CVE-2024-5990: ThinManager® ThinServer™ Improper Input Validation Vulnerability
Due to an improper input validation, an unauthenticated threat actor can send a malicious message to a monitor thread within Rockwell Automation ThinServer™ and cause a denial-of-service condition on the affected device.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Rockwell Automation ThinManager ThinServerto a version that resolves this vulnerability.Fixed in 11.1.8 - Upgrade
Upgrade
Rockwell Automation ThinManager ThinServerto a version that resolves this vulnerability.Fixed in 11.2.9 - Upgrade
Upgrade
Rockwell Automation ThinManager ThinServerto a version that resolves this vulnerability.Fixed in 12.0.7 - Upgrade
Upgrade
Rockwell Automation ThinManager ThinServerto a version that resolves this vulnerability.Fixed in 12.1.8 - Upgrade
Upgrade
Rockwell Automation ThinManager ThinServerto a version that resolves this vulnerability.Fixed in 13.0.5 - Upgrade
Upgrade
Rockwell Automation ThinManager ThinServerto a version that resolves this vulnerability.Fixed in 13.0.4 - Upgrade
Upgrade
Rockwell Automation ThinManager ThinServerto a version that resolves this vulnerability.Fixed in 13.1.3 - Upgrade
Upgrade
Rockwell Automation ThinManager ThinServerto a version that resolves this vulnerability.Fixed in 13.1.2 - Upgrade
Upgrade
Rockwell Automation ThinManager ThinServerto a version that resolves this vulnerability.Fixed in 13.2.2 - Compensating control
Limit remote access for TCP Port 2031 to known thin clients and ThinManager® servers.
Event History
Frequently Asked Questions
What is the severity of CVE-2024-5990?
CVE-2024-5990 is classified with a high severity due to its potential to cause a denial-of-service condition.
How do I fix CVE-2024-5990?
To fix CVE-2024-5990, update Rockwell Automation ThinManager and ThinServer to the latest security version available.
Which versions of software are affected by CVE-2024-5990?
CVE-2024-5990 affects Rockwell Automation ThinManager and ThinServer versions from 11.1.0 up to 13.1.0.
Can CVE-2024-5990 be exploited remotely?
Yes, CVE-2024-5990 can be exploited remotely by unauthenticated threat actors.
What is the impact of CVE-2024-5990?
The main impact of CVE-2024-5990 is a denial-of-service condition on the affected Rockwell Automation devices.