An issue was discovered in 3S-Smart CODESYS V3 through 3.5.12.30. A user with low privileges can take full control over the runtime.
2019-09-17T14:15:10.890
2024-11-21T04:50:48.050
Modified
CVSSv3.1: 8.8 (HIGH)
AV:N/AC:L/Au:S/C:P/I:P/A:P
8.0
6.4
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | codesys | control_for_beaglebone | < 3.5.13.0 | Yes |
Application | codesys | control_for_empc-a\/imx6 | < 3.5.13.0 | Yes |
Application | codesys | control_for_iot2000 | < 3.5.13.0 | Yes |
Application | codesys | control_for_pfc100 | < 3.5.13.0 | Yes |
Application | codesys | control_for_pfc200 | < 3.5.13.0 | Yes |
Application | codesys | control_for_raspberry_pi | < 3.5.13.0 | Yes |
Application | codesys | control_rte | < 3.5.13.0 | Yes |
Application | codesys | control_win | < 3.5.13.0 | Yes |
Application | codesys | hmi | < 3.5.13.0 | Yes |
Application | codesys | simulation_runtime | < 3.5.13.0 | Yes |