Vulnerability index

Browse CVEs

12 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Codesys Runtime System CRITICAL 9.8
CVE-2018-5440

A Stack-based Buffer Overflow issue was discovered in 3S-Smart CODESYS Web Server. Specifically: all Microsoft Windows (also WinCE) based CODESYS web…

Fix: 1.1.9.19+
Fix from $2,300 2018-02-15
Codesys Runtime System MEDIUM 5.0
CVE-2015-6482

Runtime Toolkit before 2.4.7.48 in 3S-Smart CODESYS before 2.3.9.48 allows remote attackers to cause a denial of service (NULL pointer dereference an…

Fix: after 2.3.9.47
Fix from $1,600 2015-10-18
Codesys Runtime System HIGH 9.3
CVE-2014-0760

The Festo CECX-X-C1 Modular Master Controller with CoDeSys and CECX-X-M1 Modular Controller with CoDeSys and SoftMotion provide an undocumented acc…

Mitigation only
Fix from $1,950 2014-04-25
Codesys Runtime Toolkit MEDIUM 5.0
CVE-2014-0757

Smart Software Solutions (3S) CoDeSys Runtime Toolkit before 2.4.7.44 allows remote attackers to cause a denial of service (NULL pointer dereference …

Fix: after 2.4.7.43
Fix from $1,600 2014-01-31
Codesys Gateway Server HIGH 10.0
CVE-2013-2781

Use-after-free vulnerability in the server application in 3S CODESYS Gateway 2.3.9.27 allows remote attackers to cause a denial of service (daemon cr…

Mitigation only
Fix from $1,950 2013-05-23
Codesys Gateway Server HIGH 10.0
CVE-2012-4704

Array index error in 3S CODESYS Gateway-Server before 2.3.9.27 allows remote attackers to execute arbitrary code via a crafted packet.

Fix: after 2.3.9.20
Fix from $1,950 2013-02-24
Codesys Gateway Server HIGH 10.0
CVE-2012-4705EPSS 66%

Directory traversal vulnerability in 3S CODESYS Gateway-Server before 2.3.9.27 allows remote attackers to execute arbitrary code via vectors involvin…

Fix: after 2.3.9.20
Fix from $1,950 2013-02-24
Codesys Gateway Server HIGH 10.0
CVE-2012-4707

3S CODESYS Gateway-Server before 2.3.9.27 allows remote attackers to execute arbitrary code via vectors that trigger an out-of-bounds memory access.

Fix: after 2.3.9.19
Fix from $1,950 2013-02-24
Codesys Gateway Server HIGH 10.0
CVE-2012-4708EPSS 7%

Stack-based buffer overflow in 3S CODESYS Gateway-Server before 2.3.9.27 allows remote attackers to execute arbitrary code via a crafted packet.

Fix: after 2.3.9.20
Fix from $1,950 2013-02-24
Codesys Gateway Server HIGH 7.8
CVE-2012-4706

Integer signedness error in 3S CODESYS Gateway-Server before 2.3.9.27 allows remote attackers to cause a denial of service via a crafted packet that …

Fix: after 2.3.9.20
Fix from $1,950 2013-02-24
Codesys Runtime System CRITICAL 10.0
CVE-2012-6069

The CoDeSys Runtime Toolkit’s file transfer functionality does not perform input validation, which allows an attacker to access files and directori…

Mitigation only
Fix from $2,300 2013-01-21
Codesys Runtime System CRITICAL 9.8
CVE-2012-6068EPSS 5%

The Runtime Toolkit in CODESYS Runtime System 2.3.x and 2.4.x does not require authentication, which allows remote attackers to execute commands via …

Mitigation only
Fix from $2,300 2013-01-21