Vulnerabilities > Rockwellautomation > Controllogix 5580 Firmware > High

DATE CVE VULNERABILITY TITLE RISK
2024-10-14 CVE-2024-6207 Unspecified vulnerability in Rockwellautomation products
CVE 2021-22681 https://www.rockwellautomation.com/en-us/trust-center/security-advisories/advisory.PN1550.html  and send a specially crafted CIP message to the device.
network
low complexity
rockwellautomation
7.5
2024-09-12 CVE-2024-6077 Unspecified vulnerability in Rockwellautomation products
A denial-of-service vulnerability exists in the Rockwell Automation affected products when specially crafted packets are sent to the CIP Security Object.
network
low complexity
rockwellautomation
7.5
2022-06-02 CVE-2022-1797 Resource Exhaustion vulnerability in Rockwellautomation products
A malformed Class 3 common industrial protocol message with a cached connection can cause a denial-of-service condition in Rockwell Automation Logix Controllers, resulting in a major nonrecoverable fault.
network
low complexity
rockwellautomation CWE-400
7.8
2022-04-11 CVE-2022-1161 Inclusion of Functionality from Untrusted Control Sphere vulnerability in Rockwellautomation products
An attacker with the ability to modify a user program may change user program code on some ControlLogix, CompactLogix, and GuardLogix Control systems.
network
low complexity
rockwellautomation CWE-829
7.5
2017-05-06 CVE-2017-6024 Resource Exhaustion vulnerability in Rockwellautomation products
A Resource Exhaustion issue was discovered in Rockwell Automation ControlLogix 5580 controllers V28.011, V28.012, and V28.013; ControlLogix 5580 controllers V29.011; CompactLogix 5380 controllers V28.011; and CompactLogix 5380 controllers V29.011.
7.1