CVE-2020-12001
Last modified
CVE-2020-12001 is a critical-severity vulnerability rated 9.8/10 on the CVSS scale. FactoryTalk Linx versions 6.00, 6.10, and 6.11, RSLinx Classic v4.11.00 and prior,Connected Components Workbench: Version 12 and prior, ControlFLASH: Version 14 and later, ControlFLASH Plus: Version 1 and later, FactoryTalk Asset Centre: Version 9 and later, FactoryTalk Linx CommDTM: Version 1 and later, Studio 5000 Launcher: Version 31 and later Stud, 5000 Logix Designer software: Version 32 and prior is vulnerable. The parsing mechanism that processes certain file types does not provide input sanitation. EPSS estimates a 11.50% chance of exploitation in the next 30 days.
Description
FactoryTalk Linx versions 6.00, 6.10, and 6.11, RSLinx Classic v4.11.00 and prior,Connected Components Workbench: Version 12 and prior, ControlFLASH: Version 14 and later, ControlFLASH Plus: Version 1 and later, FactoryTalk Asset Centre: Version 9 and later, FactoryTalk Linx CommDTM: Version 1 and later, Studio 5000 Launcher: Version 31 and later Stud, 5000 Logix Designer software: Version 32 and prior is vulnerable. The parsing mechanism that processes certain file types does not provide input sanitation. This may allow an attacker to use specially crafted files to traverse the file system and modify or expose sensitive data or execute arbitrary code.
Metrics
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Rockwellautomation | Factorytalk Linx | 6.00 |
| Rockwellautomation | Factorytalk Linx | 6.10 |
| Rockwellautomation | Factorytalk Linx | 6.11 |
| Rockwellautomation | Rslinx Classic | <= 4.11.00 |
References
- https://www.us-cert.gov/ics/advisories/icsa-20-163-02Third Party Advisory, US Government Resource
- https://www.zerodayinitiative.com/advisories/ZDI-20-733/Third Party Advisory, VDB Entry
- https://www.us-cert.gov/ics/advisories/icsa-20-163-02Third Party Advisory, US Government Resource
- https://www.zerodayinitiative.com/advisories/ZDI-20-733/Third Party Advisory, VDB Entry
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2020-12001?
How severe is CVE-2020-12001?
How do I fix CVE-2020-12001?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2020
- CVE-2020-11996A specially crafted sequence of HTTP/2 requests sent to Apac…7.5
- CVE-2020-11997Apache Guacamole 1.2.0 and earlier do not consistently restr…4.3
- CVE-2020-11998A regression has been introduced in the commit preventing JM…9.8
- CVE-2020-11999FactoryTalk Linx versions 6.00, 6.10, and 6.11, RSLinx Class…8.1
- CVE-2020-1200<p>A remote code execution vulnerability exists in Microsoft…8.6
- CVE-2020-12000The affected product is vulnerable to the handling of serial…7.5
- CVE-2020-12002Advantech WebAccess Node, Version 8.4.4 and prior, Version 9…9.8
- CVE-2020-12003FactoryTalk Linx versions 6.00, 6.10, and 6.11, RSLinx Class…7.5
- CVE-2020-12004The affected product lacks proper authentication required to…7.5
- CVE-2020-12005FactoryTalk Linx versions 6.00, 6.10, and 6.11, RSLinx Class…7.5
- CVE-2020-12006Advantech WebAccess Node, Version 8.4.4 and prior, Version 9…9.8
- CVE-2020-12007A specially crafted communication packet sent to the affecte…9.8
Are you affected by CVE-2020-12001?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
