Vulnerability record · CVE-2020-7052 · published 24 January 2020
CVE-2020-7052: Codesys control for beaglebone allocation without limits vulnerability
Codesys · Control For Beaglebone
CODESYS Control V3, Gateway V3, and HMI V3 before 3.5.15.30 allow uncontrolled memory allocation which can result in a remote denial of service condition.
Description
CODESYS Control V3, Gateway V3, and HMI V3 before 3.5.15.30 allow uncontrolled memory allocation which can result in a remote denial of service condition.
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Affected products
15 vulnerable configurations from NVD's CPE data, grouped by vendor and product.
References
| Link | Tags |
|---|---|
| https://customers.codesys.com/index.php?eID=dumpFile&t=f&f=12977&token=33f948eed0c2fd69d238d9515779be337ef7592d&download | Vendor Advisory |
| https://www.tenable.com/security/research/tra-2020-04 | ExploitThird Party Advisory |
| https://customers.codesys.com/index.php?eID=dumpFile&t=f&f=12977&token=33f948eed0c2fd69d238d9515779be337ef7592d&download | Vendor Advisory |
| https://www.tenable.com/security/research/tra-2020-04 | ExploitThird Party Advisory |
Track CVE-2020-7052 inside VULONE
Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.
Related vulnerabilities
Same products first, then exploited flaws of the same weakness class.
Source: NIST National Vulnerability Database (record CVE-2020-7052), CISA KEV, FIRST EPSS (scores of 2026-09-27). This page is refreshed as NVD updates the record.