Resource exhaustion in Rockwell Automation products - CVE-2022-1797
Published: May 25, 2022
CompactLogix 5380
Compact GuardLogix 5380
CompactLogix 5480
ControlLogix 5580
GuardLogix 5580
CompactLogix 5370
Compact GuardLogix 5370
ControlLogix 5570
GuardLogix 5570
Rockwell Automation
Description
The vulnerability allows a remote attacker to perform a denial of service (DoS) attack.
The vulnerability exists due to application does not properly control consumption of internal resources. A remote attacker can use a specially crafted Class 3 common industrial protocol message, trigger resource exhaustion and perform a denial of service (DoS) attack.