PT-2022-21115 · 3S Smart Software Solutions · Codesys
Published
2022-06-24
·
Updated
2022-07-01
·
CVE-2022-32142
CVSS v3.1
8.1
High
| Vector | AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
CODESYS Products (affected versions not specified)
Description
The issue is related to out-of-bounds read or write access. A low-privileged remote attacker can craft a request with an invalid offset, causing an out-of-bounds read or write access. This can result in a denial-of-service condition or local memory overwrite, potentially leading to changes in local files. User interaction is not required.
Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Codesys