VYPR
Critical severity9.8NVD Advisory· Published Dec 19, 2019· Updated Jun 17, 2026

CVE-2019-16871

CVE-2019-16871

Description

Beckhoff Embedded Windows PLCs through 3.1.4024.0, and Beckhoff Twincat on Windows Engineering stations, allow an attacker to achieve Remote Code Execution (as SYSTEM) via the Beckhoff ADS protocol.

Affected products

7
  • Beckhoff/Twincat5 versions
    cpe:2.3:a:beckhoff:twincat:*:*:*:*:*:*:*:*+ 4 more
    • cpe:2.3:a:beckhoff:twincat:*:*:*:*:*:*:*:*range: >=3.0,<3.1
    • cpe:2.3:a:beckhoff:twincat:2.0:*:*:*:*:*:*:*
    • cpe:2.3:a:beckhoff:twincat:3.1:build_4022:*:*:*:*:*:*
    • cpe:2.3:a:beckhoff:twincat:3.1:build_4024.0:*:*:*:*:*:*
    • (no CPE)
  • Beckhoff/Embedded Windows PLCsdescription
  • Range: <=3.1.4024.0

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.