7.1
CVE-2012-4695
- EPSS 2.76%
- Veröffentlicht 18.04.2013 02:25:36
- Zuletzt bearbeitet 29.04.2026 01:13:23
- Erkennungen
LogReceiver.exe in Rockwell Automation RSLinx Enterprise CPR9, CPR9-SR1, CPR9-SR2, CPR9-SR3, CPR9-SR4, CPR9-SR5, CPR9-SR5.1, and CPR9-SR6 allows remote attackers to cause a denial of service (service outage) via a zero-byte UDP packet that is not properly handled by Logger.dll.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Rockwellautomation ≫ Rslinx Enterprise Version cpr9
Rockwellautomation ≫ Rslinx Enterprise Version cpr9 Update sr1
Rockwellautomation ≫ Rslinx Enterprise Version cpr9 Update sr2
Rockwellautomation ≫ Rslinx Enterprise Version cpr9 Update sr3
Rockwellautomation ≫ Rslinx Enterprise Version cpr9 Update sr4
Rockwellautomation ≫ Rslinx Enterprise Version cpr9 Update sr5
Rockwellautomation ≫ Rslinx Enterprise Version cpr9 Update sr5.1
Rockwellautomation ≫ Rslinx Enterprise Version cpr9 Update sr6
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 2.76% | 0.844 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 7.1 | 8.6 | 6.9 |
AV:N/AC:M/Au:N/C:N/I:N/A:C
|
CWE-20 Improper Input Validation
The product receives input or data, but it does not validate or incorrectly validates that the input has the properties that are required to process the data safely and correctly.
http://ics-cert.us-cert.gov/pdf/ICSA-13-095-02.pdf
https://rockwellautomation.custhelp.com/app/answers/detail/a_id/537599