Back

HIGH

Codesys Runtime Improper Limitation of a Pathname

Published Mar 23, 2023

Description

The CODESYS runtime system in multiple versions allows an remote low privileged attacker to use a path traversal vulnerability to access and modify all system files as well as DoS the device.

Affected products

Remediation

No remediation recorded yet.

Metrics

Weaknesses (1)

References (1)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner CERTVDE
Published Mar 23, 2023
Updated Feb 19, 2025
Reserved Dec 7, 2022
CISA Vulnrichment
Updated Feb 19, 2025
NVD
Status Modified
Modified Jun 17, 2026
Red Hat
Severity n/a
Public date n/a