Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2026-9307

Опубликовано: 16 июн. 2026
Источник: nvd
EPSS Низкий

Описание

A sensitive information disclosure security issue exists within the affected CompactLogix controllers. The controller's web server exposes CIP Connection IDs on the diagnostics webpage, which are accessible to any unauthenticated user on the network. This information can be leveraged by an attacker to construct malicious packets, leading to Denial-of-Service.

EPSS

Процентиль: 22%
0.00298
Низкий

Дефекты

CWE-497

Связанные уязвимости

github
около 2 месяцев назад

A sensitive information disclosure security issue exists within the affected CompactLogix controllers. The controller's web server exposes CIP Connection IDs on the diagnostics webpage, which are accessible to any unauthenticated user on the network. This information can be leveraged by an attacker to construct malicious packets, leading to Denial-of-Service.

EPSS

Процентиль: 22%
0.00298
Низкий

Дефекты

CWE-497