A low-privileged remote attacker may be able to replace the boot application of the CODESYS Control runtime system, enabling unauthorized code execution.
Project Subscriptions
No data.
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
| Link | Providers |
|---|---|
| https://certvde.com/de/advisories/VDE-2026-011 |
|
History
Tue, 24 Mar 2026 08:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A low-privileged remote attacker may be able to replace the boot application of the CODESYS Control runtime system, enabling unauthorized code execution. | |
| Title | CODESYS Control Boot Application Replacement Enables Code Execution | |
| Weaknesses | CWE-669 | |
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: CERTVDE
Published:
Updated: 2026-03-24T07:41:43.004Z
Reserved: 2025-04-16T11:17:48.307Z
Link: CVE-2025-41660
No data.
Status : Received
Published: 2026-03-24T08:16:00.230
Modified: 2026-03-24T08:16:00.230
Link: CVE-2025-41660
No data.
OpenCVE Enrichment
No data.
Weaknesses