CVE-2020-27253: Input Validation
Published Nov 26, 2020
·Updated
A flaw exists in the Ingress/Egress checks routine of FactoryTalk Linx Version 6.11 and prior. This vulnerability could allow a remote, unauthenticated attacker to specifically craft a malicious packet resulting in a denial-of-service condition on the device.
Affected Software
2 affected components
rockwellautomation Factorytalk Linx<=6.11
Rockwell Automation FactoryTalk Linx: Version 6.11 and prior
Event History
Nov 26, 2020
CVE Published
via MITRE·01:36 AM
Data Sourced
via MITRE·01:36 AM
DescriptionWeakness
Aug 4, 2024
Data Sourced
via ICS·04:18 PM
SeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the vulnerability ID for this flaw?
The vulnerability ID for this flaw is CVE-2020-27253.
2
What is the severity rating of CVE-2020-27253?
CVE-2020-27253 has a severity rating of 7.5 (high).
3
What software versions are affected by CVE-2020-27253?
FactoryTalk Linx version 6.11 and prior are affected by CVE-2020-27253.
4
How can a remote attacker exploit this vulnerability?
A remote, unauthenticated attacker can exploit this vulnerability by crafting a malicious packet.
5
What can this vulnerability lead to?
CVE-2020-27253 can result in a denial-of-service condition on the affected device.