In CODESYS Development System 3.5.9.0 to 3.5.17.0 and CODESYS Scripting 4.0.0.0 to 4.1.0.0 unsafe directory permissions would allow an attacker with local access to the workstation to place potentially harmful and disguised scripts that could be executed by legitimate users.
References
Link | Resource |
---|---|
https://cert.vde.com/en/advisories/VDE-2023-024 | Third Party Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: CERTVDE
Published: 2023-07-28T07:52:33.639Z
Updated: 2023-07-28T07:52:33.639Z
Reserved: 2023-07-14T07:43:16.307Z
Link: CVE-2023-3670
JSON object: View
NVD Information
Status : Analyzed
Published: 2023-07-28T08:15:10.557
Modified: 2023-08-03T18:44:39.050
Link: CVE-2023-3670
JSON object: View
Redhat Information
No data.
CWE