Vulnerability Details CVE-2024-22187
A write-what-where vulnerability exists in the Programming Software Connection Remote Memory Diagnostics functionality of AutomationDirect P3-550E 1.2.10.9. A specially crafted network packet can lead to an arbitrary write. An attacker can send an unauthenticated packet to trigger this vulnerability.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.008
EPSS Ranking 72.7%
CVSS Severity
CVSS v3 Score 9.1
Products affected by CVE-2024-22187
-
cpe:2.3:h:automationdirect:p1-540:-
-
cpe:2.3:h:automationdirect:p1-550:-
-
cpe:2.3:h:automationdirect:p2-550:-
-
cpe:2.3:h:automationdirect:p3-530:-
-
cpe:2.3:h:automationdirect:p3-550:-
-
cpe:2.3:h:automationdirect:p3-550e:-
-
cpe:2.3:o:automationdirect:p1-540_firmware:1.2.10.10
-
cpe:2.3:o:automationdirect:p1-540_firmware:4.1.1.10
-
cpe:2.3:o:automationdirect:p1-550_firmware:1.2.10.10
-
cpe:2.3:o:automationdirect:p1-550_firmware:4.1.1.10
-
cpe:2.3:o:automationdirect:p2-550_firmware:1.2.10.10
-
cpe:2.3:o:automationdirect:p2-550_firmware:4.1.1.10
-
cpe:2.3:o:automationdirect:p3-530_firmware:1.2.10.9
-
cpe:2.3:o:automationdirect:p3-530_firmware:4.1.1.10
-
cpe:2.3:o:automationdirect:p3-550_firmware:1.2.10.9
-
cpe:2.3:o:automationdirect:p3-550_firmware:4.1.1.10
-
cpe:2.3:o:automationdirect:p3-550e_firmware:1.2.10.9
-
cpe:2.3:o:automationdirect:p3-550e_firmware:4.1.1.10