CVEInsight.
TrendingZero-DayExploreBrowseSearchSaved
CVEInsight.

Free vulnerability intelligence for developers, security teams, and researchers. Data sourced from public databases for informational purposes only.

Explore

HomeTrendingZero-Day WatchAttack TypesBrowse CVEsSearch

Legal

Privacy PolicyTerms of ServiceData Disclaimer

© 2026CVEInsight. For informational use only — not a substitute for professional security advice.

CVE data sourced from NVD / NIST & public disclosures.

codesys

control_for_linux

7 known vulnerabilities · sorted by CVSS score

CVE-2020-10245
CRITICAL9.8

CODESYS V3 web server before 3.5.15.40, as used in CODESYS Control runtime systems, has a buffer overflow.

codesys / control_for_beaglebone+14
Network
Published Mar 26, 2020
CVE-2019-13548
CRITICAL9.8

CODESYS V3 web server, all versions prior to 3.5.14.10, allows an attacker to send specially crafted http or https requests which could cause a stack overflow and create a denial-of-service condition or allow remote code execution.

codesys / control_for_beaglebone+15
Network
Published Sep 13, 2019
CVE-2019-18858
CRITICAL9.8

CODESYS 3 web server before 3.5.15.20, as distributed with CODESYS Control runtime systems, has a Buffer Overflow.

codesys / control_for_beaglebone+13
Network
Published Nov 20, 2019
CVE-2020-12069
HIGH7.8

In CODESYS V3 products in all versions prior V3.5.16.0 containing the CmpUserMgr, the CODESYS Control runtime system stores the online communication passwords using a weak hashing algorithm. This can be used by a local attacker with low privileges to gain full control of the device.

pilz / pmc+66
Local
Published Dec 26, 2022
CVE-2020-15806
HIGH7.5

CODESYS Control runtime system before 3.5.16.10 allows Uncontrolled Memory Allocation.

codesys / control_for_beaglebone+16
Network
Published Jul 22, 2020
CVE-2019-13532
HIGH7.5

CODESYS V3 web server, all versions prior to 3.5.14.10, allows an attacker to send specially crafted http or https requests which may allow access to files outside the restricted working directory of the controller.

codesys / control_for_beaglebone+15
Network
Published Sep 13, 2019
CVE-2020-7052
MEDIUM6.5

CODESYS Control V3, Gateway V3, and HMI V3 before 3.5.15.30 allow uncontrolled memory allocation which can result in a remote denial of service condition.

codesys / control_for_beaglebone+15
Network
Published Jan 24, 2020