Vulnerabilities > Codesys > WEB Server

DATE CVE VULNERABILITY TITLE RISK
2022-06-24 CVE-2022-31805 Unprotected Transport of Credentials vulnerability in Codesys products
In the CODESYS Development System multiple components in multiple versions transmit the passwords for the communication between clients and servers unprotected.
network
low complexity
codesys CWE-523
7.5
2017-05-19 CVE-2017-6027 Unrestricted Upload of File with Dangerous Type vulnerability in Codesys web Server 2.3
An Arbitrary File Upload issue was discovered in 3S-Smart Software Solutions GmbH CODESYS Web Server.
network
low complexity
codesys CWE-434
critical
9.8
2017-05-19 CVE-2017-6025 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Codesys web Server 2.3
A Stack Buffer Overflow issue was discovered in 3S-Smart Software Solutions GmbH CODESYS Web Server.
network
low complexity
codesys CWE-119
critical
9.8