PT-2021-3339 · 3S Smart Software Solutions · Codesys V2 Web-Server

Anton Dorfman

+1

·

Published

2021-05-25

·

Updated

2025-08-15

·

CVE-2021-30191

CVSS v2.0

7.8

High

VectorAV:N/AC:L/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions CODESYS V2 Web-Server versions prior to 1.1.9.20
Description The issue is caused by a buffer copy without checking the size of the input, which can lead to a buffer overflow on the stack. This can allow a remote attacker to cause a denial of service.
Recommendations For CODESYS V2 Web-Server versions prior to 1.1.9.20, update to version 1.1.9.20 or later to resolve the issue. As a temporary workaround, consider restricting access to the web server to minimize the risk of exploitation.

Fix

Buffer Overflow

Weakness Enumeration

Related Identifiers

BDU:2021-03148
CVE-2021-30191

Affected Products

Codesys V2 Web-Server