CNNVD-202601-3413 Information

CNNVD ID

CNNVD-202601-3413

CVE-2021-47770

  • CNNVD Published: 2026-01-21

Description (Chinese)

OpenPLC是Thiago Alves个人开发者的一种开源的可编程逻辑控制器。可为自动化和研究提供低成本的工业解决方案。 OpenPLC v3版本存在代码注入漏洞,该漏洞源于通过硬件配置接口存在经过身份验证的远程代码执行,可能导致执行恶意代码。

Description (English)

OpenPLC is an open source programmable logic controller for Thiago Alves personal developers. Low-cost industrial solutions can be provided for automation and research. OpenPLC v3 has a code-injection loophole, which stems from the presence of an authentication remote code through the hardware configuration interface, which may lead to the implementation of malicious codes.

Hazard Level

Medium

Vulnerability Type

代码注入

Affected Vendor

个人开发者

Published

2026-01-21

Last Modified

2026-02-24

References

https://github.com/thiagoralves/OpenPLC_v3 https://www.openplcproject.com/ https://www.vulncheck.com/advisories/openplc-remote-code-execution https://www.exploit-db.com/exploits/49803 https://access.redhat.com/security/cve/cve-2021-47770

Patch

https://autonomylogic.com/download

Share on: