- What is the severity of CVE-2012-6068?
- CVE-2012-6068 has been scored as a critical severity vulnerability.
- How to fix CVE-2012-6068?
- To fix CVE-2012-6068: CoDeSys recommends upgrading to the latest version, which is Version 3. It can be downloaded here https://store.codesys.com/engineering/codesys.html .3S released a patch which implements a password for authentication to the device. The patch can be downloaded from the CoDeSys Download Center http://www.codesys.com/download.html . CoDeSys Version 3.X is not affected by these vulnerabilities.
- Is CVE-2012-6068 being actively exploited in the wild?
- It is possible that CVE-2012-6068 is being exploited or will be exploited in a near future based on public information. According to its EPSS score, there is a ~2% probability that this vulnerability will be exploited by malicious actors in the next 30 days.
- What software or system is affected by CVE-2012-6068?
- CVE-2012-6068 affects 3S-Smart Software Solutions CODESYS Control Runtime embedded, 3S-Smart Software Solutions CODESYS Control Runtime full, 3S-Smart Software Solutions CODESYS Control RTE, Festo CECX-X-C1 Modular Master Controller with CoDeSys, Festo CECX-X-M1 Modular Controller with CoDeSys and SoftMotion, 3S-Smart Software Solutions CoDeSys.