Vulnerability index

Browse CVEs

94 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Flex I\/o 1794 Aent HIGH 7.5
CVE-2020-6085

An exploitable denial of service vulnerability exists in the ENIP Request Path Logical Segment functionality of Allen-Bradley Flex IO 1794-AENT/B 4.0…

No fix yet
Fix from $1,950 2020-10-19
Allen Bradley Flex Io 1794 Aent\/b Firmware HIGH 7.5
CVE-2020-6083

An exploitable denial of service vulnerability exists in the ENIP Request Path Port Segment functionality of Allen-Bradley Flex IO 1794-AENT/B. A spe…

No fix yet
Fix from $1,950 2020-10-14
Flex I\/o 1794 Aent\/b Firmware HIGH 7.5
CVE-2020-6086

An exploitable denial of service vulnerability exists in the ENIP Request Path Data Segment functionality of Allen-Bradley Flex IO 1794-AENT/B. A spe…

No fix yet
Fix from $1,950 2020-10-14
Flex I\/o 1794 Aent\/b Firmware HIGH 7.5
CVE-2020-6087

An exploitable denial of service vulnerability exists in the ENIP Request Path Data Segment functionality of Allen-Bradley Flex IO 1794-AENT/B. A spe…

No fix yet
Fix from $1,950 2020-10-14
Factorytalk View HIGH 8.1
CVE-2020-12028EPSS 53%

In all versions of FactoryTalk View SEA remote, an authenticated attacker may be able to utilize certain handlers to interact with the data on the re…

No fix yet
Fix from $1,950 2020-07-20
Factorytalk View HIGH 7.8
CVE-2020-12031

In all versions of FactoryTalk View SE, after bypassing memory corruption mechanisms found in the operating system, a local, authenticated attacker m…

Mitigation only
Fix from $1,950 2020-07-20
Factorytalk View HIGH 7.8
CVE-2020-12029EPSS 47%

All versions of FactoryTalk View SE do not properly validate input of filenames within a project directory. A remote, unauthenticated attacker may be…

No fix yet
Fix from $1,950 2020-07-20
Factorytalk Services Platform HIGH 8.8
CVE-2020-12033

In Rockwell Automation FactoryTalk Services Platform, all versions, the redundancy host service (RdcyHost.exe) does not validate supplied identifiers…

Mitigation only
Fix from $1,950 2020-06-23
Factorytalk Services Platform CRITICAL 9.8
CVE-2020-6967EPSS 5%

In Rockwell Automation all versions of FactoryTalk Diagnostics software, a subsystem of the FactoryTalk Services Platform, FactoryTalk Diagnostics ex…

Mitigation only
Fix from $2,300 2020-03-23
Rslogix CRITICAL 9.8
CVE-2010-5305EPSS 6%

The potential exists for exposure of the product's password used to restrict unauthorized access to Rockwell PLC5/SLC5/0x/RSLogix 1785-Lx and 1747-L5…

Mitigation only
Fix from $2,300 2019-03-26
Rslinx Enterprise HIGH 7.5
CVE-2013-2805

Rockwell Automation RSLinx Enterprise Software (LogReceiver.exe) CPR9, CPR9-SR1, CPR9-SR2, CPR9-SR3, CPR9-SR4, CPR9-SR5, CPR9-SR5.1, and CPR9-SR6 doe…

Mitigation only
Fix from $1,950 2019-03-26
Rslinx Enterprise HIGH 7.5
CVE-2013-2806

Rockwell Automation RSLinx Enterprise Software (LogReceiver.exe) CPR9, CPR9-SR1, CPR9-SR2, CPR9-SR3, CPR9-SR4, CPR9-SR5, CPR9-SR5.1, and CPR9-SR6 doe…

Mitigation only
Fix from $1,950 2019-03-26
Rslinx Enterprise HIGH 7.5
CVE-2013-2807

Rockwell Automation RSLinx Enterprise Software (LogReceiver.exe) CPR9, CPR9-SR1, CPR9-SR2, CPR9-SR3, CPR9-SR4, CPR9-SR5, CPR9-SR5.1, and CPR9-SR6 doe…

Mitigation only
Fix from $1,950 2019-03-26
Powermonitor 1000 Firmware HIGH 8.1
CVE-2018-19616EPSS 30%

An issue was discovered in Rockwell Automation Allen-Bradley PowerMonitor 1000. An unauthenticated user can add/edit/remove administrators because ac…

No fix yet
Fix from $1,950 2018-12-26
Powermonitor 1000 Firmware MEDIUM 6.1
CVE-2018-19615

Rockwell Automation Allen-Bradley PowerMonitor 1000 all versions. A remote attacker could inject arbitrary code into a targeted user’s web browser …

No fix yet
Fix from $1,600 2018-12-26
1763 L16bwa Firmware HIGH 7.5
CVE-2017-7924EPSS 22%

An Improper Input Validation issue was discovered in Rockwell Automation MicroLogix 1100 controllers 1763-L16BWA, 1763-L16AWA, 1763-L16BBB, and 1763-…

Mitigation only
Fix from $1,950 2017-09-20
Panelview Plus 6 700 1500 Firmware HIGH 8.6
CVE-2017-7914EPSS 7%

A Missing Authorization issue was discovered in Rockwell Automation PanelView Plus 6 700-1500 6.00.04, 6.00.05, 6.00.42, 6.00-20140306, 6.10.20121012…

Mitigation only
Fix from $1,950 2017-06-14
Compactlogix 5380 Firmware MEDIUM 5.9
CVE-2017-6024

A Resource Exhaustion issue was discovered in Rockwell Automation ControlLogix 5580 controllers V28.011, V28.012, and V28.013; ControlLogix 5580 cont…

Mitigation only
Fix from $1,600 2017-05-06
Softlogix 5800 Controller Firmware CRITICAL 10.0
CVE-2016-9343EPSS 10%

An issue was discovered in Rockwell Automation Logix5000 Programmable Automation Controller FRN 16.00 through 21.00 (excluding all firmware versions …

Mitigation only
Fix from $2,300 2017-02-13
1766 L32awa HIGH 7.3
CVE-2016-5645EPSS 30%

Rockwell Automation MicroLogix 1400 PLC 1766-L32BWA, 1766-L32AWA, 1766-L32BXB, 1766-L32BWAA, 1766-L32AWAA, and 1766-L32BXBA devices have a hardcoded …

Mitigation only
Fix from $1,950 2016-08-24
1763 L16awa Series A CRITICAL 9.8
CVE-2016-0868EPSS 7%

Stack-based buffer overflow on Rockwell Automation Allen-Bradley MicroLogix 1100 devices A through 15.000 and B before 15.002 allows remote attackers…

Mitigation only
Fix from $2,300 2016-01-28
Ab Micrologix Controller HIGH 7.1
CVE-2014-5410

The DNP3 feature on Rockwell Automation Allen-Bradley MicroLogix 1400 1766-Lxxxxx A FRN controllers 7 and earlier and 1400 1766-Lxxxxx B FRN controll…

Mitigation only
Fix from $1,950 2014-10-03
Rslogix 5000 Design And Configuration Software MEDIUM 6.9
CVE-2014-0755

Rockwell Automation RSLogix 5000 7 through 20.01, and 21.0, does not properly implement password protection for .ACD files (aka project files), which…

Mitigation only
Fix from $1,600 2014-02-05
Rslinx Enterprise HIGH 10.0
CVE-2012-4715EPSS 8%

Buffer overflow in LogReceiver.exe in Rockwell Automation RSLinx Enterprise CPR9, CPR9-SR1, CPR9-SR2, CPR9-SR3, CPR9-SR4, CPR9-SR5, CPR9-SR5.1, and C…

Mitigation only
Fix from $1,950 2013-04-18
Factorytalk Services Platform HIGH 7.8
CVE-2012-4713

Integer signedness error in RNADiagnostics.dll in Rockwell Automation FactoryTalk Services Platform (FTSP) CPR9, CPR9-SR1, CPR9-SR2, CPR9-SR3, CPR9-S…

Mitigation only
Fix from $1,950 2013-04-18
Factorytalk Services Platform HIGH 7.8
CVE-2012-4714

Integer overflow in RNADiagnostics.dll in Rockwell Automation FactoryTalk Services Platform (FTSP) CPR9, CPR9-SR1, CPR9-SR2, CPR9-SR3, CPR9-SR4, CPR9…

Mitigation only
Fix from $1,950 2013-04-18
Rslinx Enterprise HIGH 7.1
CVE-2012-4695

LogReceiver.exe in Rockwell Automation RSLinx Enterprise CPR9, CPR9-SR1, CPR9-SR2, CPR9-SR3, CPR9-SR4, CPR9-SR5, CPR9-SR5.1, and CPR9-SR6 allows remo…

Mitigation only
Fix from $1,950 2013-04-18
Ethernet\/ip Firmware HIGH 7.5
CVE-2012-6442EPSS 36%

When an affected product receives a valid CIP message from an unauthorized or unintended source to Port 2222/TCP, Port 2222/UDP, Port 44818/TCP, or P…

Mitigation only
Fix from $1,950 2013-01-24
Ab Micrologix Controller HIGH 7.1
CVE-2012-4690

Rockwell Automation Allen-Bradley MicroLogix controller 1100, 1200, 1400, and 1500; SLC 500 controller platform; and PLC-5 controller platform, when …

Mitigation only
Fix from $1,950 2012-12-08
Factorytalk MEDIUM 5.0
CVE-2012-0221EPSS 10%

The FactoryTalk (FT) RNADiagReceiver service in Rockwell Automation Allen-Bradley FactoryTalk CPR9 through SR5 and RSLogix 5000 17 through 20 does no…

Mitigation only
Fix from $1,600 2012-04-02