Vulnerability Details CVE-2022-2641
Horner Automation’s RCC 972 with firmware version 15.40 has a static encryption key on the device. This could allow an attacker to perform unauthorized changes to the device, remotely execute arbitrary code, or cause a denial-of-service condition.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 22.2%
CVSS Severity
CVSS v3 Score 9.8
Products affected by CVE-2022-2641
-
cpe:2.3:h:hornerautomation:rcc972:-
-
cpe:2.3:o:hornerautomation:rcc972_firmware:15.40