CVE-2020-6111

HIGH

Allen-Bradley MicroLogix 1100 Series B FRN 10.000-16.000 - Denial of Service via IPv4 Packet

Title source: llm
STIX 2.1

Description

An exploitable denial-of-service vulnerability exists in the IPv4 functionality of Allen-Bradley MicroLogix 1100 Programmable Logic Controller Systems Series B FRN 16.000, Series B FRN 15.002, Series B FRN 15.000, Series B FRN 14.000, Series B FRN 13.000, Series B FRN 12.000, Series B FRN 11.000 and Series B FRN 10.000. A specially crafted packet can cause a major error, resulting in a denial of service. An attacker can send a malicious packet to trigger this vulnerability.

References (2)

Core 2
Core References
Third Party Advisory, US Government Resource x_refsource_misc
https://us-cert.cisa.gov/ics/advisories/icsa-21-047-02

Scores

CVSS v3 7.5
EPSS 0.0009
EPSS Percentile 25.2%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

Details

CWE
CWE-189
Status published
Products (8)
rockwellautomation/micrologix_1100_b_firmware 10.000
rockwellautomation/micrologix_1100_b_firmware 11.000
rockwellautomation/micrologix_1100_b_firmware 12.000
rockwellautomation/micrologix_1100_b_firmware 13.000
rockwellautomation/micrologix_1100_b_firmware 14.000
rockwellautomation/micrologix_1100_b_firmware 15.000
rockwellautomation/micrologix_1100_b_firmware 15.002
rockwellautomation/micrologix_1100_b_firmware 16.000
Published Dec 03, 2020
Tracked Since Feb 18, 2026