Vulnerabilities > Codesys > Runtime System Toolkit
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2023-03-23 | CVE-2018-25048 | Path Traversal vulnerability in Codesys products The CODESYS runtime system in multiple versions allows an remote low privileged attacker to use a path traversal vulnerability to access and modify all system files as well as DoS the device. | 8.8 |
2019-09-17 | CVE-2019-13542 | NULL Pointer Dereference vulnerability in Codesys products 3S-Smart Software Solutions GmbH CODESYS V3 OPC UA Server, all versions 3.5.11.0 to 3.5.15.0, allows an attacker to send crafted requests from a trusted OPC UA client that cause a NULL pointer dereference, which may trigger a denial-of-service condition. | 6.5 |
2019-09-17 | CVE-2019-9009 | Improper Handling of Exceptional Conditions vulnerability in Codesys products An issue was discovered in 3S-Smart CODESYS before 3.5.15.0 . | 7.5 |