CVE-2022-3752
19.12.2022, 23:15
An unauthorized user could use a specially crafted sequence of Ethernet/IP messages, combined with heavy traffic loading to cause a denial-of-service condition in Rockwell Automation Logix controllers resulting in a major non-recoverable fault. If the target device becomes unavailable, a user would have to clear the fault and redownload the user project file to bring the device back online and continue normal operation.Enginsight
Vendor | Product | Version |
---|---|---|
rockwellautomation | compactlogix_5480_firmware | 32.011 ≤ |
rockwellautomation | compactlogix_5580_firmware | 31.011 ≤ |
rockwellautomation | guardlogix_5580_firmware | 32.011 ≤ |
rockwellautomation | compact_guardlogix_5380_firmware | 31.011 ≤ |
rockwellautomation | compactlogix_5380_firmware | 31.011 ≤ |
𝑥
= Vulnerable software versions
Common Weakness Enumeration