CVE-2022-42784 Details
Description
A vulnerability has been identified in LOGO! 12/24RCE (6ED1052-1MD08-0BA1) (All versions >= V8.3), LOGO! 12/24RCEo (6ED1052-2MD08-0BA1) (All versions >= V8.3), LOGO! 230RCE (6ED1052-1FB08-0BA1) (All versions >= V8.3), LOGO! 230RCEo (6ED1052-2FB08-0BA1) (All versions >= V8.3), LOGO! 24CE (6ED1052-1CC08-0BA1) (All versions >= V8.3), LOGO! 24CEo (6ED1052-2CC08-0BA1) (All versions >= V8.3), LOGO! 24RCE (6ED1052-1HB08-0BA1) (All versions >= V8.3), LOGO! 24RCEo (6ED1052-2HB08-0BA1) (All versions >= V8.3), SIPLUS LOGO! 12/24RCE (6AG1052-1MD08-7BA1) (All versions >= V8.3), SIPLUS LOGO! 12/24RCEo (6AG1052-2MD08-7BA1) (All versions >= V8.3), SIPLUS LOGO! 230RCE (6AG1052-1FB08-7BA1) (All versions >= V8.3), SIPLUS LOGO! 230RCEo (6AG1052-2FB08-7BA1) (All versions >= V8.3), SIPLUS LOGO! 24CE (6AG1052-1CC08-7BA1) (All versions >= V8.3), SIPLUS LOGO! 24CEo (6AG1052-2CC08-7BA1) (All versions >= V8.3), SIPLUS LOGO! 24RCE (6AG1052-1HB08-7BA1) (All versions >= V8.3), SIPLUS LOGO! 24RCEo (6AG1052-2HB08-7BA1) (All versions >= V8.3). Affected devices are vulnerable to an electromagnetic fault injection. This could allow an attacker to dump and debug the firmware, including the manipulation of memory. Further actions could allow to inject public keys of custom created key pairs which are then signed by the product CA. The generation of a custom certificate allows communication with, and impersonation of, any device of the same version.
Metrics
CVSS 4.0 Severity and Vector Strings:
No CVSS 4.0 data is available for this CVE.
CVSS 3.x Severity and Vector Strings:
No data available for CVSS Version 2.0 on this CVE.
No SSVC data is available for this CVE.
References to Advisories, Solutions, and Tools
By selecting these links, you will be leaving this site. These are references gathered from the official CVE record and are not endorsed by Volerion.
Weakness Enumeration
| CWE-ID | CWE Name | Source |
|---|---|---|
| NVD-CWE-Other | Weakness Not in a Standard CWE Category | [email protected] |
| CWE-1319 | Improper Protection against Electromagnetic Fault Injection (EM-FI) | [email protected] |
Affected Products
| Product | Versions |
|---|---|
| siemens 6ed1052-1md08-0ba1 firmware | <= 8.3 |
CPE
Remediation
| |
| siemens 6ed1052-1md08-0ba1 | All versions |
CPE
Remediation
| |
| siemens 6ed1052-2md08-0ba1 firmware | <= 8.3 |
CPE
Remediation
| |
| siemens 6ed1052-2md08-0ba1 | All versions |
CPE
Remediation
| |
| siemens 6ed1052-1cc08-0ba1 firmware | <= 8.3 |
CPE
Remediation
| |
| siemens 6ed1052-1cc08-0ba1 | All versions |
CPE
Remediation
| |
| siemens 6ed1052-2cc08-0ba1 firmware | <= 8.3 |
CPE
Remediation
| |
| siemens 6ed1052-2cc08-0ba1 | All versions |
CPE
Remediation
| |
| siemens 6ed1052-1hb08-0ba1 firmware | <= 8.3 |
CPE
Remediation
| |
| siemens 6ed1052-1hb08-0ba1 | All versions |
CPE
Remediation
| |
| siemens 6ed1052-2hb08-0ba1 firmware | <= 8.3 |
CPE
Remediation
| |
| siemens 6ed1052-2hb08-0ba1 | All versions |
CPE
Remediation
| |
| siemens 6ed1052-1fb08-0ba1 firmware | <= 8.3 |
CPE
Remediation
| |
| siemens 6ed1052-1fb08-0ba1 | All versions |
CPE
Remediation
| |
| siemens 6ed1052-2fb08-0ba1 firmware | <= 8.3 |
CPE
Remediation
| |
| siemens 6ed1052-2fb08-0ba1 | All versions |
CPE
Remediation
| |
| siemens 6ag1052-1md08-7ba1 firmware | <= 8.3 |
CPE
Remediation
| |
| siemens 6ag1052-1md08-7ba1 | All versions |
CPE
Remediation
| |
| siemens 6ag1052-2md08-7ba1 firmware | <= 8.3 |
CPE
Remediation
| |
| siemens 6ag1052-2md08-7ba1 | All versions |
CPE
Remediation
| |
| siemens 6ag1052-1cc08-7ba1 firmware | <= 8.3 |
CPE
Remediation
| |
| siemens 6ag1052-1cc08-7ba1 | All versions |
CPE
Remediation
| |
| siemens 6ag1052-2cc08-7ba1 firmware | <= 8.3 |
CPE
Remediation
| |
| siemens 6ag1052-2cc08-7ba1 | All versions |
CPE
Remediation
| |
| siemens 6ag1052-1hb08-7ba1 firmware | <= 8.3 |
CPE
Remediation
| |
| siemens 6ag1052-1hb08-7ba1 | All versions |
CPE
Remediation
| |
| siemens 6ag1052-2hb08-7ba1 firmware | <= 8.3 |
CPE
Remediation
| |
| siemens 6ag1052-2hb08-7ba1 | All versions |
CPE
Remediation
| |
| siemens 6ag1052-1fb08-7ba1 firmware | <= 8.3 |
CPE
Remediation
| |
| siemens 6ag1052-1fb08-7ba1 | All versions |
CPE
Remediation
| |
| siemens 6ag1052-2fb08-7ba1 firmware | <= 8.3 |
CPE
Remediation
| |
| siemens 6ag1052-2fb08-7ba1 | All versions |
CPE
Remediation
| |
Change History
7 change records found show changes
| Date | Action | Recorded By |
|---|---|---|
| Jun 17, 2026 | CVE Modified | [email protected] |
| Nov 21, 2024 | CVE Modified | CVE |
| Sep 10, 2024 | CVE Modified | [email protected] |
| May 14, 2024 | CVE Modified | [email protected] |
| Dec 18, 2023 | Initial Analysis | [email protected] |
| Dec 12, 2023 | CVE Modified | [email protected] |
| Dec 12, 2023 | New CVE Received | [email protected] |