Vulnerabilities > CVE-2022-32138 - Unexpected Sign Extension vulnerability in Codesys Plcwinnt and Runtime Toolkit
Attack vector
NETWORK Attack complexity
LOW Privileges required
LOW Confidentiality impact
HIGH Integrity impact
HIGH Availability impact
HIGH Summary
In multiple CODESYS products, a remote attacker may craft a request which may cause an unexpected sign extension, resulting in a denial-of-service condition or memory overwrite.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 2 |