← Back

CVE-2022-22519

nvd nist
Published: Apr 7, 2022Modified: Nov 21, 2024

JSON object

Loading...
7.5
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Exploitability: 3.9 / Impact: 3.6
Source: NVD

Description

A remote, unauthenticated attacker can send a specific crafted HTTP or HTTPS requests causing a buffer over-read resulting in a crash of the webserver of the CODESYS Control runtime system.

Affected (18)

18 products
Control For Beaglebone Sl
Control For Beckhoff Cx9020
Control For Empc A/imx6 Sl
Control For Iot2000 Sl
Control For Linux Sl
Control For Pfc100 Sl
Control For Pfc200 Sl
Control For Plcnext Sl
Control For Raspberry Pi Sl
Control Rte Sl
Control Rte Sl (for Beckhoff Cx)
Control Runtime System Toolkit
Control Win Sl
Development System
Embedded Target Visu Toolkit
Hmi Sl
Remote Target Visu Toolkit
Configuration A
18 vulnerable

Timeline

No history available yet.