PT-2026-43199 · Codesys · Codesys Control Rte+15

Published

2026-05-26

·

Updated

2026-05-26

·

CVE-2026-8047

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
The affected products perform improper length checking when parsing incoming HTTP requests, resulting in a size-limited out-of-bounds write. An unauthenticated remote attacker can exploit this flaw to cause a denial of service via a system crash on the affected device.

Fix

Weakness Enumeration

Related Identifiers

CVE-2026-8047

Affected Products

Codesys Control Rte
Codesys Control Rte (For Beckhoff Cx) Sl
Codesys Control Win
Codesys Control For Beaglebone
Codesys Control For Iot2000
Codesys Control For Linux Arm Sl
Codesys Control For Linux
Codesys Control For Pfc100
Codesys Control For Pfc200
Codesys Control For Plcnext
Codesys Control For Raspberry Pi
Codesys Control For Wago Touch Panels 600 Sl
Codesys Control For Empc-A/Imx6
Codesys Hmi
Codesys Runtime Toolkit
Codesys Virtual Control Sl