Vulnerabilities (CVE)

Vendor filter

Rockwellautomation Subscribe

Filter

91 total CVE
CVE Vendors Products Updated CVSS
CVE-2019-10955 1 Rockwellautomation 6 Compactlogix 5370 L1 Firmware, Compactlogix 5370 L2 Firmware, Compactlogix 5370 L3 Firmware and 3 more 2019-10-10 5.8
In Rockwell Automation MicroLogix 1400 Controllers Series A, All Versions Series B, v15.002 and earlier, MicroLogix 1100 Controllers v14.00 and earlier, CompactLogix 5370 L1 controllers v30.014 and earlier, CompactLogix 5370 L2 controllers...
CVE-2018-19615 1 Rockwellautomation 1 Powermonitor 1000 Firmware 2019-10-10 4.3
Rockwell Automation Allen-Bradley PowerMonitor 1000 all versions. A remote attacker could inject arbitrary code into a targeted user???s web browser to gain access to the affected device.
CVE-2013-2807 1 Rockwellautomation 1 Rslinx Enterprise 2019-10-10 7.8
Rockwell Automation RSLinx Enterprise Software (LogReceiver.exe) CPR9, CPR9-SR1, CPR9-SR2, CPR9-SR3, CPR9-SR4, CPR9-SR5, CPR9-SR5.1, and CPR9-SR6 does not handle input correctly and results in a logic error if it calculates an incorrect value for...
CVE-2013-2806 1 Rockwellautomation 1 Rslinx Enterprise 2019-10-10 7.8
Rockwell Automation RSLinx Enterprise Software (LogReceiver.exe) CPR9, CPR9-SR1, CPR9-SR2, CPR9-SR3, CPR9-SR4, CPR9-SR5, CPR9-SR5.1, and CPR9-SR6 does not handle input correctly and results in a logic error if it calculates an incorrect value for...
CVE-2013-2805 1 Rockwellautomation 1 Rslinx Enterprise 2019-10-10 7.8
Rockwell Automation RSLinx Enterprise Software (LogReceiver.exe) CPR9, CPR9-SR1, CPR9-SR2, CPR9-SR3, CPR9-SR4, CPR9-SR5, CPR9-SR5.1, and CPR9-SR6 does not handle input correctly and results in a logic error if it receives a datagram with an...
CVE-2010-5305 1 Rockwellautomation 3 Rslogix, Plc5 1785-lx Firmware, Slc5%2f01 1747-l5x Firmware 2019-10-10 7.5
The potential exists for exposure of the product's password used to restrict unauthorized access to Rockwell PLC5/SLC5/0x/RSLogix 1785-Lx and 1747-L5x controllers. The potential exists for an unauthorized programming and configuration client to...
CVE-2019-6553 1 Rockwellautomation 1 Rslinx 2019-10-09 7.5
A vulnerability was found in Rockwell Automation RSLinx Classic versions 4.10.00 and prior. An input validation issue in a .dll file of RSLinx Classic where the data in a Forward Open service request is passed to a fixed size buffer, allowing an...
CVE-2019-13527 1 Rockwellautomation 1 Arena Simulation Software 2019-10-09 6.8
In Rockwell Automation Arena Simulation Software Cat. 9502-Ax, Versions 16.00.00 and earlier, a maliciously crafted Arena file opened by an unsuspecting user may result in the use of a pointer that has not been initialized.
CVE-2019-13511 1 Rockwellautomation 1 Arena Simulation Software 2019-10-09 4.3
Rockwell Automation Arena Simulation Software versions 16.00.00 and earlier contain an INFORMATION EXPOSURE CWE-200. A maliciously crafted Arena file opened by an unsuspecting user may result in the limited exposure of information related to the...
CVE-2018-8843 1 Rockwellautomation 1 Arena 2019-10-09 4.3
Rockwell Automation Arena versions 15.10.00 and prior contains a use after free vulnerability caused by processing specially crafted Arena Simulation Software files that may cause the software application to crash, potentially losing any unsaved data..
CVE-2018-19016 1 Rockwellautomation 2 Ethernet%2fip Web Server Module 1756-eweb, Ethernet%2fip Web Server Module 1768-eweb 2019-10-09 N/A
Rockwell Automation EtherNet/IP Web Server Modules 1756-EWEB (includes 1756-EWEBK) Version 5.001 and earlier, and CompactLogix 1768-EWEB Version 2.005 and earlier. A remote attacker could send a crafted UDP packet to the SNMP service causing a...
CVE-2018-18981 1 Rockwellautomation 1 Factorytalk Services Platform 2019-10-09 7.8
In Rockwell Automation FactoryTalk Services Platform 2.90 and earlier, a remote unauthenticated attacker could send numerous crafted packets to service ports resulting in memory consumption that could lead to a partial or complete...
CVE-2018-17924 1 Rockwellautomation 16 1756-en2f Series A Firmware, 1756-en2f Series B Firmware, 1756-en2f Series C Firmware and 13 more 2019-10-09 7.8
Rockwell Automation MicroLogix 1400 Controllers and 1756 ControlLogix Communications Modules An unauthenticated, remote threat actor could send a CIP connection request to an affected device, and upon successful connection, send a new IP...
CVE-2018-14829 1 Rockwellautomation 1 Rslinx 2019-10-09 7.5
Rockwell Automation RSLinx Classic Versions 4.00.01 and prior. This vulnerability may allow a remote threat actor to intentionally send a malformed CIP packet to Port 44818, causing the software application to stop responding and crash. This...
CVE-2018-14827 1 Rockwellautomation 1 Rslinx 2019-10-09 5.0
Rockwell Automation RSLinx Classic Versions 4.00.01 and prior. A remote, unauthenticated threat actor may intentionally send specially crafted Ethernet/IP packets to Port 44818, causing the software application to stop responding and crash. The...
CVE-2018-14821 1 Rockwellautomation 1 Rslinx 2019-10-09 5.0
Rockwell Automation RSLinx Classic Versions 4.00.01 and prior. This vulnerability may allow a remote, unauthenticated threat actor to intentionally send a malformed CIP packet to Port 44818, causing the RSLinx Classic application to terminate....
CVE-2017-7924 1 Rockwellautomation 4 1763-l16dwd Firmware, 1763-l16bbb Firmware, 1763-l16bwa Firmware and 1 more 2019-10-09 5.0
An Improper Input Validation issue was discovered in Rockwell Automation MicroLogix 1100 controllers 1763-L16BWA, 1763-L16AWA, 1763-L16BBB, and 1763-L16DWD. A remote, unauthenticated attacker could send a single, specially crafted Programmable...
CVE-2017-7914 1 Rockwellautomation 1 Panelview Plus 6 700-1500 Firmware 2019-10-09 7.5
A Missing Authorization issue was discovered in Rockwell Automation PanelView Plus 6 700-1500 6.00.04, 6.00.05, 6.00.42, 6.00-20140306, 6.10.20121012, 6.10-20140122, 7.00-20121012, 7.00-20130108, 7.00-20130325, 7.00-20130619, 7.00-20140128,...
CVE-2017-7902 1 Rockwellautomation 20 1766-l32bxba Series B, 1766-l32bwaa Series A, 1763-l16dwd Series B and 17 more 2019-10-09 5.0
A "Reusing a Nonce, Key Pair in Encryption" issue was discovered in Rockwell Automation Allen-Bradley MicroLogix 1100 programmable-logic controllers 1763-L16AWA, Series A and B, Version 16.00 and prior versions; 1763-L16BBB, Series A and B,...
CVE-2017-6024 1 Rockwellautomation 2 Compactlogix 5830 Firmware, Controllogix 5580 Firmware 2019-10-09 7.1
A Resource Exhaustion issue was discovered in Rockwell Automation ControlLogix 5580 controllers V28.011, V28.012, and V28.013; ControlLogix 5580 controllers V29.011; CompactLogix 5380 controllers V28.011; and CompactLogix 5380 controllers...