Description
JTEKT TOYOPUC PLCs through 2022-04-29 mishandle authentication. They utilize the CMPLink/TCP protocol (configurable on ports 1024-65534 on either TCP or UDP) for a wide variety of engineering purposes such as starting and stopping the PLC, downloading and uploading projects, and changing configuration settings. This protocol does not have any authentication features, allowing any attacker capable of communicating with the port in question to invoke (a subset of) desired functionality.
Published: 2022-07-26
Score: 9.1 Critical
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Sun, 27 Oct 2024 15:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Subscriptions

Jtekt Nano 10gx Tuc-1157 Nano 10gx Tuc-1157 Firmware Nano Cpu Tuc-6941 Nano Cpu Tuc-6941 Firmware Pc10b-p Tcc-6373 Pc10b-p Tcc-6373 Firmware Pc10b Tcc-1021 Pc10b Tcc-1021 Firmware Pc10e Tcc-4737 Pc10e Tcc-4737 Firmware Pc10el Tcc-4747 Pc10el Tcc-4747 Firmware Pc10g-cpu Tcc-6353 Pc10g-cpu Tcc-6353 Firmware Pc10ge Tcc-6464 Pc10ge Tcc-6464 Firmware Pc10p-dp-io Tcc-6752 Pc10p-dp-io Tcc-6752 Firmware Pc10p-dp Tcc-6726 Pc10p-dp Tcc-6726 Firmware Pc10p Tcc-6372 Pc10p Tcc-6372 Firmware Pc10pe-1616p Tcc-1102 Pc10pe-1616p Tcc-1102 Firmware Pc10pe Tcc-1101 Pc10pe Tcc-1101 Firmware Pc3jx-d Tcc-6902 Pc3jx-d Tcc-6902 Firmware Pc3jx Tcc-6901 Pc3jx Tcc-6901 Firmware Pcdl Tkc-6688 Pcdl Tkc-6688 Firmware Plus Cpu Tcc-6740 Plus Cpu Tcc-6740 Firmware
cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-10-27T14:56:59.084Z

Reserved: 2022-04-29T00:00:00.000Z

Link: CVE-2022-29951

cve-icon Vulnrichment

Updated: 2024-08-03T06:33:43.193Z

cve-icon NVD

Status : Modified

Published: 2022-07-26T22:15:10.800

Modified: 2024-11-21T07:00:02.900

Link: CVE-2022-29951

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses