PT-2018-5345 · Allen Bradley · Allen Bradley Micrologix 1400 Series B
Publicado
2018-06-04
·
Atualizado
2022-04-19
·
CVE-2017-12092
CVSS v3.1
7.5
Alta
| Vetor | AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N |
Name of the Vulnerable Software and Affected Versions
Allen Bradley Micrologix 1400 Series B FRN versions 21.2 and before
Description
A file write issue exists in the memory module functionality, allowing a specially crafted packet to cause a file write, resulting in a new program being written to the memory module. An attacker can send an unauthenticated packet to trigger this issue.
Recommendations
For Allen Bradley Micrologix 1400 Series B FRN versions 21.2 and before, consider restricting access to the memory module functionality until a fix is available. As a temporary workaround, implement additional authentication measures to prevent unauthenticated packets from triggering the file write issue.
Exploit
Correção
Information Disclosure
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Allen Bradley Micrologix 1400 Series B