Rockwell Automation Logix 5370 & 5570 Controllers Vulnerable To Denial of Service Via CIP

Summary

Rockwell Automation Logix 5370 and 5570 controllers are vulnerable to a denial-of-service attack via a crafted CIP message. Successful exploitation can cause a major nonrecoverable fault (MNRF) requiring a program download to recover.

IFF Assessment

FOE

This vulnerability allows for a denial-of-service condition that can lead to a major fault, impacting the operational availability of critical manufacturing systems.

Severity

7.5 High

The CVSS score of 7.5 reflects a vulnerability that can cause a denial-of-service condition with a potential major nonrecoverable fault, impacting availability.

Defender Context

This vulnerability impacts critical infrastructure, specifically in the critical manufacturing sector. Defenders should be aware of the potential for operational disruption and ensure affected Rockwell Automation Logix controllers are updated to the latest secure versions to mitigate the risk of denial-of-service attacks.

Read Full Story →