← Back

CVE-2022-4046

nvd nist
Published: Aug 3, 2023Modified: Jun 17, 2026

JSON object

Loading...
8.8
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Exploitability: 2.8 / Impact: 5.9
Source: info@cert.vde.com (Secondary)

Description

In CODESYS Control in multiple versions a improper restriction of operations within the bounds of a memory buffer allow an remote attacker with user privileges to gain full access of the device.

Affected (14)

14 products
Control For Beaglebone Sl
Control For Empc A/imx6 Sl
Control For Iot2000 Sl
Control For Linux Sl
Control For Pfc100 Sl
Control For Pfc200 Sl
Control For Plcnext Sl
Control For Raspberry Pi Sl
Control Rte Sl
Control Rte Sl (for Beckhoff Cx)
Control Runtime System Toolkit
Control Win Sl
Hmi Sl
Configuration A
14 vulnerable

References (2)

Source: info@cert.vde.com
MitigationThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
MitigationThird Party Advisory

Timeline

No history available yet.