Control Win

Codesys · 14 CVEs

CVE-2018-25048
HIGH

Codesys Runtime Improper Limitation of a Pathname

Mar 23, 2023

CVE-2022-30792
HIGH

CODESYS: CmpChannelServer, CmpChannelServerEmbedded allow unauthenticated attackers to block all their available commun…

Jul 11, 2022

CVE-2022-30791
HIGH

CODESYS V3: CmpBlkDrvTcp allows unauthenticated attackers to block all its available TCP connections

Jul 11, 2022

CVE-2021-29242
HIGH

CODESYS Control Runtime system before 3.5.17.0 has improper input validation. Attackers can send crafted communication…

May 3, 2021

CVE-2020-15806
HIGH

CODESYS Control runtime system before 3.5.16.10 allows Uncontrolled Memory Allocation.

Jul 22, 2020

CVE-2020-12068
MEDIUM

An issue was discovered in CODESYS Development System before 3.5.16.0. CODESYS WebVisu and CODESYS Remote TargetVisu ar…

May 14, 2020

CVE-2020-10245
CRITICAL

CODESYS V3 web server before 3.5.15.40, as used in CODESYS Control runtime systems, has a buffer overflow.

Mar 26, 2020

CVE-2020-7052
MEDIUM

CODESYS Control V3, Gateway V3, and HMI V3 before 3.5.15.30 allow uncontrolled memory allocation which can result in a…

Jan 24, 2020

CVE-2019-18858
CRITICAL

CODESYS 3 web server before 3.5.15.20, as distributed with CODESYS Control runtime systems, has a Buffer Overflow.

Nov 20, 2019

CVE-2019-13542
MEDIUM

3S-Smart Software Solutions GmbH CODESYS V3 OPC UA Server, all versions 3.5.11.0 to 3.5.15.0, allows an attacker to sen…

Sep 17, 2019

CVE-2019-9009
HIGH

An issue was discovered in 3S-Smart CODESYS before 3.5.15.0 . Crafted network packets cause the Control Runtime to cras…

Sep 17, 2019

CVE-2019-9008
HIGH

An issue was discovered in 3S-Smart CODESYS V3 through 3.5.12.30. A user with low privileges can take full control over…

Sep 17, 2019

CVE-2019-13548
CRITICAL

CODESYS V3 web server, all versions prior to 3.5.14.10, allows an attacker to send specially crafted http or https requ…

Sep 13, 2019

CVE-2019-13532
HIGH

CODESYS V3 web server, all versions prior to 3.5.14.10, allows an attacker to send specially crafted http or https requ…

Sep 13, 2019

Showing 1 to 14 of 14 CVEs