Description
Cognex In-Sight Explorer and In-Sight Camera Firmware expose a telnet-based service on port 23 in order to allow management operations on the device such as firmware upgrades and device reboot requiring an authentication. A wrong management of login failures of the service allows a denial-of-service attack, leaving the telnet service into an unreachable state.
Problem types
Product status
5.x (custom)
5.x (custom)
5.x (custom)
5.x (custom)
5.x (custom)
Credits
Diego Giubertoni of Nozomi Networks reported these vulnerabilities to CISA.
References
www.cisa.gov/news-events/ics-advisories/icsa-25-261-06