QID 591219
Date Published: 2022-12-05
QID 591219: 3S-Smart CODESYS GmbH v2 Multiple Vulnerabilities (Advisory 2021-15 Version: 4.0)
Multiple vulnerabilities were discovered in 3S-Smart CodeSYS V2.
Affected Versions:
versions prior to V1.1.9.22
QID Detection Logic:
The QID checks for App Paths\CODESYS.exe in HKLM in the windows registry to check the vulnerable version of the product.
On successful exploitation, a crafted web server requests may cause invalid memory accesses to crash the CODESYS web server or may read stack or heap memory.
Solution
The vendor has released a patch version , for more information kindly visit Advisory 2022-02 V6.0
Vendor References
- Advisory 2021-15 Version: 4.0 -
customers.codesys.com/index.php?eID=dumpFile&t=f&f=16876&token=a3f1d937f95e7034879f4f2ea8e5a99b168256a7&download=
CVEs related to QID 591219
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| Advisory 2021-15 Version: 4.0 |
|