ICSA-18-263-02
·
Published 2018-09-20
·
View on CISA ICS-CERT ↗
Rockwell Automation RSLinx Classic
CVSS 10.0
CRITICAL
Risk Summary
Successful exploitation of these vulnerabilities could crash the device being accessed or allow arbitrary code execution on the device.
CVEs (3)
Remediations
- Rockwell Automation has released a new version of the software that can found at Rockwell Automation knowledgebase article KB 1075712
- Rockwell Automation also reports that users can disable Port 44818 if it is not utilized during system operation. For more details on how to disable the port and for Rockwell Automation's general security guidelines, please visit knowledgebase article KB 1075747 (login is required)
- Please see Rockwell Automation's industrial security advisory at the following location on their website for further details (login is required)
Affected Vendors
Rockwell Automation
Affected Products (1)
Rockwell Automation
·
RSLinx Classic
<= 4.00.01
Affected Sectors
Critical Manufacturing, Energy, Water and Wastewater Systems
Get alerted to advisories like this
OTWarden monitors CISA, BSI, Siemens, Rockwell and more — and emails you within 2 hours when your vendors are affected.
Start free trial Learn more