CVE-2015-6491: Medium severity rockwell automation micrologix 1100 firmware vulnerability
Allen-Bradley MicroLogix 1100 devices before B FRN 15.000 and 1400 devices before B FRN 15.003 allow remote authenticated users to insert the content of an arbitrary file into a FRAME element via unspecified vectors.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2015-6491?
CVE-2015-6491 has a medium severity rating due to potential unauthorized file manipulation.
How do I fix CVE-2015-6491?
To fix CVE-2015-6491, update the MicroLogix 1100 device to firmware version B FRN 15.000 or higher, and the MicroLogix 1400 device to firmware version B FRN 15.003 or higher.
What types of devices are affected by CVE-2015-6491?
CVE-2015-6491 affects Allen-Bradley MicroLogix 1100 devices before B FRN 15.000 and MicroLogix 1400 devices before B FRN 15.003.
What kind of attacks can CVE-2015-6491 enable?
CVE-2015-6491 can enable remote authenticated users to insert arbitrary file content into a FRAME element.
Is there a workaround for CVE-2015-6491?
Currently, the best remedy for CVE-2015-6491 is to apply the recommended firmware updates from Rockwell Automation.