Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

Festo — Vulnerabilities & Security Advisories 8

Browse all 8 CVE security advisories affecting Festo. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Festo specializes in automation and industrial control systems, serving manufacturing and process industries. Historically, its products have faced vulnerabilities including remote code execution, cross-site scripting, and privilege escalation, often stemming from inadequate input validation and default credentials. Security assessments reveal common issues in web interfaces and communication protocols. While no major public incidents have been widely documented, the 8 CVEs on record highlight persistent security concerns in industrial environments. Festo's systems, like many in the IoT space, require robust hardening to prevent unauthorized access and potential disruption to critical infrastructure.

CVE ID Title CVSS Severity Published
CVE-2023-3634 Festo: MSE6-C2M/D2M/E2M Incomplete User Documentation of Remote Accessible Functions — MSE6-C2M-5000-FB36-D-M-RG-BAR-M12L4-AGD CWE-1242 8.8 High 2026-04-16
CVE-2022-3079 Festo: CPX-CEC-C1 and CMXX, Missing Authentication for Critical Webpage Function — Control block CPX-CEC-C1 (no. 567347) CWE-269 7.5 High 2022-09-20
CVE-2022-30311 FESTO: CECC-X-M1 and Servo Press Kit YJKP OS Command Injection vulnerability — Controller CECC-X-M1 (4407603) CWE-863 9.8 Critical 2022-06-13
CVE-2022-30310 FESTO: CECC-X-M1 and Servo Press Kit YJKP OS Command Injection vulnerability — Controller CECC-X-M1 (4407603) CWE-863 9.8 Critical 2022-06-13
CVE-2022-30309 FESTO: CECC-X-M1 and Servo Press Kit YJKP OS Command Injection vulnerability — Controller CECC-X-M1 (4407603) CWE-863 9.8 Critical 2022-06-13
CVE-2022-30308 FESTO: CECC-X-M1 and Servo Press Kit YJKP OS Command Injection vulnerability — Controller CECC-X-M1 (4407603) CWE-863 9.8 Critical 2022-06-13
CVE-2014-0760 Festo CECX-X-(C1/M1) Controller Improper Authentication — CECX-X-C1 Modular Master Controller with CoDeSys CWE-287 9.8 - 2014-04-25
CVE-2014-0769 Festo CECX-X-(C1/M1) Controller Improper Authentication — CECX-X-C1 Modular Master Controller with CoDeSys CWE-287 7.5 - 2014-04-25

This page lists every published CVE security advisory associated with Festo. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.