Buffer Overflow Vulnerability in CODESYS Control Runtime Systems by CODESYS
CVE-2019-18858

9.8CRITICAL

Key Information:

Vendor

Codesys

Vendor
CVE Published:
20 November 2019

What is CVE-2019-18858?

The vulnerability allows a buffer overflow in the CODESYS 3 web server prior to version 3.5.15.20, which can disrupt system operations and compromise the integrity of the control runtime systems. This issue is critical for users who run versions susceptible to this flaw, as it can lead to unauthorized access or manipulation of data.

References

CVSS V3.1

Score:
9.8
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.