CVE-2023-27396

CRITICAL

OMRON SYSMAC CS/CJ/CP/NJ/NX-series - Unauthenticated Command Execution via FINS Protocol

Title source: llm
STIX 2.1

Description

FINS (Factory Interface Network Service) is a message communication protocol, which is designed to be used in closed FA (Factory Automation) networks, and is used in FA networks composed of OMRON products. Multiple OMRON products that implement FINS protocol contain following security issues -- (1)Plaintext communication, and (2)No authentication required. When FINS messages are intercepted, the contents may be retrieved. When arbitrary FINS messages are injected, any commands may be executed on, or the system information may be retrieved from, the affected device. Affected products and versions are as follows: SYSMAC CS-series CPU Units, all versions, SYSMAC CJ-series CPU Units, all versions, SYSMAC CP-series CPU Units, all versions, SYSMAC NJ-series CPU Units, all versions, SYSMAC NX1P-series CPU Units, all versions, SYSMAC NX102-series CPU Units, all versions, and SYSMAC NX7 Database Connection CPU Units (Ver.1.16 or later)

References (7)

Core 7
Core References
Third Party Advisory
https://jvn.jp/ta/JVNTA91513661/
Not Applicable, Third Party Advisory, US Government Resource
https://www.cisa.gov/uscert/ics/advisories/icsa-22-179-02
Not Applicable, Third Party Advisory, US Government Resource
https://www.us-cert.gov/ics/advisories/icsa-19-346-02
Not Applicable, Third Party Advisory, US Government Resource
https://www.us-cert.gov/ics/advisories/icsa-20-063-03

Scores

CVSS v3 9.8
EPSS 0.0138
EPSS Percentile 68.7%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable yes
Technical Impact total

Details

CWE
CWE-306
Status published
Products (50)
omron/cj2h-cpu64-eip_firmware
omron/cj2h-cpu64_firmware
omron/cj2h-cpu65-eip_firmware
omron/cj2h-cpu65_firmware
omron/cj2h-cpu66-eip_firmware
omron/cj2h-cpu66_firmware
omron/cj2h-cpu67-eip_firmware
omron/cj2h-cpu67_firmware
omron/cj2h-cpu68-eip_firmware
omron/cj2h-cpu68_firmware
... and 40 more
Published Jun 19, 2023
Tracked Since Feb 18, 2026