ICSA-20-280-01: Rockwell automation aadvance controller vulnerability
Affected Software
3 affected components
Rockwell Automation AADvance Controller version 1.40 and earlier
Rockwell Automation ISaGRAF Free Runtime in ISaGRAF6 Workbench Version 6.6.8 and earlier
Rockwell Automation Micro800 family, all versions
Event History
Feb 24, 2025
Advisory Published
12:16 AM
Frequently Asked Questions
1
What is the severity of ICSA-20-280-01?
The severity of ICSA-20-280-01 is rated as high due to potential exploitation risks.
2
How do I fix ICSA-20-280-01?
To fix ICSA-20-280-01, ensure all affected Rockwell Automation software and controllers are updated to the latest versions that address the vulnerability.
3
What systems are affected by ICSA-20-280-01?
ICSA-20-280-01 affects Rockwell Automation AADvance Controller version 1.40 and earlier, ISaGRAF Free Runtime in ISaGRAF6 Workbench Version 6.6.8 and earlier, and all versions of the Rockwell Automation Micro800 family.
4
What types of vulnerabilities are present in ICSA-20-280-01?
ICSA-20-280-01 contains vulnerabilities including improper input validation and authentication issues that could be exploited by an attacker.
5
Is there a workaround for ICSA-20-280-01?
Currently, there are no published workarounds for ICSA-20-280-01, so promptly applying the available updates is recommended.