← Back

CVE-2024-22187

nvd nist
Published: May 28, 2024Modified: Jun 17, 2026

JSON object

Loading...
9.1
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:H
Exploitability: 3.9 / Impact: 5.2
Source: CNA (Secondary)

Description

A write-what-where vulnerability exists in the Programming Software Connection Remote Memory Diagnostics functionality of AutomationDirect P3-550E 1.2.10.9. A specially crafted network packet can lead to an arbitrary write. An attacker can send an unauthenticated packet to trigger this vulnerability.

Affected (12)

P3 550e Firmware
P3 550 Firmware
P3 530 Firmware
P2 550 Firmware
P1 550 Firmware
P1 540 Firmware
Configuration A
2 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Automationdirect
Version 1.2.10.9
Version 4.1.1.10
Running on/withPlatform Versions
Automationdirect
P3 550e
All versions
Configuration B
2 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Automationdirect
Version 1.2.10.9
Version 4.1.1.10
Running on/withPlatform Versions
Automationdirect
P3 550
All versions
Configuration C
2 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Automationdirect
Version 1.2.10.9
Version 4.1.1.10
Running on/withPlatform Versions
Automationdirect
P3 530
All versions
Configuration D
2 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Automationdirect
Version 1.2.10.10
Version 4.1.1.10
Running on/withPlatform Versions
Automationdirect
P2 550
All versions
Configuration E
2 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Automationdirect
Version 1.2.10.10
Version 4.1.1.10
Running on/withPlatform Versions
Automationdirect
P1 550
All versions
Configuration F
2 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Automationdirect
Version 1.2.10.10
Version 4.1.1.10
Running on/withPlatform Versions
Automationdirect
P1 540
All versions

References (6)

Source: talos-cna@cisco.com
ExploitThird Party Advisory
Source: talos-cna@cisco.com
ExploitThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
ExploitThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
ExploitThird Party Advisory

Timeline

No history available yet.