3S CoDeSys Improper Access Control
28Vexday Risk Score
No sign of exploitation. No public exploitation artifact known so far.
ssvc Trackcvss 9.8epss 5.3%
exploitation probability
5.3%top 8% of all CVEs
observed exploitation
nono source reports it
The Runtime Toolkit in CODESYS Runtime System 2.3.x and 2.4.x does not require authentication, which allows remote attackers to execute commands via the command-line interface in the TCP listener service or transfer files via requests to the TCP listener service.
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Affected products
3S-Smart Software Solutions · CoDeSys3S-Smart Software Solutions · CODESYS Control RTE3S-Smart Software Solutions · CODESYS Control Runtime embedded3S-Smart Software Solutions · CODESYS Control Runtime fullFesto · CECX-X-C1 Modular Master Controller with CoDeSysFesto · CECX-X-M1 Modular Controller with CoDeSys and SoftMotionReferences
http://ics-cert.us-cert.gov/advisories/ICSA-14-084-01https://us.codesys.com/ecosystem/security/https://www.cisa.gov/news-events/ics-advisories/icsa-13-011-01https://www.cisa.gov/news-events/ics-advisories/icsa-14-084-01http://www.codesys.com/news-events/press-releases/detail/article/sicherheitsluecke-in-codesys-v23-laufzeitsystem.htmlhttp://www.digitalbond.com/tools/basecamp/3s-codesys/http://www.us-cert.gov/control_systems/pdf/ICSA-13-011-01.pdf