ICSA-22-144-01: Rockwell automation compactlogix 5380 controllers vulnerability
Affected Software
9 affected components
Rockwell Automation CompactLogix 5380 controllers: firmware Versions 32.013 and earlier
Rockwell Automation Compact GuardLogix 5380 controllers: firmware Versions 32.013 and earlier
Rockwell Automation CompactLogix 5480 controllers: firmware Versions 32.013 and earlier
Rockwell Automation ControlLogix 5580 controllers: firmware Versions 32.013 and earlier
Rockwell Automation GuardLogix 5580 controllers: firmware Versions 32.013 and earlier
Rockwell Automation CompactLogix 5370 controllers: firmware Versions 33.013 and earlier
Rockwell Automation Compact GuardLogix 5370 controllers: firmware Versions 33.013 and earlier
Rockwell Automation ControlLogix 5570 controllers: firmware Versions 33.013 and earlier
Rockwell Automation GuardLogix 5570 controllers: firmware Versions 33.013 and earlier
Event History
Feb 24, 2025
Advisory Published
12:16 AM
Frequently Asked Questions
1
What is the severity of ICSA-22-144-01?
ICSA-22-144-01 is classified as critical due to the potential for attackers to exploit the vulnerability.
2
How do I fix ICSA-22-144-01?
To mitigate ICSA-22-144-01, users should upgrade to the latest firmware versions provided by Rockwell Automation.
3
What devices are affected by ICSA-22-144-01?
ICSA-22-144-01 affects several Rockwell Automation controllers, including CompactLogix, GuardLogix, and ControlLogix models with specified firmware versions.
4
What are the potential impacts of ICSA-22-144-01?
If exploited, ICSA-22-144-01 can allow an attacker to take unauthorized control of the affected controllers.
5
Is there a workaround for ICSA-22-144-01?
Currently, Rockwell Automation recommends upgrading the firmware as the primary method of remediation for ICSA-22-144-01.