Inadequate Encryption Strength in CODESYS Development System V3 versions prior to V3.5.18.40 allows an unauthenticated local attacker to access and manipulate code of the encrypted boot application.
References
Configurations
History
24 May 2023, 17:50
Type | Values Removed | Values Added |
---|---|---|
CPE | cpe:2.3:a:codesys:development_system_v3:*:*:*:*:*:*:*:* | |
First Time |
Codesys
Codesys development System V3 |
|
References | (MISC) https://customers.codesys.com/index.php?eID=dumpFile&t=f&f=17350&token=2cee62285d3ec76d6a78dfa9b9e81e66f6136a2a&download= - Vendor Advisory |
15 May 2023, 10:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2023-05-15 10:15
Updated : 2023-05-24 17:50
NVD link : CVE-2022-4048
Mitre link : CVE-2022-4048
JSON object : View
Products Affected
codesys
- development_system_v3
CWE
CWE-326
Inadequate Encryption Strength