QID 591345
QID 591345: CODESYS V3 Multiple Vulnerabilities (Advisory2022-15_CDS-82335)
The implementation of the CODESYS boot application encryption based on the CODESYS Runtime Key or Wibu-Systems CodeMeter dongle/ flash card uses weak cryptography.
Multiple vulnerabilities were discovered in 3S-Smart CodeSYS V3.
Affected Versions:
versions V3 prior to V3.5.18.40
QID Detection Logic:
The QID checks for App Paths\CODESYS.exe in HKLM in the windows registry to check the vulnerable version of the product.
Successful exploitation of this vulnerability affects confidentiality and integrity.
Solution
The vendor has released a patch version , for more information kindly visit Advisory2022-15_CDS-82335
Vendor References
CVEs related to QID 591345
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| Advisory2022-15_CDS-82335 |
|