CVE-2017-16740
Description
A Buffer Overflow issue was discovered in Rockwell Automation Allen-Bradley MicroLogix 1400 Controllers, Series B and C Versions 21.002 and earlier. The stack-based buffer overflow vulnerability has been identified, which may allow remote code execution.
In plain language
AI Act nowIf you run Rockwell Automation Allen-Bradley MicroLogix 1400 Controllers (Series B/C) at version 21.002 or earlier, an attacker may be able to crash the controller or run malicious code over the network—so this is a serious risk for exposed systems.
Stack-based buffer overflow (CWE-120/CWE-119) in Rockwell Automation Allen-Bradley MicroLogix 1400 Controllers, Series B/C running version 21.002 or earlier, where specially crafted network data can cause the device to crash or potentially execute arbitrary code without authentication or user interaction.
CVSS Vector Breakdown
AV:NAttack VectorAC:LAttack ComplexityPR:NPrivileges RequiredUI:NUser InteractionS:CScopeC:HConfidentialityI:HIntegrityA:HAvailabilityWeaknesses
Affected Products
Exploitability
Attack Graph
Click technique nodes for MITRE ATT&CK details · drag to pan · Ctrl/⌘ + scroll to zoom, or go fullscreen.
MITRE ATT&CK
2 techniquesReferences
Unlock Complete Vulnerability Intelligence
Get the full picture for CVE-2017-16740 and every CVE in our database. Create a free account — no credit card required.
Create Free Account