CVE-2022-1118
HIGH EXPLOITEDConnected Components Workbench < 13.00.00 - Deserialization of Untrusted Data
Title source: llmExploitation Summary
CVE-2022-1118 has been observed exploited in the wild (reported by VulnCheck KEV).
Description
Connected Components Workbench (v13.00.00 and prior), ISaGRAF Workbench (v6.0 though v6.6.9), and Safety Instrumented System Workstation (v1.2 and prior (for Trusted Controllers)) do not limit the objects that can be deserialized. This allows attackers to craft a malicious serialized object that, if opened by a local user in Connected Components Workbench, may result in arbitrary code execution. This vulnerability requires user interaction to be successfully exploited
References (1)
Core 1
Core References
Third Party Advisory, US Government Resource x_refsource_misc
https://www.cisa.gov/uscert/ics/advisories/icsa-22-095-01
Scores
CVSS v3
8.6
EPSS
0.2209
EPSS Percentile
95.9%
Attack Vector
LOCAL
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H
CISA SSVC
Vulnrichment
Exploitation
none
Automatable
no
Technical Impact
total
Details
VulnCheck KEV
2023-05-02
CWE
CWE-502
Status
published
Products (3)
rockwellautomation/connected_component_workbench
< 13.00.00
rockwellautomation/isagraf_workbench
6.0 - 6.6.9
rockwellautomation/safety_instrumented_systems_workstation
< 1.2
Published
May 17, 2022
Tracked Since
Feb 18, 2026