Rockwellautomation
rockwellautomation
341 CVEs • 468 products
Products (468)
Click to collapseToggle
Products (468)
Click to collapse
CVEs (341)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Rockwellautomation 1Micrologix 1100 Firmware Jun 17, 2026 Jul 9, 2021 N/A· v4 8.6 HIGH· v3 5.0 MEDIUM· v2 Rockwell Automation MicroLogix 1100, all versions, allows a remote, unauthenticated attacker sending specially crafted commands to cause the PLC to fault when the controller is switched to RUN mode, which results in a de...Show more |
1Rockwellautomation 2Micro800 Firmware Micrologix 1400 FirmwareJun 17, 2026 Jun 3, 2021 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 When an authenticated password change request takes place, this vulnerability could allow the attacker to intercept the message that includes the legitimate, new password hash and replace it with an illegitimate hash. Th...Show more |
1Rockwellautomation 1Micrologix 1400 Firmware Jun 17, 2026 Mar 25, 2021 N/A· v4 8.6 HIGH· v3 7.5 HIGH· v2 Rockwell Automation MicroLogix 1400 Version 21.6 and below may allow a remote unauthenticated attacker to send a specially crafted Modbus packet allowing the attacker to retrieve or modify random values in the register....Show more |
1Rockwellautomation 2Drivetools Add On Profiles Drivetools SpJun 17, 2026 Mar 18, 2021 N/A· v4 7.8 HIGH· v3 7.2 HIGH· v2 Rockwell Automation DriveTools SP v5.13 and below and Drives AOP v4.12 and below both contain a vulnerability that a local attacker with limited privileges may be able to exploit resulting in privilege escalation and com...Show more |
1Rockwellautomation 1Factorytalk Services Platform Jun 17, 2026 Mar 18, 2021 N/A· v4 10.0 CRITICAL· v3 7.5 HIGH· v2 In Rockwell Automation FactoryTalk Services Platform Versions 6.10.00 and 6.11.00, there is an issue with the implementation of the SHA-256 hashing algorithm with FactoryTalk Services Platform that prevents the user pass...Show more |
1Rockwellautomation 3Factorytalk Services Platform Rslogix 5000Studio 5000 Logix DesignerJun 17, 2026 Mar 3, 2021 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 Rockwell Automation Studio 5000 Logix Designer Versions 21 and later, and RSLogix 5000 Versions 16 through 20 use a key to verify Logix controllers are communicating with Rockwell Automation CompactLogix 1768, 1769, 5370...Show more |
1Rockwellautomation 1Flex I/o 1794 Aent/b Firmware Jun 17, 2026 Feb 4, 2021 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 An exploitable denial of service vulnerability exists in the ENIP Request Path Network Segment functionality of Allen-Bradley Flex IO 1794-AENT/B 4.003. A specially crafted network request can cause a loss of communicati...Show more |
4Ge PtcRockwellautomation+1 more7Industrial Gateway Server Kepserver EnterpriseKepware Kepserverex+4 moreJun 17, 2026 Jan 14, 2021 N/A· v4 9.1 CRITICAL· v3 6.4 MEDIUM· v2 KEPServerEX v6.0 to v6.9, ThingWorx Kepware Server v6.8 and v6.9, ThingWorx Industrial Connectivity (all versions), OPC-Aggregator (all versions), Rockwell Automation KEPServer Enterprise, GE Digital Industrial Gateway S...Show more |
4Ge PtcRockwellautomation+1 more7Industrial Gateway Server Kepserver EnterpriseKepware Kepserverex+4 moreJun 17, 2026 Jan 14, 2021 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 KEPServerEX: v6.0 to v6.9, ThingWorx Kepware Server: v6.8 and v6.9, ThingWorx Industrial Connectivity: All versions, OPC-Aggregator: All versions, Rockwell Automation KEPServer Enterprise, GE Digital Industrial Gateway S...Show more |
4Ge PtcRockwellautomation+1 more7Industrial Gateway Server Kepserver EnterpriseKepware Kepserverex+4 moreJun 17, 2026 Jan 14, 2021 N/A· v4 9.1 CRITICAL· v3 6.4 MEDIUM· v2 KEPServerEX: v6.0 to v6.9, ThingWorx Kepware Server: v6.8 and v6.9, ThingWorx Industrial Connectivity: All versions, OPC-Aggregator: All versions, Rockwell Automation KEPServer Enterprise, GE Digital Industrial Gateway S...Show more |
A denial-of-service vulnerability exists in the Ethernet/IP server functionality of Rockwell Automation RSLinx Classic 2.57.00.14 CPR 9 SR 3. A specially crafted network request can lead to a denial of service. An attack...Show more |
1Rockwellautomation 1Factorytalk Diagnostics Jun 17, 2026 Dec 29, 2020 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 An unauthenticated remote attacker can send data to RsvcHost.exe listening on TCP port 5241 to add entries in the FactoryTalk Diagnostics event log. The attacker can specify long fields in the log entry, which can cause...Show more |
1Rockwellautomation 1Factorytalk Linx Jun 17, 2026 Dec 29, 2020 N/A· v4 5.5 MEDIUM· v3 2.1 LOW· v2 An attacker-controlled memory allocation size can be passed to the C++ new operator in the CServerManager::HandleBrowseLoadIconStreamRequest in messaging.dll. This can be done by sending a specially crafted message to 12...Show more |
1Rockwellautomation 1Factorytalk Linx Jun 17, 2026 Dec 29, 2020 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 An attacker-controlled memory allocation size can be passed to the C++ new operator in RnaDaSvr.dll by sending a specially crafted ConfigureItems message to TCP port 4241. This will cause an unhandled exception, resultin...Show more |
1Rockwellautomation 1Factorytalk Linx Jun 17, 2026 Dec 29, 2020 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 An attacker can craft and send an OpenNamespace message to port 4241 with valid session-id that triggers an unhandled exception in CFTLDManager::HandleRequest function in RnaDaSvr.dll, resulting in process termination. O...Show more |
1Rockwellautomation 1Micrologix 1100 B Firmware Jun 17, 2026 Dec 3, 2020 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 An exploitable denial-of-service vulnerability exists in the IPv4 functionality of Allen-Bradley MicroLogix 1100 Programmable Logic Controller Systems Series B FRN 16.000, Series B FRN 15.002, Series B FRN 15.000, Series...Show more |
1Rockwellautomation 1Factorytalk Linx Jun 17, 2026 Nov 26, 2020 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 A heap overflow vulnerability exists within FactoryTalk Linx Version 6.11 and prior. This vulnerability could allow a remote, unauthenticated attacker to send malicious set attribute requests, which could result in the l...Show more |
1Rockwellautomation 1Factorytalk Linx Jun 17, 2026 Nov 26, 2020 N/A· v4 7.5 HIGH· v3 7.8 HIGH· v2 A flaw exists in the Ingress/Egress checks routine of FactoryTalk Linx Version 6.11 and prior. This vulnerability could allow a remote, unauthenticated attacker to specifically craft a malicious packet resulting in a den...Show more |
1Rockwellautomation 1Factorytalk Linx Jun 17, 2026 Nov 26, 2020 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 A heap overflow vulnerability exists within FactoryTalk Linx Version 6.11 and prior. This vulnerability could allow a remote, unauthenticated attacker to send malicious port ranges, which could result in remote code exec...Show more |
1Rockwellautomation 1Flex I/o 1794 Aent Jun 17, 2026 Oct 19, 2020 N/A· v4 7.5 HIGH· v3 7.8 HIGH· v2 An exploitable denial of service vulnerability exists in the ENIP Request Path Logical Segment functionality of Allen-Bradley Flex IO 1794-AENT/B 4.003. A specially crafted network request can cause a loss of communicati...Show more |