VendorsCODESYSsimulation_runtimeall versions
Vulnerabilities

CODESYS Simulation Runtime

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

6CVEs
CVE-2019-9008
An issue was discovered in 3S-Smart CODESYS V3 through 3.5.12.30. A user with low privileges can take full control over the runtime.
Published 2019-09-17 · Modified
8.8EPSS 0.019
CVE-2018-25048
Codesys Runtime Improper Limitation of a Pathname
Published 2023-03-23 · Modified
8.8EPSS 0.010
CVE-2020-15806
CODESYS Control runtime system before 3.5.16.10 allows Uncontrolled Memory Allocation.
Published 2020-07-22 · Modified
7.5EPSS 0.020
CVE-2019-9009
An issue was discovered in 3S-Smart CODESYS before 3.5.15.0 . Crafted network packets cause the Control Runtime to crash.
Published 2019-09-17 · Modified
7.5EPSS 0.017
CVE-2021-29242
CODESYS Control Runtime system before 3.5.17.0 has improper input validation. Attackers can send crafted communication packets to change the router's addressing scheme and may re-route, add, remove or change low level communication packages.
Published 2021-05-03 · Modified
7.5EPSS 0.011
CVE-2020-7052
CODESYS Control V3, Gateway V3, and HMI V3 before 3.5.15.30 allow uncontrolled memory allocation which can result in a remote denial of service condition.
Published 2020-01-24 · Modified
6.5EPSS 0.019