cbcvebase.
CVE-2020-25180
published 2022-03-18

CVE-2020-25180: Rockwell Automation ISaGRAF Runtime Versions 4.x and 5.x includes the functionality of setting a password that is required to execute privileged commands. The…

medium6.5CVSS 3.1
AVNACLPRNUIRSUCHINAN
Rockwell Automation ISaGRAF Runtime Versions 4.x and 5.x includes the functionality of setting a password that is required to execute privileged commands. The password value passed to ISaGRAF Runtime is the result of encryption performed with a fixed key value using the tiny encryption algorithm (TEA) on an entered or saved password. A remote, unauthenticated attacker could pass their own encrypted password to the ISaGRAF 5 Runtime, which may result in information disclosure on the device.

Affected

17 ranges
VendorProductVersion rangeFixed in
rockwell_automationisagraf_runtime
rockwell_automationisagraf_runtime
rockwellautomationaadvance_controller<= 1.40
rockwellautomationisagraf_free_runtime<= 6.6.8
rockwellautomationisagraf_runtime>= 5.0 < 6.06.0
schneider-electriceasergy_c5_firmware< 1.1.01.1.0
schneider-electriceasergy_t300_firmware<= 2.7.1
schneider-electricepas_gtw_firmware
schneider-electricmicom_c264_firmware< d6.1d6.1
schneider-electricpacis_gtw_firmware
schneider-electricpacis_gtw_firmware
schneider-electricpacis_gtw_firmware
schneider-electricpacis_gtw_firmware
schneider-electricsaitel_dp_firmware<= 11.06.21
schneider-electricsaitel_dr_firmware<= 11.06.12
schneider-electricscd2200_firmware<= 10024
xylemmultismart_firmware< 3.2.03.2.0