First published: Mon Mar 16 2020(Updated: )
Rockwell Automation MicroLogix 1400 Controllers Series B v21.001 and prior, Series A, all versions, MicroLogix 1100 Controller, all versions, RSLogix 500 Software v12.001 and prior, The cryptographic function utilized to protect the password in MicroLogix is discoverable.
Credit: ics-cert@hq.dhs.gov
Affected Software | Affected Version | How to fix |
---|---|---|
Rockwellautomation Micrologix 1400 A Firmware | ||
Rockwellautomation Micrologix 1400 B Firmware | <=21.001 | |
Rockwellautomation Micrologix 1400 | ||
Rockwellautomation Micrologix 1100 Firmware | ||
Rockwellautomation Micrologix 1100 | ||
Rockwellautomation Rslogix 500 | <=12.001 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2020-6984.
The severity of CVE-2020-6984 is high with a CVSS score of 7.5.
Rockwell Automation MicroLogix 1400 Series B firmware versions up to 21.001, MicroLogix 1100 firmware, and RSLogix 500 Software versions up to 12.001 are affected by CVE-2020-6984.
The cryptographic function used to protect the password in MicroLogix is discoverable.
You can find more information about CVE-2020-6984 at the following link: https://www.us-cert.gov/ics/advisories/icsa-20-070-06