Vulnerability Details CVE-2022-2179
The X-Frame-Options header in Rockwell Automation MicroLogix 1100/1400 Versions 21.007 and prior is not configured in the HTTP response, which could allow clickjacking attacks.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.004
EPSS Ranking 57.9%
CVSS Severity
CVSS v3 Score 6.5
Products affected by CVE-2022-2179
-
cpe:2.3:h:rockwellautomation:micrologix_1100:-
-
cpe:2.3:h:rockwellautomation:micrologix_1400:-
-
cpe:2.3:o:rockwellautomation:micrologix_1100_firmware:-
-
cpe:2.3:o:rockwellautomation:micrologix_1100_firmware:14.00
-
cpe:2.3:o:rockwellautomation:micrologix_1400_firmware:-
-
cpe:2.3:o:rockwellautomation:micrologix_1400_firmware:21.0
-
cpe:2.3:o:rockwellautomation:micrologix_1400_firmware:21.007
-
cpe:2.3:o:rockwellautomation:micrologix_1400_firmware:21.6