CVE-2014-5424
Last modified
CVE-2014-5424 is a vulnerability of currently unknown severity. Rockwell Automation Connected Components Workbench (CCW) before 7.00.00 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via an invalid property value to an ActiveX control that was built with an outdated compiler.. EPSS estimates a 11.00% chance of exploitation in the next 30 days.
Description
Rockwell Automation Connected Components Workbench (CCW) before 7.00.00 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via an invalid property value to an ActiveX control that was built with an outdated compiler.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Rockwellautomation | Connected Components Workbench | <= 6.01.00 |
References
- https://ics-cert.us-cert.gov/advisories/ICSA-14-294-01Third Party Advisory, US Government Resource
- https://ics-cert.us-cert.gov/advisories/ICSA-14-294-01Third Party Advisory, US Government Resource
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2014-5424?
How severe is CVE-2014-5424?
How do I fix CVE-2014-5424?
Are you affected by CVE-2014-5424?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
