blackorbird[verified]@blackorbirdGeneral
The tweet promotes a blog post about backdooring CODESYS applications via vulnerability chaining for CVE‑2025‑41658, ‑41659, and ‑41660, but does not provide specific technical details, PoC, or evidence of exploitation.
DFIR Radar[verified]@DFIR_RadarDisclosure
Researchers have identified a chain of CVEs (CVE-2025-41658, CVE-2025-41659, CVE-2025-41660) in CODESYS Control runtime that enable authenticated attackers to inject code and gain root-level control of PLCs across various industrial sectors.
RedPacket Security@RedPacketSecGeneral
The post is a brief CVE alert with a link to an external resource but provides no technical or actionable details.
Vulmon Vulnerability Feed@VulmonFeedsDisclosure
CVE-2025-41660 is a Remote Code Execution vulnerability in the CODESYS Control Runtime System caused by boot application replacement. No PoC, exploit, patch, or active exploitation evidence has been reported.
CVE@CVEnewDisclosure
The post announces CVE‑2025‑41660, noting that a low‑privileged remote attacker could replace the boot application in the CODESYS Control runtime to execute unauthorized code.
CVEFind.com@CveFindComDisclosure
The tweet announces CVE‑2025‑41660, describing a high‑severity flaw that allows a low‑privileged remote attacker to replace the boot application and execute unauthorized code on the CODESYS Control runtime system, without providing PoC, exploit, or patch details.