CVE-2022-30276

The Motorola MOSCAD and ACE line of RTUs through 2022-05-02 omit an authentication requirement. They feature IP Gateway modules which allow for interfacing between Motorola Data Link Communication (MDLC) networks (potentially over a variety of serial, RF and/or Ethernet links) and TCP/IP networks. Communication with RTUs behind the gateway is done by means of the proprietary IPGW protocol (5001/TCP). This protocol does not have any authentication features, allowing any attacker capable of communicating with the port in question to invoke (a subset of) desired functionality.
References
Link Resource
https://www.cisa.gov/uscert/ics/advisories/icsa-22-179-04 Mitigation Third Party Advisory US Government Resource
https://www.forescout.com/blog/ Third Party Advisory
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:motorola:moscad_ip_gateway_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:motorola:moscad_ip_gateway:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:motorola:ace_ip_gateway_\(4600\)_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:motorola:ace_ip_gateway_\(4600\):-:*:*:*:*:*:*:*

History

09 Aug 2022, 14:30

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.5
References (MISC) https://www.forescout.com/blog/ - (MISC) https://www.forescout.com/blog/ - Third Party Advisory
References (MISC) https://www.cisa.gov/uscert/ics/advisories/icsa-22-179-04 - (MISC) https://www.cisa.gov/uscert/ics/advisories/icsa-22-179-04 - Mitigation, Third Party Advisory, US Government Resource
First Time Motorola moscad Ip Gateway
Motorola
Motorola moscad Ip Gateway Firmware
Motorola ace Ip Gateway \(4600\) Firmware
Motorola ace Ip Gateway \(4600\)
CWE CWE-306
CPE cpe:2.3:o:motorola:ace_ip_gateway_\(4600\)_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:motorola:moscad_ip_gateway:-:*:*:*:*:*:*:*
cpe:2.3:o:motorola:moscad_ip_gateway_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:motorola:ace_ip_gateway_\(4600\):-:*:*:*:*:*:*:*

26 Jul 2022, 23:15

Type Values Removed Values Added
New CVE

Information

Published : 2022-07-26 23:15

Updated : 2024-02-13 16:25


NVD link : CVE-2022-30276

Mitre link : CVE-2022-30276

CVE.ORG link : CVE-2022-30276


JSON object : View

Products Affected

motorola

  • moscad_ip_gateway_firmware
  • moscad_ip_gateway
  • ace_ip_gateway_\(4600\)_firmware
  • ace_ip_gateway_\(4600\)
CWE
CWE-306

Missing Authentication for Critical Function