CVE Vulnerabilities

CVE-2020-6111

Published: Dec 03, 2020 | Modified: May 12, 2022
CVSS 3.x
7.5
HIGH
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:N/A:P
RedHat/V2
RedHat/V3
Ubuntu

An exploitable denial-of-service vulnerability exists in the IPv4 functionality of Allen-Bradley MicroLogix 1100 Programmable Logic Controller Systems Series B FRN 16.000, Series B FRN 15.002, Series B FRN 15.000, Series B FRN 14.000, Series B FRN 13.000, Series B FRN 12.000, Series B FRN 11.000 and Series B FRN 10.000. A specially crafted packet can cause a major error, resulting in a denial of service. An attacker can send a malicious packet to trigger this vulnerability.

Affected Software

Name Vendor Start Version End Version
Micrologix_1100_b_firmware Rockwellautomation 10.000 (including) 10.000 (including)
Micrologix_1100_b_firmware Rockwellautomation 11.000 (including) 11.000 (including)
Micrologix_1100_b_firmware Rockwellautomation 12.000 (including) 12.000 (including)
Micrologix_1100_b_firmware Rockwellautomation 13.000 (including) 13.000 (including)
Micrologix_1100_b_firmware Rockwellautomation 14.000 (including) 14.000 (including)
Micrologix_1100_b_firmware Rockwellautomation 15.000 (including) 15.000 (including)
Micrologix_1100_b_firmware Rockwellautomation 15.002 (including) 15.002 (including)
Micrologix_1100_b_firmware Rockwellautomation 16.000 (including) 16.000 (including)

References