Known Vulnerabilities for products from Rockwellautomation

Listed below are 20 of the newest known vulnerabilities associated with the vendor "Rockwellautomation".

These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.

Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.

Additional devices specifications by Rockwellautomation can be found at device.report : Rockwellautomation

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2023-46290 json Due to inadequate code logic, a previously unauthenticated threat actor could potentially obtain a local Windows OS user tok... 8.1 - HIGH 2023-10-27 2023-11-07
CVE-2023-46289 json Rockwell Automation FactoryTalk View Site Edition insufficiently validates user input, which could potentially allow threat ... 7.5 - HIGH 2023-10-27 2023-11-07
CVE-2023-29464 json FactoryTalk Linx, in the Rockwell Automation PanelView Plus, allows an unauthenticated threat actor to read data from memory... 9.1 - CRITICAL 2023-10-13 2023-10-20
CVE-2023-29463 json The JMX Console within the Rockwell Automation Pavilion8 is exposed to application users and does not require authentication... 5.4 - MEDIUM 2023-09-12 2023-09-15
CVE-2023-29462 json An arbitrary code execution vulnerability contained in Rockwell Automation's Arena Simulation software was reported that coul... 8.8 - HIGH 2023-05-09 2023-11-15
CVE-2023-29461 json An arbitrary code execution vulnerability contained in Rockwell Automation's Arena Simulation software was reported that coul... 9.8 - CRITICAL 2023-05-09 2023-05-16
CVE-2023-29460 json An arbitrary code execution vulnerability contained in Rockwell Automation's Arena Simulation software was reported that coul... 9.8 - CRITICAL 2023-05-09 2023-05-16
CVE-2023-29031 json A cross site scripting vulnerability was discovered in Rockwell Automation's ArmorStart ST product that could potentially al... 7.1 - HIGH 2023-05-11 2023-12-20
CVE-2023-29030 json A cross site scripting vulnerability was discovered in Rockwell Automation's ArmorStart ST product that could potentially al... 7.1 - HIGH 2023-05-11 2023-12-20
CVE-2023-29029 json A cross site scripting vulnerability was discovered in Rockwell Automation's ArmorStart ST product that could potentially ... 5.9 - MEDIUM 2023-05-11 2023-05-15
CVE-2023-29028 json A cross site scripting vulnerability was discovered in Rockwell Automation's ArmorStart ST product that could potentially ... 5.9 - MEDIUM 2023-05-11 2023-05-15
CVE-2023-29027 json A cross site scripting vulnerability was discovered in Rockwell Automation's ArmorStart ST product that could potentially ... 5.9 - MEDIUM 2023-05-11 2023-05-15
CVE-2023-29026 json A cross site scripting vulnerability was discovered in Rockwell Automation's ArmorStart ST product that could potentially ... 5.9 - MEDIUM 2023-05-11 2023-05-15
CVE-2023-29025 json A cross site scripting vulnerability was discovered in Rockwell Automation's ArmorStart ST product that could potentially ... 5.9 - MEDIUM 2023-05-11 2023-12-20
CVE-2023-29024 json A cross site scripting vulnerability was discovered in Rockwell Automation's ArmorStart ST product A cross site scripting ... 6.5 - MEDIUM 2023-05-11 2023-12-20
CVE-2023-29023 json A cross site scripting vulnerability was discovered in Rockwell Automation's ArmorStart ST product that could potentially al... 6.1 - MEDIUM 2023-05-11 2023-12-20
CVE-2023-29022 json A cross site scripting vulnerability was discovered in Rockwell Automation's ArmorStart ST product that could potentially ... 5.9 - MEDIUM 2023-05-11 2023-05-15
CVE-2023-27858 json Rockwell Automation Arena Simulation contains an arbitrary code execution vulnerability that could potentially allow a malic... 7.8 - HIGH 2023-10-27 2023-11-07
CVE-2023-27857 json In affected versions, a heap-based buffer over-read condition occurs when the message field indicates more data than is pre... 7.5 - HIGH 2023-03-22 2024-01-09
CVE-2023-27856 json In affected versions, path traversal exists when processing a message of type 8 in Rockwell Automation's ThinManager ThinServ... 7.5 - HIGH 2023-03-22 2023-11-07

Known software with vulnerabilities from Rockwellautomation

Type Vendor Product Version
HardwareRockwellautomation1100-
HardwareRockwellautomation1400-
HardwareRockwellautomation1756-enbt-
HardwareRockwellautomation1756-eweb-
ApplicationRockwellautomation1763-l16awa Series A15.000
ApplicationRockwellautomation1763-l16awa Series B15.000
ApplicationRockwellautomation1763-l16bbb Series A15.000
ApplicationRockwellautomation1763-l16bbb Series B15.000
ApplicationRockwellautomation1763-l16bwa Series A15.000
ApplicationRockwellautomation1763-l16bwa Series B15.000
ApplicationRockwellautomation1763-l16dwd Series A15.000
ApplicationRockwellautomation1763-l16dwd Series B15.000
HardwareRockwellautomation1768-enbt-
HardwareRockwellautomation1768-eweb-
HardwareRockwellautomation1768 Compactlogix L4x Controller-
Operating
System
Rockwellautomation1768 Compactlogix L4x Controller Firmware16.00
HardwareRockwellautomation1768 Compact Guardlogix L4xs Controller-
Operating
System
Rockwellautomation1768 Compact Guardlogix L4xs Controller Firmware18.00
HardwareRockwellautomation1769 Compactlogix 5370 L1 Controller-
Operating
System
Rockwellautomation1769 Compactlogix 5370 L1 Controller Firmware20.00