An out‑of‑bounds write vulnerability in the CODESYS PROFINET Controller allows an unauthenticated attacker on the same network segment to send malformed PROFINET communication data that triggers an exception in the affected PLC application. The exception is handled by the CODESYS Control runtime system and results in a controlled stop of the PLC application.
References
| Link | Resource |
|---|---|
| https://www.certvde.com/en/advisories/VDE-2026-041/ |
Configurations
No configuration.
History
No history.
Information
Published : 2026-07-29 08:16
Updated : 2026-07-30 14:31
NVD link : CVE-2026-35226
Mitre link : CVE-2026-35226
CVE.ORG link : CVE-2026-35226
JSON object : View
Products Affected
No product.
CWE
CWE-787
Out-of-bounds Write
