Heap-based Buffer Overflow Vulnerability in 3S-Smart CODESYS Gateway Server
CVE-2015-6460

Currently unrated

Key Information:

Vendor

Codesys

Vendor
CVE Published:
18 September 2015

What is CVE-2015-6460?

Multiple heap-based buffer overflows found in the 3S-Smart CODESYS Gateway Server prior to version 2.3.9.34 can be exploited by remote attackers to execute arbitrary code. This vulnerability arises from improper handling of specific opcodes, notably 0x3ef and 0x3f0, which may lead to unauthorized access and control over affected systems.

Affected Version(s)

3S-Smart CODESYS Gateway Server V2 < 2.3.9.34

References

EPSS Score

12% chance of being exploited in the next 30 days.

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.