Vulnerability index

Browse CVEs

111 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Runtime HIGH 8.8
CVE-2020-6081

An exploitable code execution vulnerability exists in the PLC_Task functionality of 3S-Smart Software Solutions GmbH CODESYS Runtime 3.5.14.30. A spe…

No fix yet
Fix from $1,950 2020-05-07
Codesys HIGH 7.5
CVE-2019-5105

An exploitable memory corruption vulnerability exists in the Name Service Client functionality of 3S-Smart Software Solutions CODESYS GatewayService.…

No fix yet
Fix from $1,950 2020-03-26
Control For Beaglebone CRITICAL 9.8
CVE-2020-10245

CODESYS V3 web server before 3.5.15.40, as used in CODESYS Control runtime systems, has a buffer overflow.

Fix: 3.5.15.40+
Fix from $2,300 2020-03-26
Control For Beaglebone MEDIUM 6.5
CVE-2020-7052

CODESYS Control V3, Gateway V3, and HMI V3 before 3.5.15.30 allow uncontrolled memory allocation which can result in a remote denial of service condi…

Fix: 3.5.15.30+
Fix from $1,600 2020-01-24
Plcwinnt MEDIUM 6.5
CVE-2019-19789

3S-Smart CODESYS SP Realtime NT before V2.3.7.28, CODESYS Runtime Toolkit 32 bit full before V2.4.7.54, and CODESYS PLCWinNT before V2.4.7.54 allow a…

Fix: 2.3.7.28 / 2.4.7.54+
Fix from $1,600 2019-12-20
Control For Beaglebone CRITICAL 9.8
CVE-2019-18858

CODESYS 3 web server before 3.5.15.20, as distributed with CODESYS Control runtime systems, has a Buffer Overflow.

Fix: 3.5.15.20+
Fix from $2,300 2019-11-20
Eni Server CRITICAL 9.8
CVE-2019-16265

CODESYS V2.3 ENI server up to V3.2.2.24 has a Buffer Overflow.

Fix: 2.3.9.61 / 3.2.2.25+
Fix from $2,300 2019-10-25
Codesys HIGH 8.6
CVE-2019-13538

3S-Smart Software Solutions GmbH CODESYS V3 Library Manager, all versions prior to 3.5.16.0, allows the system to display active library content with…

Fix: 3.5.16.0+
Fix from $1,950 2019-09-17
Linux MEDIUM 6.5
CVE-2019-13542

3S-Smart Software Solutions GmbH CODESYS V3 OPC UA Server, all versions 3.5.11.0 to 3.5.15.0, allows an attacker to send crafted requests from a trus…

Fix: 3.5.15.0+
Fix from $1,600 2019-09-17
Linux HIGH 7.5
CVE-2019-9009

An issue was discovered in 3S-Smart CODESYS before 3.5.15.0 . Crafted network packets cause the Control Runtime to crash.

Fix: 3.5.15.0+
Fix from $1,950 2019-09-17
Control For Beaglebone HIGH 8.8
CVE-2019-9008

An issue was discovered in 3S-Smart CODESYS V3 through 3.5.12.30. A user with low privileges can take full control over the runtime.

Fix: 3.5.13.0+
Fix from $1,950 2019-09-17
Control For Beaglebone CRITICAL 9.8
CVE-2019-13548EPSS 6%

CODESYS V3 web server, all versions prior to 3.5.14.10, allows an attacker to send specially crafted http or https requests which could cause a stack…

Fix: 3.5.12.80 / 3.5.14.10+
Fix from $2,300 2019-09-13
Control For Beaglebone HIGH 7.5
CVE-2019-13532

CODESYS V3 web server, all versions prior to 3.5.14.10, allows an attacker to send specially crafted http or https requests which may allow access to…

Fix: 3.5.12.80 / 3.5.14.10+
Fix from $1,950 2019-09-13
Control For Beaglebone Sl CRITICAL 9.8
CVE-2019-9010

An issue was discovered in 3S-Smart CODESYS V3 products. The CODESYS Gateway does not correctly verify the ownership of a communication channel. All …

Fix: 3.5.14.20+
Fix from $2,300 2019-08-15
Control For Beaglebone Sl HIGH 7.5
CVE-2019-9012

An issue was discovered in 3S-Smart CODESYS V3 products. A crafted communication request may cause uncontrolled memory allocations in the affected CO…

Fix: 3.5.14.20+
Fix from $1,950 2019-08-15
Control For Beaglebone Sl HIGH 8.8
CVE-2019-9013

An issue was discovered in 3S-Smart CODESYS V3 products. The application may utilize non-TLS based encryption, which results in user credentials bein…

Fix: 3.5.16.0+
Fix from $1,950 2019-08-15
Control For Beaglebone Sl HIGH 7.5
CVE-2018-20025

Use of Insufficiently Random Values exists in CODESYS V3 products versions prior V3.5.14.0.

Fix: 3.5.14.0+
Fix from $1,950 2019-02-19
Control For Beaglebone Sl HIGH 7.5
CVE-2018-20026

Improper Communication Address Filtering exists in CODESYS V3 products versions prior V3.5.14.0.

Fix: 3.5.14.0+
Fix from $1,950 2019-02-19
Control For Beaglebone Sl CRITICAL 9.8
CVE-2018-10612

In 3S-Smart Software Solutions GmbH CODESYS Control V3 products prior to version 3.5.14.0, user access management and communication encryption is not…

Fix: 3.5.14.0+
Fix from $2,300 2019-01-29
Web Server CRITICAL 9.8
CVE-2017-6025

A Stack Buffer Overflow issue was discovered in 3S-Smart Software Solutions GmbH CODESYS Web Server. The following versions of CODESYS Web Server, pa…

Fix: after 2.3
Fix from $2,300 2017-05-19
Web Server CRITICAL 9.8
CVE-2017-6027

An Arbitrary File Upload issue was discovered in 3S-Smart Software Solutions GmbH CODESYS Web Server. The following versions of CODESYS Web Server, p…

Fix: after 2.3
Fix from $2,300 2017-05-19