First published: Tue Mar 18 2025(Updated: )
An unauthenticated remote attacker can gain limited information of the PLC network but the user management of the PLCs prevents the actual access to the PLCs.
Credit: info@cert.vde.com
Affected Software | Affected Version | How to fix |
---|---|---|
CODESYS Edge Gateway |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-41975 is considered to have a low severity due to the limited information disclosure and the protective user management of the PLCs.
To address CVE-2024-41975, ensure that the latest updates and patches for CODESYS Edge Gateway for Windows are applied.
CVE-2024-41975 affects users of CODESYS Edge Gateway for Windows who have improperly secured PLC networks.
CVE-2024-41975 does not allow for unauthorized access to the PLCs due to user management controls, but it can lead to limited information disclosure.
If your system is affected by CVE-2024-41975, review your network security measures and update your CODESYS Edge Gateway software.