Description
The CODESYS OPC DA Server prior V3.5.18.20 stores PLC passwords as plain text in its configuration file so that it is visible to all authorized Microsoft Windows users of the system.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-25074 | The CODESYS OPC DA Server prior V3.5.18.20 stores PLC passwords as plain text in its configuration file so that it is visible to all authorized Microsoft Windows users of the system. |
References
History
Sat, 12 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Status: PUBLISHED
Assigner: CERTVDE
Published:
Updated: 2024-09-16T20:38:06.332Z
Reserved: 2022-05-18T00:00:00.000Z
Link: CVE-2022-1794
No data.
Status : Modified
Published: 2022-07-11T11:15:08.047
Modified: 2024-11-21T06:41:29.057
Link: CVE-2022-1794
No data.
OpenCVE Enrichment
No data.
EUVD