Description
In CODESYS V3 products in all versions prior V3.5.16.0 containing the CmpUserMgr, the CODESYS Control runtime system stores the online communication passwords using a weak hashing algorithm. This can be used by a local attacker with low privileges to gain full control of the device.
Published: 2022-12-26
Score: 7.8 High
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2020-4385 In CODESYS V3 products in all versions prior V3.5.16.0 containing the CmpUserMgr, the CODESYS Control runtime system stores the online communication passwords using a weak hashing algorithm. This can be used by a local attacker with low privileges to gain full control of the device.
History

Mon, 14 Apr 2025 17:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Thu, 03 Oct 2024 19:45:00 +0000

Type Values Removed Values Added
First Time appeared Codesys
Codesys control For Beaglebone
Codesys control For Empc-a\/imx6
Codesys control For Iot2000
Codesys control For Linux
Codesys control For Pfc100
Codesys control For Pfc200
Codesys control For Plcnext
Codesys control For Raspberry Pi
Codesys control Rte V3
Codesys control V3 Runtime System Toolkit
Codesys control Win V3
Codesys hmi V3
Codesys v3 Simulation Runtime
Festo
Festo controller Cecc-d
Festo controller Cecc-d Firmware
Festo controller Cecc-lk
Festo controller Cecc-lk Firmware
Festo controller Cecc-s
Festo controller Cecc-s Firmware
Wago
Wago 750-8100
Wago 750-8100 Firmware
Wago 750-8101
Wago 750-8101 Firmware
Wago 750-8102
Wago 750-8102 Firmware
Wago 750-8202
Wago 750-8202 Firmware
Wago 750-8203
Wago 750-8203 Firmware
Wago 750-8204
Wago 750-8204 Firmware
Wago 750-8206
Wago 750-8206 Firmware
Wago 750-8207
Wago 750-8207 Firmware
Wago 750-8210
Wago 750-8210 Firmware
Wago 750-8211
Wago 750-8211 Firmware
Wago 750-8212
Wago 750-8212 Firmware
Wago 750-8213
Wago 750-8213 Firmware
Wago 750-8214
Wago 750-8214 Firmware
Wago 750-8215
Wago 750-8215 Firmware
Wago 750-8216
Wago 750-8216 Firmware
Wago 750-8217
Wago 750-8217 Firmware
Wago 752-8303\/8000-0002
Wago 752-8303\/8000-0002 Firmware
Wago 762-4201\/8000-001
Wago 762-4201\/8000-001 Firmware
Wago 762-4202\/8000-001
Wago 762-4202\/8000-001 Firmware
Wago 762-4203\/8000-001
Wago 762-4203\/8000-001 Firmware
Wago 762-4204\/8000-001
Wago 762-4204\/8000-001 Firmware
Wago 762-4205\/8000-001
Wago 762-4205\/8000-001 Firmware
Wago 762-4205\/8000-002
Wago 762-4205\/8000-002 Firmware
Wago 762-4206\/8000-001
Wago 762-4206\/8000-001 Firmware
Wago 762-4206\/8000-002
Wago 762-4206\/8000-002 Firmware
Wago 762-4301\/8000-002
Wago 762-4301\/8000-002 Firmware
Wago 762-4302\/8000-002
Wago 762-4302\/8000-002 Firmware
Wago 762-4303\/8000-002
Wago 762-4303\/8000-002 Firmware
Wago 762-4304\/8000-002
Wago 762-4304\/8000-002 Firmware
Wago 762-4305\/8000-002
Wago 762-4305\/8000-002 Firmware
Wago 762-4306\/8000-002
Wago 762-4306\/8000-002 Firmware
Wago 762-5203\/8000-001
Wago 762-5203\/8000-001 Firmware
Wago 762-5204\/8000-001
Wago 762-5204\/8000-001 Firmware
Wago 762-5205\/8000-001
Wago 762-5205\/8000-001 Firmware
Wago 762-5206\/8000-001
Wago 762-5206\/8000-001 Firmware
Wago 762-5303\/8000-002
Wago 762-5303\/8000-002 Firmware
Wago 762-5304\/8000-002
Wago 762-5304\/8000-002 Firmware
Wago 762-5305\/8000-002
Wago 762-5305\/8000-002 Firmware
Wago 762-5306\/8000-002
Wago 762-5306\/8000-002 Firmware
Wago 762-6201\/8000-001
Wago 762-6201\/8000-001 Firmware
Wago 762-6202\/8000-001
Wago 762-6202\/8000-001 Firmware
Wago 762-6203\/8000-001
Wago 762-6203\/8000-001 Firmware
Wago 762-6204\/8000-001
Wago 762-6204\/8000-001 Firmware
Wago 762-6301\/8000-002
Wago 762-6301\/8000-002 Firmware
Wago 762-6302\/8000-002
Wago 762-6302\/8000-002 Firmware
Wago 762-6303\/8000-002
Wago 762-6303\/8000-002 Firmware
Wago 762-6304\/8000-002
Wago 762-6304\/8000-002 Firmware
CPEs cpe:2.3:a:codesys:control_for_beaglebone:*:*:*:*:*:*:*:*
cpe:2.3:a:codesys:control_for_empc-a\/imx6:*:*:*:*:*:*:*:*
cpe:2.3:a:codesys:control_for_iot2000:*:*:*:*:*:*:*:*
cpe:2.3:a:codesys:control_for_linux:*:*:*:*:*:*:*:*
cpe:2.3:a:codesys:control_for_pfc100:*:*:*:*:*:*:*:*
cpe:2.3:a:codesys:control_for_pfc200:*:*:*:*:*:*:*:*
cpe:2.3:a:codesys:control_for_plcnext:*:*:*:*:*:*:*:*
cpe:2.3:a:codesys:control_for_raspberry_pi:*:*:*:*:*:*:*:*
cpe:2.3:a:codesys:control_rte_v3:*:*:*:*:*:*:*:*
cpe:2.3:a:codesys:control_v3_runtime_system_toolkit:*:*:*:*:*:*:*:*
cpe:2.3:a:codesys:control_win_v3:*:*:*:*:*:*:*:*
cpe:2.3:a:codesys:hmi_v3:*:*:*:*:*:*:*:*
cpe:2.3:a:codesys:v3_simulation_runtime:*:*:*:*:*:*:*:*
cpe:2.3:h:festo:controller_cecc-d:-:*:*:*:*:*:*:*
cpe:2.3:h:festo:controller_cecc-lk:-:*:*:*:*:*:*:*
cpe:2.3:h:festo:controller_cecc-s:-:*:*:*:*:*:*:*
cpe:2.3:h:wago:750-8100:-:*:*:*:*:*:*:*
cpe:2.3:h:wago:750-8101:-:*:*:*:*:*:*:*
cpe:2.3:h:wago:750-8102:-:*:*:*:*:*:*:*
cpe:2.3:h:wago:750-8202:-:*:*:*:*:*:*:*
cpe:2.3:h:wago:750-8203:-:*:*:*:*:*:*:*
cpe:2.3:h:wago:750-8204:-:*:*:*:*:*:*:*
cpe:2.3:h:wago:750-8206:-:*:*:*:*:*:*:*
cpe:2.3:h:wago:750-8207:-:*:*:*:*:*:*:*
cpe:2.3:h:wago:750-8210:-:*:*:*:*:*:*:*
cpe:2.3:h:wago:750-8211:-:*:*:*:*:*:*:*
cpe:2.3:h:wago:750-8212:-:*:*:*:*:*:*:*
cpe:2.3:h:wago:750-8213:-:*:*:*:*:*:*:*
cpe:2.3:h:wago:750-8214:-:*:*:*:*:*:*:*
cpe:2.3:h:wago:750-8215:-:*:*:*:*:*:*:*
cpe:2.3:h:wago:750-8216:-:*:*:*:*:*:*:*
cpe:2.3:h:wago:750-8217:-:*:*:*:*:*:*:*
cpe:2.3:h:wago:752-8303\/8000-0002:*:*:*:*:*:*:*:*
cpe:2.3:h:wago:762-4201\/8000-001:-:*:*:*:*:*:*:*
cpe:2.3:h:wago:762-4202\/8000-001:-:*:*:*:*:*:*:*
cpe:2.3:h:wago:762-4203\/8000-001:-:*:*:*:*:*:*:*
cpe:2.3:h:wago:762-4204\/8000-001:-:*:*:*:*:*:*:*
cpe:2.3:h:wago:762-4205\/8000-001:-:*:*:*:*:*:*:*
cpe:2.3:h:wago:762-4205\/8000-002:-:*:*:*:*:*:*:*
cpe:2.3:h:wago:762-4206\/8000-001:-:*:*:*:*:*:*:*
cpe:2.3:h:wago:762-4206\/8000-002:-:*:*:*:*:*:*:*
cpe:2.3:h:wago:762-4301\/8000-002:-:*:*:*:*:*:*:*
cpe:2.3:h:wago:762-4302\/8000-002:-:*:*:*:*:*:*:*
cpe:2.3:h:wago:762-4303\/8000-002:-:*:*:*:*:*:*:*
cpe:2.3:h:wago:762-4304\/8000-002:-:*:*:*:*:*:*:*
cpe:2.3:h:wago:762-4305\/8000-002:-:*:*:*:*:*:*:*
cpe:2.3:h:wago:762-4306\/8000-002:-:*:*:*:*:*:*:*
cpe:2.3:h:wago:762-5203\/8000-001:-:*:*:*:*:*:*:*
cpe:2.3:h:wago:762-5204\/8000-001:-:*:*:*:*:*:*:*
cpe:2.3:h:wago:762-5205\/8000-001:-:*:*:*:*:*:*:*
cpe:2.3:h:wago:762-5206\/8000-001:-:*:*:*:*:*:*:*
cpe:2.3:h:wago:762-5303\/8000-002:-:*:*:*:*:*:*:*
cpe:2.3:h:wago:762-5304\/8000-002:-:*:*:*:*:*:*:*
cpe:2.3:h:wago:762-5305\/8000-002:-:*:*:*:*:*:*:*
cpe:2.3:h:wago:762-5306\/8000-002:-:*:*:*:*:*:*:*
cpe:2.3:h:wago:762-6201\/8000-001:-:*:*:*:*:*:*:*
cpe:2.3:h:wago:762-6202\/8000-001:-:*:*:*:*:*:*:*
cpe:2.3:h:wago:762-6203\/8000-001:-:*:*:*:*:*:*:*
cpe:2.3:h:wago:762-6204\/8000-001:-:*:*:*:*:*:*:*
cpe:2.3:h:wago:762-6301\/8000-002:-:*:*:*:*:*:*:*
cpe:2.3:h:wago:762-6302\/8000-002:-:*:*:*:*:*:*:*
cpe:2.3:h:wago:762-6303\/8000-002:-:*:*:*:*:*:*:*
cpe:2.3:h:wago:762-6304\/8000-002:-:*:*:*:*:*:*:*
cpe:2.3:o:festo:controller_cecc-d_firmware:2.3.8.0:*:*:*:*:*:*:*
cpe:2.3:o:festo:controller_cecc-d_firmware:2.3.8.1:*:*:*:*:*:*:*
cpe:2.3:o:festo:controller_cecc-lk_firmware:2.3.8.0:*:*:*:*:*:*:*
cpe:2.3:o:festo:controller_cecc-lk_firmware:2.3.8.1:*:*:*:*:*:*:*
cpe:2.3:o:festo:controller_cecc-s_firmware:2.3.8.0:*:*:*:*:*:*:*
cpe:2.3:o:festo:controller_cecc-s_firmware:2.3.8.1:*:*:*:*:*:*:*
cpe:2.3:o:wago:750-8100_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:wago:750-8101_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:wago:750-8102_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:wago:750-8202_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:wago:750-8203_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:wago:750-8204_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:wago:750-8206_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:wago:750-8207_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:wago:750-8210_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:wago:750-8211_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:wago:750-8212_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:wago:750-8213_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:wago:750-8214_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:wago:750-8215_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:wago:750-8216_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:wago:750-8217_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:wago:752-8303\/8000-0002_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:wago:762-4201\/8000-001_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:wago:762-4202\/8000-001_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:wago:762-4203\/8000-001_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:wago:762-4204\/8000-001_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:wago:762-4205\/8000-001_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:wago:762-4205\/8000-002_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:wago:762-4206\/8000-001_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:wago:762-4206\/8000-002_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:wago:762-4301\/8000-002_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:wago:762-4302\/8000-002_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:wago:762-4303\/8000-002_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:wago:762-4304\/8000-002_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:wago:762-4305\/8000-002_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:wago:762-4306\/8000-002_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:wago:762-5203\/8000-001_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:wago:762-5204\/8000-001_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:wago:762-5205\/8000-001_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:wago:762-5206\/8000-001_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:wago:762-5303\/8000-002_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:wago:762-5304\/8000-002_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:wago:762-5305\/8000-002_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:wago:762-5306\/8000-002_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:wago:762-6201\/8000-001_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:wago:762-6202\/8000-001_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:wago:762-6203\/8000-001_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:wago:762-6204\/8000-001_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:wago:762-6301\/8000-002_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:wago:762-6302\/8000-002_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:wago:762-6303\/8000-002_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:wago:762-6304\/8000-002_firmware:*:*:*:*:*:*:*:*
Vendors & Products Codesys
Codesys control For Beaglebone
Codesys control For Empc-a\/imx6
Codesys control For Iot2000
Codesys control For Linux
Codesys control For Pfc100
Codesys control For Pfc200
Codesys control For Plcnext
Codesys control For Raspberry Pi
Codesys control Rte V3
Codesys control V3 Runtime System Toolkit
Codesys control Win V3
Codesys hmi V3
Codesys v3 Simulation Runtime
Festo
Festo controller Cecc-d
Festo controller Cecc-d Firmware
Festo controller Cecc-lk
Festo controller Cecc-lk Firmware
Festo controller Cecc-s
Festo controller Cecc-s Firmware
Wago
Wago 750-8100
Wago 750-8100 Firmware
Wago 750-8101
Wago 750-8101 Firmware
Wago 750-8102
Wago 750-8102 Firmware
Wago 750-8202
Wago 750-8202 Firmware
Wago 750-8203
Wago 750-8203 Firmware
Wago 750-8204
Wago 750-8204 Firmware
Wago 750-8206
Wago 750-8206 Firmware
Wago 750-8207
Wago 750-8207 Firmware
Wago 750-8210
Wago 750-8210 Firmware
Wago 750-8211
Wago 750-8211 Firmware
Wago 750-8212
Wago 750-8212 Firmware
Wago 750-8213
Wago 750-8213 Firmware
Wago 750-8214
Wago 750-8214 Firmware
Wago 750-8215
Wago 750-8215 Firmware
Wago 750-8216
Wago 750-8216 Firmware
Wago 750-8217
Wago 750-8217 Firmware
Wago 752-8303\/8000-0002
Wago 752-8303\/8000-0002 Firmware
Wago 762-4201\/8000-001
Wago 762-4201\/8000-001 Firmware
Wago 762-4202\/8000-001
Wago 762-4202\/8000-001 Firmware
Wago 762-4203\/8000-001
Wago 762-4203\/8000-001 Firmware
Wago 762-4204\/8000-001
Wago 762-4204\/8000-001 Firmware
Wago 762-4205\/8000-001
Wago 762-4205\/8000-001 Firmware
Wago 762-4205\/8000-002
Wago 762-4205\/8000-002 Firmware
Wago 762-4206\/8000-001
Wago 762-4206\/8000-001 Firmware
Wago 762-4206\/8000-002
Wago 762-4206\/8000-002 Firmware
Wago 762-4301\/8000-002
Wago 762-4301\/8000-002 Firmware
Wago 762-4302\/8000-002
Wago 762-4302\/8000-002 Firmware
Wago 762-4303\/8000-002
Wago 762-4303\/8000-002 Firmware
Wago 762-4304\/8000-002
Wago 762-4304\/8000-002 Firmware
Wago 762-4305\/8000-002
Wago 762-4305\/8000-002 Firmware
Wago 762-4306\/8000-002
Wago 762-4306\/8000-002 Firmware
Wago 762-5203\/8000-001
Wago 762-5203\/8000-001 Firmware
Wago 762-5204\/8000-001
Wago 762-5204\/8000-001 Firmware
Wago 762-5205\/8000-001
Wago 762-5205\/8000-001 Firmware
Wago 762-5206\/8000-001
Wago 762-5206\/8000-001 Firmware
Wago 762-5303\/8000-002
Wago 762-5303\/8000-002 Firmware
Wago 762-5304\/8000-002
Wago 762-5304\/8000-002 Firmware
Wago 762-5305\/8000-002
Wago 762-5305\/8000-002 Firmware
Wago 762-5306\/8000-002
Wago 762-5306\/8000-002 Firmware
Wago 762-6201\/8000-001
Wago 762-6201\/8000-001 Firmware
Wago 762-6202\/8000-001
Wago 762-6202\/8000-001 Firmware
Wago 762-6203\/8000-001
Wago 762-6203\/8000-001 Firmware
Wago 762-6204\/8000-001
Wago 762-6204\/8000-001 Firmware
Wago 762-6301\/8000-002
Wago 762-6301\/8000-002 Firmware
Wago 762-6302\/8000-002
Wago 762-6302\/8000-002 Firmware
Wago 762-6303\/8000-002
Wago 762-6303\/8000-002 Firmware
Wago 762-6304\/8000-002
Wago 762-6304\/8000-002 Firmware

Subscriptions

Codesys Control For Beaglebone Control For Empc-a\/imx6 Control For Iot2000 Control For Linux Control For Pfc100 Control For Pfc200 Control For Plcnext Control For Raspberry Pi Control Rte V3 Control V3 Runtime System Toolkit Control Win V3 Hmi V3 V3 Simulation Runtime
Festo Controller Cecc-d Controller Cecc-d Firmware Controller Cecc-lk Controller Cecc-lk Firmware Controller Cecc-s Controller Cecc-s Firmware
Pilz Pmc
Wago 750-8100 750-8100 Firmware 750-8101 750-8101 Firmware 750-8102 750-8102 Firmware 750-8202 750-8202 Firmware 750-8203 750-8203 Firmware 750-8204 750-8204 Firmware 750-8206 750-8206 Firmware 750-8207 750-8207 Firmware 750-8210 750-8210 Firmware 750-8211 750-8211 Firmware 750-8212 750-8212 Firmware 750-8213 750-8213 Firmware 750-8214 750-8214 Firmware 750-8215 750-8215 Firmware 750-8216 750-8216 Firmware 750-8217 750-8217 Firmware 752-8303\/8000-0002 752-8303\/8000-0002 Firmware 762-4201\/8000-001 762-4201\/8000-001 Firmware 762-4202\/8000-001 762-4202\/8000-001 Firmware 762-4203\/8000-001 762-4203\/8000-001 Firmware 762-4204\/8000-001 762-4204\/8000-001 Firmware 762-4205\/8000-001 762-4205\/8000-001 Firmware 762-4205\/8000-002 762-4205\/8000-002 Firmware 762-4206\/8000-001 762-4206\/8000-001 Firmware 762-4206\/8000-002 762-4206\/8000-002 Firmware 762-4301\/8000-002 762-4301\/8000-002 Firmware 762-4302\/8000-002 762-4302\/8000-002 Firmware 762-4303\/8000-002 762-4303\/8000-002 Firmware 762-4304\/8000-002 762-4304\/8000-002 Firmware 762-4305\/8000-002 762-4305\/8000-002 Firmware 762-4306\/8000-002 762-4306\/8000-002 Firmware 762-5203\/8000-001 762-5203\/8000-001 Firmware 762-5204\/8000-001 762-5204\/8000-001 Firmware 762-5205\/8000-001 762-5205\/8000-001 Firmware 762-5206\/8000-001 762-5206\/8000-001 Firmware 762-5303\/8000-002 762-5303\/8000-002 Firmware 762-5304\/8000-002 762-5304\/8000-002 Firmware 762-5305\/8000-002 762-5305\/8000-002 Firmware 762-5306\/8000-002 762-5306\/8000-002 Firmware 762-6201\/8000-001 762-6201\/8000-001 Firmware 762-6202\/8000-001 762-6202\/8000-001 Firmware 762-6203\/8000-001 762-6203\/8000-001 Firmware 762-6204\/8000-001 762-6204\/8000-001 Firmware 762-6301\/8000-002 762-6301\/8000-002 Firmware 762-6302\/8000-002 762-6302\/8000-002 Firmware 762-6303\/8000-002 762-6303\/8000-002 Firmware 762-6304\/8000-002 762-6304\/8000-002 Firmware
cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2025-04-14T16:17:54.368Z

Reserved: 2020-04-22T00:00:00.000Z

Link: CVE-2020-12069

cve-icon Vulnrichment

Updated: 2024-08-04T11:48:58.230Z

cve-icon NVD

Status : Analyzed

Published: 2022-12-26T19:15:10.520

Modified: 2025-05-05T14:15:00.537

Link: CVE-2020-12069

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses