10
CVSSv2

CVE-2012-6068

Published: 21/01/2013 Updated: 05/05/2014
CVSS v2 Base Score: 10 | Impact Score: 10 | Exploitability Score: 10
VMScore: 890
Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

The Runtime Toolkit in CODESYS Runtime System 2.3.x and 2.4.x does not require authentication, which allows remote malicious users to (1) execute commands via the command-line interface in the TCP listener service or (2) transfer files via requests to the TCP listener service.

Vulnerable Product Search on Vulmon Subscribe to Product

3s-software codesys runtime system 2.3.9.37

3s-software codesys runtime system 2.3.9.35

3s-software codesys runtime system 2.3.9.8

3s-software codesys runtime system 2.3.9.36

3s-software codesys runtime system 2.4.0