Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-c7q6-prxw-fgx7

Опубликовано: 22 янв. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 8.6

Описание

The Omron FINS protocol has an authenticated feature to prevent access to memory regions. Authentication is susceptible to bruteforce attack, which may allow an adversary to gain access to protected memory. This access can allow overwrite of values including programmed logic.

The Omron FINS protocol has an authenticated feature to prevent access to memory regions. Authentication is susceptible to bruteforce attack, which may allow an adversary to gain access to protected memory. This access can allow overwrite of values including programmed logic.

EPSS

Процентиль: 59%
0.00389
Низкий

8.6 High

CVSS3

Дефекты

CWE-307

Связанные уязвимости

CVSS3: 8.6
nvd
около 2 лет назад

The Omron FINS protocol has an authenticated feature to prevent access to memory regions. Authentication is susceptible to bruteforce attack, which may allow an adversary to gain access to protected memory. This access can allow overwrite of values including programmed logic.

CVSS3: 7.5
fstec
больше 2 лет назад

Уязвимость реализации протокола FINS программируемых логических контроллеров Omron серий CJ/CS/CP, позволяющая нарушителю реализовать атаку методом «грубой силы» (brute force)

EPSS

Процентиль: 59%
0.00389
Низкий

8.6 High

CVSS3

Дефекты

CWE-307