AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2022-30276

HIGH · CVSS 7.5 EPSS 0.77%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2022-07-26 · Last synced 2026-08-04

CyberRota Analysis

This is a high severity vulnerability with a CVSS score of 7.5. See the original NVD description below for full technical details.

CVE
CVE-2022-30276
Severity
HIGH
CVSS
7.5
EPSS
0.77%

Original NVD Description

The Motorola MOSCAD and ACE line of RTUs through 2022-05-02 omit an authentication requirement. They feature IP Gateway modules which allow for interfacing between Motorola Data Link Communication (MDLC) networks (potentially over a variety of serial, RF and/or Ethernet links) and TCP/IP networks. Communication with RTUs behind the gateway is done by means of the proprietary IPGW protocol (5001/TCP). This protocol does not have any authentication features, allowing any attacker capable of communicating with the port in question to invoke (a subset of) desired functionality.

Related CVEs

Other vulnerabilities affecting the same vendor(s)