CVE-2022-2004: AutomationDirect DirectLOGIC with Ethernet Communication Uncontrolled Resource Consumption
AutomationDirect DirectLOGIC is vulnerable to a a specially crafted packet can be sent continuously to the PLC to prevent access from DirectSoft and other devices, causing a denial-of-service condition. This issue affects: AutomationDirect DirectLOGIC D0-06 series CPUs D0-06DD1 versions prior to 2.72; D0-06DD2 versions prior to 2.72; D0-06DR versions prior to 2.72; D0-06DA versions prior to 2.72; D0-06AR versions prior to 2.72; D0-06AA versions prior to 2.72; D0-06DD1-D versions prior to 2.72; D0-06DD2-D versions prior to 2.72; D0-06DR-D versions prior to 2.72;
Affected Software
Remediation
Patch Available
Information
Event History
Frequently Asked Questions
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2022-2004.
What is the severity of CVE-2022-2004?
The severity of CVE-2022-2004 is high, with a severity value of 7.5.
What is the affected software?
The affected software is AutomationDirect DirectLOGIC D0-06 series CPUs D0-06DD1 versions prior to 2.72, Automationdirect D0-06dd1 Firmware, Automationdirect D0-06dd2 Firmware, Automationdirect D0-06dr Firmware, Automationdirect D0-06da Firmware, Automationdirect D0-06ar Firmware, Automationdirect D0-06aa Firmware, Automationdirect D0-06dd1-d Firmware, Automationdirect D0-06dd2-d Firmware, and Automationdirect D0-06dr-d Firmware.
How can this vulnerability be exploited?
This vulnerability can be exploited by sending a specially crafted packet continuously to the PLC, causing a denial-of-service condition.
Where can I find more information about this vulnerability?
You can find more information about this vulnerability on the official US-CERT/ICS-CERT advisory page: https://www.cisa.gov/uscert/ics/advisories/icsa-22-167-03