Vendors3s-Softwarecodesys_runtime_systemall versions
Vulnerabilities

3s-Software CODESYS Runtime System

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

6CVEs
CVE-2012-6068
3S CoDeSys Improper Access Control
Published 2013-01-21 · Modified
10.0EPSS 0.053
CVE-2012-6069
3S CoDeSys Relative Path Traversal
Published 2013-01-21 · Modified
10.0EPSS 0.026
CVE-2018-5440
A Stack-based Buffer Overflow issue was discovered in 3S-Smart CODESYS Web Server. Specifically: all Microsoft Windows (also WinCE) based CODESYS web servers running stand-alone Version 2.3, or as part of the CODESYS runtime system running prior to Version V1.1.9.19. A crafted request may cause a buffer overflow and could therefore execute arbitrary code on the web server or lead to a denial-of-service condition due to a crash in the web server.
Published 2018-02-15 · Modified
9.8EPSS 0.031
CVE-2014-0760
Festo CECX-X-(C1/M1) Controller Improper Authentication
Published 2014-04-25 · Modified
9.3EPSS 0.033
CVE-2014-0769
Festo CECX-X-(C1/M1) Controller Improper Authentication
Published 2014-04-25 · Modified
9.3EPSS 0.023
CVE-2015-6482
Runtime Toolkit before 2.4.7.48 in 3S-Smart CODESYS before 2.3.9.48 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted request.
Published 2015-10-18 · Modified
5.0EPSS 0.021