CVE-2019-13548: Critical severity codesys control for beaglebone sl vulnerability
CODESYS V3 web server, all versions prior to 3.5.14.10, allows an attacker to send specially crafted http or https requests which could cause a stack overflow and create a denial-of-service condition or allow remote code execution.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is CVE-2019-13548?
CVE-2019-13548 is a vulnerability in CODESYS V3 web server that allows an attacker to send specially crafted requests, leading to a denial-of-service condition or remote code execution.
Which versions of CODESYS are affected by CVE-2019-13548?
CVE-2019-13548 affects all versions of CODESYS V3 web server prior to 3.5.14.10.
How severe is CVE-2019-13548?
CVE-2019-13548 has a severity rating of 9.8 (critical).
How can an attacker exploit CVE-2019-13548?
An attacker can exploit CVE-2019-13548 by sending specially crafted HTTP or HTTPS requests to the vulnerable CODESYS V3 web server.
Is there a fix for CVE-2019-13548?
Yes, the fix for CVE-2019-13548 is to update to version 3.5.14.10 or later of CODESYS V3 web server.