CVE-2018-19016: Rockwellautomation Ethernet/ip Web Server Module 1756-Eweb
High severity, CVSS 7.5. EPSS: 3.2% chance of exploitation in the next 30 days.
Rockwell Automation EtherNet/IP Web Server Modules 1756-EWEB (includes 1756-EWEBK) Version 5.001 and earlier, and CompactLogix 1768-EWEB Version 2.005 and earlier. A remote attacker could send a crafted UDP packet to the SNMP service causing a denial-of-service condition to occur until the affected product is restarted.
Affected products
- Rockwellautomation Ethernet/ip Web Server Module 1756-Eweb: up to and including 5.001
- Rockwellautomation Ethernet/ip Web Server Module 1768-Eweb: up to and including 2.005
Published 2019-03-27. Last modified 2026-06-17.