Vulnerabilities > Rockwellautomation > Controllogix 1756 Enbt A Ethernet IP Bridge > Medium
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2009-02-06 | CVE-2009-0474 | Information Exposure vulnerability in Rockwellautomation Controllogix 1756-Enbt/A Ethernet/ IP Bridge The web interface in the Rockwell Automation ControlLogix 1756-ENBT/A EtherNet/IP Bridge Module allows remote attackers to obtain "internal web page information" and "internal information about the module" via unspecified vectors. | 5.0 |
2009-02-06 | CVE-2009-0473 | Link Following vulnerability in Rockwellautomation Controllogix 1756-Enbt/A Ethernet/ IP Bridge Open redirect vulnerability in the web interface in the Rockwell Automation ControlLogix 1756-ENBT/A EtherNet/IP Bridge Module allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via unspecified vectors. | 6.8 |
2009-02-06 | CVE-2009-0472 | Cross-Site Scripting vulnerability in Rockwellautomation Controllogix 1756-Enbt/A Ethernet/ IP Bridge Multiple cross-site scripting (XSS) vulnerabilities in the web interface in the Rockwell Automation ControlLogix 1756-ENBT/A EtherNet/IP Bridge Module allow remote attackers to inject arbitrary web script or HTML via unspecified vectors. | 4.3 |