ZeroHour

CVE-2025-41738

CVSS 3.1
7.5 high
EPSS
<1%p32
Published
()
Modified
Description

An unauthenticated remote attacker may cause the visualisation server of the CODESYS Control runtime system to access a resource with a pointer of wrong type, potentially leading to a denial-of-service (DoS) condition.

Vendors
codesys
Products
control for beaglebone sl, control for empc-a\/imx6 sl, control for iot2000 sl, control for linux arm sl, control for linux sl, control for pfc100 sl, control for pfc200 sl, control for plcnext sl, control for raspberry pi sl, control for wago touch panels 600 sl, control rte sl, control rte sl \(for beckhoff cx\)
Weakness
CWE-843
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

In the news

No ingested article mentions this CVE yet.