Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2024-2426


A denial-of-service vulnerability exists in the Rockwell Automation PowerFlex® 527 due to improper input validation in the device. If exploited, a disruption in the CIP communication will occur and a manual restart will be required by the user to recover it.


Published

2024-03-25T21:15:47.480

Last Modified

2025-01-31T15:41:55.917

Status

Analyzed

Source

[email protected]

Severity

CVSSv3.1: 7.5 (HIGH)

Weaknesses
  • Type: Secondary
    CWE-20
  • Type: Primary
    NVD-CWE-noinfo

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Operating System rockwellautomation powerflex_527_ac_drives_firmware ≥ 2.001 Yes
Hardware rockwellautomation powerflex_527_ac_drives - No

References