CVE-2026-2364: CODESYS Installer TOCTOU Privilege Escalation
If a legitimate user confirms a self-update prompt or initiate an installation of a CODESYS Development System, a low privileged local attacker can gain elevated rights due to a TOCTOU vulnerability in the CODESYS installer.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-2364?
CVE-2026-2364 is considered a low severity vulnerability that may allow privilege escalation for local attackers.
How do I fix CVE-2026-2364?
To mitigate CVE-2026-2364, ensure that users do not initiate self-updates or installations without verifying the source of the update.
Who is affected by CVE-2026-2364?
CVE-2026-2364 affects users of the CODESYS Development System who have the ability to perform self-updates.
What type of vulnerability is CVE-2026-2364?
CVE-2026-2364 is a TOCTOU (Time of Check to Time of Use) vulnerability that leads to potential privilege escalation.
Can remote attackers exploit CVE-2026-2364?
No, CVE-2026-2364 requires local access to the system, making it non-exploitable by remote attackers.