CVE-2012-0221
published 2012-04-02CVE-2012-0221: The FactoryTalk (FT) RNADiagReceiver service in Rockwell Automation Allen-Bradley FactoryTalk CPR9 through SR5 and RSLogix 5000 17 through 20 does not properly…
PriorityP432medium5CVSS 2.0
AVNACLAuNCNINAP
EXPLOIT
EPSS
10.32%
95.1th percentile
The FactoryTalk (FT) RNADiagReceiver service in Rockwell Automation Allen-Bradley FactoryTalk CPR9 through SR5 and RSLogix 5000 17 through 20 does not properly handle the return value from an unspecified function, which allows remote attackers to cause a denial of service (service outage) via a crafted packet.
Affected
6 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| rockwellautomation | factorytalk | — | — |
| rockwellautomation | factorytalk | — | — |
| rockwellautomation | rslogix_5000 | — | — |
| rockwellautomation | rslogix_5000 | — | — |
| rockwellautomation | rslogix_5000 | — | — |
| rockwellautomation | rslogix_5000 | — | — |
CVEs like this are exactly what “Exploited This Week” covers.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-mrfm-rrr4-2hxh: The FactoryTalk (FT) RNADiagReceiver service in Rockwell Automation Allen-Bradley FactoryTalk CPR9 through SR5 and RSLogix 5000 17 through 20 does not
ghsa_unreviewed·2022-05-04
CVE-2012-0221 [MEDIUM] CWE-20 GHSA-mrfm-rrr4-2hxh: The FactoryTalk (FT) RNADiagReceiver service in Rockwell Automation Allen-Bradley FactoryTalk CPR9 through SR5 and RSLogix 5000 17 through 20 does not
The FactoryTalk (FT) RNADiagReceiver service in Rockwell Automation Allen-Bradley FactoryTalk CPR9 through SR5 and RSLogix 5000 17 through 20 does not properly handle the return value from an unspecified function, which allows remote attackers to cause a denial of service (service outage) via a crafted packet.
CISA ICS
Rockwell Automation FactoryTalk RNADiagReceiver (UPDATE A)
cisa_ics·2012-03-28
Rockwell Automation FactoryTalk RNADiagReceiver (UPDATE A)
## Archived Content In an effort to keep CISA.gov current, the archive contains outdated information that may not reflect current policy or programs.
ICS Advisory
##
Rockwell Automation FactoryTalk RNADiagReceiver (UPDATE A)
Last RevisedSeptember 06, 2018
Alert CodeICSA-12-088-01A
## Overview
This Updated Advisory is a follow-up to the original Advisory titled “ICSA-12-088-01 – Rockwell Automation FactoryTalk RNADiagReceiver DOS Vulnerabilities” that was published March 28, 2012 on the ICS-CERT web page.
This advisory is a follow-up to ICS-CERT Alert “ICS-ALERT-12-017-01—ROCKWELL AUTOMATION FACTORYTALK RNADIAGRECEIVER” that was published January 17, 2012, on the ICS-CERT web page.
Independent researcher Luigi Auriemma identified two vulner
No detection rules found.
No writeups or analysis indexed.
2012-04-02
Published