CVE-2023-5751
CODESYS: Development system prone to DoS through exposure of resource to wrong sphere
Vexday Risk Score
21Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS 7.8EPSS 0.2%KEV nãoPoC —Nuclei —Metasploit —Patch —
Lifecycle
04 Jun 2024Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
A local attacker with low privileges can read and modify any users files and cause a DoS in the working directory of the affected products due to exposure of resource to wrong sphere.
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Affected products
CODESYS · CODESYS Control Win (SL)CODESYS · CODESYS Development System V3CODESYS · CODESYS Edge Gateway for WindowsCODESYS · CODESYS Gateway for WindowsCODESYS · CODESYS HMI (SL)Want to know if your infrastructure is exposed to this?
Talk to TrueHacking →