CVE-2022-31805

In the CODESYS Development System multiple components in multiple versions transmit the passwords for the communication between clients and servers unprotected.
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

OR cpe:2.3:a:codesys:runtime_toolkit:*:*:*:*:*:*:x86:*
cpe:2.3:a:codesys:plcwinnt:*:*:*:*:*:*:*:*
cpe:2.3:a:codesys:plchandler:*:*:*:*:*:*:*:*
cpe:2.3:a:codesys:opc_server:*:*:*:*:*:*:*:*
cpe:2.3:a:codesys:edge_gateway:*:*:*:*:*:windows:*:*
cpe:2.3:a:codesys:hmi_sl:*:*:*:*:*:*:*:*
cpe:2.3:a:codesys:sp_realtime_nt:*:*:*:*:*:*:*:*
cpe:2.3:a:codesys:web_server:*:*:*:*:*:*:*:*
cpe:2.3:a:codesys:gateway:*:*:*:*:*:*:*:*
cpe:2.3:a:codesys:development_system:*:*:*:*:*:*:*:*

Information

Published : 2022-06-24 01:15

Updated : 2022-09-23 09:30


NVD link : CVE-2022-31805

Mitre link : CVE-2022-31805


JSON object : View

CWE
CWE-523

Unprotected Transport of Credentials

Advertisement

dedicated server usa

Products Affected

codesys

  • plcwinnt
  • plchandler
  • development_system
  • hmi_sl
  • gateway
  • edge_gateway
  • runtime_toolkit
  • web_server
  • opc_server
  • sp_realtime_nt