fkie_cve-2024-6207
Vulnerability from fkie_nvd
Published
2024-10-14 21:15
Modified
2024-10-21 13:20
Summary
CVE 2021-22681 https://www.rockwellautomation.com/en-us/trust-center/security-advisories/advisory.PN1550.html  and send a specially crafted CIP message to the device. If exploited, a threat actor could help prevent access to the legitimate user and end connections to connected devices including the workstation. To recover the controllers, a download is required which ends any process that the controller is running.
Impacted products
Vendor Product Version
rockwellautomation controllogix_5580_firmware *
rockwellautomation controllogix_5580_firmware *
rockwellautomation controllogix_5580_firmware *
rockwellautomation controllogix_5580 -
rockwellautomation controllogix_5580_process_firmware *
rockwellautomation controllogix_5580_process_firmware *
rockwellautomation controllogix_5580_process_firmware *
rockwellautomation controllogix_5580_process -
rockwellautomation guardlogix_5580_firmware *
rockwellautomation guardlogix_5580_firmware *
rockwellautomation guardlogix_5580_firmware *
rockwellautomation guardlogix_5580 -
rockwellautomation compactlogix_5380_firmware *
rockwellautomation compactlogix_5380_firmware *
rockwellautomation compactlogix_5380_firmware *
rockwellautomation compactlogix_5380 -
rockwellautomation compact_guardlogix_5380_sil_2_firmware *
rockwellautomation compact_guardlogix_5380_sil_2_firmware *
rockwellautomation compact_guardlogix_5380_sil_2_firmware *
rockwellautomation compact_guardlogix_5380_sil_2 -
rockwellautomation compact_guardlogix_5380_sil_3_firmware *
rockwellautomation compact_guardlogix_5380_sil_3_firmware *
rockwellautomation compact_guardlogix_5380_sil_3_firmware *
rockwellautomation compact_guardlogix_5380_sil_3 -
rockwellautomation compactlogix_5480_firmware *
rockwellautomation compactlogix_5480_firmware *
rockwellautomation compactlogix_5480_firmware *
rockwellautomation compactlogix_5480 -
rockwellautomation factorytalk_logix_echo_firmware *
rockwellautomation factorytalk_logix_echo_firmware *
rockwellautomation factorytalk_logix_echo -



{
  "configurations": [
    {
      "nodes": [
        {
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:o:rockwellautomation:controllogix_5580_firmware:*:*:*:*:*:*:*:*",
              "matchCriteriaId": "3CCECB24-3DF9-441D-B2E0-7EDD305EA31D",
              "versionEndExcluding": "33.017",
              "versionStartIncluding": "28.011",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:o:rockwellautomation:controllogix_5580_firmware:*:*:*:*:*:*:*:*",
              "matchCriteriaId": "999BE839-8688-4723-A067-788386E528D7",
              "versionEndExcluding": "34.014",
              "versionStartIncluding": "34.011",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:o:rockwellautomation:controllogix_5580_firmware:*:*:*:*:*:*:*:*",
              "matchCriteriaId": "D70BDEA5-B19E-4399-AD46-FA94285B2DEA",
              "versionEndExcluding": "35.013",
              "versionStartIncluding": "35.011",
              "vulnerable": true
            }
          ],
          "negate": false,
          "operator": "OR"
        },
        {
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:h:rockwellautomation:controllogix_5580:-:*:*:*:*:*:*:*",
              "matchCriteriaId": "51BB883B-B863-4D57-B1C0-FC7B3EBD1EA0",
              "vulnerable": false
            }
          ],
          "negate": false,
          "operator": "OR"
        }
      ],
      "operator": "AND"
    },
    {
      "nodes": [
        {
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:o:rockwellautomation:controllogix_5580_process_firmware:*:*:*:*:*:*:*:*",
              "matchCriteriaId": "F8EF3D88-B9BC-4FEA-BA35-8657EEE463F2",
              "versionEndExcluding": "33.017",
              "versionStartIncluding": "33.011",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:o:rockwellautomation:controllogix_5580_process_firmware:*:*:*:*:*:*:*:*",
              "matchCriteriaId": "7A3A96A6-242A-4022-8347-E04467DA6FDA",
              "versionEndExcluding": "34.014",
              "versionStartIncluding": "34.011",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:o:rockwellautomation:controllogix_5580_process_firmware:*:*:*:*:*:*:*:*",
              "matchCriteriaId": "7D377807-09D3-4430-8B0D-83BB5514B275",
              "versionEndExcluding": "35.013",
              "versionStartIncluding": "35.011",
              "vulnerable": true
            }
          ],
          "negate": false,
          "operator": "OR"
        },
        {
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:h:rockwellautomation:controllogix_5580_process:-:*:*:*:*:*:*:*",
              "matchCriteriaId": "AFEDADD8-01DE-4AE5-A0D7-532347FA7DB2",
              "vulnerable": false
            }
          ],
          "negate": false,
          "operator": "OR"
        }
      ],
      "operator": "AND"
    },
    {
      "nodes": [
        {
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:o:rockwellautomation:guardlogix_5580_firmware:*:*:*:*:*:*:*:*",
              "matchCriteriaId": "BF92BE9B-AF7A-4A04-9438-C30C5ED49B07",
              "versionEndExcluding": "33.017",
              "versionStartIncluding": "31.011",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:o:rockwellautomation:guardlogix_5580_firmware:*:*:*:*:*:*:*:*",
              "matchCriteriaId": "D0E0F65D-98D1-4021-9CB0-402834F46DD8",
              "versionEndExcluding": "34.014",
              "versionStartIncluding": "34.011",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:o:rockwellautomation:guardlogix_5580_firmware:*:*:*:*:*:*:*:*",
              "matchCriteriaId": "956AF3D2-9A47-4BAD-B3A5-37A8965DBB2E",
              "versionEndExcluding": "35.013",
              "versionStartIncluding": "35.011",
              "vulnerable": true
            }
          ],
          "negate": false,
          "operator": "OR"
        },
        {
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:h:rockwellautomation:guardlogix_5580:-:*:*:*:*:*:*:*",
              "matchCriteriaId": "006B7683-9FDF-4748-BA28-2EA22613E092",
              "vulnerable": false
            }
          ],
          "negate": false,
          "operator": "OR"
        }
      ],
      "operator": "AND"
    },
    {
      "nodes": [
        {
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:o:rockwellautomation:compactlogix_5380_firmware:*:*:*:*:*:*:*:*",
              "matchCriteriaId": "6C85E19A-8153-4AC2-8A15-DD1CEE9F5B2E",
              "versionEndExcluding": "33.017",
              "versionStartIncluding": "28.011",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:o:rockwellautomation:compactlogix_5380_firmware:*:*:*:*:*:*:*:*",
              "matchCriteriaId": "90519681-C70B-49EE-A551-29D5A9EFCA31",
              "versionEndExcluding": "34.014",
              "versionStartIncluding": "34.011",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:o:rockwellautomation:compactlogix_5380_firmware:*:*:*:*:*:*:*:*",
              "matchCriteriaId": "3A306250-9B1A-49A4-B6C1-E2EFBA49504B",
              "versionEndExcluding": "35.013",
              "versionStartIncluding": "35.011",
              "vulnerable": true
            }
          ],
          "negate": false,
          "operator": "OR"
        },
        {
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:h:rockwellautomation:compactlogix_5380:-:*:*:*:*:*:*:*",
              "matchCriteriaId": "EDD040ED-B44C-47D0-B4D4-729C378C4F68",
              "vulnerable": false
            }
          ],
          "negate": false,
          "operator": "OR"
        }
      ],
      "operator": "AND"
    },
    {
      "nodes": [
        {
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:o:rockwellautomation:compact_guardlogix_5380_sil_2_firmware:*:*:*:*:*:*:*:*",
              "matchCriteriaId": "93D9D75D-0C98-408B-9EB1-6315AAE1147B",
              "versionEndExcluding": "33.017",
              "versionStartIncluding": "31.011",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:o:rockwellautomation:compact_guardlogix_5380_sil_2_firmware:*:*:*:*:*:*:*:*",
              "matchCriteriaId": "58CAFC2B-2C95-41E0-BB00-7E7F89103664",
              "versionEndExcluding": "34.014",
              "versionStartIncluding": "34.011",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:o:rockwellautomation:compact_guardlogix_5380_sil_2_firmware:*:*:*:*:*:*:*:*",
              "matchCriteriaId": "37997377-0939-4D3C-8A97-F4F8C6FB1000",
              "versionEndExcluding": "35.013",
              "versionStartIncluding": "35.011",
              "vulnerable": true
            }
          ],
          "negate": false,
          "operator": "OR"
        },
        {
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:h:rockwellautomation:compact_guardlogix_5380_sil_2:-:*:*:*:*:*:*:*",
              "matchCriteriaId": "E594CDF6-0582-4D5C-B6AA-C8A2E752E29F",
              "vulnerable": false
            }
          ],
          "negate": false,
          "operator": "OR"
        }
      ],
      "operator": "AND"
    },
    {
      "nodes": [
        {
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:o:rockwellautomation:compact_guardlogix_5380_sil_3_firmware:*:*:*:*:*:*:*:*",
              "matchCriteriaId": "D85D8A23-BC23-41F9-A17A-33239D4C90B5",
              "versionEndExcluding": "33.017",
              "versionStartIncluding": "32.013",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:o:rockwellautomation:compact_guardlogix_5380_sil_3_firmware:*:*:*:*:*:*:*:*",
              "matchCriteriaId": "13C157F1-BD62-4F6A-8DCF-4660983C9948",
              "versionEndExcluding": "34.014",
              "versionStartIncluding": "34.011",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:o:rockwellautomation:compact_guardlogix_5380_sil_3_firmware:*:*:*:*:*:*:*:*",
              "matchCriteriaId": "A01F13C3-42C1-409C-A16E-6BEC723108A2",
              "versionEndExcluding": "35.013",
              "versionStartIncluding": "35.011",
              "vulnerable": true
            }
          ],
          "negate": false,
          "operator": "OR"
        },
        {
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:h:rockwellautomation:compact_guardlogix_5380_sil_3:-:*:*:*:*:*:*:*",
              "matchCriteriaId": "B82D842C-0930-41AA-83CD-5F235771AE4B",
              "vulnerable": false
            }
          ],
          "negate": false,
          "operator": "OR"
        }
      ],
      "operator": "AND"
    },
    {
      "nodes": [
        {
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:o:rockwellautomation:compactlogix_5480_firmware:*:*:*:*:*:*:*:*",
              "matchCriteriaId": "A890317E-B6BD-4A0A-B7E0-E50D90506EF1",
              "versionEndExcluding": "33.017",
              "versionStartIncluding": "32.011",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:o:rockwellautomation:compactlogix_5480_firmware:*:*:*:*:*:*:*:*",
              "matchCriteriaId": "881D835B-D7E3-44C5-9B77-CA82EDCE2D3C",
              "versionEndExcluding": "34.014",
              "versionStartIncluding": "34.011",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:o:rockwellautomation:compactlogix_5480_firmware:*:*:*:*:*:*:*:*",
              "matchCriteriaId": "A0ABD910-7EBE-44C8-97E3-2B523CDEE5FA",
              "versionEndExcluding": "35.013",
              "versionStartIncluding": "35.011",
              "vulnerable": true
            }
          ],
          "negate": false,
          "operator": "OR"
        },
        {
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:h:rockwellautomation:compactlogix_5480:-:*:*:*:*:*:*:*",
              "matchCriteriaId": "80F4F5BE-07DF-402A-BF98-34FBA6A11968",
              "vulnerable": false
            }
          ],
          "negate": false,
          "operator": "OR"
        }
      ],
      "operator": "AND"
    },
    {
      "nodes": [
        {
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:o:rockwellautomation:factorytalk_logix_echo_firmware:*:*:*:*:*:*:*:*",
              "matchCriteriaId": "02105DF7-661C-47E7-BC52-771356537783",
              "versionEndExcluding": "34.014",
              "versionStartIncluding": "33.011",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:o:rockwellautomation:factorytalk_logix_echo_firmware:*:*:*:*:*:*:*:*",
              "matchCriteriaId": "51ECB73D-C08C-4DE1-BA75-608E9C350751",
              "versionEndExcluding": "35.013",
              "versionStartIncluding": "35.011",
              "vulnerable": true
            }
          ],
          "negate": false,
          "operator": "OR"
        },
        {
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:h:rockwellautomation:factorytalk_logix_echo:-:*:*:*:*:*:*:*",
              "matchCriteriaId": "7898895B-17A1-499A-9B09-9F6C1C302368",
              "vulnerable": false
            }
          ],
          "negate": false,
          "operator": "OR"
        }
      ],
      "operator": "AND"
    }
  ],
  "cveTags": [],
  "descriptions": [
    {
      "lang": "en",
      "value": "CVE 2021-22681 https://www.rockwellautomation.com/en-us/trust-center/security-advisories/advisory.PN1550.html \u00a0and send a specially crafted CIP message to the device.  If exploited, a threat actor could help prevent access to the legitimate user and end connections to connected devices including the workstation.  To recover the controllers, a download is required which ends any process that the controller is running."
    },
    {
      "lang": "es",
      "value": "CVE 2021-22681 https://www.rockwellautomation.com/en-us/trust-center/security-advisories/advisory.PN1550.html y enviar un mensaje CIP especialmente manipulado al dispositivo. Si se explota, un actor de amenazas podr\u00eda ayudar a evitar el acceso al usuario leg\u00edtimo y finalizar las conexiones a los dispositivos conectados, incluida la estaci\u00f3n de trabajo. Para recuperar los controladores, se requiere una descarga que finalice cualquier proceso que est\u00e9 ejecutando el controlador."
    }
  ],
  "id": "CVE-2024-6207",
  "lastModified": "2024-10-21T13:20:45.617",
  "metrics": {
    "cvssMetricV31": [
      {
        "cvssData": {
          "attackComplexity": "LOW",
          "attackVector": "NETWORK",
          "availabilityImpact": "HIGH",
          "baseScore": 7.5,
          "baseSeverity": "HIGH",
          "confidentialityImpact": "NONE",
          "integrityImpact": "NONE",
          "privilegesRequired": "NONE",
          "scope": "UNCHANGED",
          "userInteraction": "NONE",
          "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H",
          "version": "3.1"
        },
        "exploitabilityScore": 3.9,
        "impactScore": 3.6,
        "source": "PSIRT@rockwellautomation.com",
        "type": "Secondary"
      },
      {
        "cvssData": {
          "attackComplexity": "LOW",
          "attackVector": "NETWORK",
          "availabilityImpact": "HIGH",
          "baseScore": 7.5,
          "baseSeverity": "HIGH",
          "confidentialityImpact": "NONE",
          "integrityImpact": "NONE",
          "privilegesRequired": "NONE",
          "scope": "UNCHANGED",
          "userInteraction": "NONE",
          "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H",
          "version": "3.1"
        },
        "exploitabilityScore": 3.9,
        "impactScore": 3.6,
        "source": "nvd@nist.gov",
        "type": "Primary"
      }
    ],
    "cvssMetricV40": [
      {
        "cvssData": {
          "Automatable": "NOT_DEFINED",
          "Recovery": "NOT_DEFINED",
          "Safety": "NOT_DEFINED",
          "attackComplexity": "LOW",
          "attackRequirements": "NONE",
          "attackVector": "NETWORK",
          "availabilityRequirement": "NOT_DEFINED",
          "baseScore": 8.7,
          "baseSeverity": "HIGH",
          "confidentialityRequirement": "NOT_DEFINED",
          "exploitMaturity": "NOT_DEFINED",
          "integrityRequirement": "NOT_DEFINED",
          "modifiedAttackComplexity": "NOT_DEFINED",
          "modifiedAttackRequirements": "NOT_DEFINED",
          "modifiedAttackVector": "NOT_DEFINED",
          "modifiedPrivilegesRequired": "NOT_DEFINED",
          "modifiedSubAvailabilityImpact": "NOT_DEFINED",
          "modifiedSubConfidentialityImpact": "NOT_DEFINED",
          "modifiedSubIntegrityImpact": "NOT_DEFINED",
          "modifiedUserInteraction": "NOT_DEFINED",
          "modifiedVulnAvailabilityImpact": "NOT_DEFINED",
          "modifiedVulnConfidentialityImpact": "NOT_DEFINED",
          "modifiedVulnIntegrityImpact": "NOT_DEFINED",
          "privilegesRequired": "NONE",
          "providerUrgency": "NOT_DEFINED",
          "subAvailabilityImpact": "NONE",
          "subConfidentialityImpact": "NONE",
          "subIntegrityImpact": "NONE",
          "userInteraction": "NONE",
          "valueDensity": "NOT_DEFINED",
          "vectorString": "CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X",
          "version": "4.0",
          "vulnAvailabilityImpact": "HIGH",
          "vulnConfidentialityImpact": "NONE",
          "vulnIntegrityImpact": "NONE",
          "vulnerabilityResponseEffort": "NOT_DEFINED"
        },
        "source": "PSIRT@rockwellautomation.com",
        "type": "Secondary"
      }
    ]
  },
  "published": "2024-10-14T21:15:12.460",
  "references": [
    {
      "source": "PSIRT@rockwellautomation.com",
      "tags": [
        "Vendor Advisory"
      ],
      "url": "https://www.rockwellautomation.com/en-us/trust-center/security-advisories/advisory.SD1707.html"
    }
  ],
  "sourceIdentifier": "PSIRT@rockwellautomation.com",
  "vulnStatus": "Analyzed",
  "weaknesses": [
    {
      "description": [
        {
          "lang": "en",
          "value": "CWE-20"
        }
      ],
      "source": "PSIRT@rockwellautomation.com",
      "type": "Secondary"
    },
    {
      "description": [
        {
          "lang": "en",
          "value": "NVD-CWE-noinfo"
        }
      ],
      "source": "nvd@nist.gov",
      "type": "Primary"
    }
  ]
}


Log in or create an account to share your comment.




Tags
Taxonomy of the tags.


Loading…

Loading…

Loading…

Sightings

Author Source Type Date

Nomenclature

  • Seen: The vulnerability was mentioned, discussed, or seen somewhere by the user.
  • Confirmed: The vulnerability is confirmed from an analyst perspective.
  • Exploited: This vulnerability was exploited and seen by the user reporting the sighting.
  • Patched: This vulnerability was successfully patched by the user reporting the sighting.
  • Not exploited: This vulnerability was not exploited or seen by the user reporting the sighting.
  • Not confirmed: The user expresses doubt about the veracity of the vulnerability.
  • Not patched: This vulnerability was not successfully patched by the user reporting the sighting.


Loading…

Loading…