CODESYS V3 web server, all versions prior to 3.5.14.10, allows an attacker to send specially crafted http or https requests which may allow access to files outside the restricted working directory of the controller.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: icscert

Published: 2019-09-13T16:58:21

Updated: 2024-08-04T23:57:39.525Z

Reserved: 2019-07-11T00:00:00

Link: CVE-2019-13532

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2019-09-13T17:15:11.617

Modified: 2019-10-09T23:46:33.517

Link: CVE-2019-13532

cve-icon Redhat

No data.