Codesys Plchandler vulnerabilities
3 known vulnerabilities affecting codesys/codesys_plchandler.
Total CVEs
3
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH2MEDIUM1
Vulnerabilities
Page 1 of 1
CVE-2025-41739MEDIUMCVSS 5.9≥ 3.5.21.0, < 3.5.21.402025-12-01
CVE-2025-41739 [MEDIUM] CWE-125 CVE-2025-41739: An unauthenticated remote attacker, who beats a race condition, can exploit a flaw in the communicat
An unauthenticated remote attacker, who beats a race condition, can exploit a flaw in the communication servers of the CODESYS Control runtime system on Linux and QNX to trigger an out-of-bounds read via crafted socket communication, potentially causing a denial of service.
cvelistv5nvd
CVE-2022-31805HIGHCVSS 7.5≥ V3, < V3.5.18.302022-06-24
CVE-2022-31805 [HIGH] CWE-523 CVE-2022-31805: In the CODESYS Development System multiple components in multiple versions transmit the passwords fo
In the CODESYS Development System multiple components in multiple versions transmit the passwords for the communication between clients and servers unprotected.
cvelistv5nvd
CVE-2022-22517HIGHCVSS 7.5≥ V3.5.18.0, < V3.5.18.02022-04-07
CVE-2022-22517 [HIGH] CWE-334 CVE-2022-22517: An unauthenticated, remote attacker can disrupt existing communication channels between CODESYS prod
An unauthenticated, remote attacker can disrupt existing communication channels between CODESYS products by guessing a valid channel ID and injecting packets. This results in the communication channel to be closed.
cvelistv5nvd