
CVE-2018-5440
https://notcve.org/view.php?id=CVE-2018-5440
15 Feb 2018 — A Stack-based Buffer Overflow issue was discovered in 3S-Smart CODESYS Web Server. Specifically: all Microsoft Windows (also WinCE) based CODESYS web servers running stand-alone Version 2.3, or as part of the CODESYS runtime system running prior to Version V1.1.9.19. A crafted request may cause a buffer overflow and could therefore execute arbitrary code on the web server or lead to a denial-of-service condition due to a crash in the web server. Se ha descubierto un problema de desbordamiento de búfer basad... • http://www.securityfocus.com/bid/102909 • CWE-121: Stack-based Buffer Overflow CWE-787: Out-of-bounds Write •

CVE-2015-6482
https://notcve.org/view.php?id=CVE-2015-6482
18 Oct 2015 — Runtime Toolkit before 2.4.7.48 in 3S-Smart CODESYS before 2.3.9.48 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted request. Runtime Toolkit en versiones anteriores a 2.4.7.48 en 3S-Smart CODESYS en versiones anteriores a 2.3.9.48 permite a atacantes remotos causar una denegación de servicio (referencia a puntero NULL y caída de la aplicación) a través de una petición manipulada. • https://ics-cert.us-cert.gov/advisories/ICSA-15-288-01 •

CVE-2012-6068
https://notcve.org/view.php?id=CVE-2012-6068
21 Jan 2013 — The Runtime Toolkit in CODESYS Runtime System 2.3.x and 2.4.x does not require authentication, which allows remote attackers to (1) execute commands via the command-line interface in the TCP listener service or (2) transfer files via requests to the TCP listener service. El Runtime Toolkit de CODESYS Runtime System v2.3.x y v2.4.x no requiere autenticación, lo que permite a atacantes remotos (1) ejecutar comandos a través de la interfaz de línea de comandos del servicio de escucha de TCP o (2) transferir ar... • http://ics-cert.us-cert.gov/advisories/ICSA-14-084-01 • CWE-264: Permissions, Privileges, and Access Controls •

CVE-2012-6069
https://notcve.org/view.php?id=CVE-2012-6069
21 Jan 2013 — Directory traversal vulnerability in the Runtime Toolkit in CODESYS Runtime System 2.3.x and 2.4.x allows remote attackers to read, overwrite, or create arbitrary files via a .. (dot dot) in a request to the TCP listener service. Vulnerabilidad de salto de directorio en el Runtime Toolkit de CODESYS Runtime System v2.3.x y v2.4.x que permite a atacantes remotos leer, sobreescribir, o crear ficheros a través de .. (punto punto) en una solicitud al servicio de escucha TCP. • http://ics-cert.us-cert.gov/advisories/ICSA-14-084-01 • CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') •