PT-2024-5335 · Rockwell Automation · 1756-En2Tr+6

Published

2024-08-01

·

Updated

2026-04-15

·

CVE-2024-6242

CVSS v4.0

7.3

High

VectorAV:N/AC:L/AT:P/PR:L/UI:N/VC:L/VI:H/VA:H/SC:L/SI:H/SA:H
Name of the Vulnerable Software and Affected Versions Rockwell Automation 1756-EN4TR, 1756-EN2T Series A/B/C, 1756-EN2F Series A/B, 1756-EN2TR Series A/B, 1756-EN3TR Series B, 1756-EN2T Series D, 1756-EN2F Series C, 1756-EN2TR Series C, 1756-EN3TR Series B, 1756-EN2TP Series A
Description A vulnerability exists in Rockwell Automation affected products that allows a threat actor to bypass the Trusted Slot feature in a ControlLogix controller. If exploited on any affected module in a 1756 chassis, a threat actor could potentially execute CIP commands that modify user projects and/or device configuration on a Logix controller in the chassis. The vulnerability is related to the use of an unprotected alternative channel.
Recommendations For Rockwell Automation 1756-EN4TR, 1756-EN2T Series A/B/C, 1756-EN2F Series A/B, 1756-EN2TR Series A/B, 1756-EN3TR Series B, 1756-EN2T Series D, 1756-EN2F Series C, 1756-EN2TR Series C, 1756-EN3TR Series B, 1756-EN2TP Series A, update to the latest version that includes the fix for this issue, as Rockwell has released an update to address the vulnerability. As a temporary workaround, consider restricting access to the CIP commands to minimize the risk of exploitation. Avoid using the unprotected alternative channel until the issue is resolved.

Fix

Weakness Enumeration

Related Identifiers

BDU:2024-05963
CVE-2024-6242

Affected Products

1756-En2F
1756-En2T
1756-En2Tp
1756-En2Tr
1756-En3Tr
1756-En4Tr
Controllogix