The Omron FINS protocol has an authenticated feature to prevent access to memory regions. Authentication is susceptible to bruteforce attack, which may allow an adversary to gain access to protected memory. This access can allow overwrite of values including programmed logic.

Project Subscriptions

Vendors Products
Cj1g-cpu42p Subscribe
Cj1g-cpu42p Firmware Subscribe
Cj1g-cpu43p Subscribe
Cj1g-cpu43p Firmware Subscribe
Cj1g-cpu44p Subscribe
Cj1g-cpu44p Firmware Subscribe
Cj1g-cpu45p Subscribe
Cj1g-cpu45p-gtc Subscribe
Cj1g-cpu45p-gtc Firmware Subscribe
Cj1g-cpu45p Firmware Subscribe
Cj2h-cpu64 Subscribe
Cj2h-cpu64-eip Subscribe
Cj2h-cpu64-eip Firmware Subscribe
Cj2h-cpu64 Firmware Subscribe
Cj2h-cpu65 Subscribe
Cj2h-cpu65-eip Subscribe
Cj2h-cpu65-eip Firmware Subscribe
Cj2h-cpu65 Firmware Subscribe
Cj2h-cpu66 Subscribe
Cj2h-cpu66-eip Subscribe
Cj2h-cpu66-eip Firmware Subscribe
Cj2h-cpu66 Firmware Subscribe
Cj2h-cpu67 Subscribe
Cj2h-cpu67-eip Subscribe
Cj2h-cpu67-eip Firmware Subscribe
Cj2h-cpu67 Firmware Subscribe
Cj2h-cpu68 Subscribe
Cj2h-cpu68-eip Subscribe
Cj2h-cpu68-eip Firmware Subscribe
Cj2h-cpu68 Firmware Subscribe
Cj2m-cpu11 Subscribe
Cj2m-cpu11 Firmware Subscribe
Cj2m-cpu12 Subscribe
Cj2m-cpu12 Firmware Subscribe
Cj2m-cpu13 Subscribe
Cj2m-cpu13 Firmware Subscribe
Cj2m-cpu14 Subscribe
Cj2m-cpu14 Firmware Subscribe
Cj2m-cpu15 Subscribe
Cj2m-cpu15 Firmware Subscribe
Cj2m-cpu31 Subscribe
Cj2m-cpu31 Firmware Subscribe
Cj2m-cpu32 Subscribe
Cj2m-cpu32 Firmware Subscribe
Cj2m-cpu33 Subscribe
Cj2m-cpu33 Firmware Subscribe
Cj2m-cpu34 Subscribe
Cj2m-cpu34 Firmware Subscribe
Cj2m-cpu35 Subscribe
Cj2m-cpu35 Firmware Subscribe
Cj2m-md211 Subscribe
Cj2m-md211 Firmware Subscribe
Cj2m-md212 Subscribe
Cj2m-md212 Firmware Subscribe
Cp1e-e Firmware Subscribe
Cp1e-n Firmware Subscribe
Cs1d-cpu42s Subscribe
Cs1d-cpu42s Firmware Subscribe
Cs1d-cpu44s Subscribe
Cs1d-cpu44s Firmware Subscribe
Cs1d-cpu65h Subscribe
Cs1d-cpu65h Firmware Subscribe
Cs1d-cpu65p Subscribe
Cs1d-cpu65p Firmware Subscribe
Cs1d-cpu65s Subscribe
Cs1d-cpu65s Firmware Subscribe
Cs1d-cpu67h Subscribe
Cs1d-cpu67h Firmware Subscribe
Cs1d-cpu67p Subscribe
Cs1d-cpu67p Firmware Subscribe
Cs1d-cpu67s Subscribe
Cs1d-cpu67s Firmware Subscribe
Cs1g-cpu42h Subscribe
Cs1g-cpu42h Firmware Subscribe
Cs1g-cpu43h Subscribe
Cs1g-cpu43h Firmware Subscribe
Cs1g-cpu44h Subscribe
Cs1g-cpu44h Firmware Subscribe
Cs1g-cpu45h Subscribe
Cs1g-cpu45h Firmware Subscribe
Cs1h-cpu63h Subscribe
Cs1h-cpu63h Firmware Subscribe
Cs1h-cpu64h Subscribe
Cs1h-cpu64h Firmware Subscribe
Cs1h-cpu65h Subscribe
Cs1h-cpu65h Firmware Subscribe
Cs1h-cpu66h Subscribe
Cs1h-cpu66h Firmware Subscribe
Cs1h-cpu67h Subscribe
Cs1h-cpu67h Firmware Subscribe
Advisories
Source ID Title
EUVD EUVD EUVD-2022-48646 The Omron FINS protocol has an authenticated feature to prevent access to memory regions. Authentication is susceptible to bruteforce attack, which may allow an adversary to gain access to protected memory. This access can allow overwrite of values including programmed logic.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

Wed, 13 Nov 2024 17:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: Dragos

Published:

Updated: 2024-11-13T16:53:38.204Z

Reserved: 2022-11-22T17:52:43.198Z

Link: CVE-2022-45790

cve-icon Vulnrichment

Updated: 2024-08-03T14:17:04.118Z

cve-icon NVD

Status : Modified

Published: 2024-01-22T18:15:19.497

Modified: 2024-11-21T07:29:43.447

Link: CVE-2022-45790

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses