CVE-2024-6207
- EPSS 0.18%
- Published 14.10.2024 21:15:12
- Last modified 21.10.2024 13:20:45
CVE 2021-22681 https://www.rockwellautomation.com/en-us/trust-center/security-advisories/advisory.PN1550.html and send a specially crafted CIP message to the device. If exploited, a threat actor could help prevent access to the legitimate user and ...
CVE-2024-8626
- EPSS 0.15%
- Published 08.10.2024 17:15:56
- Last modified 27.02.2025 18:47:11
Due to a memory leak, a denial-of-service vulnerability exists in the Rockwell Automation affected products. A malicious actor could exploit this vulnerability by performing multiple actions on certain web pages of the product causing the affected pr...
CVE-2024-6077
- EPSS 0.07%
- Published 12.09.2024 20:15:05
- Last modified 19.09.2024 14:31:18
A denial-of-service vulnerability exists in the Rockwell Automation affected products when specially crafted packets are sent to the CIP Security Object. If exploited the device will become unavailable and require a factory reset to recover.
CVE-2024-7515
- EPSS 0.2%
- Published 14.08.2024 20:15:13
- Last modified 04.03.2025 17:11:31
CVE-2024-7515 IMPACT A denial-of-service vulnerability exists in the affected products. A malformed PTP management packet can cause a major nonrecoverable fault in the controller.
CVE-2024-40619
- EPSS 0.15%
- Published 14.08.2024 20:15:12
- Last modified 31.01.2025 15:03:06
CVE-2024-40619 IMPACT A denial-of-service vulnerability exists in the affected products. The vulnerability occurs when a malformed CIP packet is sent over the network to the device and results in a major nonrecoverable fault causing a denial-of-serv...
CVE-2024-7507
- EPSS 0.08%
- Published 14.08.2024 20:15:12
- Last modified 04.03.2025 17:11:31
CVE-2024-7507 IMPACT A denial-of-service vulnerability exists in the affected products. This vulnerability occurs when a malformed PCCC message is received, causing a fault in the controller.
CVE-2024-5659
- EPSS 0.23%
- Published 14.06.2024 17:15:51
- Last modified 27.02.2025 15:15:08
Rockwell Automation was made aware of a vulnerability that causes all affected controllers on the same network to result in a major nonrecoverable fault(MNRF/Assert). This vulnerability could be exploited by sending abnormal packets to the mDNS port....
CVE-2024-3493
- EPSS 0.06%
- Published 15.04.2024 22:15:09
- Last modified 04.03.2025 17:11:31
A specific malformed fragmented packet type (fragmented packets may be generated automatically by devices that send large amounts of data) can cause a major nonrecoverable fault (MNRF) Rockwell Automation's ControlLogix 5580, Guard Logix 5580, Compa...
CVE-2022-1797
- EPSS 0.03%
- Published 02.06.2022 14:15:33
- Last modified 21.11.2024 06:41:29
A malformed Class 3 common industrial protocol message with a cached connection can cause a denial-of-service condition in Rockwell Automation Logix Controllers, resulting in a major nonrecoverable fault. If the target device becomes unavailable, a u...
CVE-2022-1161
- EPSS 0.12%
- Published 11.04.2022 20:15:18
- Last modified 21.11.2024 06:40:09
An attacker with the ability to modify a user program may change user program code on some ControlLogix, CompactLogix, and GuardLogix Control systems. Studio 5000 Logix Designer writes user-readable program code to a separate location than the execut...