// For flags

CVE-2017-16740

 

Severity Score

10.0
*CVSS v3

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

0
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

-
*SSVC
Descriptions

A Buffer Overflow issue was discovered in Rockwell Automation Allen-Bradley MicroLogix 1400 Controllers, Series B and C Versions 21.002 and earlier. The stack-based buffer overflow vulnerability has been identified, which may allow remote code execution.

Se ha descubierto un problema de desbordamiento de búfer en Rockwell Automation Allen-Bradley MicroLogix 1400 Controllers, Series B y C, en versiones 21.002 y anteriores. Se ha identificado una vulnerabilidad de desbordamiento de búfer basado en pila, lo que podría permitir la ejecución remota de código.

*Credits: N/A
CVSS Scores
Attack Vector
Network
Attack Complexity
Low
Privileges Required
None
User Interaction
None
Scope
Changed
Confidentiality
High
Integrity
High
Availability
High
Attack Vector
Network
Attack Complexity
Low
Authentication
None
Confidentiality
Partial
Integrity
Partial
Availability
Partial
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2017-11-09 CVE Reserved
  • 2018-01-09 CVE Published
  • 2023-12-20 EPSS Updated
  • 2024-08-05 CVE Updated
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
  • ---------- First Exploit
CWE
  • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer
  • CWE-120: Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')
CAPEC
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Rockwellautomation
Search vendor "Rockwellautomation"
1766-l32bxba Firmware
Search vendor "Rockwellautomation" for product "1766-l32bxba Firmware"
<= 21.002
Search vendor "Rockwellautomation" for product "1766-l32bxba Firmware" and version " <= 21.002"
-
Affected
in Rockwellautomation
Search vendor "Rockwellautomation"
1766-l32bxba
Search vendor "Rockwellautomation" for product "1766-l32bxba"
--
Safe
Rockwellautomation
Search vendor "Rockwellautomation"
1766-l32awa Firmware
Search vendor "Rockwellautomation" for product "1766-l32awa Firmware"
<= 21.002
Search vendor "Rockwellautomation" for product "1766-l32awa Firmware" and version " <= 21.002"
-
Affected
in Rockwellautomation
Search vendor "Rockwellautomation"
1766-l32awa
Search vendor "Rockwellautomation" for product "1766-l32awa"
--
Safe
Rockwellautomation
Search vendor "Rockwellautomation"
1766-l32bxb Firmware
Search vendor "Rockwellautomation" for product "1766-l32bxb Firmware"
<= 21.002
Search vendor "Rockwellautomation" for product "1766-l32bxb Firmware" and version " <= 21.002"
-
Affected
in Rockwellautomation
Search vendor "Rockwellautomation"
1766-l32bxb
Search vendor "Rockwellautomation" for product "1766-l32bxb"
--
Safe
Rockwellautomation
Search vendor "Rockwellautomation"
1766-l32bwaa Firmware
Search vendor "Rockwellautomation" for product "1766-l32bwaa Firmware"
<= 21.002
Search vendor "Rockwellautomation" for product "1766-l32bwaa Firmware" and version " <= 21.002"
-
Affected
in Rockwellautomation
Search vendor "Rockwellautomation"
1766-l32bwaa
Search vendor "Rockwellautomation" for product "1766-l32bwaa"
--
Safe
Rockwellautomation
Search vendor "Rockwellautomation"
1766-l32awaa Firmware
Search vendor "Rockwellautomation" for product "1766-l32awaa Firmware"
<= 21.002
Search vendor "Rockwellautomation" for product "1766-l32awaa Firmware" and version " <= 21.002"
-
Affected
in Rockwellautomation
Search vendor "Rockwellautomation"
1766-l32awaa
Search vendor "Rockwellautomation" for product "1766-l32awaa"
--
Safe
Rockwellautomation
Search vendor "Rockwellautomation"
1766-l32bwa Firmware
Search vendor "Rockwellautomation" for product "1766-l32bwa Firmware"
<= 21.002
Search vendor "Rockwellautomation" for product "1766-l32bwa Firmware" and version " <= 21.002"
-
Affected
in Rockwellautomation
Search vendor "Rockwellautomation"
1766-l32bwa
Search vendor "Rockwellautomation" for product "1766-l32bwa"
--
Safe