Plchandler
by Codesys
CVEs (3)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2022-31805 | Hig | 0.49 | 7.5 | 0.01 | Jun 24, 2022 | In the CODESYS Development System multiple components in multiple versions transmit the passwords for the communication between clients and servers unprotected. | ||
| CVE-2018-20026 | Hig | 0.49 | 7.5 | 0.03 | Feb 19, 2019 | Improper Communication Address Filtering exists in CODESYS V3 products versions prior V3.5.14.0. | ||
| CVE-2021-29242 | Hig | 0.48 | 7.3 | 0.01 | May 3, 2021 | CODESYS Control Runtime system before 3.5.17.0 has improper input validation. Attackers can send crafted communication packets to change the router's addressing scheme and may re-route, add, remove or change low level communication packages. |
- risk 0.49cvss 7.5epss 0.01
In the CODESYS Development System multiple components in multiple versions transmit the passwords for the communication between clients and servers unprotected.
- risk 0.49cvss 7.5epss 0.03
Improper Communication Address Filtering exists in CODESYS V3 products versions prior V3.5.14.0.
- risk 0.48cvss 7.3epss 0.01
CODESYS Control Runtime system before 3.5.17.0 has improper input validation. Attackers can send crafted communication packets to change the router's addressing scheme and may re-route, add, remove or change low level communication packages.