VDB
ICSA-18-184-01
ICSA-18-184-01
PUBLISHED
CVSS 7.5 HIGH
Successful exploitation of these vulnerabilities could allow an attacker to bypass client certification to create connections to the affected device or cause the device to crash.
Risk Scores
CVSS 3.1
7.5
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| 1783 |
Timeline
- Jul 3, 2018 CVE Published
References
- https://www.cisa.gov/uscert/sites/default/files/recommended_practices/NCCIC_ICS-CERT_Defense_in_Depth_2016_S508C.pdf url
- https://www.cisa.gov/news-events/ics-advisories/icsa-18-184-01 url
- https://raw.githubusercontent.com/cisagov/CSAF/develop/csaf_files/OT/white/2018/icsa-18-184-01.json advisory
- https://www.cisa.gov/uscert/ics/alerts/ICS-ALERT-10-301-01 url
- https://www.cisa.gov/uscert/ics/tips/ICS-TIP-12-146-01B url
- https://urldefense.proofpoint.com/v2/url?u=https-3A__rockwellautomation.custhelp.com_app_answers_detail_a-5Fid_1073860&d=DwMGaQ&c=54IZrppPQZKX9mLzcGdPfFD1hxrcB__aEkJFOKJFd00&r=zE5lG3CZZIbdBvT6slVAzQ&m=d7_uax5LG0vjWoCGwelqASZRyzRGG85aflD3xxdn7I4&s=QsGtt5inxh43clly39aymIsyKWnoKwawSFbQUhiVVhA&e= fix
- https://www.cisco.com/web/software/286271056/117258/sf-rules-2018-06-07-new.html fix