CVE-2022-3156 describes a remote code execution vulnerability in Rockwell Automation Studio 5000 Logix Emulate software. This flaw arises from elevated permissions granted to users on certain product services during installation, allowing a malicious actor to potentially execute arbitrary code. With a CVSS score of 7.8 (High), this vulnerability requires local access and low privileges but can lead to high impact on confidentiality, integrity, and availability. Currently, there is no public exploit code available, it is not listed on the KEV catalog, and community discussion and media coverage are minimal.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
>= 20.011, <= 33.011CPE match | cpe:2.3:a:rockwellautomation:studio_5000_logix_emulate:*:*:*:*:*:*:*:* | ||
>= 20.011, < 34.00CPE matchmatch criteria | cpe:2.3:a:rockwellautomation:studio_5000_logix_emulate:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.2 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.