CVE-2020-12067: Pilz Pmc

High severity, CVSS 7.5. EPSS: 0.5% chance of exploitation in the next 30 days.

In Pilz PMC programming tool 3.x before 3.5.17 (based on CODESYS Development System), a user's password may be changed by an attacker without knowledge of the current password.

Affected products

  • Pilz Pmc: from 3.0.0, before 3.5.17 (fixed in 3.5.17)

Published 2022-12-26. Last modified 2026-06-17.