Vulnerabilities > Rockwellautomation > Rslinx Enterprise > High

DATE CVE VULNERABILITY TITLE RISK
2019-03-26 CVE-2013-2805 Out-of-bounds Read vulnerability in Rockwellautomation Rslinx Enterprise
Rockwell Automation RSLinx Enterprise Software (LogReceiver.exe) CPR9, CPR9-SR1, CPR9-SR2, CPR9-SR3, CPR9-SR4, CPR9-SR5, CPR9-SR5.1, and CPR9-SR6 does not handle input correctly and results in a logic error if it receives a datagram with an incorrect value in the “Record Data Size” field.
network
low complexity
rockwellautomation CWE-125
7.8
2019-03-26 CVE-2013-2807 Out-of-bounds Read vulnerability in Rockwellautomation Rslinx Enterprise
Rockwell Automation RSLinx Enterprise Software (LogReceiver.exe) CPR9, CPR9-SR1, CPR9-SR2, CPR9-SR3, CPR9-SR4, CPR9-SR5, CPR9-SR5.1, and CPR9-SR6 does not handle input correctly and results in a logic error if it calculates an incorrect value for the “Total Record Size” field.
network
low complexity
rockwellautomation CWE-125
7.8
2019-03-26 CVE-2013-2806 Integer Overflow or Wraparound vulnerability in Rockwellautomation Rslinx Enterprise
Rockwell Automation RSLinx Enterprise Software (LogReceiver.exe) CPR9, CPR9-SR1, CPR9-SR2, CPR9-SR3, CPR9-SR4, CPR9-SR5, CPR9-SR5.1, and CPR9-SR6 does not handle input correctly and results in a logic error if it calculates an incorrect value for the “End of Current Record” field.
network
low complexity
rockwellautomation CWE-190
7.8
2013-04-18 CVE-2012-4695 Improper Input Validation vulnerability in Rockwellautomation Rslinx Enterprise Cpr9
LogReceiver.exe in Rockwell Automation RSLinx Enterprise CPR9, CPR9-SR1, CPR9-SR2, CPR9-SR3, CPR9-SR4, CPR9-SR5, CPR9-SR5.1, and CPR9-SR6 allows remote attackers to cause a denial of service (service outage) via a zero-byte UDP packet that is not properly handled by Logger.dll.
7.1