Rockwell Automation RSLogix 5000 7 through 20.01, and 21.0, does not properly implement password protection for .ACD files (aka project files), which allows local users to obtain sensitive information or modify data via unspecified vectors.
References
Configurations
Configuration 1 (hide)
AND |
|
History
21 Nov 2024, 02:02
Type | Values Removed | Values Added |
---|---|---|
References | () http://ics-cert.us-cert.gov/advisories/ICSA-14-021-01 - US Government Resource | |
References | () http://osvdb.org/102858 - | |
References | () http://www.securityfocus.com/bid/65337 - | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/90981 - |
Information
Published : 2014-02-05 05:15
Updated : 2024-11-21 02:02
NVD link : CVE-2014-0755
Mitre link : CVE-2014-0755
CVE.ORG link : CVE-2014-0755
JSON object : View
Products Affected
rockwellautomation
- rslogix_5000_design_and_configuration_software
- logix_5000_controller
CWE
CWE-255
Credentials Management Errors