QID 590955

Date Published: 2022-07-29

QID 590955: JTEKT TOYOPUC Multiple Vulnerabilities (ICSA-22-172-02)

AFFECTED PRODUCTS
The following versions of TOYOPUC products, a programmable logic controller, are affected:
PC10G-CPU Type=TCC-6353: All versions
PC10GE Type=TCC-6464: All versions
PC10P Type=TCC-6372: All versions
PC10P-DP Type=TCC-6726: All versions
PC10P-DP-IO Type=TCC-6752: All versions
PC10B-P Type=TCC-6373: All versions
PC10B Type=TCC-1021: All versions
PC10E Type=TCC-4737: All versions
PC10EL Type=TCC-4747: All versions
Plus CPU Type=TCC-6740: All versions
PC3JX Type=TCC-6901: All versions
PC3JX-D Type=TCC-6902: All versions
PC10PE Type=TCC-1101: All versions
PC10PE-1616P Type=TCC-1102: All versions
PCDL Type=TKC-6688: All versions
Nano 10GX Type=TUC-1157: All versions
Nano CPU Type=TUC-6941: All versions

QID Detection Logic (Authenticated):
QID checks for the Vulnerable version of using passive scanning

Successful exploitation of this vulnerability could cause a denial-of-service condition, change control logic, or disable communication links.

  • CVSS V3 rated as Critical - 9.8 severity.
  • CVSS V2 rated as High - 7.5 severity.
  • Solution

    Customers are advised to refer to CERT MITIGATIONS section ICSA-22-172-02 for affected packages and patching details.

    Vendor References

    CVEs related to QID 590955

    Software Advisories
    Advisory ID Software Component Link
    ICSA-22-172-02 URL Logo www.us-cert.gov/ics/advisories/ICSA-22-172-02