7.8
CVSSv2

CVE-2012-6442

Published: 24/01/2013 Updated: 03/09/2019
CVSS v2 Base Score: 7.8 | Impact Score: 6.9 | Exploitability Score: 10
VMScore: 694
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:C

Vulnerability Summary

Rockwell Automation EtherNet/IP products; 1756-ENBT, 1756-EWEB, 1768-ENBT, and 1768-EWEB communication modules; CompactLogix L32E and L35E controllers; 1788-ENBT FLEXLogix adapter; 1794-AENTR FLEX I/O EtherNet/IP adapter; ControlLogix 18 and previous versions; CompactLogix 18 and previous versions; GuardLogix 18 and previous versions; SoftLogix 18 and previous versions; CompactLogix controllers 19 and previous versions; SoftLogix controllers 19 and previous versions; ControlLogix controllers 20 and previous versions; GuardLogix controllers 20 and previous versions; and MicroLogix 1100 and 1400 allow remote malicious users to cause a denial of service (control and communication outage) via a CIP message that specifies a reset.

Vulnerable Product Search on Vulmon Subscribe to Product

rockwellautomation ethernet\\/ip_firmware -

rockwellautomation compactlogix_firmware -

rockwellautomation flexlogix_firmware -

rockwellautomation flex_i\\/o_ethernet\\/ip__firmware -

rockwellautomation micrologix_firmware -

rockwellautomation guardlogix controllers firmware 20

rockwellautomation compactlogix firmware 18

rockwellautomation controllogix firmware 18

rockwellautomation guardlogix firmware 18

rockwellautomation softlogix controllers firmware 19

rockwellautomation softlogix firmware 18

rockwellautomation compactlogix controllers firmware 19

rockwellautomation controllogix controllers firmware 20