Known vulnerabilities in Studio 5000 Logix Designer
Vendor:
Rockwell Automation
Software:
Studio 5000 Logix Designer
Software CPE:
cpe:2.3:a:rockwell_automation:studio_5000_logix_designer:*:*:*:*:*:*:*:*
Website:
https://www.rockwellautomation.com/
Total vulnerabilities:
5
Public exploits:
0
Known exploited (KEV):
1
Highest CVSSv4 Score:
9.3
Breakdown by Severity Chart
Vulnerabilities (5)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU61788 - Improper Control of Generation of Code ('Code Injection') CVE-2022-1159 |
CWE-94 | Low | 34 | 01.04.2022 |
SB2022040104 |
||
| #VU51000 - Insufficiently Protected Credentials CVE-2021-22681 |
CWE-522 | High | - | 01.03.2021 |
SB2021030105 |
||
| #VU29640 - Improper Restriction of XML External Entity Reference ('XXE') CVE-2020-12025 |
CWE-611 | Medium | - | 10.07.2020 |
SB2020071008 |
||
| #VU28131 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') CVE-2020-12034 |
CWE-89 | Low | - | 20.05.2020 |
SB2020052025 |
||
| #VU28130 - Memory corruption CVE-2020-12038 |
CWE-119 | Medium | - | 20.05.2020 |
SB2020052025 |