Codesys / Hmi
30 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2023-37559 | CODESYS Improper Validation of Consistency within Input in multiple products | MEDIUM | 6.5 | Aug 3, 2023 |
| CVE-2023-37558 | CODESYS Improper Validation of Consistency within Input in multiple products | MEDIUM | 6.5 | Aug 3, 2023 |
| CVE-2023-37557 | CODESYS Heap-based Buffer Overflow in multiple products | MEDIUM | 6.5 | Aug 3, 2023 |
| CVE-2023-37556 | CODESYS Improper Input Validation in CmpAppBP | MEDIUM | 6.5 | Aug 3, 2023 |
| CVE-2023-37555 | CODESYS Improper Input Validation in CmpAppBP | MEDIUM | 6.5 | Aug 3, 2023 |
| CVE-2023-37554 | CODESYS Improper Input Validation in CmpAppBP | MEDIUM | 6.5 | Aug 3, 2023 |
| CVE-2023-37553 | CODESYS Improper Input Validation in CmpAppBP | MEDIUM | 6.5 | Aug 3, 2023 |
| CVE-2023-37552 | CODESYS Improper Input Validation in CmpAppBP | MEDIUM | 6.5 | Aug 3, 2023 |
| CVE-2023-37551 | CODESYS Files or Directories Accessible to External Parties in CmpApp | MEDIUM | 6.5 | Aug 3, 2023 |
| CVE-2023-37550 | CODESYS: Improper Input Validation in CmpApp component | MEDIUM | 6.5 | Aug 3, 2023 |
| CVE-2023-37549 | CODESYS: Improper Input Validation in CmpApp component | MEDIUM | 6.5 | Aug 3, 2023 |
| CVE-2023-37548 | CODESYS: Improper Input Validation in CmpApp component | MEDIUM | 6.5 | Aug 3, 2023 |
| CVE-2023-37547 | CODESYS: Improper Input Validation in CmpApp component | MEDIUM | 6.5 | Aug 3, 2023 |
| CVE-2023-37546 | CODESYS: Improper Input Validation in CmpApp component | MEDIUM | 6.5 | Aug 3, 2023 |
| CVE-2023-37545 | CODESYS: Improper Input Validation in CmpApp component | MEDIUM | 6.5 | Aug 3, 2023 |
| CVE-2018-25048 | Codesys Runtime Improper Limitation of a Pathname | HIGH | 8.8 | Mar 23, 2023 |
| CVE-2022-30792 | CODESYS: CmpChannelServer, CmpChannelServerEmbedded allow unauthenticated attackers to block all their available communication channels | HIGH | 7.5 | Jul 11, 2022 |
| CVE-2022-30791 | CODESYS V3: CmpBlkDrvTcp allows unauthenticated attackers to block all its available TCP connections | HIGH | 7.5 | Jul 11, 2022 |
| CVE-2021-36763 | In CODESYS V3 web server before 3.5.17.10, files or directories are accessible to External Parties. | HIGH | 7.5 | Aug 3, 2021 |
| CVE-2021-33485 | CODESYS Control Runtime system before 3.5.17.10 has a Heap-based Buffer Overflow. | CRITICAL | 9.8 | Aug 3, 2021 |
| CVE-2021-29242 | CODESYS Control Runtime system before 3.5.17.0 has improper input validation. Attackers can send crafted communication packets to change the router's addressin… | HIGH | 7.3 | May 3, 2021 |
| CVE-2020-15806 | CODESYS Control runtime system before 3.5.16.10 allows Uncontrolled Memory Allocation. | HIGH | 7.5 | Jul 22, 2020 |
| CVE-2020-12068 | An issue was discovered in CODESYS Development System before 3.5.16.0. CODESYS WebVisu and CODESYS Remote TargetVisu are susceptible to privilege escalation. | MEDIUM | 6.5 | May 14, 2020 |
| CVE-2020-10245 | CODESYS V3 web server before 3.5.15.40, as used in CODESYS Control runtime systems, has a buffer overflow. | CRITICAL | 9.8 | Mar 26, 2020 |
| CVE-2020-7052 | CODESYS Control V3, Gateway V3, and HMI V3 before 3.5.15.30 allow uncontrolled memory allocation which can result in a remote denial of service condition. | MEDIUM | 6.5 | Jan 24, 2020 |
Showing 1 to 25 of 30 CVEs