CVE-2014-0760

Severity CVSS v4.0:
Pending analysis
Type:
CWE-287 Authentication Issues
Publication date:
25/04/2014
Last modified:
02/07/2025

Description

The Festo CECX-X-C1 Modular Master Controller with CoDeSys and CECX-X-M1<br /> Modular Controller with CoDeSys and SoftMotion provide an undocumented <br /> access method involving the FTP protocol, which could allow a remote attacker to execute arbitrary code or cause a denial of service (application <br /> crash) via unspecified vectors.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:3s-software:codesys_runtime_system:-:*:*:*:*:*:*:*
cpe:2.3:h:festo:cecx-x-c1_modular_master_controller:-:*:*:*:*:*:*:*
cpe:2.3:a:softmotion3d:softmotion:-:*:*:*:*:*:*:*
cpe:2.3:h:festo:cecx-x-m1_modular_controller:-:*:*:*:*:*:*:*