An authenticated, remote attacker may use a Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in multiple versions of multiple CODESYS products to force a denial-of-service situation.
References
Configurations
Configuration 1 (hide)
|
History
22 May 2023, 19:56
Type | Values Removed | Values Added |
---|---|---|
CPE | cpe:2.3:a:codesys:control_for_iot2000_sl:*:*:*:*:*:*:*:* cpe:2.3:a:codesys:control_win_\(sl\):*:*:*:*:*:*:*:* cpe:2.3:a:codesys:control_for_linux_sl:*:*:*:*:*:*:*:* cpe:2.3:a:codesys:safety_sil2_psp:*:*:*:*:*:*:*:* cpe:2.3:a:codesys:control_rte_\(sl\):*:*:*:*:*:*:*:* cpe:2.3:a:codesys:control_for_plcnext_sl:*:*:*:*:*:*:*:* cpe:2.3:a:codesys:control_for_empc-a\/imx6_sl:*:*:*:*:*:*:*:* cpe:2.3:a:codesys:control_for_raspberry_pi_sl:*:*:*:*:*:*:*:* cpe:2.3:a:codesys:control_runtime_system_toolkit:*:*:*:*:*:*:*:* cpe:2.3:a:codesys:safety_sil2_runtime_toolkit:*:*:*:*:*:*:*:* cpe:2.3:a:codesys:control_for_pfc200_sl:*:*:*:*:*:*:*:* cpe:2.3:a:codesys:control_for_pfc100_sl:*:*:*:*:*:*:*:* cpe:2.3:a:codesys:control_for_beaglebone_sl:*:*:*:*:*:*:*:* cpe:2.3:a:codesys:control_for_wago_touch_panels_600_sl:*:*:*:*:*:*:*:* cpe:2.3:a:codesys:control_rte_\(for_beckhoff_cx\)_sl:*:*:*:*:*:*:*:* cpe:2.3:a:codesys:development_system_v3:*:*:*:*:*:*:*:* cpe:2.3:a:codesys:hmi_\(sl\):*:*:*:*:*:*:*:* |
|
First Time |
Codesys control For Empc-a\/imx6 Sl
Codesys hmi \(sl\) Codesys Codesys control Win \(sl\) Codesys control For Raspberry Pi Sl Codesys control For Wago Touch Panels 600 Sl Codesys safety Sil2 Runtime Toolkit Codesys control For Beaglebone Sl Codesys safety Sil2 Psp Codesys control Runtime System Toolkit Codesys development System V3 Codesys control For Pfc200 Sl Codesys control For Plcnext Sl Codesys control Rte \(for Beckhoff Cx\) Sl Codesys control For Pfc100 Sl Codesys control For Linux Sl Codesys control For Iot2000 Sl Codesys control Rte \(sl\) |
|
References | (MISC) https://customers.codesys.com/index.php?eID=dumpFile&t=f&f=17554&token=5444f53b4c90fe37043671a100dffa75305d1825&download= - Vendor Advisory |
15 May 2023, 12:54
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2023-05-15 11:15
Updated : 2023-12-10 15:01
NVD link : CVE-2022-47393
Mitre link : CVE-2022-47393
CVE.ORG link : CVE-2022-47393
JSON object : View
Products Affected
codesys
- control_for_plcnext_sl
- control_for_iot2000_sl
- control_rte_\(sl\)
- control_win_\(sl\)
- development_system_v3
- safety_sil2_psp
- control_for_pfc100_sl
- control_for_empc-a\/imx6_sl
- control_runtime_system_toolkit
- control_for_raspberry_pi_sl
- hmi_\(sl\)
- control_for_linux_sl
- safety_sil2_runtime_toolkit
- control_for_pfc200_sl
- control_for_wago_touch_panels_600_sl
- control_rte_\(for_beckhoff_cx\)_sl
- control_for_beaglebone_sl
CWE
CWE-119
Improper Restriction of Operations within the Bounds of a Memory Buffer