CVE-2024-33687

HIGHCVSS 7.5/10EPSS 0.19%

Last modified

CVE-2024-33687 is a high-severity vulnerability rated 7.5/10 on the CVSS scale. Insufficient verification of data authenticity issue exists in NJ Series CPU Unit all versions and NX Series CPU Unit all versions. If a user program in the affected product is altered, the product may not be able to detect the alteration.. EPSS estimates a 0.19% chance of exploitation in the next 30 days.

Description

Insufficient verification of data authenticity issue exists in NJ Series CPU Unit all versions and NX Series CPU Unit all versions. If a user program in the affected product is altered, the product may not be able to detect the alteration.

Metrics

CVSS 3.1
7.5/10

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N

EPSS Probability
0.19%

9.2th percentile

Probability of exploitation in the next 30 days. Learn more

Weakness Enumeration

Affected Software

VendorProductVersions
OmronNj101-1000 FirmwareAll versions
OmronNj101-1020 FirmwareAll versions
OmronNj101-9000 FirmwareAll versions
OmronNj101-9020 FirmwareAll versions
OmronNj301-1100 FirmwareAll versions
OmronNj301-1200 FirmwareAll versions
OmronNj501-1300 FirmwareAll versions
OmronNj501-1320 FirmwareAll versions
OmronNj501-1340 FirmwareAll versions
OmronNj501-140 FirmwareAll versions
OmronNj501-1400 FirmwareAll versions
OmronNj501-1420 FirmwareAll versions
OmronNj501-1500 FirmwareAll versions
OmronNj501-1520 FirmwareAll versions
OmronNj501-4300 FirmwareAll versions
OmronNj501-4310 FirmwareAll versions
OmronNj501-4320 FirmwareAll versions
OmronNj501-4400 FirmwareAll versions
OmronNj501-4500 FirmwareAll versions
OmronNj501-5300 FirmwareAll versions
OmronNj501-5300-1 FirmwareAll versions
OmronNj501-R300 FirmwareAll versions
OmronNj501-R320 FirmwareAll versions
OmronNj501-R400 FirmwareAll versions
OmronNj501-R420 FirmwareAll versions
OmronNj501-R500 FirmwareAll versions
OmronNj501-R520 FirmwareAll versions
OmronNj-Pa3001 FirmwareAll versions
OmronNj-Pd3001 FirmwareAll versions
OmronNx102-1000 FirmwareAll versions
OmronNx102-1020 FirmwareAll versions
OmronNx102-1100 FirmwareAll versions
OmronNx102-1120 FirmwareAll versions
OmronNx102-1200 FirmwareAll versions
OmronNx102-1220 FirmwareAll versions
OmronNx102-9000 FirmwareAll versions
OmronNx102-9020 FirmwareAll versions
OmronNx1p2-1040dt FirmwareAll versions
OmronNx1p2-1040dt1 FirmwareAll versions
OmronNx1p2-1140dt FirmwareAll versions
OmronNx1p2-1140dt1 FirmwareAll versions
OmronNx1p2-9024dt FirmwareAll versions
OmronNx1p2-9024dt1 FirmwareAll versions
OmronNx1w-Adb21 FirmwareAll versions
OmronNx1w-Cif01 FirmwareAll versions
OmronNx1w-Cif11 FirmwareAll versions
OmronNx1w-Cif12 FirmwareAll versions
OmronNx1w-Dab21v FirmwareAll versions
OmronNx1w-Mab221 FirmwareAll versions
OmronNx701-1600 FirmwareAll versions

Showing 50 of 55 affected configurations. See NVD for the full list.

References

Timeline

Published
Last Modified
Status
Modified

Frequently Asked Questions

What is CVE-2024-33687?
Insufficient verification of data authenticity issue exists in NJ Series CPU Unit all versions and NX Series CPU Unit all versions. If a user program in the affected product is altered, the product may not be able to detect the alteration.
How severe is CVE-2024-33687?
CVE-2024-33687 has a CVSS score of 7.5/10 (HIGH severity). The EPSS model estimates a 0.19% probability of exploitation in the next 30 days.
How do I fix CVE-2024-33687?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.

Are you affected by CVE-2024-33687?

Run a free Strix scan to check your systems for this vulnerability.

Scan your code now

Source: NVD / NIST