cbcvebase.
CVE-2021-36763
published 2021-08-03

CVE-2021-36763: In CODESYS V3 web server before 3.5.17.10, files or directories are accessible to External Parties.

high7.5CVSS 3.1
AVNACLPRNUINSUCHINAN
In CODESYS V3 web server before 3.5.17.10, files or directories are accessible to External Parties.

Affected

8 ranges
VendorProductVersion rangeFixed in
codesyscontrol< 4.2.0.04.2.0.0
codesyscontrol<= 4.2.0.0
codesyscontrol_rte< 3.5.17.103.5.17.10
codesyscontrol_runtime_system_toolkit< 3.5.17.103.5.17.10
codesyscontrol_win_sl< 3.5.17.103.5.17.10
codesysembedded_target_visu_toolkit< 3.5.17.103.5.17.10
codesyshmi< 3.5.17.103.5.17.10
codesysremote_target_visu_toolkit< 3.5.17.103.5.17.10