Remote Target Visu Toolkit

Codesys · 16 CVEs

CVE-2018-25048
HIGH

Codesys Runtime Improper Limitation of a Pathname

Mar 23, 2023

CVE-2022-30792
HIGH

CODESYS: CmpChannelServer, CmpChannelServerEmbedded allow unauthenticated attackers to block all their available commun…

Jul 11, 2022

CVE-2022-30791
HIGH

CODESYS V3: CmpBlkDrvTcp allows unauthenticated attackers to block all its available TCP connections

Jul 11, 2022

CVE-2022-22519
HIGH

Special HTTP(s) Requests can cause a buffer-read causing a crash of the webserver and the runtime system.

Apr 7, 2022

CVE-2022-22517
HIGH

Communication Components in multiple CODESYS products vulnerable to communication channel disruption

Apr 7, 2022

CVE-2022-22515
HIGH

A component of the CODESYS Control runtime system allows read and write access to configuration files

Apr 7, 2022

CVE-2022-22514
HIGH

Untrusted Pointer Dereference in multiple CODESYS products can lead to a DoS.

Apr 7, 2022

CVE-2022-22513
MEDIUM

Null Pointer Dereference in multiple CODESYS products can lead to a DoS.

Apr 7, 2022

CVE-2021-36763
HIGH

In CODESYS V3 web server before 3.5.17.10, files or directories are accessible to External Parties.

Aug 3, 2021

CVE-2021-33485
CRITICAL

CODESYS Control Runtime system before 3.5.17.10 has a Heap-based Buffer Overflow.

Aug 3, 2021

CVE-2021-29242
HIGH

CODESYS Control Runtime system before 3.5.17.0 has improper input validation. Attackers can send crafted communication…

May 3, 2021

CVE-2020-15806
HIGH

CODESYS Control runtime system before 3.5.16.10 allows Uncontrolled Memory Allocation.

Jul 22, 2020

CVE-2020-10245
CRITICAL

CODESYS V3 web server before 3.5.15.40, as used in CODESYS Control runtime systems, has a buffer overflow.

Mar 26, 2020

CVE-2019-18858
CRITICAL

CODESYS 3 web server before 3.5.15.20, as distributed with CODESYS Control runtime systems, has a Buffer Overflow.

Nov 20, 2019

CVE-2019-13548
CRITICAL

CODESYS V3 web server, all versions prior to 3.5.14.10, allows an attacker to send specially crafted http or https requ…

Sep 13, 2019

CVE-2019-13532
HIGH

CODESYS V3 web server, all versions prior to 3.5.14.10, allows an attacker to send specially crafted http or https requ…

Sep 13, 2019

Showing 1 to 16 of 16 CVEs