The CmpWebServer.dll module in the Control service in 3S CoDeSys 3.4 SP4 Patch 2 allows remote attackers to cause a denial of service (NULL pointer dereference) via (1) a crafted Content-Length in an HTTP POST or (2) an invalid HTTP request method.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Codesys | 3ssoftware | 3.4-sp4 (including) | 3.4-sp4 (including) |