CVE-2023-37552
- EPSS 0.08%
- Veröffentlicht 03.08.2023 12:15:10
- Zuletzt bearbeitet 21.11.2024 08:11:55
In multiple versions of multiple Codesys products, after successful authentication as a user, specific crafted network communication requests with inconsistent content can cause the CmpAppBP component to read internally from an invalid address, poten...
CVE-2023-37551
- EPSS 0.06%
- Veröffentlicht 03.08.2023 12:15:10
- Zuletzt bearbeitet 21.11.2024 08:11:55
In multiple Codesys products in multiple versions, after successful authentication as a user, specially crafted network communication requests can utilize the CmpApp component to download files with any file extensions to the controller. In contrast ...
CVE-2023-37550
- EPSS 0.08%
- Veröffentlicht 03.08.2023 12:15:10
- Zuletzt bearbeitet 21.11.2024 08:11:55
In multiple Codesys products in multiple versions, after successful authentication as a user, specific crafted network communication requests with inconsistent content can cause the CmpApp component to read internally from an invalid address, potenti...
CVE-2023-37549
- EPSS 0.08%
- Veröffentlicht 03.08.2023 12:15:10
- Zuletzt bearbeitet 21.11.2024 08:11:55
In multiple Codesys products in multiple versions, after successful authentication as a user, specific crafted network communication requests with inconsistent content can cause the CmpApp component to read internally from an invalid address, potenti...
CVE-2023-37547
- EPSS 0.08%
- Veröffentlicht 03.08.2023 12:15:09
- Zuletzt bearbeitet 21.11.2024 08:11:54
In multiple Codesys products in multiple versions, after successful authentication as a user, specific crafted network communication requests with inconsistent content can cause the CmpApp component to read internally from an invalid address, potenti...
CVE-2023-37548
- EPSS 0.08%
- Veröffentlicht 03.08.2023 12:15:09
- Zuletzt bearbeitet 21.11.2024 08:11:54
In multiple Codesys products in multiple versions, after successful authentication as a user, specific crafted network communication requests with inconsistent content can cause the CmpApp component to read internally from an invalid address, potenti...
CVE-2023-37546
- EPSS 0.08%
- Veröffentlicht 03.08.2023 12:15:09
- Zuletzt bearbeitet 21.11.2024 08:11:54
In multiple Codesys products in multiple versions, after successful authentication as a user, specific crafted network communication requests with inconsistent content can cause the CmpApp component to read internally from an invalid address, potenti...
CVE-2023-37545
- EPSS 0.08%
- Veröffentlicht 03.08.2023 11:15:09
- Zuletzt bearbeitet 21.11.2024 08:11:54
In multiple Codesys products in multiple versions, after successful authentication as a user, specific crafted network communication requests with inconsistent content can cause the CmpApp component to read internally from an invalid address, potenti...
CVE-2022-4224
- EPSS 0.6%
- Veröffentlicht 23.03.2023 12:15:12
- Zuletzt bearbeitet 21.11.2024 07:34:49
In multiple products of CODESYS v3 in multiple versions a remote low privileged user could utilize this vulnerability to read and modify system files and OS resources or DoS the device.
- EPSS 0.54%
- Veröffentlicht 11.07.2022 11:15:08
- Zuletzt bearbeitet 21.11.2024 07:03:23
In CmpChannelServer of CODESYS V3 in multiple versions an uncontrolled ressource consumption allows an unauthorized attacker to block new communication channel connections. Existing connections are not affected.