The X-Frame-Options header in Rockwell Automation MicroLogix 1100/1400 Versions 21.007 and prior is not configured in the HTTP response, which could allow clickjacking attacks.
2022-07-20T16:15:09.030
2024-11-21T07:00:29.217
Modified
CVSSv3.1: 6.5 (MEDIUM)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | rockwellautomation | micrologix_1100_firmware | * | Yes |
Hardware | rockwellautomation | micrologix_1100 | - | No |
Operating System | rockwellautomation | micrologix_1400_firmware | ≤ 21.007 | Yes |
Hardware | rockwellautomation | micrologix_1400 | - | No |