CVE-2020-12068
 
Severity Score
6.5
*CVSS v3.1
Exploit Likelihood
*EPSS
Affected Versions
*CPE
Public Exploits
0
*Multiple Sources
Exploited in Wild
-
*KEV
Decision
-
*SSVC
Descriptions
An issue was discovered in CODESYS Development System before 3.5.16.0. CODESYS WebVisu and CODESYS Remote TargetVisu are susceptible to privilege escalation.
Se detectó un problema en CODESYS Development System versiones anteriores a 3.5.16.0. CODESYS WebVisu y CODESYS Remote TargetVisu son susceptibles a una escalada de privilegios.
*Credits:
N/A
CVSS Scores
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality
Integrity
Availability
Attack Vector
Attack Complexity
Authentication
Confidentiality
Integrity
Availability
* Common Vulnerability Scoring System
SSVC
- Decision:-
Exploitation
Automatable
Tech. Impact
* Organization's Worst-case Scenario
Timeline
- 2020-04-22 CVE Reserved
- 2020-05-14 CVE Published
- 2023-03-08 EPSS Updated
- 2024-08-04 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
CAPEC
References (2)
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Codesys Search vendor "Codesys" | Control For Beaglebone Search vendor "Codesys" for product "Control For Beaglebone" | < 3.5.16.0 Search vendor "Codesys" for product "Control For Beaglebone" and version " < 3.5.16.0" | - |
Affected
| ||||||
Codesys Search vendor "Codesys" | Control For Empc-a\/imx6 Search vendor "Codesys" for product "Control For Empc-a\/imx6" | < 3.5.16.0 Search vendor "Codesys" for product "Control For Empc-a\/imx6" and version " < 3.5.16.0" | - |
Affected
| ||||||
Codesys Search vendor "Codesys" | Control For Iot2000 Search vendor "Codesys" for product "Control For Iot2000" | < 3.5.16.0 Search vendor "Codesys" for product "Control For Iot2000" and version " < 3.5.16.0" | - |
Affected
| ||||||
Codesys Search vendor "Codesys" | Control For Pfc100 Search vendor "Codesys" for product "Control For Pfc100" | < 3.5.16.0 Search vendor "Codesys" for product "Control For Pfc100" and version " < 3.5.16.0" | - |
Affected
| ||||||
Codesys Search vendor "Codesys" | Control For Pfc200 Search vendor "Codesys" for product "Control For Pfc200" | < 3.5.16.0 Search vendor "Codesys" for product "Control For Pfc200" and version " < 3.5.16.0" | - |
Affected
| ||||||
Codesys Search vendor "Codesys" | Control For Plcnext Search vendor "Codesys" for product "Control For Plcnext" | < 3.5.16.0 Search vendor "Codesys" for product "Control For Plcnext" and version " < 3.5.16.0" | - |
Affected
| ||||||
Codesys Search vendor "Codesys" | Control For Raspberry Pi Search vendor "Codesys" for product "Control For Raspberry Pi" | < 3.5.16.0 Search vendor "Codesys" for product "Control For Raspberry Pi" and version " < 3.5.16.0" | - |
Affected
| ||||||
Codesys Search vendor "Codesys" | Control Rte Search vendor "Codesys" for product "Control Rte" | >= 3.0 < 3.5.16.0 Search vendor "Codesys" for product "Control Rte" and version " >= 3.0 < 3.5.16.0" | - |
Affected
| ||||||
Codesys Search vendor "Codesys" | Control Runtime System Toolkit Search vendor "Codesys" for product "Control Runtime System Toolkit" | >= 3.0 < 3.5.16.0 Search vendor "Codesys" for product "Control Runtime System Toolkit" and version " >= 3.0 < 3.5.16.0" | - |
Affected
| ||||||
Codesys Search vendor "Codesys" | Control Win Search vendor "Codesys" for product "Control Win" | >= 3.0 < 3.5.16.0 Search vendor "Codesys" for product "Control Win" and version " >= 3.0 < 3.5.16.0" | - |
Affected
| ||||||
Codesys Search vendor "Codesys" | Development System Search vendor "Codesys" for product "Development System" | < 3.5.16.0 Search vendor "Codesys" for product "Development System" and version " < 3.5.16.0" | - |
Affected
| ||||||
Codesys Search vendor "Codesys" | Hmi Search vendor "Codesys" for product "Hmi" | >= 3.0 < 3.5.16.0 Search vendor "Codesys" for product "Hmi" and version " >= 3.0 < 3.5.16.0" | - |
Affected
|