CVE-2022-2005: AutomationDirect C-more EA9 HMI Cleartext Transmission
AutomationDirect C-more EA9 HTTP webserver uses an insecure mechanism to transport credentials from client to web server, which may allow an attacker to obtain the login credentials and login as a valid user. This issue affects: AutomationDirect C-more EA9 EA9-T6CL versions prior to 6.73; EA9-T6CL-R versions prior to 6.73; EA9-T7CL versions prior to 6.73; EA9-T7CL-R versions prior to 6.73; EA9-T8CL versions prior to 6.73; EA9-T10CL versions prior to 6.73; EA9-T10WCL versions prior to 6.73; EA9-T12CL versions prior to 6.73; EA9-T15CL versions prior to 6.73; EA9-RHMI versions prior to 6.73; EA9-PGMSW versions prior to 6.73;
Affected Software
Remediation
Patch Available
Information
Event History
Frequently Asked Questions
What is CVE-2022-2005?
CVE-2022-2005 is a vulnerability in the AutomationDirect C-more EA9 HTTP webserver that allows an attacker to obtain login credentials and login as a valid user.
How does CVE-2022-2005 affect AutomationDirect C-more EA9?
CVE-2022-2005 affects AutomationDirect C-more EA9 versions prior to 6.73, allowing an attacker to obtain login credentials and login as a valid user.
What is the severity of CVE-2022-2005?
CVE-2022-2005 has a severity rating of 7.5 (high).
How can an attacker exploit CVE-2022-2005?
An attacker can exploit CVE-2022-2005 by intercepting and obtaining the insecurely transmitted credentials between the client and web server.
Is there a fix for CVE-2022-2005?
Yes, upgrading to AutomationDirect C-more EA9 version 6.73 or newer will fix the vulnerability.