CVE-2023-3670

CVSS 3.1 Score 7.8 of 10 (high)

Details

Published Jul 28, 2023
Updated: Aug 3, 2023
CWE ID 59

Summary

CVE-2023-3670 is a vulnerability affecting CODESYS Development System versions 3.5.9.0 to 3.5.17.0 and CODESYS Scripting versions 4.0.0.0 to 4.1.0.0. This issue involves unsafe directory permissions, which can enable an attacker with local access to the workstation to place deceptive scripts. These scripts, if executed by legitimate users, could potentially harm the system.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share