CVE-2021-22279

Severity
9.8CRITICAL
EPSS
0.3%
top 45.85%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedDec 13
Latest updateDec 14

Description

A Missing Authentication vulnerability in RobotWare for the OmniCore robot controller allows an attacker to read and modify files on the robot controller if the attacker has access to the Connected Services Gateway Ethernet port.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:HExploitability: 3.9 | Impact: 5.9

Affected Packages2 packages

CVEListV5abb/robotwareunspecified7.3.2

🔴Vulnerability Details

2
GHSA
GHSA-568v-wj37-w729: A Missing Authentication vulnerability in RobotWare for the OmniCore robot controller allows an attacker to read and modify files on the robot control2021-12-14
CVEList
OmniCore RobotWare Missing Authentication Vulnerability2021-12-13