CVE-2021-22279

A Missing Authentication vulnerability in RobotWare for the OmniCore robot controller allows an attacker to read and modify files on the robot controller if the attacker has access to the Connected Services Gateway Ethernet port.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:abb:omnicore_c30_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:abb:omnicore_c30:-:*:*:*:*:*:*:*

History

17 Dec 2021, 01:41

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : 9.3
v3 : 9.8
CPE cpe:2.3:o:abb:omnicore_c30_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:abb:omnicore_c30:-:*:*:*:*:*:*:*
References (MISC) https://search.abb.com/library/Download.aspx?DocumentID=SI20265&LanguageCode=en&DocumentPartId=&Action=Launch - (MISC) https://search.abb.com/library/Download.aspx?DocumentID=SI20265&LanguageCode=en&DocumentPartId=&Action=Launch - Vendor Advisory
CWE CWE-306

13 Dec 2021, 16:15

Type Values Removed Values Added
New CVE

Information

Published : 2021-12-13 16:15

Updated : 2023-12-10 14:09


NVD link : CVE-2021-22279

Mitre link : CVE-2021-22279

CVE.ORG link : CVE-2021-22279


JSON object : View

Products Affected

abb

  • omnicore_c30
  • omnicore_c30_firmware
CWE
CWE-306

Missing Authentication for Critical Function