In CODESYS V2 PLCWinNT and Runtime Toolkit 32 in versions prior to V2.4.7.57 password protection is not enabled by default and there is no information or prompt to enable password protection at login in case no password is set at the controller.
Metrics
Affected Vendors & Products
References
History
Tue, 17 Sep 2024 03:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Title | Insecure default settings in CODESYS Runtime Toolkit 32 bit full and CODESYS PLCWinNT | Insecure default settings in CODESYS Runtime Toolkit 32 bit full and CODESYS PLCWinNT |
MITRE
Status: PUBLISHED
Assigner: CERTVDE
Published: 2022-06-24T07:46:17.024144Z
Updated: 2024-09-17T03:27:59.221Z
Reserved: 2022-05-30T00:00:00
Link: CVE-2022-31806
Vulnrichment
No data.
NVD
Status : Modified
Published: 2022-06-24T08:15:07.650
Modified: 2024-11-21T07:05:22.200
Link: CVE-2022-31806
Redhat
No data.