This project will be discontinued after December 13, 2021. [more]
Product:
Control_for_wago_touch_panels_600_sl
(Codesys)
Repositories
Unknown:
This might be proprietary software.
#Vulnerabilities
42
Date
Id
Summary
Products
Score
Patch
Annotated
2022-04-07
CVE-2022-22517
An unauthenticated, remote attacker can disrupt existing communication channels between CODESYS products by guessing a valid channel ID and injecting packets. This results in the communication channel to be closed.
CODESYS Control Runtime system before 3.5.17.0 has improper input validation. Attackers can send crafted communication packets to change the router's addressing scheme and may re-route, add, remove or change low level communication packages.