CVE-2019-19789

Published: Dic 20, 2019 Last Modified: Nov 21, 2024 EU-VD ID: EUVD-2019-9388 Aliases: GSD-2019-19789
ExploitDB:
Other exploit source:
Google Dorks:
MEDIUM 6,5
Attack Vector: network
Attack Complexity: low
Privileges Required: low
User Interaction: none
Scope: unchanged
Confidentiality: none
Integrity: none
Availability: high
MEDIUM 4,0
Access Vector: network
Access Complexity: low
Authentication: single
Confidentiality: none
Integrity: none
Availability: partial

Description

AI Translation Available

3S-Smart CODESYS SP Realtime NT before V2.3.7.28, CODESYS Runtime Toolkit 32 bit full before V2.4.7.54, and CODESYS PLCWinNT before V2.4.7.54 allow a NULL pointer dereference.

EPSS (Exploit Prediction Scoring System)

Trend Analysis

EPSS (Exploit Prediction Scoring System)

Prevede la probabilità di sfruttamento basata su intelligence sulle minacce e sulle caratteristiche della vulnerabilità.

EPSS Score
0,0046
Percentile
0,6th
Updated

EPSS Score Trend (Last 90 Days)

476

NULL Pointer Dereference

Stable
Common Consequences
Security Scopes Affected:
Availability Integrity Confidentiality
Potential Impacts:
Dos: Crash, Exit, Or Restart Execute Unauthorized Code Or Commands Read Memory Modify Memory
Applicable Platforms
Languages: C, C#, C++, Go, Java
View CWE Details
Application

Sp Realtime Nt by Codesys

Version Range Affected
To 2.3.7.28 (exclusive)
cpe:2.3:a:codesys:sp_realtime_nt:*:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application

Plcwinnt by Codesys

Version Range Affected
To 2.4.7.54 (exclusive)
cpe:2.3:a:codesys:plcwinnt:*:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application

Runtime Toolkit by Codesys

Version Range Affected
To 2.4.7.54 (exclusive)
cpe:2.3:a:codesys:runtime_toolkit:*:*:*:*:*:*:x86:*
Common Platform Enumeration - Standardized vulnerability identification
https://customers.codesys.com/index.php?eID=dumpFile&t=f&f=12946&token=edd5d8e8…
https://www.codesys.com
https://customers.codesys.com/index.php?eID=dumpFile&t=f&f=12946&token=edd5d8e8…
https://www.codesys.com