🛡️ CVE-2023-27396
🔴 CVSS 9.8 — Critical ✅ No Known Exploit CWE-306 NVD
9.8
CVSS Score
0 Low4 Medium7 High9 Critical10

Description

FINS (Factory Interface Network Service) is a message communication protocol, which is designed to be used in closed FA (Factory Automation) networks, and is used in FA networks composed of OMRON products. Multiple OMRON products that implement FINS protocol contain following security issues -- (1)Plaintext communication, and (2)No authentication required. When FINS messages are intercepted, the contents may be retrieved. When arbitrary FINS messages are injected, any commands may be executed on, or the system information may be retrieved from, the affected device. Affected products and versions are as follows: SYSMAC CS-series CPU Units, all versions, SYSMAC CJ-series CPU Units, all versions, SYSMAC CP-series CPU Units, all versions, SYSMAC NJ-series CPU Units, all versions, SYSMAC NX1P-series CPU Units, all versions, SYSMAC NX102-series CPU Units, all versions, and SYSMAC NX7 Database Connection CPU Units (Ver.1.16 or later)

Details

Severity CRITICAL
CVSS Score 9.8
CVSS Vector CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CWE CWE-306
Public Exploit ✅ No
Source NVD
Published 2023-06-19
Updated 2026-06-08
Modified 2024-12-24
Fix URL N/A

Affected Packages

Software From version Fixed in
cj2h-cpu64-eip-firmware
cj2h-cpu64-firmware
cj2h-cpu65-eip-firmware
cj2h-cpu65-firmware
cj2h-cpu66-eip-firmware
cj2h-cpu66-firmware
cj2h-cpu67-eip-firmware
cj2h-cpu67-firmware
cj2h-cpu68-eip-firmware
cj2h-cpu68-firmware
cj2m-cpu11-firmware
cj2m-cpu12-firmware
cj2m-cpu13-firmware
cj2m-cpu14-firmware
cj2m-cpu15-firmware
cj2m-cpu31-firmware
cj2m-cpu32-firmware
cj2m-cpu33-firmware
cj2m-cpu34-firmware
cj2m-cpu35-firmware
cj2m-md211-firmware
cj2m-md212-firmware
cp1e-e10dr-a-firmware
cp1e-e10dr-d-firmware
cp1e-e10dt-a-firmware
cp1e-e10dt-d-firmware
cp1e-e10dt1-a-firmware
cp1e-e10dt1-d-firmware
cp1e-e14dr-a-firmware
cp1e-e14sdr-a-firmware
cp1e-e20dr-a-firmware
cp1e-e20sdr-a-firmware
cp1e-e30dr-a-firmware
cp1e-e30sdr-a-firmware
cp1e-e40dr-a-firmware
cp1e-e40sdr-a-firmware
cp1e-e60sdr-a-firmware
cp1e-n14dr-a-firmware
cp1e-n14dr-d-firmware
cp1e-n14dt-a-firmware
cp1e-n14dt-d-firmware
cp1e-n14dt1-a-firmware
cp1e-n14dt1-d-firmware
cp1e-n20dr-a-firmware
cp1e-n20dr-d-firmware
cp1e-n20dt-a-firmware
cp1e-n20dt-d-firmware
cp1e-n20dt1-a-firmware
cp1e-n20dt1-d-firmware
cp1e-n30dr-a-firmware
cp1e-n30dr-d-firmware
cp1e-n30dt-a-firmware
cp1e-n30dt-d-firmware
cp1e-n30dt1-a-firmware
cp1e-n30dt1-d-firmware
cp1e-n30s1dr-a-firmware
cp1e-n30s1dt-d-firmware
cp1e-n30s1dt1-d-firmware
cp1e-n30sdr-a-firmware
cp1e-n30sdt-d-firmware
cp1e-n30sdt1-d-firmware
cp1e-n40dr-a-firmware
cp1e-n40dr-d-firmware
cp1e-n40dt-a-firmware
cp1e-n40dt-d-firmware
cp1e-n40dt1-a-firmware
cp1e-n40dt1-d-firmware
cp1e-n40s1dr-a-firmware
cp1e-n40s1dt-d-firmware
cp1e-n40s1dt1-d-firmware
cp1e-n40sdr-a-firmware
cp1e-n40sdt-d-firmware
cp1e-n40sdt1-d-firmware
cp1e-n60dr-a-firmware
cp1e-n60dr-d-firmware
cp1e-n60dt-a-firmware
cp1e-n60dt-d-firmware
cp1e-n60dt1-a-firmware
cp1e-n60dt1-d-firmware
cp1e-n60s1dr-a-firmware
cp1e-n60s1dt-d-firmware
cp1e-n60s1dt1-d-firmware
cp1e-n60sdr-a-firmware
cp1e-n60sdt-d-firmware
cp1e-n60sdt1-d-firmware
cp1e-na20dr-a-firmware
cp1e-na20dt-d-firmware
cp1e-na20dt1-d-firmware
cp1h-x40dr-a-firmware
cp1h-x40dt-d-firmware
cp1h-x40dt1-d-firmware
cp1h-xa40dr-a-firmware
cp1h-xa40dt-d-firmware
cp1h-xa40dt1-d-firmware
cp1h-y20dt-d-firmware
cp1l-el20dr-d-firmware
cp1l-el20dt-d-firmware
cp1l-el20dt1-d-firmware
cp1l-em30dr-d-firmware
cp1l-em30dt-d-firmware
cp1l-em30dt1-d-firmware
cp1l-em40dr-d-firmware
cp1l-em40dt-d-firmware
cp1l-em40dt1-d-firmware
cp1l-l10dr-a-firmware
cp1l-l10dr-d-firmware
cp1l-l10dt-a-firmware
cp1l-l10dt-d-firmware
cp1l-l10dt1-d-firmware
cp1l-l14dr-a-firmware
cp1l-l14dr-d-firmware
cp1l-l14dt-a-firmware
cp1l-l14dt-d-firmware
cp1l-l14dt1-d-firmware
cp1l-l20dr-a-firmware
cp1l-l20dr-d-firmware
cp1l-l20dt-a-firmware
cp1l-l20dt-d-firmware
cp1l-l20dt1-d-firmware
cp1l-m30dr-a-firmware
cp1l-m30dr-d-firmware
cp1l-m30dt-a-firmware
cp1l-m30dt-d-firmware
cp1l-m30dt1-d-firmware
cp1l-m40dr-a-firmware
cp1l-m40dr-d-firmware
cp1l-m40dt-a-firmware
cp1l-m40dt-d-firmware
cp1l-m40dt1-d-firmware
cp1l-m60dr-a-firmware
cp1l-m60dr-d-firmware
cp1l-m60dt-a-firmware
cp1l-m60dt-d-firmware
cp1l-m60dt1-d-firmware
cp1w-16er-firmware
cp1w-16et-firmware
cp1w-16et1-firmware
cp1w-20edr1-firmware
cp1w-20edt-firmware
cp1w-20edt1-firmware
cp1w-32er-firmware
cp1w-32et-firmware
cp1w-32et1-firmware
cp1w-40edr-firmware
cp1w-40edt-firmware
cp1w-40edt1-firmware
cp1w-8ed-firmware
cp1w-8er-firmware
cp1w-8et-firmware
cp1w-8et1-firmware
cp1w-ad041-firmware
cp1w-ad042-firmware
cp1w-adb21-firmware
cp1w-cif01-firmware
cp1w-cif11-firmware
cp1w-cif12-v1-firmware
cp1w-cif41-firmware
cp1w-cn811-firmware
cp1w-da021-firmware
cp1w-da041-firmware
cp1w-da042-firmware
cp1w-dab21v-firmware
cp1w-dam01-firmware
cp1w-ext01-firmware
cp1w-mab221-firmware
cp1w-mad11-firmware
cp1w-mad42-firmware
cp1w-mad44-firmware
cp1w-me05m-firmware
cp1w-srt21-firmware
cp1w-ts001-firmware
cp1w-ts002-firmware
cp1w-ts003-firmware
cp1w-ts004-firmware
cp1w-ts101-firmware
cp1w-ts102-firmware
cp2e-e14dr-a-firmware
cp2e-e20dr-a-firmware
cp2e-e30dr-a-firmware
cp2e-e40dr-a-firmware
cp2e-e60dr-a-firmware
cp2e-n14dr-a-firmware
cp2e-n14dr-d-firmware
cp2e-n14dt-a-firmware
cp2e-n14dt-d-firmware
cp2e-n14dt1-d-firmware
cp2e-n20dr-a-firmware
cp2e-n20dr-d-firmware
cp2e-n20dt-a-firmware
cp2e-n20dt-d-firmware
cp2e-n20dt1-d-firmware
cp2e-n30dr-a-firmware
cp2e-n30dr-d-firmware
cp2e-n30dt-a-firmware
cp2e-n30dt-d-firmware
cp2e-n30dt1-d-firmware
cp2e-n40dr-a-firmware
cp2e-n40dr-d-firmware
cp2e-n40dt-a-firmware
cp2e-n40dt-d-firmware
cp2e-n40dt1-d-firmware
cp2e-n60dr-a-firmware
cp2e-n60dr-d-firmware
cp2e-n60dt-a-firmware
cp2e-n60dt-d-firmware
cp2e-n60dt1-d-firmware
cp2e-s30dr-a-firmware
cp2e-s30dt-d-firmware
cp2e-s30dt1-d-firmware
cp2e-s40dr-a-firmware
cp2e-s40dt-d-firmware
cp2e-s40dt1-d-firmware
cp2e-s60dr-a-firmware
cp2e-s60dt-d-firmware
cp2e-s60dt1-d-firmware
cp2w-cifd1-firmware
cp2w-cifd2-firmware
cp2w-cifd3-firmware
cs1w-clk-firmware
cs1w-drm21-v1-firmware
cs1w-eip21-firmware
cs1w-etn21-firmware
cs1w-fln22-firmware
cs1w-nc271-firmware
cs1w-nc471-firmware
cs1w-ncf71-firmware
cs1w-spu01-v2-firmware
cs1w-spu02-v2-firmware
nj-pa3001-firmware
nj-pd3001-firmware
nj101-1000-firmware
nj101-1020-firmware
nj101-9000-firmware
nj101-9020-firmware
nj301-1100-firmware
nj301-1200-firmware
nj501-1300-firmware
nj501-1320-firmware
nj501-1340-firmware
nj501-1400-firmware
nj501-1420-firmware
nj501-1500-firmware
nj501-1520-firmware
nj501-4300-firmware
nj501-4310-firmware
nj501-4320-firmware
nj501-4400-firmware
nj501-4500-firmware
nj501-5300-firmware
nj501-r300-firmware
nj501-r320-firmware
nj501-r400-firmware
nj501-r420-firmware
nj501-r500-firmware
nj501-r520-firmware
nx102-1000-firmware
nx102-1020-firmware
nx102-1100-firmware
nx102-1120-firmware
nx102-1200-firmware
nx102-1220-firmware
nx102-9000-firmware
nx102-9020-firmware
nx1p2-1040dt-firmware
nx1p2-1040dt1-firmware
nx1p2-1140dt-firmware
nx1p2-1140dt1-firmware
nx1p2-9024dt-firmware
nx1p2-9024dt1-firmware
nx701-1620-firmware 1.16
nx701-1720-firmware 1.16

References

Third Party Advisory https://jvn.jp/ta/JVNTA91513661/
Not Applicable, Third Party Advisory, US Government Resource https://www.cisa.gov/uscert/ics/advisories/icsa-22-179-02
Not Applicable, Third Party Advisory, US Government Resource https://www.us-cert.gov/ics/advisories/icsa-19-346-02
Not Applicable, Third Party Advisory, US Government Resource https://www.us-cert.gov/ics/advisories/icsa-20-063-03
Third Party Advisory https://jvn.jp/ta/JVNTA91513661/
Not Applicable, Third Party Advisory, US Government Resource https://www.cisa.gov/uscert/ics/advisories/icsa-22-179-02
Not Applicable, Third Party Advisory, US Government Resource https://www.us-cert.gov/ics/advisories/icsa-19-346-02
Not Applicable, Third Party Advisory, US Government Resource https://www.us-cert.gov/ics/advisories/icsa-20-063-03

Similar Threats

Exploit Protection

Help block exploit attempts

BotEraser is designed to detect and help reduce malicious bot traffic that may target known vulnerabilities on your site.

Try BotEraser Free →

No credit card required  ·  Results in minutes

ⓘ Data Notice: The information presented above has been compiled from publicly available internet sources. Boteraser aggregates this data solely for informational purposes and does not independently classify, evaluate, or endorse any findings about the vulnerabilities listed. The accuracy and completeness of this information is the sole responsibility of the original publishers. Boteraser and its operators accept no liability for any decisions made based on this data.