Improper Security Check in CODESYS V2 Web-Server Software by CODESYS Group
CVE-2021-30192

9.8CRITICAL

Key Information:

Vendor

Codesys

Vendor
CVE Published:
25 May 2021

What is CVE-2021-30192?

CODESYS V2 Web-Server versions earlier than 1.1.9.20 are impacted by a flaw due to an improperly implemented security check. This vulnerability can potentially allow unauthorized access, putting sensitive data at risk. It highlights the importance of applying security updates to mitigate exploitation risks effectively. Users should upgrade to the latest version to enhance their security posture.

References

CVSS V3.1

Score:
9.8
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.