CODESYS Runtime System prone to heap based buffer overflow
CVE-2022-32137
8.8HIGH
What is CVE-2022-32137?
In multiple CODESYS products, a low privileged remote attacker may craft a request, which may cause a heap-based buffer overflow, resulting in a denial-of-service condition or memory overwrite. User interaction is not required.
Affected Version(s)
PLCWinNT V2
Runtime Toolkit 32 bit V2