CVE-2023-6357: Codesys Control For Beaglebone Sl

High severity, CVSS 8.8. EPSS: 1% chance of exploitation in the next 30 days.

A low-privileged remote attacker could exploit the vulnerability and inject additional system commands via file system libraries which could give the attacker full control of the device.

Affected products

  • Codesys Control For Beaglebone Sl: before 4.11.0.0 (fixed in 4.11.0.0)
  • Codesys Control For Empc-a/imx6: before 4.11.0.0 (fixed in 4.11.0.0)
  • Codesys Control For IOT2000 Sl: before 4.11.0.0 (fixed in 4.11.0.0)
  • Codesys Control For Linux Arm Sl: before 4.11.0.0 (fixed in 4.11.0.0)
  • Codesys Control For Linux Sl: before 4.11.0.0 (fixed in 4.11.0.0)
  • Codesys Control For PFC100 Sl: before 4.11.0.0 (fixed in 4.11.0.0)
  • Codesys Control For PFC200 Sl: before 4.11.0.0 (fixed in 4.11.0.0)
  • Codesys Control For Plcnext Sl: before 4.11.0.0 (fixed in 4.11.0.0)
  • Codesys Control For Raspberry Pi Sl: before 4.11.0.0 (fixed in 4.11.0.0)
  • Codesys Control For Wago Touch Panels 600 Sl: before 4.11.0.0 (fixed in 4.11.0.0)
  • Codesys Runtime Toolkit: before 3.5.19.50 (fixed in 3.5.19.50)

Published 2023-12-05. Last modified 2026-06-17.