Emerson Electric's Proficy Machine Edition Version 9.00 and prior is...
Vulnerability Description
Emerson Electric's Proficy Machine Edition Version 9.00 and prior is vulnerable to CWE-345 Insufficient Verification of Data Authenticity, and can display logic that is different than the compiled logic.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2022-2789
Credits & Attribution
The following person or organization is credited with identifying this vulnerability, as recorded in the NVD database:
- Sharon Brizinov of Claroty reported this vulnerability to Emerson and CISA
More from Emerson Electric
View All →Affected Vendor
Emerson Electric
View all reports →