CVE Database
/

CVE-2020-6111

Back to search

CVE-2020-6111

Published: Dec 3, 2020

Modified: Aug 4, 2024

PUBLISHED

CVSS v3.0

7.5

HIGH

Description

An exploitable denial-of-service vulnerability exists in the IPv4 functionality of Allen-Bradley MicroLogix 1100 Programmable Logic Controller Systems Series B FRN 16.000, Series B FRN 15.002, Series B FRN 15.000, Series B FRN 14.000, Series B FRN 13.000, Series B FRN 12.000, Series B FRN 11.000 and Series B FRN 10.000. A specially crafted packet can cause a major error, resulting in a denial of service. An attacker can send a malicious packet to trigger this vulnerability.

VendorProductVersions

n/a

Allen-Bradley

affected
Allen-Bradley MicroLogix 1100 Programmable Logic Controller Systems Series B FRN 10.000, Allen-Bradley MicroLogix 1100 Programmable Logic Controller Systems Series B FRN 11.000, Allen-Bradley MicroLogix 1100 Programmable Logic Controller Systems Series B FRN 12.000, Allen-Bradley MicroLogix 1100 Programmable Logic Controller Systems Series B FRN 13.000, Allen-Bradley MicroLogix 1100 Programmable Logic Controller Systems Series B FRN 14.000, Allen-Bradley MicroLogix 1100 Programmable Logic Controller Systems Series B FRN 15.000, Allen-Bradley MicroLogix 1100 Programmable Logic Controller Systems Series B FRN 15.002, Allen-Bradley MicroLogix 1100 Programmable Logic Controller Systems Series B FRN 16.000

Weaknesses (CWE)

CVSS v3.0 Details

CVSS v3.0 Vector

CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

Attack Vector

Network

Attack Complexity

Low

Privileges Required

None

User Interaction

None

Scope

Unchanged

Confidentiality

None

Integrity

None

Availability

High

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now