PT-2022-14241 · 3S Smart Software Solutions · Codesys Visualization

Published

2022-08-23

·

Updated

2022-08-26

·

CVE-2022-1989

CVSS v3.1

5.3

Medium

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions CODESYS Visualization versions prior to V4.2.0.0
Description The issue allows a remote, unauthenticated attacker to enumerate valid users due to information exposure in the login dialog.
Recommendations For versions prior to V4.2.0.0, update to version V4.2.0.0 or later to resolve the issue.

Fix

Side Channel Attack

Weakness Enumeration

Related Identifiers

CVE-2022-1989

Affected Products

Codesys Visualization