CVE Published: 11/07/2022 |
CVE Updated: 16/09/2024 |
CVE Year: 2022 Source: CERTVDE |
Vendor: CODESYS |
Product: CODESYS Control RTE (SL) Status : PUBLISHED
CVE-2022-30791 Description
In CmpBlkDrvTcp of CODESYS V3 in multiple versions an uncontrolled ressource consumption allows an unauthorized attacker to block new TCP connections. Existing connections are not affected.
Metrics
CVSS Version: 3.1 |
Base Score: 7.5 HIGH Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H