Rockwell Automation ControlLogix CVE-2012-6441 Information Disclosure Vulnerability
BID:57307
Info
Rockwell Automation ControlLogix CVE-2012-6441 Information Disclosure Vulnerability
| Bugtraq ID: | 57307 |
| Class: | Design Error |
| CVE: |
CVE-2012-6441 |
| Remote: | Yes |
| Local: | No |
| Published: | Jan 14 2013 12:00AM |
| Updated: | Jan 14 2013 12:00AM |
| Credit: | Rubén Santamarta |
| Vulnerable: |
Rockwell Automation Micrologix 1400 0 Rockwell Automation Micrologix 1100 0 |
| Not Vulnerable: | |
Discussion
Rockwell Automation ControlLogix CVE-2012-6441 Information Disclosure Vulnerability
Rockwell Automation ControlLogix is prone to an information-disclosure vulnerability.
An attacker can exploit this issue to obtain potentially sensitive information. Information obtained may aid in further attacks.
Rockwell Automation ControlLogix is prone to an information-disclosure vulnerability.
An attacker can exploit this issue to obtain potentially sensitive information. Information obtained may aid in further attacks.
Exploit / POC
Rockwell Automation ControlLogix CVE-2012-6441 Information Disclosure Vulnerability
Attackers can use readily available tools to exploit this issue.
Attackers can use readily available tools to exploit this issue.
Solution / Fix
References
Rockwell Automation ControlLogix CVE-2012-6441 Information Disclosure Vulnerability
References:
References:
- ROCKWELL AUTOMATION CONTROLLOGIX MULTIPLE PLC VULNERABILITIES (Rockwell Software)
- Rockwell Automation Homepage (Rockwell Automation)