5
CVSSv2

CVE-2019-13532

Published: 13/09/2019 Updated: 09/10/2019
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

CODESYS V3 web server, all versions before 3.5.14.10, allows an malicious user to send specially crafted http or https requests which may allow access to files outside the restricted working directory of the controller.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

codesys control for empc-a\\/imx6

codesys control for raspberry pi

codesys control rte

codesys remote target visu toolkit

codesys control for iot2000

codesys control for linux

codesys control for pfc100

codesys control for pfc200

codesys control win

codesys embedded target visu toolkit

codesys hmi

codesys control for beaglebone

codesys control runtime system toolkit