6.5

CVE-2020-12068

An issue was discovered in CODESYS Development System before 3.5.16.0. CODESYS WebVisu and CODESYS Remote TargetVisu are susceptible to privilege escalation.

Data is provided by the National Vulnerability Database (NVD)
CodesysControl For Beaglebone Version < 3.5.16.0
CodesysControl For Empc-a/imx6 Version < 3.5.16.0
CodesysControl For Iot2000 Version < 3.5.16.0
CodesysControl For Pfc100 Version < 3.5.16.0
CodesysControl For Pfc200 Version < 3.5.16.0
CodesysControl For Plcnext Version < 3.5.16.0
CodesysControl For Raspberry Pi Version < 3.5.16.0
CodesysControl Rte Version >= 3.0 < 3.5.16.0
CodesysControl Runtime System Toolkit Version >= 3.0 < 3.5.16.0
CodesysControl Win Version >= 3.0 < 3.5.16.0
CodesysDevelopment System Version < 3.5.16.0
CodesysHmi Version >= 3.0 < 3.5.16.0
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.24% 0.473
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 6.5 3.9 2.5
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N
nvd@nist.gov 6.4 10 4.9
AV:N/AC:L/Au:N/C:P/I:P/A:N