CVE-2017-6024

MEDIUMCVSS 5.9/10EPSS 2.63%

Last modified

CVE-2017-6024 is a medium-severity vulnerability rated 5.9/10 on the CVSS scale. A Resource Exhaustion issue was discovered in Rockwell Automation ControlLogix 5580 controllers V28.011, V28.012, and V28.013; ControlLogix 5580 controllers V29.011; CompactLogix 5380 controllers V28.011; and CompactLogix 5380 controllers V29.011. This vulnerability may allow an attacker to cause a denial of service condition by sending a series of specific CIP-based commands to the controller.. EPSS estimates a 2.63% chance of exploitation in the next 30 days.

Description

A Resource Exhaustion issue was discovered in Rockwell Automation ControlLogix 5580 controllers V28.011, V28.012, and V28.013; ControlLogix 5580 controllers V29.011; CompactLogix 5380 controllers V28.011; and CompactLogix 5380 controllers V29.011. This vulnerability may allow an attacker to cause a denial of service condition by sending a series of specific CIP-based commands to the controller.

Metrics

CVSS 3.1
5.9/10

CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H

EPSS Probability
2.63%

83.6th percentile

Probability of exploitation in the next 30 days. Learn more

Weakness Enumeration

Affected Software

VendorProductVersions
RockwellautomationCompactlogix 5380 Firmwarev28.011
RockwellautomationCompactlogix 5380 Firmwarev29.011
RockwellautomationControllogix 5580 Firmwarev28.011
RockwellautomationControllogix 5580 Firmwarev28.012
RockwellautomationControllogix 5580 Firmwarev28.013
RockwellautomationControllogix 5580 Firmwarev29.011

References

Timeline

Published
Last Modified
Status
Modified

Frequently Asked Questions

What is CVE-2017-6024?
A Resource Exhaustion issue was discovered in Rockwell Automation ControlLogix 5580 controllers V28.011, V28.012, and V28.013; ControlLogix 5580 controllers V29.011; CompactLogix 5380 controllers V28.011; and CompactLogix 5380 controllers V29.011. This vulnerability may allow an attacker to cause a denial of service condition by sending a series of specific CIP-based commands to the controller.
How severe is CVE-2017-6024?
CVE-2017-6024 has a CVSS score of 5.9/10 (MEDIUM severity). The EPSS model estimates a 2.63% probability of exploitation in the next 30 days.
How do I fix CVE-2017-6024?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.

Are you affected by CVE-2017-6024?

Run a free Strix scan to check your systems for this vulnerability.

Scan your code now

Source: NVD / NIST