CVE-2022-32142
24.06.2022, 08:15
Multiple CODESYS Products are prone to a out-of bounds read or write access. A low privileged remote attacker may craft a request with invalid offset, which can cause an out-of-bounds read or write access, resulting in denial-of-service condition or local memory overwrite, which can lead to a change of local files. User interaction is not required.Enginsight
Vendor | Product | Version |
---|---|---|
codesys | plcwinnt | 2.0 ≤ 𝑥 < 2.4.7.57 |
codesys | runtime_toolkit | 2.0 ≤ 𝑥 < 2.4.7.57 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration