Codesys / Control Win SL
31 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2025-41738 | CODESYS Control - Invalid type usage in visualization | HIGH | 7.5 | Dec 1, 2025 |
| CVE-2023-5751 | CODESYS: Development system prone to DoS through exposure of resource to wrong sphere | HIGH | 7.8 | Jun 4, 2024 |
| CVE-2022-4046 | CODESYS: Improper memory restrictions fro CODESYS Control | HIGH | 8.8 | Aug 3, 2023 |
| CVE-2023-37559 | CODESYS Improper Validation of Consistency within Input in multiple products | MEDIUM | 6.5 | Aug 3, 2023 |
| CVE-2023-37558 | CODESYS Improper Validation of Consistency within Input in multiple products | MEDIUM | 6.5 | Aug 3, 2023 |
| CVE-2023-37557 | CODESYS Heap-based Buffer Overflow in multiple products | MEDIUM | 6.5 | Aug 3, 2023 |
| CVE-2023-37556 | CODESYS Improper Input Validation in CmpAppBP | MEDIUM | 6.5 | Aug 3, 2023 |
| CVE-2023-37555 | CODESYS Improper Input Validation in CmpAppBP | MEDIUM | 6.5 | Aug 3, 2023 |
| CVE-2023-37554 | CODESYS Improper Input Validation in CmpAppBP | MEDIUM | 6.5 | Aug 3, 2023 |
| CVE-2023-37553 | CODESYS Improper Input Validation in CmpAppBP | MEDIUM | 6.5 | Aug 3, 2023 |
| CVE-2023-37552 | CODESYS Improper Input Validation in CmpAppBP | MEDIUM | 6.5 | Aug 3, 2023 |
| CVE-2023-37551 | CODESYS Files or Directories Accessible to External Parties in CmpApp | MEDIUM | 6.5 | Aug 3, 2023 |
| CVE-2023-37550 | CODESYS: Improper Input Validation in CmpApp component | MEDIUM | 6.5 | Aug 3, 2023 |
| CVE-2023-37549 | CODESYS: Improper Input Validation in CmpApp component | MEDIUM | 6.5 | Aug 3, 2023 |
| CVE-2023-37548 | CODESYS: Improper Input Validation in CmpApp component | MEDIUM | 6.5 | Aug 3, 2023 |
| CVE-2023-37547 | CODESYS: Improper Input Validation in CmpApp component | MEDIUM | 6.5 | Aug 3, 2023 |
| CVE-2023-37546 | CODESYS: Improper Input Validation in CmpApp component | MEDIUM | 6.5 | Aug 3, 2023 |
| CVE-2023-37545 | CODESYS: Improper Input Validation in CmpApp component | MEDIUM | 6.5 | Aug 3, 2023 |
| CVE-2022-4224 | CODESYS: Exposure of Resource to Wrong Sphere in CODESYS V3 | HIGH | 8.8 | Mar 23, 2023 |
| CVE-2022-22519 | Special HTTP(s) Requests can cause a buffer-read causing a crash of the webserver and the runtime system. | HIGH | 7.5 | Apr 7, 2022 |
| CVE-2022-22517 | Communication Components in multiple CODESYS products vulnerable to communication channel disruption | HIGH | 7.5 | Apr 7, 2022 |
| CVE-2022-22516 | CODESYS driver SysDrv3S allows SYSTEM users on Microsoft Windows to read and write in restricted memory space. | HIGH | 7.8 | Apr 7, 2022 |
| CVE-2022-22515 | A component of the CODESYS Control runtime system allows read and write access to configuration files | HIGH | 8.1 | Apr 7, 2022 |
| CVE-2022-22514 | Untrusted Pointer Dereference in multiple CODESYS products can lead to a DoS. | HIGH | 7.1 | Apr 7, 2022 |
| CVE-2022-22513 | Null Pointer Dereference in multiple CODESYS products can lead to a DoS. | MEDIUM | 6.5 | Apr 7, 2022 |
Showing 1 to 25 of 31 CVEs