CVE-2019-13533

In Omron PLC CJ series, all versions, and Omron PLC CS series, all versions, an attacker could monitor traffic between the PLC and the controller and replay requests that could result in the opening and closing of industrial valves.
References
Link Resource
https://www.us-cert.gov/ics/advisories/icsa-19-346-02 Third Party Advisory US Government Resource
https://www.us-cert.gov/ics/advisories/icsa-19-346-02 Third Party Advisory US Government Resource
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:omron:plc_cj_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:omron:plc_cs_firmware:*:*:*:*:*:*:*:*

History

21 Nov 2024, 04:25

Type Values Removed Values Added
References () https://www.us-cert.gov/ics/advisories/icsa-19-346-02 - Third Party Advisory, US Government Resource () https://www.us-cert.gov/ics/advisories/icsa-19-346-02 - Third Party Advisory, US Government Resource

Information

Published : 2019-12-16 20:15

Updated : 2024-11-21 04:25


NVD link : CVE-2019-13533

Mitre link : CVE-2019-13533

CVE.ORG link : CVE-2019-13533


JSON object : View

Products Affected

omron

  • plc_cs_firmware
  • plc_cj_firmware
CWE
CWE-294

Authentication Bypass by Capture-replay