CVE-2017-12092: Infoleak
An exploitable file write vulnerability exists in the memory module functionality of Allen Bradley Micrologix 1400 Series B FRN 21.2 and before. A specially crafted packet can cause a file write resulting in a new program being written to the memory module. An attacker can send an unauthenticated packet to trigger this vulnerability.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2017-12092?
CVE-2017-12092 is an exploitable file write vulnerability in the memory module functionality of Allen Bradley Micrologix 1400 Series B FRN 21.2 and before.
What is the severity of CVE-2017-12092?
The severity of CVE-2017-12092 is high with a severity value of 7.5.
How does CVE-2017-12092 affect Rockwell Automation Micrologix 1400 B Firmware?
CVE-2017-12092 affects Rockwell Automation Micrologix 1400 B Firmware versions up to and including 21.2.
How can an attacker exploit CVE-2017-12092?
An attacker can exploit CVE-2017-12092 by sending a specially crafted packet that causes a file write resulting in a new program being written to the memory module.
Is Rockwell Automation Micrologix 1400 affected by CVE-2017-12092?
No, Rockwell Automation Micrologix 1400 is not vulnerable to CVE-2017-12092.