HIGH · 9.3

CVE-2012-6440

The Web server password authentication mechanism used by the products is vulnerable to a MitM and Replay attack. Successful exploitation of this vulnerability will allow unauthorized access of the pro...

Vulnerability Description

The Web server password authentication mechanism used by the products is vulnerable to a MitM and Replay attack. Successful exploitation of this vulnerability will allow unauthorized access of the product’s Web server to view and alter product configuration and diagnostics information. Rockwell Automation EtherNet/IP products; 1756-ENBT, 1756-EWEB, 1768-ENBT, and 1768-EWEB communication modules; CompactLogix L32E and L35E controllers; 1788-ENBT FLEXLogix adapter; 1794-AENTR FLEX I/O EtherNet/IP adapter; ControlLogix 18 and earlier; CompactLogix 18 and earlier; GuardLogix 18 and earlier; SoftLogix 18 and earlier; CompactLogix controllers 19 and earlier; SoftLogix controllers 19 and earlier; ControlLogix controllers 20 and earlier; GuardLogix controllers 20 and earlier; and MicroLogix 1100 and 1400

CVSS Score

9.3

HIGH

AV:N/AC:M/Au:N/C:C/I:C/A:C
Confidentiality
COMPLETE
Integrity
COMPLETE
Availability
COMPLETE

Affected Products

VendorProductVersions
RockwellautomationControllogix Controllers<= 20
RockwellautomationGuardlogix Controllers<= 20
RockwellautomationMicrologix<= 1100
RockwellautomationSoftlogix Controllers<= 19
Rockwellautomation1756-Enbt-
Rockwellautomation1756-Eweb-
Rockwellautomation1768-Enbt-
Rockwellautomation1768-Eweb-
Rockwellautomation1794-Aentr Flex I\/O Ethernet\/Ip Adapter-
RockwellautomationCompactlogix<= 18
RockwellautomationCompactlogix Controllers<= 19
RockwellautomationCompactlogix L32E Controller-
RockwellautomationCompactlogix L35E Controller-
RockwellautomationControllogix<= 18
RockwellautomationFlexlogix 1788-Enbt Adapter-
RockwellautomationGuardlogix<= 18
RockwellautomationSoftlogix<= 18

Related Weaknesses (CWE)

References

FAQ

What is CVE-2012-6440?

CVE-2012-6440 is a vulnerability with a CVSS score of 9.3 (HIGH). The Web server password authentication mechanism used by the products is vulnerable to a MitM and Replay attack. Successful exploitation of this vulnerability will allow unauthorized access of the pro...

How severe is CVE-2012-6440?

CVE-2012-6440 has been rated HIGH with a CVSS base score of 9.3/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2012-6440?

Check the references section above for vendor advisories and patch information. Affected products include: Rockwellautomation Controllogix Controllers, Rockwellautomation Guardlogix Controllers, Rockwellautomation Micrologix, Rockwellautomation Softlogix Controllers, Rockwellautomation 1756-Enbt.