CVE-2022-31804 is a denial-of-service vulnerability affecting CODESYS Gateway Server V2. An unauthenticated attacker can exploit a lack of size verification in requests to allocate excessive memory, causing the server to crash due to an out-of-memory condition. This high-severity vulnerability (CVSS 7.5) requires no user interaction and has a low attack complexity. Currently, there is no evidence of active exploitation, publicly available exploit code, or significant community discussion.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
>= 2.0, < 2.3.9.38CPE matchmatch criteria | cpe:2.3:a:codesys:gateway:*:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:N/AC:L/Au:N/C:N/I:N/A:P
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.