CVE-2018-14829: Rockwellautomation Rslinx

Critical severity, CVSS 9.8. EPSS: 16.1% chance of exploitation in the next 30 days.

Rockwell Automation RSLinx Classic Versions 4.00.01 and prior. This vulnerability may allow a remote threat actor to intentionally send a malformed CIP packet to Port 44818, causing the software application to stop responding and crash. This vulnerability also has the potential to exploit a buffer overflow condition, which may allow the threat actor to remotely execute arbitrary code.

Affected products

Published 2018-09-20. Last modified 2026-06-17.