LS ELECTRIC XBC-DN32U with operating system version 01.80 does not properly control access to the PLC over its internal XGT protocol. An attacker could control and tamper with the PLC by sending the packets to the PLC over its XGT protocol.
References
Link | Resource |
---|---|
https://www.cisa.gov/uscert/ics/advisories/icsa-23-040-02 | Third Party Advisory US Government Resource |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: icscert
Published: 2023-02-15T17:29:47.415Z
Updated: 2023-02-15T17:29:47.415Z
Reserved: 2023-01-06T18:49:55.855Z
Link: CVE-2023-22807
JSON object: View
NVD Information
Status : Modified
Published: 2023-02-15T18:15:12.087
Modified: 2023-11-07T04:07:25.663
Link: CVE-2023-22807
JSON object: View
Redhat Information
No data.