Vulnerability index

Browse CVEs

94 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

HIGH 7.5 CVE-2020-6085 An exploitable denial of service vulnerability exists in the ENIP Request Path Logical Segment functionality of Allen-Bradley Flex IO 1794-AENT/B 4.0… Flex I\/o 1794 Aent No fix yet Fix from $1,9502020-10-19 HIGH 7.5 CVE-2020-6083 An exploitable denial of service vulnerability exists in the ENIP Request Path Port Segment functionality of Allen-Bradley Flex IO 1794-AENT/B. A spe… Allen Bradley Flex Io 1794 Aent\/b Firmware No fix yet Fix from $1,9502020-10-14 HIGH 7.5 CVE-2020-6086 An exploitable denial of service vulnerability exists in the ENIP Request Path Data Segment functionality of Allen-Bradley Flex IO 1794-AENT/B. A spe… Flex I\/o 1794 Aent\/b Firmware No fix yet Fix from $1,9502020-10-14 HIGH 7.5 CVE-2020-6087 An exploitable denial of service vulnerability exists in the ENIP Request Path Data Segment functionality of Allen-Bradley Flex IO 1794-AENT/B. A spe… Flex I\/o 1794 Aent\/b Firmware No fix yet Fix from $1,9502020-10-14 HIGH 8.1 CVE-2020-12028EPSS 53% In all versions of FactoryTalk View SEA remote, an authenticated attacker may be able to utilize certain handlers to interact with the data on the re… Factorytalk View No fix yet Fix from $1,9502020-07-20 HIGH 7.8 CVE-2020-12031 In all versions of FactoryTalk View SE, after bypassing memory corruption mechanisms found in the operating system, a local, authenticated attacker m… Factorytalk View Mitigation only Fix from $1,9502020-07-20 HIGH 7.8 CVE-2020-12029EPSS 47% All versions of FactoryTalk View SE do not properly validate input of filenames within a project directory. A remote, unauthenticated attacker may be… Factorytalk View No fix yet Fix from $1,9502020-07-20 HIGH 8.8 CVE-2020-12033 In Rockwell Automation FactoryTalk Services Platform, all versions, the redundancy host service (RdcyHost.exe) does not validate supplied identifiers… Factorytalk Services Platform Mitigation only Fix from $1,9502020-06-23 CRITICAL 9.8 CVE-2020-6967EPSS 5% In Rockwell Automation all versions of FactoryTalk Diagnostics software, a subsystem of the FactoryTalk Services Platform, FactoryTalk Diagnostics ex… Factorytalk Services Platform Mitigation only Fix from $2,3002020-03-23 CRITICAL 9.8 CVE-2010-5305EPSS 6% The potential exists for exposure of the product's password used to restrict unauthorized access to Rockwell PLC5/SLC5/0x/RSLogix 1785-Lx and 1747-L5… Rslogix Mitigation only Fix from $2,3002019-03-26 HIGH 7.5 CVE-2013-2805 Rockwell Automation RSLinx Enterprise Software (LogReceiver.exe) CPR9, CPR9-SR1, CPR9-SR2, CPR9-SR3, CPR9-SR4, CPR9-SR5, CPR9-SR5.1, and CPR9-SR6 doe… Rslinx Enterprise Mitigation only Fix from $1,9502019-03-26 HIGH 7.5 CVE-2013-2806 Rockwell Automation RSLinx Enterprise Software (LogReceiver.exe) CPR9, CPR9-SR1, CPR9-SR2, CPR9-SR3, CPR9-SR4, CPR9-SR5, CPR9-SR5.1, and CPR9-SR6 doe… Rslinx Enterprise Mitigation only Fix from $1,9502019-03-26 HIGH 7.5 CVE-2013-2807 Rockwell Automation RSLinx Enterprise Software (LogReceiver.exe) CPR9, CPR9-SR1, CPR9-SR2, CPR9-SR3, CPR9-SR4, CPR9-SR5, CPR9-SR5.1, and CPR9-SR6 doe… Rslinx Enterprise Mitigation only Fix from $1,9502019-03-26 HIGH 8.1 CVE-2018-19616EPSS 30% An issue was discovered in Rockwell Automation Allen-Bradley PowerMonitor 1000. An unauthenticated user can add/edit/remove administrators because ac… Powermonitor 1000 Firmware No fix yet Fix from $1,9502018-12-26 MEDIUM 6.1 CVE-2018-19615 Rockwell Automation Allen-Bradley PowerMonitor 1000 all versions. A remote attacker could inject arbitrary code into a targeted user’s web browser … Powermonitor 1000 Firmware No fix yet Fix from $1,6002018-12-26 HIGH 7.5 CVE-2017-7924EPSS 22% An Improper Input Validation issue was discovered in Rockwell Automation MicroLogix 1100 controllers 1763-L16BWA, 1763-L16AWA, 1763-L16BBB, and 1763-… 1763 L16bwa Firmware Mitigation only Fix from $1,9502017-09-20 HIGH 8.6 CVE-2017-7914EPSS 7% A Missing Authorization issue was discovered in Rockwell Automation PanelView Plus 6 700-1500 6.00.04, 6.00.05, 6.00.42, 6.00-20140306, 6.10.20121012… Panelview Plus 6 700 1500 Firmware Mitigation only Fix from $1,9502017-06-14 MEDIUM 5.9 CVE-2017-6024 A Resource Exhaustion issue was discovered in Rockwell Automation ControlLogix 5580 controllers V28.011, V28.012, and V28.013; ControlLogix 5580 cont… Compactlogix 5380 Firmware Mitigation only Fix from $1,6002017-05-06 CRITICAL 10.0 CVE-2016-9343EPSS 10% An issue was discovered in Rockwell Automation Logix5000 Programmable Automation Controller FRN 16.00 through 21.00 (excluding all firmware versions … Softlogix 5800 Controller Firmware Mitigation only Fix from $2,3002017-02-13 HIGH 7.3 CVE-2016-5645EPSS 30% Rockwell Automation MicroLogix 1400 PLC 1766-L32BWA, 1766-L32AWA, 1766-L32BXB, 1766-L32BWAA, 1766-L32AWAA, and 1766-L32BXBA devices have a hardcoded … 1766 L32awa Mitigation only Fix from $1,9502016-08-24 CRITICAL 9.8 CVE-2016-0868EPSS 7% Stack-based buffer overflow on Rockwell Automation Allen-Bradley MicroLogix 1100 devices A through 15.000 and B before 15.002 allows remote attackers… 1763 L16awa Series A Mitigation only Fix from $2,3002016-01-28 HIGH 7.1 CVE-2014-5410 The DNP3 feature on Rockwell Automation Allen-Bradley MicroLogix 1400 1766-Lxxxxx A FRN controllers 7 and earlier and 1400 1766-Lxxxxx B FRN controll… Ab Micrologix Controller Mitigation only Fix from $1,9502014-10-03 MEDIUM 6.9 CVE-2014-0755 Rockwell Automation RSLogix 5000 7 through 20.01, and 21.0, does not properly implement password protection for .ACD files (aka project files), which… Rslogix 5000 Design And Configuration Software Mitigation only Fix from $1,6002014-02-05 HIGH 10.0 CVE-2012-4715EPSS 8% Buffer overflow in LogReceiver.exe in Rockwell Automation RSLinx Enterprise CPR9, CPR9-SR1, CPR9-SR2, CPR9-SR3, CPR9-SR4, CPR9-SR5, CPR9-SR5.1, and C… Rslinx Enterprise Mitigation only Fix from $1,9502013-04-18 HIGH 7.8 CVE-2012-4713 Integer signedness error in RNADiagnostics.dll in Rockwell Automation FactoryTalk Services Platform (FTSP) CPR9, CPR9-SR1, CPR9-SR2, CPR9-SR3, CPR9-S… Factorytalk Services Platform Mitigation only Fix from $1,9502013-04-18 HIGH 7.8 CVE-2012-4714 Integer overflow in RNADiagnostics.dll in Rockwell Automation FactoryTalk Services Platform (FTSP) CPR9, CPR9-SR1, CPR9-SR2, CPR9-SR3, CPR9-SR4, CPR9… Factorytalk Services Platform Mitigation only Fix from $1,9502013-04-18 HIGH 7.1 CVE-2012-4695 LogReceiver.exe in Rockwell Automation RSLinx Enterprise CPR9, CPR9-SR1, CPR9-SR2, CPR9-SR3, CPR9-SR4, CPR9-SR5, CPR9-SR5.1, and CPR9-SR6 allows remo… Rslinx Enterprise Mitigation only Fix from $1,9502013-04-18 HIGH 7.5 CVE-2012-6442EPSS 36% When an affected product receives a valid CIP message from an unauthorized or unintended source to Port 2222/TCP, Port 2222/UDP, Port 44818/TCP, or P… Ethernet\/ip Firmware Mitigation only Fix from $1,9502013-01-24 HIGH 7.1 CVE-2012-4690 Rockwell Automation Allen-Bradley MicroLogix controller 1100, 1200, 1400, and 1500; SLC 500 controller platform; and PLC-5 controller platform, when … Ab Micrologix Controller Mitigation only Fix from $1,9502012-12-08 MEDIUM 5.0 CVE-2012-0221EPSS 10% The FactoryTalk (FT) RNADiagReceiver service in Rockwell Automation Allen-Bradley FactoryTalk CPR9 through SR5 and RSLogix 5000 17 through 20 does no… Factorytalk Mitigation only Fix from $1,6002012-04-02