← Back to home
ICSA-22-314-08  ·  Published 2022-11-10  ·  View on CISA ICS-CERT ↗

Omron NJ/NX-series Machine Automation Controllers

CVSS 7.5 HIGH

Risk Summary

Successful exploitation of these vulnerabilities may allow an attacker to bypass authentication in the communications connection process to login and operate the controller products without authorization.

Remediations

  • NX7-series Machine Automation Controller: Update to version 1.29 or higher
  • NX1-series Machine Automation Controller: Update to version 1.50 or higher
  • NJ-series Machine Automation Controller (NJ501-1300, NJ501-1400, NJ501-1500): Update to version 1.49 or higher
  • NJ-series Machine Automation Controller (All other models): Update to version 1.50 or higher
  • Automation Software Sysmac Studio: Update to version 1.50 or higher
  • NA-series Programable Terminal: Update to runtime version 1.16 or higher
  • For information on how to obtain and update firmware for the countermeasure version of the product, contact Omron sales office or distributors. Users can update the Sysmac Studio to the latest versions using the installed Omron Automation Software AutoUpdate tool.
  • Enable antivirus protection
  • Protect any PC with access to the control system against malware by ensuring the installation and maintenance of up-to-date commercial grade antivirus software protection.
  • Minimize connection of control systems and equipment to open networks preventing untrusted devices from accessing them.
  • Implement firewalls by shutting down unused communications ports, limiting communications between hosts, and isolate affected systems from the IT network.
  • Use a virtual private network (VPN) for remote access to control systems and equipment.
  • Use strong passwords and change passwords frequently.
  • Install physical controls that only permit authorized personnel access to control systems and equipment.
  • Scan USB drives or similar devices for viruses and malware to ensure the devices are safe before connecting them to systems and devices.
  • When possible, enforce multifactor authentication (MFA) on all devices with remote access to control systems and equipment.
  • Protect data input and output
  • Perform process validation, such as backup validation or range checks, to cope with unintentional modification of input/output data to control systems and devices.
  • Use data recovery
  • Conduct periodical data backups and maintenance to prepare for potential data loss.
  • For more information see Omron's advisory: OMSR-2022-001

Affected Vendors

Omron

Affected Products (5)

Omron · NJ/NX-series Controllers and Software <= 1.28
Omron · NJ/NX-series Controllers and Software <= 1.48
Omron · NJ/NX-series Controllers and Software <= 1.48
Omron · NJ/NX-series Controllers and Software <= 1.49
Omron · NJ/NX-series Controllers and Software <= 1.15

Affected Sectors

Critical Manufacturing

Get alerted to advisories like this

OTWarden monitors CISA, BSI, Siemens, Rockwell and more — and emails you within 2 hours when your vendors are affected.

Start free trial Learn more