Vulnerabilities > Codesys

DATE CVE VULNERABILITY TITLE RISK
2019-08-15 CVE-2019-9010 Unspecified vulnerability in Codesys products
An issue was discovered in 3S-Smart CODESYS V3 products.
network
low complexity
codesys
critical
9.8
2019-08-15 CVE-2019-9013 Use of a Broken or Risky Cryptographic Algorithm vulnerability in Codesys products
An issue was discovered in 3S-Smart CODESYS V3 products.
low complexity
codesys CWE-327
8.8
2019-02-19 CVE-2018-20026 Unspecified vulnerability in Codesys products
Improper Communication Address Filtering exists in CODESYS V3 products versions prior V3.5.14.0.
network
low complexity
codesys
7.5
2019-02-19 CVE-2018-20025 Use of Insufficiently Random Values vulnerability in Codesys products
Use of Insufficiently Random Values exists in CODESYS V3 products versions prior V3.5.14.0.
network
low complexity
codesys CWE-330
7.5
2019-01-29 CVE-2018-10612 Incorrect Permission Assignment for Critical Resource vulnerability in Codesys products
In 3S-Smart Software Solutions GmbH CODESYS Control V3 products prior to version 3.5.14.0, user access management and communication encryption is not enabled by default, which could allow an attacker access to the device and sensitive information, including user credentials.
network
low complexity
codesys CWE-732
critical
9.8
2017-05-19 CVE-2017-6027 Unrestricted Upload of File with Dangerous Type vulnerability in Codesys web Server 2.3
An Arbitrary File Upload issue was discovered in 3S-Smart Software Solutions GmbH CODESYS Web Server.
network
low complexity
codesys CWE-434
critical
9.8
2017-05-19 CVE-2017-6025 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Codesys web Server 2.3
A Stack Buffer Overflow issue was discovered in 3S-Smart Software Solutions GmbH CODESYS Web Server.
network
low complexity
codesys CWE-119
critical
9.8