Vulnerability Intelligence Report
CVE-2012-0221
The FactoryTalk (FT) RNADiagReceiver service in Rockwell Automation Allen-Bradley FactoryTalk CPR9 through SR5 and RSLogix 5000 17 through 20 does not properly handle the return value from an unspecified function, which allows remote attackers to cause a denial of service (service outage) via a crafted packet.
No Active Exploit Signals
CVSS Base Score
5.0
MEDIUM
EPSS Probability:10.32%
Executive Threat Verdict
Evaluating...
Evaluating Threat Landscape...
Assessing known weaponization, exploitation telemetry, and federal advisories.
Attack Surface
—
Authentication
—
Weaponization
—
SSVC Action
—
Affected Products & Versions
| Vendor | Product | Affected Versions |
|---|---|---|
| rockwellautomation | factorytalk | cpr9, cpr9_sr5 |
| rockwellautomation | rslogix_5000 | 17, 18, 19, 20 |
References & Technical Advisories
No reference links found.
Threat Intelligence Signals
EPSS Score
10.324%
GitHub Advisory
Identity & Timeline
| Status | PUBLISHED |
| Assigning Authority | CERT/CC · CERT · USA |
| Reserved | 2011-12-21T00:00:00 |
| Published | 2012-04-02T18:00:00 |
| Last Updated | 2024-09-17T01:11:29 |
Community Chatter & Buzz