Vulnerability Description
Horner Automation’s RCC 972 firmware version 15.40 contains global variables. This could allow an attacker to read out sensitive values and variable keys from the device.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Hornerautomation | Rcc972 Firmware | 15.40 |
| Hornerautomation | Rcc972 | - |
Related Weaknesses (CWE)
References
- https://www.cisa.gov/uscert/ics/advisories/icsa-22-335-02PatchThird Party AdvisoryUS Government Resource
- https://www.cisa.gov/uscert/ics/advisories/icsa-22-335-02PatchThird Party AdvisoryUS Government Resource
FAQ
What is CVE-2022-2642?
CVE-2022-2642 is a vulnerability with a CVSS score of 7.5 (HIGH). Horner Automation’s RCC 972 firmware version 15.40 contains global variables. This could allow an attacker to read out sensitive values and variable keys from the device.
How severe is CVE-2022-2642?
CVE-2022-2642 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2022-2642?
Check the references section above for vendor advisories and patch information. Affected products include: Hornerautomation Rcc972 Firmware, Hornerautomation Rcc972.