A vulnerability exists in the Rockwell Automation controllers that allows a malformed CIP request to cause a major non-recoverable fault (MNRF) and a denial-of-service condition (DOS).

Project Subscriptions

Vendors Products
Rockwellautomation Subscribe
Compact Guardlogix 5370 Subscribe
Compact Guardlogix 5370 Firmware Subscribe
Compact Guardlogix 5380 Subscribe
Compact Guardlogix 5380 Firmware Subscribe
Compactlogix 5370 Subscribe
Compactlogix 5370 Firmware Subscribe
Controllogix 5570 Subscribe
Controllogix 5570 Firmware Subscribe
Controllogix 5570 Redundancy Subscribe
Controllogix 5570 Redundancy Firmware Subscribe
Guardlogix 5570 Subscribe
Guardlogix 5570 Firmware Subscribe
Advisories
Source ID Title
EUVD EUVD EUVD-2022-42581 A vulnerability exists in the Rockwell Automation controllers that allows a malformed CIP request to cause a major non-recoverable fault (MNRF) and a denial-of-service condition (DOS).
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

Wed, 16 Apr 2025 15:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: Rockwell

Published:

Updated: 2025-04-16T14:32:17.798Z

Reserved: 2022-09-07T19:00:02.431Z

Link: CVE-2022-3157

cve-icon Vulnrichment

Updated: 2024-08-03T01:00:10.589Z

cve-icon NVD

Status : Modified

Published: 2022-12-16T21:15:08.797

Modified: 2024-11-21T07:18:56.780

Link: CVE-2022-3157

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses