CVE-2024-6089

July 16, 2024, 6 p.m.

Undergoing Analysis
CVE has been marked for Analysis. Normally once in this state the CVE will be analyzed by NVD staff within 24 hours.

Products

Rockwell Automation 5015 - AENFTXT

Source

PSIRT@rockwellautomation.com

Tags

CVE-2024-6089 details

Published : July 16, 2024, 5:15 p.m.
Last Modified : July 16, 2024, 6 p.m.

Description

An input validation vulnerability exists in the Rockwell Automation 5015 - AENFTXT when a manipulated PTP packet is sent, causing the secondary adapter to result in a major nonrecoverable fault. If exploited, a power cycle is required to recover the product.

CVSS Score

1 2 3 4 5 6 7 8 9 10

Weakness

Weakness Name Description
CWE-20 Improper Input Validation The product receives input or data, but it does not validate or incorrectly validates that the input has the properties that are required to process the data safely and correctly.
This website uses the NVD API, but is not approved or certified by it.