ZeroHour

CVE-2022-22517

CVSS 3.1
7.5 high
EPSS
1%p69
Published
()
Modified
Description

An unauthenticated, remote attacker can disrupt existing communication channels between CODESYS products by guessing a valid channel ID and injecting packets. This results in the communication channel to be closed.

Vendors
codesys
Products
control for beaglebone sl, control for beckhoff cx9020, control for empc-a\/imx6 sl, control for iot2000 sl, control for linux sl, control for pfc100 sl, control for pfc200 sl, control for plcnext sl, control for raspberry pi sl, control for wago touch panels 600 sl, control rte sl, control rte sl \(for beckhoff cx\)
Weakness
CWE-334, CWE-330
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

In the news

No ingested article mentions this CVE yet.