Vulnerability index

Browse CVEs

111 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Development System HIGH 7.0
CVE-2026-44469

The affected product extracts installation files to a temporary directory with incorrect default permissions during administrative installation. A lo…

Fix: 3.5.22.20+
Fix from $1,950 2026-05-26
Development System HIGH 7.8
CVE-2026-44468

The affected product creates a directory with insecure default permissions during administrative installation. This allows a low-privileged local att…

Fix: 3.5.22.20+
Fix from $1,950 2026-05-26
Visualization MEDIUM 6.5
CVE-2026-0393

The affected product may expose credentials remotely between low privileged visualization users during concurrent login operations due to insufficien…

Fix: 4.10.0.0+
Fix from $1,600 2026-05-21
Control For Beaglebone Sl HIGH 7.5
CVE-2025-41738

An unauthenticated remote attacker may cause the visualisation server of the CODESYS Control runtime system to access a resource with a pointer of wr…

Fix: 4.19.0.0+
Fix from $1,950 2025-12-01
Codesys HIGH 7.8
CVE-2025-41700

An unauthenticated attacker can trick a local user into executing arbitrary code by opening a deliberately manipulated CODESYS project file with a CO…

Fix: 3.5.21.40+
Fix from $1,950 2025-12-01
Control For Beaglebone Sl HIGH 8.8
CVE-2023-6357

A low-privileged remote attacker could exploit the vulnerability and inject additional system commands via file system libraries which could give the…

Fix: 4.11.0.0+
Fix from $1,950 2023-12-05
Control For Beaglebone Sl HIGH 8.8
CVE-2022-4046

In CODESYS Control in multiple versions a improper restriction of operations within the bounds of a memory buffer allow an remote attacker with user …

Mitigation only
Fix from $1,950 2023-08-03
Control For Beaglebone Sl MEDIUM 6.5
CVE-2023-37549

In multiple Codesys products in multiple versions, after successful authentication as a user, specific crafted network communication requests with in…

Fix: 4.10.0.0+
Fix from $1,600 2023-08-03
Control For Beaglebone Sl MEDIUM 6.5
CVE-2023-37550

In multiple Codesys products in multiple versions, after successful authentication as a user, specific crafted network communication requests with in…

Fix: 4.10.0.0+
Fix from $1,600 2023-08-03
Control For Beaglebone Sl MEDIUM 6.5
CVE-2023-37551

In multiple Codesys products in multiple versions, after successful authentication as a user, specially crafted network communication requests can ut…

Fix: 4.10.0.0+
Fix from $1,600 2023-08-03
Control For Beaglebone Sl MEDIUM 6.5
CVE-2023-37552

In multiple versions of multiple Codesys products, after successful authentication as a user, specific crafted network communication requests with in…

Fix: 4.10.0.0+
Fix from $1,600 2023-08-03
Control For Beaglebone Sl MEDIUM 6.5
CVE-2023-37553

In multiple versions of multiple Codesys products, after successful authentication as a user, specific crafted network communication requests with in…

Fix: 4.10.0.0+
Fix from $1,600 2023-08-03
Control For Beaglebone Sl MEDIUM 6.5
CVE-2023-37554

In multiple versions of multiple Codesys products, after successful authentication as a user, specific crafted network communication requests with in…

Fix: 4.10.0.0+
Fix from $1,600 2023-08-03
Control For Beaglebone Sl MEDIUM 6.5
CVE-2023-37555

In multiple versions of multiple Codesys products, after successful authentication as a user, specific crafted network communication requests with in…

Fix: 4.10.0.0+
Fix from $1,600 2023-08-03
Control For Beaglebone Sl MEDIUM 6.5
CVE-2023-37556

In multiple versions of multiple Codesys products, after successful authentication as a user, specific crafted network communication requests with in…

Fix: 4.10.0.0+
Fix from $1,600 2023-08-03
Control For Beaglebone Sl MEDIUM 6.5
CVE-2023-37557

After successful authentication as a user in multiple Codesys products in multiple versions, specific crafted remote communication requests can cause…

Fix: 4.10.0.0+
Fix from $1,600 2023-08-03
Control For Beaglebone Sl MEDIUM 6.5
CVE-2023-37558

After successful authentication as a user in multiple Codesys products in multiple versions, specific crafted network communication requests with inc…

Fix: 4.10.0.0+
Fix from $1,600 2023-08-03
Control For Beaglebone Sl MEDIUM 6.5
CVE-2023-37559

After successful authentication as a user in multiple Codesys products in multiple versions, specific crafted network communication requests with inc…

Fix: 4.10.0.0+
Fix from $1,600 2023-08-03
Control For Beaglebone Sl MEDIUM 6.5
CVE-2023-37546

In multiple Codesys products in multiple versions, after successful authentication as a user, specific crafted network communication requests with in…

Fix: 4.10.0.0+
Fix from $1,600 2023-08-03
Control For Beaglebone Sl MEDIUM 6.5
CVE-2023-37547

In multiple Codesys products in multiple versions, after successful authentication as a user, specific crafted network communication requests with in…

Fix: 4.10.0.0+
Fix from $1,600 2023-08-03
Control For Beaglebone Sl MEDIUM 6.5
CVE-2023-37548

In multiple Codesys products in multiple versions, after successful authentication as a user, specific crafted network communication requests with in…

Fix: 4.10.0.0+
Fix from $1,600 2023-08-03
Development System HIGH 8.8
CVE-2023-3663

In CODESYS Development System versions from 3.5.11.20 and before 3.5.19.20 a missing integrity check might allow an unauthenticated remote attacker t…

Fix: 3.5.19.20+
Fix from $1,950 2023-08-03
Development System HIGH 7.3
CVE-2023-3662

In CODESYS Development System versions from 3.5.17.0 and prior to 3.5.19.20 a vulnerability allows for execution of binaries from the current working…

Fix: 3.5.19.20+
Fix from $1,950 2023-08-03
Control For Beaglebone Sl MEDIUM 6.5
CVE-2023-37545

In multiple Codesys products in multiple versions, after successful authentication as a user, specific crafted network communication requests with in…

Fix: 4.10.0.0+
Fix from $1,600 2023-08-03
Development System HIGH 7.3
CVE-2023-3670

In CODESYS Development System 3.5.9.0 to 3.5.17.0 and CODESYS Scripting 4.0.0.0 to 4.1.0.0 unsafe directory permissions would allow an attacker with …

Fix: 3.5.17.0 / 4.1.0.0+
Fix from $1,950 2023-07-28
Control For Beaglebone Sl MEDIUM 6.5
CVE-2022-47392

An authenticated, remote attacker may use a improper input validation vulnerability in the CmpApp/CmpAppBP/CmpAppForce Components of multiple CODESYS…

Fix: 4.8.0.0+
Fix from $1,600 2023-05-15
Control For Beaglebone Sl MEDIUM 6.5
CVE-2022-47393

An authenticated, remote attacker may use a Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in multiple version…

Fix: 4.8.0.0+
Fix from $1,600 2023-05-15
Control For Beaglebone Sl HIGH 8.8
CVE-2022-47387

An authenticated remote attacker may use a stack based out-of-bounds write vulnerability in the CmpTraceMgr Component of multiple CODESYS products in…

Fix: 4.8.0.0+
Fix from $1,950 2023-05-15
Control For Beaglebone Sl HIGH 8.8
CVE-2022-47388

An authenticated, remote attacker may use a stack based out-of-bounds write vulnerability in the CmpTraceMgr Component of multiple CODESYS products i…

Fix: 4.8.0.0+
Fix from $1,950 2023-05-15
Control For Beaglebone Sl HIGH 8.8
CVE-2022-47389

An authenticated, remote attacker may use a stack based out-of-bounds write vulnerability in the CmpTraceMgr Component of multiple CODESYS products i…

Fix: 4.8.0.0+
Fix from $1,950 2023-05-15