Vulnerability: Missing Integrity Check and Lack of Authentication/Authorization in Emerson Electric's Proficy Machine Edition Version 9.00 and Prior for SRTP Protocol

Vulnerability: Missing Integrity Check and Lack of Authentication/Authorization in Emerson Electric's Proficy Machine Edition Version 9.00 and Prior for SRTP Protocol

CVE-2022-2793 · HIGH Severity

CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Emerson Electric's Proficy Machine Edition Version 9.00 and prior is vulenrable to CWE-353 Missing Support for Integrity Check, and has no authentication or authorization of data packets after establishing a connection for the SRTP protocol.

Learn more about our Web Application Penetration Testing UK.