CNNVD-202508-202 Information

CNNVD ID

CNNVD-202508-202

CVE-2025-41658

  • CNNVD Published: 2025-08-04

Description (Chinese)

CODESYS Runtime Toolkit是德国CODESYS公司的一个全面的可编程控制器软件开发工具包。用于将嵌入式平台或工业 PC 转化为控制器,支持二次开发。 CODESYS Runtime Toolkit存在安全漏洞,该漏洞源于默认文件权限,可能导致敏感文件暴露。

Description (English)

CODESYS Runte Toolkit is a comprehensive programmable controller software development toolkit for CODESYS, Germany. To convert embedded platforms or industrial PCs into controllers to support secondary development. CODESYS Runtime Toolkit has a security loophole, which stems from default document privileges and may lead to the exposure of sensitive documents.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

CODESYS

Published

2025-08-04

Last Modified

2026-02-24

References

https://certvde.com/de/advisories/VDE-2025-049 https://access.redhat.com/security/cve/cve-2025-41658

Patch

https://us.codesys.com/

Share on: