Codesys / Control for Raspberry PI
12 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2018-25048 | Codesys Runtime Improper Limitation of a Pathname | HIGH | 8.8 | Mar 23, 2023 |
| CVE-2020-12069 | CODESYS V3 prone to Inadequate Password Hashing | HIGH | 7.8 | Dec 26, 2022 |
| CVE-2020-15806 | CODESYS Control runtime system before 3.5.16.10 allows Uncontrolled Memory Allocation. | HIGH | 7.5 | Jul 22, 2020 |
| CVE-2020-12068 | An issue was discovered in CODESYS Development System before 3.5.16.0. CODESYS WebVisu and CODESYS Remote TargetVisu are susceptible to privilege escalation. | MEDIUM | 6.5 | May 14, 2020 |
| CVE-2020-10245 | CODESYS V3 web server before 3.5.15.40, as used in CODESYS Control runtime systems, has a buffer overflow. | CRITICAL | 9.8 | Mar 26, 2020 |
| CVE-2020-7052 | CODESYS Control V3, Gateway V3, and HMI V3 before 3.5.15.30 allow uncontrolled memory allocation which can result in a remote denial of service condition. | MEDIUM | 6.5 | Jan 24, 2020 |
| CVE-2019-18858 | CODESYS 3 web server before 3.5.15.20, as distributed with CODESYS Control runtime systems, has a Buffer Overflow. | CRITICAL | 9.8 | Nov 20, 2019 |
| CVE-2019-13542 | 3S-Smart Software Solutions GmbH CODESYS V3 OPC UA Server, all versions 3.5.11.0 to 3.5.15.0, allows an attacker to send crafted requests from a trusted OPC UA… | MEDIUM | 6.5 | Sep 17, 2019 |
| CVE-2019-9009 | An issue was discovered in 3S-Smart CODESYS before 3.5.15.0 . Crafted network packets cause the Control Runtime to crash. | HIGH | 7.5 | Sep 17, 2019 |
| CVE-2019-9008 | An issue was discovered in 3S-Smart CODESYS V3 through 3.5.12.30. A user with low privileges can take full control over the runtime. | HIGH | 8.8 | Sep 17, 2019 |
| CVE-2019-13548 | CODESYS V3 web server, all versions prior to 3.5.14.10, allows an attacker to send specially crafted http or https requests which could cause a stack overflow… | CRITICAL | 9.8 | Sep 13, 2019 |
| CVE-2019-13532 | CODESYS V3 web server, all versions prior to 3.5.14.10, allows an attacker to send specially crafted http or https requests which may allow access to files out… | HIGH | 7.5 | Sep 13, 2019 |
Showing 1 to 12 of 12 CVEs