CVE-2022-45794: Omron CJ-series and CS-series unauthenticated filesystem access.
An attacker with network access to the affected PLC (CJ-series and CS-series PLCs, all versions) may use a network protocol to read and write files on the PLC internal memory and memory card.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2022-45794?
CVE-2022-45794 has been categorized as a critical vulnerability due to its potential to allow unauthorized access to PLC internal memory.
What devices are affected by CVE-2022-45794?
CVE-2022-45794 affects various Omron Sysmac CJ and CS series PLCs, including CJ2H, CJ2M, and CS1H models.
How can I mitigate CVE-2022-45794?
Mitigation for CVE-2022-45794 involves restricting network access to the affected PLCs and applying available firmware updates.
What kind of attack can exploit CVE-2022-45794?
CVE-2022-45794 can be exploited by attackers with network access through a protocol that allows reading and writing files on PLC memory.
Is there a fix available for CVE-2022-45794?
Yes, users should check for the latest firmware updates from Omron to address the vulnerabilities associated with CVE-2022-45794.