CVE-2019-16871

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
19/12/2019
Last modified:
21/07/2021

Description

Beckhoff Embedded Windows PLCs through 3.1.4024.0, and Beckhoff Twincat on Windows Engineering stations, allow an attacker to achieve Remote Code Execution (as SYSTEM) via the Beckhoff ADS protocol.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:beckhoff:twincat:*:*:*:*:*:*:*:* 3.0 (including) 3.1 (excluding)
cpe:2.3:a:beckhoff:twincat:2.0:*:*:*:*:*:*:*
cpe:2.3:a:beckhoff:twincat:3.1:build_4022:*:*:*:*:*:*
cpe:2.3:a:beckhoff:twincat:3.1:build_4024.0:*:*:*:*:*:*