Delta Industrial Automation DIALink versions 1.4.0.0 and prior are vulnerable to the use of a hard-coded cryptographic key which could allow an attacker to decrypt sensitive data and compromise the machine.
References
Link | Resource |
---|---|
https://www.cisa.gov/uscert/ics/advisories/icsa-22-235-02 | Third Party Advisory US Government Resource |
Configurations
Information
Published : 2022-12-13 14:15
Updated : 2022-12-16 10:29
NVD link : CVE-2022-2660
Mitre link : CVE-2022-2660
JSON object : View
CWE
CWE-798
Use of Hard-coded Credentials
Products Affected
deltaww
- dialink