Rewterz
Rewterz Threat Advisory – ICS: Multiple Schneider Electric IGSS Vulnerabilities
March 17, 2023
Rewterz
Rewterz Threat Advisory – CVE-2022-42436 – IBM MQ Vulnerability
March 19, 2023

Rewterz Threat Advisory – ICS: Rockwell Automation Modbus TCP AOI Server Vulnerability

Severity

Medium

Analysis Summary

CVE-2023-0027

Rockwell Automation Modbus TCP AOI Server could allow a remote attacker to obtain sensitive information. By sending a malformed message, an attacker could exploit this vulnerability to read the connected device’s Modbus TCP Server AOI information.

Impact

  • Information Disclosure

Indicators Of Compromise

CVE

  • CVE-2023-0027

Affected Vendors

Rockwell Automation

Affected Products

  • Rockwell Automation Modbus TCP AOI Server 2.00
  • Rockwell Automation Modbus TCP AOI Server 2.03

Remediation

Upgrade to the latest version of Rockwell Automation Modbus TCP AOI Server, available from the Rockwell Automation Web site.

Rockwell Automation Web site