Vulnerabilities > Omron > Cp1W Cif41 Firmware

DATE CVE VULNERABILITY TITLE RISK
2023-06-19 CVE-2023-27396 Missing Authentication for Critical Function vulnerability in Omron products
FINS (Factory Interface Network Service) is a message communication protocol, which is designed to be used in closed FA (Factory Automation) networks, and is used in FA networks composed of OMRON products.
network
low complexity
omron CWE-306
critical
9.8
2022-07-26 CVE-2022-31205 Cleartext Storage of Sensitive Information vulnerability in Omron products
In Omron CS series, CJ series, and CP series PLCs through 2022-05-18, the password for access to the Web UI is stored in memory area D1449...D1452 and can be read out using the Omron FINS protocol without any further authentication.
network
low complexity
omron CWE-312
7.5