Rockwellautomation
rockwellautomation
337 CVEs • 468 products
Products (468)
Click to collapseToggle
Products (468)
Click to collapse
CVEs (337)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Rockwellautomation 1Factorytalk Services Platform Nov 21, 2024 Mar 18, 2021 N/A· v4 10.0 CRITICAL· v3 7.5 HIGH· v2 In Rockwell Automation FactoryTalk Services Platform Versions 6.10.00 and 6.11.00, there is an issue with the implementation of the SHA-256 hashing algorithm with FactoryTalk Services Platform that prevents the user pass...Show more |
1Rockwellautomation 3Factorytalk Services Platform Rslogix 5000Studio 5000 Logix DesignerMar 6, 2026 Mar 3, 2021 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 Rockwell Automation Studio 5000 Logix Designer Versions 21 and later, and RSLogix 5000 Versions 16 through 20 use a key to verify Logix controllers are communicating with Rockwell Automation CompactLogix 1768, 1769, 5370...Show more |
1Rockwellautomation 1Flex I/o 1794 Aent/b Firmware Nov 21, 2024 Feb 4, 2021 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 An exploitable denial of service vulnerability exists in the ENIP Request Path Network Segment functionality of Allen-Bradley Flex IO 1794-AENT/B 4.003. A specially crafted network request can cause a loss of communicati...Show more |
4Ge PtcRockwellautomation+1 more7Industrial Gateway Server Kepserver EnterpriseKepware Kepserverex+4 moreNov 21, 2024 Jan 14, 2021 N/A· v4 9.1 CRITICAL· v3 6.4 MEDIUM· v2 KEPServerEX v6.0 to v6.9, ThingWorx Kepware Server v6.8 and v6.9, ThingWorx Industrial Connectivity (all versions), OPC-Aggregator (all versions), Rockwell Automation KEPServer Enterprise, GE Digital Industrial Gateway S...Show more |
4Ge PtcRockwellautomation+1 more7Industrial Gateway Server Kepserver EnterpriseKepware Kepserverex+4 moreNov 21, 2024 Jan 14, 2021 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 KEPServerEX: v6.0 to v6.9, ThingWorx Kepware Server: v6.8 and v6.9, ThingWorx Industrial Connectivity: All versions, OPC-Aggregator: All versions, Rockwell Automation KEPServer Enterprise, GE Digital Industrial Gateway S...Show more |
4Ge PtcRockwellautomation+1 more7Industrial Gateway Server Kepserver EnterpriseKepware Kepserverex+4 moreNov 21, 2024 Jan 14, 2021 N/A· v4 9.1 CRITICAL· v3 6.4 MEDIUM· v2 KEPServerEX: v6.0 to v6.9, ThingWorx Kepware Server: v6.8 and v6.9, ThingWorx Industrial Connectivity: All versions, OPC-Aggregator: All versions, Rockwell Automation KEPServer Enterprise, GE Digital Industrial Gateway S...Show more |
A denial-of-service vulnerability exists in the Ethernet/IP server functionality of Rockwell Automation RSLinx Classic 2.57.00.14 CPR 9 SR 3. A specially crafted network request can lead to a denial of service. An attack...Show more |
1Rockwellautomation 1Factorytalk Diagnostics Nov 21, 2024 Dec 29, 2020 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 An unauthenticated remote attacker can send data to RsvcHost.exe listening on TCP port 5241 to add entries in the FactoryTalk Diagnostics event log. The attacker can specify long fields in the log entry, which can cause...Show more |
1Rockwellautomation 1Factorytalk Linx Nov 21, 2024 Dec 29, 2020 N/A· v4 5.5 MEDIUM· v3 2.1 LOW· v2 An attacker-controlled memory allocation size can be passed to the C++ new operator in the CServerManager::HandleBrowseLoadIconStreamRequest in messaging.dll. This can be done by sending a specially crafted message to 12...Show more |
1Rockwellautomation 1Factorytalk Linx Nov 21, 2024 Dec 29, 2020 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 An attacker-controlled memory allocation size can be passed to the C++ new operator in RnaDaSvr.dll by sending a specially crafted ConfigureItems message to TCP port 4241. This will cause an unhandled exception, resultin...Show more |
1Rockwellautomation 1Factorytalk Linx Nov 21, 2024 Dec 29, 2020 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 An attacker can craft and send an OpenNamespace message to port 4241 with valid session-id that triggers an unhandled exception in CFTLDManager::HandleRequest function in RnaDaSvr.dll, resulting in process termination. O...Show more |
1Rockwellautomation 1Micrologix 1100 B Firmware Nov 21, 2024 Dec 3, 2020 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 An exploitable denial-of-service vulnerability exists in the IPv4 functionality of Allen-Bradley MicroLogix 1100 Programmable Logic Controller Systems Series B FRN 16.000, Series B FRN 15.002, Series B FRN 15.000, Series...Show more |
1Rockwellautomation 1Factorytalk Linx Nov 21, 2024 Nov 26, 2020 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 A heap overflow vulnerability exists within FactoryTalk Linx Version 6.11 and prior. This vulnerability could allow a remote, unauthenticated attacker to send malicious set attribute requests, which could result in the l...Show more |
1Rockwellautomation 1Factorytalk Linx Nov 21, 2024 Nov 26, 2020 N/A· v4 7.5 HIGH· v3 7.8 HIGH· v2 A flaw exists in the Ingress/Egress checks routine of FactoryTalk Linx Version 6.11 and prior. This vulnerability could allow a remote, unauthenticated attacker to specifically craft a malicious packet resulting in a den...Show more |
1Rockwellautomation 1Factorytalk Linx Nov 21, 2024 Nov 26, 2020 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 A heap overflow vulnerability exists within FactoryTalk Linx Version 6.11 and prior. This vulnerability could allow a remote, unauthenticated attacker to send malicious port ranges, which could result in remote code exec...Show more |
1Rockwellautomation 1Flex I/o 1794 Aent Nov 21, 2024 Oct 19, 2020 N/A· v4 7.5 HIGH· v3 7.8 HIGH· v2 An exploitable denial of service vulnerability exists in the ENIP Request Path Logical Segment functionality of Allen-Bradley Flex IO 1794-AENT/B 4.003. A specially crafted network request can cause a loss of communicati...Show more |
1Rockwellautomation 1Flex I/o 1794 Aent Nov 21, 2024 Oct 19, 2020 N/A· v4 7.5 HIGH· v3 7.8 HIGH· v2 An exploitable denial of service vulnerability exists in the ENIP Request Path Logical Segment functionality of Allen-Bradley Flex IO 1794-AENT/B 4.003. A specially crafted network request can cause a loss of communicati...Show more |
1Rockwellautomation 1Flex I/o 1794 Aent/b Firmware Nov 21, 2024 Oct 14, 2020 N/A· v4 7.5 HIGH· v3 7.8 HIGH· v2 An exploitable denial of service vulnerability exists in the ENIP Request Path Data Segment functionality of Allen-Bradley Flex IO 1794-AENT/B. A specially crafted network request can cause a loss of communications with...Show more |
1Rockwellautomation 1Flex I/o 1794 Aent/b Firmware Nov 21, 2024 Oct 14, 2020 N/A· v4 7.5 HIGH· v3 7.8 HIGH· v2 An exploitable denial of service vulnerability exists in the ENIP Request Path Data Segment functionality of Allen-Bradley Flex IO 1794-AENT/B. A specially crafted network request can cause a loss of communications with...Show more |
1Rockwellautomation 1Allen Bradley Flex Io 1794 Aent/b Firmware Nov 21, 2024 Oct 14, 2020 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 An exploitable denial of service vulnerability exists in the ENIP Request Path Port Segment functionality of Allen-Bradley Flex IO 1794-AENT/B. A specially crafted network request can cause a loss of communications with...Show more |