Stack-based buffer overflow on Rockwell Automation Allen-Bradley MicroLogix 1100 devices A through 15.000 and B before 15.002 allows remote attackers to execute arbitrary code via a crafted web request.
CVSS Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:HRockwellautomation 1763 L16awa Series A
APPRockwellautomation15.000Rockwellautomation 1763 L16awa Series B
APPRockwellautomation15.000Rockwellautomation 1763 L16bbb Series A
APPRockwellautomation15.000Rockwellautomation 1763 L16bbb Series B
APPRockwellautomation15.000Rockwellautomation 1763 L16bwa Series A
APPRockwellautomation15.000Rockwellautomation 1763 L16bwa Series B
APPRockwellautomation15.000Rockwellautomation 1763 L16dwd Series A
APPRockwellautomation15.000Rockwellautomation 1763 L16dwd Series B
APPRockwellautomation15.000Rockwellautomation Ab Micrologix Controller
HWRockwellautomation1100
🔵
CHECK WITH VENDOR
No clear patch data available. Check vendor references.
Tags
RCEMemory
CWE
Related vulnerabilities
CVE-2017-7903CRITICAL9.8PL ✓same product
Słabe wymagania hasła w sterownikach PLC Rockwell Automation MicroLogix
CVE-2017-7898CRITICAL9.8PL ✓same product
Brak blokady po błędnych próbach logowania w sterownikach Rockwell Automation MicroLogix
CVE-2017-7899CRITICAL9.8PL ✓same product
Ujawnienie danych logowania w sterownikach Allen-Bradley MicroLogix
CVE-2017-7902CRITICAL9.8PL ✓same product
Wielokrotne użycie nonce w szyfrowaniu — sterowniki PLC Rockwell Automation
CVE-2017-7901HIGH8.6same product
A Predictable Value Range from Previous Values issue was discovered in Rockwell Automation Allen-Bradley Micro...