SEVD-2021-130-06 CODESYS Vulnerabilities Security Notification
This document is a security notification from Schneider Electric detailing multiple critical and high-severity vulnerabilities in the 3S CODESYS third-party component integrated into several of their products, including EcoStruxure Machine Expert, Modicon M218/M241/M251/M262, LMC PacDrive, HMISCU, ATV IMC, and SoMachine/SoMachine Motion. It provides affected product versions, specific CVE details (CVE-2020-10245, CVE-2020-6081, CVE-2019-13538, CVE-2019-9008, CVE-2019-9009, CVE-2020-7052) with CVSS scores, and remediation steps such as firmware updates and network mitigation strategies to prevent denial of service and remote code execution.
Failed to load PDF
Download insteadYou might also like
Geo SCADA 2019 Release Notes – July 2022 Update
62 pages
Satchwell Climatronic AXR Controller-Motor Data Sheet
4 pages
Installed Base Obsolescence Assessment
7 pages
SmartX AS-P Server Specification Sheet
7 pages
SpaceLogic M400 Actuator Specification Sheet
6 pages
SEP6 Switched Rack PDU Specifications
2 pages
STD500 Series Duct Temperature Sensor Specification Sheet
2 pages
Integrating AI with Legacy SCADA Systems at the Industrial Edge Application Note
8 pages
Geo SCADA Expert 2022 Release Notes – May 2023 Update
33 pages
TAC STR150 Wall Module Technical Data and Configuration
2 pages