Known vulnerabilities in ControlLogix 5580
Vendor:
Rockwell Automation
Software:
ControlLogix 5580
Software CPE:
cpe:2.3:h:rockwell_automation:controllogix_5580:*:*:*:*:*:*:*:*
Website:
https://www.rockwellautomation.com/
Total vulnerabilities:
11
Public exploits:
0
Known exploited (KEV):
0
Highest CVSSv4 Score:
9.3
Breakdown by Severity Chart
Vulnerabilities (11)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU97314 - Improper input validation CVE-2024-6077 |
CWE-20 | Medium | 33.017, 34.014, 35.013, 36.011 | 16.09.2024 |
SB2024091624 |
||
| #VU96498 - Improper input validation CVE-2024-7515 |
CWE-20 | High | 34.014, 35.013, 36.011 | 26.08.2024 |
SB2024082604 |
||
| #VU96497 - Improper input validation CVE-2024-7507 |
CWE-20 | Medium | 34.014, 35.013, 36.011 | 26.08.2024 |
SB2024082604 |
||
| #VU96496 - Improper Check for Unusual or Exceptional Conditions CVE-2024-40619 |
CWE-754 | Medium | 34.014 | 26.08.2024 |
SB2024082604 |
||
| #VU91987 - Always-Incorrect Control Flow Implementation CVE-2024-5659 |
CWE-670 | Low | 34.014, 35.013, 36.011 | 12.06.2024 |
SB2024061220 |
||
| #VU88753 - Improper input validation CVE-2024-3493 |
CWE-20 | High | 35.013, 36.011 | 17.04.2024 |
SB20240417120 |
||
| #VU70085 - Improper input validation CVE-2022-3752 |
CWE-20 | High | 32.016, 33.015, 34.011 | 09.12.2022 |
SB2022120911 |
||
| #VU63626 - Resource exhaustion CVE-2022-1797 |
CWE-400 | Medium | 33.011 | 25.05.2022 |
SB2022052504 |
||
| #VU61791 - Inclusion of Functionality from Untrusted Control Sphere CVE-2022-1161 |
CWE-829 | High | - | 01.04.2022 |
SB2022040105 |
||
| #VU61788 - Improper Control of Generation of Code ('Code Injection') CVE-2022-1159 |
CWE-94 | Low | - | 01.04.2022 |
SB2022040104 |
||
| #VU23340 - Loop with Unreachable Exit Condition ('Infinite Loop') CVE-2019-5097 |
CWE-835 | Medium | 32.016 | 03.12.2019 |
SB2019120306 SB2023012726 SB2023012727 |