7.8
CVE-2022-2006
- EPSS 0.2%
- Veröffentlicht 31.08.2022 16:15:10
- Zuletzt bearbeitet 21.11.2024 07:00:09
- Quelle ics-cert@hq.dhs.gov
- CVE-Watchlists
- Unerledigt
AutomationDirect DirectLOGIC has a DLL vulnerability in the install directory that may allow an attacker to execute code during the installation process. This issue affects: AutomationDirect C-more EA9 EA9-T6CL versions prior to 6.73; EA9-T6CL-R versions prior to 6.73; EA9-T7CL versions prior to 6.73; EA9-T7CL-R versions prior to 6.73; EA9-T8CL versions prior to 6.73; EA9-T10CL versions prior to 6.73; EA9-T10WCL versions prior to 6.73; EA9-T12CL versions prior to 6.73; EA9-T15CL versions prior to 6.73; EA9-RHMI versions prior to 6.73; EA9-PGMSW versions prior to 6.73;
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Automationdirect ≫ C-more Ea9-t6cl Firmware Version < 6.73
Automationdirect ≫ C-more Ea9-t6cl-r Firmware Version < 6.73
Automationdirect ≫ C-more Ea9-t7cl Firmware Version < 6.73
Automationdirect ≫ C-more Ea9-t7cl-r Firmware Version < 6.73
Automationdirect ≫ C-more Ea9-t8cl Firmware Version < 6.73
Automationdirect ≫ C-more Ea9-t10cl Firmware Version < 6.73
Automationdirect ≫ C-more Ea9-t10wcl Firmware Version < 6.73
Automationdirect ≫ C-more Ea9-t12cl Firmware Version < 6.73
Automationdirect ≫ C-more Ea9-t15cl Firmware Version < 6.73
Automationdirect ≫ C-more Ea9-t15cl-r Firmware Version < 6.73
Automationdirect ≫ C-more Ea9-rhmi Firmware Version < 6.73
Automationdirect ≫ C-more Ea9-pgmsw Firmware Version < 6.73
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.2% | 0.416 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 7.8 | 1.8 | 5.9 |
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
|
| ics-cert@hq.dhs.gov | 7.8 | 1.8 | 5.9 |
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
|
CWE-427 Uncontrolled Search Path Element
The product uses a fixed or controlled search path to find resources, but one or more locations in that path can be under the control of unintended actors.