CVE-2022-31805
24.06.2022, 08:15
In the CODESYS Development System multiple components in multiple versions transmit the passwords for the communication between clients and servers unprotected.Enginsight
Vendor | Product | Version |
---|---|---|
codesys | development_system | 𝑥 < 2.3.9.69 |
codesys | edge_gateway | 𝑥 < 3.5.18.30 |
codesys | gateway | 𝑥 < 2.3.9.38 |
codesys | hmi_sl | 𝑥 < 3.5.18.30 |
codesys | opc_server | 𝑥 < 3.5.18.30 |
codesys | plchandler | 𝑥 < 3.5.18.30 |
codesys | plcwinnt | 𝑥 < 2.4.7.57 |
codesys | runtime_toolkit | 𝑥 < 2.4.7.57 |
codesys | sp_realtime_nt | 𝑥 < 2.3.7.30 |
codesys | web_server | 𝑥 < 1.1.9.23 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration