QID 590753
Date Published: 2022-03-21
QID 590753: 3s-Smart CodeSys Gmbh Privilege Escalation Vulnerability (Advisory2020-04)
Vulnerability Type: Improper Privilege Management.
AFFECTED PRODUCTS
The following versions of Codesys Gmbh Webserver software tools are affected:
JT2Go: All versions prior to v13.2.0.5
CodeSys Gmbh all V3 versions prior to V3.5.16.0
QID Detection Logic (Authenticated):
QID checks for the Vulnerable version using windows registry keys.
Successful remote exploitation of these vulnerabilities could lead the privilege escalation.
Solution
Customers are advised to refer to CERT MITIGATIONS section Advisory2020-04 for affected packages and patching details.
Vendor References
CVEs related to QID 590753
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| Advisory2020-04 |
|