NONE · 0

CVE-2024-6242

A vulnerability exists in Rockwell Automation affected products that allows a threat actor to bypass the Trusted® Slot feature in a ControlLogix® controller. If exploited on any affected module in a 1...

Vulnerability Description

A vulnerability exists in Rockwell Automation affected products that allows a threat actor to bypass the Trusted® Slot feature in a ControlLogix® controller. If exploited on any affected module in a 1756 chassis, a threat actor could potentially execute CIP commands that modify user projects and/or device configuration on a Logix controller in the chassis.

Related Weaknesses (CWE)

References

FAQ

What is CVE-2024-6242?

CVE-2024-6242 is a documented vulnerability. A vulnerability exists in Rockwell Automation affected products that allows a threat actor to bypass the Trusted® Slot feature in a ControlLogix® controller. If exploited on any affected module in a 1...

How severe is CVE-2024-6242?

CVSS scoring is not yet available for CVE-2024-6242. Check NVD for updates.

Is there a patch for CVE-2024-6242?

Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.