First published: Wed Mar 03 2021(Updated: )
Rockwell Automation Studio 5000 Logix Designer Versions 21 and later, and RSLogix 5000 Versions 16 through 20 use a key to verify Logix controllers are communicating with Rockwell Automation CompactLogix 1768, 1769, 5370, 5380, 5480: ControlLogix 5550, 5560, 5570, 5580; DriveLogix 5560, 5730, 1794-L34; Compact GuardLogix 5370, 5380; GuardLogix 5570, 5580; SoftLogix 5800. Rockwell Automation Studio 5000 Logix Designer Versions 21 and later and RSLogix 5000: Versions 16 through 20 are vulnerable because an unauthenticated attacker could bypass this verification mechanism and authenticate with Rockwell Automation CompactLogix 1768, 1769, 5370, 5380, 5480: ControlLogix 5550, 5560, 5570, 5580; DriveLogix 5560, 5730, 1794-L34; Compact GuardLogix 5370, 5380; GuardLogix 5570, 5580; SoftLogix 5800.
Credit: ics-cert@hq.dhs.gov
Affected Software | Affected Version | How to fix |
---|---|---|
Rockwell Automation RSLogix 5000 | ||
Rockwell Automation Studio 5000 Logix Designer | >=21 | |
Rockwell Automation FactoryTalk Security, part of the FactoryTalk Services Platform, if configured and deployed v2.10 and later | ||
Rockwell Automation FactoryTalk Services Platform | >=2.10 | |
Rockwell Automation RSLogix 5000 | >=16<=20 | |
Rockwell Automation Studio 5000 Logix Designer | >=21.0 | |
Rockwell Automation Compact GuardLogix 5370 Firmware | ||
Rockwell Automation Compact GuardLogix 5380 Firmware | ||
Rockwell Automation CompactLogix 1768 | ||
Rockwell Automation CompactLogix | ||
rockwellautomation compactlogix 5370 | ||
Rockwell Automation CompactLogix 5380 Firmware | ||
Rockwell Automation CompactLogix 5480 | ||
Rockwell Automation ControlLogix 5550 | ||
ControlLogix 5560 | ||
Rockwell Automation ControlLogix 5570 | ||
Rockwell Automation ControlLogix 5580 Firmware | ||
rockwellautomation DriveLogix 1794-L34 | ||
Rockwell Automation DriveLogix 5560 | ||
Rockwell Automation DriveLogix 5730 Firmware | ||
Rockwell Automation GuardLogix 5570 Controller firmware | ||
Rockwell Automation GuardLogix 5580 | ||
Rockwell Automation SoftLogix 5800 Controller |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-22681 is a vulnerability in Rockwell Automation Studio 5000 Logix Designer and RSLogix 5000 that allows unauthorized access to Logix controllers.
CVE-2021-22681 has a severity rating of 9.8 (Critical).
Rockwell Automation Studio 5000 Logix Designer Versions 21 and later are affected by CVE-2021-22681.
RSLogix 5000 Versions 16 through 20 are affected by CVE-2021-22681.
Apply the necessary patches and updates provided by Rockwell Automation to fix CVE-2021-22681.