5.8
CVSSv2

CVE-2019-10955

Published: 25/04/2019 Updated: 10/02/2020
CVSS v2 Base Score: 5.8 | Impact Score: 4.9 | Exploitability Score: 8.6
CVSS v3 Base Score: 6.1 | Impact Score: 2.7 | Exploitability Score: 2.8
VMScore: 516
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:N

Vulnerability Summary

In Rockwell Automation MicroLogix 1400 Controllers Series A, All Versions Series B, v15.002 and previous versions, MicroLogix 1100 Controllers v14.00 and previous versions, CompactLogix 5370 L1 controllers v30.014 and previous versions, CompactLogix 5370 L2 controllers v30.014 and previous versions, CompactLogix 5370 L3 controllers (includes CompactLogix GuardLogix controllers) v30.014 and previous versions, an open redirect vulnerability could allow a remote unauthenticated malicious user to input a malicious link to redirect users to a malicious site that could run or download arbitrary malware on the user’s machine.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

rockwellautomation micrologix_1400_b_firmware

rockwellautomation micrologix_1400_a_firmware

rockwellautomation micrologix_1100_firmware

rockwellautomation compactlogix_5370_l1_firmware

rockwellautomation compactlogix_5370_l2_firmware

rockwellautomation compactlogix_5370_l3_firmware