Affected products do not properly synchronize access to their monitoring functionality. When multiple clients send concurrent requests, this may lead to incorrect reads or writes, or to corruption of internal memory structures. An authenticated remote attacker with monitoring access can exploit this issue to cause incorrect data processing or a denial-of-service condition.
Project Subscriptions
| Vendors | Products |
|---|---|
|
Codesys
Subscribe
|
Control For Beaglebone Sl
Subscribe
Control For Empc-a/imx6 Sl
Subscribe
Control For Iot2000 Sl
Subscribe
Control For Linux Arm Sl
Subscribe
Control For Linux Sl
Subscribe
Control For Pfc100 Sl
Subscribe
Control For Pfc200 Sl
Subscribe
Control For Plcnext Sl
Subscribe
Control For Raspberry Pi Sl
Subscribe
Control For Wago Touch Panels 600 Sl
Subscribe
Control Rte (for Beckhoff Cx) Sl
Subscribe
Control Rte (sl)
Subscribe
Control Win (sl)
Subscribe
Development System V3
Subscribe
Hmi (sl)
Subscribe
Runtime Toolkit
Subscribe
Safety Sil2
Subscribe
Virtual Control Sl
Subscribe
|
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
| Link | Providers |
|---|---|
| https://www.certvde.com/en/advisories/VDE-2026-097/ |
|
History
Wed, 30 Sep 2026 12:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Codesys
Codesys control For Beaglebone Sl Codesys control For Empc-a/imx6 Sl Codesys control For Iot2000 Sl Codesys control For Linux Arm Sl Codesys control For Linux Sl Codesys control For Pfc100 Sl Codesys control For Pfc200 Sl Codesys control For Plcnext Sl Codesys control For Raspberry Pi Sl Codesys control For Wago Touch Panels 600 Sl Codesys control Rte (for Beckhoff Cx) Sl Codesys control Rte (sl) Codesys control Win (sl) Codesys development System V3 Codesys hmi (sl) Codesys runtime Toolkit Codesys safety Sil2 Codesys virtual Control Sl |
|
| Vendors & Products |
Codesys
Codesys control For Beaglebone Sl Codesys control For Empc-a/imx6 Sl Codesys control For Iot2000 Sl Codesys control For Linux Arm Sl Codesys control For Linux Sl Codesys control For Pfc100 Sl Codesys control For Pfc200 Sl Codesys control For Plcnext Sl Codesys control For Raspberry Pi Sl Codesys control For Wago Touch Panels 600 Sl Codesys control Rte (for Beckhoff Cx) Sl Codesys control Rte (sl) Codesys control Win (sl) Codesys development System V3 Codesys hmi (sl) Codesys runtime Toolkit Codesys safety Sil2 Codesys virtual Control Sl |
Wed, 30 Sep 2026 09:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Affected products do not properly synchronize access to their monitoring functionality. When multiple clients send concurrent requests, this may lead to incorrect reads or writes, or to corruption of internal memory structures. An authenticated remote attacker with monitoring access can exploit this issue to cause incorrect data processing or a denial-of-service condition. | |
| Title | Improper Synchronization in Monitoring in CODESYS Control Runtime | |
| Weaknesses | CWE-362 | |
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: CERTVDE
Published:
Updated: 2026-09-30T13:49:14.992Z
Reserved: 2026-08-25T08:46:38.207Z
Link: CVE-2026-79625
No data.
Status : Received
Published: 2026-09-30T10:17:17.273
Modified: 2026-09-30T14:17:30.107
Link: CVE-2026-79625
No data.
OpenCVE Enrichment
Updated: 2026-09-30T12:00:16Z
Weaknesses