7.8
CVE-2021-29240
- EPSS 0.26%
- Veröffentlicht 04.05.2021 12:15:16
- Zuletzt bearbeitet 21.11.2024 06:00:51
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
The Package Manager of CODESYS Development System 3 before 3.5.17.0 does not check the validity of packages before installation and may be used to install CODESYS packages with malicious content.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Codesys ≫ Development System Version >= 3.0 < 3.5.17.0
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.26% | 0.491 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 7.8 | 1.8 | 5.9 |
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
|
| nvd@nist.gov | 6.8 | 8.6 | 6.4 |
AV:N/AC:M/Au:N/C:P/I:P/A:P
|