A denial-of-service vulnerability exists in the Rockwell Automation affected products when specially crafted packets are sent to the CIP Security Object. If exploited the device will become unavailable and require a factory reset to recover.
                
            Metrics
Affected Vendors & Products
References
        History
                    Thu, 19 Sep 2024 15:00:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| First Time appeared | Rockwellautomation 1756-en4 Rockwellautomation compact Guardlogix 5380 Sil 2 Rockwellautomation compact Guardlogix 5380 Sil 2 Firmware Rockwellautomation compact Guardlogix 5380 Sil 3 Rockwellautomation compact Guardlogix 5380 Sil 3 Firmware Rockwellautomation compactlogix 5380 Rockwellautomation compactlogix 5480 Rockwellautomation controllogix 5580 Rockwellautomation guardlogix 5580 | |
| Weaknesses | NVD-CWE-noinfo | |
| CPEs | cpe:2.3:h:rockwellautomation:1756-en4:-:*:*:*:*:*:*:* cpe:2.3:h:rockwellautomation:compact_guardlogix_5380_sil_2:-:*:*:*:*:*:*:* cpe:2.3:h:rockwellautomation:compact_guardlogix_5380_sil_3:-:*:*:*:*:*:*:* cpe:2.3:h:rockwellautomation:compactlogix_5380:-:*:*:*:*:*:*:* cpe:2.3:h:rockwellautomation:compactlogix_5480:-:*:*:*:*:*:*:* cpe:2.3:h:rockwellautomation:controllogix_5580:-:*:*:*:*:*:*:* cpe:2.3:h:rockwellautomation:guardlogix_5580:-:*:*:*:*:*:*:* cpe:2.3:o:rockwellautomation:1756-en4_firmware:2.001:*:*:*:*:*:*:* cpe:2.3:o:rockwellautomation:compact_guardlogix_5380_sil_2_firmware:32.013:*:*:*:*:*:*:* cpe:2.3:o:rockwellautomation:compact_guardlogix_5380_sil_3_firmware:32.011:*:*:*:*:*:*:* cpe:2.3:o:rockwellautomation:compactlogix_5380_firmware:32.011:*:*:*:*:*:*:* cpe:2.3:o:rockwellautomation:compactlogix_5480_firmware:32.011:*:*:*:*:*:*:* cpe:2.3:o:rockwellautomation:controllogix_5580_firmware:33.011:*:*:*:*:*:*:* cpe:2.3:o:rockwellautomation:guardlogix_5580_firmware:32.011:*:*:*:*:*:*:* | |
| Vendors & Products | Rockwellautomation 1756-en4 Rockwellautomation compact Guardlogix 5380 Sil 2 Rockwellautomation compact Guardlogix 5380 Sil 2 Firmware Rockwellautomation compact Guardlogix 5380 Sil 3 Rockwellautomation compact Guardlogix 5380 Sil 3 Firmware Rockwellautomation compactlogix 5380 Rockwellautomation compactlogix 5480 Rockwellautomation controllogix 5580 Rockwellautomation guardlogix 5580 | |
| Metrics | cvssV3_1 
 | 
Thu, 12 Sep 2024 21:30:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| First Time appeared | Rockwellautomation Rockwellautomation 1756-en4 Firmware Rockwellautomation compact Guardlogix 5380 Sil2 Firmware Rockwellautomation compact Guardlogix 5380 Sil3 Firmware Rockwellautomation compactlogix 5380 Firmware Rockwellautomation compactlogix 5380 Process Firmware Rockwellautomation compactlogix 5480 Firmware Rockwellautomation controllogix 5580 Firmware Rockwellautomation controllogix 5580 Process Firmware Rockwellautomation guardlogix 5580 Firmware | |
| CPEs | cpe:2.3:o:rockwellautomation:1756-en4_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:rockwellautomation:compact_guardlogix_5380_sil2_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:rockwellautomation:compact_guardlogix_5380_sil3_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:rockwellautomation:compactlogix_5380_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:rockwellautomation:compactlogix_5380_process_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:rockwellautomation:compactlogix_5480_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:rockwellautomation:controllogix_5580_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:rockwellautomation:controllogix_5580_process_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:rockwellautomation:guardlogix_5580_firmware:*:*:*:*:*:*:*:* | |
| Vendors & Products | Rockwellautomation Rockwellautomation 1756-en4 Firmware Rockwellautomation compact Guardlogix 5380 Sil2 Firmware Rockwellautomation compact Guardlogix 5380 Sil3 Firmware Rockwellautomation compactlogix 5380 Firmware Rockwellautomation compactlogix 5380 Process Firmware Rockwellautomation compactlogix 5480 Firmware Rockwellautomation controllogix 5580 Firmware Rockwellautomation controllogix 5580 Process Firmware Rockwellautomation guardlogix 5580 Firmware | |
| Metrics | ssvc 
 | 
Thu, 12 Sep 2024 20:15:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Description | A denial-of-service vulnerability exists in the Rockwell Automation affected products when specially crafted packets are sent to the CIP Security Object. If exploited the device will become unavailable and require a factory reset to recover. | |
| Title | Rockwell Automation ControlLogix/GuardLogix 5580 and CompactLogix/Compact GuardLogix® 5380 Vulnerable to DoS vulnerability via CIP | |
| Weaknesses | CWE-20 | |
| References |  | |
| Metrics | cvssV4_0 
 | 
 MITRE
                        MITRE
                    Status: PUBLISHED
Assigner: Rockwell
Published: 2024-09-12T19:59:40.368Z
Updated: 2024-09-12T21:01:50.254Z
Reserved: 2024-06-17T16:21:32.155Z
Link: CVE-2024-6077
 Vulnrichment
                        Vulnrichment
                    Updated: 2024-09-12T20:31:09.370Z
 NVD
                        NVD
                    Status : Analyzed
Published: 2024-09-12T20:15:05.440
Modified: 2024-09-19T14:31:18.463
Link: CVE-2024-6077
 Redhat
                        Redhat
                    No data.