Codesys
Codesys Development System V3: vulnerabilidades y CVE
Codesys Development System V3 tiene 19 vulnerabilidades publicadas, 0 de ellas en los últimos 12 meses. 1 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE19
Últimos 12 meses0
Críticas1
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2022-47393 | Media (6.5) | 0.97% | — | 15 may 2023 | An authenticated, remote attacker may use a Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in multiple versions of multiple CODESYS products to force a denial-of-service situation. |
| CVE-2022-47392 | Media (6.5) | 0.85% | — | 15 may 2023 | An authenticated, remote attacker may use a improper input validation vulnerability in the CmpApp/CmpAppBP/CmpAppForce Components of multiple CODESYS products in multiple versions to read from an invalid address which… |
| CVE-2022-4048 | Alta (7.7) | 0.08% | — | 15 may 2023 | Inadequate Encryption Strength in CODESYS Development System V3 versions prior to V3.5.18.40 allows an unauthenticated local attacker to access and manipulate code of the encrypted boot application. |
| CVE-2022-47391 | Alta (7.5) | 1.9% | — | 15 may 2023 | In multiple CODESYS products in multiple versions an unauthorized, remote attacker may use a improper input validation vulnerability to read from invalid addresses leading to a denial of service. |
| CVE-2022-47390 | Alta (8.8) | 1.3% | — | 15 may 2023 | An authenticated, remote attacker may use a stack based out-of-bounds write vulnerability in the CmpTraceMgr Component of multiple CODESYS products in multiple versions to write data into the stack which can lead to a… |
| CVE-2022-47389 | Alta (8.8) | 1.3% | — | 15 may 2023 | An authenticated, remote attacker may use a stack based out-of-bounds write vulnerability in the CmpTraceMgr Component of multiple CODESYS products in multiple versions to write data into the stack which can lead to a… |
| CVE-2022-47388 | Alta (8.8) | 1.3% | — | 15 may 2023 | An authenticated, remote attacker may use a stack based out-of-bounds write vulnerability in the CmpTraceMgr Component of multiple CODESYS products in multiple versions to write data into the stack which can lead to a… |
| CVE-2022-47387 | Alta (8.8) | 1.3% | — | 15 may 2023 | An authenticated remote attacker may use a stack based out-of-bounds write vulnerability in the CmpTraceMgr Component of multiple CODESYS products in multiple versions to write data into the stack which can lead to a… |
| CVE-2022-47386 | Alta (8.8) | 1.4% | — | 15 may 2023 | An authenticated, remote attacker may use a stack based out-of-bounds write vulnerability in the CmpTraceMgr Component of multiple CODESYS products in multiple versions to write data into the stack which can lead to a… |
| CVE-2022-47385 | Alta (8.8) | 1.4% | — | 15 may 2023 | An authenticated, remote attacker may use a stack based out-of-bounds write vulnerability in the CmpAppForce Component of multiple CODESYS products in multiple versions to write data into the stack which can lead to a… |
| CVE-2022-47384 | Alta (8.8) | 1.3% | — | 15 may 2023 | An authenticated remote attacker may use a stack based out-of-bounds write vulnerability in the CmpTraceMgr Component of multiple CODESYS products in multiple versions to write data into the stack which can lead to a… |
| CVE-2022-47383 | Alta (8.8) | 1.3% | — | 15 may 2023 | An authenticated, remote attacker may use a stack based out-of-bounds write vulnerability in the CmpTraceMgr Component of multiple CODESYS products in multiple versions to write data into the stack which can lead to a… |
| CVE-2022-47382 | Alta (8.8) | 1.3% | — | 15 may 2023 | An authenticated remote attacker may use a stack based out-of-bounds write vulnerability in the CmpTraceMgr Component of multiple CODESYS products in multiple versions to write data into the stack which can lead to a… |
| CVE-2022-47381 | Alta (8.8) | 1.3% | — | 15 may 2023 | An authenticated remote attacker may use a stack based out-of-bounds write vulnerability in multiple CODESYS products in multiple versions to write data into the stack which can lead to a denial-of-service condition,… |
| CVE-2022-47380 | Alta (8.8) | 1.3% | — | 15 may 2023 | An authenticated remote attacker may use a stack based out-of-bounds write vulnerability in multiple CODESYS products in multiple versions to write data into the stack which can lead to a denial-of-service condition,… |
| CVE-2022-47379 | Alta (8.8) | 2.0% | — | 15 may 2023 | An authenticated, remote attacker may use a out-of-bounds write vulnerability in multiple CODESYS products in multiple versions to write data into memory which can lead to a denial-of-service condition, memory… |
| CVE-2022-47378 | Media (6.5) | 0.91% | — | 15 may 2023 | Multiple CODESYS products in multiple versions are prone to a improper input validation vulnerability. An authenticated remote attacker may craft specific requests that use the vulnerability leading to a… |
| CVE-2018-20026 | Alta (7.5) | 3.0% | — | 19 feb 2019 | Improper Communication Address Filtering exists in CODESYS V3 products versions prior V3.5.14.0. |
| CVE-2018-10612 | Crítica (9.8) | 1.3% | — | 29 ene 2019 | In 3S-Smart Software Solutions GmbH CODESYS Control V3 products prior to version 3.5.14.0, user access management and communication encryption is not enabled by default, which could allow an attacker access to the… |
Otros productos de Codesys
Control FOR Pfc100 SL · 52Control FOR Linux SL · 52Control FOR Pfc200 SL · 52Control FOR Iot2000 SL · 52Control Runtime System Toolkit · 52Control FOR Raspberry PI SL · 51Control FOR Beaglebone SL · 50Control FOR Empc-a/imx6 SL · 49Development System · 44Control FOR Wago Touch Panels 600 SL · 43Control FOR Plcnext SL · 42Control RTE SL · 30