Show filters
93 Total Results
Displaying 21-30 of 93
Sort by:
Attacker Value
Unknown

CVE-2023-37548

Disclosure Date: August 03, 2023 (last updated October 08, 2023)
In multiple Codesys products in multiple versions, after successful authentication as a user, specific crafted network communication requests with inconsistent content can cause the CmpApp component to read internally from an invalid address, potentially leading to a denial-of-service condition. This vulnerability is different to CVE-2023-37545, CVE-2023-37546, CVE-2023-37547, CVE-2023-37549 and CVE-2023-37550
Attacker Value
Unknown

CVE-2023-37547

Disclosure Date: August 03, 2023 (last updated October 08, 2023)
In multiple Codesys products in multiple versions, after successful authentication as a user, specific crafted network communication requests with inconsistent content can cause the CmpApp component to read internally from an invalid address, potentially leading to a denial-of-service condition. This vulnerability is different to CVE-2023-37545, CVE-2023-37546, CVE-2023-37548, CVE-2023-37549 and CVE-2023-37550
Attacker Value
Unknown

CVE-2023-37546

Disclosure Date: August 03, 2023 (last updated October 08, 2023)
In multiple Codesys products in multiple versions, after successful authentication as a user, specific crafted network communication requests with inconsistent content can cause the CmpApp component to read internally from an invalid address, potentially leading to a denial-of-service condition. This vulnerability is different to CVE-2023-37545, CVE-2023-37547, CVE-2023-37548, CVE-2023-37549 and CVE-2023-37550
Attacker Value
Unknown

CVE-2023-37545

Disclosure Date: August 03, 2023 (last updated October 08, 2023)
In multiple Codesys products in multiple versions, after successful authentication as a user, specific crafted network communication requests with inconsistent content can cause the CmpApp component to read internally from an invalid address, potentially leading to a denial-of-service condition. This vulnerability is different to CVE-2023-37546, CVE-2023-37547, CVE-2023-37548, CVE-2023-37549, CVE-2023-37550
Attacker Value
Unknown

CVE-2022-47393

Disclosure Date: May 15, 2023 (last updated October 08, 2023)
An authenticated, remote attacker may use a Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in multiple versions of multiple CODESYS products to force a denial-of-service situation.
Attacker Value
Unknown

CVE-2022-47392

Disclosure Date: May 15, 2023 (last updated October 08, 2023)
An authenticated, remote attacker may use a improper input validation vulnerability in the CmpApp/CmpAppBP/CmpAppForce Components of multiple CODESYS products in multiple versions to read from an invalid address which can lead to a denial-of-service condition.
Attacker Value
Unknown

CVE-2022-47391

Disclosure Date: May 15, 2023 (last updated October 08, 2023)
In multiple CODESYS products in multiple versions an unauthorized, remote attacker may use a improper input validation vulnerability to read from invalid addresses leading to a denial of service.
Attacker Value
Unknown

CVE-2022-47390

Disclosure Date: May 15, 2023 (last updated October 08, 2023)
An authenticated, remote attacker may use a stack based out-of-bounds write vulnerability in the CmpTraceMgr Component of multiple CODESYS products in multiple versions to write data into the stack which can lead to a denial-of-service condition, memory overwriting, or remote code execution.
Attacker Value
Unknown

CVE-2022-47389

Disclosure Date: May 15, 2023 (last updated October 08, 2023)
An authenticated, remote attacker may use a stack based out-of-bounds write vulnerability in the CmpTraceMgr Component of multiple CODESYS products in multiple versions to write data into the stack which can lead to a denial-of-service condition, memory overwriting, or remote code execution.
Attacker Value
Unknown

CVE-2022-47388

Disclosure Date: May 15, 2023 (last updated October 08, 2023)
An authenticated, remote attacker may use a stack based out-of-bounds write vulnerability in the CmpTraceMgr Component of multiple CODESYS products in multiple versions to write data into the stack which can lead to a denial-of-service condition, memory overwriting, or remote code execution.