Vulnerabilities
Vulnerable Software
The X-Frame-Options header in Rockwell Automation MicroLogix 1100/1400 Versions 21.007 and prior is not configured in the HTTP response, which could allow clickjacking attacks.
CVSS Score
6.5
EPSS Score
0.004
Published
2022-07-20
When an authenticated password change request takes place, this vulnerability could allow the attacker to intercept the message that includes the legitimate, new password hash and replace it with an illegitimate hash. The user would no longer be able to authenticate to the controller (Micro800: All versions, MicroLogix 1400: Version 21 and later) causing a denial-of-service condition
CVSS Score
7.5
EPSS Score
0.001
Published
2021-06-03


Contact Us

Shodan ® - All rights reserved