CVE-2021-22681
Rockwell Multiple Products Insufficient Protected Credentials Vulnerability
⚠ KEVEPSS 25.5%
描述
Multiple Rockwell products contain an insufficient protected credentials vulnerability. Studio 5000 Logix Designer software may allow a key to be discovered. This key is used to verify Logix controllers are communicating with Rockwell Automation design software. If successfully exploited, this vulnerability could allow an unauthorized application to connect with Logix controllers. To leverage this vulnerability, an unauthorized user would require network access to the controller.
如何修補 CVE-2021-22681
OSV 沒有提供套件對應 — 請參考下方連結尋找廠商提供的建議。
CVE-2021-22681 正在被利用嗎?
是 — CVE-2021-22681 已列入 CISA Known Exploited Vulnerabilities (KEV) 清單,代表正在被實際利用,請立即修補。
受影響套件(0)
OSV 沒有提供套件對應。