First published: Thu Nov 26 2020(Updated: )
A heap overflow vulnerability exists within FactoryTalk Linx Version 6.11 and prior. This vulnerability could allow a remote, unauthenticated attacker to send malicious port ranges, which could result in remote code execution.
Credit: ics-cert@hq.dhs.gov
Affected Software | Affected Version | How to fix |
---|---|---|
Rockwellautomation Factorytalk Linx | <=6.11 | |
Rockwell Automation FactoryTalk Linx: Version 6.11 and prior |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-27251 is a heap overflow vulnerability within FactoryTalk Linx Version 6.11 and prior.
CVE-2020-27251 has a severity rating of 9.8, which is considered critical.
CVE-2020-27251 affects RockwellAutomation FactoryTalk Linx version 6.11 and prior.
A remote, unauthenticated attacker can exploit CVE-2020-27251 by sending malicious port ranges, potentially resulting in remote code execution.
At the moment, no fix is available for CVE-2020-27251. It is recommended to follow the guidance provided by the vendor and apply any necessary mitigations.