CVE-2024-6077: Rockwellautomation 1756-EN4 Firmware
High severity, CVSS 7.5. EPSS: 0.6% chance of exploitation in the next 30 days.
A denial-of-service vulnerability exists in the Rockwell Automation affected products when specially crafted packets are sent to the CIP Security Object. If exploited the device will become unavailable and require a factory reset to recover.
Affected products
- Rockwellautomation 1756-EN4 Firmware: version 2.001 only
- Rockwellautomation Compact Guardlogix 5380 Sil 2 Firmware: version 32.013 only
- Rockwellautomation Compact Guardlogix 5380 Sil 3 Firmware: version 32.011 only
- Rockwellautomation Compactlogix 5380 Firmware: version 32.011 only
- Rockwellautomation Compactlogix 5480 Firmware: version 32.011 only
- Rockwellautomation Controllogix 5580 Firmware: version 33.011 only
- Rockwellautomation Guardlogix 5580 Firmware: version 32.011 only
Published 2024-09-12. Last modified 2026-06-17.