],
                  "negate": false,
                  "operator": "OR"
                }
              ],
              "operator": "OR"
            }
          ],
          "credits": [
            {
              "lang": "en",
              "type": "finder",
              "value": "Gabriele Quagliarella from Nozomi Networks"
            },
            {
              "lang": "en",
              "type": "finder",
              "value": "Luca Borzacchiello from Nozomi Networks"
            }
          ],
          "descriptions": [
            {
              "lang": "en",
              "supportingMedia": [
                {
                  "base64": false,
                  "type": "text/html",
                  "value": "\u003cp\u003eAn unauthenticated remote attacker can exploit an authentication bypass in the _account_log function to log in as an admin, even when accounts are properly configured.\u003c/p\u003e"
                }
              ],
              "value": "An unauthenticated remote attacker can exploit an authentication bypass in the _account_log function to log in as an admin, even when accounts are properly configured."
            }
          ],
          "metrics": [
            {
              "cvssV3_1": {
                "attackComplexity": "LOW",
                "attackVector": "NETWORK",
                "availabilityImpact": "HIGH",
                "baseScore": 9.8,
                "baseSeverity": "CRITICAL",
                "confidentialityImpact": "HIGH",
                "integrityImpact": "HIGH",
                "privilegesRequired": "NONE",
                "scope": "UNCHANGED",
                "userInteraction": "NONE",
                "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H",
                "version": "3.1"
              },
              "format": "CVSS",
              "scenarios": [
                {
                  "lang": "en",
                  "value": "GENERAL"
                }
              ]
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "cweId": "CWE-288",
                  "description": "CWE-288 Authentication Bypass Using an Alternate Path or Channel",
                  "lang": "en",
                  "type": "CWE"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2026-09-16T07:48:15.101Z",
            "orgId": "270ccfa6-a436-4e77-922e-914ec3a9685c",
            "shortName": "CERTVDE"
          },
          "references": [
            {
              "url": "https://www.certvde.com/en/advisories/VDE-2026-014/"
            },
            {
              "url": "https://www.certvde.com/en/advisories/VDE-2026-027/"
            },
            {
              "url": "https://www.certvde.com/en/advisories/VDE-2026-028/"
            }
          ],
          "source": {
            "advisory": "VDE-2026-014, VDE-2026-027, VDE-2026-028",
            "defect": [
              "CERT@VDE#641944"
            ],
            "discovery": "UNKNOWN"
          },
          "title": "Authentication Bypass in _account_log",
          "x_generator": {
            "engine": "Vulnogram 0.4.0"
          }
        }
      },
      "cveMetadata": {
        "assignerOrgId": "270ccfa6-a436-4e77-922e-914ec3a9685c",
        "assignerShortName": "CERTVDE",
        "cveId": "CVE-2026-27546",
        "datePublished": "2026-09-16T07:48:15.101Z",
        "dateReserved": "2026-02-20T13:10:29.715Z",
        "dateUpdated": "2026-09-16T18:36:22.205Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.2"
    }

    CVE-2025-41655 (GCVE-0-2025-41655)

    Vulnerability from cvelistv5 – Published: 2025-05-26 08:22 – Updated: 2025-05-27 14:25
    VLAI
    Title
    PEPPERL+FUCHS: Attacker can cause a DoS via URL
    Summary
    An unauthenticated remote attacker can access a URL which causes the device to reboot.
    SSVC
    Exploitation: none Automatable: yes Technical Impact: partial
    CISA Coordinator · CISA-ADP (v2.0.3)
    Decision recorded 2025-05-27 14:25 UTC
    CWE
    • CWE-306 - Missing Authentication for Critical Function
    References
    Impacted products
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "metrics": [
              {
                "other": {
                  "content": {
                    "id": "CVE-2025-41655",
                    "options": [
                      {
                        "Exploitation": "none"
                      },
                      {
                        "Automatable": "yes"
                      },
                      {
                        "Technical Impact": "partial"
                      }
                    ],
                    "role": "CISA Coordinator",
                    "timestamp": "2025-05-27T14:25:27.781540Z",
                    "version": "2.0.3"
                  },
                  "type": "ssvc"
                }
              }
            ],
            "providerMetadata": {
              "dateUpdated": "2025-05-27T14:25:34.580Z",
              "orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
              "shortName": "CISA-ADP"
            },
            "title": "CISA ADP Vulnrichment"
          }
        ],
        "cna": {
          "affected": [
            {
              "defaultStatus": "unaffected",
              "product": "Profinet Gateway FB8122A.1.EL",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "V1.3.13",
                  "status": "affected",
                  "version": "0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "Profinet Gateway LB8122A.1.EL",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "V1.3.13",
                  "status": "affected",
                  "version": "0",
                  "versionType": "semver"
                }
              ]
            }
          ],
          "descriptions": [
            {
              "lang": "en",
              "supportingMedia": [
                {
                  "base64": false,
                  "type": "text/html",
                  "value": "An unauthenticated remote attacker can access a URL which causes the device to reboot."
                }
              ],
              "value": "An unauthenticated remote attacker can access a URL which causes the device to reboot."
            }
          ],
          "metrics": [
            {
              "cvssV3_1": {
                "attackComplexity": "LOW",
                "attackVector": "NETWORK",
                "availabilityImpact": "HIGH",
                "baseScore": 7.5,
                "baseSeverity": "HIGH",
                "confidentialityImpact": "NONE",
                "integrityImpact": "NONE",
                "privilegesRequired": "NONE",
                "scope": "UNCHANGED",
                "userInteraction": "NONE",
                "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H",
                "version": "3.1"
              },
              "format": "CVSS",
              "scenarios": [
                {
                  "lang": "en",
                  "value": "GENERAL"
                }
              ]
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "cweId": "CWE-306",
                  "description": "CWE-306 Missing Authentication for Critical Function",
                  "lang": "en",
                  "type": "CWE"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2025-05-26T08:22:13.883Z",
            "orgId": "270ccfa6-a436-4e77-922e-914ec3a9685c",
            "shortName": "CERTVDE"
          },
          "references": [
            {
              "url": "https://certvde.com/en/advisories/VDE-2025-011"
            }
          ],
          "source": {
            "advisory": "VDE-2025-011",
            "defect": [
              "CERT@VDE#641711"
            ],
            "discovery": "UNKNOWN"
          },
          "title": "PEPPERL+FUCHS: Attacker can cause a DoS via URL",
          "x_generator": {
            "engine": "Vulnogram 0.1.0-dev"
          }
        }
      },
      "cveMetadata": {
        "assignerOrgId": "270ccfa6-a436-4e77-922e-914ec3a9685c",
        "assignerShortName": "CERTVDE",
        "cveId": "CVE-2025-41655",
        "datePublished": "2025-05-26T08:22:13.883Z",
        "dateReserved": "2025-04-16T11:17:48.306Z",
        "dateUpdated": "2025-05-27T14:25:34.580Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.1"
    }

    CVE-2025-41654 (GCVE-0-2025-41654)

    Vulnerability from cvelistv5 – Published: 2025-05-26 08:21 – Updated: 2025-08-22 09:18
    VLAI
    Title
    PEPPERL+FUCHS: Profinet Gateway LB8122A.1.EL – Device is affected by information disclosure via the SNMP protocol
    Summary
    An unauthenticated remote attacker can access information about running processes via the SNMP protocol. The amount of returned data can trigger a reboot by the watchdog.
    SSVC
    Exploitation: none Automatable: yes Technical Impact: partial
    CISA Coordinator · CISA-ADP (v2.0.3)
    Decision recorded 2025-05-27 14:13 UTC
    CWE
    • CWE-306 - Missing Authentication for Critical Function
    References
    Impacted products
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "metrics": [
              {
                "other": {
                  "content": {
                    "id": "CVE-2025-41654",
                    "options": [
                      {
                        "Exploitation": "none"
                      },
                      {
                        "Automatable": "yes"
                      },
                      {
                        "Technical Impact": "partial"
                      }
                    ],
                    "role": "CISA Coordinator",
                    "timestamp": "2025-05-27T14:13:48.803600Z",
                    "version": "2.0.3"
                  },
                  "type": "ssvc"
                }
              }
            ],
            "providerMetadata": {
              "dateUpdated": "2025-05-27T14:13:53.729Z",
              "orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
              "shortName": "CISA-ADP"
            },
            "title": "CISA ADP Vulnrichment"
          }
        ],
        "cna": {
          "affected": [
            {
              "defaultStatus": "unaffected",
              "product": "Profinet Gateway FB8122A.1.EL",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "V1.3.13",
                  "status": "affected",
                  "version": "0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "Profinet Gateway LB8122A.1.EL",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "V1.3.13",
                  "status": "affected",
                  "version": "0",
                  "versionType": "semver"
                }
              ]
            }
          ],
          "descriptions": [
            {
              "lang": "en",
              "supportingMedia": [
                {
                  "base64": false,
                  "type": "text/html",
                  "value": "An unauthenticated remote attacker can access information about running processes via the SNMP protocol. The amount of returned data can trigger a reboot by the watchdog."
                }
              ],
              "value": "An unauthenticated remote attacker can access information about running processes via the SNMP protocol. The amount of returned data can trigger a reboot by the watchdog."
            }
          ],
          "metrics": [
            {
              "cvssV3_1": {
                "attackComplexity": "LOW",
                "attackVector": "NETWORK",
                "availabilityImpact": "HIGH",
                "baseScore": 8.2,
                "baseSeverity": "HIGH",
                "confidentialityImpact": "LOW",
                "integrityImpact": "NONE",
                "privilegesRequired": "NONE",
                "scope": "UNCHANGED",
                "userInteraction": "NONE",
                "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:H",
                "version": "3.1"
              },
              "format": "CVSS",
              "scenarios": [
                {
                  "lang": "en",
                  "value": "GENERAL"
                }
              ]
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "cweId": "CWE-306",
                  "description": "CWE-306 Missing Authentication for Critical Function",
                  "lang": "en",
                  "type": "CWE"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2025-08-22T09:18:26.543Z",
            "orgId": "270ccfa6-a436-4e77-922e-914ec3a9685c",
            "shortName": "CERTVDE"
          },
          "references": [
            {
              "url": "https://cert.vde.com/en/advisories/VDE-2025-011"
            }
          ],
          "source": {
            "advisory": "VDE-2025-011",
            "defect": [
              "CERT@VDE#641711"
            ],
            "discovery": "UNKNOWN"
          },
          "title": "PEPPERL+FUCHS: Profinet Gateway LB8122A.1.EL \u2013 Device is affected by information disclosure via the SNMP protocol",
          "x_generator": {
            "engine": "Vulnogram 0.1.0-dev"
          }
        }
      },
      "cveMetadata": {
        "assignerOrgId": "270ccfa6-a436-4e77-922e-914ec3a9685c",
        "assignerShortName": "CERTVDE",
        "cveId": "CVE-2025-41654",
        "datePublished": "2025-05-26T08:21:54.033Z",
        "dateReserved": "2025-04-16T11:17:48.306Z",
        "dateUpdated": "2025-08-22T09:18:26.543Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.1"
    }

    CVE-2025-1985 (GCVE-0-2025-1985)

    Vulnerability from cvelistv5 – Published: 2025-05-26 08:21 – Updated: 2025-05-27 14:18
    VLAI
    Title
    PEPPERL+FUCHS: Profinet Gateway LB8122A.1.EL – Device is affected by XSS vulnerability
    Summary
    Due to improper neutralization of input during web page generation (XSS) an unauthenticated remote attacker can inject HTML code into the Web-UI in the affected device.
    SSVC
    Exploitation: none Automatable: no Technical Impact: partial
    CISA Coordinator · CISA-ADP (v2.0.3)
    Decision recorded 2025-05-27 14:18 UTC
    CWE
    • CWE-79 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
    References
    Impacted products
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "metrics": [
              {
                "other": {
                  "content": {
                    "id": "CVE-2025-1985",
                    "options": [
                      {
                        "Exploitation": "none"
                      },
                      {
                        "Automatable": "no"
                      },
                      {
                        "Technical Impact": "partial"
                      }
                    ],
                    "role": "CISA Coordinator",
                    "timestamp": "2025-05-27T14:18:06.220613Z",
                    "version": "2.0.3"
                  },
                  "type": "ssvc"
                }
              }
            ],
            "providerMetadata": {
              "dateUpdated": "2025-05-27T14:18:17.838Z",
              "orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
              "shortName": "CISA-ADP"
            },
            "title": "CISA ADP Vulnrichment"
          }
        ],
        "cna": {
          "affected": [
            {
              "defaultStatus": "unaffected",
              "product": "Profinet Gateway FB8122A.1.EL",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "V1.3.13",
                  "status": "affected",
                  "version": "0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "Profinet Gateway LB8122A.1.EL",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThan": "V1.3.13",
                  "status": "affected",
                  "version": "0",
                  "versionType": "semver"
                }
              ]
            }
          ],
          "descriptions": [
            {
              "lang": "en",
              "supportingMedia": [
                {
                  "base64": false,
                  "type": "text/html",
                  "value": "Due to improper neutralization of input during web page generation (XSS) an unauthenticated remote attacker can inject HTML code into the Web-UI in the affected device."
                }
              ],
              "value": "Due to improper neutralization of input during web page generation (XSS) an unauthenticated remote attacker can inject HTML code into the Web-UI in the affected device."
            }
          ],
          "metrics": [
            {
              "cvssV3_1": {
                "attackComplexity": "LOW",
                "attackVector": "NETWORK",
                "availabilityImpact": "NONE",
                "baseScore": 6.1,
                "baseSeverity": "MEDIUM",
                "confidentialityImpact": "LOW",
                "integrityImpact": "LOW",
                "privilegesRequired": "NONE",
                "scope": "CHANGED",
                "userInteraction": "REQUIRED",
                "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N",
                "version": "3.1"
              },
              "format": "CVSS",
              "scenarios": [
                {
                  "lang": "en",
                  "value": "GENERAL"
                }
              ]
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "cweId": "CWE-79",
                  "description": "CWE-79 Improper Neutralization of Input During Web Page Generation (\u0027Cross-site Scripting\u0027)",
                  "lang": "en",
                  "type": "CWE"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2025-05-26T08:21:34.217Z",
            "orgId": "270ccfa6-a436-4e77-922e-914ec3a9685c",
            "shortName": "CERTVDE"
          },
          "references": [
            {
              "url": "https://cert.vde.com/en/advisories/VDE-2025-011"
            }
          ],
          "source": {
            "advisory": "VDE-2025-011",
            "defect": [
              "CERT@VDE#641711"
            ],
            "discovery": "UNKNOWN"
          },
          "title": "PEPPERL+FUCHS: Profinet Gateway LB8122A.1.EL \u2013 Device is affected by XSS vulnerability",
          "x_generator": {
            "engine": "Vulnogram 0.1.0-dev"
          }
        }
      },
      "cveMetadata": {
        "assignerOrgId": "270ccfa6-a436-4e77-922e-914ec3a9685c",
        "assignerShortName": "CERTVDE",
        "cveId": "CVE-2025-1985",
        "datePublished": "2025-05-26T08:21:34.217Z",
        "dateReserved": "2025-03-05T14:01:01.177Z",
        "dateUpdated": "2025-05-27T14:18:17.838Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.1"
    }

    CVE-2024-38502 (GCVE-0-2024-38502)

    Vulnerability from cvelistv5 – Published: 2024-08-13 12:33 – Updated: 2024-08-13 13:28
    VLAI
    Title
    Pepperl+Fuchs: Device Master ICDM-RX/* XSS vulnerability allows stored XSS
    Summary
    An unauthenticated remote attacker may use stored XSS vulnerability to obtain information from a user or reboot the affected device once.
    SSVC
    Exploitation: none Automatable: no Technical Impact: partial
    CISA Coordinator · CISA-ADP (v2.0.3)
    Decision recorded 2024-08-13 13:28 UTC
    CWE
    • CWE-79 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
    References
    Impacted products
    Vendor Product Version
    Pepperl+Fuchs ICDM-RX/TCP-DB9/RJ45-DIN Affected: SocketServer , ≤ 11.65 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/TCP-ST/RJ45-DIN Affected: SocketServer , ≤ 11.65 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/TCP-4DB9/2RJ45-DIN Affected: SocketServer , ≤ 11.65 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/TCP-DB9/RJ45-PM Affected: SocketServer , ≤ 11.65 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/TCP-2DB9/RJ45-DIN Affected: SocketServer , ≤ 11.65 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/TCP-2ST/RJ45-DIN Affected: SocketServer , ≤ 11.65 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/TCP-4DB9/2RJ45-PM Affected: SocketServer , ≤ 11.65 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/TCP-8DB9/2RJ45-PM Affected: SocketServer , ≤ 11.65 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/TCP-16RJ45/RJ45-RM Affected: SocketServer , ≤ 11.65 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/TCP-16DB9/RJ45-RM Affected: SocketServer , ≤ 11.65 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/TCP-32RJ45/RJ45-RM Affected: SocketServer , ≤ 11.65 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/TCP-DB9/RJ45-PM2 Affected: SocketServer , ≤ 11.65 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/TCP-16RJ45/2RJ45-PM Affected: SocketServer , ≤ 11.65 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/PN-DB9/RJ45-DIN Affected: PROFINET , ≤ v3.4.9 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/PN-ST/RJ45-DIN Affected: PROFINET , ≤ v3.4.9 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/PN-4DB9/2RJ45-DIN Affected: PROFINET , ≤ v3.4.9 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/PN-DB9/RJ45-PM Affected: PROFINET , ≤ v3.4.9 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/PN-2DB9/RJ45-DIN Affected: PROFINET , ≤ v3.4.9 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/PN-2ST/RJ45-DIN Affected: PROFINET , ≤ v3.4.9 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/PN1-DB9/RJ45-PM Affected: PROFINET/Modbus , ≤ v1.0.7 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/PN1-DB9/RJ45-DIN Affected: PROFINET/Modbus , ≤ v1.0.7 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/PN1-ST/RJ45-DIN Affected: PROFINET/Modbus , ≤ v1.0.7 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/PN1-2DB9/RJ45-DIN Affected: PROFINET/Modbus , ≤ v1.0.7 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/PN1-4DB9/2RJ45-DIN Affected: PROFINET/Modbus , ≤ v1.0.7 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/PN1-2ST/RJ45-DIN Affected: PROFINET/Modbus , ≤ v1.0.7 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/EN-DB9/RJ45-DIN Affected: EtherNet/IP , ≤ v7.22 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/EN-ST/RJ45-DIN Affected: EtherNet/IP , ≤ v7.22 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/EN-4DB9/2RJ45-DIN Affected: EtherNet/IP , ≤ v7.22 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/EN-DB9/RJ45-PM Affected: EtherNet/IP , ≤ v7.22 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/EN-2DB9/RJ45-DIN Affected: EtherNet/IP , ≤ v7.22 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/EN-2ST/RJ45-DIN Affected: EtherNet/IP , ≤ v7.22 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/EN1-DB9/RJ45-PM Affected: EIP/Modbus , ≤ v1.08 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/EN1-DB9/RJ45-DIN Affected: EIP/Modbus , ≤ v1.08 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/EN1-ST/RJ45-DIN Affected: EIP/Modbus , ≤ v1.08 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/EN1-2DB9/RJ45-DIN Affected: EIP/Modbus , ≤ v1.08 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/EN1-4DB9/2RJ45-DIN Affected: EIP/Modbus , ≤ v1.08 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/EN1-2ST/RJ45-DIN Affected: EIP/Modbus , ≤ v1.08 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/MOD-DB9/RJ45-DIN Affected: Modbus Router , ≤ v7.09 (semver)
    Affected: Modbus Server , ≤ v7.11 (semver)
    Affected: Modbus TCP , ≤ v7.11 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/MOD-ST/RJ45-DIN Affected: Modbus Router , ≤ v7.09 (semver)
    Affected: Modbus Server , ≤ v7.11 (semver)
    Affected: Modbus TCP , ≤ v7.11 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/MOD-4DB9/2RJ45-DIN Affected: Modbus Router , ≤ v7.09 (semver)
    Affected: Modbus Server , ≤ v7.11 (semver)
    Affected: Modbus TCP , ≤ v7.11 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/MOD-DB9/RJ45-PM Affected: Modbus Router , ≤ v7.09 (semver)
    Affected: Modbus Server , ≤ v7.11 (semver)
    Affected: Modbus TCP , ≤ v7.11 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/MOD-2DB9/RJ45-DIN Affected: Modbus Router , ≤ v7.09 (semver)
    Affected: Modbus Server , ≤ v7.11 (semver)
    Affected: Modbus TCP , ≤ v7.11 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/MOD-2ST/RJ45-DIN Affected: Modbus Router , ≤ v7.09 (semver)
    Affected: Modbus Server , ≤ v7.11 (semver)
    Affected: Modbus TCP , ≤ v7.11 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/MOD-16RJ45/2RJ45-PM Affected: Modbus Router , ≤ v7.09 (semver)
    Affected: Modbus Server , ≤ v7.11 (semver)
    Affected: Modbus TCP , ≤ v7.11 (semver)
    Create a notification for this product.
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "metrics": [
              {
                "other": {
                  "content": {
                    "id": "CVE-2024-38502",
                    "options": [
                      {
                        "Exploitation": "none"
                      },
                      {
                        "Automatable": "no"
                      },
                      {
                        "Technical Impact": "partial"
                      }
                    ],
                    "role": "CISA Coordinator",
                    "timestamp": "2024-08-13T13:28:15.420369Z",
                    "version": "2.0.3"
                  },
                  "type": "ssvc"
                }
              }
            ],
            "providerMetadata": {
              "dateUpdated": "2024-08-13T13:28:24.550Z",
              "orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
              "shortName": "CISA-ADP"
            },
            "title": "CISA ADP Vulnrichment"
          }
        ],
        "cna": {
          "affected": [
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/TCP-DB9/RJ45-DIN",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "11.65",
                  "status": "affected",
                  "version": "SocketServer",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/TCP-ST/RJ45-DIN",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "11.65",
                  "status": "affected",
                  "version": "SocketServer",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/TCP-4DB9/2RJ45-DIN",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "11.65",
                  "status": "affected",
                  "version": "SocketServer",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/TCP-DB9/RJ45-PM",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "11.65",
                  "status": "affected",
                  "version": "SocketServer",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/TCP-2DB9/RJ45-DIN",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "11.65",
                  "status": "affected",
                  "version": "SocketServer",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/TCP-2ST/RJ45-DIN",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "11.65",
                  "status": "affected",
                  "version": "SocketServer",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/TCP-4DB9/2RJ45-PM",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "11.65",
                  "status": "affected",
                  "version": "SocketServer",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/TCP-8DB9/2RJ45-PM",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "11.65",
                  "status": "affected",
                  "version": "SocketServer",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/TCP-16RJ45/RJ45-RM",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "11.65",
                  "status": "affected",
                  "version": "SocketServer",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/TCP-16DB9/RJ45-RM",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "11.65",
                  "status": "affected",
                  "version": "SocketServer",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/TCP-32RJ45/RJ45-RM",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "11.65",
                  "status": "affected",
                  "version": "SocketServer",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/TCP-DB9/RJ45-PM2",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "11.65",
                  "status": "affected",
                  "version": "SocketServer",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/TCP-16RJ45/2RJ45-PM",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "11.65",
                  "status": "affected",
                  "version": "SocketServer",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/PN-DB9/RJ45-DIN",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "v3.4.9",
                  "status": "affected",
                  "version": "PROFINET",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/PN-ST/RJ45-DIN",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "v3.4.9",
                  "status": "affected",
                  "version": "PROFINET",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/PN-4DB9/2RJ45-DIN",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "v3.4.9",
                  "status": "affected",
                  "version": "PROFINET",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/PN-DB9/RJ45-PM",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "v3.4.9",
                  "status": "affected",
                  "version": "PROFINET",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/PN-2DB9/RJ45-DIN",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "v3.4.9",
                  "status": "affected",
                  "version": "PROFINET",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/PN-2ST/RJ45-DIN",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "v3.4.9",
                  "status": "affected",
                  "version": "PROFINET",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/PN1-DB9/RJ45-PM",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "v1.0.7",
                  "status": "affected",
                  "version": "PROFINET/Modbus",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/PN1-DB9/RJ45-DIN",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "v1.0.7",
                  "status": "affected",
                  "version": "PROFINET/Modbus",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/PN1-ST/RJ45-DIN",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "v1.0.7",
                  "status": "affected",
                  "version": "PROFINET/Modbus",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/PN1-2DB9/RJ45-DIN",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "v1.0.7",
                  "status": "affected",
                  "version": "PROFINET/Modbus",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/PN1-4DB9/2RJ45-DIN",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "v1.0.7",
                  "status": "affected",
                  "version": "PROFINET/Modbus",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/PN1-2ST/RJ45-DIN",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "v1.0.7",
                  "status": "affected",
                  "version": "PROFINET/Modbus",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/EN-DB9/RJ45-DIN",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "v7.22",
                  "status": "affected",
                  "version": "EtherNet/IP",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/EN-ST/RJ45-DIN",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "v7.22",
                  "status": "affected",
                  "version": "EtherNet/IP",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/EN-4DB9/2RJ45-DIN",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "v7.22",
                  "status": "affected",
                  "version": "EtherNet/IP",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/EN-DB9/RJ45-PM",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "v7.22",
                  "status": "affected",
                  "version": "EtherNet/IP",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/EN-2DB9/RJ45-DIN",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "v7.22",
                  "status": "affected",
                  "version": "EtherNet/IP",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/EN-2ST/RJ45-DIN",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "v7.22",
                  "status": "affected",
                  "version": "EtherNet/IP",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/EN1-DB9/RJ45-PM",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "v1.08",
                  "status": "affected",
                  "version": "EIP/Modbus",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/EN1-DB9/RJ45-DIN",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "v1.08",
                  "status": "affected",
                  "version": "EIP/Modbus",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/EN1-ST/RJ45-DIN",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "v1.08",
                  "status": "affected",
                  "version": "EIP/Modbus",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/EN1-2DB9/RJ45-DIN",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "v1.08",
                  "status": "affected",
                  "version": "EIP/Modbus",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/EN1-4DB9/2RJ45-DIN",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "v1.08",
                  "status": "affected",
                  "version": "EIP/Modbus",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/EN1-2ST/RJ45-DIN",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "v1.08",
                  "status": "affected",
                  "version": "EIP/Modbus",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/MOD-DB9/RJ45-DIN",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "v7.09",
                  "status": "affected",
                  "version": "Modbus Router",
                  "versionType": "semver"
                },
                {
                  "lessThanOrEqual": "v7.11",
                  "status": "affected",
                  "version": "Modbus Server",
                  "versionType": "semver"
                },
                {
                  "lessThanOrEqual": "v7.11",
                  "status": "affected",
                  "version": "Modbus TCP",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/MOD-ST/RJ45-DIN",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "v7.09",
                  "status": "affected",
                  "version": "Modbus Router",
                  "versionType": "semver"
                },
                {
                  "lessThanOrEqual": "v7.11",
                  "status": "affected",
                  "version": "Modbus Server",
                  "versionType": "semver"
                },
                {
                  "lessThanOrEqual": "v7.11",
                  "status": "affected",
                  "version": "Modbus TCP",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/MOD-4DB9/2RJ45-DIN",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "v7.09",
                  "status": "affected",
                  "version": "Modbus Router",
                  "versionType": "semver"
                },
                {
                  "lessThanOrEqual": "v7.11",
                  "status": "affected",
                  "version": "Modbus Server",
                  "versionType": "semver"
                },
                {
                  "lessThanOrEqual": "v7.11",
                  "status": "affected",
                  "version": "Modbus TCP",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/MOD-DB9/RJ45-PM",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "v7.09",
                  "status": "affected",
                  "version": "Modbus Router",
                  "versionType": "semver"
                },
                {
                  "lessThanOrEqual": "v7.11",
                  "status": "affected",
                  "version": "Modbus Server",
                  "versionType": "semver"
                },
                {
                  "lessThanOrEqual": "v7.11",
                  "status": "affected",
                  "version": "Modbus TCP",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/MOD-2DB9/RJ45-DIN",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "v7.09",
                  "status": "affected",
                  "version": "Modbus Router",
                  "versionType": "semver"
                },
                {
                  "lessThanOrEqual": "v7.11",
                  "status": "affected",
                  "version": "Modbus Server",
                  "versionType": "semver"
                },
                {
                  "lessThanOrEqual": "v7.11",
                  "status": "affected",
                  "version": "Modbus TCP",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/MOD-2ST/RJ45-DIN",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "v7.09",
                  "status": "affected",
                  "version": "Modbus Router",
                  "versionType": "semver"
                },
                {
                  "lessThanOrEqual": "v7.11",
                  "status": "affected",
                  "version": "Modbus Server",
                  "versionType": "semver"
                },
                {
                  "lessThanOrEqual": "v7.11",
                  "status": "affected",
                  "version": "Modbus TCP",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/MOD-16RJ45/2RJ45-PM",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "v7.09",
                  "status": "affected",
                  "version": "Modbus Router",
                  "versionType": "semver"
                },
                {
                  "lessThanOrEqual": "v7.11",
                  "status": "affected",
                  "version": "Modbus Server",
                  "versionType": "semver"
                },
                {
                  "lessThanOrEqual": "v7.11",
                  "status": "affected",
                  "version": "Modbus TCP",
                  "versionType": "semver"
                }
              ]
            }
          ],
          "credits": [
            {
              "lang": "en",
              "type": "finder",
              "user": "00000000-0000-4000-9000-000000000000",
              "value": "Christopher Di-Nozzi"
            }
          ],
          "descriptions": [
            {
              "lang": "en",
              "supportingMedia": [
                {
                  "base64": false,
                  "type": "text/html",
                  "value": "\u003cp\u003eAn unauthenticated remote attacker may use stored XSS vulnerability to obtain information from a user or reboot the affected device once.\u003c/p\u003e"
                }
              ],
              "value": "An unauthenticated remote attacker may use stored XSS vulnerability to obtain information from a user or reboot the affected device once."
            }
          ],
          "metrics": [
            {
              "cvssV3_1": {
                "attackComplexity": "LOW",
                "attackVector": "NETWORK",
                "availabilityImpact": "LOW",
                "baseScore": 7.1,
                "baseSeverity": "HIGH",
                "confidentialityImpact": "LOW",
                "integrityImpact": "LOW",
                "privilegesRequired": "NONE",
                "scope": "CHANGED",
                "userInteraction": "REQUIRED",
                "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:L",
                "version": "3.1"
              },
              "format": "CVSS",
              "scenarios": [
                {
                  "lang": "en",
                  "value": "GENERAL"
                }
              ]
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "cweId": "CWE-79",
                  "description": "CWE-79 Improper Neutralization of Input During Web Page Generation (\u0027Cross-site Scripting\u0027)",
                  "lang": "en",
                  "type": "CWE"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2024-08-13T12:33:30.908Z",
            "orgId": "270ccfa6-a436-4e77-922e-914ec3a9685c",
            "shortName": "CERTVDE"
          },
          "references": [
            {
              "url": "https://cert.vde.com/en/advisories/VDE-2024-033"
            }
          ],
          "source": {
            "advisory": "VDE-2024-033",
            "defect": [
              "CERT@VDE#641631"
            ],
            "discovery": "UNKNOWN"
          },
          "title": "Pepperl+Fuchs: Device Master ICDM-RX/* XSS vulnerability allows stored XSS",
          "x_generator": {
            "engine": "Vulnogram 0.1.0-dev"
          }
        }
      },
      "cveMetadata": {
        "assignerOrgId": "270ccfa6-a436-4e77-922e-914ec3a9685c",
        "assignerShortName": "CERTVDE",
        "cveId": "CVE-2024-38502",
        "datePublished": "2024-08-13T12:33:30.908Z",
        "dateReserved": "2024-06-18T07:56:44.761Z",
        "dateUpdated": "2024-08-13T13:28:24.550Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.1"
    }

    CVE-2024-38501 (GCVE-0-2024-38501)

    Vulnerability from cvelistv5 – Published: 2024-08-13 12:33 – Updated: 2024-08-13 13:31
    VLAI
    Title
    Pepperl+Fuchs: Device Master ICDM-RX/* XSS vulnerability allows HTML injection
    Summary
    An unauthenticated remote attacker may use a HTML injection vulnerability with limited length to inject malicious HTML code and gain low-privileged access on the affected device.
    SSVC
    Exploitation: none Automatable: no Technical Impact: partial
    CISA Coordinator · CISA-ADP (v2.0.3)
    Decision recorded 2024-08-13 13:31 UTC
    CWE
    • CWE-79 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
    References
    Impacted products
    Vendor Product Version
    Pepperl+Fuchs ICDM-RX/TCP-DB9/RJ45-DIN Affected: SocketServer , ≤ 11.65 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/TCP-ST/RJ45-DIN Affected: SocketServer , ≤ 11.65 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/TCP-4DB9/2RJ45-DIN Affected: SocketServer , ≤ 11.65 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/TCP-DB9/RJ45-PM Affected: SocketServer , ≤ 11.65 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/TCP-2DB9/RJ45-DIN Affected: SocketServer , ≤ 11.65 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/TCP-2ST/RJ45-DIN Affected: SocketServer , ≤ 11.65 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/TCP-4DB9/2RJ45-PM Affected: SocketServer , ≤ 11.65 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/TCP-8DB9/2RJ45-PM Affected: SocketServer , ≤ 11.65 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/TCP-16RJ45/RJ45-RM Affected: SocketServer , ≤ 11.65 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/TCP-16DB9/RJ45-RM Affected: SocketServer , ≤ 11.65 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/TCP-32RJ45/RJ45-RM Affected: SocketServer , ≤ 11.65 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/TCP-DB9/RJ45-PM2 Affected: SocketServer , ≤ 11.65 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/TCP-16RJ45/2RJ45-PM Affected: SocketServer , ≤ 11.65 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/PN-DB9/RJ45-DIN Affected: PROFINET , ≤ v3.4.9 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/PN-ST/RJ45-DIN Affected: PROFINET , ≤ v3.4.9 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/PN-4DB9/2RJ45-DIN Affected: PROFINET , ≤ v3.4.9 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/PN-DB9/RJ45-PM Affected: PROFINET , ≤ v3.4.9 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/PN-2DB9/RJ45-DIN Affected: PROFINET , ≤ v3.4.9 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/PN-2ST/RJ45-DIN Affected: PROFINET , ≤ v3.4.9 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/PN1-DB9/RJ45-PM Affected: PROFINET/Modbus , ≤ v1.0.7 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/PN1-DB9/RJ45-DIN Affected: PROFINET/Modbus , ≤ v1.0.7 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/PN1-ST/RJ45-DIN Affected: PROFINET/Modbus , ≤ v1.0.7 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/PN1-2DB9/RJ45-DIN Affected: PROFINET/Modbus , ≤ v1.0.7 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/PN1-4DB9/2RJ45-DIN Affected: PROFINET/Modbus , ≤ v1.0.7 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/PN1-2ST/RJ45-DIN Affected: PROFINET/Modbus , ≤ v1.0.7 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/EN-DB9/RJ45-DIN Affected: EtherNet/IP , ≤ v7.22 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/EN-ST/RJ45-DIN Affected: EtherNet/IP , ≤ v7.22 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/EN-4DB9/2RJ45-DIN Affected: EtherNet/IP , ≤ v7.22 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/EN-DB9/RJ45-PM Affected: EtherNet/IP , ≤ v7.22 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/EN-2DB9/RJ45-DIN Affected: EtherNet/IP , ≤ v7.22 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/EN-2ST/RJ45-DIN Affected: EtherNet/IP , ≤ v7.22 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/EN1-DB9/RJ45-PM Affected: EIP/Modbus , ≤ v1.08 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/EN1-DB9/RJ45-DIN Affected: EIP/Modbus , ≤ v1.08 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/EN1-ST/RJ45-DIN Affected: EIP/Modbus , ≤ v1.08 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/EN1-2DB9/RJ45-DIN Affected: EIP/Modbus , ≤ v1.08 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/EN1-4DB9/2RJ45-DIN Affected: EIP/Modbus , ≤ v1.08 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/EN1-2ST/RJ45-DIN Affected: EIP/Modbus , ≤ v1.08 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/MOD-DB9/RJ45-DIN Affected: Modbus Router , ≤ v7.09 (semver)
    Affected: Modbus Server , ≤ v7.11 (semver)
    Affected: Modbus TCP , ≤ v7.11 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/MOD-ST/RJ45-DIN Affected: Modbus Router , ≤ v7.09 (semver)
    Affected: Modbus Server , ≤ v7.11 (semver)
    Affected: Modbus TCP , ≤ v7.11 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/MOD-4DB9/2RJ45-DIN Affected: Modbus Router , ≤ v7.09 (semver)
    Affected: Modbus Server , ≤ v7.11 (semver)
    Affected: Modbus TCP , ≤ v7.11 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/MOD-DB9/RJ45-PM Affected: Modbus Router , ≤ v7.09 (semver)
    Affected: Modbus Server , ≤ v7.11 (semver)
    Affected: Modbus TCP , ≤ v7.11 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/MOD-2DB9/RJ45-DIN Affected: Modbus Router , ≤ v7.09 (semver)
    Affected: Modbus Server , ≤ v7.11 (semver)
    Affected: Modbus TCP , ≤ v7.11 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/MOD-2ST/RJ45-DIN Affected: Modbus Router , ≤ v7.09 (semver)
    Affected: Modbus Server , ≤ v7.11 (semver)
    Affected: Modbus TCP , ≤ v7.11 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/MOD-16RJ45/2RJ45-PM Affected: Modbus Router , ≤ v7.09 (semver)
    Affected: Modbus Server , ≤ v7.11 (semver)
    Affected: Modbus TCP , ≤ v7.11 (semver)
    Create a notification for this product.
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "metrics": [
              {
                "other": {
                  "content": {
                    "id": "CVE-2024-38501",
                    "options": [
                      {
                        "Exploitation": "none"
                      },
                      {
                        "Automatable": "no"
                      },
                      {
                        "Technical Impact": "partial"
                      }
                    ],
                    "role": "CISA Coordinator",
                    "timestamp": "2024-08-13T13:31:15.575746Z",
                    "version": "2.0.3"
                  },
                  "type": "ssvc"
                }
              }
            ],
            "providerMetadata": {
              "dateUpdated": "2024-08-13T13:31:52.009Z",
              "orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
              "shortName": "CISA-ADP"
            },
            "title": "CISA ADP Vulnrichment"
          }
        ],
        "cna": {
          "affected": [
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/TCP-DB9/RJ45-DIN",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "11.65",
                  "status": "affected",
                  "version": "SocketServer",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/TCP-ST/RJ45-DIN",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "11.65",
                  "status": "affected",
                  "version": "SocketServer",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/TCP-4DB9/2RJ45-DIN",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "11.65",
                  "status": "affected",
                  "version": "SocketServer",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/TCP-DB9/RJ45-PM",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "11.65",
                  "status": "affected",
                  "version": "SocketServer",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/TCP-2DB9/RJ45-DIN",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "11.65",
                  "status": "affected",
                  "version": "SocketServer",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/TCP-2ST/RJ45-DIN",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "11.65",
                  "status": "affected",
                  "version": "SocketServer",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/TCP-4DB9/2RJ45-PM",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "11.65",
                  "status": "affected",
                  "version": "SocketServer",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/TCP-8DB9/2RJ45-PM",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "11.65",
                  "status": "affected",
                  "version": "SocketServer",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/TCP-16RJ45/RJ45-RM",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "11.65",
                  "status": "affected",
                  "version": "SocketServer",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/TCP-16DB9/RJ45-RM",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "11.65",
                  "status": "affected",
                  "version": "SocketServer",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/TCP-32RJ45/RJ45-RM",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "11.65",
                  "status": "affected",
                  "version": "SocketServer",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/TCP-DB9/RJ45-PM2",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "11.65",
                  "status": "affected",
                  "version": "SocketServer",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/TCP-16RJ45/2RJ45-PM",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "11.65",
                  "status": "affected",
                  "version": "SocketServer",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/PN-DB9/RJ45-DIN",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "v3.4.9",
                  "status": "affected",
                  "version": "PROFINET",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/PN-ST/RJ45-DIN",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "v3.4.9",
                  "status": "affected",
                  "version": "PROFINET",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/PN-4DB9/2RJ45-DIN",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "v3.4.9",
                  "status": "affected",
                  "version": "PROFINET",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/PN-DB9/RJ45-PM",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "v3.4.9",
                  "status": "affected",
                  "version": "PROFINET",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/PN-2DB9/RJ45-DIN",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "v3.4.9",
                  "status": "affected",
                  "version": "PROFINET",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/PN-2ST/RJ45-DIN",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "v3.4.9",
                  "status": "affected",
                  "version": "PROFINET",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/PN1-DB9/RJ45-PM",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "v1.0.7",
                  "status": "affected",
                  "version": "PROFINET/Modbus",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/PN1-DB9/RJ45-DIN",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "v1.0.7",
                  "status": "affected",
                  "version": "PROFINET/Modbus",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/PN1-ST/RJ45-DIN",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "v1.0.7",
                  "status": "affected",
                  "version": "PROFINET/Modbus",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/PN1-2DB9/RJ45-DIN",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "v1.0.7",
                  "status": "affected",
                  "version": "PROFINET/Modbus",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/PN1-4DB9/2RJ45-DIN",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "v1.0.7",
                  "status": "affected",
                  "version": "PROFINET/Modbus",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/PN1-2ST/RJ45-DIN",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "v1.0.7",
                  "status": "affected",
                  "version": "PROFINET/Modbus",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/EN-DB9/RJ45-DIN",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "v7.22",
                  "status": "affected",
                  "version": "EtherNet/IP",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/EN-ST/RJ45-DIN",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "v7.22",
                  "status": "affected",
                  "version": "EtherNet/IP",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/EN-4DB9/2RJ45-DIN",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "v7.22",
                  "status": "affected",
                  "version": "EtherNet/IP",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/EN-DB9/RJ45-PM",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "v7.22",
                  "status": "affected",
                  "version": "EtherNet/IP",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/EN-2DB9/RJ45-DIN",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "v7.22",
                  "status": "affected",
                  "version": "EtherNet/IP",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/EN-2ST/RJ45-DIN",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "v7.22",
                  "status": "affected",
                  "version": "EtherNet/IP",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/EN1-DB9/RJ45-PM",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "v1.08",
                  "status": "affected",
                  "version": "EIP/Modbus",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/EN1-DB9/RJ45-DIN",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "v1.08",
                  "status": "affected",
                  "version": "EIP/Modbus",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/EN1-ST/RJ45-DIN",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "v1.08",
                  "status": "affected",
                  "version": "EIP/Modbus",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/EN1-2DB9/RJ45-DIN",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "v1.08",
                  "status": "affected",
                  "version": "EIP/Modbus",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/EN1-4DB9/2RJ45-DIN",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "v1.08",
                  "status": "affected",
                  "version": "EIP/Modbus",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/EN1-2ST/RJ45-DIN",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "v1.08",
                  "status": "affected",
                  "version": "EIP/Modbus",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/MOD-DB9/RJ45-DIN",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "v7.09",
                  "status": "affected",
                  "version": "Modbus Router",
                  "versionType": "semver"
                },
                {
                  "lessThanOrEqual": "v7.11",
                  "status": "affected",
                  "version": "Modbus Server",
                  "versionType": "semver"
                },
                {
                  "lessThanOrEqual": "v7.11",
                  "status": "affected",
                  "version": "Modbus TCP",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/MOD-ST/RJ45-DIN",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "v7.09",
                  "status": "affected",
                  "version": "Modbus Router",
                  "versionType": "semver"
                },
                {
                  "lessThanOrEqual": "v7.11",
                  "status": "affected",
                  "version": "Modbus Server",
                  "versionType": "semver"
                },
                {
                  "lessThanOrEqual": "v7.11",
                  "status": "affected",
                  "version": "Modbus TCP",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/MOD-4DB9/2RJ45-DIN",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "v7.09",
                  "status": "affected",
                  "version": "Modbus Router",
                  "versionType": "semver"
                },
                {
                  "lessThanOrEqual": "v7.11",
                  "status": "affected",
                  "version": "Modbus Server",
                  "versionType": "semver"
                },
                {
                  "lessThanOrEqual": "v7.11",
                  "status": "affected",
                  "version": "Modbus TCP",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/MOD-DB9/RJ45-PM",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "v7.09",
                  "status": "affected",
                  "version": "Modbus Router",
                  "versionType": "semver"
                },
                {
                  "lessThanOrEqual": "v7.11",
                  "status": "affected",
                  "version": "Modbus Server",
                  "versionType": "semver"
                },
                {
                  "lessThanOrEqual": "v7.11",
                  "status": "affected",
                  "version": "Modbus TCP",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/MOD-2DB9/RJ45-DIN",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "v7.09",
                  "status": "affected",
                  "version": "Modbus Router",
                  "versionType": "semver"
                },
                {
                  "lessThanOrEqual": "v7.11",
                  "status": "affected",
                  "version": "Modbus Server",
                  "versionType": "semver"
                },
                {
                  "lessThanOrEqual": "v7.11",
                  "status": "affected",
                  "version": "Modbus TCP",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/MOD-2ST/RJ45-DIN",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "v7.09",
                  "status": "affected",
                  "version": "Modbus Router",
                  "versionType": "semver"
                },
                {
                  "lessThanOrEqual": "v7.11",
                  "status": "affected",
                  "version": "Modbus Server",
                  "versionType": "semver"
                },
                {
                  "lessThanOrEqual": "v7.11",
                  "status": "affected",
                  "version": "Modbus TCP",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/MOD-16RJ45/2RJ45-PM",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "v7.09",
                  "status": "affected",
                  "version": "Modbus Router",
                  "versionType": "semver"
                },
                {
                  "lessThanOrEqual": "v7.11",
                  "status": "affected",
                  "version": "Modbus Server",
                  "versionType": "semver"
                },
                {
                  "lessThanOrEqual": "v7.11",
                  "status": "affected",
                  "version": "Modbus TCP",
                  "versionType": "semver"
                }
              ]
            }
          ],
          "credits": [
            {
              "lang": "en",
              "type": "finder",
              "user": "00000000-0000-4000-9000-000000000000",
              "value": "Christopher Di-Nozzi"
            }
          ],
          "descriptions": [
            {
              "lang": "en",
              "supportingMedia": [
                {
                  "base64": false,
                  "type": "text/html",
                  "value": "\u003cp\u003eAn unauthenticated remote attacker may use a HTML injection vulnerability with limited length to inject malicious HTML code and gain low-privileged access on the affected device.\u003c/p\u003e"
                }
              ],
              "value": "An unauthenticated remote attacker may use a HTML injection vulnerability with limited length to inject malicious HTML code and gain low-privileged access on the affected device."
            }
          ],
          "metrics": [
            {
              "cvssV3_1": {
                "attackComplexity": "LOW",
                "attackVector": "NETWORK",
                "availabilityImpact": "NONE",
                "baseScore": 6.1,
                "baseSeverity": "MEDIUM",
                "confidentialityImpact": "LOW",
                "integrityImpact": "LOW",
                "privilegesRequired": "NONE",
                "scope": "CHANGED",
                "userInteraction": "REQUIRED",
                "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N",
                "version": "3.1"
              },
              "format": "CVSS",
              "scenarios": [
                {
                  "lang": "en",
                  "value": "GENERAL"
                }
              ]
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "cweId": "CWE-79",
                  "description": "CWE-79 Improper Neutralization of Input During Web Page Generation (\u0027Cross-site Scripting\u0027)",
                  "lang": "en",
                  "type": "CWE"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2024-08-13T12:33:00.703Z",
            "orgId": "270ccfa6-a436-4e77-922e-914ec3a9685c",
            "shortName": "CERTVDE"
          },
          "references": [
            {
              "url": "https://cert.vde.com/en/advisories/VDE-2024-033"
            }
          ],
          "source": {
            "advisory": "VDE-2024-033",
            "defect": [
              "CERT@VDE#641631"
            ],
            "discovery": "UNKNOWN"
          },
          "title": "Pepperl+Fuchs: Device Master ICDM-RX/* XSS vulnerability allows HTML injection",
          "x_generator": {
            "engine": "Vulnogram 0.1.0-dev"
          }
        }
      },
      "cveMetadata": {
        "assignerOrgId": "270ccfa6-a436-4e77-922e-914ec3a9685c",
        "assignerShortName": "CERTVDE",
        "cveId": "CVE-2024-38501",
        "datePublished": "2024-08-13T12:33:00.703Z",
        "dateReserved": "2024-06-18T07:56:44.761Z",
        "dateUpdated": "2024-08-13T13:31:52.009Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.1"
    }

    CVE-2024-5849 (GCVE-0-2024-5849)

    Vulnerability from cvelistv5 – Published: 2024-08-13 12:32 – Updated: 2024-08-15 14:14
    VLAI
    Title
    Pepperl+Fuchs: Device Master ICDM-RX/* XSS vulnerability allows reflected XSS
    Summary
    An unauthenticated remote attacker may use a reflected XSS vulnerability to obtain information from a user or reboot the affected device once.
    SSVC
    Exploitation: none Automatable: no Technical Impact: partial
    CISA Coordinator · CISA-ADP (v2.0.3)
    Decision recorded 2024-08-15 14:14 UTC
    CWE
    • CWE-79 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
    References
    Impacted products
    Vendor Product Version
    Pepperl+Fuchs ICDM-RX/TCP-DB9/RJ45-DIN Affected: SocketServer , ≤ 11.65 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/TCP-ST/RJ45-DIN Affected: SocketServer , ≤ 11.65 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/TCP-4DB9/2RJ45-DIN Affected: SocketServer , ≤ 11.65 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/TCP-DB9/RJ45-PM Affected: SocketServer , ≤ 11.65 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/TCP-2DB9/RJ45-DIN Affected: SocketServer , ≤ 11.65 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/TCP-2ST/RJ45-DIN Affected: SocketServer , ≤ 11.65 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/TCP-4DB9/2RJ45-PM Affected: SocketServer , ≤ 11.65 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/TCP-8DB9/2RJ45-PM Affected: SocketServer , ≤ 11.65 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/TCP-16RJ45/RJ45-RM Affected: SocketServer , ≤ 11.65 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/TCP-16DB9/RJ45-RM Affected: SocketServer , ≤ 11.65 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/TCP-32RJ45/RJ45-RM Affected: SocketServer , ≤ 11.65 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/TCP-DB9/RJ45-PM2 Affected: SocketServer , ≤ 11.65 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/TCP-16RJ45/2RJ45-PM Affected: SocketServer , ≤ 11.65 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/PN-DB9/RJ45-DIN Affected: PROFINET , ≤ v3.4.9 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/PN-ST/RJ45-DIN Affected: PROFINET , ≤ v3.4.9 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/PN-4DB9/2RJ45-DIN Affected: PROFINET , ≤ v3.4.9 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/PN-DB9/RJ45-PM Affected: PROFINET , ≤ v3.4.9 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/PN-2DB9/RJ45-DIN Affected: PROFINET , ≤ v3.4.9 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/PN-2ST/RJ45-DIN Affected: PROFINET , ≤ v3.4.9 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/PN1-DB9/RJ45-PM Affected: PROFINET/Modbus , ≤ v1.0.7 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/PN1-DB9/RJ45-DIN Affected: PROFINET/Modbus , ≤ v1.0.7 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/PN1-ST/RJ45-DIN Affected: PROFINET/Modbus , ≤ v1.0.7 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/PN1-2DB9/RJ45-DIN Affected: PROFINET/Modbus , ≤ v1.0.7 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/PN1-4DB9/2RJ45-DIN Affected: PROFINET/Modbus , ≤ v1.0.7 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/PN1-2ST/RJ45-DIN Affected: PROFINET/Modbus , ≤ v1.0.7 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/EN-DB9/RJ45-DIN Affected: EtherNet/IP , ≤ v7.22 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/EN-ST/RJ45-DIN Affected: EtherNet/IP , ≤ v7.22 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/EN-4DB9/2RJ45-DIN Affected: EtherNet/IP , ≤ v7.22 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/EN-DB9/RJ45-PM Affected: EtherNet/IP , ≤ v7.22 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/EN-2DB9/RJ45-DIN Affected: EtherNet/IP , ≤ v7.22 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/EN-2ST/RJ45-DIN Affected: EtherNet/IP , ≤ v7.22 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/EN1-DB9/RJ45-PM Affected: EIP/Modbus , ≤ v1.08 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/EN1-DB9/RJ45-DIN Affected: EIP/Modbus , ≤ v1.08 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/EN1-ST/RJ45-DIN Affected: EIP/Modbus , ≤ v1.08 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/EN1-2DB9/RJ45-DIN Affected: EIP/Modbus , ≤ v1.08 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/EN1-4DB9/2RJ45-DIN Affected: EIP/Modbus , ≤ v1.08 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/EN1-2ST/RJ45-DIN Affected: EIP/Modbus , ≤ v1.08 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/MOD-DB9/RJ45-DIN Affected: Modbus Router , ≤ v7.09 (semver)
    Affected: Modbus Server , ≤ v7.11 (semver)
    Affected: Modbus TCP , ≤ v7.11 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/MOD-ST/RJ45-DIN Affected: Modbus Router , ≤ v7.09 (semver)
    Affected: Modbus Server , ≤ v7.11 (semver)
    Affected: Modbus TCP , ≤ v7.11 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/MOD-4DB9/2RJ45-DIN Affected: Modbus Router , ≤ v7.09 (semver)
    Affected: Modbus Server , ≤ v7.11 (semver)
    Affected: Modbus TCP , ≤ v7.11 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/MOD-DB9/RJ45-PM Affected: Modbus Router , ≤ v7.09 (semver)
    Affected: Modbus Server , ≤ v7.11 (semver)
    Affected: Modbus TCP , ≤ v7.11 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/MOD-2DB9/RJ45-DIN Affected: Modbus Router , ≤ v7.09 (semver)
    Affected: Modbus Server , ≤ v7.11 (semver)
    Affected: Modbus TCP , ≤ v7.11 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/MOD-2ST/RJ45-DIN Affected: Modbus Router , ≤ v7.09 (semver)
    Affected: Modbus Server , ≤ v7.11 (semver)
    Affected: Modbus TCP , ≤ v7.11 (semver)
    Create a notification for this product.
    Pepperl+Fuchs ICDM-RX/MOD-16RJ45/2RJ45-PM Affected: Modbus Router , ≤ v7.09 (semver)
    Affected: Modbus Server , ≤ v7.11 (semver)
    Affected: Modbus TCP , ≤ v7.11 (semver)
    Create a notification for this product.
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "metrics": [
              {
                "other": {
                  "content": {
                    "id": "CVE-2024-5849",
                    "options": [
                      {
                        "Exploitation": "none"
                      },
                      {
                        "Automatable": "no"
                      },
                      {
                        "Technical Impact": "partial"
                      }
                    ],
                    "role": "CISA Coordinator",
                    "timestamp": "2024-08-15T14:14:27.392489Z",
                    "version": "2.0.3"
                  },
                  "type": "ssvc"
                }
              }
            ],
            "providerMetadata": {
              "dateUpdated": "2024-08-15T14:14:42.465Z",
              "orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
              "shortName": "CISA-ADP"
            },
            "title": "CISA ADP Vulnrichment"
          }
        ],
        "cna": {
          "affected": [
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/TCP-DB9/RJ45-DIN",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "11.65",
                  "status": "affected",
                  "version": "SocketServer",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/TCP-ST/RJ45-DIN",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "11.65",
                  "status": "affected",
                  "version": "SocketServer",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/TCP-4DB9/2RJ45-DIN",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "11.65",
                  "status": "affected",
                  "version": "SocketServer",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/TCP-DB9/RJ45-PM",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "11.65",
                  "status": "affected",
                  "version": "SocketServer",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/TCP-2DB9/RJ45-DIN",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "11.65",
                  "status": "affected",
                  "version": "SocketServer",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/TCP-2ST/RJ45-DIN",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "11.65",
                  "status": "affected",
                  "version": "SocketServer",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/TCP-4DB9/2RJ45-PM",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "11.65",
                  "status": "affected",
                  "version": "SocketServer",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/TCP-8DB9/2RJ45-PM",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "11.65",
                  "status": "affected",
                  "version": "SocketServer",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/TCP-16RJ45/RJ45-RM",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "11.65",
                  "status": "affected",
                  "version": "SocketServer",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/TCP-16DB9/RJ45-RM",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "11.65",
                  "status": "affected",
                  "version": "SocketServer",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/TCP-32RJ45/RJ45-RM",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "11.65",
                  "status": "affected",
                  "version": "SocketServer",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/TCP-DB9/RJ45-PM2",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "11.65",
                  "status": "affected",
                  "version": "SocketServer",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/TCP-16RJ45/2RJ45-PM",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "11.65",
                  "status": "affected",
                  "version": "SocketServer",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/PN-DB9/RJ45-DIN",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "v3.4.9",
                  "status": "affected",
                  "version": "PROFINET",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/PN-ST/RJ45-DIN",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "v3.4.9",
                  "status": "affected",
                  "version": "PROFINET",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/PN-4DB9/2RJ45-DIN",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "v3.4.9",
                  "status": "affected",
                  "version": "PROFINET",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/PN-DB9/RJ45-PM",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "v3.4.9",
                  "status": "affected",
                  "version": "PROFINET",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/PN-2DB9/RJ45-DIN",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "v3.4.9",
                  "status": "affected",
                  "version": "PROFINET",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/PN-2ST/RJ45-DIN",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "v3.4.9",
                  "status": "affected",
                  "version": "PROFINET",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/PN1-DB9/RJ45-PM",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "v1.0.7",
                  "status": "affected",
                  "version": "PROFINET/Modbus",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/PN1-DB9/RJ45-DIN",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "v1.0.7",
                  "status": "affected",
                  "version": "PROFINET/Modbus",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/PN1-ST/RJ45-DIN",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "v1.0.7",
                  "status": "affected",
                  "version": "PROFINET/Modbus",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/PN1-2DB9/RJ45-DIN",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "v1.0.7",
                  "status": "affected",
                  "version": "PROFINET/Modbus",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/PN1-4DB9/2RJ45-DIN",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "v1.0.7",
                  "status": "affected",
                  "version": "PROFINET/Modbus",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/PN1-2ST/RJ45-DIN",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "v1.0.7",
                  "status": "affected",
                  "version": "PROFINET/Modbus",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/EN-DB9/RJ45-DIN",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "v7.22",
                  "status": "affected",
                  "version": "EtherNet/IP",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/EN-ST/RJ45-DIN",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "v7.22",
                  "status": "affected",
                  "version": "EtherNet/IP",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/EN-4DB9/2RJ45-DIN",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "v7.22",
                  "status": "affected",
                  "version": "EtherNet/IP",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/EN-DB9/RJ45-PM",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "v7.22",
                  "status": "affected",
                  "version": "EtherNet/IP",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/EN-2DB9/RJ45-DIN",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "v7.22",
                  "status": "affected",
                  "version": "EtherNet/IP",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/EN-2ST/RJ45-DIN",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "v7.22",
                  "status": "affected",
                  "version": "EtherNet/IP",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/EN1-DB9/RJ45-PM",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "v1.08",
                  "status": "affected",
                  "version": "EIP/Modbus",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/EN1-DB9/RJ45-DIN",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "v1.08",
                  "status": "affected",
                  "version": "EIP/Modbus",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/EN1-ST/RJ45-DIN",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "v1.08",
                  "status": "affected",
                  "version": "EIP/Modbus",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/EN1-2DB9/RJ45-DIN",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "v1.08",
                  "status": "affected",
                  "version": "EIP/Modbus",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/EN1-4DB9/2RJ45-DIN",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "v1.08",
                  "status": "affected",
                  "version": "EIP/Modbus",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/EN1-2ST/RJ45-DIN",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "v1.08",
                  "status": "affected",
                  "version": "EIP/Modbus",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/MOD-DB9/RJ45-DIN",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "v7.09",
                  "status": "affected",
                  "version": "Modbus Router",
                  "versionType": "semver"
                },
                {
                  "lessThanOrEqual": "v7.11",
                  "status": "affected",
                  "version": "Modbus Server",
                  "versionType": "semver"
                },
                {
                  "lessThanOrEqual": "v7.11",
                  "status": "affected",
                  "version": "Modbus TCP",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/MOD-ST/RJ45-DIN",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "v7.09",
                  "status": "affected",
                  "version": "Modbus Router",
                  "versionType": "semver"
                },
                {
                  "lessThanOrEqual": "v7.11",
                  "status": "affected",
                  "version": "Modbus Server",
                  "versionType": "semver"
                },
                {
                  "lessThanOrEqual": "v7.11",
                  "status": "affected",
                  "version": "Modbus TCP",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/MOD-4DB9/2RJ45-DIN",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "v7.09",
                  "status": "affected",
                  "version": "Modbus Router",
                  "versionType": "semver"
                },
                {
                  "lessThanOrEqual": "v7.11",
                  "status": "affected",
                  "version": "Modbus Server",
                  "versionType": "semver"
                },
                {
                  "lessThanOrEqual": "v7.11",
                  "status": "affected",
                  "version": "Modbus TCP",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/MOD-DB9/RJ45-PM",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "v7.09",
                  "status": "affected",
                  "version": "Modbus Router",
                  "versionType": "semver"
                },
                {
                  "lessThanOrEqual": "v7.11",
                  "status": "affected",
                  "version": "Modbus Server",
                  "versionType": "semver"
                },
                {
                  "lessThanOrEqual": "v7.11",
                  "status": "affected",
                  "version": "Modbus TCP",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/MOD-2DB9/RJ45-DIN",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "v7.09",
                  "status": "affected",
                  "version": "Modbus Router",
                  "versionType": "semver"
                },
                {
                  "lessThanOrEqual": "v7.11",
                  "status": "affected",
                  "version": "Modbus Server",
                  "versionType": "semver"
                },
                {
                  "lessThanOrEqual": "v7.11",
                  "status": "affected",
                  "version": "Modbus TCP",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/MOD-2ST/RJ45-DIN",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "v7.09",
                  "status": "affected",
                  "version": "Modbus Router",
                  "versionType": "semver"
                },
                {
                  "lessThanOrEqual": "v7.11",
                  "status": "affected",
                  "version": "Modbus Server",
                  "versionType": "semver"
                },
                {
                  "lessThanOrEqual": "v7.11",
                  "status": "affected",
                  "version": "Modbus TCP",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "ICDM-RX/MOD-16RJ45/2RJ45-PM",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "v7.09",
                  "status": "affected",
                  "version": "Modbus Router",
                  "versionType": "semver"
                },
                {
                  "lessThanOrEqual": "v7.11",
                  "status": "affected",
                  "version": "Modbus Server",
                  "versionType": "semver"
                },
                {
                  "lessThanOrEqual": "v7.11",
                  "status": "affected",
                  "version": "Modbus TCP",
                  "versionType": "semver"
                }
              ]
            }
          ],
          "credits": [
            {
              "lang": "en",
              "type": "finder",
              "user": "00000000-0000-4000-9000-000000000000",
              "value": "Christopher Di-Nozzi"
            }
          ],
          "descriptions": [
            {
              "lang": "en",
              "supportingMedia": [
                {
                  "base64": false,
                  "type": "text/html",
                  "value": "\u003cp\u003eAn unauthenticated remote attacker may use a reflected XSS vulnerability to obtain information from a user or reboot the affected device once.\u003c/p\u003e"
                }
              ],
              "value": "An unauthenticated remote attacker may use a reflected XSS vulnerability to obtain information from a user or reboot the affected device once."
            }
          ],
          "metrics": [
            {
              "cvssV3_1": {
                "attackComplexity": "LOW",
                "attackVector": "NETWORK",
                "availabilityImpact": "LOW",
                "baseScore": 7.1,
                "baseSeverity": "HIGH",
                "confidentialityImpact": "LOW",
                "integrityImpact": "LOW",
                "privilegesRequired": "NONE",
                "scope": "CHANGED",
                "userInteraction": "REQUIRED",
                "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:L",
                "version": "3.1"
              },
              "format": "CVSS",
              "scenarios": [
                {
                  "lang": "en",
                  "value": "GENERAL"
                }
              ]
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "cweId": "CWE-79",
                  "description": "CWE-79 Improper Neutralization of Input During Web Page Generation (\u0027Cross-site Scripting\u0027)",
                  "lang": "en",
                  "type": "CWE"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2024-08-13T12:32:37.130Z",
            "orgId": "270ccfa6-a436-4e77-922e-914ec3a9685c",
            "shortName": "CERTVDE"
          },
          "references": [
            {
              "url": "https://cert.vde.com/en/advisories/VDE-2024-033"
            }
          ],
          "source": {
            "advisory": "VDE-2024-033",
            "defect": [
              "CERT@VDE#641631"
            ],
            "discovery": "UNKNOWN"
          },
          "title": "Pepperl+Fuchs: Device Master ICDM-RX/* XSS vulnerability allows reflected XSS",
          "x_generator": {
            "engine": "Vulnogram 0.1.0-dev"
          }
        }
      },
      "cveMetadata": {
        "assignerOrgId": "270ccfa6-a436-4e77-922e-914ec3a9685c",
        "assignerShortName": "CERTVDE",
        "cveId": "CVE-2024-5849",
        "datePublished": "2024-08-13T12:32:37.130Z",
        "dateReserved": "2024-06-11T07:44:37.199Z",
        "dateUpdated": "2024-08-15T14:14:42.465Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.1"
    }

    CVE-2024-6422 (GCVE-0-2024-6422)

    Vulnerability from cvelistv5 – Published: 2024-07-10 07:37 – Updated: 2024-08-01 21:41
    VLAI
    Title
    Pepperl+Fuchs: OIT Products can be manipulated via unintended Telnet access
    Summary
    An unauthenticated remote attacker can manipulate the device via Telnet, stop processes, read, delete and change data.
    SSVC
    Exploitation: none Automatable: no Technical Impact: partial
    CISA Coordinator · CISA-ADP (v2.0.3)
    Decision recorded 2024-07-23 18:31 UTC
    CWE
    • CWE-306 - Missing Authentication for Critical Function
    References
    Impacted products
    Credits
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "metrics": [
              {
                "other": {
                  "content": {
                    "id": "CVE-2024-6422",
                    "options": [
                      {
                        "Exploitation": "none"
                      },
                      {
                        "Automatable": "no"
                      },
                      {
                        "Technical Impact": "partial"
                      }
                    ],
                    "role": "CISA Coordinator",
                    "timestamp": "2024-07-23T18:31:19.777298Z",
                    "version": "2.0.3"
                  },
                  "type": "ssvc"
                }
              }
            ],
            "providerMetadata": {
              "dateUpdated": "2024-07-23T18:31:29.464Z",
              "orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
              "shortName": "CISA-ADP"
            },
            "title": "CISA ADP Vulnrichment"
          },
          {
            "providerMetadata": {
              "dateUpdated": "2024-08-01T21:41:03.408Z",
              "orgId": "af854a3a-2127-422b-91ae-364da2661108",
              "shortName": "CVE"
            },
            "references": [
              {
                "tags": [
                  "x_transferred"
                ],
                "url": "https://cert.vde.com/en/advisories/VDE-2024-038"
              }
            ],
            "title": "CVE Program Container"
          }
        ],
        "cna": {
          "affected": [
            {
              "defaultStatus": "unaffected",
              "product": "OIT1500-F113-B12-CB",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "V2.11.0",
                  "status": "affected",
                  "version": "0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "OIT200-F113-B12-CB",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "V2.11.0",
                  "status": "affected",
                  "version": "0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "OIT500-F113-B12-CB",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "V2.11.0",
                  "status": "affected",
                  "version": "0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "OIT700-F113-B12-CB",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "V2.11.0",
                  "status": "affected",
                  "version": "0",
                  "versionType": "semver"
                }
              ]
            }
          ],
          "credits": [
            {
              "lang": "en",
              "type": "reporter",
              "user": "00000000-0000-4000-9000-000000000000",
              "value": "BMW AG"
            }
          ],
          "descriptions": [
            {
              "lang": "en",
              "supportingMedia": [
                {
                  "base64": false,
                  "type": "text/html",
                  "value": "An unauthenticated remote attacker can manipulate the device via Telnet, stop processes, read, delete and change data."
                }
              ],
              "value": "An unauthenticated remote attacker can manipulate the device via Telnet, stop processes, read, delete and change data."
            }
          ],
          "metrics": [
            {
              "cvssV3_1": {
                "attackComplexity": "LOW",
                "attackVector": "NETWORK",
                "availabilityImpact": "HIGH",
                "baseScore": 9.8,
                "baseSeverity": "CRITICAL",
                "confidentialityImpact": "HIGH",
                "integrityImpact": "HIGH",
                "privilegesRequired": "NONE",
                "scope": "UNCHANGED",
                "userInteraction": "NONE",
                "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H",
                "version": "3.1"
              },
              "format": "CVSS",
              "scenarios": [
                {
                  "lang": "en",
                  "value": "GENERAL"
                }
              ]
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "cweId": "CWE-306",
                  "description": "CWE-306 Missing Authentication for Critical Function",
                  "lang": "en",
                  "type": "CWE"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2024-07-10T07:37:03.147Z",
            "orgId": "270ccfa6-a436-4e77-922e-914ec3a9685c",
            "shortName": "CERTVDE"
          },
          "references": [
            {
              "url": "https://cert.vde.com/en/advisories/VDE-2024-038"
            }
          ],
          "source": {
            "advisory": "VDE-204-038",
            "defect": [
              "CERT@VDE#641655"
            ],
            "discovery": "UNKNOWN"
          },
          "title": "Pepperl+Fuchs: OIT Products can be manipulated via unintended Telnet access",
          "x_generator": {
            "engine": "Vulnogram 0.1.0-dev"
          }
        }
      },
      "cveMetadata": {
        "assignerOrgId": "270ccfa6-a436-4e77-922e-914ec3a9685c",
        "assignerShortName": "CERTVDE",
        "cveId": "CVE-2024-6422",
        "datePublished": "2024-07-10T07:37:03.147Z",
        "dateReserved": "2024-07-01T07:38:23.446Z",
        "dateUpdated": "2024-08-01T21:41:03.408Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.1"
    }

    CVE-2024-6421 (GCVE-0-2024-6421)

    Vulnerability from cvelistv5 – Published: 2024-07-10 07:36 – Updated: 2025-08-22 07:00
    VLAI
    Title
    Pepperl+Fuchs: Incorrectly configured FTP-Server in OIT Products
    Summary
    An unauthenticated remote attacker can read out sensitive device information through a incorrectly configured FTP service.
    SSVC
    Exploitation: none Automatable: yes Technical Impact: total
    CISA Coordinator · CISA-ADP (v2.0.3)
    Decision recorded 2024-07-10 14:15 UTC
    CWE
    • CWE-552 - Files or Directories Accessible to External Parties
    References
    Impacted products
    Vendor Product Version
    Pepperl+Fuchs OIT1500-F113-B12-CB Affected: 0 , ≤ V2.11.0 (semver)
    Create a notification for this product.
    Pepperl+Fuchs OIT200-F113-B12-CB Affected: 0 , ≤ V2.11.0 (semver)
    Create a notification for this product.
    Pepperl+Fuchs OIT500-F113-B12-CB Affected: 0 , ≤ V2.11.0 (semver)
    Create a notification for this product.
    Pepperl+Fuchs OIT700-F113-B12-CB Affected: 0 , ≤ V2.11.0 (semver)
    Create a notification for this product.
    pepperl-fuchs oit1500-f113-b12-cb_firmware Affected: 0 , ≤ V2.11.0 (semver)
        cpe:2.3:o:pepperl-fuchs:oit1500-f113-b12-cb_firmware:*:*:*:*:*:*:*:*
    Create a notification for this product.
    pepperl-fuchs oit200-f113-b12-cb_firmware Affected: 0 , ≤ V2.11.0 (semver)
        cpe:2.3:o:pepperl-fuchs:oit200-f113-b12-cb_firmware:*:*:*:*:*:*:*:*
    Create a notification for this product.
    pepperl-fuchs oit500-f113-b12-cb_firmware Affected: 0 , ≤ V2.11.0 (semver)
        cpe:2.3:o:pepperl-fuchs:oit500-f113-b12-cb_firmware:*:*:*:*:*:*:*:*
    Create a notification for this product.
    pepperl-fuchs oit700-f113-b12-cb_firmware Affected: 0 , ≤ V2.11.0 (semver)
        cpe:2.3:o:pepperl-fuchs:oit700-f113-b12-cb_firmware:*:*:*:*:*:*:*:*
    Create a notification for this product.
    Credits
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "affected": [
              {
                "cpes": [
                  "cpe:2.3:o:pepperl-fuchs:oit1500-f113-b12-cb_firmware:*:*:*:*:*:*:*:*"
                ],
                "defaultStatus": "unaffected",
                "product": "oit1500-f113-b12-cb_firmware",
                "vendor": "pepperl-fuchs",
                "versions": [
                  {
                    "lessThanOrEqual": "V2.11.0",
                    "status": "affected",
                    "version": "0",
                    "versionType": "semver"
                  }
                ]
              },
              {
                "cpes": [
                  "cpe:2.3:o:pepperl-fuchs:oit200-f113-b12-cb_firmware:*:*:*:*:*:*:*:*"
                ],
                "defaultStatus": "unaffected",
                "product": "oit200-f113-b12-cb_firmware",
                "vendor": "pepperl-fuchs",
                "versions": [
                  {
                    "lessThanOrEqual": "V2.11.0",
                    "status": "affected",
                    "version": "0",
                    "versionType": "semver"
                  }
                ]
              },
              {
                "cpes": [
                  "cpe:2.3:o:pepperl-fuchs:oit500-f113-b12-cb_firmware:*:*:*:*:*:*:*:*"
                ],
                "defaultStatus": "unaffected",
                "product": "oit500-f113-b12-cb_firmware",
                "vendor": "pepperl-fuchs",
                "versions": [
                  {
                    "lessThanOrEqual": "V2.11.0",
                    "status": "affected",
                    "version": "0",
                    "versionType": "semver"
                  }
                ]
              },
              {
                "cpes": [
                  "cpe:2.3:o:pepperl-fuchs:oit700-f113-b12-cb_firmware:*:*:*:*:*:*:*:*"
                ],
                "defaultStatus": "unaffected",
                "product": "oit700-f113-b12-cb_firmware",
                "vendor": "pepperl-fuchs",
                "versions": [
                  {
                    "lessThanOrEqual": "V2.11.0",
                    "status": "affected",
                    "version": "0",
                    "versionType": "semver"
                  }
                ]
              }
            ],
            "metrics": [
              {
                "other": {
                  "content": {
                    "id": "CVE-2024-6421",
                    "options": [
                      {
                        "Exploitation": "none"
                      },
                      {
                        "Automatable": "yes"
                      },
                      {
                        "Technical Impact": "total"
                      }
                    ],
                    "role": "CISA Coordinator",
                    "timestamp": "2024-07-10T14:15:26.548063Z",
                    "version": "2.0.3"
                  },
                  "type": "ssvc"
                }
              }
            ],
            "providerMetadata": {
              "dateUpdated": "2024-07-10T14:33:22.935Z",
              "orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
              "shortName": "CISA-ADP"
            },
            "title": "CISA ADP Vulnrichment"
          },
          {
            "providerMetadata": {
              "dateUpdated": "2024-08-01T21:41:03.308Z",
              "orgId": "af854a3a-2127-422b-91ae-364da2661108",
              "shortName": "CVE"
            },
            "references": [
              {
                "tags": [
                  "x_transferred"
                ],
                "url": "https://cert.vde.com/en/advisories/VDE-2024-038"
              }
            ],
            "title": "CVE Program Container"
          }
        ],
        "cna": {
          "affected": [
            {
              "defaultStatus": "unaffected",
              "product": "OIT1500-F113-B12-CB",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "V2.11.0",
                  "status": "affected",
                  "version": "0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "OIT200-F113-B12-CB",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "V2.11.0",
                  "status": "affected",
                  "version": "0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "OIT500-F113-B12-CB",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "V2.11.0",
                  "status": "affected",
                  "version": "0",
                  "versionType": "semver"
                }
              ]
            },
            {
              "defaultStatus": "unaffected",
              "product": "OIT700-F113-B12-CB",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "V2.11.0",
                  "status": "affected",
                  "version": "0",
                  "versionType": "semver"
                }
              ]
            }
          ],
          "credits": [
            {
              "lang": "en",
              "type": "reporter",
              "user": "00000000-0000-4000-9000-000000000000",
              "value": "BMW AG"
            }
          ],
          "descriptions": [
            {
              "lang": "en",
              "supportingMedia": [
                {
                  "base64": false,
                  "type": "text/html",
                  "value": "An unauthenticated remote attacker can read out sensitive device information through a incorrectly configured FTP service."
                }
              ],
              "value": "An unauthenticated remote attacker can read out sensitive device information through a incorrectly configured FTP service."
            }
          ],
          "metrics": [
            {
              "cvssV3_1": {
                "attackComplexity": "LOW",
                "attackVector": "NETWORK",
                "availabilityImpact": "NONE",
                "baseScore": 7.5,
                "baseSeverity": "HIGH",
                "confidentialityImpact": "HIGH",
                "integrityImpact": "NONE",
                "privilegesRequired": "NONE",
                "scope": "UNCHANGED",
                "userInteraction": "NONE",
                "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N",
                "version": "3.1"
              },
              "format": "CVSS",
              "scenarios": [
                {
                  "lang": "en",
                  "value": "GENERAL"
                }
              ]
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "cweId": "CWE-552",
                  "description": "CWE-552 Files or Directories Accessible to External Parties",
                  "lang": "en",
                  "type": "CWE"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2025-08-22T07:00:50.289Z",
            "orgId": "270ccfa6-a436-4e77-922e-914ec3a9685c",
            "shortName": "CERTVDE"
          },
          "references": [
            {
              "url": "https://cert.vde.com/en/advisories/VDE-2024-038"
            }
          ],
          "source": {
            "advisory": "VDE-2024-038",
            "defect": [
              "CERT@VDE#641655"
            ],
            "discovery": "UNKNOWN"
          },
          "title": "Pepperl+Fuchs: Incorrectly configured FTP-Server in OIT Products",
          "x_generator": {
            "engine": "Vulnogram 0.1.0-dev"
          }
        }
      },
      "cveMetadata": {
        "assignerOrgId": "270ccfa6-a436-4e77-922e-914ec3a9685c",
        "assignerShortName": "CERTVDE",
        "cveId": "CVE-2024-6421",
        "datePublished": "2024-07-10T07:36:52.119Z",
        "dateReserved": "2024-07-01T07:38:21.490Z",
        "dateUpdated": "2025-08-22T07:00:50.289Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.1"
    }

    CVE-2021-20988 (GCVE-0-2021-20988)

    Vulnerability from cvelistv5 – Published: 2021-05-13 13:45 – Updated: 2024-09-16 17:49
    VLAI
    Title
    Hilscher rcX RTOS: Wrong handling of the UDP checksum
    Summary
    In Hilscher rcX RTOS versions prios to V2.1.14.1 the actual UDP packet length is not verified against the length indicated by the packet. This may lead to a denial of service of the affected device.
    CWE
    • CWE-119 - Improper Restriction of Operations within the Bounds of a Memory Buffer
    References
    Impacted products
    Vendor Product Version
    Hilscher rcX RTOS Affected: unspecified , < V2.1.14.1 (custom)
    Create a notification for this product.
    Pepperl+Fuchs Ethernet IO Modules ICE1-16 Affected: ICE1-16DI-G60L-V1D , ≤ F10017 (custom)
    Affected: ICE1-16DIO-G60L-C1-V1D , ≤ F10017 (custom)
    Affected: ICE1-16DIO-G60L-V1D , ≤ F10017 (custom)
    Create a notification for this product.
    Pepperl+Fuchs Ethernet IO Modules ICE1-8 Affected: ICE1-8DI8DO-G60L-C1-V1D , ≤ F10017 (custom)
    Affected: ICE1-8DI8DO-G60L-V1D , ≤ F10017 (custom)
    Affected: ICE1-8IOL-G30L-V1D , ≤ F10017 (custom)
    Affected: ICE1-8IOL-G60L-V1D , ≤ F10017 (custom)
    Affected: ICE1-8IOL-S2-G60L-V1D , ≤ F10017 (custom)
    Create a notification for this product.
    Date Public
    2021-02-15 00:00
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "providerMetadata": {
              "dateUpdated": "2024-08-03T17:53:23.157Z",
              "orgId": "af854a3a-2127-422b-91ae-364da2661108",
              "shortName": "CVE"
            },
            "references": [
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://kb.hilscher.com/display/ISMS/2019-04-10+Wrong+handling+of+the+UDP+checksum"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://cert.vde.com/de-de/advisories/vde-2021-018"
              }
            ],
            "title": "CVE Program Container"
          }
        ],
        "cna": {
          "affected": [
            {
              "product": "rcX RTOS",
              "vendor": "Hilscher",
              "versions": [
                {
                  "lessThan": "V2.1.14.1",
                  "status": "affected",
                  "version": "unspecified",
                  "versionType": "custom"
                }
              ]
            },
            {
              "product": "Ethernet IO Modules ICE1-16",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "F10017",
                  "status": "affected",
                  "version": "ICE1-16DI-G60L-V1D",
                  "versionType": "custom"
                },
                {
                  "lessThanOrEqual": "F10017",
                  "status": "affected",
                  "version": "ICE1-16DIO-G60L-C1-V1D",
                  "versionType": "custom"
                },
                {
                  "lessThanOrEqual": "F10017",
                  "status": "affected",
                  "version": "ICE1-16DIO-G60L-V1D",
                  "versionType": "custom"
                }
              ]
            },
            {
              "product": "Ethernet IO Modules ICE1-8",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "F10017",
                  "status": "affected",
                  "version": "ICE1-8DI8DO-G60L-C1-V1D",
                  "versionType": "custom"
                },
                {
                  "lessThanOrEqual": "F10017",
                  "status": "affected",
                  "version": "ICE1-8DI8DO-G60L-V1D",
                  "versionType": "custom"
                },
                {
                  "lessThanOrEqual": "F10017",
                  "status": "affected",
                  "version": "ICE1-8IOL-G30L-V1D",
                  "versionType": "custom"
                },
                {
                  "lessThanOrEqual": "F10017",
                  "status": "affected",
                  "version": "ICE1-8IOL-G60L-V1D",
                  "versionType": "custom"
                },
                {
                  "lessThanOrEqual": "F10017",
                  "status": "affected",
                  "version": "ICE1-8IOL-S2-G60L-V1D",
                  "versionType": "custom"
                }
              ]
            }
          ],
          "datePublic": "2021-02-15T00:00:00.000Z",
          "descriptions": [
            {
              "lang": "en",
              "value": "In Hilscher rcX RTOS versions prios to V2.1.14.1 the actual UDP packet length is not verified against the length indicated by the packet. This may lead to a denial of service of the affected device."
            }
          ],
          "metrics": [
            {
              "cvssV3_1": {
                "attackComplexity": "LOW",
                "attackVector": "NETWORK",
                "availabilityImpact": "HIGH",
                "baseScore": 8.6,
                "baseSeverity": "HIGH",
                "confidentialityImpact": "NONE",
                "integrityImpact": "NONE",
                "privilegesRequired": "NONE",
                "scope": "CHANGED",
                "userInteraction": "NONE",
                "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:H",
                "version": "3.1"
              }
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "cweId": "CWE-119",
                  "description": "CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer",
                  "lang": "en",
                  "type": "CWE"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2021-05-13T13:45:24.000Z",
            "orgId": "270ccfa6-a436-4e77-922e-914ec3a9685c",
            "shortName": "CERTVDE"
          },
          "references": [
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://kb.hilscher.com/display/ISMS/2019-04-10+Wrong+handling+of+the+UDP+checksum"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://cert.vde.com/de-de/advisories/vde-2021-018"
            }
          ],
          "source": {
            "advisory": "vde-2021-018",
            "defect": [
              "vde-2021-018"
            ],
            "discovery": "UNKNOWN"
          },
          "title": "Hilscher rcX RTOS: Wrong handling of the UDP checksum",
          "x_generator": {
            "engine": "Vulnogram 0.0.9"
          },
          "x_legacyV4Record": {
            "CVE_data_meta": {
              "ASSIGNER": "info@cert.vde.com",
              "DATE_PUBLIC": "2021-02-15T13:00:00.000Z",
              "ID": "CVE-2021-20988",
              "STATE": "PUBLIC",
              "TITLE": "Hilscher rcX RTOS: Wrong handling of the UDP checksum"
            },
            "affects": {
              "vendor": {
                "vendor_data": [
                  {
                    "product": {
                      "product_data": [
                        {
                          "product_name": "rcX RTOS",
                          "version": {
                            "version_data": [
                              {
                                "version_affected": "\u003c",
                                "version_value": "V2.1.14.1"
                              }
                            ]
                          }
                        }
                      ]
                    },
                    "vendor_name": "Hilscher"
                  },
                  {
                    "product": {
                      "product_data": [
                        {
                          "product_name": "Ethernet IO Modules ICE1-16",
                          "version": {
                            "version_data": [
                              {
                                "version_affected": "\u003c=",
                                "version_name": "ICE1-16DI-G60L-V1D",
                                "version_value": "F10017"
                              },
                              {
                                "version_affected": "\u003c=",
                                "version_name": "ICE1-16DIO-G60L-C1-V1D",
                                "version_value": "F10017"
                              },
                              {
                                "version_affected": "\u003c=",
                                "version_name": "ICE1-16DIO-G60L-V1D",
                                "version_value": "F10017"
                              }
                            ]
                          }
                        },
                        {
                          "product_name": "Ethernet IO Modules ICE1-8",
                          "version": {
                            "version_data": [
                              {
                                "version_affected": "\u003c=",
                                "version_name": "ICE1-8DI8DO-G60L-C1-V1D",
                                "version_value": "F10017"
                              },
                              {
                                "version_affected": "\u003c=",
                                "version_name": "ICE1-8DI8DO-G60L-V1D",
                                "version_value": "F10017"
                              },
                              {
                                "version_affected": "\u003c=",
                                "version_name": "ICE1-8IOL-G30L-V1D",
                                "version_value": "F10017"
                              },
                              {
                                "version_affected": "\u003c=",
                                "version_name": "ICE1-8IOL-G60L-V1D",
                                "version_value": "F10017"
                              },
                              {
                                "version_affected": "\u003c=",
                                "version_name": "ICE1-8IOL-S2-G60L-V1D",
                                "version_value": "F10017"
                              }
                            ]
                          }
                        }
                      ]
                    },
                    "vendor_name": "Pepperl+Fuchs"
                  }
                ]
              }
            },
            "data_format": "MITRE",
            "data_type": "CVE",
            "data_version": "4.0",
            "description": {
              "description_data": [
                {
                  "lang": "eng",
                  "value": "In Hilscher rcX RTOS versions prios to V2.1.14.1 the actual UDP packet length is not verified against the length indicated by the packet. This may lead to a denial of service of the affected device."
                }
              ]
            },
            "generator": {
              "engine": "Vulnogram 0.0.9"
            },
            "impact": {
              "cvss": {
                "attackComplexity": "LOW",
                "attackVector": "NETWORK",
                "availabilityImpact": "HIGH",
                "baseScore": 8.6,
                "baseSeverity": "HIGH",
                "confidentialityImpact": "NONE",
                "integrityImpact": "NONE",
                "privilegesRequired": "NONE",
                "scope": "CHANGED",
                "userInteraction": "NONE",
                "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:H",
                "version": "3.1"
              }
            },
            "problemtype": {
              "problemtype_data": [
                {
                  "description": [
                    {
                      "lang": "eng",
                      "value": "CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer"
                    }
                  ]
                }
              ]
            },
            "references": {
              "reference_data": [
                {
                  "name": "https://kb.hilscher.com/display/ISMS/2019-04-10+Wrong+handling+of+the+UDP+checksum",
                  "refsource": "CONFIRM",
                  "url": "https://kb.hilscher.com/display/ISMS/2019-04-10+Wrong+handling+of+the+UDP+checksum"
                },
                {
                  "name": "https://cert.vde.com/de-de/advisories/vde-2021-018",
                  "refsource": "CONFIRM",
                  "url": "https://cert.vde.com/de-de/advisories/vde-2021-018"
                }
              ]
            },
            "source": {
              "advisory": "vde-2021-018",
              "defect": [
                "vde-2021-018"
              ],
              "discovery": "UNKNOWN"
            }
          }
        }
      },
      "cveMetadata": {
        "assignerOrgId": "270ccfa6-a436-4e77-922e-914ec3a9685c",
        "assignerShortName": "CERTVDE",
        "cveId": "CVE-2021-20988",
        "datePublished": "2021-05-13T13:45:24.410Z",
        "dateReserved": "2020-12-17T00:00:00.000Z",
        "dateUpdated": "2024-09-16T17:49:09.628Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.1"
    }

    CVE-2020-12504 (GCVE-0-2020-12504)

    Vulnerability from cvelistv5 – Published: 2020-10-15 18:42 – Updated: 2024-09-16 17:09
    VLAI
    Title
    Pepperl+Fuchs improper authorization affects multiple Comtrol RocketLinx products
    Summary
    Improper Authorization vulnerability of Pepperl+Fuchs P+F Comtrol RocketLinx ES7510-XT, ES8509-XT, ES8510-XT, ES9528-XTv2, ES7506, ES7510, ES7528, ES8508, ES8508F, ES8510, ES8510-XTE, ES9528/ES9528-XT (all versions) and ICRL-M-8RJ45/4SFP-G-DIN, ICRL-M-16RJ45/4CP-G-DIN FW 1.2.3 and below has an active TFTP-Service.
    CWE
    Impacted products
    Vendor Product Version
    Pepperl+Fuchs P+F Comtrol RocketLinx Affected: ES8509-XT, ES8510-XT, ES9528-XTv2, ES7506, ES7510, ES7528, ES8508, ES8508F, ES8510-XTE, ES9528/ES9528-XT all
    Affected: ES7510-XT , < 2.1.1 (custom)
    Affected: ES8510 , < 3.1.1 (custom)
    Create a notification for this product.
    Pepperl+Fuchs P+F Comtrol RocketLinx Affected: ICRL-M-8RJ45/4SFP-G-DIN , ≤ 1.2.3 (custom)
    Affected: ICRL-M-16RJ45/4CP-G-DIN , ≤ 1.2.3 (custom)
    Create a notification for this product.
    Korenix JetNet Affected: 5428G-20SFP , ≤ V1.0 (custom)
    Affected: 5810G , ≤ V1.1 (custom)
    Affected: 4706F , ≤ V2.3b (custom)
    Affected: 4510 , ≤ V3.0b (custom)
    Affected: 5310 , < V1.6 (custom)
    Create a notification for this product.
    Westermo PMI-110-F2G Affected: unspecified , < V1.8 (custom)
    Create a notification for this product.
    Date Public
    2020-10-07 00:00
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "providerMetadata": {
              "dateUpdated": "2024-08-04T11:56:52.052Z",
              "orgId": "af854a3a-2127-422b-91ae-364da2661108",
              "shortName": "CVE"
            },
            "references": [
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://cert.vde.com/de-de/advisories/vde-2020-040"
              },
              {
                "name": "20210601 SEC Consult SA-20210601-0 :: Multiple critical vulnerabilities in Korenix Technology JetNet Series",
                "tags": [
                  "mailing-list",
                  "x_refsource_FULLDISC",
                  "x_transferred"
                ],
                "url": "http://seclists.org/fulldisclosure/2021/Jun/0"
              },
              {
                "tags": [
                  "x_refsource_MISC",
                  "x_transferred"
                ],
                "url": "http://packetstormsecurity.com/files/162903/Korenix-CSRF-Backdoor-Accounts-Command-Injection-Missing-Authentication.html"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://sec-consult.com/vulnerability-lab/advisory/multiple-critical-vulnerabilities-in-korenix-technology-westermo-pepperl-fuchs/"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://cert.vde.com/en-us/advisories/vde-2020-053"
              },
              {
                "tags": [
                  "x_refsource_MISC",
                  "x_transferred"
                ],
                "url": "http://packetstormsecurity.com/files/165875/Korenix-Technology-JetWave-CSRF-Command-Injection-Missing-Authentication.html"
              }
            ],
            "title": "CVE Program Container"
          }
        ],
        "cna": {
          "affected": [
            {
              "product": "P+F Comtrol RocketLinx",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "status": "affected",
                  "version": "ES8509-XT, ES8510-XT, ES9528-XTv2, ES7506, ES7510, ES7528, ES8508, ES8508F,  ES8510-XTE, ES9528/ES9528-XT all"
                },
                {
                  "lessThan": "2.1.1",
                  "status": "affected",
                  "version": "ES7510-XT",
                  "versionType": "custom"
                },
                {
                  "lessThan": "3.1.1",
                  "status": "affected",
                  "version": "ES8510",
                  "versionType": "custom"
                }
              ]
            },
            {
              "product": "P+F Comtrol RocketLinx",
              "vendor": "Pepperl+Fuchs",
              "versions": [
                {
                  "lessThanOrEqual": "1.2.3",
                  "status": "affected",
                  "version": "ICRL-M-8RJ45/4SFP-G-DIN",
                  "versionType": "custom"
                },
                {
                  "lessThanOrEqual": "1.2.3",
                  "status": "affected",
                  "version": "ICRL-M-16RJ45/4CP-G-DIN",
                  "versionType": "custom"
                }
              ]
            },
            {
              "product": "JetNet",
              "vendor": "Korenix",
              "versions": [
                {
                  "lessThanOrEqual": "V1.0",
                  "status": "affected",
                  "version": "5428G-20SFP",
                  "versionType": "custom"
                },
                {
                  "lessThanOrEqual": "V1.1",
                  "status": "affected",
                  "version": "5810G",
                  "versionType": "custom"
                },
                {
                  "lessThanOrEqual": "V2.3b",
                  "status": "affected",
                  "version": "4706F",
                  "versionType": "custom"
                },
                {
                  "lessThanOrEqual": "V3.0b",
                  "status": "affected",
                  "version": "4510",
                  "versionType": "custom"
                },
                {
                  "lessThan": "V1.6",
                  "status": "affected",
                  "version": "5310",
                  "versionType": "custom"
                }
              ]
            },
            {
              "product": "PMI-110-F2G",
              "vendor": "Westermo",
              "versions": [
                {
                  "lessThan": "V1.8",
                  "status": "affected",
                  "version": "unspecified",
                  "versionType": "custom"
                }
              ]
            }
          ],
          "credits": [
            {
              "lang": "en",
              "value": "T. Weber (SEC Consult Vulnerability Lab)"
            },
            {
              "lang": "en",
              "value": "Coordinated by CERT@VDE"
            }
          ],
          "datePublic": "2020-10-07T00:00:00.000Z",
          "descriptions": [
            {
              "lang": "en",
              "value": "Improper Authorization vulnerability of Pepperl+Fuchs P+F Comtrol RocketLinx ES7510-XT, ES8509-XT, ES8510-XT, ES9528-XTv2, ES7506, ES7510, ES7528, ES8508, ES8508F, ES8510, ES8510-XTE, ES9528/ES9528-XT (all versions) and ICRL-M-8RJ45/4SFP-G-DIN, ICRL-M-16RJ45/4CP-G-DIN FW 1.2.3 and below has an active TFTP-Service."
            }
          ],
          "metrics": [
            {
              "cvssV3_1": {
                "attackComplexity": "LOW",
                "attackVector": "NETWORK",
                "availabilityImpact": "HIGH",
                "baseScore": 9.8,
                "baseSeverity": "CRITICAL",
                "confidentialityImpact": "HIGH",
                "integrityImpact": "HIGH",
                "privilegesRequired": "NONE",
                "scope": "UNCHANGED",
                "userInteraction": "NONE",
                "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H",
                "version": "3.1"
              }
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "cweId": "CWE-912",
                  "description": "CWE-912 Hidden Functionality",
                  "lang": "en",
                  "type": "CWE"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2022-02-04T19:06:15.000Z",
            "orgId": "270ccfa6-a436-4e77-922e-914ec3a9685c",
            "shortName": "CERTVDE"
          },
          "references": [
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://cert.vde.com/de-de/advisories/vde-2020-040"
            },
            {
              "name": "20210601 SEC Consult SA-20210601-0 :: Multiple critical vulnerabilities in Korenix Technology JetNet Series",
              "tags": [
                "mailing-list",
                "x_refsource_FULLDISC"
              ],
              "url": "http://seclists.org/fulldisclosure/2021/Jun/0"
            },
            {
              "tags": [
                "x_refsource_MISC"
              ],
              "url": "http://packetstormsecurity.com/files/162903/Korenix-CSRF-Backdoor-Accounts-Command-Injection-Missing-Authentication.html"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://sec-consult.com/vulnerability-lab/advisory/multiple-critical-vulnerabilities-in-korenix-technology-westermo-pepperl-fuchs/"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://cert.vde.com/en-us/advisories/vde-2020-053"
            },
            {
              "tags": [
                "x_refsource_MISC"
              ],
              "url": "http://packetstormsecurity.com/files/165875/Korenix-Technology-JetWave-CSRF-Command-Injection-Missing-Authentication.html"
            }
          ],
          "solutions": [
            {
              "lang": "en",
              "value": "For ICRL-M-8RJ45/4SFP-G-DIN and ICRL-M-16RJ45/4CP-G-DIN:\nUpdate to Firmware 1.3.1 and deactivate TFTP-Service.\n\nFor all other devices:\nAn external protective measure is required.\n\n1) Traffic from untrusted networks to the device should be blocked by a firewall. Especially\ntraffic targeting the administration webpage.\n\n2) Administrator and user access should be protected by a secure password and only be\navailable to a very limited group of people."
            }
          ],
          "source": {
            "advisory": "VDE-2020-040",
            "discovery": "EXTERNAL"
          },
          "title": "Pepperl+Fuchs improper authorization affects multiple Comtrol RocketLinx products",
          "x_generator": {
            "engine": "Vulnogram 0.0.9"
          },
          "x_legacyV4Record": {
            "CVE_data_meta": {
              "ASSIGNER": "info@cert.vde.com",
              "DATE_PUBLIC": "2020-10-07T13:10:00.000Z",
              "ID": "CVE-2020-12504",
              "STATE": "PUBLIC",
              "TITLE": "Pepperl+Fuchs improper authorization affects multiple Comtrol RocketLinx products"
            },
            "affects": {
              "vendor": {
                "vendor_data": [
                  {
                    "product": {
                      "product_data": [
                        {
                          "product_name": "P+F Comtrol RocketLinx",
                          "version": {
                            "version_data": [
                              {
                                "version_affected": "=",
                                "version_name": "ES8509-XT, ES8510-XT, ES9528-XTv2, ES7506, ES7510, ES7528, ES8508, ES8508F,  ES8510-XTE, ES9528/ES9528-XT",
                                "version_value": "all"
                              },
                              {
                                "version_affected": "\u003c",
                                "version_name": "ES7510-XT",
                                "version_value": "2.1.1"
                              },
                              {
                                "version_affected": "\u003c",
                                "version_name": "ES8510",
                                "version_value": "3.1.1"
                              }
                            ]
                          }
                        },
                        {
                          "product_name": "P+F Comtrol RocketLinx",
                          "version": {
                            "version_data": [
                              {
                                "version_affected": "\u003c=",
                                "version_name": "ICRL-M-8RJ45/4SFP-G-DIN",
                                "version_value": "1.2.3"
                              },
                              {
                                "version_affected": "\u003c=",
                                "version_name": "ICRL-M-16RJ45/4CP-G-DIN",
                                "version_value": "1.2.3"
                              }
                            ]
                          }
                        }
                      ]
                    },
                    "vendor_name": "Pepperl+Fuchs"
                  },
                  {
                    "product": {
                      "product_data": [
                        {
                          "product_name": "JetNet",
                          "version": {
                            "version_data": [
                              {
                                "version_affected": "\u003c=",
                                "version_name": "5428G-20SFP",
                                "version_value": "V1.0"
                              },
                              {
                                "version_affected": "\u003c=",
                                "version_name": "5810G",
                                "version_value": "V1.1"
                              },
                              {
                                "version_affected": "\u003c=",
                                "version_name": "4706F",
                                "version_value": "V2.3b"
                              },
                              {
                                "version_affected": "\u003c=",
                                "version_name": "4510",
                                "version_value": "V3.0b"
                              },
                              {
                                "version_affected": "\u003c",
                                "version_name": "5310",
                                "version_value": "V1.6"
                              }
                            ]
                          }
                        }
                      ]
                    },
                    "vendor_name": "Korenix"
                  },
                  {
                    "product": {
                      "product_data": [
                        {
                          "product_name": "PMI-110-F2G",
                          "version": {
                            "version_data": [
                              {
                                "version_affected": "\u003c",
                                "version_value": "V1.8"
                              }
                            ]
                          }
                        }
                      ]
                    },
                    "vendor_name": "Westermo"
                  }
                ]
              }
            },
            "credit": [
              {
                "lang": "eng",
                "value": "T. Weber (SEC Consult Vulnerability Lab)"
              },
              {
                "lang": "eng",
                "value": "Coordinated by CERT@VDE"
              }
            ],
            "data_format": "MITRE",
            "data_type": "CVE",
            "data_version": "4.0",
            "description": {
              "description_data": [
                {
                  "lang": "eng",
                  "value": "Improper Authorization vulnerability of Pepperl+Fuchs P+F Comtrol RocketLinx ES7510-XT, ES8509-XT, ES8510-XT, ES9528-XTv2, ES7506, ES7510, ES7528, ES8508, ES8508F, ES8510, ES8510-XTE, ES9528/ES9528-XT (all versions) and ICRL-M-8RJ45/4SFP-G-DIN, ICRL-M-16RJ45/4CP-G-DIN FW 1.2.3 and below has an active TFTP-Service."
                }
              ]
            },
            "generator": {
              "engine": "Vulnogram 0.0.9"
            },
            "impact": {
              "cvss": {
                "attackComplexity": "LOW",
                "attackVector": "NETWORK",
                "availabilityImpact": "HIGH",
                "baseScore": 9.8,
                "baseSeverity": "CRITICAL",
                "confidentialityImpact": "HIGH",
                "integrityImpact": "HIGH",
                "privilegesRequired": "NONE",
                "scope": "UNCHANGED",
                "userInteraction": "NONE",
                "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H",
                "version": "3.1"
              }
            },
            "problemtype": {
              "problemtype_data": [
                {
                  "description": [
                    {
                      "lang": "eng",
                      "value": "CWE-912 Hidden Functionality"
                    }
                  ]
                }
              ]
            },
            "references": {
              "reference_data": [
                {
                  "name": "https://cert.vde.com/de-de/advisories/vde-2020-040",
                  "refsource": "CONFIRM",
                  "url": "https://cert.vde.com/de-de/advisories/vde-2020-040"
                },
                {
                  "name": "20210601 SEC Consult SA-20210601-0 :: Multiple critical vulnerabilities in Korenix Technology JetNet Series",
                  "refsource": "FULLDISC",
                  "url": "http://seclists.org/fulldisclosure/2021/Jun/0"
                },
                {
                  "name": "http://packetstormsecurity.com/files/162903/Korenix-CSRF-Backdoor-Accounts-Command-Injection-Missing-Authentication.html",
                  "refsource": "MISC",
                  "url": "http://packetstormsecurity.com/files/162903/Korenix-CSRF-Backdoor-Accounts-Command-Injection-Missing-Authentication.html"
                },
                {
                  "name": "https://sec-consult.com/vulnerability-lab/advisory/multiple-critical-vulnerabilities-in-korenix-technology-westermo-pepperl-fuchs/",
                  "refsource": "CONFIRM",
                  "url": "https://sec-consult.com/vulnerability-lab/advisory/multiple-critical-vulnerabilities-in-korenix-technology-westermo-pepperl-fuchs/"
                },
                {
                  "name": "https://cert.vde.com/en-us/advisories/vde-2020-053",
                  "refsource": "CONFIRM",
                  "url": "https://cert.vde.com/en-us/advisories/vde-2020-053"
                },
                {
                  "name": "http://packetstormsecurity.com/files/165875/Korenix-Technology-JetWave-CSRF-Command-Injection-Missing-Authentication.html",
                  "refsource": "MISC",
                  "url": "http://packetstormsecurity.com/files/165875/Korenix-Technology-JetWave-CSRF-Command-Injection-Missing-Authentication.html"
                }
              ]
            },
            "solution": [
              {
                "lang": "en",
                "value": "For ICRL-M-8RJ45/4SFP-G-DIN and ICRL-M-16RJ45/4CP-G-DIN:\nUpdate to Firmware 1.3.1 and deactivate TFTP-Service.\n\nFor all other devices:\nAn external protective measure is required.\n\n1) Traffic from untrusted networks to the device should be blocked by a firewall. Especially\ntraffic targeting the administration webpage.\n\n2) Administrator and user access should be protected by a secure password and only be\navailable to a very limited group of people."
              }
            ],
            "source": {
              "advisory": "VDE-2020-040",
              "discovery": "EXTERNAL"
            }
          }
        }
      },
      "cveMetadata": {
        "assignerOrgId": "270ccfa6-a436-4e77-922e-914ec3a9685c",
        "assignerShortName": "CERTVDE",
        "cveId": "CVE-2020-12504",
        "datePublished": "2020-10-15T18:42:59.041Z",
        "dateReserved": "2020-04-30T00:00:00.000Z",
        "dateUpdated": "2024-09-16T17:09:09.147Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.1"
    }