CVE-2022-1159
Rockwell Automation Studio 5000 Logix Designer Code Injection
Severity Score
7.2
*CVSS v3.1
Exploit Likelihood
*EPSS
Affected Versions
*CPE
Public Exploits
0
*Multiple Sources
Exploited in Wild
-
*KEV
Decision
-
*SSVC
Descriptions
Rockwell Automation Studio 5000 Logix Designer (all versions) are vulnerable when an attacker who achieves administrator access on a workstation running Studio 5000 Logix Designer could inject controller code undetectable to a user.
Rockwell Automation Studio 5000 Logix Designer (todas las versiones) son vulnerables cuando un atacante que logra acceso de administrador en una estación de trabajo que ejecuta Studio 5000 Logix Designer podría inyectar código de controlador no detectable para un usuario
*Credits:
Sharon Brizinov and Tal Keren of Claroty reported this vulnerability to Rockwell Automation.
CVSS Scores
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality
Integrity
Availability
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality
Integrity
Availability
Attack Vector
Attack Complexity
Authentication
Confidentiality
Integrity
Availability
* Common Vulnerability Scoring System
SSVC
- Decision:-
Exploitation
Automatable
Tech. Impact
* Organization's Worst-case Scenario
Timeline
- 2022-03-29 CVE Reserved
- 2022-04-01 CVE Published
- 2023-10-23 EPSS Updated
- 2024-08-02 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-94: Improper Control of Generation of Code ('Code Injection')
CAPEC
References (1)
URL | Tag | Source |
---|---|---|
https://www.cisa.gov/uscert/ics/advisories/icsa-22-090-07 | Mitigation |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Rockwellautomation Search vendor "Rockwellautomation" | Controllogix 5580 Firmware Search vendor "Rockwellautomation" for product "Controllogix 5580 Firmware" | * | - |
Affected
| in | Rockwellautomation Search vendor "Rockwellautomation" | Controllogix 5580 Search vendor "Rockwellautomation" for product "Controllogix 5580" | - | - |
Safe
|
Rockwellautomation Search vendor "Rockwellautomation" | Guardlogix 5580 Firmware Search vendor "Rockwellautomation" for product "Guardlogix 5580 Firmware" | * | - |
Affected
| in | Rockwellautomation Search vendor "Rockwellautomation" | Guardlogix 5580 Search vendor "Rockwellautomation" for product "Guardlogix 5580" | - | - |
Safe
|
Rockwellautomation Search vendor "Rockwellautomation" | Compactlogix 5380 Firmware Search vendor "Rockwellautomation" for product "Compactlogix 5380 Firmware" | * | - |
Affected
| in | Rockwellautomation Search vendor "Rockwellautomation" | Compactlogix 5380 Search vendor "Rockwellautomation" for product "Compactlogix 5380" | - | - |
Safe
|
Rockwellautomation Search vendor "Rockwellautomation" | Compactlogix 5480 Firmware Search vendor "Rockwellautomation" for product "Compactlogix 5480 Firmware" | * | - |
Affected
| in | Rockwellautomation Search vendor "Rockwellautomation" | Compactlogix 5480 Search vendor "Rockwellautomation" for product "Compactlogix 5480" | - | - |
Safe
|
Rockwellautomation Search vendor "Rockwellautomation" | Compact Guardlogix 5380 Firmware Search vendor "Rockwellautomation" for product "Compact Guardlogix 5380 Firmware" | * | - |
Affected
| in | Rockwellautomation Search vendor "Rockwellautomation" | Compact Guardlogix 5380 Search vendor "Rockwellautomation" for product "Compact Guardlogix 5380" | - | - |
Safe
|