PT-2018-5345 · Allen Bradley · Allen Bradley Micrologix 1400 Series B

Publicado

2018-06-04

·

Atualizado

2022-04-19

·

CVE-2017-12092

CVSS v3.1

7.5

Alta

VetorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
Name of the Vulnerable Software and Affected Versions Allen Bradley Micrologix 1400 Series B FRN versions 21.2 and before
Description A file write issue exists in the memory module functionality, allowing a specially crafted packet to cause a file write, resulting in a new program being written to the memory module. An attacker can send an unauthenticated packet to trigger this issue.
Recommendations For Allen Bradley Micrologix 1400 Series B FRN versions 21.2 and before, consider restricting access to the memory module functionality until a fix is available. As a temporary workaround, implement additional authentication measures to prevent unauthenticated packets from triggering the file write issue.

Exploit

Correção

Information Disclosure

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2017-12092

Produtos afetados

Allen Bradley Micrologix 1400 Series B