Beckhoff Embedded Windows PLCs through 3.1.4024.0, and Beckhoff Twincat on Windows Engineering stations, allow an attacker to achieve Remote Code Execution (as SYSTEM) via the Beckhoff ADS protocol.
References
Link | Resource |
---|---|
https://download.beckhoff.com/download/document/product-security/Advisories/advisory-2017-001.pdf | Vendor Advisory |
https://www.ic4.be/2019/12/18/beckhoff-cve-2019-16871/#more-648 | Exploit Third Party Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mitre
Published: 2019-12-19T20:42:28
Updated: 2019-12-19T20:42:28
Reserved: 2019-09-25T00:00:00
Link: CVE-2019-16871
JSON object: View
NVD Information
Status : Analyzed
Published: 2019-12-19T21:15:13.573
Modified: 2021-07-21T11:39:23.747
Link: CVE-2019-16871
JSON object: View
Redhat Information
No data.
CWE