Multiple CODESYS products in multiple versions are prone to a improper input validation vulnerability. An authenticated remote attacker may craft specific requests that use the vulnerability leading to a denial-of-service condition.
References
Configurations
Configuration 1 (hide)
|
History
17 Jul 2025, 12:38
Type | Values Removed | Values Added |
---|---|---|
References | () https://customers.codesys.com/index.php?eID=dumpFile&t=f&f=17554&token=5444f53b4c90fe37043671a100dffa75305d1825&download= - Vendor Advisory |
24 May 2023, 20:25
Type | Values Removed | Values Added |
---|---|---|
First Time |
Codesys control For Raspberry Pi Sl
Codesys Codesys control Rte \(for Beckhoff Cx\) Sl Codesys safety Sil2 Psp Codesys development System V3 Codesys control For Wago Touch Panels 600 Sl Codesys control For Pfc200 Sl Codesys control For Iot2000 Sl Codesys control For Linux Sl Codesys control Rte \(sl\) Codesys control Win \(sl\) Codesys control For Plcnext Sl Codesys control For Empc-a\/imx6 Sl Codesys control Runtime System Toolkit Codesys hmi \(sl\) Codesys control For Pfc100 Sl Codesys control For Beaglebone Sl Codesys safety Sil2 Runtime Toolkit |
|
References | (MISC) https://customers.codesys.com/index.php?eID=dumpFile&t=f&f=17554&token=5444f53b4c90fe37043671a100dffa75305d1825&download= - Vendor Advisory | |
CPE | cpe:2.3:a:codesys:control_for_linux_sl:*:*:*:*:*:*:*:* cpe:2.3:a:codesys:control_for_wago_touch_panels_600_sl:*:*:*:*:*:*:*:* cpe:2.3:a:codesys:hmi_\(sl\):*:*:*:*:*:*:*:* cpe:2.3:a:codesys:control_rte_\(sl\):*:*:*:*:*:*:*:* cpe:2.3:a:codesys:control_for_iot2000_sl:*:*:*:*:*:*:*:* cpe:2.3:a:codesys:control_win_\(sl\):*:*:*:*:*:*:*:* cpe:2.3:a:codesys:control_for_empc-a\/imx6_sl:*:*:*:*:*:*:*:* cpe:2.3:a:codesys:control_for_pfc200_sl:*:*:*:*:*:*:*:* cpe:2.3:a:codesys:control_for_beaglebone_sl:*:*:*:*:*:*:*:* cpe:2.3:a:codesys:control_runtime_system_toolkit:*:*:*:*:*:*:*:* cpe:2.3:a:codesys:safety_sil2_psp:*:*:*:*:*:*:*:* cpe:2.3:a:codesys:control_for_raspberry_pi_sl:*:*:*:*:*:*:*:* cpe:2.3:a:codesys:control_for_plcnext_sl:*:*:*:*:*:*:*:* cpe:2.3:a:codesys:development_system_v3:*:*:*:*:*:*:*:* cpe:2.3:a:codesys:control_for_pfc100_sl:*:*:*:*:*:*:*:* cpe:2.3:a:codesys:safety_sil2_runtime_toolkit:*:*:*:*:*:*:*:* cpe:2.3:a:codesys:control_rte_\(for_beckhoff_cx\)_sl:*:*:*:*:*:*:*:* |
15 May 2023, 10:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2023-05-15 10:15
Updated : 2025-07-17 12:38
NVD link : CVE-2022-47378
Mitre link : CVE-2022-47378
JSON object : View
Products Affected
codesys
- control_for_plcnext_sl
- control_for_wago_touch_panels_600_sl
- control_runtime_system_toolkit
- control_win_\(sl\)
- control_rte_\(for_beckhoff_cx\)_sl
- control_rte_\(sl\)
- hmi_\(sl\)
- control_for_empc-a\/imx6_sl
- safety_sil2_runtime_toolkit
- control_for_beaglebone_sl
- control_for_linux_sl
- safety_sil2_psp
- control_for_pfc200_sl
- control_for_raspberry_pi_sl
- development_system_v3
- control_for_iot2000_sl
- control_for_pfc100_sl
CWE
CWE-20
Improper Input Validation