ZeroHour

CVE-2022-2004

CVSS 3.1
7.5 high
EPSS
<1%p60
Published
()
Modified
Description

AutomationDirect DirectLOGIC is vulnerable to a a specially crafted packet can be sent continuously to the PLC to prevent access from DirectSoft and other devices, causing a denial-of-service condition. This issue affects: AutomationDirect DirectLOGIC D0-06 series CPUs D0-06DD1 versions prior to 2.72; D0-06DD2 versions prior to 2.72; D0-06DR versions prior to 2.72; D0-06DA versions prior to 2.72; D0-06AR versions prior to 2.72; D0-06AA versions prior to 2.72; D0-06DD1-D versions prior to 2.72; D0-06DD2-D versions prior to 2.72; D0-06DR-D versions prior to 2.72;

Vendors
automationdirect
Products
d0-06dd1 firmware, d0-06dd2 firmware, d0-06dr firmware, d0-06da firmware, d0-06ar firmware, d0-06aa firmware, d0-06dd1-d firmware, d0-06dd2-d firmware, d0-06dr-d firmware
Weakness
CWE-400
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

In the news

No ingested article mentions this CVE yet.