CVE Vulnerabilities

CVE-2020-6111

Published: Dec 03, 2020 | Modified: Nov 21, 2024
CVSS 3.x
7.5
HIGH
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:N/A:P
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

An exploitable denial-of-service vulnerability exists in the IPv4 functionality of Allen-Bradley MicroLogix 1100 Programmable Logic Controller Systems Series B FRN 16.000, Series B FRN 15.002, Series B FRN 15.000, Series B FRN 14.000, Series B FRN 13.000, Series B FRN 12.000, Series B FRN 11.000 and Series B FRN 10.000. A specially crafted packet can cause a major error, resulting in a denial of service. An attacker can send a malicious packet to trigger this vulnerability.

Affected Software

NameVendorStart VersionEnd Version
Micrologix_1100_b_firmwareRockwellautomation10.000 (including)10.000 (including)
Micrologix_1100_b_firmwareRockwellautomation11.000 (including)11.000 (including)
Micrologix_1100_b_firmwareRockwellautomation12.000 (including)12.000 (including)
Micrologix_1100_b_firmwareRockwellautomation13.000 (including)13.000 (including)
Micrologix_1100_b_firmwareRockwellautomation14.000 (including)14.000 (including)
Micrologix_1100_b_firmwareRockwellautomation15.000 (including)15.000 (including)
Micrologix_1100_b_firmwareRockwellautomation15.002 (including)15.002 (including)
Micrologix_1100_b_firmwareRockwellautomation16.000 (including)16.000 (including)

References