Rockwell Automation CompactLogix 5480
cpe:2.3:h:rockwellautomation:compactlogix_5480:*:*:*:*:*:*:*, +1 more
- >= 32, <= 37.011
A code execution vulnerability exists in the Rockwell Automation CompactLogix 5480 controller, specifically in versions 32 through 37.011 with the Windows package 2.1.0, Win10 v1607. This vulnerability allows an attacker with physical access to exploit the maintenance menu of the controller using a crafted payload, leading to arbitrary code execution.
Exploitation of this vulnerability allows for arbitrary code execution on the affected controller.
Best security practices should be applied. Consult the Rockwell Automation security best practices and system security design guidelines for more information.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.