Description
Authentication bypass by capture-replay vulnerability exists in Machine automation controller NX7 series all models V1.28 and earlier, Machine automation controller NX1 series all models V1.48 and earlier, and Machine automation controller NJ series all models V 1.48 and earlier, which may allow an adjacent attacker who can analyze the communication between the controller and the specific software used by OMRON internally to cause a denial-of-service (DoS) condition or execute a malicious program.
Published: 2022-07-04
Score: 7.5 High
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2022-37007 Authentication bypass by capture-replay vulnerability exists in Machine automation controller NX7 series all models V1.28 and earlier, Machine automation controller NX1 series all models V1.48 and earlier, and Machine automation controller NJ series all models V 1.48 and earlier, which may allow an adjacent attacker who can analyze the communication between the controller and the specific software used by OMRON internally to cause a denial-of-service (DoS) condition or execute a malicious program.
History

No history.

Subscriptions

Omron Nj-pa3001 Nj-pa3001 Firmware Nj-pd3001 Nj-pd3001 Firmware Nj101-1000 Nj101-1000 Firmware Nj101-1020 Nj101-1020 Firmware Nj101-9000 Nj101-9000 Firmware Nj101-9020 Nj101-9020 Firmware Nj301-1100 Nj301-1100 Firmware Nj301-1200 Nj301-1200 Firmware Nj501-1300 Nj501-1300 Firmware Nj501-1320 Nj501-1320 Firmware Nj501-1340 Nj501-1340 Firmware Nj501-140 Nj501-140 Firmware Nj501-1420 Nj501-1420 Firmware Nj501-1500 Nj501-1500 Firmware Nj501-1520 Nj501-1520 Firmware Nj501-4300 Nj501-4300 Firmware Nj501-4310 Nj501-4310 Firmware Nj501-4320 Nj501-4320 Firmware Nj501-4400 Nj501-4400 Firmware Nj501-4500 Nj501-4500 Firmware Nj501-5300 Nj501-5300 Firmware Nj501-r300 Nj501-r300 Firmware Nj501-r320 Nj501-r320 Firmware Nj501-r400 Nj501-r400 Firmware Nj501-r420 Nj501-r420 Firmware Nj501-r500 Nj501-r500 Firmware Nj501-r520 Nj501-r520 Firmware Nx102-1000 Nx102-1000 Firmware Nx102-1020 Nx102-1020 Firmware Nx102-1100 Nx102-1100 Firmware Nx102-1120 Nx102-1120 Firmware Nx102-1200 Nx102-1200 Firmware Nx102-1220 Nx102-1220 Firmware Nx102-9020 Nx102-9020 Firmware Nx1p2-1040dt Nx1p2-1040dt1 Nx1p2-1040dt1 Firmware Nx1p2-1040dt Firmware Nx1p2-1140dt Nx1p2-1140dt1 Nx1p2-1140dt1 Firmware Nx1p2-1140dt Firmware Nx1p2-9024dt Nx1p2-9024dt1 Nx1p2-9024dt1 Firmware Nx1p2-9024dt Firmware Nx1w-adb21 Nx1w-adb21 Firmware Nx1w-cif01 Nx1w-cif01 Firmware Nx1w-cif11 Nx1w-cif11 Firmware Nx1w-cif12 Nx1w-cif12 Firmware Nx1w-dab21v Nx1w-dab21v Firmware Nx1w-mab221 Nx1w-mab221 Firmware Nx701-1600 Nx701-1600 Firmware Nx701-1620 Nx701-1620 Firmware Nx701-1700 Nx701-1700 Firmware Nx701-1720 Nx701-1720 Firmware Nx701-z600 Nx701-z600 Firmware Nx701-z700 Nx701-z700 Firmware
cve-icon MITRE

Status: PUBLISHED

Assigner: jpcert

Published:

Updated: 2024-08-03T08:16:16.110Z

Reserved: 2022-06-21T00:00:00.000Z

Link: CVE-2022-33971

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2022-07-04T02:15:07.670

Modified: 2024-11-21T07:08:41.690

Link: CVE-2022-33971

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses