CVE-2019-9008

An issue was discovered in 3S-Smart CODESYS V3 through 3.5.12.30. A user with low privileges can take full control over the runtime.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
8.8 HIGH
NETWORK
LOW
LOW
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
mitreCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 75%
VendorProductVersion
codesyscontrol_for_beaglebone
𝑥
< 3.5.13.0
codesyscontrol_for_empc-a\/imx6
𝑥
< 3.5.13.0
codesyscontrol_for_iot2000
𝑥
< 3.5.13.0
codesyscontrol_for_pfc100
𝑥
< 3.5.13.0
codesyscontrol_for_pfc200
𝑥
< 3.5.13.0
codesyscontrol_for_raspberry_pi
𝑥
< 3.5.13.0
codesyscontrol_rte
𝑥
< 3.5.13.0
codesyscontrol_win
𝑥
< 3.5.13.0
codesyshmi
𝑥
< 3.5.13.0
codesyssimulation_runtime
𝑥
< 3.5.13.0
𝑥
= Vulnerable software versions