Vulnerability index

Browse CVEs

313 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Controllogix Controllers HIGH 7.5
CVE-2012-6438EPSS 27%

The device does not properly validate the data being sent to the buffer. An attacker can send a malformed CIP packet to Port 2222/TCP, Port 2222/UDP,…

Fix: after 1400
Fix from $1,950 2013-01-24
Ethernet\/ip Firmware HIGH 7.5
CVE-2012-6442EPSS 36%

When an affected product receives a valid CIP message from an unauthorized or unintended source to Port 2222/TCP, Port 2222/UDP, Port 44818/TCP, or P…

Mitigation only
Fix from $1,950 2013-01-24
Controllogix Controllers MEDIUM 5.0
CVE-2012-6441EPSS 47%

An information exposure of confidential information results when the device receives a specially crafted CIP packet to Port 2222/TCP, Port 2222/UDP, …

Fix: after 1400
Fix from $1,600 2013-01-24
Ab Micrologix Controller HIGH 7.1
CVE-2012-4690

Rockwell Automation Allen-Bradley MicroLogix controller 1100, 1200, 1400, and 1500; SLC 500 controller platform; and PLC-5 controller platform, when …

Mitigation only
Fix from $1,950 2012-12-08
Factorytalk MEDIUM 5.0
CVE-2012-0221EPSS 10%

The FactoryTalk (FT) RNADiagReceiver service in Rockwell Automation Allen-Bradley FactoryTalk CPR9 through SR5 and RSLogix 5000 17 through 20 does no…

Mitigation only
Fix from $1,600 2012-04-02
Factorytalk MEDIUM 5.0
CVE-2012-0222

The FactoryTalk (FT) RNADiagReceiver service in Rockwell Automation Allen-Bradley FactoryTalk CPR9 through SR5 and RSLogix 5000 17 through 20 allows …

Mitigation only
Fix from $1,600 2012-04-02
Rslogix MEDIUM 5.0
CVE-2011-3489EPSS 9%

RnaUtility.dll in RsvcHost.exe 2.30.0.23 in Rockwell RSLogix 19 and earlier allows remote attackers to cause a denial of service (crash) via a crafte…

Fix: after 19
Fix from $1,600 2011-09-16
Factorytalk Diagnostics Viewer MEDIUM 6.9
CVE-2011-2957

Unspecified vulnerability in Rockwell Automation FactoryTalk Diagnostics Viewer before V2.30.00 (CPR9 SR3) allows local users to execute arbitrary co…

Fix: after 2.10.02
Fix from $1,600 2011-07-28
Rslinx HIGH 9.3
CVE-2011-2530EPSS 8%

Buffer overflow in RSEds.dll in RSHWare.exe in the EDS Hardware Installation Tool 1.0.5.1 and earlier in Rockwell Automation RSLinx Classic before 2.…

Fix: 2.58+
Fix from $1,950 2011-06-22
1756 Enbt\/a Firmware CRITICAL 9.8
CVE-2010-2965EPSS 58%

The WDB target agent debug service in Wind River VxWorks 6.x, 5.x, and earlier, as used on the Rockwell Automation 1756-ENBT series A with firmware 3…

Fix: after 6.9.4.12
Fix from $2,300 2010-08-05
Ab Micrologix Controller 1100 HIGH 10.0
CVE-2009-3739

Multiple unspecified vulnerabilities on the Rockwell Automation AB Micrologix 1100 and 1400 controllers allow remote attackers to obtain privileged a…

Mitigation only
Fix from $1,950 2010-01-19
Controllogix 1756 Enbt\/a Ethernet\/ Ip Bridge MEDIUM 6.8
CVE-2009-0473EPSS 13%

Open redirect vulnerability in the web interface in the Rockwell Automation ControlLogix 1756-ENBT/A EtherNet/IP Bridge Module allows remote attacker…

Mitigation only
Fix from $1,600 2009-02-06
Controllogix 1756 Enbt\/a Ethernet\/ Ip Bridge MEDIUM 5.0
CVE-2009-0474EPSS 6%

The web interface in the Rockwell Automation ControlLogix 1756-ENBT/A EtherNet/IP Bridge Module allows remote attackers to obtain "internal web page …

Mitigation only
Fix from $1,600 2009-02-06