CVE-2012-4706: 3s-Software Codesys Gateway-Server

High severity, CVSS 7.8. EPSS: 1.6% chance of exploitation in the next 30 days.

Integer signedness error in 3S CODESYS Gateway-Server before 2.3.9.27 allows remote attackers to cause a denial of service via a crafted packet that triggers a heap-based buffer overflow.

Affected products

  • 3s-Software Codesys Gateway-Server: up to and including 2.3.9.20; version 2.3.5.1 only; version 2.3.5.2 only; version 2.3.5.3 only; version 2.3.6.0 only; version 2.3.7.0 only; …

Published 2013-02-24. Last modified 2026-06-16.