PT-2022-6341 · Unknown · Mklogic-500

Published

2022-09-20

·

Updated

2022-09-20

CVSS v2.0

8.0

High

VectorAV:A/AC:L/Au:N/C:P/I:C/A:C
Name of the Vulnerable Software and Affected Versions MKLogic-500 (affected versions not specified)
Description The issue is related to a lack of authentication for a critical function in the MKLogic-500 PLC configuration protocol. This could allow a remote attacker to modify the device's logic, potentially disrupting its operation.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Missing Authentication

Weakness Enumeration

Related Identifiers

BDU:2023-00953

Affected Products

Mklogic-500