Tag
#Rockwell Automation
9 published stories tagged with Rockwell Automation.
Authenticated attackers can write arbitrary files through path traversal in Rockwell ThinManager
An authenticated attacker can write arbitrary files to restricted system directories via a path traversal vulnerability in Rockwell Automation's FactoryTalk ThinManager.
Arbitrary code execution vulnerabilities found in Rockwell Automation Studio 5000 Logix Designer
Three vulnerabilities in Rockwell Automation's Studio 5000 Logix Designer could allow an attacker to execute arbitrary code on a workstation.
Malicious CIP messages can trigger denial of service in Rockwell Automation POINT I/O modules
Crafted CIP messages can force Rockwell Automation 1734 POINT I/O modules into a faulted state, requiring a manual restart. This vulnerability carries a CVSS score of 8.7.
UDP unicast network storms trigger denial-of-service in Rockwell Automation 1719-AENTR adapters
A high-severity denial-of-service vulnerability in Rockwell Automation's 1719-AENTR adapter can cause a complete loss of communication.
Crafted CIP packets trigger denial-of-service and halt industrial I/O on Rockwell Flex 5000 adapters
Sending crafted CIP packets to a FLEX 5000 EtherNet/IP adapter can trigger a denial-of-service state that halts industrial I/O. Recovery requires a physical power cycle of the module.
Critical Denial of Service Vulnerability Threatens Rockwell Automation Controllers; Urgent Mitigation Needed
A critical vulnerability in Rockwell Automation's CompactLogix and ControlLogix controllers could lead to denial of service attacks.
High-Severity DoS Vulnerability Exposes 1769 Rockwell Automation CompactLogix Controllers to Attack
Rockwell Automation's CompactLogix 5370 controllers are vulnerable to denial-of-service (DoS) attacks due to improper validation of sequence numbers and source IP addresses in the CIP protocol.
Service Disruption Vulnerability in Rockwell Automation's RSLinx Classic Ethernet/IP Server Unveiled
A denial-of-service vulnerability in Rockwell Automation's RSLinx Classic Ethernet/IP server (CVE-2020-13573) can be triggered by sending malicious network packets.
Unauthorized Admin Actions Threaten Rockwell Automation's FactoryTalk Analytics PavilionX
Rockwell Automation's FactoryTalk Analytics PavilionX is vulnerable to unauthorized administrative actions due to improper API authorization enforcement.