CVE Database
/

CVE-2023-22357

Back to search

CVE-2023-22357

Published: Jan 17, 2023

Modified: Apr 4, 2025

PUBLISHED

Description

Active debug code exists in OMRON CP1L-EL20DR-D all versions, which may lead to a command that is not specified in FINS protocol being executed without authentication. A remote unauthenticated attacker may read/write in arbitrary area of the device memory, which may lead to overwriting the firmware, causing a denial-of-service (DoS) condition, and/or arbitrary code execution.

VendorProductVersions

OMRON Corporation

CP1L-EL20DR-D

affected
All versions

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now