First published: Wed Oct 28 2015(Updated: )
Stack-based buffer overflow on Allen-Bradley MicroLogix 1100 devices before B FRN 15.000 and 1400 devices through B FRN 15.003 allows remote attackers to execute arbitrary code via unspecified vectors.
Credit: ics-cert@hq.dhs.gov
Affected Software | Affected Version | How to fix |
---|---|---|
Rockwell Automation MicroLogix 1100 Firmware | <=14.000 | |
Rockwell Automation MicroLogix 1400 | <=15.002 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2015-6490 is classified as a critical vulnerability due to its potential for remote code execution.
To fix CVE-2015-6490, upgrade Allen-Bradley's MicroLogix 1100 firmware to version B FRN 15.000 or later, and MicroLogix 1400 firmware to version B FRN 15.003 or later.
CVE-2015-6490 affects Allen-Bradley MicroLogix 1100 devices prior to B FRN 15.000 and MicroLogix 1400 devices prior to B FRN 15.003.
CVE-2015-6490 is a stack-based buffer overflow vulnerability that can allow attackers to execute arbitrary code.
Yes, CVE-2015-6490 can be exploited remotely, allowing unauthorized access to the affected devices.