CODESYS V3 web server, all versions prior to 3.5.14.10, allows an attacker to send specially crafted http or https requests which may allow access to files outside the restricted working directory of the controller.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://www.us-cert.gov/ics/advisories/icsa-19-255-01 |
History
No history.
MITRE
Status: PUBLISHED
Assigner: icscert
Published: 2019-09-13T16:58:21
Updated: 2024-08-04T23:57:39.525Z
Reserved: 2019-07-11T00:00:00
Link: CVE-2019-13532
Vulnrichment
No data.
NVD
Status : Modified
Published: 2019-09-13T17:15:11.617
Modified: 2019-10-09T23:46:33.517
Link: CVE-2019-13532
Redhat
No data.