Rockwellautomation
Rockwellautomation Compactlogix 5380 Firmware: vulnerabilidades y CVE
Rockwellautomation Compactlogix 5380 Firmware tiene 12 vulnerabilidades publicadas, 0 de ellas en los últimos 12 meses. 1 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE12
Últimos 12 meses0
Críticas1
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2024-6207 | Alta (8.7) | 0.55% | — | 14 oct 2024 | CVE 2021-22681 https://www.rockwellautomation.com/en-us/trust-center/security-advisories/advisory.PN1550.html and send a specially crafted CIP message to the device. If exploited, a threat actor could help prevent… |
| CVE-2024-8626 | Alta (8.7) | 0.52% | — | 8 oct 2024 | Due to a memory leak, a denial-of-service vulnerability exists in the Rockwell Automation affected products. A malicious actor could exploit this vulnerability by performing multiple actions on certain web pages of the… |
| CVE-2024-6077 | Alta (8.7) | 0.56% | — | 12 sept 2024 | A denial-of-service vulnerability exists in the Rockwell Automation affected products when specially crafted packets are sent to the CIP Security Object. If exploited the device will become unavailable and require a… |
| CVE-2024-7515 | Alta (8.7) | 0.52% | — | 14 ago 2024 | CVE-2024-7515 IMPACT A denial-of-service vulnerability exists in the affected products. A malformed PTP management packet can cause a major nonrecoverable fault in the controller. |
| CVE-2024-7507 | Alta (8.7) | 0.50% | — | 14 ago 2024 | CVE-2024-7507 IMPACT A denial-of-service vulnerability exists in the affected products. This vulnerability occurs when a malformed PCCC message is received, causing a fault in the controller. |
| CVE-2024-5659 | Alta (8.3) | 0.31% | — | 14 jun 2024 | Rockwell Automation was made aware of a vulnerability that causes all affected controllers on the same network to result in a major nonrecoverable fault(MNRF/Assert). This vulnerability could be exploited by sending… |
| CVE-2024-3493 | Alta (7.5) | 0.64% | — | 15 abr 2024 | A specific malformed fragmented packet type (fragmented packets may be generated automatically by devices that send large amounts of data) can cause a major nonrecoverable fault (MNRF) Rockwell Automation's ControlLogix… |
| CVE-2022-3752 | Alta (7.5) | 1.3% | — | 19 dic 2022 | An unauthorized user could use a specially crafted sequence of Ethernet/IP messages, combined with heavy traffic loading to cause a denial-of-service condition in Rockwell Automation Logix controllers resulting in a… |
| CVE-2022-1797 | Alta (8.6) | 2.1% | — | 2 jun 2022 | A malformed Class 3 common industrial protocol message with a cached connection can cause a denial-of-service condition in Rockwell Automation Logix Controllers, resulting in a major nonrecoverable fault. If the target… |
| CVE-2022-1161 | Crítica (9.8) | 5.2% | — | 11 abr 2022 | An attacker with the ability to modify a user program may change user program code on some ControlLogix, CompactLogix, and GuardLogix Control systems. Studio 5000 Logix Designer writes user-readable program code to a… |
| CVE-2022-1159 | Alta (7.2) | 3.5% | — | 1 abr 2022 | Rockwell Automation Studio 5000 Logix Designer (all versions) are vulnerable when an attacker who achieves administrator access on a workstation running Studio 5000 Logix Designer could inject controller code… |
| CVE-2017-6024 | Media (5.9) | 2.6% | — | 6 may 2017 | A Resource Exhaustion issue was discovered in Rockwell Automation ControlLogix 5580 controllers V28.011, V28.012, and V28.013; ControlLogix 5580 controllers V29.011; CompactLogix 5380 controllers V28.011; and… |
🎯 Cómo se explota (técnicas ATT&CK)
Número de CVE de esta tecnología asignadas a cada técnica de explotación o de impacto principal.
Otros productos de Rockwellautomation
Arena · 46Micrologix 1400 B Firmware · 22Factorytalk View · 18Thinmanager · 17Factorytalk Linx · 14Factorytalk Services Platform · 14Micrologix 1100 Firmware · 14Controllogix 5580 Firmware · 13Guardlogix 5580 Firmware · 13Factorytalk Assetcentre · 12Compactlogix 5480 Firmware · 11Micrologix 1400 Firmware · 11