Weak Password Management in Rockwell Automation Allen-Bradley MicroLogix Controllers
CVE-2017-7903

9.8CRITICAL

What is CVE-2017-7903?

Rockwell Automation's Allen-Bradley MicroLogix 1100 and 1400 programmable logic controllers exhibit a vulnerability characterized by weak password management. Specifically, these devices utilize numeric-only passwords with a limited maximum character length, making them susceptible to unauthorized access. The affected models include various series of the MicroLogix 1100 and 1400, with versions up to and including 16.00. This design flaw may lead to significant security risks, given that attackers can potentially exploit this weakness to gain control over critical automation systems.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

Affected Version(s)

Rockwell Automation Allen-Bradley MicroLogix 1100 and 1400 Rockwell Automation Allen-Bradley MicroLogix 1100 and 1400

References

CVSS V3.1

Score:
9.8
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.