CVE-2014-2369
Last modified
CVE-2014-2369 is a vulnerability of currently unknown severity. Cross-site request forgery (CSRF) vulnerability in the web application on Omron NS5, NS8, NS10, NS12, and NS15 HMI terminals 8.1xx through 8.68x allows remote authenticated users to hijack the authentication of unspecified victims via unknown vectors.. EPSS estimates a 0.59% chance of exploitation in the next 30 days.
Description
Cross-site request forgery (CSRF) vulnerability in the web application on Omron NS5, NS8, NS10, NS12, and NS15 HMI terminals 8.1xx through 8.68x allows remote authenticated users to hijack the authentication of unspecified victims via unknown vectors.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Omron | Ns Series System Program Firmware | 8.1 |
| Omron | Ns Series System Program Firmware | 8.68 |
| Omron | Ns10 Hmi Terminal | All versions |
| Omron | Ns12 Hmi Terminal | All versions |
| Omron | Ns15 Hmi Terminal | All versions |
| Omron | Ns5 Hmi Terminal | All versions |
| Omron | Ns8 Hmi Terminal | All versions |
References
- http://ics-cert.us-cert.gov/advisories/ICSA-14-203-01Third Party Advisory, US Government Resource
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2014-2369?
How severe is CVE-2014-2369?
How do I fix CVE-2014-2369?
Are you affected by CVE-2014-2369?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
