PT-2024-8944 · Rockwell Automation · Rockwell Automation 5015-Aenftxt

Published

2024-04-15

·

Updated

2025-02-25

·

CVE-2024-2424

CVSS v2.0

7.8

High

VectorAV:N/AC:L/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions: Rockwell Automation 5015-AENFTXT (affected versions not specified)
Description: The issue is related to input validation errors in the EtherNet/IP adapter's microprogram. Exploitation of this issue can cause a major nonrecoverable fault (MNRF) and denial of service. A malformed PTP packet is required to exploit this vulnerability. If exploited, the device's availability will be impacted, and a manual restart will be necessary.
Recommendations: At the moment, there is no information about a newer version that contains a fix for this vulnerability.

RCE

Weakness Enumeration

Related Identifiers

BDU:2024-10623
CVE-2024-2424

Affected Products

Rockwell Automation 5015-Aenftxt