Vulnerabilities
Vulnerable Software
Codesys:  Security Vulnerabilities
In CODESYS V2 PLCWinNT and Runtime Toolkit 32 in versions prior to V2.4.7.57 password protection is not enabled by default and there is no information or prompt to enable password protection at login in case no password is set at the controller.
CVSS Score
9.8
EPSS Score
0.011
Published
2022-06-24
In multiple CODESYS products, a low privileged remote attacker may craft a request that cause a read access to an uninitialized pointer, resulting in a denial-of-service. User interaction is not required.
CVSS Score
6.5
EPSS Score
0.009
Published
2022-06-24
In multiple CODESYS products, a low privileged remote attacker may craft a request, which may cause a heap-based buffer overflow, resulting in a denial-of-service condition or memory overwrite. User interaction is not required.
CVSS Score
8.8
EPSS Score
0.012
Published
2022-06-24
In multiple CODESYS products, a remote attacker may craft a request which may cause an unexpected sign extension, resulting in a denial-of-service condition or memory overwrite.
CVSS Score
8.8
EPSS Score
0.01
Published
2022-06-24
In multiple CODESYS products, a low privileged remote attacker may craft a request, which cause an out-of-bounds read, resulting in a denial-of-service condition. User Interaction is not required.
CVSS Score
6.5
EPSS Score
0.009
Published
2022-06-24
Multiple CODESYS products are affected to a buffer overflow.A low privileged remote attacker may craft a request, which can cause a buffer copy without checking the size of the service, resulting in a denial-of-service condition. User Interaction is not required.
CVSS Score
6.5
EPSS Score
0.009
Published
2022-06-24
An authenticated remote attacker can cause a null pointer dereference in the CmpSettings component of the affected CODESYS products which leads to a crash.
CVSS Score
6.5
EPSS Score
0.01
Published
2022-04-07
An authenticated, remote attacker can gain access to a dereferenced pointer contained in a request. The accesses can subsequently lead to local overwriting of memory in the CmpTraceMgr, whereby the attacker can neither gain the values read internally nor control the values to be written. If invalid memory is accessed, this results in a crash.
CVSS Score
7.1
EPSS Score
0.008
Published
2022-04-07
A remote, authenticated attacker could utilize the control program of the CODESYS Control runtime system to use the vulnerability in order to read and modify the configuration file(s) of the affected products.
CVSS Score
8.1
EPSS Score
0.01
Published
2022-04-07
The SysDrv3S driver in the CODESYS Control runtime system on Microsoft Windows allows any system user to read and write within restricted memory space.
CVSS Score
7.8
EPSS Score
0.003
Published
2022-04-07


Contact Us

Shodan ® - All rights reserved