Known vulnerabilities in CODESYS Control Win V3 (part of the CODESYS Development System setup)
Vendor:
CODESYS
Software CPE:
cpe:2.3:a:codesys:codesys_control_win_v3_part_of_the_codesys_development_system_setup:*:*:*:*:*:*:*:*
Website:
https://www.codesys.com/
Total vulnerabilities:
6
Public exploits:
0
Known exploited (KEV):
0
Highest CVSSv4 Score:
9.3
Breakdown by Severity Chart
Vulnerabilities (6)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU24801 - Resource exhaustion CVE-2020-7052 |
CWE-400 | Medium | 3.5.15.30 | 31.01.2020 |
SB2020013115 |
||
| #VU21103 - Stack-based buffer overflow CVE-2019-13548 |
CWE-121 | High | - | 13.09.2019 |
SB2019091304 SB2019121201 SB2020012916 and 2 more |
||
| #VU21102 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') CVE-2019-13532 |
CWE-22 | Medium | - | 13.09.2019 |
SB2019091304 SB2019121201 SB2020012916 and 2 more |
||
| #VU21100 - Incorrect Permission Assignment for Critical Resource CVE-2019-9008 |
CWE-732 | Medium | - | 13.09.2019 |
SB2019091303 |
||
| #VU21099 - NULL Pointer Dereference CVE-2019-13542 |
CWE-476 | Low | - | 13.09.2019 |
SB2019091304 SB2019121201 SB2020012916 and 2 more |
||
| #VU21098 - Resource Management Errors CVE-2019-9009 |
CWE-399 | Medium | - | 13.09.2019 |
SB2019091304 |