CVE-2024-6876: Codesys Oscat Basic Library

Medium severity, CVSS 4.4. EPSS: 0.2% chance of exploitation in the next 30 days.

Out-of-Bounds read vulnerability in OSCAT Basic Library allows an local, unprivileged attacker to access limited internal data of the PLC which may lead to a crash of the affected service.

Affected products

  • Codesys Oscat Basic Library: before 3.5.5.0 (fixed in 3.5.5.0)

Published 2024-09-10. Last modified 2026-06-17.