Omron CX-One CX-Programmer before 9.6, CJ2M PLC devices before 2.1, and CJ2H PLC devices before 1.5 rely on cleartext password transmission, which allows remote attackers to obtain sensitive information by sniffing the network during a PLC unlock request.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://ics-cert.us-cert.gov/advisories/ICSA-15-274-01 |
History
No history.
MITRE
Status: PUBLISHED
Assigner: icscert
Published: 2015-10-03T10:00:00
Updated: 2024-08-06T04:26:11.531Z
Reserved: 2015-01-10T00:00:00
Link: CVE-2015-0987
Vulnrichment
No data.
NVD
Status : Modified
Published: 2015-10-06T01:59:03.657
Modified: 2024-11-21T02:24:05.297
Link: CVE-2015-0987
Redhat
No data.