CVE-2020-6111
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
03/12/2020
Last modified:
12/05/2022
Description
An exploitable denial-of-service vulnerability exists in the IPv4 functionality of Allen-Bradley MicroLogix 1100 Programmable Logic Controller Systems Series B FRN 16.000, Series B FRN 15.002, Series B FRN 15.000, Series B FRN 14.000, Series B FRN 13.000, Series B FRN 12.000, Series B FRN 11.000 and Series B FRN 10.000. A specially crafted packet can cause a major error, resulting in a denial of service. An attacker can send a malicious packet to trigger this vulnerability.
Impact
Base Score 3.x
7.50
Severity 3.x
HIGH
Base Score 2.0
5.00
Severity 2.0
MEDIUM
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:o:rockwellautomation:micrologix_1100_b_firmware:10.000:*:*:*:*:*:*:* | ||
| cpe:2.3:o:rockwellautomation:micrologix_1100_b_firmware:11.000:*:*:*:*:*:*:* | ||
| cpe:2.3:o:rockwellautomation:micrologix_1100_b_firmware:12.000:*:*:*:*:*:*:* | ||
| cpe:2.3:o:rockwellautomation:micrologix_1100_b_firmware:13.000:*:*:*:*:*:*:* | ||
| cpe:2.3:o:rockwellautomation:micrologix_1100_b_firmware:14.000:*:*:*:*:*:*:* | ||
| cpe:2.3:o:rockwellautomation:micrologix_1100_b_firmware:15.000:*:*:*:*:*:*:* | ||
| cpe:2.3:o:rockwellautomation:micrologix_1100_b_firmware:15.002:*:*:*:*:*:*:* | ||
| cpe:2.3:o:rockwellautomation:micrologix_1100_b_firmware:16.000:*:*:*:*:*:*:* | ||
| cpe:2.3:h:rockwellautomation:micrologix_1100:-:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page



