An input validation vulnerability exists in the Rockwell Automation 5015-AENFTXT that causes the secondary adapter to result in a major nonrecoverable fault (MNRF) when malicious input is entered. If exploited, the availability of the device will be impacted, and a manual restart is required. Additionally, a malformed PTP packet is needed to exploit this vulnerability.
References
Link | Resource |
---|---|
https://www.rockwellautomation.com/en-us/support/advisory.SD1667.html | Broken Link Vendor Advisory |
https://www.rockwellautomation.com/en-us/support/advisory.SD1667.html | Broken Link Vendor Advisory |
Configurations
Configuration 1 (hide)
AND |
|
History
25 Feb 2025, 18:56
Type | Values Removed | Values Added |
---|---|---|
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 7.5 |
First Time |
Rockwellautomation
Rockwellautomation 5015-aenftxt Firmware Rockwellautomation 5015-aenftxt |
|
CPE | cpe:2.3:h:rockwellautomation:5015-aenftxt:-:*:*:*:*:*:*:* cpe:2.3:o:rockwellautomation:5015-aenftxt_firmware:2.011:*:*:*:*:*:*:* |
|
CWE | NVD-CWE-noinfo | |
References | () https://www.rockwellautomation.com/en-us/support/advisory.SD1667.html - Broken Link, Vendor Advisory |
16 Apr 2024, 13:24
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-04-15 22:15
Updated : 2025-02-25 18:56
NVD link : CVE-2024-2424
Mitre link : CVE-2024-2424
JSON object : View
Products Affected
rockwellautomation
- 5015-aenftxt
- 5015-aenftxt_firmware
CWE