CVE-2023-37551 MEDIUM

CVE-2023-37551: CODESYS Files or Directories Accessible to External Parties in CmpApp

Vendor Codesys
Product CODESYS Control for BeagleBone SL
Weakness CWE-552 · Files accessible externally
Published August 3, 2023
Last update October 11, 2024

CVSS base score

6.5/10
Attack vector Network
Attack complexity Low
Privileges required Low
User interaction None
Confidentiality None
Integrity High

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N

What the vulnerability does

01Description

In multiple Codesys products in multiple versions, after successful authentication as a user, specially crafted network communication requests can utilize the CmpApp component to download files with any file extensions to the controller. In contrast to the regular file download via CmpFileTransfer, no filtering of certain file types is performed here. As a result, the integrity of the CODESYS control runtime system may be compromised by the files loaded onto the controller.

Key dates

02Disclosure timeline

August 3, 2023 CVE published
October 11, 2024 Record updated