Записи CODESYS
137 опубликованных записей вендора codesys.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 3
- С записью об исправлении
- 34,3 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Повторяющиеся классы
- CWE-787 Out-of-bounds Write21
- CWE-20 Improper Input Validation18
- CWE-476 NULL Pointer Dereference8
- CWE-502 Deserialization of Untrusted Data8
- CWE-125 Out-of-bounds Read4
- CWE-120 Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')4
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
137 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
41В плане | CVE-2019-13548Эксплойта нет | CODESYS V3 web server, all versions prior to 3.5.14.10, allows an attacker to send specially crafted http or https requests which could causcodesys · control for beaglebone · CWE-121 | Критическая9,8 | — | 5,8 % | 13 сент. 2019 г. |
40В плане | CVE-2017-6027Эксплойта нет | An Arbitrary File Upload issue was discovered in 3S-Smart Software Solutions GmbH CODESYS Web Server.codesys · web server · CWE-434 | Критическая9,8 | — | 2,6 % | 18 мая 2017 г. |
40В плане | CVE-2020-10245Эксплойта нет | CODESYS V3 web server before 3.5.15.40, as used in CODESYS Control runtime systems, has a buffer overflow.codesys · control for beaglebone · CWE-787 | Критическая9,8 | — | 2,5 % | 26 мар. 2020 г. |
40В плане | CVE-2017-6025Эксплойта нет | A Stack Buffer Overflow issue was discovered in 3S-Smart Software Solutions GmbH CODESYS Web Server.codesys · web server · CWE-121 | Критическая9,8 | — | 2,0 % | 18 мая 2017 г. |
40В плане | CVE-2019-18858Эксплойта нет | CODESYS 3 web server before 3.5.15.20, as distributed with CODESYS Control runtime systems, has a Buffer Overflow.codesys · control for beaglebone · CWE-120 | Критическая9,8 | — | 1,9 % | 20 нояб. 2019 г. |
40В плане | CVE-2019-9010Эксплойта нет | An issue was discovered in 3S-Smart CODESYS V3 products.codesys · control for beaglebone sl | Критическая9,8 | — | 1,9 % | 15 авг. 2019 г. |
39Наблюдать | CVE-2019-16265Эксплойта нет | CODESYS V2.3 ENI server up to V3.2.2.24 has a Buffer Overflow.codesys · eni server · CWE-787 | Критическая9,8 | — | 1,6 % | 25 окт. 2019 г. |
39Наблюдать | CVE-2021-30190Эксплойта нет | CODESYS V2 Web-Server before 1.1.9.20 has Improper Access Control.codesys · v2 web server · CWE-306 | Критическая9,8 | — | 1,4 % | 25 мая 2021 г. |
39Наблюдать | CVE-2022-31802Эксплойта нет | Partial string comparison in CODESYS gateway servercodesys · gateway · CWE-187 | Критическая9,8 | — | 1,3 % | 24 июн. 2022 г. |
39Наблюдать | CVE-2021-30188Эксплойта нет | CODESYS V2 runtime system SP before 2.4.7.55 has a Stack-based Buffer Overflow.codesys · v2 runtime system sp · CWE-787 | Критическая9,8 | — | 1,3 % | 25 мая 2021 г. |
39Наблюдать | CVE-2021-30189Эксплойта нет | CODESYS V2 Web-Server before 1.1.9.20 has a Stack-based Buffer Overflow.codesys · v2 web server · CWE-787 | Критическая9,8 | — | 1,3 % | 25 мая 2021 г. |
39Наблюдать | CVE-2018-10612Эксплойта нет | In 3S-Smart Software Solutions GmbH CODESYS Control V3 products prior to version 3.5.14.0, user access management and communication encrypticodesys · control for beaglebone sl · CWE-284 | Критическая9,8 | — | 1,3 % | 29 янв. 2019 г. |
39Наблюдать | CVE-2022-31806Эксплойта нет | Insecure default settings in CODESYS Runtime Toolkit 32 bit full and CODESYS PLCWinNTcodesys · plcwinnt · CWE-1188 | Критическая9,8 | — | 1,2 % | 24 июн. 2022 г. |
39Наблюдать | CVE-2021-30193Эксплойта нет | CODESYS V2 Web-Server before 1.1.9.20 has an Out-of-bounds Write.codesys · v2 web server · CWE-787 | Критическая9,8 | — | 1,2 % | 25 мая 2021 г. |
39Наблюдать | CVE-2021-30192Эксплойта нет | CODESYS V2 Web-Server before 1.1.9.20 has an Improperly Implemented Security Check.codesys · v2 web server | Критическая9,8 | — | 1,2 % | 25 мая 2021 г. |
39Наблюдать | CVE-2021-33485Эксплойта нет | CODESYS Control Runtime system before 3.5.17.10 has a Heap-based Buffer Overflow.codesys · control · CWE-787 | Критическая9,8 | — | 1,1 % | 3 авг. 2021 г. |
36Наблюдать | CVE-2022-47379Эксплойта нет | CODESYS: Multiple products prone to out-of-bounds writecodesys · control for beaglebone sl · CWE-787 | Высокая8,8 | — | 2,0 % | 15 мая 2023 г. |
36Наблюдать | CVE-2019-9008Эксплойта нет | An issue was discovered in 3S-Smart CODESYS V3 through 3.5.12.30.codesys · control for beaglebone · CWE-732 | Высокая8,8 | — | 1,9 % | 17 сент. 2019 г. |
36Наблюдать | CVE-2020-6081Эксплойта нет | An exploitable code execution vulnerability exists in the PLC_Task functionality of 3S-Smart Software Solutions GmbH CODESYS Runtime 3.5.14.codesys · runtime · CWE-345 | Высокая8,8 | — | 1,8 % | 7 мая 2020 г. |
36Наблюдать | CVE-2021-30194Эксплойта нет | CODESYS V2 Web-Server before 1.1.9.20 has an Out-of-bounds Read.codesys · v2 web server · CWE-125 | Критическая9,1 | — | 1,2 % | 25 мая 2021 г. |
36Наблюдать | CVE-2021-34584Эксплойта нет | CODESYS V2 web server: crafted requests could trigger a buffer over-read (DoS)wago · 750-823 firmware · CWE-126 | Критическая9,1 | — | 1,1 % | 26 окт. 2021 г. |
35Наблюдать | CVE-2022-32137Эксплойта нет | CODESYS Runtime System prone to heap based buffer overflowcodesys · plcwinnt · CWE-122 | Высокая8,8 | — | 1,4 % | 24 июн. 2022 г. |
35Наблюдать | CVE-2022-47385Эксплойта нет | CODESYS: Multiple products prone to stack based out-of-bounds writecodesys · control for beaglebone sl · CWE-787 | Высокая8,8 | — | 1,4 % | 15 мая 2023 г. |
35Наблюдать | CVE-2022-47386Эксплойта нет | CODESYS: Multiple products prone to stack based out-of-bounds writecodesys · control for beaglebone sl · CWE-787 | Высокая8,8 | — | 1,4 % | 15 мая 2023 г. |
35Наблюдать | CVE-2022-47380Эксплойта нет | CODESYS: Multiple products prone to out-of-bounds writecodesys · control for beaglebone sl · CWE-787 | Высокая8,8 | — | 1,3 % | 15 мая 2023 г. |
- CVE-2019-1354841В плане
CODESYS V3 web server, all versions prior to 3.5.14.10, allows an attacker to send specially crafted http or https requests which could caus
КритическаяCVSS 9,8Эксплойта нетEPSS 6 %codesys · control for beaglebone13 сент. 2019 г.
- CVE-2017-602740В плане
An Arbitrary File Upload issue was discovered in 3S-Smart Software Solutions GmbH CODESYS Web Server.
КритическаяCVSS 9,8Эксплойта нетEPSS 3 %codesys · web server18 мая 2017 г.
- CVE-2020-1024540В плане
CODESYS V3 web server before 3.5.15.40, as used in CODESYS Control runtime systems, has a buffer overflow.
КритическаяCVSS 9,8Эксплойта нетEPSS 3 %codesys · control for beaglebone26 мар. 2020 г.
- CVE-2017-602540В плане
A Stack Buffer Overflow issue was discovered in 3S-Smart Software Solutions GmbH CODESYS Web Server.
КритическаяCVSS 9,8Эксплойта нетEPSS 2 %codesys · web server18 мая 2017 г.
- CVE-2019-1885840В плане
CODESYS 3 web server before 3.5.15.20, as distributed with CODESYS Control runtime systems, has a Buffer Overflow.
КритическаяCVSS 9,8Эксплойта нетEPSS 2 %codesys · control for beaglebone20 нояб. 2019 г.
- CVE-2019-901040В плане
An issue was discovered in 3S-Smart CODESYS V3 products.
КритическаяCVSS 9,8Эксплойта нетEPSS 2 %codesys · control for beaglebone sl15 авг. 2019 г.
- CVE-2019-1626539Наблюдать
CODESYS V2.3 ENI server up to V3.2.2.24 has a Buffer Overflow.
КритическаяCVSS 9,8Эксплойта нетEPSS 2 %codesys · eni server25 окт. 2019 г.
- CVE-2021-3019039Наблюдать
CODESYS V2 Web-Server before 1.1.9.20 has Improper Access Control.
КритическаяCVSS 9,8Эксплойта нетEPSS 1 %codesys · v2 web server25 мая 2021 г.
- CVE-2022-3180239Наблюдать
Partial string comparison in CODESYS gateway server
КритическаяCVSS 9,8Эксплойта нетEPSS 1 %codesys · gateway24 июн. 2022 г.
- CVE-2021-3018839Наблюдать
CODESYS V2 runtime system SP before 2.4.7.55 has a Stack-based Buffer Overflow.
КритическаяCVSS 9,8Эксплойта нетEPSS 1 %codesys · v2 runtime system sp25 мая 2021 г.
- CVE-2021-3018939Наблюдать
CODESYS V2 Web-Server before 1.1.9.20 has a Stack-based Buffer Overflow.
КритическаяCVSS 9,8Эксплойта нетEPSS 1 %codesys · v2 web server25 мая 2021 г.
- CVE-2018-1061239Наблюдать
In 3S-Smart Software Solutions GmbH CODESYS Control V3 products prior to version 3.5.14.0, user access management and communication encrypti
КритическаяCVSS 9,8Эксплойта нетEPSS 1 %codesys · control for beaglebone sl29 янв. 2019 г.
- CVE-2022-3180639Наблюдать
Insecure default settings in CODESYS Runtime Toolkit 32 bit full and CODESYS PLCWinNT
КритическаяCVSS 9,8Эксплойта нетEPSS 1 %codesys · plcwinnt24 июн. 2022 г.
- CVE-2021-3019339Наблюдать
CODESYS V2 Web-Server before 1.1.9.20 has an Out-of-bounds Write.
КритическаяCVSS 9,8Эксплойта нетEPSS 1 %codesys · v2 web server25 мая 2021 г.
- CVE-2021-3019239Наблюдать
CODESYS V2 Web-Server before 1.1.9.20 has an Improperly Implemented Security Check.
КритическаяCVSS 9,8Эксплойта нетEPSS 1 %codesys · v2 web server25 мая 2021 г.
- CVE-2021-3348539Наблюдать
CODESYS Control Runtime system before 3.5.17.10 has a Heap-based Buffer Overflow.
КритическаяCVSS 9,8Эксплойта нетEPSS 1 %codesys · control3 авг. 2021 г.
- CVE-2022-4737936Наблюдать
CODESYS: Multiple products prone to out-of-bounds write
ВысокаяCVSS 8,8Эксплойта нетEPSS 2 %codesys · control for beaglebone sl15 мая 2023 г.
- CVE-2019-900836Наблюдать
An issue was discovered in 3S-Smart CODESYS V3 through 3.5.12.30.
ВысокаяCVSS 8,8Эксплойта нетEPSS 2 %codesys · control for beaglebone17 сент. 2019 г.
- CVE-2020-608136Наблюдать
An exploitable code execution vulnerability exists in the PLC_Task functionality of 3S-Smart Software Solutions GmbH CODESYS Runtime 3.5.14.
ВысокаяCVSS 8,8Эксплойта нетEPSS 2 %codesys · runtime7 мая 2020 г.
- CVE-2021-3019436Наблюдать
CODESYS V2 Web-Server before 1.1.9.20 has an Out-of-bounds Read.
КритическаяCVSS 9,1Эксплойта нетEPSS 1 %codesys · v2 web server25 мая 2021 г.
- CVE-2021-3458436Наблюдать
CODESYS V2 web server: crafted requests could trigger a buffer over-read (DoS)
КритическаяCVSS 9,1Эксплойта нетEPSS 1 %wago · 750-823 firmware26 окт. 2021 г.
- CVE-2022-3213735Наблюдать
CODESYS Runtime System prone to heap based buffer overflow
ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %codesys · plcwinnt24 июн. 2022 г.
- CVE-2022-4738535Наблюдать
CODESYS: Multiple products prone to stack based out-of-bounds write
ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %codesys · control for beaglebone sl15 мая 2023 г.
- CVE-2022-4738635Наблюдать
CODESYS: Multiple products prone to stack based out-of-bounds write
ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %codesys · control for beaglebone sl15 мая 2023 г.
- CVE-2022-4738035Наблюдать
CODESYS: Multiple products prone to out-of-bounds write
ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %codesys · control for beaglebone sl15 мая 2023 г.