CVE-2024-5990
25.06.2024, 16:15
Due to an improper input validation, an unauthenticated threat actor can send a malicious message to a monitor thread within Rockwell Automation ThinServer and cause a denial-of-service condition on the affected device.Enginsight
Vendor | Product | Version |
---|---|---|
rockwellautomation | thinmanager | 11.1.0 ≤ 𝑥 < 11.1.8 |
rockwellautomation | thinmanager | 11.2.0 ≤ 𝑥 < 11.2.9 |
rockwellautomation | thinmanager | 12.0.0 ≤ 𝑥 < 12.0.7 |
rockwellautomation | thinmanager | 12.1.0 ≤ 𝑥 < 12.1.8 |
rockwellautomation | thinmanager | 13.0.0 ≤ 𝑥 < 13.0.4 |
rockwellautomation | thinmanager | 13.1.0 ≤ 𝑥 < 13.1.2 |
rockwellautomation | thinserver | 11.1.0 ≤ 𝑥 < 11.1.8 |
rockwellautomation | thinserver | 11.2.0 ≤ 𝑥 < 11.2.9 |
rockwellautomation | thinserver | 12.0.0 ≤ 𝑥 < 12.0.7 |
rockwellautomation | thinserver | 12.1.0 ≤ 𝑥 < 12.1.8 |
rockwellautomation | thinserver | 13.0.0 ≤ 𝑥 < 13.0.4 |
rockwellautomation | thinserver | 13.1.0 ≤ 𝑥 < 13.1.2 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration