CVE-2018-10612

CVE-2018-10612

Vendor 3S-Smart
Product 3S-Smart Software Solutions GmbH CODESYS Control V3 products prior to version 3.5.14.0
Weakness CWE-284
Published January 29, 2019
Last update September 17, 2024

CVSS base score

What the vulnerability does

01Description

In 3S-Smart Software Solutions GmbH CODESYS Control V3 products prior to version 3.5.14.0, user access management and communication encryption is not enabled by default, which could allow an attacker access to the device and sensitive information, including user credentials.

Key dates

02Disclosure timeline

January 29, 2019 CVE published
September 17, 2024 Record updated